|
Log-Analyse und Auswertung: Über Piesearch zu Bing, keine LösungWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
14.07.2017, 13:08 | #1 |
| Über Piesearch zu Bing, keine Lösung Hey Leute, eigtl benutze ich Firefox als Hauptbrowser und Chrome nur nebenbei, mir ist nun aufgefallen das ich bei Chrome den Piesearch Trojaner/Virus drin habe und ihn auch nicht gelöscht bekomme! Ich habe hier im Forum die Anleitung zum Piesearch gefunden und bin diese durchgegangen, dennoch werde ich bei einer Suchanfrage über eine Piesearch URL auf Bing geleitet. Die Suchmaschinen in Chrome selbst, kann ich nicht löschen aus unerklärlichen Gründen (siehe Screenshot (Screenshot entstand nach nochmaligen Zurücksetzen Chromes). Ich füge euch meine Logs der diversen Programme an die in der Anleitung gelistet waren, ich hoffe jemand von euch kann mir weiterhelfen. Es sei zu erwähnen das ich den Schritt mit OTH.scr nicht durchgeführt habe da ich etwas verwirrt bin bzgl dem Internet Explorer in der Anleitung. ESET hat einige Bedrohungen gefunden, hatte auch ausgewählt das alle Programme deinstalliert sollen nach dem schließen, aber eine Meldung das dies geschehen ist blieb aus. |
14.07.2017, 13:18 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Über Piesearch zu Bing, keine LösungLesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
14.07.2017, 13:30 | #3 |
| Über Piesearch zu Bing, keine Lösung Hier dann nochmal die Logs, ich entschuldige mich für die Umstände.
__________________MBAM Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 14.07.2017 Suchlaufzeit: 12:04 Protokolldatei: mbamjuli17.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2017.07.14.04 Rootkit-Datenbank: v2017.05.27.01 Lizenz: Kostenlose Version Malware-Schutz: Deaktiviert Schutz vor bösartigen Websites: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 10 CPU: x64 Dateisystem: NTFS Benutzer: chr1s Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 358857 Abgelaufene Zeit: 3 Min., 26 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswerte: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Dateien: 0 (keine bösartigen Elemente erkannt) Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter # AdwCleaner v6.047 - Bericht erstellt am 14/07/2017 um 12:12:42 # Aktualisiert am 19/05/2017 von Malwarebytes # Datenbank : 2017-07-13.1 [Server] # Betriebssystem : Windows 10 Pro (X64) # Benutzername : chr1s - CHR1S-PC # Gestartet von : C:\Users\chr1s\Desktop\adwcleaner_6.047__1_.exe # Modus: Löschen # Unterstützung : https://www.malwarebytes.com/support ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** [-] [C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Gelöscht: google ************************* :: "Tracing" Schlüssel gelöscht :: Winsock Einstellungen zurückgesetzt ************************* C:\AdwCleaner\AdwCleaner[C1].txt - [3763 Bytes] - [29/10/2015 15:09:28] C:\AdwCleaner\AdwCleaner[C2].txt - [1203 Bytes] - [04/12/2015 23:08:45] C:\AdwCleaner\AdwCleaner[C3].txt - [6454 Bytes] - [13/07/2017 13:30:13] C:\AdwCleaner\AdwCleaner[C4].txt - [1586 Bytes] - [13/07/2017 13:43:56] C:\AdwCleaner\AdwCleaner[C5].txt - [1218 Bytes] - [14/07/2017 12:12:42] C:\AdwCleaner\AdwCleaner[S1].txt - [5140 Bytes] - [29/10/2015 15:09:03] C:\AdwCleaner\AdwCleaner[S2].txt - [1108 Bytes] - [04/12/2015 23:08:10] C:\AdwCleaner\AdwCleaner[S3].txt - [6371 Bytes] - [13/07/2017 13:29:32] C:\AdwCleaner\AdwCleaner[S4].txt - [2042 Bytes] - [13/07/2017 13:43:40] C:\AdwCleaner\AdwCleaner[S5].txt - [2191 Bytes] - [14/07/2017 12:11:35] ########## EOF - C:\AdwCleaner\AdwCleaner[C5].txt - [1656 Bytes] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.1.3 (04.10.2017) Operating System: Windows 10 Pro x64 Ran by chr1s (Administrator) on 14.07.2017 at 12:15:11,08 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 4 Successfully deleted: C:\WINDOWS\system32\Tasks\update-S-1-5-21-173424566-3729193046-2416234265-1000 (Task) Successfully deleted: C:\WINDOWS\system32\Tasks\update-sys (Task) Successfully deleted: C:\WINDOWS\Tasks\update-S-1-5-21-173424566-3729193046-2416234265-1000.job (Task) Successfully deleted: C:\WINDOWS\Tasks\update-sys.job (Task) Deleted the following from C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345\prefs.js user_pref(browser.search.searchengine.desc, this is my first firefox searchEngine); user_pref(browser.search.searchengine.ptid, etc129); user_pref(browser.search.searchengine.uid, 6824bf83-dff1-414e-b44e-76ab15e73911); user_pref(extensions.ich@maltegoetz.de.config, {\proxy\:\[proxy]\,\supportedsites\:[{\domain\:\www.youtube.com\,\displayName\:\YouTube (auto)\,\functionName\ Registry: 0 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 14.07.2017 at 12:16:47,40 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter Shortcut Cleaner 1.4.9.6 by Lawrence Abrams (Grinler) hxxp://www.bleepingcomputer.com/ Copyright 2008-2017 BleepingComputer.com More Information about Shortcut Cleaner can be found at this link: hxxp://www.bleepingcomputer.com/download/shortcut-cleaner/ Windows Version: Windows 10 Pro Program started at: 07/14/2017 12:18:01 PM. Scanning for registry hijacks: * No issues found in the Registry. Searching for Hijacked Shortcuts: Searching C:\Users\chr1s\AppData\Roaming\Microsoft\Windows\Start Menu\ Searching C:\ProgramData\Microsoft\Windows\Start Menu\ Searching C:\Users\chr1s\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\ Searching C:\Users\Public\Desktop\ Searching C:\Users\chr1s\Desktop\ Searching C:\Users\Public\Desktop\ 0 bad shortcuts found. Program finished at: 07/14/2017 12:18:02 PM Execution time: 0 hours(s), 0 minute(s), and 0 seconds(s) |
14.07.2017, 13:45 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Über Piesearch zu Bing, keine Lösung Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ Logfiles bitte immer in CODE-Tags posten |
14.07.2017, 14:23 | #5 |
| Über Piesearch zu Bing, keine Lösung FRST Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 13-07-2017 durchgeführt von chr1s (Administrator) auf CHR1S-PC (14-07-2017 15:21:22) Gestartet von D:\Firefox Downloads Geladene Profile: chr1s (Verfügbare Profile: chr1s & DefaultAppPool) Platform: Windows 10 Pro Version 1703 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Windows\SysWOW64\PnkBstrB.exe (Micro-Star INT'L CO., LTD.) C:\MSI\MSIRegister\MSIRegisterService.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe (Electronic Arts) D:\Programme\Origin\OriginWebHelperService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe (AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Spotify Ltd) C:\Users\chr1s\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe (Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe (Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe (Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.10\Lightshot.exe (Logitech Inc.) C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe () C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\LeagueClient.exe () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\LeagueClientUx.exe () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\LeagueClientUxRender.exe () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\LeagueClientUxRender.exe (Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8843784 2016-08-08] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2016-10-06] (Intel Corporation) HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213832 2017-07-13] (AVAST Software) HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [3146704 2017-05-09] (Malwarebytes) HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [46368 2010-03-09] (Nuance Communications, Inc.) HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [29984 2010-03-09] (Nuance Communications, Inc.) HKLM-x32\...\Run: [PPort12reminder] => "C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\12\Config\Ereg\Ereg.ini" HKLM-x32\...\Run: [PDFHook] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe [636192 2010-03-05] (Nuance Communications, Inc.) HKLM-x32\...\Run: [PDF5 Registry Controller] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe [62752 2010-03-05] (Nuance Communications, Inc.) HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.) HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [225944 2016-07-11] () HKLM-x32\...\Run: [LWS] => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [204136 2012-09-13] (Logitech Inc.) HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2017-04-13] (Razer Inc.) HKLM-x32\...\Run: [Live Update] => C:\Program Files (x86)\MSI\Live Update\Live Update.exe [15371216 2017-03-07] (Micro-Star INT'L CO., LTD.) HKLM-x32\...\Run: [MSIRegister] => C:\MSI\MSIRegister\MSIRegister.exe [1258960 2017-03-03] (Micro-Star INT'L CO., LTD.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-03-15] (Oracle Corporation) HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ACHTUNG HKU\S-1-5-21-173424566-3729193046-2416234265-1000\...\Run: [Spotify Web Helper] => C:\Users\chr1s\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1562224 2017-06-28] (Spotify Ltd) HKU\S-1-5-21-173424566-3729193046-2416234265-1000\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation) HKU\S-1-5-21-173424566-3729193046-2416234265-1000\...\MountPoints2: {13abf9df-9927-11e5-ab0b-305a3a49b50b} - "F:\Setup.exe" HKU\S-1-5-21-173424566-3729193046-2416234265-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [37376 2017-03-18] (Microsoft Corporation) GroupPolicy: Beschränkung - Chrome <==== ACHTUNG CHR HKLM\SOFTWARE\Policies\Google: Beschränkung <==== ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{d7232cdb-a9ab-4461-80b8-ffbfe2d3c0e8}: [DhcpNameServer] 192.168.2.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com SearchScopes: HKU\.DEFAULT -> DefaultScope {637D6E3C-DF93-48A5-8362-159A8AC56B11} URL = hxxp://www.google.com/search?hl=en&q={searchTerms}&meta= SearchScopes: HKU\.DEFAULT -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\.DEFAULT -> {637D6E3C-DF93-48A5-8362-159A8AC56B11} URL = hxxp://www.google.com/search?hl=en&q={searchTerms}&meta= SearchScopes: HKU\S-1-5-21-173424566-3729193046-2416234265-1000 -> {637D6E3C-DF93-48A5-8362-159A8AC56B11} URL = hxxp://www.google.com/search?hl=en&q={searchTerms}&meta= BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files (x86)\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll [2009-02-06] (Zeon Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\ssv.dll [2017-04-26] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-04-26] (Oracle Corporation) DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://files.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab DPF: HKLM-x32 {E705A591-DA3C-4228-B0D5-A356DBA42FBF} hxxp://files.creative.com/Web/softwareupdate/su2/ocx/20015/CTSUEng.cab DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://files.creative.com/Web/softwareupdate/ocx/150323/CTPID.cab FireFox: ======== FF ProfilePath: C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345 [2017-07-14] FF NewTab: Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345 -> about:home FF SelectedSearchEngine: Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345 -> Bing® FF Homepage: Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345 -> about:home FF NetworkProxy: Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345 -> type", 0 FF Extension: (BetterTTV) - C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345\Extensions\firefox@betterttv.net.xpi [2017-03-03] FF Extension: (MEGA) - C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345\Extensions\firefox@mega.co.nz.xpi [2016-11-06] FF Extension: (ProxTube) - C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345\Extensions\ich@maltegoetz.de.xpi [2017-03-03] FF Extension: (Avast SafePrice) - C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345\Extensions\sp@avast.com.xpi [2017-07-13] FF Extension: (Video DownloadHelper) - C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2017-03-03] FF Extension: (Adblock Plus) - C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-03-03] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_26_0_0_137.dll [2017-07-13] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_137.dll [2017-07-13] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\dtplugin\npDeployJava1.dll [2017-04-26] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\plugin2\npjp2.dll [2017-04-26] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-06-08] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-06-08] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-07-13] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-07-13] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-04-05] (Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default [2017-07-14] CHR Extension: (Google Drive) - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-07-13] CHR Extension: (YouTube) - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-13] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-07-13] CHR Extension: (Google Mail) - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-07-13] CHR Extension: (Chrome Media Router) - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-07-14] CHR HKLM\...\Chrome\Extension: [oggihoncmelambjaefiboekididcaffe] - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\oggihoncmelambjaefiboekididcaffe.crx <nicht gefunden> CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [oggihoncmelambjaefiboekididcaffe] - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\oggihoncmelambjaefiboekididcaffe.crx <nicht gefunden> ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2014-07-23] () R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2014-07-23] () [Datei ist nicht signiert] R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7430992 2017-07-13] (AVAST Software s.r.o.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [263312 2017-07-13] (AVAST Software) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1522184 2017-03-31] () S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [Datei ist nicht signiert] S3 Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2015-10-22] (Creative Labs) [Datei ist nicht signiert] S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2015-10-22] (Creative Labs) [Datei ist nicht signiert] R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [429056 2013-10-28] (Creative Technology Ltd) [Datei ist nicht signiert] S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [383016 2017-04-17] (EasyAntiCheat Ltd) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [17992 2016-10-06] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Datei ist nicht signiert] S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Datei ist nicht signiert] R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223520 2015-07-10] (Intel Corporation) S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4470736 2017-05-09] (Malwarebytes) R2 MSIREGISTER_MR; C:\MSI\MSIRegister\MSIRegisterService.exe [132048 2017-02-21] (Micro-Star INT'L CO., LTD.) R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2286032 2017-03-06] (Micro-Star INT'L CO., LTD.) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-05-03] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-05-03] (NVIDIA Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-06-08] (NVIDIA Corporation) R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [449984 2017-06-08] (NVIDIA Corporation) S3 Origin Client Service; D:\Programme\Origin\OriginClientService.exe [2141192 2016-09-30] (Electronic Arts) R2 Origin Web Helper Service; D:\Programme\Origin\OriginWebHelperService.exe [2206224 2016-09-30] (Electronic Arts) S3 PAExec; C:\WINDOWS\PAExec.exe [189112 2016-06-05] (Power Admin LLC) R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [144672 2010-03-09] (Nuance Communications, Inc.) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2015-12-27] () R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [103736 2015-12-27] () R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2016-09-25] () S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [3913064 2017-03-20] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-06-20] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [49448 2016-08-18] (Advanced Micro Devices, Inc.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] () S3 AsusVBus; C:\WINDOWS\System32\DRIVERS\AsusVBus.sys [39704 2015-10-07] (Windows (R) Win 7 DDK provider) R1 aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdrivera.sys [319984 2017-07-13] (AVAST Software s.r.o.) R0 aswbidsh; C:\WINDOWS\system32\drivers\aswbidsha.sys [198944 2017-07-13] (AVAST Software s.r.o.) R0 aswblog; C:\WINDOWS\system32\drivers\aswbloga.sys [343264 2017-07-13] (AVAST Software s.r.o.) R0 aswbuniv; C:\WINDOWS\system32\drivers\aswbuniva.sys [57704 2017-07-13] (AVAST Software s.r.o.) S3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [46984 2017-07-13] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [146664 2017-07-13] (AVAST Software) R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [110352 2017-07-13] (AVAST Software) R0 aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [84392 2017-07-13] (AVAST Software) R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [1015848 2017-07-13] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [585608 2017-07-13] (AVAST Software) R2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [198768 2017-07-13] (AVAST Software) R0 aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [361336 2017-07-13] (AVAST Software) S3 ATP; C:\WINDOWS\System32\DRIVERS\AsusTP.sys [75584 2015-10-07] (ASUS Corporation) R3 e1dexpress; C:\WINDOWS\system32\DRIVERS\e1d65x64.sys [559080 2016-04-19] (Intel Corporation) S3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_2d81f3535ced17c6\nvlddmkm.sys [14461344 2017-06-09] (NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30328 2017-05-03] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48248 2017-05-03] (NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-05-18] (NVIDIA Corporation) R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13512 2015-12-09] () R3 rzendpt; C:\WINDOWS\System32\drivers\rzendpt.sys [50392 2015-10-26] (Razer Inc) R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [44144 2016-09-17] (Razer, Inc.) R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [137840 2016-10-08] (Razer, Inc.) S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] () S3 ssdevfactory; C:\WINDOWS\System32\DRIVERS\ssdevfactory.sys [32792 2015-09-29] (SteelSeries ApS) S3 taphss6; C:\WINDOWS\System32\drivers\taphss6.sys [42064 2016-10-13] (Anchorfree Inc.) R3 VBAudioVACMME; C:\WINDOWS\system32\DRIVERS\vbaudio_cable64_win7.sys [41192 2014-09-02] (Windows (R) Win 7 DDK provider) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-07-14 15:21 - 2017-07-14 15:21 - 00000000 ____D C:\FRST 2017-07-14 14:06 - 2017-07-14 14:14 - 00253856 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2017-07-14 14:06 - 2017-07-14 14:14 - 00101784 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2017-07-14 14:06 - 2017-07-14 14:14 - 00093600 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2017-07-14 14:06 - 2017-07-14 14:14 - 00045472 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2017-07-14 14:06 - 2017-07-14 14:06 - 00188352 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMChameleon.sys 2017-07-14 14:06 - 2017-07-14 14:06 - 00001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2017-07-14 14:06 - 2017-07-14 14:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2017-07-14 14:06 - 2017-07-14 14:06 - 00000000 ____D C:\Program Files\Malwarebytes 2017-07-14 14:06 - 2017-06-27 12:06 - 00077376 _____ C:\WINDOWS\system32\Drivers\mbae64.sys 2017-07-14 14:03 - 2017-07-14 14:14 - 00000406 _____ C:\WINDOWS\Tasks\update-S-1-5-21-173424566-3729193046-2416234265-1000.job 2017-07-14 14:03 - 2017-07-14 14:03 - 00003394 _____ C:\WINDOWS\System32\Tasks\update-S-1-5-21-173424566-3729193046-2416234265-1000 2017-07-14 14:03 - 2017-07-14 14:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightshot 2017-07-14 13:53 - 2017-07-14 13:53 - 00000000 ____D C:\ProgramData\SWCUTemp 2017-07-14 13:49 - 2017-07-14 13:49 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2017-07-14 12:21 - 2017-07-14 14:08 - 00000000 ____D C:\Users\chr1s\Desktop\Viren Scan Logs 2017-07-14 12:17 - 2017-07-14 12:17 - 00467072 _____ (Bleeping Computer, LLC) C:\Users\chr1s\Desktop\sc-cleaner.exe 2017-07-13 13:54 - 2017-07-13 13:54 - 03978360 _____ (Google) C:\Users\chr1s\Downloads\chrome_cleanup_tool.exe 2017-07-13 13:41 - 2017-07-13 13:41 - 00003628 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2017-07-13 13:41 - 2017-07-13 13:41 - 00003504 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2017-07-13 13:41 - 2017-07-13 13:41 - 00002336 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-07-13 13:41 - 2017-07-13 13:41 - 00002324 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-07-13 13:35 - 2017-07-13 13:35 - 00721980 _____ C:\Users\chr1s\Desktop\bookmarks_13.07.17.html 2017-07-13 13:27 - 2017-07-13 13:27 - 04110280 _____ C:\Users\chr1s\Desktop\adwcleaner_6.047__1_.exe 2017-07-13 11:52 - 2017-07-13 11:52 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\TileDataLayer 2017-07-13 11:51 - 2017-07-13 11:51 - 01015848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00585608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00400464 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2017-07-13 11:51 - 2017-07-13 11:51 - 00361336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswvmm.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00343264 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00319984 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00198944 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00198768 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00146664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00110352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00084392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00057704 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00046984 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00003994 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update 2017-07-13 11:51 - 2017-07-13 11:51 - 00001979 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk 2017-07-13 11:51 - 2017-07-13 11:51 - 00001967 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk 2017-07-13 11:51 - 2017-07-13 11:51 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\AVAST Software 2017-07-13 06:10 - 2017-07-13 11:46 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149993921993702 2017-07-13 06:10 - 2017-07-13 11:45 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149993919615602 2017-07-13 06:10 - 2017-07-13 11:43 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149993915978102 2017-07-13 06:10 - 2017-07-13 11:42 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149993903151502 2017-07-13 06:10 - 2017-07-13 06:15 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149993893148402 2017-07-13 06:10 - 2017-07-13 06:15 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149991932371802 2017-07-13 06:10 - 2017-07-13 06:12 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149991930101502 2017-07-13 06:10 - 2017-07-13 06:10 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149991915671802 2017-07-13 05:47 - 2017-07-13 05:50 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991763501502.149991814679602 2017-07-13 05:47 - 2017-07-13 05:50 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991763501502.149991783660902 2017-07-13 05:47 - 2017-07-13 05:47 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991763501502.149991781393702 2017-07-13 05:47 - 2017-06-30 16:47 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-07-13 05:47 - 2017-06-30 16:47 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-07-12 19:25 - 2017-07-07 09:20 - 02021680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2017-07-12 19:25 - 2017-07-07 09:13 - 00554392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2017-07-12 19:25 - 2017-07-07 09:13 - 00336320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe 2017-07-12 19:25 - 2017-07-07 09:10 - 01670496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2017-07-12 19:25 - 2017-07-07 08:57 - 00626528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2017-07-12 19:25 - 2017-07-07 08:57 - 00125344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2017-07-12 19:25 - 2017-07-07 08:39 - 01839872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2017-07-12 19:25 - 2017-07-07 08:39 - 00096128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll 2017-07-12 19:25 - 2017-07-07 08:37 - 02259760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2017-07-12 19:25 - 2017-07-07 08:37 - 01339352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpmde.dll 2017-07-12 19:25 - 2017-07-07 08:31 - 05820984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2017-07-12 19:25 - 2017-07-07 08:31 - 01518088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2017-07-12 19:25 - 2017-07-07 08:31 - 00129184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2017-07-12 19:25 - 2017-07-07 08:30 - 02165752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2017-07-12 19:25 - 2017-07-07 08:30 - 00949920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2017-07-12 19:25 - 2017-07-07 08:30 - 00750496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2017-07-12 19:25 - 2017-07-07 08:29 - 00349600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2017-07-12 19:25 - 2017-07-07 08:29 - 00123520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Clipc.dll 2017-07-12 19:25 - 2017-07-07 08:27 - 06759512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2017-07-12 19:25 - 2017-07-07 08:26 - 20373408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2017-07-12 19:25 - 2017-07-07 08:26 - 01529384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2017-07-12 19:25 - 2017-07-07 08:26 - 01195240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2017-07-12 19:25 - 2017-07-07 08:26 - 00988168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2017-07-12 19:25 - 2017-07-07 08:25 - 00035232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininitext.dll 2017-07-12 19:25 - 2017-07-07 08:24 - 01517472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll 2017-07-12 19:25 - 2017-07-07 08:23 - 00583160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2017-07-12 19:25 - 2017-07-07 08:19 - 00165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2017-07-12 19:25 - 2017-07-07 08:14 - 02956800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2017-07-12 19:25 - 2017-07-07 08:14 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2017-07-12 19:25 - 2017-07-07 08:14 - 00790016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2017-07-12 19:25 - 2017-07-07 08:13 - 13839872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2017-07-12 19:25 - 2017-07-07 08:12 - 02199552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll 2017-07-12 19:25 - 2017-07-07 08:10 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2017-07-12 19:25 - 2017-07-07 08:10 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapprovp.dll 2017-07-12 19:25 - 2017-07-07 08:09 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2017-07-12 19:25 - 2017-07-07 08:07 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\raschap.dll 2017-07-12 19:25 - 2017-07-07 08:06 - 00241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll 2017-07-12 19:25 - 2017-07-07 08:05 - 06728192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2017-07-12 19:25 - 2017-07-07 08:05 - 05719040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2017-07-12 19:25 - 2017-07-07 08:05 - 00502784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll 2017-07-12 19:25 - 2017-07-07 08:05 - 00312320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll 2017-07-12 19:25 - 2017-07-07 08:04 - 05961216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2017-07-12 19:25 - 2017-07-07 08:04 - 01248768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2017-07-12 19:25 - 2017-07-07 08:04 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2017-07-12 19:25 - 2017-07-07 08:04 - 00506368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2017-07-12 19:25 - 2017-07-07 08:04 - 00394240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2017-07-12 19:25 - 2017-07-07 08:03 - 06123520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2017-07-12 19:25 - 2017-07-07 08:03 - 00636416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2017-07-12 19:25 - 2017-07-07 08:03 - 00446464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2017-07-12 19:25 - 2017-07-07 08:02 - 00952832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2017-07-12 19:25 - 2017-07-07 08:01 - 02859520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2017-07-12 19:25 - 2017-07-07 08:00 - 07596544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2017-07-12 19:25 - 2017-07-07 08:00 - 05225984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2017-07-12 19:25 - 2017-07-07 08:00 - 02588160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll 2017-07-12 19:25 - 2017-07-07 08:00 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2017-07-12 19:25 - 2017-07-07 08:00 - 01565184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2017-07-12 19:25 - 2017-07-07 08:00 - 01019904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2017-07-12 19:25 - 2017-07-07 07:59 - 04417024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2017-07-12 19:25 - 2017-07-07 07:59 - 01494016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2017-07-12 19:25 - 2017-07-07 07:59 - 01355264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll 2017-07-12 19:25 - 2017-07-07 07:59 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2017-07-12 19:25 - 2017-07-07 07:58 - 04559360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll 2017-07-12 19:25 - 2017-07-07 07:58 - 02782720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2017-07-12 19:25 - 2017-07-07 07:58 - 02298368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2017-07-12 19:25 - 2017-07-07 07:58 - 01237504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll 2017-07-12 19:25 - 2017-07-07 07:55 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll 2017-07-12 19:25 - 2017-07-07 07:55 - 00329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2017-07-12 19:25 - 2017-07-07 07:53 - 01301504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll 2017-07-12 19:25 - 2017-07-07 07:53 - 00338432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinfo32.exe 2017-07-12 19:25 - 2017-06-20 08:06 - 00279968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2017-07-12 19:25 - 2017-06-20 08:03 - 00820128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2017-07-12 19:25 - 2017-06-20 08:02 - 01055648 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2017-07-12 19:25 - 2017-06-20 07:34 - 00192416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2017-07-12 19:25 - 2017-06-20 07:15 - 00455104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll 2017-07-12 19:25 - 2017-06-20 07:13 - 00787712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2017-07-12 19:25 - 2017-06-20 07:13 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe 2017-07-12 19:25 - 2017-06-20 07:12 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2017-07-12 19:25 - 2017-06-20 07:09 - 00406032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll 2017-07-12 19:25 - 2017-06-20 07:08 - 04469840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2017-07-12 19:25 - 2017-06-20 07:07 - 02475136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2017-07-12 19:25 - 2017-06-20 07:07 - 00346016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2017-07-12 19:25 - 2017-06-20 07:07 - 00138656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll 2017-07-12 19:25 - 2017-06-20 07:06 - 00754592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2017-07-12 19:25 - 2017-06-20 07:06 - 00278944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll 2017-07-12 19:25 - 2017-06-20 07:05 - 00438096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll 2017-07-12 19:25 - 2017-06-20 07:05 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe 2017-07-12 19:25 - 2017-06-20 07:05 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2017-07-12 19:25 - 2017-06-20 07:05 - 00364032 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2017-07-12 19:25 - 2017-06-20 07:04 - 02330520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2017-07-12 19:25 - 2017-06-20 07:04 - 01178528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll 2017-07-12 19:25 - 2017-06-20 07:04 - 01077496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll 2017-07-12 19:25 - 2017-06-20 07:04 - 00181656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2017-07-12 19:25 - 2017-06-20 07:04 - 00049656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msasn1.dll 2017-07-12 19:25 - 2017-06-20 07:03 - 05806048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2017-07-12 19:25 - 2017-06-20 07:03 - 00864240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2017-07-12 19:25 - 2017-06-20 07:03 - 00443728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2017-07-12 19:25 - 2017-06-20 07:02 - 03377664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2017-07-12 19:25 - 2017-06-20 07:02 - 01121928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2017-07-12 19:25 - 2017-06-20 07:02 - 00354400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll 2017-07-12 19:25 - 2017-06-20 07:01 - 00176032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\basecsp.dll 2017-07-12 19:25 - 2017-06-20 07:00 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2017-07-12 19:25 - 2017-06-20 06:56 - 00985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2017-07-12 19:25 - 2017-06-20 06:49 - 00899072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll 2017-07-12 19:25 - 2017-06-20 06:49 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll 2017-07-12 19:25 - 2017-06-20 06:46 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll 2017-07-12 19:25 - 2017-06-20 06:45 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.RetailInfo.dll 2017-07-12 19:25 - 2017-06-20 06:43 - 00173568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll 2017-07-12 19:25 - 2017-06-20 06:43 - 00151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll 2017-07-12 19:25 - 2017-06-20 06:43 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll 2017-07-12 19:25 - 2017-06-20 06:43 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dataclen.dll 2017-07-12 19:25 - 2017-06-20 06:42 - 00641024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certca.dll 2017-07-12 19:25 - 2017-06-20 06:42 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll 2017-07-12 19:25 - 2017-06-20 06:42 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scksp.dll 2017-07-12 19:25 - 2017-06-20 06:42 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll 2017-07-12 19:25 - 2017-06-20 06:41 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2017-07-12 19:25 - 2017-06-20 06:41 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2017-07-12 19:25 - 2017-06-20 06:41 - 00601088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll 2017-07-12 19:25 - 2017-06-20 06:41 - 00433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2017-07-12 19:25 - 2017-06-20 06:41 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll 2017-07-12 19:25 - 2017-06-20 06:40 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2017-07-12 19:25 - 2017-06-20 06:40 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll 2017-07-12 19:25 - 2017-06-20 06:40 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2017-07-12 19:25 - 2017-06-20 06:40 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll 2017-07-12 19:25 - 2017-06-20 06:40 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edputil.dll 2017-07-12 19:25 - 2017-06-20 06:40 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll 2017-07-12 19:25 - 2017-06-20 06:39 - 02814464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll 2017-07-12 19:25 - 2017-06-20 06:39 - 02671616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2017-07-12 19:25 - 2017-06-20 06:39 - 00969728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2017-07-12 19:25 - 2017-06-20 06:39 - 00646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl 2017-07-12 19:25 - 2017-06-20 06:39 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VAN.dll 2017-07-12 19:25 - 2017-06-20 06:39 - 00312320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2017-07-12 19:25 - 2017-06-20 06:38 - 01451008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2017-07-12 19:25 - 2017-06-20 06:38 - 01285120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll 2017-07-12 19:25 - 2017-06-20 06:38 - 01171968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe 2017-07-12 19:25 - 2017-06-20 06:38 - 00648192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll 2017-07-12 19:25 - 2017-06-20 06:38 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2017-07-12 19:25 - 2017-06-20 06:36 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2017-07-12 19:25 - 2017-06-20 06:35 - 02679296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2017-07-12 19:25 - 2017-06-20 06:35 - 02132480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2017-07-12 19:25 - 2017-06-20 06:35 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll 2017-07-12 19:25 - 2017-06-20 06:34 - 04056576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2017-07-12 19:25 - 2017-06-20 06:34 - 02750464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2017-07-12 19:25 - 2017-06-20 06:34 - 02211328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2017-07-12 19:25 - 2017-06-20 06:34 - 01492480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2017-07-12 19:25 - 2017-06-20 06:34 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2017-07-12 19:25 - 2017-06-20 06:31 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2017-07-12 19:25 - 2017-06-20 06:30 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdmaud.drv 2017-07-12 19:25 - 2017-06-20 06:30 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll 2017-07-12 19:25 - 2017-06-20 06:30 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2017-07-12 19:25 - 2017-06-20 06:28 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll 2017-07-12 19:24 - 2017-07-07 16:00 - 00947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll 2017-07-12 19:24 - 2017-07-07 09:27 - 01147288 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2017-07-12 19:24 - 2017-07-07 09:27 - 01024928 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2017-07-12 19:24 - 2017-07-07 09:27 - 00965024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi 2017-07-12 19:24 - 2017-07-07 09:27 - 00821664 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe 2017-07-12 19:24 - 2017-07-07 09:27 - 00750560 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2017-07-12 19:24 - 2017-07-07 09:26 - 01065104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2017-07-12 19:24 - 2017-07-07 09:25 - 00899824 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2017-07-12 19:24 - 2017-07-07 09:24 - 00117664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2017-07-12 19:24 - 2017-07-07 09:23 - 02399728 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2017-07-12 19:24 - 2017-07-07 09:22 - 08318880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-07-12 19:24 - 2017-07-07 09:22 - 01186464 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2017-07-12 19:24 - 2017-07-07 09:22 - 00119384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll 2017-07-12 19:24 - 2017-07-07 09:21 - 32688336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll 2017-07-12 19:24 - 2017-07-07 09:21 - 02969880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll 2017-07-12 19:24 - 2017-07-07 09:20 - 00923040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2017-07-12 19:24 - 2017-07-07 09:20 - 00519584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2017-07-12 19:24 - 2017-07-07 09:20 - 00382368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2017-07-12 19:24 - 2017-07-07 09:17 - 01017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2017-07-12 19:24 - 2017-07-07 09:15 - 02444696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2017-07-12 19:24 - 2017-07-07 09:14 - 07325584 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2017-07-12 19:24 - 2017-07-07 09:14 - 05477088 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll 2017-07-12 19:24 - 2017-07-07 09:14 - 01760264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2017-07-12 19:24 - 2017-07-07 09:14 - 01171032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2017-07-12 19:24 - 2017-07-07 09:13 - 00872472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2017-07-12 19:24 - 2017-07-07 09:13 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Clipc.dll 2017-07-12 19:24 - 2017-07-07 09:12 - 00411040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2017-07-12 19:24 - 2017-07-07 09:12 - 00318232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe 2017-07-12 19:24 - 2017-07-07 09:12 - 00228256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2017-07-12 19:24 - 2017-07-07 09:11 - 07904784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2017-07-12 19:24 - 2017-07-07 09:11 - 00094624 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2017-07-12 19:24 - 2017-07-07 09:10 - 21353208 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2017-07-12 19:24 - 2017-07-07 09:10 - 01337848 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2017-07-12 19:24 - 2017-07-07 09:10 - 01325968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2017-07-12 19:24 - 2017-07-07 09:10 - 00372128 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2017-07-12 19:24 - 2017-07-07 09:10 - 00254168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2017-07-12 19:24 - 2017-07-07 09:09 - 00041376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininitext.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 02229152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 01854880 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 01693600 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 01458584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 01100704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00992672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00848280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00846752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe 2017-07-12 19:24 - 2017-07-07 09:08 - 00844704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00774560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00699808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00672672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00506776 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00399264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll 2017-07-12 19:24 - 2017-07-07 09:07 - 01106848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2017-07-12 19:24 - 2017-07-07 09:07 - 00058488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe 2017-07-12 19:24 - 2017-07-07 08:40 - 23677440 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2017-07-12 19:24 - 2017-07-07 08:37 - 31652264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 03670016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2017-07-12 19:24 - 2017-07-07 08:27 - 01640448 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 01050624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 00577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 00443392 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationExtensions.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 00360960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll 2017-07-12 19:24 - 2017-07-07 08:26 - 17364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2017-07-12 19:24 - 2017-07-07 08:25 - 02199552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2017-07-12 19:24 - 2017-07-07 08:24 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\officecsp.dll 2017-07-12 19:24 - 2017-07-07 08:23 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll 2017-07-12 19:24 - 2017-07-07 08:23 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2017-07-12 19:24 - 2017-07-07 08:23 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2017-07-12 19:24 - 2017-07-07 08:23 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapprovp.dll 2017-07-12 19:24 - 2017-07-07 08:22 - 07931392 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2017-07-12 19:24 - 2017-07-07 08:22 - 00520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2017-07-12 19:24 - 2017-07-07 08:21 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncCsp.dll 2017-07-12 19:24 - 2017-07-07 08:21 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2017-07-12 19:24 - 2017-07-07 08:20 - 23681536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-07-12 19:24 - 2017-07-07 08:20 - 08331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2017-07-12 19:24 - 2017-07-07 08:20 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll 2017-07-12 19:24 - 2017-07-07 08:19 - 07149056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2017-07-12 19:24 - 2017-07-07 08:19 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2017-07-12 19:24 - 2017-07-07 08:19 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2017-07-12 19:24 - 2017-07-07 08:19 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschap.dll 2017-07-12 19:24 - 2017-07-07 08:18 - 07336448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2017-07-12 19:24 - 2017-07-07 08:18 - 00563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll 2017-07-12 19:24 - 2017-07-07 08:18 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2017-07-12 19:24 - 2017-07-07 08:18 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2017-07-12 19:24 - 2017-07-07 08:18 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll 2017-07-12 19:24 - 2017-07-07 08:17 - 01878016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2017-07-12 19:24 - 2017-07-07 08:17 - 01260544 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2017-07-12 19:24 - 2017-07-07 08:17 - 00692736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2017-07-12 19:24 - 2017-07-07 08:17 - 00588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2017-07-12 19:24 - 2017-07-07 08:17 - 00536064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2017-07-12 19:24 - 2017-07-07 08:17 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2017-07-12 19:24 - 2017-07-07 08:17 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe 2017-07-12 19:24 - 2017-07-07 08:16 - 12786176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-07-12 19:24 - 2017-07-07 08:16 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2017-07-12 19:24 - 2017-07-07 08:16 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2017-07-12 19:24 - 2017-07-07 08:15 - 08238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2017-07-12 19:24 - 2017-07-07 08:15 - 00922112 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2017-07-12 19:24 - 2017-07-07 08:14 - 08211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2017-07-12 19:24 - 2017-07-07 08:14 - 03784704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll 2017-07-12 19:24 - 2017-07-07 08:14 - 01802240 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2017-07-12 19:24 - 2017-07-07 08:14 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2017-07-12 19:24 - 2017-07-07 08:14 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2017-07-12 19:24 - 2017-07-07 08:13 - 05892096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2017-07-12 19:24 - 2017-07-07 08:13 - 00840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 04730880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 03307008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 02499584 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 02055168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2017-07-12 19:24 - 2017-07-07 08:12 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 01420800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 01305088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 01293824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 01142272 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 00706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2017-07-12 19:24 - 2017-07-07 08:11 - 03139584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 02829824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 02649600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 02177024 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 01812480 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 00986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2017-07-12 19:24 - 2017-07-07 08:10 - 05557760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2017-07-12 19:24 - 2017-07-07 08:10 - 04707840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2017-07-12 19:24 - 2017-07-07 08:10 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2017-07-12 19:24 - 2017-07-07 08:09 - 20504576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2017-07-12 19:24 - 2017-07-07 08:08 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2017-07-12 19:24 - 2017-07-07 08:07 - 00430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2017-07-12 19:24 - 2017-07-07 08:07 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll 2017-07-12 19:24 - 2017-07-07 08:07 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll 2017-07-12 19:24 - 2017-07-07 08:06 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2017-07-12 19:24 - 2017-07-07 08:06 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll 2017-07-12 19:24 - 2017-07-07 08:05 - 19335168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-07-12 19:24 - 2017-07-07 08:05 - 11870720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-07-12 19:24 - 2017-07-07 08:05 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe 2017-07-12 19:24 - 2017-07-07 08:04 - 01703424 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2017-07-12 19:24 - 2017-07-07 08:04 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll 2017-07-12 19:24 - 2017-07-07 08:04 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll 2017-07-12 19:24 - 2017-07-07 08:02 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2017-07-12 19:24 - 2017-07-07 08:01 - 06287360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2017-07-12 19:24 - 2017-07-07 07:59 - 03656704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2017-07-12 19:24 - 2017-07-02 00:52 - 00031932 _____ C:\WINDOWS\system32\edgehtmlpluginpolicy.bin 2017-07-12 19:24 - 2017-06-20 08:18 - 01564576 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2017-07-12 19:24 - 2017-06-20 08:18 - 00096672 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2017-07-12 19:24 - 2017-06-20 08:17 - 00629152 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2017-07-12 19:24 - 2017-06-20 08:17 - 00544160 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2017-07-12 19:24 - 2017-06-20 08:17 - 00334240 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2017-07-12 19:24 - 2017-06-20 08:17 - 00136096 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2017-07-12 19:24 - 2017-06-20 08:17 - 00034720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2017-07-12 19:24 - 2017-06-20 08:16 - 01214880 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2017-07-12 19:24 - 2017-06-20 08:16 - 00335776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2017-07-12 19:24 - 2017-06-20 08:15 - 00233376 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2017-07-12 19:24 - 2017-06-20 08:11 - 01395152 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2017-07-12 19:24 - 2017-06-20 08:11 - 00411992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll 2017-07-12 19:24 - 2017-06-20 08:10 - 02327456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2017-07-12 19:24 - 2017-06-20 08:10 - 01930320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2017-07-12 19:24 - 2017-06-20 08:08 - 01242528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2017-07-12 19:24 - 2017-06-20 08:05 - 01057832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2017-07-12 19:24 - 2017-06-20 08:04 - 04847424 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2017-07-12 19:24 - 2017-06-20 08:04 - 00472728 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll 2017-07-12 19:24 - 2017-06-20 08:03 - 00179608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll 2017-07-12 19:24 - 2017-06-20 08:03 - 00102312 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialUIBroker.exe 2017-07-12 19:24 - 2017-06-20 08:02 - 02645688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2017-07-12 19:24 - 2017-06-20 08:02 - 00426912 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2017-07-12 19:24 - 2017-06-20 08:00 - 00558920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll 2017-07-12 19:24 - 2017-06-20 08:00 - 00255904 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2017-07-12 19:24 - 2017-06-20 08:00 - 00142752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys 2017-07-12 19:24 - 2017-06-20 07:59 - 06554928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2017-07-12 19:24 - 2017-06-20 07:59 - 01220072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2017-07-12 19:24 - 2017-06-20 07:59 - 01054280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2017-07-12 19:24 - 2017-06-20 07:59 - 00583304 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2017-07-12 19:24 - 2017-06-20 07:59 - 00467504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2017-07-12 19:24 - 2017-06-20 07:58 - 00833160 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2017-07-12 19:24 - 2017-06-20 07:58 - 00406072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll 2017-07-12 19:24 - 2017-06-20 07:58 - 00203168 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll 2017-07-12 19:24 - 2017-06-20 07:57 - 02681760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2017-07-12 19:24 - 2017-06-20 07:57 - 00204192 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll 2017-07-12 19:24 - 2017-06-20 07:16 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll 2017-07-12 19:24 - 2017-06-20 07:16 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll 2017-07-12 19:24 - 2017-06-20 07:15 - 01620368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2017-07-12 19:24 - 2017-06-20 07:14 - 01150784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll 2017-07-12 19:24 - 2017-06-20 07:14 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys 2017-07-12 19:24 - 2017-06-20 07:13 - 00216064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll 2017-07-12 19:24 - 2017-06-20 07:13 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll 2017-07-12 19:24 - 2017-06-20 07:13 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgr.dll 2017-07-12 19:24 - 2017-06-20 07:12 - 00293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2017-07-12 19:24 - 2017-06-20 07:12 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyMATEnc.dll 2017-07-12 19:24 - 2017-06-20 07:12 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll 2017-07-12 19:24 - 2017-06-20 07:12 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys 2017-07-12 19:24 - 2017-06-20 07:11 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScDeviceEnum.dll 2017-07-12 19:24 - 2017-06-20 07:11 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2017-07-12 19:24 - 2017-06-20 07:10 - 00778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyHrtfEnc.dll 2017-07-12 19:24 - 2017-06-20 07:10 - 00722432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2017-07-12 19:24 - 2017-06-20 07:10 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll 2017-07-12 19:24 - 2017-06-20 07:10 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll 2017-07-12 19:24 - 2017-06-20 07:10 - 00188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll 2017-07-12 19:24 - 2017-06-20 07:10 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgrSvc.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00357888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe 2017-07-12 19:24 - 2017-06-20 07:09 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\certprop.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll 2017-07-12 19:24 - 2017-06-20 07:07 - 00916992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2017-07-12 19:24 - 2017-06-20 07:07 - 00823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2017-07-12 19:24 - 2017-06-20 07:07 - 00757248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2017-07-12 19:24 - 2017-06-20 07:07 - 00632832 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2017-07-12 19:24 - 2017-06-20 07:07 - 00626176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2017-07-12 19:24 - 2017-06-20 07:07 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll 2017-07-12 19:24 - 2017-06-20 07:07 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll 2017-07-12 19:24 - 2017-06-20 07:07 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00847872 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 04447744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 02873344 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 01468416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 00696320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl 2017-07-12 19:24 - 2017-06-20 07:05 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll 2017-07-12 19:24 - 2017-06-20 07:04 - 01818624 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2017-07-12 19:24 - 2017-06-20 07:04 - 01425920 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe 2017-07-12 19:24 - 2017-06-20 07:04 - 01177600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2017-07-12 19:24 - 2017-06-20 07:04 - 00899072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll 2017-07-12 19:24 - 2017-06-20 07:04 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2017-07-12 19:24 - 2017-06-20 07:04 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2017-07-12 19:24 - 2017-06-20 07:04 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll 2017-07-12 19:24 - 2017-06-20 07:03 - 02077184 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2017-07-12 19:24 - 2017-06-20 07:03 - 01396224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2017-07-12 19:24 - 2017-06-20 07:02 - 03204096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll 2017-07-12 19:24 - 2017-06-20 07:02 - 02804736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2017-07-12 19:24 - 2017-06-20 07:02 - 01886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2017-07-12 19:24 - 2017-06-20 07:02 - 00681984 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2017-07-12 19:24 - 2017-06-20 07:02 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 04536320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 04396032 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 03803136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 03332096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 01076736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 00809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 00397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll 2017-07-12 19:24 - 2017-06-20 07:00 - 03057664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2017-07-12 19:24 - 2017-06-20 07:00 - 02171392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2017-07-12 19:24 - 2017-06-20 06:59 - 02938880 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2017-07-12 19:24 - 2017-06-20 06:59 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2017-07-12 19:24 - 2017-06-20 06:59 - 01357824 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2017-07-12 19:24 - 2017-06-20 06:58 - 00625152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2017-07-12 19:24 - 2017-06-20 06:57 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2017-07-12 19:24 - 2017-06-20 06:57 - 00138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMPushRouterCore.dll 2017-07-12 19:24 - 2017-06-20 06:56 - 00600064 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll 2017-07-12 19:24 - 2017-06-20 06:56 - 00241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdmaud.drv 2017-07-12 19:24 - 2017-06-20 06:54 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DmApiSetExtImplDesktop.dll 2017-07-12 19:24 - 2017-06-20 06:45 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2017-07-12 19:24 - 2017-06-20 06:43 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2017-07-12 19:24 - 2017-06-20 06:43 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2017-07-12 19:24 - 2017-06-20 06:43 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2017-07-12 19:24 - 2017-06-20 06:42 - 00338432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2017-07-12 19:24 - 2017-06-20 06:42 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2017-07-12 19:24 - 2017-06-20 06:38 - 00663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2017-07-12 19:24 - 2017-06-20 06:37 - 02008576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2017-07-11 09:32 - 2017-07-14 07:33 - 00003128 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner 2017-07-01 07:32 - 2017-07-02 07:56 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\Twitch 2017-07-01 07:32 - 2017-07-01 07:32 - 00001082 _____ C:\Users\chr1s\Desktop\Twitch.lnk 2017-07-01 07:32 - 2017-07-01 07:32 - 00001068 _____ C:\Users\chr1s\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch.lnk 2017-07-01 07:32 - 2017-07-01 07:32 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\Twitch Setup 2017-06-30 17:33 - 2017-06-30 17:33 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini 2017-06-30 12:32 - 2017-06-30 13:36 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149881873396803.149882260687503 2017-06-30 12:32 - 2017-06-30 12:35 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149881873396803.149882257353103 2017-06-30 12:32 - 2017-06-30 12:35 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149881873396803.149881893978103 2017-06-30 12:32 - 2017-06-30 12:32 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149881873396803.149881890867103 2017-06-30 07:40 - 2017-06-30 07:41 - 00000000 ____D C:\Users\chr1s\Desktop\Uhr 2017-06-21 13:22 - 2017-06-08 01:38 - 00134592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2017-06-21 13:20 - 2017-06-08 03:45 - 40201664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 35390584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 35281344 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 28624320 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 11056272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 11028664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 10551256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 09248144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 09014976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 08808488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 03796928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 03256440 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 01988216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438253.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 01606776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438253.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 01278712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 01275944 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 01056888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00995736 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00994240 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00993360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00964216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00914880 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00775864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00725112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00688784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00618928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00612088 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00609728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00584128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00577728 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00499320 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00045976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2017-06-19 13:26 - 2017-06-19 13:26 - 00000000 ____D C:\Users\chr1s\Documents\Heroes of the Storm 2017-06-15 07:48 - 2017-06-15 08:52 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750569168703.149751118176503 2017-06-15 07:48 - 2017-06-15 08:51 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750569168703.149750954053103 2017-06-15 07:48 - 2017-06-15 07:51 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750569168703.149750951232803 2017-06-15 07:48 - 2017-06-15 07:50 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750569168703.149750588481203 2017-06-15 07:48 - 2017-06-15 07:48 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750569168703.149750585754603 2017-06-15 07:33 - 2017-06-15 07:36 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750478860903.149750499301503 2017-06-15 07:33 - 2017-06-15 07:33 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750478860903.149750496039003 2017-06-14 17:42 - 2017-06-14 17:42 - 00000000 ____D C:\WINDOWS\PCHEALTH 2017-06-14 17:41 - 2017-06-03 12:09 - 01003624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll 2017-06-14 17:41 - 2017-06-03 12:07 - 00119712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys 2017-06-14 17:41 - 2017-06-03 12:00 - 00219040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2017-06-14 17:41 - 2017-06-03 11:59 - 01409048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2017-06-14 17:41 - 2017-06-03 11:59 - 00311200 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2017-06-14 17:41 - 2017-06-03 11:59 - 00259400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe 2017-06-14 17:41 - 2017-06-03 11:26 - 00266640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\capauthz.dll 2017-06-14 17:41 - 2017-06-03 11:23 - 00573856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll 2017-06-14 17:41 - 2017-06-03 11:14 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2017-06-14 17:41 - 2017-06-03 11:12 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2017-06-14 17:41 - 2017-06-03 11:11 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2017-06-14 17:41 - 2017-06-03 11:11 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll 2017-06-14 17:41 - 2017-06-03 11:11 - 00038912 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2017-06-14 17:41 - 2017-06-03 11:11 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys 2017-06-14 17:41 - 2017-06-03 11:11 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2017-06-14 17:41 - 2017-06-03 11:10 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2017-06-14 17:41 - 2017-06-03 11:09 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll 2017-06-14 17:41 - 2017-06-03 11:09 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\devicengccredprov.dll 2017-06-14 17:41 - 2017-06-03 11:09 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2017-06-14 17:41 - 2017-06-03 11:07 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2017-06-14 17:41 - 2017-06-03 11:05 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll 2017-06-14 17:41 - 2017-06-03 11:05 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devicengccredprov.dll 2017-06-14 17:41 - 2017-06-03 11:04 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2017-06-14 17:41 - 2017-06-03 11:03 - 00467456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll 2017-06-14 17:41 - 2017-06-03 11:00 - 00933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2017-06-14 17:41 - 2017-06-03 11:00 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2017-06-14 17:41 - 2017-06-03 10:59 - 00975360 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe 2017-06-14 17:41 - 2017-06-03 10:58 - 02516480 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2017-06-14 17:41 - 2017-06-03 10:58 - 01046016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2017-06-14 17:41 - 2017-06-03 10:58 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2017-06-14 17:41 - 2017-06-03 10:57 - 06535168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2017-06-14 17:41 - 2017-06-03 10:57 - 00797184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2017-06-14 17:41 - 2017-06-03 10:54 - 02341376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2017-06-14 17:41 - 2017-06-03 10:54 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\pwcreator.exe 2017-06-14 17:41 - 2017-05-20 11:13 - 01333136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2017-06-14 17:41 - 2017-05-20 10:55 - 00606960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2017-06-14 17:41 - 2017-05-20 10:47 - 01474800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2017-06-14 17:41 - 2017-05-20 10:46 - 01266544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2017-06-14 17:41 - 2017-05-20 10:44 - 00519680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2017-06-14 17:41 - 2017-05-20 10:43 - 04672848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2017-06-14 17:41 - 2017-05-20 10:43 - 02424016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2017-06-14 17:41 - 2017-05-20 10:43 - 01455592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2017-06-14 17:41 - 2017-05-20 10:27 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll 2017-06-14 17:41 - 2017-05-20 10:26 - 00059904 _____ C:\WINDOWS\SysWOW64\xboxgipsynthetic.dll 2017-06-14 17:41 - 2017-05-20 10:26 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll 2017-06-14 17:41 - 2017-05-20 10:25 - 00826368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSMDesktopProvider.dll 2017-06-14 17:41 - 2017-05-20 10:25 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll 2017-06-14 17:41 - 2017-05-20 10:22 - 01292288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2017-06-14 17:41 - 2017-05-20 10:22 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll 2017-06-14 17:41 - 2017-05-20 10:22 - 00394240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll 2017-06-14 17:41 - 2017-05-20 10:21 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll 2017-06-14 17:41 - 2017-05-20 10:21 - 00476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2017-06-14 17:41 - 2017-05-20 10:21 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll 2017-06-14 17:41 - 2017-05-20 10:20 - 00807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2017-06-14 17:41 - 2017-05-20 10:17 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2017-06-14 17:41 - 2017-05-20 10:16 - 00899584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2017-06-14 17:41 - 2017-05-20 10:15 - 02088960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll 2017-06-14 17:41 - 2017-05-20 10:14 - 01035264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll 2017-06-14 17:41 - 2017-05-20 10:11 - 01536512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2017-06-14 17:41 - 2017-05-20 10:10 - 00332800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll 2017-06-14 17:41 - 2017-05-20 10:10 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll 2017-06-14 17:41 - 2017-05-20 10:08 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RstrtMgr.dll 2017-06-14 17:41 - 2017-05-20 09:07 - 00287648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2017-06-14 17:41 - 2017-05-20 09:03 - 00777400 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2017-06-14 17:41 - 2017-05-20 08:58 - 00188824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2017-06-14 17:41 - 2017-05-20 08:55 - 01911752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2017-06-14 17:41 - 2017-05-20 08:55 - 00211872 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2017-06-14 17:41 - 2017-05-20 08:54 - 00730016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2017-06-14 17:41 - 2017-05-20 08:54 - 00546208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2017-06-14 17:41 - 2017-05-20 08:54 - 00144288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys 2017-06-14 17:41 - 2017-05-20 08:53 - 00363424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2017-06-14 17:41 - 2017-05-20 08:52 - 04709528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2017-06-14 17:41 - 2017-05-20 08:52 - 01700408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2017-06-14 17:41 - 2017-05-20 08:51 - 02604256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2017-06-14 17:41 - 2017-05-20 08:48 - 00387928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll 2017-06-14 17:41 - 2017-05-20 08:10 - 00809472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSSO.dll 2017-06-14 17:41 - 2017-05-20 08:08 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll 2017-06-14 17:41 - 2017-05-20 08:08 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rootmdm.sys 2017-06-14 17:41 - 2017-05-20 08:07 - 00277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys 2017-06-14 17:41 - 2017-05-20 08:07 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSaveExt.dll 2017-06-14 17:41 - 2017-05-20 08:07 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmptrap.exe 2017-06-14 17:41 - 2017-05-20 08:06 - 00232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll 2017-06-14 17:41 - 2017-05-20 08:00 - 01078272 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2017-06-14 17:41 - 2017-05-20 07:59 - 01141760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2017-06-14 17:41 - 2017-05-20 07:58 - 03135488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll 2017-06-14 17:41 - 2017-05-20 07:58 - 00909824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll 2017-06-14 17:41 - 2017-05-20 07:52 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll 2017-06-14 17:41 - 2017-05-20 07:52 - 00476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll 2017-06-14 17:41 - 2017-05-20 07:51 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll 2017-06-14 17:41 - 2017-05-20 07:50 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll 2017-06-14 17:40 - 2017-06-03 12:15 - 01596600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2017-06-14 17:40 - 2017-06-03 12:15 - 00382368 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2017-06-14 17:40 - 2017-06-03 12:10 - 00130464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys 2017-06-14 17:40 - 2017-06-03 12:00 - 00321376 _____ (Microsoft Corporation) C:\WINDOWS\system32\capauthz.dll 2017-06-14 17:40 - 2017-06-03 11:58 - 00660384 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll 2017-06-14 17:40 - 2017-06-03 11:14 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll 2017-06-14 17:40 - 2017-06-03 11:14 - 00047104 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2017-06-14 17:40 - 2017-06-03 11:10 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCredentialDeployment.exe 2017-06-14 17:40 - 2017-06-03 11:07 - 00778240 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2017-06-14 17:40 - 2017-06-03 11:07 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe 2017-06-14 17:40 - 2017-06-03 11:06 - 00551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll 2017-06-14 17:40 - 2017-06-03 11:01 - 06726656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe 2017-06-14 17:40 - 2017-06-03 10:59 - 02625024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2017-06-14 17:40 - 2017-06-03 10:51 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\bfsvc.exe 2017-06-14 17:40 - 2017-05-20 10:29 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2017-06-14 17:40 - 2017-05-20 09:08 - 01459728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2017-06-14 17:40 - 2017-05-20 09:08 - 00543648 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2017-06-14 17:40 - 2017-05-20 08:59 - 00112544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys 2017-06-14 17:40 - 2017-05-20 08:56 - 00712608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2017-06-14 17:40 - 2017-05-20 08:56 - 00370928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2017-06-14 17:40 - 2017-05-20 08:55 - 01506712 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2017-06-14 17:40 - 2017-05-20 08:55 - 00961952 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll 2017-06-14 17:40 - 2017-05-20 08:53 - 00654976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2017-06-14 17:40 - 2017-05-20 08:10 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2017-06-14 17:40 - 2017-05-20 08:10 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrvext.dll 2017-06-14 17:40 - 2017-05-20 08:10 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksthunk.sys 2017-06-14 17:40 - 2017-05-20 08:09 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll 2017-06-14 17:40 - 2017-05-20 08:08 - 00086016 _____ C:\WINDOWS\system32\xboxgipsynthetic.dll 2017-06-14 17:40 - 2017-05-20 08:06 - 00866816 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSMDesktopProvider.dll 2017-06-14 17:40 - 2017-05-20 08:06 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll 2017-06-14 17:40 - 2017-05-20 08:03 - 00892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll 2017-06-14 17:40 - 2017-05-20 08:03 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll 2017-06-14 17:40 - 2017-05-20 08:03 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Display.dll 2017-06-14 17:40 - 2017-05-20 08:02 - 00616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll 2017-06-14 17:40 - 2017-05-20 08:02 - 00601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll 2017-06-14 17:40 - 2017-05-20 08:01 - 02347520 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll 2017-06-14 17:40 - 2017-05-20 08:01 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll 2017-06-14 17:40 - 2017-05-20 08:01 - 00586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2017-06-14 17:40 - 2017-05-20 08:01 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\embeddedmodesvc.dll 2017-06-14 17:40 - 2017-05-20 08:00 - 01067008 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll 2017-06-14 17:40 - 2017-05-20 07:59 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2017-06-14 17:40 - 2017-05-20 07:59 - 00972800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2017-06-14 17:40 - 2017-05-20 07:58 - 01046016 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll 2017-06-14 17:40 - 2017-05-20 07:56 - 02730496 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe 2017-06-14 17:40 - 2017-05-20 07:55 - 01102848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2017-06-14 17:40 - 2017-05-20 07:54 - 01275904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll 2017-06-14 17:40 - 2017-05-20 07:51 - 01706496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2017-06-14 17:40 - 2017-05-20 07:50 - 00439808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll 2017-06-14 17:40 - 2017-05-20 07:48 - 02438656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll 2017-06-14 17:40 - 2017-05-20 07:48 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll 2017-06-14 17:40 - 2017-05-20 07:47 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll 2017-06-14 17:40 - 2017-05-20 07:47 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\RstrtMgr.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-07-14 15:19 - 2015-10-14 11:27 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\TS3Client 2017-07-14 14:55 - 2015-10-13 22:00 - 00000000 ____D C:\Program Files (x86)\Steam 2017-07-14 14:20 - 2017-05-16 14:12 - 02460474 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-07-14 14:20 - 2017-03-20 06:41 - 01085826 _____ C:\WINDOWS\system32\perfh007.dat 2017-07-14 14:20 - 2017-03-20 06:41 - 00254654 _____ C:\WINDOWS\system32\perfc007.dat 2017-07-14 14:17 - 2017-03-03 13:04 - 00000000 ____D C:\Users\chr1s\AppData\LocalLow\Mozilla 2017-07-14 14:14 - 2017-05-16 14:17 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-07-14 14:14 - 2017-05-16 14:13 - 00000000 ____D C:\Users\chr1s 2017-07-14 14:14 - 2017-05-16 14:12 - 00000000 ____D C:\ProgramData\NVIDIA 2017-07-14 14:06 - 2015-10-29 15:11 - 00000000 ____D C:\ProgramData\Malwarebytes 2017-07-14 14:03 - 2016-06-06 14:49 - 00000425 _____ C:\Users\chr1s\AppData\Local\UserProducts.xml 2017-07-14 14:00 - 2017-05-23 16:56 - 00000000 ____D C:\Users\chr1s\AppData\Local\CrashDumps 2017-07-14 13:51 - 2017-03-18 13:40 - 01835008 _____ C:\WINDOWS\system32\config\BBI 2017-07-14 13:50 - 2015-10-14 11:58 - 00000000 ____D C:\Users\chr1s\AppData\Local\Adobe 2017-07-14 13:49 - 2017-05-16 14:17 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2017-07-14 13:49 - 2015-10-14 12:01 - 00000000 ____D C:\Program Files (x86)\Adobe 2017-07-14 13:46 - 2017-05-16 14:11 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2017-07-14 12:12 - 2015-10-29 15:09 - 00000000 ____D C:\AdwCleaner 2017-07-14 12:10 - 2015-10-13 22:54 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\vlc 2017-07-14 11:17 - 2017-03-18 23:03 - 00000000 ___HD C:\Program Files\WindowsApps 2017-07-14 11:17 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-07-14 07:33 - 2017-05-16 14:12 - 00062308 _____ C:\WINDOWS\system32\BMXStateBkp-{00000003-00000000-00000000-00001102-0000000B-00431102}.rfx 2017-07-14 07:33 - 2017-05-16 14:12 - 00062308 _____ C:\WINDOWS\system32\BMXState-{00000003-00000000-00000000-00001102-0000000B-00431102}.rfx 2017-07-14 07:33 - 2017-05-16 14:12 - 00000820 _____ C:\WINDOWS\system32\DVCState-{00000003-00000000-00000000-00001102-0000000B-00431102}.rfx 2017-07-14 07:32 - 2017-05-09 08:13 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\Zoom 2017-07-13 13:44 - 2015-10-13 22:04 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-07-13 13:42 - 2015-11-06 21:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-07-13 13:41 - 2016-11-25 20:03 - 00000000 ____D C:\Program Files\OBS 2017-07-13 13:41 - 2016-11-25 20:03 - 00000000 ____D C:\Program Files (x86)\OBS 2017-07-13 13:41 - 2015-10-13 16:47 - 00000000 ____D C:\Users\chr1s\AppData\Local\Google 2017-07-13 13:41 - 2015-10-13 16:47 - 00000000 ____D C:\Program Files (x86)\Google 2017-07-13 13:32 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2017-07-13 13:32 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\Macromed 2017-07-13 12:02 - 2016-08-12 01:16 - 00000000 ____D C:\ProgramData\Skype 2017-07-13 11:51 - 2017-06-06 18:39 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys 2017-07-13 11:51 - 2015-10-13 22:04 - 00000000 ____D C:\Program Files\AVAST Software 2017-07-13 11:49 - 2015-10-13 22:04 - 00000000 ____D C:\ProgramData\AVAST Software 2017-07-13 11:48 - 2015-12-04 09:26 - 00000000 ____D C:\Program Files\Common Files\AV 2017-07-13 11:47 - 2016-09-28 18:12 - 00000000 _____ C:\WINDOWS\SysWOW64\last.dump 2017-07-13 11:45 - 2017-03-18 23:01 - 00000000 ____D C:\WINDOWS\INF 2017-07-13 05:55 - 2017-06-06 18:39 - 00061304 _____ () C:\WINDOWS\SMSS-PFRO4323.tmp 2017-07-13 05:47 - 2016-04-27 07:55 - 00000000 __RHD C:\Users\Public\AccountPictures 2017-07-13 05:46 - 2017-05-16 14:11 - 00303368 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-07-12 21:11 - 2017-03-20 06:42 - 00000000 ____D C:\WINDOWS\OCR 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ___SD C:\WINDOWS\system32\F12 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ___RD C:\Program Files\Windows Defender 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\oobe 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\migwiz 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\appraiser 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\ShellExperiences 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2017-07-12 19:30 - 2017-03-18 22:51 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-07-12 19:28 - 2016-06-05 13:39 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-07-12 19:26 - 2016-06-05 13:39 - 135225752 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-07-11 17:48 - 2017-06-06 18:39 - 00061304 _____ () C:\WINDOWS\SMSS-PFRO4575.tmp 2017-07-11 17:48 - 2015-10-13 22:05 - 00360792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswvmm.sys.149978813348406 2017-07-11 08:46 - 2015-10-14 12:04 - 00000000 ____D C:\Users\chr1s\AppData\Local\Spotify 2017-07-11 06:32 - 2015-10-14 12:02 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\Spotify 2017-07-07 09:27 - 2015-10-13 16:38 - 00000000 ____D C:\Users\chr1s\AppData\Local\JDownloader v2.0 2017-07-04 16:48 - 2017-02-19 20:20 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\obs-studio 2017-07-04 16:44 - 2016-11-25 20:04 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\OBS 2017-07-02 18:39 - 2016-01-27 16:05 - 00000000 ____D C:\Users\chr1s\AppData\Local\Ubisoft Game Launcher 2017-07-02 15:42 - 2016-11-30 12:28 - 00753192 _____ C:\WINDOWS\system32\Drivers\EasyAntiCheat.sys 2017-06-30 22:36 - 2016-08-12 01:16 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\Skype 2017-06-30 17:33 - 2017-05-16 14:13 - 00000000 ____D C:\Users\DefaultAppPool 2017-06-30 13:36 - 2017-06-06 18:39 - 00061304 _____ () C:\WINDOWS\SMSS-PFRO7f03.tmp 2017-06-30 12:28 - 2015-10-14 13:49 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client 2017-06-29 20:51 - 2015-10-14 11:36 - 00000000 ____D C:\Users\chr1s\AppData\Local\Battle.net 2017-06-29 13:17 - 2017-02-19 20:19 - 00001275 _____ C:\Users\Public\Desktop\OBS Studio.lnk 2017-06-28 08:53 - 2016-01-05 15:20 - 00000000 ____D C:\Users\chr1s\Documents\Diablo III 2017-06-21 13:22 - 2017-05-16 14:12 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2017-06-21 13:22 - 2017-04-25 15:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2017-06-18 15:34 - 2016-08-19 11:58 - 00000000 ____D C:\Users\chr1s\Desktop\Memes 2017-06-17 15:48 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\rescache 2017-06-15 09:32 - 2017-03-20 14:54 - 00000000 ___RD C:\Program Files (x86)\Skype 2017-06-15 09:19 - 2017-06-06 18:39 - 00061304 _____ () C:\WINDOWS\SMSS-PFRO43a0.tmp 2017-06-15 07:36 - 2017-06-06 18:39 - 00061304 _____ () C:\WINDOWS\SMSS-PFRO441d.tmp 2017-06-15 07:34 - 2010-11-21 05:27 - 00565416 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2017-06-15 07:33 - 2017-03-18 13:40 - 00032768 _____ C:\WINDOWS\system32\config\ELAM 2017-06-15 07:32 - 2016-09-29 08:26 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2017-06-15 07:32 - 2016-09-29 08:26 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2017-06-14 21:09 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2017-06-14 17:43 - 2016-09-29 08:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2016-06-06 14:49 - 2016-06-06 14:49 - 0000003 _____ () C:\Users\chr1s\AppData\Local\updater.log 2016-06-06 14:49 - 2017-07-14 14:03 - 0000425 _____ () C:\Users\chr1s\AppData\Local\UserProducts.xml Einige Dateien in TEMP: ==================== 2017-07-14 07:32 - 2017-05-09 08:13 - 0034992 _____ (Zoom Video Communications, Inc.) C:\Users\chr1s\AppData\Local\Temp\CptInstall.exe 2017-07-14 07:32 - 2017-05-09 08:13 - 0147120 _____ (Zoom Video Communications, Inc.) C:\Users\chr1s\AppData\Local\Temp\CptShare.dll 2017-05-05 12:53 - 2017-05-18 07:21 - 0754864 _____ (NVIDIA Corporation) C:\Users\chr1s\AppData\Local\Temp\nvSCPAPI.dll 2017-05-05 12:53 - 2017-05-18 07:21 - 0869200 _____ (NVIDIA Corporation) C:\Users\chr1s\AppData\Local\Temp\nvSCPAPI64.dll 2017-05-23 13:22 - 2017-05-18 07:21 - 0367552 _____ (NVIDIA Corporation) C:\Users\chr1s\AppData\Local\Temp\nvStInst.exe 2017-07-07 09:26 - 2017-07-07 09:26 - 0040448 ____N () C:\Users\chr1s\AppData\Local\Temp\proxy_vole3085512551040751523.dll 2017-07-07 09:26 - 2017-07-07 09:26 - 0040448 ____N () C:\Users\chr1s\AppData\Local\Temp\proxy_vole3884867628677391909.dll 2017-07-07 09:26 - 2017-07-07 09:26 - 0040448 ____N () C:\Users\chr1s\AppData\Local\Temp\proxy_vole6110799048519171655.dll 2017-05-16 16:16 - 2017-05-27 15:51 - 0192512 _____ () C:\Users\chr1s\AppData\Local\Temp\sfamcc00001.dll 2017-05-31 10:09 - 2017-05-31 10:10 - 30950664 _____ () C:\Users\chr1s\AppData\Local\Temp\vlc-2.2.6-win32.exe 2017-07-14 07:32 - 2017-05-09 08:13 - 0090288 _____ () C:\Users\chr1s\AppData\Local\Temp\zCrashReport.dll ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2017-07-06 16:19 ==================== Ende von FRST.txt ============================ |
14.07.2017, 14:24 | #6 |
| Über Piesearch zu Bing, keine Lösung Addition Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 13-07-2017 durchgeführt von chr1s (14-07-2017 15:21:50) Gestartet von D:\Firefox Downloads Windows 10 Pro Version 1703 (X64) (2017-05-16 12:20:16) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-173424566-3729193046-2416234265-500 - Administrator - Disabled) chr1s (S-1-5-21-173424566-3729193046-2416234265-1000 - Administrator - Enabled) => C:\Users\chr1s DefaultAccount (S-1-5-21-173424566-3729193046-2416234265-503 - Limited - Disabled) Gast (S-1-5-21-173424566-3729193046-2416234265-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-173424566-3729193046-2416234265-1002 - Limited - Enabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Disabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated) Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.137 - Adobe Systems Incorporated) Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 382.53 - NVIDIA Corporation) Hidden Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.26.1 - Asmedia Technology) Assassin's Creed Syndicate Gold Edition MULTi2 1.0 (HKLM-x32\...\Assassin's Creed Syndicate Gold Edition MULTi2 1.0) (Version: - ) Asus Sonic Suite Plugins (HKLM-x32\...\{53eaa65b-5cab-459c-9642-a408bdcf43a3}) (Version: 2.1.3301 - ASUSTeKcomputer.Inc) Hidden Audacity 2.1.2 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.5.2302 - AVAST Software) Avidemux 2.6 - 32 bits (32-bit) (HKLM-x32\...\Avidemux 2.6 - 32 bits) (Version: 2.6.20.170428 - ) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Brother MFL-Pro Suite MFC-7360N (HKLM-x32\...\{3ACCCFB3-7B17-4E9F-ACB0-46868FCD4487}) (Version: 1.1.3.0 - Brother Industries, Ltd.) Call of Duty: Modern Warfare 3 - Multiplayer (HKLM\...\Steam App 42690) (Version: - Infinity Ward) CameraHelperMsi (HKLM-x32\...\{15634701-BACE-4449-8B25-1567DA8C9FD3}) (Version: 13.51.815.0 - Logitech) Hidden Catalyst Control Center Next Localization BR (HKLM\...\{3E245378-BF77-6946-C6F6-096DBE5EAB82}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization BR (HKLM\...\{B60EA4A9-D398-1F5B-46F8-1A0EC38CD9D2}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{45907537-804A-514F-5280-5F4F12A6DCBC}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{8B724531-9754-3338-1F62-98491A21E2D3}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{29F855AA-4F0D-9DF2-95B8-189E01AFC0FB}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{962364E4-08BB-347D-32E7-2B789F37BF8A}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{0989D0EA-AFF3-5F9A-3D25-20EE133E409B}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{115447BF-1ADB-1106-AB5E-B7DF7E65A347}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{A8689A0F-5928-7300-B82B-C5E85131B7BA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{EDCD0742-75CB-A30F-6C4F-AD45659D7731}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{3461158F-E6FC-8AFE-2C5F-22F080E47A8B}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{76AAF56B-93D8-161D-809A-EC05F3B913DA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{063CED74-F5F0-870E-DC9C-2D78FDEDA3EE}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{252CE9ED-7095-71BA-1B18-0946F524344D}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{13BB60AA-88F7-4B1F-2DEC-D81EEDE8B3AA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{A5109EA4-EA4B-BCEF-0BFC-D53762298E73}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{2C6BF9CC-DBD4-3159-8DF0-D4BD1ADBDDC3}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{37AA6227-FF2C-95AC-87C0-45DCC0BB87DA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{EB1A805D-567C-10F2-58A9-6BA6B9D2466B}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{EB328356-1DF0-1CCE-3607-6361DD329219}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{87E6EC29-AEC5-28CB-F773-93EB6C1B8A2B}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{F875D81F-EAE2-F9D7-077A-BD27C63A5865}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{07EB88F7-1C0B-A9AE-BEDC-089782C09632}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{CA55697D-BD74-3ED8-6B21-D7EDAD3B7D02}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{AFC0B28A-E7A5-7A54-F3E2-6E40FFF6948D}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{CFC860C8-4F51-E08C-A74C-2E444ED06160}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{9338D693-38B7-1ED4-9B42-BFA1D5600CCB}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{B77272A0-9837-DC8C-2A64-210CE289B42C}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{BD41F710-B4BE-3E0F-428D-31FD948883DC}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{C971C145-258D-6650-7088-13DDB161327A}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{B55457F8-557C-96FC-A8EC-5C8D9C3AA287}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{EBA09DAF-14B4-7BE7-676E-6E2FB21EDBDD}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{5566417F-0F9D-0000-5014-D08BD29D90DF}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{9AA4DD93-94BF-22EA-C9D2-7084F304A31B}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{379D900B-A785-6DB0-012E-434356A365B3}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{FFF745F7-7A4D-3878-2312-2EC60746A140}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{366C4FB5-CF6E-258B-418D-E6D29549A278}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{A5609597-BB40-B20F-B967-B7E7338F8741}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{B10089DE-934F-6E0F-683A-B788F89348DF}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{E3ED0E57-66EB-D773-A790-4DE996A160AD}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) CPUID CPU-Z 1.79 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) Creative 3DMIDI Player (HKLM-x32\...\3DMIDI) (Version: 1.11 - Creative Technology Limited) Creative ALchemy (HKLM-x32\...\ALchemy) (Version: 1.45 - Creative Technology Limited) Creative Media Toolbox 6 (HKLM-x32\...\{F1A14CB2-A048-45A6-AFDA-3571296E1D76}) (Version: 6.02 - Creative Technology Limited) Creative Software AutoUpdate (HKLM-x32\...\Creative Software AutoUpdate) (Version: 1.41 - Creative Technology Limited) Creative Systeminformationen (HKLM-x32\...\SysInfo) (Version: - ) Creative-Diagnose (HKLM-x32\...\Diagnostics 4_5) (Version: 5.11 - Creative Technology Limited) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Dolby Digital Live Pack (HKLM-x32\...\Dolby Digital Live Pack) (Version: 3.00 - Creative Technology Limited) DTS Connect Pack (HKLM-x32\...\DTS Connect Pack) (Version: 1.00 - Creative Technology Limited) erLT (HKLM-x32\...\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}) (Version: 1.20.138.34 - Logitech, Inc.) Hidden FIFA 17 (HKLM-x32\...\{8C0DD062-B659-409C-9AB7-8EBD1D64D2EB}) (Version: 1.0.45.33307 - Electronic Arts) Gang Beasts (HKLM\...\Steam App 285900) (Version: - Boneloaf) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) Golf With Your Friends (HKLM\...\Steam App 431240) (Version: - Blacklight Interactive) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.115 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1158 - Intel Corporation) Intel(R) Network Connections 20.2.4001.0 (HKLM\...\PROSetDX) (Version: 20.2.4001.0 - Intel) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.2.1.1028 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 4.0.0.36 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{60c073df-e736-4210-9c3a-5fc2b651cef3}) (Version: 10.1.1.7 - Intel(R) Corporation) Hidden Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) Java 8 Update 131 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180131F0}) (Version: 8.0.1310.11 - Oracle Corporation) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) League of Legends (HKLM-x32\...\{73E16BA9-3715-4F3D-950E-19E258725588}) (Version: 4.1.1 - Riot Games) Hidden League of Legends (HKLM-x32\...\League of Legends 4.1.1) (Version: 4.1.1 - Riot Games) Lightshot-5.4.0.10 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.4.0.10 - Skillbrains) Logitech Webcam-Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.80 - Logitech Inc.) Mafia III Digital Deluxe MULTi13 - ElAmigos version 1.0 (HKLM-x32\...\{28453BDD-FD45-4FA7-B220-58B55BC340A1}_is1) (Version: 1.0 - 2K) Malwarebytes Version 3.1.2.1733 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.1.2.1733 - Malwarebytes) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Mozilla Firefox 54.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 54.0.1 (x86 de)) (Version: 54.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 54.0.1.6388 - Mozilla) MSI Afterburner 4.2.0 (HKLM-x32\...\Afterburner) (Version: 4.2.0 - MSI Co., LTD) MSI Kombustor 3.5.0 (HKLM\...\{9598DA62-2AE8-426D-9C86-BEA96AC6721E}_is1) (Version: - MSI Co., LTD) MSI Live Update 6 (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.2.0.10 - MSI) MSIRegister (HKLM-x32\...\{80B995A4-3A86-4690-98A6-563F1A788835}_is1) (Version: 2.0.0.07 - MSI) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) NahimicSettingsConfigurator (HKLM\...\{B9CE5642-0F22-4A75-B32A-98972F21C0C9}) (Version: 2.1.3301 - ASUSTeKcomputer.Inc) Hidden Nuance PaperPort 12 (HKLM-x32\...\{6C0A559F-8583-4B5A-8B50-20BEE15D8E64}) (Version: 12.1.0000 - Nuance Communications, Inc.) Nuance PDF Viewer Plus (HKLM-x32\...\{28656860-4728-433C-8AD4-D1A930437BC8}) (Version: 5.30.3290 - Nuance Communications, Inc) NVIDIA 3D Vision Controller-Treiber 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 382.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 382.53 - NVIDIA Corporation) NVIDIA GeForce Experience 3.6.0.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.6.0.74 - NVIDIA Corporation) NVIDIA Grafiktreiber 382.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.53 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.27 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.27 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.17.0329 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 - NVIDIA Corporation) NvNodejs (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs) (Version: 3.6.0.74 - NVIDIA Corporation) Hidden NvTelemetry (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry) (Version: 2.4.10.0 - NVIDIA Corporation) Hidden NvvHci (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci) (Version: 2.02.0.5 - NVIDIA Corporation) Hidden OBS Studio (HKLM-x32\...\OBS Studio) (Version: 18.0.1 - OBS Project) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 10.0.2.33129 - Electronic Arts, Inc.) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) PaperPort Image Printer 64-bit (HKLM\...\{715CAACC-579B-4831-A5F4-A83A8DE3EFE2}) (Version: 1.00.0001 - Nuance Communications, Inc.) PLAYERUNKNOWN'S BATTLEGROUNDS (HKLM\...\Steam App 578080) (Version: - Bluehole, Inc.) Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.20.17.413 - Razer Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7899 - Realtek Semiconductor Corp.) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.1.4 - Rockstar Games) Scansoft PDF Professional (HKLM-x32\...\{068724F8-D8BE-4B43-8DDD-B9FE9E49FD76}) (Version: - ) Hidden SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0370 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 3.6.0.74 - NVIDIA Corporation) Hidden Skype™ 7.38 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.38.101 - Skype Technologies S.A.) Sonic Studio Plugin (HKLM\...\{E6A187B7-0949-4AAE-BF6B-579FD3F6E55D}) (Version: 2.1.3301 - ASUSTeKcomputer.Inc) Hidden Sound Blaster X-Fi (HKLM-x32\...\{0282C872-4B44-444B-9818-54FBD7D50ECD}) (Version: 1.0 - Creative Technology Limited) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spotify (HKU\S-1-5-21-173424566-3729193046-2416234265-1000\...\Spotify) (Version: 1.0.57.474.gca9c9538 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Tales of Symphonia Version 1.0 u3 (HKLM-x32\...\{1E213234-7E5C-42A5-8FA1-766E7728015D}_is1) (Version: 1.0 u3 - Bandai Namco Entertainment) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) Tom Clancy's Ghost Recon® Wildlands (HKLM\...\Steam App 460930) (Version: - Ubisoft Paris) Twitch (HKLM-x32\...\{1F2611FB-6F69-4AA8-BECD-243BD8CB45F3}) (Version: 6.0.0.0 - Twitch Interactive, Inc.) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 29.0 - Ubisoft) VBCABLE, The Virtual Audio Cable (HKLM\...\VB:VBCABLE {87459874-1236-4469}) (Version: - VB-Audio Software) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.37.0 (HKLM\...\VulkanRT1.0.37.0) (Version: 1.0.37.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation) Windows Driver Package - Microsoft (xusb21) XnaComposite (08/13/2009 2.1.0.1349) (HKLM\...\0AEBEF6F936CFE16E003F7E141631FAB754D9816) (Version: 08/13/2009 2.1.0.1349 - Microsoft) WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - ) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-173424566-3729193046-2416234265-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\chr1s\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64\FileSyncShell64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-173424566-3729193046-2416234265-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\chr1s\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64\FileSyncShell64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-173424566-3729193046-2416234265-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\chr1s\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64\FileSyncShell64.dll => Keine Datei ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Keine Datei ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Keine Datei ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Keine Datei ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Keine Datei ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Keine Datei ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Keine Datei ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-13] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-13] (AVAST Software) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Keine Datei ContextMenuHandlers01: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-13] (AVAST Software) ContextMenuHandlers01: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2010-03-15] () ContextMenuHandlers01: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Keine Datei ContextMenuHandlers03: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-13] (AVAST Software) ContextMenuHandlers03: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes) ContextMenuHandlers04: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2010-03-15] () ContextMenuHandlers04: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Keine Datei ContextMenuHandlers05: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Keine Datei ContextMenuHandlers05: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-06-08] (NVIDIA Corporation) ContextMenuHandlers06: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-13] (AVAST Software) ContextMenuHandlers06: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes) ContextMenuHandlers06: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2010-03-15] () ContextMenuHandlers06: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Keine Datei ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {07390C49-F843-429B-BFCC-8A22994AC82C} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-03] (NVIDIA Corporation) Task: {09965742-5440-460E-B4BC-B434F2940217} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Keine Datei <==== ACHTUNG Task: {09FDDAAA-D618-4203-A57D-768A5ABD6039} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {16CED600-9BAD-472C-821F-1A1889CA6564} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {1ACA0ABE-75F8-4AC2-BE64-7A0BFEC21DFC} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {1E5E7D13-CFBE-458C-AA6E-0A7FDD03F660} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {1FF56619-BB40-4B80-8FC6-4CF4B56B5AB7} - System32\Tasks\update-S-1-5-21-173424566-3729193046-2416234265-1000 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (TODO: <Company name>) Task: {20CEBF7A-60DA-4A0F-84E1-14ECEE937B5F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated) Task: {2146F37E-0424-4DA6-B824-7814E0ABE432} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {21E629BC-80C2-4FD8-90C5-2528A8D44C5F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-05-03] (NVIDIA Corporation) Task: {23421302-9572-49AF-A43D-0C6DCCDFE03D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-07-13] (Google Inc.) Task: {27E67CAF-3E65-4B18-9DB5-862A74944B9B} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {2E9EE469-1273-4836-8D40-53E006C51883} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-07-13] (Google Inc.) Task: {2F97570B-AD42-48FD-9C98-01F24D7D1DBC} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {334FB57E-22B4-4CBF-9E68-F8F2D77ABD1C} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {3AADBEC0-4D94-4062-9151-541C7DC60252} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {3F1D8A0C-658B-4C39-A9EA-59FA3126D3B8} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {43034949-8220-4E85-896D-922CBE8A89F6} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-03] (NVIDIA Corporation) Task: {46EC86AD-6760-4211-BA0C-AAB46AC2C426} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {4B17E4C1-207F-42EB-8060-46F1BD283E86} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {4DFE483D-3BDF-4DA4-9EB0-5B5831E58DC2} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Keine Datei <==== ACHTUNG Task: {5B348A1D-B007-458B-8A95-B2280913A9D8} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-05-03] (NVIDIA Corporation) Task: {617BFD9D-D6F2-44D4-990E-7FCE1F3E1F25} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {6184A395-20FF-43B1-9D2A-9ABE546A46A0} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-07-13] (Adobe Systems Incorporated) Task: {61C232C0-C7AB-4831-B15A-C2E4E3024E78} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-05-03] (NVIDIA Corporation) Task: {675FADEE-F0F3-4024-9D57-B0EDF1302A8E} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {695924A8-C1B6-4F27-8CD6-BC540B58648D} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {6D29FD3C-8094-4476-B1C5-65FD0DE309B4} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {75F9B2D0-FDD3-4BB4-A372-350F14D57F7C} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {7709A139-9F50-4C10-9DA2-2F0B472EF37B} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-05-03] (NVIDIA Corporation) Task: {8B2AB0CB-F295-4BFF-B892-D3516E2657B5} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {8CB820A5-7739-4F3A-88F2-EE86F3DF9068} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {8D906B4F-FD3E-4858-94BF-90D3E5279C16} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {8ED976E0-F3E1-4AA6-904A-AA5C70CC72FC} - System32\Tasks\IntelBootstrapCCDashExe => C:\Program Files\Intel\ConnectCenter\bin\ICCLauncher.exe Task: {92452F40-FB66-4186-B761-FF8E0F2D348D} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {9D2C564C-CF9B-47E0-A0AB-F6DD3B89EA9F} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {A601AEF6-048B-4C96-B46D-07F66F3D6B8A} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2015-12-09] () Task: {AFEED166-68FC-4393-A64D-56C8A7083940} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {B580B975-6E2B-4F15-9505-4911122D93B7} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {B6732350-2099-4F1B-ABEF-374ED0E5757F} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {B7DCE643-CED8-44DE-9CE9-C19DDE68E9AA} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Keine Datei <==== ACHTUNG Task: {B83B28BA-EC8C-4DA1-B4DB-4DB027B67137} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {D6461302-EB56-4E8E-9BFA-05DCE57AC80A} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {D75541CB-F508-4DFC-B33D-0AAE8E98096C} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-03] (NVIDIA Corporation) Task: {D7598ECA-51E6-4B88-BBCE-D6A2ADEA43F8} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-03] (NVIDIA Corporation) Task: {E4A4FAE7-05C9-4800-A4D9-D865BB40D24B} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> Keine Datei <==== ACHTUNG Task: {E8A46192-04FE-4108-B2A5-07E15FD82751} - \Microsoft\Windows\Setup\gwx\rundetector -> Keine Datei <==== ACHTUNG Task: {EB7ED44E-D642-455F-B489-F2FB9A388D85} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-07-13] (AVAST Software) Task: {F6370150-5E29-4C91-933D-426827AED591} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {F9A3772C-7A3F-4643-9272-8A644A550B3A} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {FA1540CA-6A7F-42F4-AB19-EC3CD9B6038D} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {FDE88E86-D2A0-4F64-9666-191BE5DD3D47} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {FE59186D-C519-49C8-9D8D-AC75C2E04C47} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\update-S-1-5-21-173424566-3729193046-2416234265-1000.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2014-07-23 03:59 - 2014-07-23 03:59 - 00936728 ____R () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe 2015-12-27 11:05 - 2015-12-27 11:05 - 00066872 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2015-12-27 11:05 - 2015-12-27 11:05 - 00103736 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe 2016-09-25 01:20 - 2016-09-25 01:21 - 00189264 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe 2015-10-13 21:31 - 2014-07-23 03:59 - 01360016 ____R () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe 2017-04-25 15:51 - 2017-05-03 22:21 - 01267320 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2015-10-30 16:28 - 2005-04-22 06:36 - 00143360 ____R () C:\WINDOWS\system32\BrSNMP64.dll 2015-12-09 09:59 - 2015-12-09 09:59 - 00580296 _____ () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe 2017-03-18 22:58 - 2017-03-18 22:58 - 00138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2015-10-13 22:17 - 2010-03-15 11:28 - 00052224 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll 2017-03-18 22:59 - 2017-03-20 06:43 - 01731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-09-08 10:38 - 2016-08-08 10:21 - 00105312 _____ () C:\WINDOWS\SYSTEM32\audioLibVc.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00264040 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe 2015-10-10 19:14 - 2017-06-30 12:28 - 00176408 _____ () C:\Program Files\TeamSpeak 3 Client\quazip.dll 2017-01-12 15:18 - 2017-03-20 15:22 - 00020248 _____ () C:\Program Files\TeamSpeak 3 Client\libEGL.DLL 2017-01-12 15:18 - 2017-03-20 15:22 - 01975064 _____ () C:\Program Files\TeamSpeak 3 Client\libGLESv2.dll 2015-10-10 19:13 - 2017-06-30 12:28 - 00107288 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\directsound_win64.dll 2015-10-10 19:13 - 2017-06-30 12:28 - 00128280 _____ () C:\Program Files\TeamSpeak 3 Client\soundbackends\windowsaudiosession_win64.dll 2017-02-17 12:01 - 2017-05-04 13:01 - 00152064 _____ () C:\Users\chr1s\AppData\Roaming\TS3Client\plugins\gamepad_joystick_win64.dll 2017-03-23 19:33 - 2017-03-23 19:33 - 00276992 _____ () C:\Users\chr1s\AppData\Roaming\TS3Client\plugins\ClownfishForTeamspeak_win64.dll 2017-03-24 15:04 - 2017-04-05 19:55 - 00345880 _____ () C:\Users\chr1s\AppData\Roaming\TS3Client\plugins\clientquery_plugin_win64.dll 2017-01-12 15:18 - 2017-01-22 20:49 - 00479744 _____ () C:\Users\chr1s\AppData\Roaming\TS3Client\plugins\soundboard.dll 2017-07-13 18:37 - 2017-07-13 18:37 - 03379328 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\LeagueClient.exe 2017-07-13 18:37 - 2017-07-13 18:37 - 01747584 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\LeagueClientUx.exe 2017-07-13 18:37 - 2017-07-13 18:37 - 01747584 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\LeagueClientUxRender.exe 2015-10-13 21:31 - 2017-07-14 14:14 - 00037160 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll 2015-10-13 21:31 - 2014-07-23 03:59 - 00104448 ____R () C:\Program Files (x86)\ASUS\AXSP\1.02.00\ATKEX.dll 2017-04-25 15:49 - 2005-07-18 13:43 - 00160256 _____ () C:\Program Files (x86)\MSI\Live Update\unrar.dll 2016-09-13 20:17 - 2016-09-30 12:01 - 02493440 _____ () D:\Programme\Origin\libGLESv2.dll 2017-04-25 15:51 - 2017-05-03 22:21 - 01040504 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2015-12-07 18:43 - 2015-12-07 18:43 - 00057856 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll 2015-12-07 18:44 - 2015-12-07 18:44 - 00225792 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll 2015-12-07 18:43 - 2015-12-07 18:43 - 00357888 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll 2015-12-07 18:43 - 2015-12-07 18:43 - 00071680 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll 2015-12-07 18:44 - 2015-12-07 18:44 - 00657408 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 00170224 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 01038952 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 67109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 00192664 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 00224256 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 00292920 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 02962096 _____ () C:\Program Files\AVAST Software\Avast\aswDataScan.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 00689272 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll 2016-10-31 18:08 - 2017-06-28 18:21 - 00189040 _____ () C:\Users\chr1s\AppData\Roaming\Spotify\SpotifyWinRT.dll 2017-04-25 15:51 - 2017-05-03 22:20 - 65709176 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll 2015-10-30 16:28 - 2009-02-27 17:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 02144104 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtCore4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 07955304 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtGui4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00341352 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtXml4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00028008 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QGif4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00127336 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QJpeg4.dll 2012-09-13 00:39 - 2012-09-13 00:39 - 00336232 _____ () C:\Program Files (x86)\Common Files\logishrd\LWSPlugins\LWS\Applets\CameraHelper\DevManagerCore.dll 2017-01-16 13:40 - 2017-01-16 13:40 - 00143824 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll 2015-07-10 23:37 - 2015-07-10 23:37 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2015-10-13 22:03 - 2017-05-17 03:54 - 00678176 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2015-10-13 22:03 - 2016-09-01 03:02 - 04969248 _____ () C:\Program Files (x86)\Steam\v8.dll 2015-10-13 22:03 - 2017-07-14 04:33 - 02496800 _____ () C:\Program Files (x86)\Steam\video.dll 2015-10-13 22:03 - 2016-09-01 03:02 - 01563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2015-10-13 22:03 - 2016-09-01 03:02 - 01195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2015-10-13 22:03 - 2016-01-27 09:49 - 02549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2015-10-13 22:03 - 2016-01-27 09:49 - 00491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2015-10-13 22:03 - 2016-01-27 09:49 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2015-10-13 22:03 - 2016-01-27 09:49 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2015-10-13 22:03 - 2016-01-27 09:49 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2015-10-13 22:03 - 2017-07-14 04:33 - 00884512 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2016-03-09 09:02 - 2016-07-05 00:17 - 00266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll 2016-12-13 11:09 - 2017-07-06 19:58 - 73088800 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll 2017-06-08 09:38 - 2017-05-17 03:54 - 00678176 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll 2015-10-13 22:03 - 2017-07-14 04:33 - 00384288 _____ () C:\Program Files (x86)\Steam\steam.dll 2015-10-13 22:03 - 2015-09-25 01:52 - 00119208 _____ () C:\Program Files (x86)\Steam\winh264.dll 2017-07-13 18:37 - 2017-07-13 18:37 - 00108672 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\zlib.dll 2017-07-13 18:37 - 2017-07-13 18:37 - 00128640 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\yaml.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 01411200 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-patcher\rcp-be-patcher.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00663168 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-rso-auth\rcp-be-rso-auth.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 01057408 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-login\rcp-be-lol-login.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00525440 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-platform-config\rcp-be-lol-platform-config.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00660608 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-summoner\rcp-be-lol-summoner.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00578176 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-ranked-stats\rcp-be-lol-ranked-stats.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00500864 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-maps\rcp-be-lol-maps.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00645248 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-game-queues\rcp-be-lol-game-queues.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00539264 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-player-preferences\rcp-be-lol-player-preferences.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00625792 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-game-settings\rcp-be-lol-game-settings.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00578176 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-settings\rcp-be-lol-settings.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00815232 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-gameflow\rcp-be-lol-gameflow.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00483456 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-pre-end-of-game\rcp-be-lol-pre-end-of-game.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00579200 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-sanitizer\rcp-be-sanitizer.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00568448 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-riot-messaging-service\rcp-be-riot-messaging-service.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00444544 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-riot-messaging-service\rcp-be-lol-riot-messaging-service.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00539776 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-acs\rcp-be-lol-acs.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00544896 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-player-notifications\rcp-be-player-notifications.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00496768 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-loyalty\rcp-be-lol-loyalty.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 01056384 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-collections\rcp-be-lol-collections.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00496768 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-kr-shutdown-law\rcp-be-lol-kr-shutdown-law.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00965760 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-lobby-team-builder\rcp-be-lol-lobby-team-builder.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00592512 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-queue-eligibility\rcp-be-lol-queue-eligibility.dll 2017-07-13 18:37 - 2017-07-13 18:37 - 01442432 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-lobby\rcp-be-lol-lobby.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00807552 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-champ-select-legacy\rcp-be-lol-champ-select-legacy.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00596096 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-champ-select\rcp-be-lol-champ-select.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00518272 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-spectator\rcp-be-lol-spectator.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 01649792 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-chat\rcp-be-lol-chat.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00493696 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-heartbeat\rcp-be-lol-heartbeat.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00518272 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-shutdown\rcp-be-lol-shutdown.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00909952 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-loot\rcp-be-lol-loot.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00472704 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-kickout\rcp-be-lol-kickout.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00489088 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-license-agreement\rcp-be-lol-license-agreement.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00716416 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-matchmaking\rcp-be-lol-matchmaking.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00479360 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-kr-playtime-reminder\rcp-be-lol-kr-playtime-reminder.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00492160 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-game-client-chat\rcp-be-lol-game-client-chat.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00536192 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-team-boosts\rcp-be-lol-team-boosts.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00736896 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-end-of-game\rcp-be-lol-end-of-game.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00522368 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-active-boosts\rcp-be-lol-active-boosts.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00551040 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-kudos\rcp-be-lol-kudos.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00435328 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-parties\rcp-be-lol-parties.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00808576 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-leagues\rcp-be-lol-leagues.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00599168 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-pft\rcp-be-lol-pft.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00627328 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-player-behavior\rcp-be-lol-player-behavior.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00607360 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-suggested-players\rcp-be-lol-suggested-players.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00530560 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-service-status\rcp-be-lol-service-status.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00558720 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-leaver-buster\rcp-be-lol-leaver-buster.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00660608 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-match-history\rcp-be-lol-match-history.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00715904 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-recofriender\rcp-be-recofriender.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00785536 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-clubs\rcp-be-lol-clubs.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00534656 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-clubs-public\rcp-be-lol-clubs-public.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00588928 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-esport-stream-notifications\rcp-be-lol-esport-stream-notifications.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00729728 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-replays\rcp-be-lol-replays.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00711296 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-store\rcp-be-lol-store.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00504960 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-player-level-up\rcp-be-lol-player-level-up.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00487040 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-tencent-qt\rcp-be-lol-tencent-qt.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00566912 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-beta-opt-in\rcp-be-lol-beta-opt-in.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00546432 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-player-messaging\rcp-be-lol-player-messaging.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00582272 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-personalized-offers\rcp-be-lol-personalized-offers.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00471680 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-user-experience\rcp-be-lol-user-experience.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00537728 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-simple-dialog-messages\rcp-be-lol-simple-dialog-messages.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00610944 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-highlights\rcp-be-lol-highlights.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00615040 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-honor-v2\rcp-be-lol-honor-v2.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00489088 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-network-testing\rcp-be-network-testing.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00539264 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-entitlements\rcp-be-entitlements.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00658048 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-missions\rcp-be-lol-missions.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00595584 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-item-sets\rcp-be-lol-item-sets.dll 2017-07-13 18:37 - 2017-07-12 11:00 - 00466560 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\Plugins\rcp-be-lol-las-toxicity\rcp-be-lol-las-toxicity.dll 2017-07-13 18:37 - 2017-07-13 18:37 - 55775872 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\libcef.dll 2017-07-13 18:37 - 2017-07-13 18:37 - 01801344 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\libglesv2.dll 2017-07-13 18:37 - 2017-07-13 18:37 - 00022144 _____ () C:\Riot Games\League of Legends\RADS\projects\league_client\releases\0.0.0.86\deploy\libegl.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-173424566-3729193046-2416234265-1000\...\localhost -> localhost ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-173424566-3729193046-2416234265-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\chr1s\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\chris.jpg DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: PCLink => "C:\Program Files (x86)\ASUS\PC Link\PCLink.exe" /boot MSCONFIG\startupreg: Spotify => "C:\Users\chr1s\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\chr1s\AppData\Roaming\Spotify\SpotifyWebHelper.exe" MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent HKLM\...\StartupApproved\Run: => "Malwarebytes TrayApp" HKLM\...\StartupApproved\Run32: => "Live Update" HKLM\...\StartupApproved\Run32: => "MSIRegister" HKU\S-1-5-21-173424566-3729193046-2416234265-1000\...\StartupApproved\Run: => "Skype" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{69184D3B-205C-4581-9BAF-EF8AA68A0B1D}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Call of Duty Modern Warfare 3\iw5mp.exe FirewallRules: [{5CE00689-C3DD-496B-8D2F-923782699B29}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Call of Duty Modern Warfare 3\iw5mp.exe FirewallRules: [{67FF9167-FD3E-4A0C-839E-6F4744BCC3A4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{474FBA1C-E338-4CE3-92A0-2D660235E37A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{5D940A05-A407-4EC7-8287-25F04AE0D661}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{4EA4002B-0BD2-4943-9546-F8A4625E62FF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{06F6F46A-6626-4D90-9272-FBD1935258F3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{EA9E69DD-77FF-4ABA-819F-C1FA0A1A46D1}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Wildlands\GRW.exe FirewallRules: [{33B6867E-C37A-479A-BAED-73C3C608BD95}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Wildlands\GRW.exe FirewallRules: [{7B1C0B4B-FFF8-4297-822B-34EE337C098F}] => (Allow) C:\Users\chr1s\AppData\Roaming\LiquidSky\lib\LiquidSky.exe FirewallRules: [{02FCF567-CA9E-45A6-A42E-74E84FD21DA6}] => (Allow) C:\Users\chr1s\AppData\Roaming\LiquidSky\lib\LiquidSky.exe FirewallRules: [{E1AA9308-4B03-4EE4-8E0B-76DF0F3F3C19}] => (Allow) C:\Users\chr1s\AppData\Roaming\LiquidSky\LiquidSkyClient.exe FirewallRules: [{6F02A43E-DB09-4697-8B27-01A742E29EBC}] => (Allow) C:\Users\chr1s\AppData\Roaming\LiquidSky\LiquidSkyClient.exe FirewallRules: [{718619D4-AA48-44C3-B17E-796F93A670BF}] => (Allow) C:\Users\chr1s\Desktop\LiquidSkyClient.exe FirewallRules: [{2CDB068F-6997-4C97-9361-D16BC465B058}] => (Allow) C:\Users\chr1s\Desktop\LiquidSkyClient.exe FirewallRules: [UDP Query User{9319DCFD-7D2A-4064-8852-7D66822A15AA}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe FirewallRules: [TCP Query User{A64B656A-3C33-40FF-8A71-C3924E0B8012}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe FirewallRules: [{C7C3A8FC-7B84-4027-9F2D-C53E7537A637}] => (Allow) D:\Firefox Downloads\LiquidSkyClient.exe FirewallRules: [{2F322E29-C206-4C4A-8C4F-BD5A7D6F61A9}] => (Allow) D:\Firefox Downloads\LiquidSkyClient.exe FirewallRules: [{9000E98C-189C-48E2-B483-A75338C7AC81}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Magic Duels\MagicDuels.exe FirewallRules: [{283AA530-8C10-4F44-82EC-AE7DD76A1B4F}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Magic Duels\MagicDuels.exe FirewallRules: [{56C16484-6620-4EC3-8562-14E308448913}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{0880783A-7CF3-4B56-B3B0-35E31F50210E}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [UDP Query User{8BC97DE2-97DC-4C37-8E2D-6EB625710627}D:\programme\ubisoft game launcher\games\forhonorbeta\forhonor.exe] => (Allow) D:\programme\ubisoft game launcher\games\forhonorbeta\forhonor.exe FirewallRules: [TCP Query User{6A5AF697-B937-4B5D-89C3-45D20789407F}D:\programme\ubisoft game launcher\games\forhonorbeta\forhonor.exe] => (Allow) D:\programme\ubisoft game launcher\games\forhonorbeta\forhonor.exe FirewallRules: [UDP Query User{A7737173-E251-47C1-BA46-CB319E798270}D:\programme\diablo iii\x64\diablo iii64.exe] => (Allow) D:\programme\diablo iii\x64\diablo iii64.exe FirewallRules: [TCP Query User{E1985E5B-CCAC-4553-85F5-01193A108A2C}D:\programme\diablo iii\x64\diablo iii64.exe] => (Allow) D:\programme\diablo iii\x64\diablo iii64.exe FirewallRules: [{03CB770C-6012-40B6-A251-515D3AB92AB2}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{FAF99732-821A-4124-960D-2063120733E7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [UDP Query User{9FFB1B21-008A-4DFB-A83F-CD16AB7E91E7}D:\programme\diablo iii\diablo iii.exe] => (Allow) D:\programme\diablo iii\diablo iii.exe FirewallRules: [TCP Query User{DD1FB6BE-B65B-4D4F-800F-6B21AA31D7B4}D:\programme\diablo iii\diablo iii.exe] => (Allow) D:\programme\diablo iii\diablo iii.exe FirewallRules: [UDP Query User{9D045947-FCA0-4AC3-AA43-4DE928C98179}D:\programme\call of duty modern warfare remastered\h1_sp64_ship.exe] => (Allow) D:\programme\call of duty modern warfare remastered\h1_sp64_ship.exe FirewallRules: [TCP Query User{A03EE170-0430-4F27-9676-54BC1CFB541B}D:\programme\call of duty modern warfare remastered\h1_sp64_ship.exe] => (Allow) D:\programme\call of duty modern warfare remastered\h1_sp64_ship.exe FirewallRules: [UDP Query User{DBA4D446-2787-4D46-B40E-6996948E44BB}D:\programme\call of duty infinite warfare\iw7_ship.exe] => (Allow) D:\programme\call of duty infinite warfare\iw7_ship.exe FirewallRules: [TCP Query User{B6E12113-28E3-457C-9F8D-2878D917C997}D:\programme\call of duty infinite warfare\iw7_ship.exe] => (Allow) D:\programme\call of duty infinite warfare\iw7_ship.exe FirewallRules: [UDP Query User{D08B5928-CF8C-4A25-8196-F0B4F1E52441}D:\programme\overwatch test\overwatch.exe] => (Allow) D:\programme\overwatch test\overwatch.exe FirewallRules: [TCP Query User{635361E4-4B41-4428-9C6E-7140B09C64DF}D:\programme\overwatch test\overwatch.exe] => (Allow) D:\programme\overwatch test\overwatch.exe FirewallRules: [UDP Query User{1CA18DB1-A936-4E2D-BFFD-00EF0597BABE}D:\programme\steamlibrary\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) D:\programme\steamlibrary\steamapps\common\h1z1 king of the kill\h1z1.exe FirewallRules: [TCP Query User{F58B9F67-ED12-4C65-BEAD-B10B967C5DC5}D:\programme\steamlibrary\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) D:\programme\steamlibrary\steamapps\common\h1z1 king of the kill\h1z1.exe FirewallRules: [UDP Query User{82F6DE9F-7174-4844-AD27-B1FB8D039E75}D:\program files (x86)\origin games\fifa 17\fifa17.exe] => (Allow) D:\program files (x86)\origin games\fifa 17\fifa17.exe FirewallRules: [TCP Query User{71A285C8-9A03-47CE-AEF1-D0922EE131E8}D:\program files (x86)\origin games\fifa 17\fifa17.exe] => (Allow) D:\program files (x86)\origin games\fifa 17\fifa17.exe FirewallRules: [{E2FAC23A-ACA4-43F3-8FD5-5AAE6D5FB83B}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 17\FIFASetup\fifaconfig.exe FirewallRules: [{B9CA0C87-3D38-421E-9DC5-87A36D3E3AF1}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 17\FIFASetup\fifaconfig.exe FirewallRules: [{E5935117-641C-42D6-8B7A-40EA8BF8EAD5}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe FirewallRules: [{451A5973-5053-4DB7-9E85-D197EB64D35D}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe FirewallRules: [UDP Query User{8AE95CAB-99F2-4C12-95AF-82BF5FA380BC}D:\programme\overwatch\overwatch.exe] => (Allow) D:\programme\overwatch\overwatch.exe FirewallRules: [TCP Query User{DE871CB7-370B-4EBF-AE7A-EFBD6F4445E7}D:\programme\overwatch\overwatch.exe] => (Allow) D:\programme\overwatch\overwatch.exe FirewallRules: [{167D294A-C906-4C17-AFA6-9E7A9C6A4FED}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Gang Beasts\Gang Beasts.exe FirewallRules: [{F6F1E73A-7690-49CD-97E8-5047E0C0F8C6}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Gang Beasts\Gang Beasts.exe FirewallRules: [UDP Query User{171E33EA-6A98-4419-BBF0-9135B2AEF7A8}D:\warcraft iii\war3.exe] => (Allow) D:\warcraft iii\war3.exe FirewallRules: [TCP Query User{B6750B43-7C20-47BA-8A16-B6F224884AF6}D:\warcraft iii\war3.exe] => (Allow) D:\warcraft iii\war3.exe FirewallRules: [UDP Query User{97D10451-2225-43F1-8E2F-BF5B538B3C36}D:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\programme\rockstar games\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{95928C8A-1F9C-40A7-AC07-6653CBD8BFAE}D:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\programme\rockstar games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{CC24A9A7-6B8C-44DE-BBC0-FE038E7AE146}D:\programme\diablo iii\diablo iii.exe] => (Allow) D:\programme\diablo iii\diablo iii.exe FirewallRules: [TCP Query User{F228A14E-A8B1-407F-83CA-9274F1D073E1}D:\programme\diablo iii\diablo iii.exe] => (Allow) D:\programme\diablo iii\diablo iii.exe FirewallRules: [{A946320D-C016-4DF1-8373-81413A59AEEC}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{CA689CAB-9D88-4299-8A66-0FFAC5599872}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{53DC28BB-1F4F-4A11-A47F-8A36FBE29628}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{FE0EEF0B-6037-480B-B5F5-A34D56DCE296}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{2BF7C77F-391F-4C86-A839-2956A765724C}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 16\fifasetup\fifaconfig.exe FirewallRules: [{E45A7902-E660-42E8-93C9-F66CBBB1B4DF}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 16\fifasetup\fifaconfig.exe FirewallRules: [{E218C525-A1FC-4B6C-8D3E-111B6F651894}] => (Allow) C:\Program Files\Intel\STCServ\STCServ.exe FirewallRules: [{8B2C1DB3-0386-4BBE-9010-E25832FC45DA}] => (Allow) C:\Program Files\Intel\STCServ\STCServ.exe FirewallRules: [{469CA4DE-934E-4919-BD44-E4AED480CFDC}] => (Allow) C:\Program Files (x86)\ASUS\Share Link\ShareLink.exe FirewallRules: [UDP Query User{0861A94E-C309-4DE2-9A08-5A1D56E42A52}C:\program files (x86)\asus\asus smart gesture\astpcenter\x64\asussgplusbtserver64.exe] => (Allow) C:\program files (x86)\asus\asus smart gesture\astpcenter\x64\asussgplusbtserver64.exe FirewallRules: [TCP Query User{B5CB1035-EDF4-4030-A66B-76A52A0E8350}C:\program files (x86)\asus\asus smart gesture\astpcenter\x64\asussgplusbtserver64.exe] => (Allow) C:\program files (x86)\asus\asus smart gesture\astpcenter\x64\asussgplusbtserver64.exe FirewallRules: [{E76E3C21-74A4-4381-95F3-33C03DBE5DF3}] => (Allow) C:\Program Files (x86)\ASUS\PC Link\PCLinkService.exe FirewallRules: [{551B3386-46DE-430B-A9AE-CFB9F05EF362}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{704D51F7-86C1-4A7D-8D42-A2326FC110AA}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [UDP Query User{815EBEE7-C1A0-414F-8FDD-F11B18EC4955}D:\programme\call of duty black ops iii\blackops3.exe] => (Allow) D:\programme\call of duty black ops iii\blackops3.exe FirewallRules: [TCP Query User{A4A84C0B-AB70-4801-876B-5E25148F1752}D:\programme\call of duty black ops iii\blackops3.exe] => (Allow) D:\programme\call of duty black ops iii\blackops3.exe FirewallRules: [{7E31F71E-AFAA-42C9-9101-34717E384448}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{51F07171-2A63-4A93-8133-1E9BA4ABDD96}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{E012423D-FF64-4471-AE97-2E1F9F8E4E20}] => (Allow) LPort=54925 FirewallRules: [{B345C4FC-A575-4953-AA87-3C7533FCC035}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10f\FAXRX.exe FirewallRules: [{A03B933A-24EB-4CCD-8B03-515341F9FBA0}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10f\FAXRX.exe FirewallRules: [UDP Query User{2C7D2E5F-BB74-4B6D-930C-4958EF7CA9FB}D:\program files (x86)\origin games\fifa 16\fifa16.exe] => (Allow) D:\program files (x86)\origin games\fifa 16\fifa16.exe FirewallRules: [TCP Query User{5D428C7B-DC62-4572-8AD5-E8BCB3700750}D:\program files (x86)\origin games\fifa 16\fifa16.exe] => (Allow) D:\program files (x86)\origin games\fifa 16\fifa16.exe FirewallRules: [UDP Query User{56EBAE1F-4A3A-4C1B-BE6E-1D295F5408A7}C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe FirewallRules: [TCP Query User{0D0CB241-57AF-455C-BB53-DFC6DB2AD78E}C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe FirewallRules: [UDP Query User{5111A279-D275-4926-A49A-3D41ABA62358}C:\users\chr1s\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\chr1s\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{790A1E27-D786-4FE3-AD67-F026BDFFC561}C:\users\chr1s\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\chr1s\appdata\roaming\spotify\spotify.exe FirewallRules: [{E1E098C4-865D-46C7-997A-A9CA29334792}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{CAF83773-3C69-4F7B-B778-E9EDF103D932}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{6FEE6982-BDCC-46C6-AF5B-8CF9DDBFE743}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{7B89EB84-53EA-4BEE-978C-A288C0C87ED1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{BA5F0492-272D-48C0-BAF4-A01B9EE2CB92}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{3FD6E6F3-E090-4AD4-9301-50AADD15B5BF}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{C09727F5-D888-4318-97FC-AA8B9B38F8D2}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{DBE05B81-E433-4289-9668-5A52553C823E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{3419CB69-5C1F-48E5-9C86-8570661E351E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{90E61D39-DF85-4937-AAA8-B91D6DFC8737}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{338127A5-E103-4E39-B879-2B8A87347849}] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{38AAEDFD-E433-4CA6-8615-D0F32D900839}] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{50B47C20-6E60-4691-A409-917AD210DF14}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [TCP Query User{7F5257ED-E293-41A9-B190-C02E46EEDCCA}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{0A8AA6AC-E245-4D14-931A-2A07E14FEEC8}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{45C18CA9-49D5-44DE-8F74-D07BD62112E3}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{0C29FDA8-FF9E-44CE-B7AA-1302B57A8F78}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{5C5C889A-EFFF-4DD1-9B2C-BA0BB5873769}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{D2668717-39B4-4275-8D8E-18C300299ABC}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{4852DCBA-F92D-4937-909B-085B47114F3D}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [TCP Query User{C6E2FF9D-FB2C-4727-BD37-4150D05A68B8}D:\programme\steamlibrary\steamapps\common\dead by daylight alpha access\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\programme\steamlibrary\steamapps\common\dead by daylight alpha access\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe FirewallRules: [UDP Query User{54DBDF44-C1F6-4FBD-AB71-9891BE953FB8}D:\programme\steamlibrary\steamapps\common\dead by daylight alpha access\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\programme\steamlibrary\steamapps\common\dead by daylight alpha access\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe FirewallRules: [{FB525378-E2DA-4FC2-B355-A1C0D7D5D8F4}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{5818029C-F462-4B71-9A32-22CF103C616B}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{13460B63-888B-4102-A385-C2730F1ECEAA}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe FirewallRules: [{6CC6F478-1D7D-479E-9486-78C7FBF9DC26}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe FirewallRules: [{ABECCF79-1256-4623-A71F-8F8207FA8DB8}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{C5DC7215-A71F-4585-9162-5885AF500914}D:\programme\overwatch test\overwatch.exe] => (Allow) D:\programme\overwatch test\overwatch.exe FirewallRules: [UDP Query User{AB498BB1-8A55-4245-8636-318459C393E9}D:\programme\overwatch test\overwatch.exe] => (Allow) D:\programme\overwatch test\overwatch.exe FirewallRules: [TCP Query User{1BFF0264-9D46-424F-9C95-6A8C4378847E}C:\users\chr1s\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\chr1s\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{9A93BD73-EC89-49B5-980A-11752A3B5AA6}C:\users\chr1s\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\chr1s\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{7C526555-FB04-425A-A962-BEDBEC172AC9}D:\programme\overwatch\overwatch.exe] => (Allow) D:\programme\overwatch\overwatch.exe FirewallRules: [UDP Query User{DF6E02BA-612E-42E3-9D30-182599A4CF25}D:\programme\overwatch\overwatch.exe] => (Allow) D:\programme\overwatch\overwatch.exe FirewallRules: [TCP Query User{9607C07F-9419-49FF-A28F-87552CD864E9}D:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\programme\rockstar games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{E9E50DA6-37B6-40EB-9AA4-B073CDE89FB1}D:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\programme\rockstar games\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{EDBE33C6-9507-425E-94A4-0546F608DEDF}C:\program files (x86)\origin games\fifa 17 demo\fifa17_demo.exe] => (Allow) C:\program files (x86)\origin games\fifa 17 demo\fifa17_demo.exe FirewallRules: [UDP Query User{661F7549-200E-4032-958A-62E75147D5A5}C:\program files (x86)\origin games\fifa 17 demo\fifa17_demo.exe] => (Allow) C:\program files (x86)\origin games\fifa 17 demo\fifa17_demo.exe FirewallRules: [{3C51943C-FB7F-4771-BE83-5140FB47EA20}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (07/14/2017 02:00:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.15063.0, Zeitstempel: 0x0fa14906 Name des fehlerhaften Moduls: biwinrt.dll, Version: 10.0.15063.0, Zeitstempel: 0x87ee4a59 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000156f9 ID des fehlerhaften Prozesses: 0x1a10 Startzeit der fehlerhaften Anwendung: 0x01d2fc98c108c86a Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\backgroundTaskHost.exe Pfad des fehlerhaften Moduls: C:\Windows\System32\biwinrt.dll Berichtskennung: b269e00b-d654-4f4f-8643-3c9f472719d3 Vollständiger Name des fehlerhaften Pakets: Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy Anwendungs-ID, die relativ zum fehlerhaften Paket ist: CortanaUI Error: (07/14/2017 01:52:52 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: Die erweiterbare Leistungsindikator-DLL rdyboost kann nicht geladen werden. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Windows-Fehlercode. Error: (07/14/2017 01:52:51 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode. Error: (07/14/2017 12:20:11 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Error: (07/14/2017 12:20:04 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Error: (07/14/2017 12:19:26 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "D:\Firefox Downloads\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Error: (07/14/2017 12:19:24 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "D:\Firefox Downloads\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Error: (07/14/2017 12:19:19 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "D:\Firefox Downloads\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Error: (07/14/2017 12:19:19 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "D:\Firefox Downloads\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Error: (07/14/2017 12:15:21 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.15063.0, Zeitstempel: 0x7c8bd05a Name des fehlerhaften Moduls: CoreUIComponents.dll, Version: 10.0.15063.483, Zeitstempel: 0x1b3f5968 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000077bd2 ID des fehlerhaften Prozesses: 0x1718 Startzeit der fehlerhaften Anwendung: 0x01d2fc89f525babd Pfad der fehlerhaften Anwendung: C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\CoreUIComponents.dll Berichtskennung: 1b594318-2161-4d7c-a9db-168f81498076 Vollständiger Name des fehlerhaften Pakets: windows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewy Anwendungs-ID, die relativ zum fehlerhaften Paket ist: microsoft.windows.immersivecontrolpanel Systemfehler: ============= Error: (07/14/2017 02:14:30 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Error: (07/14/2017 02:14:29 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "CldFlt" wurde aufgrund folgenden Fehlers nicht gestartet: Die Anforderung wird nicht unterstützt. Error: (07/14/2017 02:14:29 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 14.07.2017 um 13:52:14 unerwartet heruntergefahren. Error: (07/14/2017 02:13:53 PM) (Source: Application Popup) (EventID: 56) (User: ) Description: ACPI5 Error: (07/14/2017 02:11:29 PM) (Source: DCOM) (EventID: 10010) (User: CHR1S-PC) Description: Der Server "{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (07/14/2017 02:11:29 PM) (Source: DCOM) (EventID: 10010) (User: CHR1S-PC) Description: Der Server "{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (07/14/2017 02:11:29 PM) (Source: DCOM) (EventID: 10010) (User: CHR1S-PC) Description: Der Server "{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (07/14/2017 02:08:53 PM) (Source: DCOM) (EventID: 10010) (User: CHR1S-PC) Description: Der Server "{7966B4D8-4FDC-4126-A10B-39A3209AD251}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (07/14/2017 02:07:36 PM) (Source: DCOM) (EventID: 10010) (User: CHR1S-PC) Description: Der Server "{A463FCB9-6B1C-4E0D-A80B-A2CA7999E25D}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (07/14/2017 02:07:06 PM) (Source: DCOM) (EventID: 10010) (User: CHR1S-PC) Description: Der Server "{A463FCB9-6B1C-4E0D-A80B-A2CA7999E25D}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. CodeIntegrity: =================================== Date: 2017-07-14 12:05:22.355 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SETB162.tmp because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-07-14 12:05:22.349 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SETB162.tmp because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-07-14 12:05:22.344 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SETB162.tmp because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-07-14 12:05:21.297 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SET35D.tmp because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-07-14 12:05:21.292 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SET35D.tmp because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-07-14 12:05:21.287 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SET35D.tmp because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-07-13 14:23:31.941 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2017-07-13 14:23:31.925 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. Date: 2017-07-13 14:23:31.901 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements. Date: 2017-07-13 14:23:31.829 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-6700 CPU @ 3.40GHz Prozentuale Nutzung des RAM: 29% Installierter physikalischer RAM: 16305.78 MB Verfügbarer physikalischer RAM: 11488.59 MB Summe virtueller Speicher: 32689.78 MB Verfügbarer virtueller Speicher: 26776.54 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:111.25 GB) (Free:21.7 GB) NTFS Drive d: () (Fixed) (Total:931.51 GB) (Free:343.16 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: E7371244) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=449 MB) - (Type=27) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 8174F8EF) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
14.07.2017, 18:10 | #7 |
| Über Piesearch zu Bing, keine Lösung Kleines Update: Beim wiederholten laufen von AdwCleaner habe ich wieder den Eintrag zur Google Suchmaschine, den ich eigtl schon vorher gelöscht hatte!? (siehe Screenshot im Anhang) |
15.07.2017, 07:43 | #8 |
| Über Piesearch zu Bing, keine Lösung Hey, ein neues Update: ich habe anscheinend geschafft die piesearch Suchmaschine endlich aus meinem Chrome zu verbannen (siehe Screenshot). Ich hatte noch eine weitere Anleitung gefunden hier im Forum bei der ich im AdwCleaner noch zusätzliche Wiederherstellungs Einstellungen (Tracing, Proxy, WinSock, IE Richtlinien und Chrome Richtlinen) hinzugefügt habe. Um trotzdem eine Nummer sicherzugehen habe ich nochmal hier alle Protokolle nach erneuten Scannen (AdwCleaner, MBAM, Frst und Addition) AdwCleaner Code:
ATTFilter # AdwCleaner v6.047 - Bericht erstellt am 15/07/2017 um 08:30:59 # Aktualisiert am 19/05/2017 von Malwarebytes # Datenbank : 2017-07-13.1 [Lokal] # Betriebssystem : Windows 10 Pro (X64) # Benutzername : chr1s - CHR1S-PC # Gestartet von : C:\Users\chr1s\Desktop\adwcleaner_6.047__1_.exe # Modus: Löschen # Unterstützung : https://www.malwarebytes.com/support ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** [-] [C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Web data] [Search Provider] Gelöscht: google ************************* :: "Tracing" Schlüssel gelöscht :: Winsock Einstellungen zurückgesetzt :: Proxy Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ************************* C:\AdwCleaner\AdwCleaner[C1].txt - [3763 Bytes] - [29/10/2015 15:09:28] C:\AdwCleaner\AdwCleaner[C2].txt - [1203 Bytes] - [04/12/2015 23:08:45] C:\AdwCleaner\AdwCleaner[C3].txt - [6454 Bytes] - [13/07/2017 13:30:13] C:\AdwCleaner\AdwCleaner[C4].txt - [1586 Bytes] - [13/07/2017 13:43:56] C:\AdwCleaner\AdwCleaner[C5].txt - [1735 Bytes] - [14/07/2017 12:12:42] C:\AdwCleaner\AdwCleaner[C6].txt - [1406 Bytes] - [15/07/2017 08:30:59] C:\AdwCleaner\AdwCleaner[S1].txt - [5140 Bytes] - [29/10/2015 15:09:03] C:\AdwCleaner\AdwCleaner[S2].txt - [1108 Bytes] - [04/12/2015 23:08:10] C:\AdwCleaner\AdwCleaner[S3].txt - [6371 Bytes] - [13/07/2017 13:29:32] C:\AdwCleaner\AdwCleaner[S4].txt - [2042 Bytes] - [13/07/2017 13:43:40] C:\AdwCleaner\AdwCleaner[S5].txt - [2191 Bytes] - [14/07/2017 12:11:35] C:\AdwCleaner\AdwCleaner[S6].txt - [2336 Bytes] - [14/07/2017 18:48:27] C:\AdwCleaner\AdwCleaner[S7].txt - [2409 Bytes] - [14/07/2017 19:09:17] C:\AdwCleaner\AdwCleaner[S8].txt - [2482 Bytes] - [15/07/2017 08:30:41] ########## EOF - C:\AdwCleaner\AdwCleaner[C6].txt - [2063 Bytes] ########## Code:
ATTFilter Malwarebytes www.malwarebytes.com -Protokolldetails- Scan-Datum: 15.07.17 Scan-Zeit: 08:32 Protokolldatei: mbam17-2.txt Administrator: Ja -Softwaredaten- Version: 3.1.2.1733 Komponentenversion: 1.0.160 Version des Aktualisierungspakets: 1.0.2368 Lizenz: Testversion -Systemdaten- Betriebssystem: Windows 10 (Build 15063.483) CPU: x64 Dateisystem: NTFS Benutzer: CHR1S-PC\chr1s -Scan-Übersicht- Scan-Typ: Bedrohungs-Scan Ergebnis: Abgeschlossen Gescannte Objekte: 460106 Erkannte Bedrohungen: 0 (keine bösartigen Elemente erkannt) In die Quarantäne verschobene Bedrohungen: 0 (keine bösartigen Elemente erkannt) Abgelaufene Zeit: 1 Min., 11 Sek. -Scan-Optionen- Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert -Scan-Details- Prozess: 0 (keine bösartigen Elemente erkannt) Modul: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 0 (keine bösartigen Elemente erkannt) Registrierungswert: 0 (keine bösartigen Elemente erkannt) Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Daten-Stream: 0 (keine bösartigen Elemente erkannt) Ordner: 0 (keine bösartigen Elemente erkannt) Datei: 0 (keine bösartigen Elemente erkannt) Physischer Sektor: 0 (keine bösartigen Elemente erkannt) (end) Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 13-07-2017 durchgeführt von chr1s (Administrator) auf CHR1S-PC (15-07-2017 08:34:58) Gestartet von D:\Firefox Downloads Geladene Profile: chr1s (Verfügbare Profile: chr1s & DefaultAppPool) Platform: Windows 10 Pro Version 1703 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe () C:\Windows\SysWOW64\PnkBstrB.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe (Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe (Micro-Star INT'L CO., LTD.) C:\MSI\MSIRegister\MSIRegisterService.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Electronic Arts) D:\Programme\Origin\OriginWebHelperService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Spotify Ltd) C:\Users\chr1s\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvspcaps64.exe (Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfPro5Hook.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe (Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe (Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.4.0.10\Lightshot.exe (Logitech Inc.) C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe () C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_26_0_0_137.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_26_0_0_137.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.15063.410_none_9e914f9d2d85dacb\TiWorker.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8843784 2016-08-08] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2016-10-06] (Intel Corporation) HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213832 2017-07-13] (AVAST Software) HKLM\...\Run: [Malwarebytes TrayApp] => C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\mbamtray.exe [3146704 2017-05-09] (Malwarebytes) HKLM-x32\...\Run: [UpdReg] => C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [46368 2010-03-09] (Nuance Communications, Inc.) HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [29984 2010-03-09] (Nuance Communications, Inc.) HKLM-x32\...\Run: [PPort12reminder] => "C:\Program Files (x86)\Nuance\PaperPort\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\12\Config\Ereg\Ereg.ini" HKLM-x32\...\Run: [PDFHook] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\pdfpro5hook.exe [636192 2010-03-05] (Nuance Communications, Inc.) HKLM-x32\...\Run: [PDF5 Registry Controller] => C:\Program Files (x86)\Nuance\PDF Viewer Plus\RegistryController.exe [62752 2010-03-05] (Nuance Communications, Inc.) HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.) HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [225944 2016-07-11] () HKLM-x32\...\Run: [LWS] => C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe [204136 2012-09-13] (Logitech Inc.) HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2017-04-13] (Razer Inc.) HKLM-x32\...\Run: [Live Update] => C:\Program Files (x86)\MSI\Live Update\Live Update.exe [15371216 2017-03-07] (Micro-Star INT'L CO., LTD.) HKLM-x32\...\Run: [MSIRegister] => C:\MSI\MSIRegister\MSIRegister.exe [1258960 2017-03-03] (Micro-Star INT'L CO., LTD.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-03-15] (Oracle Corporation) HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ACHTUNG HKU\S-1-5-21-173424566-3729193046-2416234265-1000\...\Run: [Spotify Web Helper] => C:\Users\chr1s\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1562224 2017-06-28] (Spotify Ltd) HKU\S-1-5-21-173424566-3729193046-2416234265-1000\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-05] (Acresso Corporation) HKU\S-1-5-21-173424566-3729193046-2416234265-1000\...\MountPoints2: {13abf9df-9927-11e5-ab0b-305a3a49b50b} - "F:\Setup.exe" HKU\S-1-5-21-173424566-3729193046-2416234265-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [37376 2017-03-18] (Microsoft Corporation) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{d7232cdb-a9ab-4461-80b8-ffbfe2d3c0e8}: [DhcpNameServer] 192.168.2.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com SearchScopes: HKU\.DEFAULT -> DefaultScope {637D6E3C-DF93-48A5-8362-159A8AC56B11} URL = hxxp://www.google.com/search?hl=en&q={searchTerms}&meta= SearchScopes: HKU\.DEFAULT -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\.DEFAULT -> {637D6E3C-DF93-48A5-8362-159A8AC56B11} URL = hxxp://www.google.com/search?hl=en&q={searchTerms}&meta= SearchScopes: HKU\S-1-5-21-173424566-3729193046-2416234265-1000 -> {637D6E3C-DF93-48A5-8362-159A8AC56B11} URL = hxxp://www.google.com/search?hl=en&q={searchTerms}&meta= BHO-x32: PlusIEEventHelper Class -> {551A852F-39A6-44A7-9C13-AFBEC9185A9D} -> C:\Program Files (x86)\Nuance\PDF Viewer Plus\Bin\PlusIEContextMenu.dll [2009-02-06] (Zeon Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\ssv.dll [2017-04-26] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-04-26] (Oracle Corporation) DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://files.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab DPF: HKLM-x32 {E705A591-DA3C-4228-B0D5-A356DBA42FBF} hxxp://files.creative.com/Web/softwareupdate/su2/ocx/20015/CTSUEng.cab DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://files.creative.com/Web/softwareupdate/ocx/150323/CTPID.cab FireFox: ======== FF ProfilePath: C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345 [2017-07-15] FF NewTab: Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345 -> about:home FF SelectedSearchEngine: Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345 -> Bing® FF Homepage: Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345 -> about:home FF NetworkProxy: Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345 -> type", 0 FF Extension: (BetterTTV) - C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345\Extensions\firefox@betterttv.net.xpi [2017-03-03] FF Extension: (MEGA) - C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345\Extensions\firefox@mega.co.nz.xpi [2016-11-06] FF Extension: (ProxTube) - C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345\Extensions\ich@maltegoetz.de.xpi [2017-03-03] FF Extension: (Avast SafePrice) - C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345\Extensions\sp@avast.com.xpi [2017-07-13] FF Extension: (Video DownloadHelper) - C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2017-03-03] FF Extension: (Adblock Plus) - C:\Users\chr1s\AppData\Roaming\Mozilla\Firefox\Profiles\ar0x8moo.default-1444746299345\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-03-03] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_26_0_0_137.dll [2017-07-13] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_137.dll [2017-07-13] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\dtplugin\npDeployJava1.dll [2017-04-26] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\plugin2\npjp2.dll [2017-04-26] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-06-08] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-06-08] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-07-13] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-07-13] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-04-05] (Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default [2017-07-15] CHR Extension: (Google Drive) - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-07-13] CHR Extension: (YouTube) - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-13] CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-07-13] CHR Extension: (Google Mail) - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-07-13] CHR Extension: (Chrome Media Router) - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-07-14] CHR HKLM\...\Chrome\Extension: [oggihoncmelambjaefiboekididcaffe] - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\oggihoncmelambjaefiboekididcaffe.crx <nicht gefunden> CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [oggihoncmelambjaefiboekididcaffe] - C:\Users\chr1s\AppData\Local\Google\Chrome\User Data\Default\Extensions\oggihoncmelambjaefiboekididcaffe.crx <nicht gefunden> ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2014-07-23] () R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2014-07-23] () [Datei ist nicht signiert] R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7430992 2017-07-13] (AVAST Software s.r.o.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [263312 2017-07-13] (AVAST Software) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1522184 2017-03-31] () S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [Datei ist nicht signiert] S3 Creative ALchemy AL6 Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\AL6Licensing.exe [79360 2015-10-22] (Creative Labs) [Datei ist nicht signiert] S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2015-10-22] (Creative Labs) [Datei ist nicht signiert] R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [429056 2013-10-28] (Creative Technology Ltd) [Datei ist nicht signiert] S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [383016 2017-04-17] (EasyAntiCheat Ltd) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [17992 2016-10-06] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation) S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Datei ist nicht signiert] R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Datei ist nicht signiert] R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223520 2015-07-10] (Intel Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4470736 2017-05-09] (Malwarebytes) R2 MSIREGISTER_MR; C:\MSI\MSIRegister\MSIRegisterService.exe [132048 2017-02-21] (Micro-Star INT'L CO., LTD.) R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2286032 2017-03-06] (Micro-Star INT'L CO., LTD.) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-05-03] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-05-03] (NVIDIA Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-06-08] (NVIDIA Corporation) R2 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [449984 2017-06-08] (NVIDIA Corporation) S3 Origin Client Service; D:\Programme\Origin\OriginClientService.exe [2141192 2016-09-30] (Electronic Arts) R2 Origin Web Helper Service; D:\Programme\Origin\OriginWebHelperService.exe [2206224 2016-09-30] (Electronic Arts) S3 PAExec; C:\WINDOWS\PAExec.exe [189112 2016-06-05] (Power Admin LLC) R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [144672 2010-03-09] (Nuance Communications, Inc.) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2015-12-27] () R2 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [103736 2015-12-27] () R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2016-09-25] () S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [3913064 2017-03-20] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-06-20] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [49448 2016-08-18] (Advanced Micro Devices, Inc.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] () S3 AsusVBus; C:\WINDOWS\System32\DRIVERS\AsusVBus.sys [39704 2015-10-07] (Windows (R) Win 7 DDK provider) R1 aswbidsdriver; C:\WINDOWS\system32\drivers\aswbidsdrivera.sys [319984 2017-07-13] (AVAST Software s.r.o.) R0 aswbidsh; C:\WINDOWS\system32\drivers\aswbidsha.sys [198944 2017-07-13] (AVAST Software s.r.o.) R0 aswblog; C:\WINDOWS\system32\drivers\aswbloga.sys [343264 2017-07-13] (AVAST Software s.r.o.) R0 aswbuniv; C:\WINDOWS\system32\drivers\aswbuniva.sys [57704 2017-07-13] (AVAST Software s.r.o.) S3 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [46984 2017-07-13] (AVAST Software) R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [146664 2017-07-13] (AVAST Software) R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [110352 2017-07-13] (AVAST Software) R0 aswRvrt; C:\WINDOWS\system32\drivers\aswRvrt.sys [84392 2017-07-13] (AVAST Software) R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [1015848 2017-07-13] (AVAST Software) R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [585608 2017-07-13] (AVAST Software) R2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [198768 2017-07-13] (AVAST Software) R0 aswVmm; C:\WINDOWS\system32\drivers\aswVmm.sys [361336 2017-07-13] (AVAST Software) S3 ATP; C:\WINDOWS\System32\DRIVERS\AsusTP.sys [75584 2015-10-07] (ASUS Corporation) R3 e1dexpress; C:\WINDOWS\system32\DRIVERS\e1d65x64.sys [559080 2016-04-19] (Intel Corporation) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [77376 2017-06-27] () S3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.) R2 MBAMChameleon; C:\WINDOWS\system32\drivers\MBAMChameleon.sys [188352 2017-07-15] (Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\system32\drivers\farflt.sys [101784 2017-07-15] (Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\drivers\mbam.sys [45472 2017-07-15] (Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [253856 2017-07-15] (Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\drivers\mwac.sys [93600 2017-07-15] (Malwarebytes) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_2d81f3535ced17c6\nvlddmkm.sys [14461344 2017-06-09] (NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30328 2017-05-03] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48248 2017-05-03] (NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-05-18] (NVIDIA Corporation) R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13512 2015-12-09] () R3 rzendpt; C:\WINDOWS\System32\drivers\rzendpt.sys [50392 2015-10-26] (Razer Inc) R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [44144 2016-09-17] (Razer, Inc.) R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [137840 2016-10-08] (Razer, Inc.) S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] () S3 ssdevfactory; C:\WINDOWS\System32\DRIVERS\ssdevfactory.sys [32792 2015-09-29] (SteelSeries ApS) S3 taphss6; C:\WINDOWS\System32\drivers\taphss6.sys [42064 2016-10-13] (Anchorfree Inc.) R3 VBAudioVACMME; C:\WINDOWS\system32\DRIVERS\vbaudio_cable64_win7.sys [41192 2014-09-02] (Windows (R) Win 7 DDK provider) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-07-14 15:21 - 2017-07-15 08:34 - 00000000 ____D C:\FRST 2017-07-14 14:06 - 2017-07-15 08:32 - 00093600 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2017-07-14 14:06 - 2017-07-15 08:31 - 00253856 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2017-07-14 14:06 - 2017-07-15 08:31 - 00188352 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMChameleon.sys 2017-07-14 14:06 - 2017-07-15 08:31 - 00101784 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2017-07-14 14:06 - 2017-07-15 08:31 - 00045472 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2017-07-14 14:06 - 2017-07-14 14:06 - 00001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2017-07-14 14:06 - 2017-07-14 14:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2017-07-14 14:06 - 2017-07-14 14:06 - 00000000 ____D C:\Program Files\Malwarebytes 2017-07-14 14:06 - 2017-06-27 12:06 - 00077376 _____ C:\WINDOWS\system32\Drivers\mbae64.sys 2017-07-14 14:03 - 2017-07-14 14:14 - 00000406 _____ C:\WINDOWS\Tasks\update-S-1-5-21-173424566-3729193046-2416234265-1000.job 2017-07-14 14:03 - 2017-07-14 14:03 - 00003394 _____ C:\WINDOWS\System32\Tasks\update-S-1-5-21-173424566-3729193046-2416234265-1000 2017-07-14 14:03 - 2017-07-14 14:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lightshot 2017-07-14 13:53 - 2017-07-14 13:53 - 00000000 ____D C:\ProgramData\SWCUTemp 2017-07-14 13:49 - 2017-07-14 13:49 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2017-07-14 12:21 - 2017-07-15 08:33 - 00000000 ____D C:\Users\chr1s\Desktop\Viren Scan Logs 2017-07-14 12:17 - 2017-07-14 12:17 - 00467072 _____ (Bleeping Computer, LLC) C:\Users\chr1s\Desktop\sc-cleaner.exe 2017-07-13 13:54 - 2017-07-13 13:54 - 03978360 _____ (Google) C:\Users\chr1s\Downloads\chrome_cleanup_tool.exe 2017-07-13 13:41 - 2017-07-13 13:41 - 00003628 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2017-07-13 13:41 - 2017-07-13 13:41 - 00003504 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2017-07-13 13:41 - 2017-07-13 13:41 - 00002336 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-07-13 13:41 - 2017-07-13 13:41 - 00002324 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2017-07-13 13:35 - 2017-07-13 13:35 - 00721980 _____ C:\Users\chr1s\Desktop\bookmarks_13.07.17.html 2017-07-13 13:27 - 2017-07-13 13:27 - 04110280 _____ C:\Users\chr1s\Desktop\adwcleaner_6.047__1_.exe 2017-07-13 11:52 - 2017-07-13 11:52 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\TileDataLayer 2017-07-13 11:51 - 2017-07-13 11:51 - 01015848 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00585608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00400464 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2017-07-13 11:51 - 2017-07-13 11:51 - 00361336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswvmm.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00343264 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00319984 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00198944 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00198768 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00146664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00110352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00084392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00057704 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00046984 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys 2017-07-13 11:51 - 2017-07-13 11:51 - 00003994 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update 2017-07-13 11:51 - 2017-07-13 11:51 - 00001979 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk 2017-07-13 11:51 - 2017-07-13 11:51 - 00001967 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk 2017-07-13 11:51 - 2017-07-13 11:51 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\AVAST Software 2017-07-13 06:10 - 2017-07-13 11:46 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149993921993702 2017-07-13 06:10 - 2017-07-13 11:45 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149993919615602 2017-07-13 06:10 - 2017-07-13 11:43 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149993915978102 2017-07-13 06:10 - 2017-07-13 11:42 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149993903151502 2017-07-13 06:10 - 2017-07-13 06:15 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149993893148402 2017-07-13 06:10 - 2017-07-13 06:15 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149991932371802 2017-07-13 06:10 - 2017-07-13 06:12 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149991930101502 2017-07-13 06:10 - 2017-07-13 06:10 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991902570302.149991915671802 2017-07-13 05:47 - 2017-07-13 05:50 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991763501502.149991814679602 2017-07-13 05:47 - 2017-07-13 05:50 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991763501502.149991783660902 2017-07-13 05:47 - 2017-07-13 05:47 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149991763501502.149991781393702 2017-07-13 05:47 - 2017-06-30 16:47 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-07-13 05:47 - 2017-06-30 16:47 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-07-12 19:25 - 2017-07-07 09:20 - 02021680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2017-07-12 19:25 - 2017-07-07 09:13 - 00554392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2017-07-12 19:25 - 2017-07-07 09:13 - 00336320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe 2017-07-12 19:25 - 2017-07-07 09:10 - 01670496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2017-07-12 19:25 - 2017-07-07 08:57 - 00626528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2017-07-12 19:25 - 2017-07-07 08:57 - 00125344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2017-07-12 19:25 - 2017-07-07 08:39 - 01839872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2017-07-12 19:25 - 2017-07-07 08:39 - 00096128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll 2017-07-12 19:25 - 2017-07-07 08:37 - 02259760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2017-07-12 19:25 - 2017-07-07 08:37 - 01339352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpmde.dll 2017-07-12 19:25 - 2017-07-07 08:31 - 05820984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2017-07-12 19:25 - 2017-07-07 08:31 - 01518088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2017-07-12 19:25 - 2017-07-07 08:31 - 00129184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2017-07-12 19:25 - 2017-07-07 08:30 - 02165752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2017-07-12 19:25 - 2017-07-07 08:30 - 00949920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2017-07-12 19:25 - 2017-07-07 08:30 - 00750496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2017-07-12 19:25 - 2017-07-07 08:29 - 00349600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2017-07-12 19:25 - 2017-07-07 08:29 - 00123520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Clipc.dll 2017-07-12 19:25 - 2017-07-07 08:27 - 06759512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2017-07-12 19:25 - 2017-07-07 08:26 - 20373408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2017-07-12 19:25 - 2017-07-07 08:26 - 01529384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2017-07-12 19:25 - 2017-07-07 08:26 - 01195240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2017-07-12 19:25 - 2017-07-07 08:26 - 00988168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2017-07-12 19:25 - 2017-07-07 08:25 - 00035232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininitext.dll 2017-07-12 19:25 - 2017-07-07 08:24 - 01517472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll 2017-07-12 19:25 - 2017-07-07 08:23 - 00583160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2017-07-12 19:25 - 2017-07-07 08:19 - 00165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2017-07-12 19:25 - 2017-07-07 08:14 - 02956800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2017-07-12 19:25 - 2017-07-07 08:14 - 01448960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2017-07-12 19:25 - 2017-07-07 08:14 - 00790016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll 2017-07-12 19:25 - 2017-07-07 08:13 - 13839872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2017-07-12 19:25 - 2017-07-07 08:12 - 02199552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll 2017-07-12 19:25 - 2017-07-07 08:10 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2017-07-12 19:25 - 2017-07-07 08:10 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapprovp.dll 2017-07-12 19:25 - 2017-07-07 08:09 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2017-07-12 19:25 - 2017-07-07 08:07 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\raschap.dll 2017-07-12 19:25 - 2017-07-07 08:06 - 00241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsExt.dll 2017-07-12 19:25 - 2017-07-07 08:05 - 06728192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2017-07-12 19:25 - 2017-07-07 08:05 - 05719040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2017-07-12 19:25 - 2017-07-07 08:05 - 00502784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairing.dll 2017-07-12 19:25 - 2017-07-07 08:05 - 00312320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll 2017-07-12 19:25 - 2017-07-07 08:04 - 05961216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2017-07-12 19:25 - 2017-07-07 08:04 - 01248768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2017-07-12 19:25 - 2017-07-07 08:04 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2017-07-12 19:25 - 2017-07-07 08:04 - 00506368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2017-07-12 19:25 - 2017-07-07 08:04 - 00394240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2017-07-12 19:25 - 2017-07-07 08:03 - 06123520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2017-07-12 19:25 - 2017-07-07 08:03 - 00636416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2017-07-12 19:25 - 2017-07-07 08:03 - 00446464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll 2017-07-12 19:25 - 2017-07-07 08:02 - 00952832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll 2017-07-12 19:25 - 2017-07-07 08:01 - 02859520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2017-07-12 19:25 - 2017-07-07 08:00 - 07596544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2017-07-12 19:25 - 2017-07-07 08:00 - 05225984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2017-07-12 19:25 - 2017-07-07 08:00 - 02588160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll 2017-07-12 19:25 - 2017-07-07 08:00 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2017-07-12 19:25 - 2017-07-07 08:00 - 01565184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2017-07-12 19:25 - 2017-07-07 08:00 - 01019904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2017-07-12 19:25 - 2017-07-07 07:59 - 04417024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll 2017-07-12 19:25 - 2017-07-07 07:59 - 01494016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll 2017-07-12 19:25 - 2017-07-07 07:59 - 01355264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll 2017-07-12 19:25 - 2017-07-07 07:59 - 00787456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2017-07-12 19:25 - 2017-07-07 07:58 - 04559360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll 2017-07-12 19:25 - 2017-07-07 07:58 - 02782720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2017-07-12 19:25 - 2017-07-07 07:58 - 02298368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2017-07-12 19:25 - 2017-07-07 07:58 - 01237504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Maps.dll 2017-07-12 19:25 - 2017-07-07 07:55 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll 2017-07-12 19:25 - 2017-07-07 07:55 - 00329216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2017-07-12 19:25 - 2017-07-07 07:53 - 01301504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll 2017-07-12 19:25 - 2017-07-07 07:53 - 00338432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinfo32.exe 2017-07-12 19:25 - 2017-06-20 08:06 - 00279968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2017-07-12 19:25 - 2017-06-20 08:03 - 00820128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2017-07-12 19:25 - 2017-06-20 08:02 - 01055648 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2017-07-12 19:25 - 2017-06-20 07:34 - 00192416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll 2017-07-12 19:25 - 2017-06-20 07:15 - 00455104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll 2017-07-12 19:25 - 2017-06-20 07:13 - 00787712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2017-07-12 19:25 - 2017-06-20 07:13 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe 2017-07-12 19:25 - 2017-06-20 07:12 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2017-07-12 19:25 - 2017-06-20 07:09 - 00406032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll 2017-07-12 19:25 - 2017-06-20 07:08 - 04469840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2017-07-12 19:25 - 2017-06-20 07:07 - 02475136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2017-07-12 19:25 - 2017-06-20 07:07 - 00346016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2017-07-12 19:25 - 2017-06-20 07:07 - 00138656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostUser.dll 2017-07-12 19:25 - 2017-06-20 07:06 - 00754592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2017-07-12 19:25 - 2017-06-20 07:06 - 00278944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll 2017-07-12 19:25 - 2017-06-20 07:05 - 00438096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.dll 2017-07-12 19:25 - 2017-06-20 07:05 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe 2017-07-12 19:25 - 2017-06-20 07:05 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2017-07-12 19:25 - 2017-06-20 07:05 - 00364032 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2017-07-12 19:25 - 2017-06-20 07:04 - 02330520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2017-07-12 19:25 - 2017-06-20 07:04 - 01178528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll 2017-07-12 19:25 - 2017-06-20 07:04 - 01077496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll 2017-07-12 19:25 - 2017-06-20 07:04 - 00181656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2017-07-12 19:25 - 2017-06-20 07:04 - 00049656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msasn1.dll 2017-07-12 19:25 - 2017-06-20 07:03 - 05806048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2017-07-12 19:25 - 2017-06-20 07:03 - 00864240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2017-07-12 19:25 - 2017-06-20 07:03 - 00443728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2017-07-12 19:25 - 2017-06-20 07:02 - 03377664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2017-07-12 19:25 - 2017-06-20 07:02 - 01121928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2017-07-12 19:25 - 2017-06-20 07:02 - 00354400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll 2017-07-12 19:25 - 2017-06-20 07:01 - 00176032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\basecsp.dll 2017-07-12 19:25 - 2017-06-20 07:00 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2017-07-12 19:25 - 2017-06-20 06:56 - 00985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll 2017-07-12 19:25 - 2017-06-20 06:49 - 00899072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfuimanager.dll 2017-07-12 19:25 - 2017-06-20 06:49 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacc.dll 2017-07-12 19:25 - 2017-06-20 06:46 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll 2017-07-12 19:25 - 2017-06-20 06:45 - 00111104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Profile.RetailInfo.dll 2017-07-12 19:25 - 2017-06-20 06:43 - 00173568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll 2017-07-12 19:25 - 2017-06-20 06:43 - 00151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll 2017-07-12 19:25 - 2017-06-20 06:43 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll 2017-07-12 19:25 - 2017-06-20 06:43 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dataclen.dll 2017-07-12 19:25 - 2017-06-20 06:42 - 00641024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certca.dll 2017-07-12 19:25 - 2017-06-20 06:42 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Payments.dll 2017-07-12 19:25 - 2017-06-20 06:42 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scksp.dll 2017-07-12 19:25 - 2017-06-20 06:42 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sendmail.dll 2017-07-12 19:25 - 2017-06-20 06:41 - 00734208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe 2017-07-12 19:25 - 2017-06-20 06:41 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll 2017-07-12 19:25 - 2017-06-20 06:41 - 00601088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SndVolSSO.dll 2017-07-12 19:25 - 2017-06-20 06:41 - 00433152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll 2017-07-12 19:25 - 2017-06-20 06:41 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll 2017-07-12 19:25 - 2017-06-20 06:40 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2017-07-12 19:25 - 2017-06-20 06:40 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll 2017-07-12 19:25 - 2017-06-20 06:40 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2017-07-12 19:25 - 2017-06-20 06:40 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AboveLockAppHost.dll 2017-07-12 19:25 - 2017-06-20 06:40 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edputil.dll 2017-07-12 19:25 - 2017-06-20 06:40 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll 2017-07-12 19:25 - 2017-06-20 06:39 - 02814464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll 2017-07-12 19:25 - 2017-06-20 06:39 - 02671616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2017-07-12 19:25 - 2017-06-20 06:39 - 00969728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll 2017-07-12 19:25 - 2017-06-20 06:39 - 00646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl 2017-07-12 19:25 - 2017-06-20 06:39 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VAN.dll 2017-07-12 19:25 - 2017-06-20 06:39 - 00312320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2017-07-12 19:25 - 2017-06-20 06:38 - 01451008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2017-07-12 19:25 - 2017-06-20 06:38 - 01285120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbghelp.dll 2017-07-12 19:25 - 2017-06-20 06:38 - 01171968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe 2017-07-12 19:25 - 2017-06-20 06:38 - 00648192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartcardCredentialProvider.dll 2017-07-12 19:25 - 2017-06-20 06:38 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2017-07-12 19:25 - 2017-06-20 06:36 - 03667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2017-07-12 19:25 - 2017-06-20 06:35 - 02679296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll 2017-07-12 19:25 - 2017-06-20 06:35 - 02132480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2017-07-12 19:25 - 2017-06-20 06:35 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll 2017-07-12 19:25 - 2017-06-20 06:34 - 04056576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2017-07-12 19:25 - 2017-06-20 06:34 - 02750464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2017-07-12 19:25 - 2017-06-20 06:34 - 02211328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll 2017-07-12 19:25 - 2017-06-20 06:34 - 01492480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Bluetooth.dll 2017-07-12 19:25 - 2017-06-20 06:34 - 00760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2017-07-12 19:25 - 2017-06-20 06:31 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll 2017-07-12 19:25 - 2017-06-20 06:30 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdmaud.drv 2017-07-12 19:25 - 2017-06-20 06:30 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll 2017-07-12 19:25 - 2017-06-20 06:30 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2017-07-12 19:25 - 2017-06-20 06:28 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll 2017-07-12 19:24 - 2017-07-07 16:00 - 00947712 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll 2017-07-12 19:24 - 2017-07-07 09:27 - 01147288 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2017-07-12 19:24 - 2017-07-07 09:27 - 01024928 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2017-07-12 19:24 - 2017-07-07 09:27 - 00965024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi 2017-07-12 19:24 - 2017-07-07 09:27 - 00821664 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe 2017-07-12 19:24 - 2017-07-07 09:27 - 00750560 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2017-07-12 19:24 - 2017-07-07 09:26 - 01065104 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2017-07-12 19:24 - 2017-07-07 09:25 - 00899824 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2017-07-12 19:24 - 2017-07-07 09:24 - 00117664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys 2017-07-12 19:24 - 2017-07-07 09:23 - 02399728 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2017-07-12 19:24 - 2017-07-07 09:22 - 08318880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-07-12 19:24 - 2017-07-07 09:22 - 01186464 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2017-07-12 19:24 - 2017-07-07 09:22 - 00119384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll 2017-07-12 19:24 - 2017-07-07 09:21 - 32688336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsRaw.dll 2017-07-12 19:24 - 2017-07-07 09:21 - 02969880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll 2017-07-12 19:24 - 2017-07-07 09:20 - 00923040 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2017-07-12 19:24 - 2017-07-07 09:20 - 00519584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2017-07-12 19:24 - 2017-07-07 09:20 - 00382368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2017-07-12 19:24 - 2017-07-07 09:17 - 01017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2017-07-12 19:24 - 2017-07-07 09:15 - 02444696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2017-07-12 19:24 - 2017-07-07 09:14 - 07325584 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2017-07-12 19:24 - 2017-07-07 09:14 - 05477088 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll 2017-07-12 19:24 - 2017-07-07 09:14 - 01760264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2017-07-12 19:24 - 2017-07-07 09:14 - 01171032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2017-07-12 19:24 - 2017-07-07 09:13 - 00872472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2017-07-12 19:24 - 2017-07-07 09:13 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Clipc.dll 2017-07-12 19:24 - 2017-07-07 09:12 - 00411040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2017-07-12 19:24 - 2017-07-07 09:12 - 00318232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe 2017-07-12 19:24 - 2017-07-07 09:12 - 00228256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2017-07-12 19:24 - 2017-07-07 09:11 - 07904784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2017-07-12 19:24 - 2017-07-07 09:11 - 00094624 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2017-07-12 19:24 - 2017-07-07 09:10 - 21353208 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2017-07-12 19:24 - 2017-07-07 09:10 - 01337848 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2017-07-12 19:24 - 2017-07-07 09:10 - 01325968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2017-07-12 19:24 - 2017-07-07 09:10 - 00372128 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2017-07-12 19:24 - 2017-07-07 09:10 - 00254168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2017-07-12 19:24 - 2017-07-07 09:09 - 00041376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininitext.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 02229152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 01854880 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 01693600 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 01458584 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 01100704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00992672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00848280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00846752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVClient.exe 2017-07-12 19:24 - 2017-07-07 09:08 - 00844704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00774560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00699808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00672672 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00506776 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll 2017-07-12 19:24 - 2017-07-07 09:08 - 00399264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll 2017-07-12 19:24 - 2017-07-07 09:07 - 01106848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2017-07-12 19:24 - 2017-07-07 09:07 - 00058488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe 2017-07-12 19:24 - 2017-07-07 08:40 - 23677440 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2017-07-12 19:24 - 2017-07-07 08:37 - 31652264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecsRaw.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 03670016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2017-07-12 19:24 - 2017-07-07 08:27 - 01640448 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 01050624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 00859136 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 00577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\duser.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 00557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 00443392 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationExtensions.dll 2017-07-12 19:24 - 2017-07-07 08:27 - 00360960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll 2017-07-12 19:24 - 2017-07-07 08:26 - 17364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2017-07-12 19:24 - 2017-07-07 08:25 - 02199552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2017-07-12 19:24 - 2017-07-07 08:24 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\officecsp.dll 2017-07-12 19:24 - 2017-07-07 08:23 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll 2017-07-12 19:24 - 2017-07-07 08:23 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2017-07-12 19:24 - 2017-07-07 08:23 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2017-07-12 19:24 - 2017-07-07 08:23 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapprovp.dll 2017-07-12 19:24 - 2017-07-07 08:22 - 07931392 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2017-07-12 19:24 - 2017-07-07 08:22 - 00520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2017-07-12 19:24 - 2017-07-07 08:21 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncCsp.dll 2017-07-12 19:24 - 2017-07-07 08:21 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2017-07-12 19:24 - 2017-07-07 08:20 - 23681536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-07-12 19:24 - 2017-07-07 08:20 - 08331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2017-07-12 19:24 - 2017-07-07 08:20 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll 2017-07-12 19:24 - 2017-07-07 08:19 - 07149056 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2017-07-12 19:24 - 2017-07-07 08:19 - 00527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll 2017-07-12 19:24 - 2017-07-07 08:19 - 00256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2017-07-12 19:24 - 2017-07-07 08:19 - 00137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschap.dll 2017-07-12 19:24 - 2017-07-07 08:18 - 07336448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2017-07-12 19:24 - 2017-07-07 08:18 - 00563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairing.dll 2017-07-12 19:24 - 2017-07-07 08:18 - 00548864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll 2017-07-12 19:24 - 2017-07-07 08:18 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll 2017-07-12 19:24 - 2017-07-07 08:18 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecsExt.dll 2017-07-12 19:24 - 2017-07-07 08:17 - 01878016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2017-07-12 19:24 - 2017-07-07 08:17 - 01260544 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2017-07-12 19:24 - 2017-07-07 08:17 - 00692736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2017-07-12 19:24 - 2017-07-07 08:17 - 00588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2017-07-12 19:24 - 2017-07-07 08:17 - 00536064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2017-07-12 19:24 - 2017-07-07 08:17 - 00422400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2017-07-12 19:24 - 2017-07-07 08:17 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe 2017-07-12 19:24 - 2017-07-07 08:16 - 12786176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-07-12 19:24 - 2017-07-07 08:16 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2017-07-12 19:24 - 2017-07-07 08:16 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2017-07-12 19:24 - 2017-07-07 08:15 - 08238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2017-07-12 19:24 - 2017-07-07 08:15 - 00922112 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2017-07-12 19:24 - 2017-07-07 08:14 - 08211968 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2017-07-12 19:24 - 2017-07-07 08:14 - 03784704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll 2017-07-12 19:24 - 2017-07-07 08:14 - 01802240 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2017-07-12 19:24 - 2017-07-07 08:14 - 00570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2017-07-12 19:24 - 2017-07-07 08:14 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll 2017-07-12 19:24 - 2017-07-07 08:13 - 05892096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2017-07-12 19:24 - 2017-07-07 08:13 - 00840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 04730880 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 03307008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 02499584 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 02055168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2017-07-12 19:24 - 2017-07-07 08:12 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 01420800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Maps.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 01305088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 01293824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 01142272 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2017-07-12 19:24 - 2017-07-07 08:12 - 00706560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2017-07-12 19:24 - 2017-07-07 08:11 - 03139584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 02829824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 02649600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 02177024 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 01812480 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 00986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2017-07-12 19:24 - 2017-07-07 08:11 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2017-07-12 19:24 - 2017-07-07 08:10 - 05557760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2017-07-12 19:24 - 2017-07-07 08:10 - 04707840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll 2017-07-12 19:24 - 2017-07-07 08:10 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2017-07-12 19:24 - 2017-07-07 08:09 - 20504576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2017-07-12 19:24 - 2017-07-07 08:08 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2017-07-12 19:24 - 2017-07-07 08:07 - 00430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll 2017-07-12 19:24 - 2017-07-07 08:07 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll 2017-07-12 19:24 - 2017-07-07 08:07 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToReceiver.dll 2017-07-12 19:24 - 2017-07-07 08:06 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2017-07-12 19:24 - 2017-07-07 08:06 - 00205824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll 2017-07-12 19:24 - 2017-07-07 08:05 - 19335168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-07-12 19:24 - 2017-07-07 08:05 - 11870720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-07-12 19:24 - 2017-07-07 08:05 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\msinfo32.exe 2017-07-12 19:24 - 2017-07-07 08:04 - 01703424 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe 2017-07-12 19:24 - 2017-07-07 08:04 - 01403392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll 2017-07-12 19:24 - 2017-07-07 08:04 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll 2017-07-12 19:24 - 2017-07-07 08:02 - 00508416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2017-07-12 19:24 - 2017-07-07 08:01 - 06287360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2017-07-12 19:24 - 2017-07-07 07:59 - 03656704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2017-07-12 19:24 - 2017-07-02 00:52 - 00031932 _____ C:\WINDOWS\system32\edgehtmlpluginpolicy.bin 2017-07-12 19:24 - 2017-06-20 08:18 - 01564576 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2017-07-12 19:24 - 2017-06-20 08:18 - 00096672 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2017-07-12 19:24 - 2017-06-20 08:17 - 00629152 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2017-07-12 19:24 - 2017-06-20 08:17 - 00544160 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2017-07-12 19:24 - 2017-06-20 08:17 - 00334240 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2017-07-12 19:24 - 2017-06-20 08:17 - 00136096 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2017-07-12 19:24 - 2017-06-20 08:17 - 00034720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2017-07-12 19:24 - 2017-06-20 08:16 - 01214880 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2017-07-12 19:24 - 2017-06-20 08:16 - 00335776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2017-07-12 19:24 - 2017-06-20 08:15 - 00233376 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2017-07-12 19:24 - 2017-06-20 08:11 - 01395152 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2017-07-12 19:24 - 2017-06-20 08:11 - 00411992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll 2017-07-12 19:24 - 2017-06-20 08:10 - 02327456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2017-07-12 19:24 - 2017-06-20 08:10 - 01930320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2017-07-12 19:24 - 2017-06-20 08:08 - 01242528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2017-07-12 19:24 - 2017-06-20 08:05 - 01057832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2017-07-12 19:24 - 2017-06-20 08:04 - 04847424 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2017-07-12 19:24 - 2017-06-20 08:04 - 00472728 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll 2017-07-12 19:24 - 2017-06-20 08:03 - 00179608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll 2017-07-12 19:24 - 2017-06-20 08:03 - 00102312 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialUIBroker.exe 2017-07-12 19:24 - 2017-06-20 08:02 - 02645688 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2017-07-12 19:24 - 2017-06-20 08:02 - 00426912 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2017-07-12 19:24 - 2017-06-20 08:00 - 00558920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.dll 2017-07-12 19:24 - 2017-06-20 08:00 - 00255904 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2017-07-12 19:24 - 2017-06-20 08:00 - 00142752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys 2017-07-12 19:24 - 2017-06-20 07:59 - 06554928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2017-07-12 19:24 - 2017-06-20 07:59 - 01220072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2017-07-12 19:24 - 2017-06-20 07:59 - 01054280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2017-07-12 19:24 - 2017-06-20 07:59 - 00583304 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2017-07-12 19:24 - 2017-06-20 07:59 - 00467504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2017-07-12 19:24 - 2017-06-20 07:58 - 00833160 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2017-07-12 19:24 - 2017-06-20 07:58 - 00406072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll 2017-07-12 19:24 - 2017-06-20 07:58 - 00203168 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll 2017-07-12 19:24 - 2017-06-20 07:57 - 02681760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2017-07-12 19:24 - 2017-06-20 07:57 - 00204192 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll 2017-07-12 19:24 - 2017-06-20 07:16 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll 2017-07-12 19:24 - 2017-06-20 07:16 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll 2017-07-12 19:24 - 2017-06-20 07:15 - 01620368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2017-07-12 19:24 - 2017-06-20 07:14 - 01150784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll 2017-07-12 19:24 - 2017-06-20 07:14 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys 2017-07-12 19:24 - 2017-06-20 07:13 - 00216064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll 2017-07-12 19:24 - 2017-06-20 07:13 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll 2017-07-12 19:24 - 2017-06-20 07:13 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgr.dll 2017-07-12 19:24 - 2017-06-20 07:12 - 00293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2017-07-12 19:24 - 2017-06-20 07:12 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyMATEnc.dll 2017-07-12 19:24 - 2017-06-20 07:12 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll 2017-07-12 19:24 - 2017-06-20 07:12 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys 2017-07-12 19:24 - 2017-06-20 07:11 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScDeviceEnum.dll 2017-07-12 19:24 - 2017-06-20 07:11 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2017-07-12 19:24 - 2017-06-20 07:10 - 00778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyHrtfEnc.dll 2017-07-12 19:24 - 2017-06-20 07:10 - 00722432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2017-07-12 19:24 - 2017-06-20 07:10 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll 2017-07-12 19:24 - 2017-06-20 07:10 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll 2017-07-12 19:24 - 2017-06-20 07:10 - 00188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll 2017-07-12 19:24 - 2017-06-20 07:10 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgrSvc.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Payments.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00427008 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00357888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe 2017-07-12 19:24 - 2017-06-20 07:09 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\certprop.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll 2017-07-12 19:24 - 2017-06-20 07:09 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00791040 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockHostingFramework.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2017-07-12 19:24 - 2017-06-20 07:08 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll 2017-07-12 19:24 - 2017-06-20 07:07 - 00916992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe 2017-07-12 19:24 - 2017-06-20 07:07 - 00823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll 2017-07-12 19:24 - 2017-06-20 07:07 - 00757248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2017-07-12 19:24 - 2017-06-20 07:07 - 00632832 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll 2017-07-12 19:24 - 2017-06-20 07:07 - 00626176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll 2017-07-12 19:24 - 2017-06-20 07:07 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SndVolSSO.dll 2017-07-12 19:24 - 2017-06-20 07:07 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\system32\TDLMigration.dll 2017-07-12 19:24 - 2017-06-20 07:07 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00847872 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00751104 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00455680 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinDataModelServer.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00299520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00253440 _____ (Microsoft Corporation) C:\WINDOWS\system32\edputil.dll 2017-07-12 19:24 - 2017-06-20 07:06 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 04447744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 02873344 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 01468416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 00696320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl 2017-07-12 19:24 - 2017-06-20 07:05 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputSwitch.dll 2017-07-12 19:24 - 2017-06-20 07:05 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll 2017-07-12 19:24 - 2017-06-20 07:04 - 01818624 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2017-07-12 19:24 - 2017-06-20 07:04 - 01425920 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe 2017-07-12 19:24 - 2017-06-20 07:04 - 01177600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll 2017-07-12 19:24 - 2017-06-20 07:04 - 00899072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartcardCredentialProvider.dll 2017-07-12 19:24 - 2017-06-20 07:04 - 00802816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2017-07-12 19:24 - 2017-06-20 07:04 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll 2017-07-12 19:24 - 2017-06-20 07:04 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll 2017-07-12 19:24 - 2017-06-20 07:03 - 02077184 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2017-07-12 19:24 - 2017-06-20 07:03 - 01396224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2017-07-12 19:24 - 2017-06-20 07:02 - 03204096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll 2017-07-12 19:24 - 2017-06-20 07:02 - 02804736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2017-07-12 19:24 - 2017-06-20 07:02 - 01886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2017-07-12 19:24 - 2017-06-20 07:02 - 00681984 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2017-07-12 19:24 - 2017-06-20 07:02 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 04536320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 04396032 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 03803136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 03332096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 03059200 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 01076736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 00809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2017-07-12 19:24 - 2017-06-20 07:01 - 00397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll 2017-07-12 19:24 - 2017-06-20 07:00 - 03057664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2017-07-12 19:24 - 2017-06-20 07:00 - 02171392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll 2017-07-12 19:24 - 2017-06-20 06:59 - 02938880 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll 2017-07-12 19:24 - 2017-06-20 06:59 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll 2017-07-12 19:24 - 2017-06-20 06:59 - 01357824 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2017-07-12 19:24 - 2017-06-20 06:58 - 00625152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2017-07-12 19:24 - 2017-06-20 06:57 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe 2017-07-12 19:24 - 2017-06-20 06:57 - 00138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMPushRouterCore.dll 2017-07-12 19:24 - 2017-06-20 06:56 - 00600064 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll 2017-07-12 19:24 - 2017-06-20 06:56 - 00241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdmaud.drv 2017-07-12 19:24 - 2017-06-20 06:54 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DmApiSetExtImplDesktop.dll 2017-07-12 19:24 - 2017-06-20 06:45 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2017-07-12 19:24 - 2017-06-20 06:43 - 00329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2017-07-12 19:24 - 2017-06-20 06:43 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2017-07-12 19:24 - 2017-06-20 06:43 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2017-07-12 19:24 - 2017-06-20 06:42 - 00338432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2017-07-12 19:24 - 2017-06-20 06:42 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2017-07-12 19:24 - 2017-06-20 06:38 - 00663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2017-07-12 19:24 - 2017-06-20 06:37 - 02008576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2017-07-11 09:32 - 2017-07-14 23:08 - 00003128 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner 2017-07-01 07:32 - 2017-07-02 07:56 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\Twitch 2017-07-01 07:32 - 2017-07-01 07:32 - 00001082 _____ C:\Users\chr1s\Desktop\Twitch.lnk 2017-07-01 07:32 - 2017-07-01 07:32 - 00001068 _____ C:\Users\chr1s\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch.lnk 2017-07-01 07:32 - 2017-07-01 07:32 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\Twitch Setup 2017-06-30 17:33 - 2017-06-30 17:33 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini 2017-06-30 12:32 - 2017-06-30 13:36 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149881873396803.149882260687503 2017-06-30 12:32 - 2017-06-30 12:35 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149881873396803.149882257353103 2017-06-30 12:32 - 2017-06-30 12:35 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149881873396803.149881893978103 2017-06-30 12:32 - 2017-06-30 12:32 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149881873396803.149881890867103 2017-06-30 07:40 - 2017-06-30 07:41 - 00000000 ____D C:\Users\chr1s\Desktop\Uhr 2017-06-21 13:22 - 2017-06-08 01:38 - 00134592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2017-06-21 13:20 - 2017-06-08 03:45 - 40201664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 35390584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 35281344 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 28624320 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 11056272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 11028664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 10551256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 09248144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 09014976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 08808488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 03796928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 03256440 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 01988216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438253.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 01606776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438253.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 01278712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 01275944 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 01056888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00995736 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00994240 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00993360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00964216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00914880 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00775864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00725112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00688784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00618928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00612088 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00609728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00584128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00577728 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00499320 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2017-06-21 13:20 - 2017-06-08 03:45 - 00045976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2017-06-19 13:26 - 2017-06-19 13:26 - 00000000 ____D C:\Users\chr1s\Documents\Heroes of the Storm 2017-06-15 07:48 - 2017-06-15 08:52 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750569168703.149751118176503 2017-06-15 07:48 - 2017-06-15 08:51 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750569168703.149750954053103 2017-06-15 07:48 - 2017-06-15 07:51 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750569168703.149750951232803 2017-06-15 07:48 - 2017-06-15 07:50 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750569168703.149750588481203 2017-06-15 07:48 - 2017-06-15 07:48 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750569168703.149750585754603 2017-06-15 07:33 - 2017-06-15 07:36 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750478860903.149750499301503 2017-06-15 07:33 - 2017-06-15 07:33 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys.149750478860903.149750496039003 ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2017-07-15 08:34 - 2017-03-03 13:04 - 00000000 ____D C:\Users\chr1s\AppData\LocalLow\Mozilla 2017-07-15 08:32 - 2017-05-16 14:12 - 00000000 ____D C:\ProgramData\NVIDIA 2017-07-15 08:31 - 2017-05-16 14:17 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-07-15 08:31 - 2017-03-18 13:40 - 01835008 _____ C:\WINDOWS\system32\config\BBI 2017-07-15 08:30 - 2015-10-29 15:09 - 00000000 ____D C:\AdwCleaner 2017-07-15 08:30 - 2015-10-29 14:03 - 00000008 __RSH C:\ProgramData\ntuser.pol 2017-07-15 08:28 - 2017-03-18 23:03 - 00000000 ___HD C:\Program Files\WindowsApps 2017-07-15 08:28 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-07-15 08:27 - 2015-10-13 22:00 - 00000000 ____D C:\Program Files (x86)\Steam 2017-07-14 23:08 - 2017-05-16 14:13 - 00000000 ____D C:\Users\chr1s 2017-07-14 23:08 - 2017-05-16 14:12 - 00062308 _____ C:\WINDOWS\system32\BMXStateBkp-{00000003-00000000-00000000-00001102-0000000B-00431102}.rfx 2017-07-14 23:08 - 2017-05-16 14:12 - 00062308 _____ C:\WINDOWS\system32\BMXState-{00000003-00000000-00000000-00001102-0000000B-00431102}.rfx 2017-07-14 23:08 - 2017-05-16 14:12 - 00000820 _____ C:\WINDOWS\system32\DVCState-{00000003-00000000-00000000-00001102-0000000B-00431102}.rfx 2017-07-14 23:08 - 2017-05-16 14:11 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2017-07-14 23:08 - 2015-10-14 11:27 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\TS3Client 2017-07-14 22:57 - 2015-10-13 22:54 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\vlc 2017-07-14 14:20 - 2017-05-16 14:12 - 02460474 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-07-14 14:20 - 2017-03-20 06:41 - 01085826 _____ C:\WINDOWS\system32\perfh007.dat 2017-07-14 14:20 - 2017-03-20 06:41 - 00254654 _____ C:\WINDOWS\system32\perfc007.dat 2017-07-14 14:06 - 2015-10-29 15:11 - 00000000 ____D C:\ProgramData\Malwarebytes 2017-07-14 14:03 - 2016-06-06 14:49 - 00000425 _____ C:\Users\chr1s\AppData\Local\UserProducts.xml 2017-07-14 14:00 - 2017-05-23 16:56 - 00000000 ____D C:\Users\chr1s\AppData\Local\CrashDumps 2017-07-14 13:50 - 2015-10-14 11:58 - 00000000 ____D C:\Users\chr1s\AppData\Local\Adobe 2017-07-14 13:49 - 2017-05-16 14:17 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2017-07-14 13:49 - 2015-10-14 12:01 - 00000000 ____D C:\Program Files (x86)\Adobe 2017-07-14 07:32 - 2017-05-09 08:13 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\Zoom 2017-07-13 13:44 - 2015-10-13 22:04 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-07-13 13:42 - 2015-11-06 21:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-07-13 13:41 - 2016-11-25 20:03 - 00000000 ____D C:\Program Files\OBS 2017-07-13 13:41 - 2016-11-25 20:03 - 00000000 ____D C:\Program Files (x86)\OBS 2017-07-13 13:41 - 2015-10-13 16:47 - 00000000 ____D C:\Users\chr1s\AppData\Local\Google 2017-07-13 13:41 - 2015-10-13 16:47 - 00000000 ____D C:\Program Files (x86)\Google 2017-07-13 13:32 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2017-07-13 13:32 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\Macromed 2017-07-13 12:02 - 2016-08-12 01:16 - 00000000 ____D C:\ProgramData\Skype 2017-07-13 11:51 - 2017-06-06 18:39 - 00061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys 2017-07-13 11:51 - 2015-10-13 22:04 - 00000000 ____D C:\Program Files\AVAST Software 2017-07-13 11:49 - 2015-10-13 22:04 - 00000000 ____D C:\ProgramData\AVAST Software 2017-07-13 11:48 - 2015-12-04 09:26 - 00000000 ____D C:\Program Files\Common Files\AV 2017-07-13 11:47 - 2016-09-28 18:12 - 00000000 _____ C:\WINDOWS\SysWOW64\last.dump 2017-07-13 11:45 - 2017-03-18 23:01 - 00000000 ____D C:\WINDOWS\INF 2017-07-13 05:55 - 2017-06-06 18:39 - 00061304 _____ () C:\WINDOWS\SMSS-PFRO4323.tmp 2017-07-13 05:47 - 2016-04-27 07:55 - 00000000 __RHD C:\Users\Public\AccountPictures 2017-07-13 05:46 - 2017-05-16 14:11 - 00303368 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-07-12 21:11 - 2017-03-20 06:42 - 00000000 ____D C:\WINDOWS\OCR 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ___SD C:\WINDOWS\SysWOW64\F12 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ___SD C:\WINDOWS\system32\F12 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ___RD C:\Program Files\Windows Defender 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\oobe 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\migwiz 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\appraiser 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\ShellExperiences 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2017-07-12 21:11 - 2017-03-18 23:03 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2017-07-12 19:30 - 2017-03-18 22:51 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-07-12 19:28 - 2016-06-05 13:39 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-07-12 19:26 - 2016-06-05 13:39 - 135225752 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-07-11 17:48 - 2017-06-06 18:39 - 00061304 _____ () C:\WINDOWS\SMSS-PFRO4575.tmp 2017-07-11 17:48 - 2015-10-13 22:05 - 00360792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswvmm.sys.149978813348406 2017-07-11 08:46 - 2015-10-14 12:04 - 00000000 ____D C:\Users\chr1s\AppData\Local\Spotify 2017-07-11 06:32 - 2015-10-14 12:02 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\Spotify 2017-07-07 09:27 - 2015-10-13 16:38 - 00000000 ____D C:\Users\chr1s\AppData\Local\JDownloader v2.0 2017-07-04 16:48 - 2017-02-19 20:20 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\obs-studio 2017-07-04 16:44 - 2016-11-25 20:04 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\OBS 2017-07-02 18:39 - 2016-01-27 16:05 - 00000000 ____D C:\Users\chr1s\AppData\Local\Ubisoft Game Launcher 2017-07-02 15:42 - 2016-11-30 12:28 - 00753192 _____ C:\WINDOWS\system32\Drivers\EasyAntiCheat.sys 2017-06-30 22:36 - 2016-08-12 01:16 - 00000000 ____D C:\Users\chr1s\AppData\Roaming\Skype 2017-06-30 17:33 - 2017-05-16 14:13 - 00000000 ____D C:\Users\DefaultAppPool 2017-06-30 13:36 - 2017-06-06 18:39 - 00061304 _____ () C:\WINDOWS\SMSS-PFRO7f03.tmp 2017-06-30 12:28 - 2015-10-14 13:49 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client 2017-06-29 20:51 - 2015-10-14 11:36 - 00000000 ____D C:\Users\chr1s\AppData\Local\Battle.net 2017-06-29 13:17 - 2017-02-19 20:19 - 00001275 _____ C:\Users\Public\Desktop\OBS Studio.lnk 2017-06-28 08:53 - 2016-01-05 15:20 - 00000000 ____D C:\Users\chr1s\Documents\Diablo III 2017-06-21 13:22 - 2017-05-16 14:12 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2017-06-21 13:22 - 2017-04-25 15:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2017-06-18 15:34 - 2016-08-19 11:58 - 00000000 ____D C:\Users\chr1s\Desktop\Memes 2017-06-17 15:48 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\rescache 2017-06-15 09:32 - 2017-03-20 14:54 - 00000000 ___RD C:\Program Files (x86)\Skype 2017-06-15 09:19 - 2017-06-06 18:39 - 00061304 _____ () C:\WINDOWS\SMSS-PFRO43a0.tmp 2017-06-15 07:36 - 2017-06-06 18:39 - 00061304 _____ () C:\WINDOWS\SMSS-PFRO441d.tmp 2017-06-15 07:34 - 2010-11-21 05:27 - 00565416 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2017-06-15 07:33 - 2017-03-18 13:40 - 00032768 _____ C:\WINDOWS\system32\config\ELAM 2017-06-15 07:32 - 2016-09-29 08:26 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2017-06-15 07:32 - 2016-09-29 08:26 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2016-06-06 14:49 - 2016-06-06 14:49 - 0000003 _____ () C:\Users\chr1s\AppData\Local\updater.log 2016-06-06 14:49 - 2017-07-14 14:03 - 0000425 _____ () C:\Users\chr1s\AppData\Local\UserProducts.xml Einige Dateien in TEMP: ==================== 2017-07-14 07:32 - 2017-05-09 08:13 - 0034992 _____ (Zoom Video Communications, Inc.) C:\Users\chr1s\AppData\Local\Temp\CptInstall.exe 2017-07-14 07:32 - 2017-05-09 08:13 - 0147120 _____ (Zoom Video Communications, Inc.) C:\Users\chr1s\AppData\Local\Temp\CptShare.dll 2017-05-05 12:53 - 2017-05-18 07:21 - 0754864 _____ (NVIDIA Corporation) C:\Users\chr1s\AppData\Local\Temp\nvSCPAPI.dll 2017-05-05 12:53 - 2017-05-18 07:21 - 0869200 _____ (NVIDIA Corporation) C:\Users\chr1s\AppData\Local\Temp\nvSCPAPI64.dll 2017-05-23 13:22 - 2017-05-18 07:21 - 0367552 _____ (NVIDIA Corporation) C:\Users\chr1s\AppData\Local\Temp\nvStInst.exe 2017-07-07 09:26 - 2017-07-07 09:26 - 0040448 ____N () C:\Users\chr1s\AppData\Local\Temp\proxy_vole3085512551040751523.dll 2017-07-07 09:26 - 2017-07-07 09:26 - 0040448 ____N () C:\Users\chr1s\AppData\Local\Temp\proxy_vole3884867628677391909.dll 2017-07-07 09:26 - 2017-07-07 09:26 - 0040448 ____N () C:\Users\chr1s\AppData\Local\Temp\proxy_vole6110799048519171655.dll 2017-05-16 16:16 - 2017-05-27 15:51 - 0192512 _____ () C:\Users\chr1s\AppData\Local\Temp\sfamcc00001.dll 2017-05-31 10:09 - 2017-05-31 10:10 - 30950664 _____ () C:\Users\chr1s\AppData\Local\Temp\vlc-2.2.6-win32.exe 2017-07-14 07:32 - 2017-05-09 08:13 - 0090288 _____ () C:\Users\chr1s\AppData\Local\Temp\zCrashReport.dll ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2017-07-06 16:19 ==================== Ende von FRST.txt ============================ |
15.07.2017, 07:44 | #9 |
| Über Piesearch zu Bing, keine Lösung Addition #2 Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 13-07-2017 durchgeführt von chr1s (15-07-2017 08:35:24) Gestartet von D:\Firefox Downloads Windows 10 Pro Version 1703 (X64) (2017-05-16 12:20:16) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-173424566-3729193046-2416234265-500 - Administrator - Disabled) chr1s (S-1-5-21-173424566-3729193046-2416234265-1000 - Administrator - Enabled) => C:\Users\chr1s DefaultAccount (S-1-5-21-173424566-3729193046-2416234265-503 - Limited - Disabled) Gast (S-1-5-21-173424566-3729193046-2416234265-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-173424566-3729193046-2416234265-1002 - Limited - Enabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B} AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 17.009.20044 - Adobe Systems Incorporated) Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.137 - Adobe Systems Incorporated) Ansel (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Ansel) (Version: 382.53 - NVIDIA Corporation) Hidden Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.26.1 - Asmedia Technology) Assassin's Creed Syndicate Gold Edition MULTi2 1.0 (HKLM-x32\...\Assassin's Creed Syndicate Gold Edition MULTi2 1.0) (Version: - ) Asus Sonic Suite Plugins (HKLM-x32\...\{53eaa65b-5cab-459c-9642-a408bdcf43a3}) (Version: 2.1.3301 - ASUSTeKcomputer.Inc) Hidden Audacity 2.1.2 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.5.2302 - AVAST Software) Avidemux 2.6 - 32 bits (32-bit) (HKLM-x32\...\Avidemux 2.6 - 32 bits) (Version: 2.6.20.170428 - ) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Brother MFL-Pro Suite MFC-7360N (HKLM-x32\...\{3ACCCFB3-7B17-4E9F-ACB0-46868FCD4487}) (Version: 1.1.3.0 - Brother Industries, Ltd.) Call of Duty: Modern Warfare 3 - Multiplayer (HKLM\...\Steam App 42690) (Version: - Infinity Ward) CameraHelperMsi (HKLM-x32\...\{15634701-BACE-4449-8B25-1567DA8C9FD3}) (Version: 13.51.815.0 - Logitech) Hidden Catalyst Control Center Next Localization BR (HKLM\...\{3E245378-BF77-6946-C6F6-096DBE5EAB82}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization BR (HKLM\...\{B60EA4A9-D398-1F5B-46F8-1A0EC38CD9D2}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{45907537-804A-514F-5280-5F4F12A6DCBC}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{8B724531-9754-3338-1F62-98491A21E2D3}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{29F855AA-4F0D-9DF2-95B8-189E01AFC0FB}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{962364E4-08BB-347D-32E7-2B789F37BF8A}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{0989D0EA-AFF3-5F9A-3D25-20EE133E409B}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{115447BF-1ADB-1106-AB5E-B7DF7E65A347}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{A8689A0F-5928-7300-B82B-C5E85131B7BA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{EDCD0742-75CB-A30F-6C4F-AD45659D7731}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{3461158F-E6FC-8AFE-2C5F-22F080E47A8B}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{76AAF56B-93D8-161D-809A-EC05F3B913DA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{063CED74-F5F0-870E-DC9C-2D78FDEDA3EE}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{252CE9ED-7095-71BA-1B18-0946F524344D}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{13BB60AA-88F7-4B1F-2DEC-D81EEDE8B3AA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{A5109EA4-EA4B-BCEF-0BFC-D53762298E73}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{2C6BF9CC-DBD4-3159-8DF0-D4BD1ADBDDC3}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{37AA6227-FF2C-95AC-87C0-45DCC0BB87DA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{EB1A805D-567C-10F2-58A9-6BA6B9D2466B}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{EB328356-1DF0-1CCE-3607-6361DD329219}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{87E6EC29-AEC5-28CB-F773-93EB6C1B8A2B}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{F875D81F-EAE2-F9D7-077A-BD27C63A5865}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{07EB88F7-1C0B-A9AE-BEDC-089782C09632}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{CA55697D-BD74-3ED8-6B21-D7EDAD3B7D02}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{AFC0B28A-E7A5-7A54-F3E2-6E40FFF6948D}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{CFC860C8-4F51-E08C-A74C-2E444ED06160}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{9338D693-38B7-1ED4-9B42-BFA1D5600CCB}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{B77272A0-9837-DC8C-2A64-210CE289B42C}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{BD41F710-B4BE-3E0F-428D-31FD948883DC}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{C971C145-258D-6650-7088-13DDB161327A}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{B55457F8-557C-96FC-A8EC-5C8D9C3AA287}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{EBA09DAF-14B4-7BE7-676E-6E2FB21EDBDD}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{5566417F-0F9D-0000-5014-D08BD29D90DF}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{9AA4DD93-94BF-22EA-C9D2-7084F304A31B}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{379D900B-A785-6DB0-012E-434356A365B3}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{FFF745F7-7A4D-3878-2312-2EC60746A140}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{366C4FB5-CF6E-258B-418D-E6D29549A278}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{A5609597-BB40-B20F-B967-B7E7338F8741}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{B10089DE-934F-6E0F-683A-B788F89348DF}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{E3ED0E57-66EB-D773-A790-4DE996A160AD}) (Version: 2017.0303.2232.40545 - Advanced Micro Devices, Inc.) Hidden Counter-Strike: Global Offensive (HKLM-x32\...\Steam App 730) (Version: - Valve) Counter-Strike: Source (HKLM-x32\...\Steam App 240) (Version: - Valve) CPUID CPU-Z 1.79 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) Creative 3DMIDI Player (HKLM-x32\...\3DMIDI) (Version: 1.11 - Creative Technology Limited) Creative ALchemy (HKLM-x32\...\ALchemy) (Version: 1.45 - Creative Technology Limited) Creative Media Toolbox 6 (HKLM-x32\...\{F1A14CB2-A048-45A6-AFDA-3571296E1D76}) (Version: 6.02 - Creative Technology Limited) Creative Software AutoUpdate (HKLM-x32\...\Creative Software AutoUpdate) (Version: 1.41 - Creative Technology Limited) Creative Systeminformationen (HKLM-x32\...\SysInfo) (Version: - ) Creative-Diagnose (HKLM-x32\...\Diagnostics 4_5) (Version: 5.11 - Creative Technology Limited) Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment) Dolby Digital Live Pack (HKLM-x32\...\Dolby Digital Live Pack) (Version: 3.00 - Creative Technology Limited) DTS Connect Pack (HKLM-x32\...\DTS Connect Pack) (Version: 1.00 - Creative Technology Limited) erLT (HKLM-x32\...\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}) (Version: 1.20.138.34 - Logitech, Inc.) Hidden FIFA 17 (HKLM-x32\...\{8C0DD062-B659-409C-9AB7-8EBD1D64D2EB}) (Version: 1.0.45.33307 - Electronic Arts) Gang Beasts (HKLM\...\Steam App 285900) (Version: - Boneloaf) Garry's Mod (HKLM-x32\...\Steam App 4000) (Version: - Facepunch Studios) Golf With Your Friends (HKLM\...\Steam App 431240) (Version: - Blacklight Interactive) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.115 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1158 - Intel Corporation) Intel(R) Network Connections 20.2.4001.0 (HKLM\...\PROSetDX) (Version: 20.2.4001.0 - Intel) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.2.1.1028 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 4.0.0.36 - Intel Corporation) Intel® Chipsatz-Gerätesoftware (HKLM-x32\...\{60c073df-e736-4210-9c3a-5fc2b651cef3}) (Version: 10.1.1.7 - Intel(R) Corporation) Hidden Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation) Java 8 Update 131 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180131F0}) (Version: 8.0.1310.11 - Oracle Corporation) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) League of Legends (HKLM-x32\...\{73E16BA9-3715-4F3D-950E-19E258725588}) (Version: 4.1.1 - Riot Games) Hidden League of Legends (HKLM-x32\...\League of Legends 4.1.1) (Version: 4.1.1 - Riot Games) Lightshot-5.4.0.10 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.4.0.10 - Skillbrains) Logitech Webcam-Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.80 - Logitech Inc.) Mafia III Digital Deluxe MULTi13 - ElAmigos version 1.0 (HKLM-x32\...\{28453BDD-FD45-4FA7-B220-58B55BC340A1}_is1) (Version: 1.0 - 2K) Malwarebytes Version 3.1.2.1733 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.1.2.1733 - Malwarebytes) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Mozilla Firefox 54.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 54.0.1 (x86 de)) (Version: 54.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 54.0.1.6388 - Mozilla) MSI Afterburner 4.2.0 (HKLM-x32\...\Afterburner) (Version: 4.2.0 - MSI Co., LTD) MSI Kombustor 3.5.0 (HKLM\...\{9598DA62-2AE8-426D-9C86-BEA96AC6721E}_is1) (Version: - MSI Co., LTD) MSI Live Update 6 (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.2.0.10 - MSI) MSIRegister (HKLM-x32\...\{80B995A4-3A86-4690-98A6-563F1A788835}_is1) (Version: 2.0.0.07 - MSI) MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) NahimicSettingsConfigurator (HKLM\...\{B9CE5642-0F22-4A75-B32A-98972F21C0C9}) (Version: 2.1.3301 - ASUSTeKcomputer.Inc) Hidden Nuance PaperPort 12 (HKLM-x32\...\{6C0A559F-8583-4B5A-8B50-20BEE15D8E64}) (Version: 12.1.0000 - Nuance Communications, Inc.) Nuance PDF Viewer Plus (HKLM-x32\...\{28656860-4728-433C-8AD4-D1A930437BC8}) (Version: 5.30.3290 - Nuance Communications, Inc) NVIDIA 3D Vision Controller-Treiber 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 382.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 382.53 - NVIDIA Corporation) NVIDIA GeForce Experience 3.6.0.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.6.0.74 - NVIDIA Corporation) NVIDIA Grafiktreiber 382.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 382.53 - NVIDIA Corporation) NVIDIA HD-Audiotreiber 1.3.34.27 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.34.27 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.17.0329 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0329 - NVIDIA Corporation) NvNodejs (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvNodejs) (Version: 3.6.0.74 - NVIDIA Corporation) Hidden NvTelemetry (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvTelemetry) (Version: 2.4.10.0 - NVIDIA Corporation) Hidden NvvHci (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvvHci) (Version: 2.02.0.5 - NVIDIA Corporation) Hidden OBS Studio (HKLM-x32\...\OBS Studio) (Version: 18.0.1 - OBS Project) OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Origin (HKLM-x32\...\Origin) (Version: 10.0.2.33129 - Electronic Arts, Inc.) Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment) PaperPort Image Printer 64-bit (HKLM\...\{715CAACC-579B-4831-A5F4-A83A8DE3EFE2}) (Version: 1.00.0001 - Nuance Communications, Inc.) PLAYERUNKNOWN'S BATTLEGROUNDS (HKLM\...\Steam App 578080) (Version: - Bluehole, Inc.) Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.20.17.413 - Razer Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7899 - Realtek Semiconductor Corp.) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.2.1.4 - Rockstar Games) Scansoft PDF Professional (HKLM-x32\...\{068724F8-D8BE-4B43-8DDD-B9FE9E49FD76}) (Version: - ) Hidden SHIELD Streaming (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GFExperience.NvStreamSrv) (Version: 7.1.0370 - NVIDIA Corporation) Hidden SHIELD Wireless Controller Driver (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_ShieldWirelessController) (Version: 3.6.0.74 - NVIDIA Corporation) Hidden Skype™ 7.38 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.38.101 - Skype Technologies S.A.) Sonic Studio Plugin (HKLM\...\{E6A187B7-0949-4AAE-BF6B-579FD3F6E55D}) (Version: 2.1.3301 - ASUSTeKcomputer.Inc) Hidden Sound Blaster X-Fi (HKLM-x32\...\{0282C872-4B44-444B-9818-54FBD7D50ECD}) (Version: 1.0 - Creative Technology Limited) SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spotify (HKU\S-1-5-21-173424566-3729193046-2416234265-1000\...\Spotify) (Version: 1.0.57.474.gca9c9538 - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Tales of Symphonia Version 1.0 u3 (HKLM-x32\...\{1E213234-7E5C-42A5-8FA1-766E7728015D}_is1) (Version: 1.0 u3 - Bandai Namco Entertainment) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.18 - TeamSpeak Systems GmbH) Tom Clancy's Ghost Recon® Wildlands (HKLM\...\Steam App 460930) (Version: - Ubisoft Paris) Twitch (HKLM-x32\...\{1F2611FB-6F69-4AA8-BECD-243BD8CB45F3}) (Version: 6.0.0.0 - Twitch Interactive, Inc.) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) Uplay (HKLM-x32\...\Uplay) (Version: 29.0 - Ubisoft) VBCABLE, The Virtual Audio Cable (HKLM\...\VB:VBCABLE {87459874-1236-4469}) (Version: - VB-Audio Software) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN) Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.37.0 (HKLM\...\VulkanRT1.0.37.0) (Version: 1.0.37.0 - LunarG, Inc.) Vulkan Run Time Libraries 1.0.42.1 (HKLM\...\VulkanRT1.0.42.1) (Version: 1.0.42.1 - LunarG, Inc.) Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation) Windows Driver Package - Microsoft (xusb21) XnaComposite (08/13/2009 2.1.0.1349) (HKLM\...\0AEBEF6F936CFE16E003F7E141631FAB754D9816) (Version: 08/13/2009 2.1.0.1349 - Microsoft) WinRAR (HKLM-x32\...\WinRAR archiver) (Version: - ) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-173424566-3729193046-2416234265-1000_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\chr1s\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64\FileSyncShell64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-173424566-3729193046-2416234265-1000_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\chr1s\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64\FileSyncShell64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-173424566-3729193046-2416234265-1000_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\chr1s\AppData\Local\Microsoft\OneDrive\17.3.6816.0313\amd64\FileSyncShell64.dll => Keine Datei ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Keine Datei ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Keine Datei ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Keine Datei ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Keine Datei ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Keine Datei ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Keine Datei ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-13] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-13] (AVAST Software) ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> Keine Datei ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> Keine Datei ContextMenuHandlers01: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-13] (AVAST Software) ContextMenuHandlers01: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2010-03-15] () ContextMenuHandlers01: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Keine Datei ContextMenuHandlers03: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-13] (AVAST Software) ContextMenuHandlers03: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes) ContextMenuHandlers04: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2010-03-15] () ContextMenuHandlers04: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Keine Datei ContextMenuHandlers05: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> Keine Datei ContextMenuHandlers05: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-06-08] (NVIDIA Corporation) ContextMenuHandlers06: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-13] (AVAST Software) ContextMenuHandlers06: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes) ContextMenuHandlers06: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2010-03-15] () ContextMenuHandlers06: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Keine Datei ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {07390C49-F843-429B-BFCC-8A22994AC82C} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-03] (NVIDIA Corporation) Task: {09965742-5440-460E-B4BC-B434F2940217} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> Keine Datei <==== ACHTUNG Task: {09FDDAAA-D618-4203-A57D-768A5ABD6039} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {16CED600-9BAD-472C-821F-1A1889CA6564} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG Task: {1ACA0ABE-75F8-4AC2-BE64-7A0BFEC21DFC} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe Task: {1E5E7D13-CFBE-458C-AA6E-0A7FDD03F660} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {1FF56619-BB40-4B80-8FC6-4CF4B56B5AB7} - System32\Tasks\update-S-1-5-21-173424566-3729193046-2416234265-1000 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [2017-04-12] (TODO: <Company name>) Task: {20CEBF7A-60DA-4A0F-84E1-14ECEE937B5F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25] (Adobe Systems Incorporated) Task: {2146F37E-0424-4DA6-B824-7814E0ABE432} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG Task: {21E629BC-80C2-4FD8-90C5-2528A8D44C5F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2017-05-03] (NVIDIA Corporation) Task: {23421302-9572-49AF-A43D-0C6DCCDFE03D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-07-13] (Google Inc.) Task: {27E67CAF-3E65-4B18-9DB5-862A74944B9B} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe Task: {2E9EE469-1273-4836-8D40-53E006C51883} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-07-13] (Google Inc.) Task: {2F97570B-AD42-48FD-9C98-01F24D7D1DBC} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe Task: {334FB57E-22B4-4CBF-9E68-F8F2D77ABD1C} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe Task: {3AADBEC0-4D94-4062-9151-541C7DC60252} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG Task: {3F1D8A0C-658B-4C39-A9EA-59FA3126D3B8} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe Task: {43034949-8220-4E85-896D-922CBE8A89F6} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-05-03] (NVIDIA Corporation) Task: {46EC86AD-6760-4211-BA0C-AAB46AC2C426} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe Task: {4B17E4C1-207F-42EB-8060-46F1BD283E86} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {4DFE483D-3BDF-4DA4-9EB0-5B5831E58DC2} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> Keine Datei <==== ACHTUNG Task: {5B348A1D-B007-458B-8A95-B2280913A9D8} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2017-05-03] (NVIDIA Corporation) Task: {611B7F34-3907-4830-ABAF-A00BF72F12A4} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2015-12-09] () Task: {617BFD9D-D6F2-44D4-990E-7FCE1F3E1F25} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe Task: {6184A395-20FF-43B1-9D2A-9ABE546A46A0} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-07-13] (Adobe Systems Incorporated) Task: {61C232C0-C7AB-4831-B15A-C2E4E3024E78} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2017-05-03] (NVIDIA Corporation) Task: {675FADEE-F0F3-4024-9D57-B0EDF1302A8E} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {695924A8-C1B6-4F27-8CD6-BC540B58648D} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {6D29FD3C-8094-4476-B1C5-65FD0DE309B4} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG Task: {75F9B2D0-FDD3-4BB4-A372-350F14D57F7C} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG Task: {7709A139-9F50-4C10-9DA2-2F0B472EF37B} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-05-03] (NVIDIA Corporation) Task: {8B2AB0CB-F295-4BFF-B892-D3516E2657B5} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG Task: {8CB820A5-7739-4F3A-88F2-EE86F3DF9068} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG Task: {8D906B4F-FD3E-4858-94BF-90D3E5279C16} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG Task: {8ED976E0-F3E1-4AA6-904A-AA5C70CC72FC} - System32\Tasks\IntelBootstrapCCDashExe => C:\Program Files\Intel\ConnectCenter\bin\ICCLauncher.exe Task: {92452F40-FB66-4186-B761-FF8E0F2D348D} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG Task: {9D2C564C-CF9B-47E0-A0AB-F6DD3B89EA9F} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe Task: {AFEED166-68FC-4393-A64D-56C8A7083940} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe Task: {B580B975-6E2B-4F15-9505-4911122D93B7} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {B6732350-2099-4F1B-ABEF-374ED0E5757F} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe Task: {B7DCE643-CED8-44DE-9CE9-C19DDE68E9AA} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> Keine Datei <==== ACHTUNG Task: {B83B28BA-EC8C-4DA1-B4DB-4DB027B67137} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe Task: {D6461302-EB56-4E8E-9BFA-05DCE57AC80A} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe Task: {D75541CB-F508-4DFC-B33D-0AAE8E98096C} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-03] (NVIDIA Corporation) Task: {D7598ECA-51E6-4B88-BBCE-D6A2ADEA43F8} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-05-03] (NVIDIA Corporation) Task: {E4A4FAE7-05C9-4800-A4D9-D865BB40D24B} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> Keine Datei <==== ACHTUNG Task: {E8A46192-04FE-4108-B2A5-07E15FD82751} - \Microsoft\Windows\Setup\gwx\rundetector -> Keine Datei <==== ACHTUNG Task: {EB7ED44E-D642-455F-B489-F2FB9A388D85} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-07-13] (AVAST Software) Task: {F6370150-5E29-4C91-933D-426827AED591} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe Task: {F9A3772C-7A3F-4643-9272-8A644A550B3A} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe Task: {FA1540CA-6A7F-42F4-AB19-EC3CD9B6038D} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG Task: {FDE88E86-D2A0-4F64-9666-191BE5DD3D47} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe Task: {FE59186D-C519-49C8-9D8D-AC75C2E04C47} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe Task: C:\WINDOWS\Tasks\update-S-1-5-21-173424566-3729193046-2416234265-1000.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2015-12-27 11:05 - 2015-12-27 11:05 - 00103736 _____ () C:\WINDOWS\SysWOW64\PnkBstrB.exe 2015-12-27 11:05 - 2015-12-27 11:05 - 00066872 _____ () C:\WINDOWS\SysWOW64\PnkBstrA.exe 2015-10-30 16:28 - 2005-04-22 06:36 - 00143360 ____R () C:\WINDOWS\system32\BrSNMP64.dll 2014-07-23 03:59 - 2014-07-23 03:59 - 00936728 ____R () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe 2017-04-25 15:51 - 2017-05-03 22:21 - 01267320 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll 2015-05-19 09:11 - 2015-05-19 09:11 - 00007680 _____ () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe 2017-07-14 14:06 - 2017-06-27 12:06 - 02260432 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll 2015-10-13 21:31 - 2014-07-23 03:59 - 01360016 ____R () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe 2016-09-25 01:20 - 2016-09-25 01:21 - 00189264 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe 2015-12-09 09:59 - 2015-12-09 09:59 - 00580296 _____ () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe 2017-03-18 22:58 - 2017-03-18 22:58 - 00138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll 2015-10-13 22:17 - 2010-03-15 11:28 - 00052224 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll 2017-03-18 22:59 - 2017-03-20 06:43 - 01731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll 2016-09-08 10:38 - 2016-08-08 10:21 - 00105312 _____ () C:\WINDOWS\SYSTEM32\audioLibVc.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00264040 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe 2015-10-13 21:31 - 2017-07-15 08:31 - 00037160 _____ () C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll 2015-10-13 21:31 - 2014-07-23 03:59 - 00104448 ____R () C:\Program Files (x86)\ASUS\AXSP\1.02.00\ATKEX.dll 2017-04-25 15:49 - 2005-07-18 13:43 - 00160256 _____ () C:\Program Files (x86)\MSI\Live Update\unrar.dll 2016-09-13 20:17 - 2016-09-30 12:01 - 02493440 _____ () D:\Programme\Origin\libGLESv2.dll 2015-12-07 18:43 - 2015-12-07 18:43 - 00057856 _____ () C:\Program Files (x86)\MSI Afterburner\RTFC.dll 2015-12-07 18:43 - 2015-12-07 18:43 - 00071680 _____ () C:\Program Files (x86)\MSI Afterburner\RTMUI.dll 2015-12-07 18:43 - 2015-12-07 18:43 - 00357888 _____ () C:\Program Files (x86)\MSI Afterburner\RTUI.dll 2015-12-07 18:44 - 2015-12-07 18:44 - 00225792 _____ () C:\Program Files (x86)\MSI Afterburner\RTCore.dll 2015-12-07 18:44 - 2015-12-07 18:44 - 00657408 _____ () C:\Program Files (x86)\MSI Afterburner\RTHAL.dll 2017-04-25 15:51 - 2017-05-03 22:21 - 01040504 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 00170224 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 01038952 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 67109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 00192664 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 00224256 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 00292920 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll 2017-07-13 11:51 - 2017-07-13 11:51 - 02962096 _____ () C:\Program Files\AVAST Software\Avast\aswDataScan.dll 2016-10-31 18:08 - 2017-06-28 18:21 - 00189040 _____ () C:\Users\chr1s\AppData\Roaming\Spotify\SpotifyWinRT.dll 2017-04-25 15:51 - 2017-05-03 22:20 - 65709176 _____ () C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll 2015-10-30 16:28 - 2009-02-27 17:38 - 00139264 ____R () C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 02144104 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtCore4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 07955304 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtGui4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00341352 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\QtXml4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00028008 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QGif4.dll 2012-09-13 00:38 - 2012-09-13 00:38 - 00127336 _____ () C:\Program Files (x86)\Logitech\LWS\Webcam Software\imageformats\QJpeg4.dll 2012-09-13 00:39 - 2012-09-13 00:39 - 00336232 _____ () C:\Program Files (x86)\Common Files\logishrd\LWSPlugins\LWS\Applets\CameraHelper\DevManagerCore.dll 2017-01-16 13:40 - 2017-01-16 13:40 - 00143824 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll 2015-07-10 23:37 - 2015-07-10 23:37 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-173424566-3729193046-2416234265-1000\...\localhost -> localhost ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-173424566-3729193046-2416234265-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\chr1s\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\chris.jpg DNS Servers: 192.168.2.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun MSCONFIG\startupreg: PCLink => "C:\Program Files (x86)\ASUS\PC Link\PCLink.exe" /boot MSCONFIG\startupreg: Spotify => "C:\Users\chr1s\AppData\Roaming\Spotify\Spotify.exe" -autostart -minimized MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\chr1s\AppData\Roaming\Spotify\SpotifyWebHelper.exe" MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent HKLM\...\StartupApproved\Run: => "Malwarebytes TrayApp" HKLM\...\StartupApproved\Run32: => "Live Update" HKLM\...\StartupApproved\Run32: => "MSIRegister" HKU\S-1-5-21-173424566-3729193046-2416234265-1000\...\StartupApproved\Run: => "Skype" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{69184D3B-205C-4581-9BAF-EF8AA68A0B1D}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Call of Duty Modern Warfare 3\iw5mp.exe FirewallRules: [{5CE00689-C3DD-496B-8D2F-923782699B29}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Call of Duty Modern Warfare 3\iw5mp.exe FirewallRules: [{67FF9167-FD3E-4A0C-839E-6F4744BCC3A4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{474FBA1C-E338-4CE3-92A0-2D660235E37A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe FirewallRules: [{5D940A05-A407-4EC7-8287-25F04AE0D661}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe FirewallRules: [{4EA4002B-0BD2-4943-9546-F8A4625E62FF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{06F6F46A-6626-4D90-9272-FBD1935258F3}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe FirewallRules: [{EA9E69DD-77FF-4ABA-819F-C1FA0A1A46D1}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Wildlands\GRW.exe FirewallRules: [{33B6867E-C37A-479A-BAED-73C3C608BD95}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Wildlands\GRW.exe FirewallRules: [{7B1C0B4B-FFF8-4297-822B-34EE337C098F}] => (Allow) C:\Users\chr1s\AppData\Roaming\LiquidSky\lib\LiquidSky.exe FirewallRules: [{02FCF567-CA9E-45A6-A42E-74E84FD21DA6}] => (Allow) C:\Users\chr1s\AppData\Roaming\LiquidSky\lib\LiquidSky.exe FirewallRules: [{E1AA9308-4B03-4EE4-8E0B-76DF0F3F3C19}] => (Allow) C:\Users\chr1s\AppData\Roaming\LiquidSky\LiquidSkyClient.exe FirewallRules: [{6F02A43E-DB09-4697-8B27-01A742E29EBC}] => (Allow) C:\Users\chr1s\AppData\Roaming\LiquidSky\LiquidSkyClient.exe FirewallRules: [{718619D4-AA48-44C3-B17E-796F93A670BF}] => (Allow) C:\Users\chr1s\Desktop\LiquidSkyClient.exe FirewallRules: [{2CDB068F-6997-4C97-9361-D16BC465B058}] => (Allow) C:\Users\chr1s\Desktop\LiquidSkyClient.exe FirewallRules: [UDP Query User{9319DCFD-7D2A-4064-8852-7D66822A15AA}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe FirewallRules: [TCP Query User{A64B656A-3C33-40FF-8A71-C3924E0B8012}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe FirewallRules: [{C7C3A8FC-7B84-4027-9F2D-C53E7537A637}] => (Allow) D:\Firefox Downloads\LiquidSkyClient.exe FirewallRules: [{2F322E29-C206-4C4A-8C4F-BD5A7D6F61A9}] => (Allow) D:\Firefox Downloads\LiquidSkyClient.exe FirewallRules: [{9000E98C-189C-48E2-B483-A75338C7AC81}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Magic Duels\MagicDuels.exe FirewallRules: [{283AA530-8C10-4F44-82EC-AE7DD76A1B4F}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Magic Duels\MagicDuels.exe FirewallRules: [{56C16484-6620-4EC3-8562-14E308448913}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{0880783A-7CF3-4B56-B3B0-35E31F50210E}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [UDP Query User{8BC97DE2-97DC-4C37-8E2D-6EB625710627}D:\programme\ubisoft game launcher\games\forhonorbeta\forhonor.exe] => (Allow) D:\programme\ubisoft game launcher\games\forhonorbeta\forhonor.exe FirewallRules: [TCP Query User{6A5AF697-B937-4B5D-89C3-45D20789407F}D:\programme\ubisoft game launcher\games\forhonorbeta\forhonor.exe] => (Allow) D:\programme\ubisoft game launcher\games\forhonorbeta\forhonor.exe FirewallRules: [UDP Query User{A7737173-E251-47C1-BA46-CB319E798270}D:\programme\diablo iii\x64\diablo iii64.exe] => (Allow) D:\programme\diablo iii\x64\diablo iii64.exe FirewallRules: [TCP Query User{E1985E5B-CCAC-4553-85F5-01193A108A2C}D:\programme\diablo iii\x64\diablo iii64.exe] => (Allow) D:\programme\diablo iii\x64\diablo iii64.exe FirewallRules: [{03CB770C-6012-40B6-A251-515D3AB92AB2}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{FAF99732-821A-4124-960D-2063120733E7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [UDP Query User{9FFB1B21-008A-4DFB-A83F-CD16AB7E91E7}D:\programme\diablo iii\diablo iii.exe] => (Allow) D:\programme\diablo iii\diablo iii.exe FirewallRules: [TCP Query User{DD1FB6BE-B65B-4D4F-800F-6B21AA31D7B4}D:\programme\diablo iii\diablo iii.exe] => (Allow) D:\programme\diablo iii\diablo iii.exe FirewallRules: [UDP Query User{9D045947-FCA0-4AC3-AA43-4DE928C98179}D:\programme\call of duty modern warfare remastered\h1_sp64_ship.exe] => (Allow) D:\programme\call of duty modern warfare remastered\h1_sp64_ship.exe FirewallRules: [TCP Query User{A03EE170-0430-4F27-9676-54BC1CFB541B}D:\programme\call of duty modern warfare remastered\h1_sp64_ship.exe] => (Allow) D:\programme\call of duty modern warfare remastered\h1_sp64_ship.exe FirewallRules: [UDP Query User{DBA4D446-2787-4D46-B40E-6996948E44BB}D:\programme\call of duty infinite warfare\iw7_ship.exe] => (Allow) D:\programme\call of duty infinite warfare\iw7_ship.exe FirewallRules: [TCP Query User{B6E12113-28E3-457C-9F8D-2878D917C997}D:\programme\call of duty infinite warfare\iw7_ship.exe] => (Allow) D:\programme\call of duty infinite warfare\iw7_ship.exe FirewallRules: [UDP Query User{D08B5928-CF8C-4A25-8196-F0B4F1E52441}D:\programme\overwatch test\overwatch.exe] => (Allow) D:\programme\overwatch test\overwatch.exe FirewallRules: [TCP Query User{635361E4-4B41-4428-9C6E-7140B09C64DF}D:\programme\overwatch test\overwatch.exe] => (Allow) D:\programme\overwatch test\overwatch.exe FirewallRules: [UDP Query User{1CA18DB1-A936-4E2D-BFFD-00EF0597BABE}D:\programme\steamlibrary\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) D:\programme\steamlibrary\steamapps\common\h1z1 king of the kill\h1z1.exe FirewallRules: [TCP Query User{F58B9F67-ED12-4C65-BEAD-B10B967C5DC5}D:\programme\steamlibrary\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) D:\programme\steamlibrary\steamapps\common\h1z1 king of the kill\h1z1.exe FirewallRules: [UDP Query User{82F6DE9F-7174-4844-AD27-B1FB8D039E75}D:\program files (x86)\origin games\fifa 17\fifa17.exe] => (Allow) D:\program files (x86)\origin games\fifa 17\fifa17.exe FirewallRules: [TCP Query User{71A285C8-9A03-47CE-AEF1-D0922EE131E8}D:\program files (x86)\origin games\fifa 17\fifa17.exe] => (Allow) D:\program files (x86)\origin games\fifa 17\fifa17.exe FirewallRules: [{E2FAC23A-ACA4-43F3-8FD5-5AAE6D5FB83B}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 17\FIFASetup\fifaconfig.exe FirewallRules: [{B9CA0C87-3D38-421E-9DC5-87A36D3E3AF1}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 17\FIFASetup\fifaconfig.exe FirewallRules: [{E5935117-641C-42D6-8B7A-40EA8BF8EAD5}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe FirewallRules: [{451A5973-5053-4DB7-9E85-D197EB64D35D}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe FirewallRules: [UDP Query User{8AE95CAB-99F2-4C12-95AF-82BF5FA380BC}D:\programme\overwatch\overwatch.exe] => (Allow) D:\programme\overwatch\overwatch.exe FirewallRules: [TCP Query User{DE871CB7-370B-4EBF-AE7A-EFBD6F4445E7}D:\programme\overwatch\overwatch.exe] => (Allow) D:\programme\overwatch\overwatch.exe FirewallRules: [{167D294A-C906-4C17-AFA6-9E7A9C6A4FED}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Gang Beasts\Gang Beasts.exe FirewallRules: [{F6F1E73A-7690-49CD-97E8-5047E0C0F8C6}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Gang Beasts\Gang Beasts.exe FirewallRules: [UDP Query User{171E33EA-6A98-4419-BBF0-9135B2AEF7A8}D:\warcraft iii\war3.exe] => (Allow) D:\warcraft iii\war3.exe FirewallRules: [TCP Query User{B6750B43-7C20-47BA-8A16-B6F224884AF6}D:\warcraft iii\war3.exe] => (Allow) D:\warcraft iii\war3.exe FirewallRules: [UDP Query User{97D10451-2225-43F1-8E2F-BF5B538B3C36}D:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\programme\rockstar games\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{95928C8A-1F9C-40A7-AC07-6653CBD8BFAE}D:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\programme\rockstar games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{CC24A9A7-6B8C-44DE-BBC0-FE038E7AE146}D:\programme\diablo iii\diablo iii.exe] => (Allow) D:\programme\diablo iii\diablo iii.exe FirewallRules: [TCP Query User{F228A14E-A8B1-407F-83CA-9274F1D073E1}D:\programme\diablo iii\diablo iii.exe] => (Allow) D:\programme\diablo iii\diablo iii.exe FirewallRules: [{A946320D-C016-4DF1-8373-81413A59AEEC}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{CA689CAB-9D88-4299-8A66-0FFAC5599872}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe FirewallRules: [{53DC28BB-1F4F-4A11-A47F-8A36FBE29628}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{FE0EEF0B-6037-480B-B5F5-A34D56DCE296}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe FirewallRules: [{2BF7C77F-391F-4C86-A839-2956A765724C}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 16\fifasetup\fifaconfig.exe FirewallRules: [{E45A7902-E660-42E8-93C9-F66CBBB1B4DF}] => (Allow) D:\Program Files (x86)\Origin Games\FIFA 16\fifasetup\fifaconfig.exe FirewallRules: [{E218C525-A1FC-4B6C-8D3E-111B6F651894}] => (Allow) C:\Program Files\Intel\STCServ\STCServ.exe FirewallRules: [{8B2C1DB3-0386-4BBE-9010-E25832FC45DA}] => (Allow) C:\Program Files\Intel\STCServ\STCServ.exe FirewallRules: [{469CA4DE-934E-4919-BD44-E4AED480CFDC}] => (Allow) C:\Program Files (x86)\ASUS\Share Link\ShareLink.exe FirewallRules: [UDP Query User{0861A94E-C309-4DE2-9A08-5A1D56E42A52}C:\program files (x86)\asus\asus smart gesture\astpcenter\x64\asussgplusbtserver64.exe] => (Allow) C:\program files (x86)\asus\asus smart gesture\astpcenter\x64\asussgplusbtserver64.exe FirewallRules: [TCP Query User{B5CB1035-EDF4-4030-A66B-76A52A0E8350}C:\program files (x86)\asus\asus smart gesture\astpcenter\x64\asussgplusbtserver64.exe] => (Allow) C:\program files (x86)\asus\asus smart gesture\astpcenter\x64\asussgplusbtserver64.exe FirewallRules: [{E76E3C21-74A4-4381-95F3-33C03DBE5DF3}] => (Allow) C:\Program Files (x86)\ASUS\PC Link\PCLinkService.exe FirewallRules: [{551B3386-46DE-430B-A9AE-CFB9F05EF362}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{704D51F7-86C1-4A7D-8D42-A2326FC110AA}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [UDP Query User{815EBEE7-C1A0-414F-8FDD-F11B18EC4955}D:\programme\call of duty black ops iii\blackops3.exe] => (Allow) D:\programme\call of duty black ops iii\blackops3.exe FirewallRules: [TCP Query User{A4A84C0B-AB70-4801-876B-5E25148F1752}D:\programme\call of duty black ops iii\blackops3.exe] => (Allow) D:\programme\call of duty black ops iii\blackops3.exe FirewallRules: [{7E31F71E-AFAA-42C9-9101-34717E384448}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{51F07171-2A63-4A93-8133-1E9BA4ABDD96}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{E012423D-FF64-4471-AE97-2E1F9F8E4E20}] => (Allow) LPort=54925 FirewallRules: [{B345C4FC-A575-4953-AA87-3C7533FCC035}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10f\FAXRX.exe FirewallRules: [{A03B933A-24EB-4CCD-8B03-515341F9FBA0}] => (Allow) C:\Program Files (x86)\Brother\Brmfl10f\FAXRX.exe FirewallRules: [UDP Query User{2C7D2E5F-BB74-4B6D-930C-4958EF7CA9FB}D:\program files (x86)\origin games\fifa 16\fifa16.exe] => (Allow) D:\program files (x86)\origin games\fifa 16\fifa16.exe FirewallRules: [TCP Query User{5D428C7B-DC62-4572-8AD5-E8BCB3700750}D:\program files (x86)\origin games\fifa 16\fifa16.exe] => (Allow) D:\program files (x86)\origin games\fifa 16\fifa16.exe FirewallRules: [UDP Query User{56EBAE1F-4A3A-4C1B-BE6E-1D295F5408A7}C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe FirewallRules: [TCP Query User{0D0CB241-57AF-455C-BB53-DFC6DB2AD78E}C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_60\bin\javaw.exe FirewallRules: [UDP Query User{5111A279-D275-4926-A49A-3D41ABA62358}C:\users\chr1s\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\chr1s\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{790A1E27-D786-4FE3-AD67-F026BDFFC561}C:\users\chr1s\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\chr1s\appdata\roaming\spotify\spotify.exe FirewallRules: [{E1E098C4-865D-46C7-997A-A9CA29334792}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{CAF83773-3C69-4F7B-B778-E9EDF103D932}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\GarrysMod\hl2.exe FirewallRules: [{6FEE6982-BDCC-46C6-AF5B-8CF9DDBFE743}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{7B89EB84-53EA-4BEE-978C-A288C0C87ED1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe FirewallRules: [{BA5F0492-272D-48C0-BAF4-A01B9EE2CB92}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{3FD6E6F3-E090-4AD4-9301-50AADD15B5BF}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{C09727F5-D888-4318-97FC-AA8B9B38F8D2}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{DBE05B81-E433-4289-9668-5A52553C823E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{3419CB69-5C1F-48E5-9C86-8570661E351E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{90E61D39-DF85-4937-AAA8-B91D6DFC8737}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{338127A5-E103-4E39-B879-2B8A87347849}] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{38AAEDFD-E433-4CA6-8615-D0F32D900839}] => (Block) C:\program files\logitech gaming software\lcore.exe FirewallRules: [UDP Query User{50B47C20-6E60-4691-A409-917AD210DF14}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [TCP Query User{7F5257ED-E293-41A9-B190-C02E46EEDCCA}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe FirewallRules: [{0A8AA6AC-E245-4D14-931A-2A07E14FEEC8}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{45C18CA9-49D5-44DE-8F74-D07BD62112E3}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr.exe FirewallRules: [{0C29FDA8-FF9E-44CE-B7AA-1302B57A8F78}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{5C5C889A-EFFF-4DD1-9B2C-BA0BB5873769}] => (Allow) C:\Program Files (x86)\Raptr Inc\Raptr\raptr_im.exe FirewallRules: [{D2668717-39B4-4275-8D8E-18C300299ABC}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [{4852DCBA-F92D-4937-909B-085B47114F3D}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe FirewallRules: [TCP Query User{C6E2FF9D-FB2C-4727-BD37-4150D05A68B8}D:\programme\steamlibrary\steamapps\common\dead by daylight alpha access\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\programme\steamlibrary\steamapps\common\dead by daylight alpha access\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe FirewallRules: [UDP Query User{54DBDF44-C1F6-4FBD-AB71-9891BE953FB8}D:\programme\steamlibrary\steamapps\common\dead by daylight alpha access\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\programme\steamlibrary\steamapps\common\dead by daylight alpha access\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe FirewallRules: [{FB525378-E2DA-4FC2-B355-A1C0D7D5D8F4}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{5818029C-F462-4B71-9A32-22CF103C616B}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe FirewallRules: [{13460B63-888B-4102-A385-C2730F1ECEAA}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe FirewallRules: [{6CC6F478-1D7D-479E-9486-78C7FBF9DC26}] => (Allow) D:\Programme\SteamLibrary\steamapps\common\EvolveGame\bin64_SteamRetail\Evolve.exe FirewallRules: [{ABECCF79-1256-4623-A71F-8F8207FA8DB8}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{C5DC7215-A71F-4585-9162-5885AF500914}D:\programme\overwatch test\overwatch.exe] => (Allow) D:\programme\overwatch test\overwatch.exe FirewallRules: [UDP Query User{AB498BB1-8A55-4245-8636-318459C393E9}D:\programme\overwatch test\overwatch.exe] => (Allow) D:\programme\overwatch test\overwatch.exe FirewallRules: [TCP Query User{1BFF0264-9D46-424F-9C95-6A8C4378847E}C:\users\chr1s\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\chr1s\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{9A93BD73-EC89-49B5-980A-11752A3B5AA6}C:\users\chr1s\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\chr1s\appdata\roaming\spotify\spotify.exe FirewallRules: [TCP Query User{7C526555-FB04-425A-A962-BEDBEC172AC9}D:\programme\overwatch\overwatch.exe] => (Allow) D:\programme\overwatch\overwatch.exe FirewallRules: [UDP Query User{DF6E02BA-612E-42E3-9D30-182599A4CF25}D:\programme\overwatch\overwatch.exe] => (Allow) D:\programme\overwatch\overwatch.exe FirewallRules: [TCP Query User{9607C07F-9419-49FF-A28F-87552CD864E9}D:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\programme\rockstar games\grand theft auto v\gta5.exe FirewallRules: [UDP Query User{E9E50DA6-37B6-40EB-9AA4-B073CDE89FB1}D:\programme\rockstar games\grand theft auto v\gta5.exe] => (Allow) D:\programme\rockstar games\grand theft auto v\gta5.exe FirewallRules: [TCP Query User{EDBE33C6-9507-425E-94A4-0546F608DEDF}C:\program files (x86)\origin games\fifa 17 demo\fifa17_demo.exe] => (Allow) C:\program files (x86)\origin games\fifa 17 demo\fifa17_demo.exe FirewallRules: [UDP Query User{661F7549-200E-4032-958A-62E75147D5A5}C:\program files (x86)\origin games\fifa 17 demo\fifa17_demo.exe] => (Allow) C:\program files (x86)\origin games\fifa 17 demo\fifa17_demo.exe FirewallRules: [{3C51943C-FB7F-4771-BE83-5140FB47EA20}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Wiederherstellungspunkte ========================= ACHTUNG: Systemwiederherstellung ist deaktiviert ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (07/14/2017 02:00:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: backgroundTaskHost.exe, Version: 10.0.15063.0, Zeitstempel: 0x0fa14906 Name des fehlerhaften Moduls: biwinrt.dll, Version: 10.0.15063.0, Zeitstempel: 0x87ee4a59 Ausnahmecode: 0xc000027b Fehleroffset: 0x00000000000156f9 ID des fehlerhaften Prozesses: 0x1a10 Startzeit der fehlerhaften Anwendung: 0x01d2fc98c108c86a Pfad der fehlerhaften Anwendung: C:\WINDOWS\system32\backgroundTaskHost.exe Pfad des fehlerhaften Moduls: C:\Windows\System32\biwinrt.dll Berichtskennung: b269e00b-d654-4f4f-8643-3c9f472719d3 Vollständiger Name des fehlerhaften Pakets: Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy Anwendungs-ID, die relativ zum fehlerhaften Paket ist: CortanaUI Error: (07/14/2017 01:52:52 PM) (Source: Perflib) (EventID: 1023) (User: ) Description: Die erweiterbare Leistungsindikator-DLL rdyboost kann nicht geladen werden. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Windows-Fehlercode. Error: (07/14/2017 01:52:51 PM) (Source: Perflib) (EventID: 1008) (User: ) Description: Die Open-Prozedur für den Dienst "BITS" in der DLL "C:\Windows\System32\bitsperf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode. Error: (07/14/2017 12:20:11 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Error: (07/14/2017 12:20:04 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Error: (07/14/2017 12:19:26 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "D:\Firefox Downloads\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Error: (07/14/2017 12:19:24 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "D:\Firefox Downloads\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Error: (07/14/2017 12:19:19 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "D:\Firefox Downloads\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Error: (07/14/2017 12:19:19 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "D:\Firefox Downloads\esetsmartinstaller_deu.exe". Fehler in Manifest- oder Richtliniendatei "" in Zeile . Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_26002d27e7c744a2.manifest. Komponente 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.15063.483_none_6dad63fefc436da8.manifest. Error: (07/14/2017 12:15:21 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: SystemSettings.exe, Version: 10.0.15063.0, Zeitstempel: 0x7c8bd05a Name des fehlerhaften Moduls: CoreUIComponents.dll, Version: 10.0.15063.483, Zeitstempel: 0x1b3f5968 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000077bd2 ID des fehlerhaften Prozesses: 0x1718 Startzeit der fehlerhaften Anwendung: 0x01d2fc89f525babd Pfad der fehlerhaften Anwendung: C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\CoreUIComponents.dll Berichtskennung: 1b594318-2161-4d7c-a9db-168f81498076 Vollständiger Name des fehlerhaften Pakets: windows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewy Anwendungs-ID, die relativ zum fehlerhaften Paket ist: microsoft.windows.immersivecontrolpanel Systemfehler: ============= Error: (07/15/2017 08:31:55 AM) (Source: DCOM) (EventID: 10016) (User: CHR1S-PC) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "chr1s-PC\chr1s" (SID: S-1-5-21-173424566-3729193046-2416234265-1000) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Start" für die COM-Serveranwendung mit der CLSID {7022A3B3-D004-4F52-AF11-E9E987FEE25F} und der APPID {ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (07/15/2017 08:31:55 AM) (Source: DCOM) (EventID: 10016) (User: CHR1S-PC) Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "chr1s-PC\chr1s" (SID: S-1-5-21-173424566-3729193046-2416234265-1000) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Start" für die COM-Serveranwendung mit der CLSID {7022A3B3-D004-4F52-AF11-E9E987FEE25F} und der APPID {ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D} im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (07/15/2017 08:31:54 AM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Error: (07/15/2017 08:31:53 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "CldFlt" wurde aufgrund folgenden Fehlers nicht gestartet: Die Anforderung wird nicht unterstützt. Error: (07/15/2017 08:31:30 AM) (Source: Application Popup) (EventID: 56) (User: ) Description: ACPI5 Error: (07/15/2017 08:30:47 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Steam Client Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (07/15/2017 08:30:46 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Security Assist" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (07/15/2017 08:30:46 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Dynamic Application Loader Host Interface Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (07/15/2017 08:30:46 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Rapid Storage Technology" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (07/15/2017 08:30:45 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. CodeIntegrity: =================================== Date: 2017-07-14 12:05:22.355 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SETB162.tmp because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-07-14 12:05:22.349 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SETB162.tmp because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-07-14 12:05:22.344 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SETB162.tmp because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-07-14 12:05:21.297 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SET35D.tmp because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-07-14 12:05:21.292 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SET35D.tmp because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-07-14 12:05:21.287 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\SET35D.tmp because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2017-07-13 14:23:31.941 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. Date: 2017-07-13 14:23:31.925 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\ADODB.dll that did not meet the Microsoft signing level requirements. Date: 2017-07-13 14:23:31.901 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\MSDATASRC.dll that did not meet the Microsoft signing level requirements. Date: 2017-07-13 14:23:31.829 Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.StdFormat.dll that did not meet the Microsoft signing level requirements. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i7-6700 CPU @ 3.40GHz Prozentuale Nutzung des RAM: 21% Installierter physikalischer RAM: 16305.78 MB Verfügbarer physikalischer RAM: 12876.85 MB Summe virtueller Speicher: 32689.78 MB Verfügbarer virtueller Speicher: 28901.39 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:111.25 GB) (Free:21.68 GB) NTFS Drive d: () (Fixed) (Total:931.51 GB) (Free:343.05 GB) NTFS Drive h: (Volume) (Fixed) (Total:931.51 GB) (Free:249.26 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 111.8 GB) (Disk ID: E7371244) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=111.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=449 MB) - (Type=27) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 8174F8EF) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: AFDE4B9E) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
15.07.2017, 18:54 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Über Piesearch zu Bing, keine Lösung Bitte Avast deinstallieren. Am besten mit Revo, siehe weiter unten. Wir deinstallieren dann am besten auch gleich weiteren unnötigen oder veralteten Krempel. Falls du unbedingt ein Programm aus der u.g. Liste braucht, dann lass es drauf gib aber kurz ne Info welches und warum. Avast können wir einfach nicht mehr guten Gewissens empfehlen. => Antivirensoftware: Schutz Für Ihre Dateien, Aber Auf Kosten Ihrer Privatsphäre? | Emsisoft Blog Auch andere Freewareanbieter wie Avira, AVG oder Panda springen auf diesen oder ähnlichen Zügen rauf, basteln Junkware in die Setups, arbeiten mit ASK zusammen etc; so was ist bei Sicherheitssoftware einfach inakzeptabel. Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
Gib Bescheid wenn Avast weg ist; wenn wir hier durch sind, kannst du auf einen anderen Virenscanner umsteigen, Infos folgen dann im Abschlussposting. Bitte JETZT nix mehr ohne Absprache installieren!
__________________ Logfiles bitte immer in CODE-Tags posten |
15.07.2017, 18:54 | #11 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Über Piesearch zu Bing, keine Lösung Bitte Avast deinstallieren. Am besten mit Revo, siehe weiter unten. Wir deinstallieren dann am besten auch gleich weiteren unnötigen oder veralteten Krempel. Falls du unbedingt ein Programm aus der u.g. Liste braucht, dann lass es drauf gib aber kurz ne Info welches und warum. Avast können wir einfach nicht mehr guten Gewissens empfehlen. => Antivirensoftware: Schutz Für Ihre Dateien, Aber Auf Kosten Ihrer Privatsphäre? | Emsisoft Blog Auch andere Freewareanbieter wie Avira, AVG oder Panda springen auf diesen oder ähnlichen Zügen rauf, basteln Junkware in die Setups, arbeiten mit ASK zusammen etc; so was ist bei Sicherheitssoftware einfach inakzeptabel. Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
Gib Bescheid wenn Avast weg ist; wenn wir hier durch sind, kannst du auf einen anderen Virenscanner umsteigen, Infos folgen dann im Abschlussposting. Bitte JETZT nix mehr ohne Absprache installieren!
__________________ Logfiles bitte immer in CODE-Tags posten |
16.07.2017, 07:33 | #12 |
| Über Piesearch zu Bing, keine Lösung Bevor ich meine Antiviren Programm deinstalliere würde ich gerne eine Alternative haben die ich dafür nehmen kann. Ich benutze schon seit Ewigkeiten Avast bzw davor Kaspersky mit kostenlosen Key aus der Computerbild, aber das gibt es ja nicht mehr. Ich bin deshalb angewiesen Antiviren Freeware zu benutzen da ich schlicht und einfach kein Geld übrig habe für ein teures Antivirus Programm Den Acrobat Reader Deinstallation kann ich nicht so ganz nachvollziehen und würde gerne da eine Erklärung zu haben, schließlich habe ich die Version extra nochmal geprüft und vom offiziellen Adobe Server geladen. JDownloader mag so eine Sache sein die ich noch ersetzen kann, auf die anderen beiden Programme bin ich leider angewiesen.. |
16.07.2017, 11:33 | #13 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Über Piesearch zu Bing, keine Lösung Hast du mein Posting zu Ende gelesen? --> Alternativen werden zum Schluss genannt Was hast du daran nicht verstanden, dass Avast Junkware in seine Software bastelt? Acorbat Reader ist meist Unsinn, auch dazu werden später Alternativen genannt. JDownloader brauchst du wofür? Mir ist das Teil nur für ziemlich illegale Zwecke bekannt.
__________________ Logfiles bitte immer in CODE-Tags posten |
16.07.2017, 15:21 | #14 |
| Über Piesearch zu Bing, keine Lösung Ich entschuldige meine Skepsis, da ich nicht umgehend mit einer Antwort mit Empfehlungen für Antiviren Programme rechne sondern das ein wenig Zeit dazwischen liegt und ich nicht ohne Schutz im Internet unterwegs sein will. Bevor ich also Avast runterschmeiße, was ich auf Basis des Test der Bundespolizei ausgewählt vor Jahren und auch nie Probleme hatte damit, möchte ich wissen welches kostenlose Antiviren Programm ich stattdessen benutzen soll. |
16.07.2017, 22:29 | #15 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Über Piesearch zu Bing, keine LösungZitat:
Wir wollen dein System bereinigen. Und du willst zwischendurch irgendwas anderes machen, was soll sowas?! Davon mal ab scheinst du wohl auch einer zu sein, der hysterisch kreischt wenn der Virenscanner nicht da ist, obwohl die Dinger nachweislich nicht 100 %igen Schutz bringen können - dafür aber während der Bereinigung oft stören. Dass Avast ein Schrott-Anbiete ist muss ich ja nicht nochmal erwähnen oder? Schmeiß Avast runter dann gehts auch weiter.
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Über Piesearch zu Bing, keine Lösung |
anleitung, blieb, browser, diverse, durchgeführt, explorer, firefox, forum, frage, gelöscht, gen, interne, internet, internet explorer, leute, löschen, lösung, meldung, nicht löschen, programme, schließen, screenshot, suchmaschine, suchmaschinen, trojaner/virus, zurücksetzen |