|
Log-Analyse und Auswertung: Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet)Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
28.08.2018, 21:59 | #1 |
| Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet) Mahlzeit, mein Problem besteht darin, dass ich von jetzt auf gleich mit einigen Programmen keinen Internet Zugriff mehr habe. Mit Firefox kann ich ohne Probleme surfen, Dropbox allerdings bekommt keine Verbindung mehr. Selbiges Problem weißt G-Data auf, welches sich nicht mehr mit dem eigenen Update-Server verbinden kann. Als Fehler wird in beiden Fällen "Kein Internet Zugriff" als Fehler ausgespuckt. Ähnlich geht es mir noch mit einer Reihe weiterer Programme. Habe als Selbsttest einmal alle internetfähigen Programme geschlossen, die Firewall deaktiviert und es mit G-Data als auch mit Dropbox probiert. In beiden Fällen kam es zum vorherigen Fehler. Ebenfalls bin ich sämtliche Proxy-Einstellungen durch gegangen. Auch dieses hat zu keiner Lösung geführt. Ein befreundeter ITler verwieß mich daher auf dieses Forum und ist selber (Ferndiagnose) der Meinung, dass es sich hierbei um einen Schädling handeln könnte. Dazu muss noch gesagt werden, dass ich in den letzten 2 Monaten keine Programme neu installiert hätte. Ausschließlich das ein order andere Programm-Update durchgeführt. Es wäre super, wenn mir geholfen werden könnte, da dieses der letzte Ausweg vor der Neuinstallation von Windows 7 wäre. Mit freundlichen Grüßen enra93 FRST Logfile: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 23.08.2018 durchgeführt von Arne (Administrator) auf PEAL1993 (28-08-2018 22:52:20) Gestartet von C:\Users\Arne\Desktop Geladene Profile: Arne (Verfügbare Profile: Arne) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (G DATA Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe (G Data Software AG) C:\Program Files (x86)\G DATA\TotalProtection\AVK\AVKWCtlx64.exe (AMD) C:\Windows\System32\atiesrxx.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (AMD) C:\Windows\System32\atieclxx.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (G DATA Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe (Chip Digital GmbH) C:\Program Files (x86)\Chip Digital GmbH\chip1click\chip 1-click installer.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe (Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE (G DATA Software AG) C:\Program Files (x86)\G DATA\TotalProtection\AVKBackup\AVKBackupService.exe (Nero AG) C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe () C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe (Geek Software GmbH) D:\Programme\PDF24\pdf24.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe (TeamViewer GmbH) D:\Programme\TeamViewer_Service.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.4.3.227\WsAppService.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Wondershare) D:\Program Files (x86)\Wondershare\Dr.Fone for Android\Library\DriverInstaller\DriverInstall.exe (G Data Software AG) C:\Program Files (x86)\G DATA\TotalProtection\Firewall\GDFwSvcx64.exe (Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cnext.exe (© 2015 Microsoft Corporation) C:\Users\Arne\AppData\Local\Microsoft\BingSvc\BingSvc.exe (Amazon Services LLC) C:\Users\Arne\AppData\Local\Amazon Music\Amazon Music Helper.exe (Adobe Systems Inc.) D:\Programme\Adobe\Acrobat 7.0\Distillr\acrotray.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (cyberlink) C:\Program Files (x86)\CyberLink\Shared files\brs.exe (CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe (CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Windows\splwow64.exe (CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE () C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe (G DATA Software AG) C:\Program Files (x86)\G DATA\TotalProtection\Firewall\GDFirewallTray.exe (G DATA Software AG) C:\Program Files (x86)\G DATA\TotalProtection\AVKTray\AVKTray.exe (G DATA Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GDKBFltExe32.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (G DATA Software) C:\Program Files (x86)\G DATA\TotalProtection\TSNxG\TSNxGService.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Mozilla Corporation) D:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation) D:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation) D:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation) D:\Programme\Mozilla Firefox\firefox.exe (G DATA Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GDKBFltSur64.exe (Mozilla Corporation) D:\Programme\Mozilla Firefox\firefox.exe (Telegram Messenger LLP) C:\Users\Arne\AppData\Roaming\Telegram Desktop\Telegram.exe (Mozilla Corporation) D:\Programme\Mozilla Firefox\firefox.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508240 2015-08-05] (Adobe Systems Incorporated) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\cnext.exe [4859592 2015-11-18] (Advanced Micro Devices, Inc.) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [316392 2018-05-11] (Adobe Systems, Incorporated) HKLM-x32\...\Run: [Acrobat Assistant 7.0] => D:\Programme\Adobe\Acrobat 7.0\Distillr\Acrotray.exe [483328 2004-12-14] (Adobe Systems Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [56080 2015-12-02] (Raptr, Inc) HKLM-x32\...\Run: [CLMLServer] => C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [107816 2011-03-09] (CyberLink) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-03-08] (CyberLink Corp.) HKLM-x32\...\Run: [BDRegion] => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [179976 2013-09-02] (cyberlink) HKLM-x32\...\Run: [LGODDFU] => C:\Program Files (x86)\lg_fwupdate\lgfw.exe [27760 2012-07-12] (Bitleader) HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1075296 2013-04-25] (Adobe Systems Incorporated) HKLM-x32\...\Run: [LWS] => D:\Programme\Logitech\LWS\Webcam Software\LWS.exe [204136 2012-09-13] (Logitech Inc.) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [270912 2015-06-17] (CANON INC.) HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1314432 2016-06-09] (CANON INC.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle Corporation) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [3749184 2018-08-14] (Dropbox, Inc.) HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\program files (x86)\g data\totalprotection\avkkid\avkcks.exe HKU\S-1-5-19\...\Winlogon: [Shell] C:\Windows\explorer.exe [3229696 2016-08-29] (Microsoft Corporation) <==== ACHTUNG HKU\S-1-5-20\...\Winlogon: [Shell] C:\Windows\explorer.exe [3229696 2016-08-29] (Microsoft Corporation) <==== ACHTUNG HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Run: [BingSvc] => C:\Users\Arne\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-12-17] (© 2015 Microsoft Corporation) HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Run: [VideoDownloaderUltimate] => C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe [2467656 2016-02-08] (Link64 GmbH) HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Run: [Google Update] => C:\Users\Arne\AppData\Local\Google\Update\1.3.33.17\GoogleUpdateCore.exe [601680 2018-05-19] (Google Inc.) HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Run: [Amazon Music Helper] => C:\Users\Arne\AppData\Local\Amazon Music\Amazon Music Helper.exe [3051960 2018-05-17] (Amazon Services LLC) HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Winlogon: [Shell] C:\Windows\explorer.exe [3229696 2016-08-29] (Microsoft Corporation) <==== ACHTUNG HKU\S-1-5-18\...\RunOnce: [SPReview] => "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 HKU\S-1-5-18\...\Winlogon: [Shell] C:\Windows\explorer.exe [3229696 2016-08-29] (Microsoft Corporation) <==== ACHTUNG Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Acrobat - Schnellstart.lnk [2016-02-08] ShortcutTarget: Adobe Acrobat - Schnellstart.lnk -> C:\Windows\Installer\{AC76BA86-1033-F400-7760-100000000002}\SC_Acrobat.exe () CHR HKLM\SOFTWARE\Policies\Google: Beschränkung <==== ACHTUNG CHR HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\SOFTWARE\Policies\Google: Beschränkung <==== ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) ProxyEnable: [S-1-5-21-2068704244-1425643408-3996308100-1000] => Proxy ist aktiviert. ProxyServer: [S-1-5-21-2068704244-1425643408-3996308100-1000] => http=127.0.0.1:8888;https=127.0.0.1:8888 Hosts: 127.0.0.1 gdpwmgrlocalhost Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{52078FD8-0874-4704-A444-F97C3A56F6BC}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{5EF87EF5-2FDB-4460-AEE0-490E678E3A6C}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{723BFB67-7F3C-42BF-AE1A-8E84E4B51C4F}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{B7FC4786-DABF-4623-838D-53B150B181F9}: [DhcpNameServer] 192.168.42.129 ManualProxies: 1http=127.0.0.1:8888;https=127.0.0.1:8888 Internet Explorer: ================== HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000 -> DefaultScope {DC9D9C20-7FCA-4DD9-B2F0-D7A0A883ACE1} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?pc=COSP&ptag=D060916-A6B219395BABB4E59ADF&form=CONBDF&conlogo=CT3332005&q={searchTerms} SearchScopes: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000 -> {DC9D9C20-7FCA-4DD9-B2F0-D7A0A883ACE1} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-08-19] (Microsoft Corporation) BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (CANON INC.) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_161\bin\ssv.dll [2018-02-10] (Oracle Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2018-08-02] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-02-10] (Oracle Corporation) BHO: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll [2015-11-27] (DVDVideoSoft Ltd.) BHO-x32: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> D:\Programme\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [2004-12-14] (Adobe Systems Incorporated) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (CANON INC.) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO-x32: AcroIEToolbarHelper Class -> {AE7CD045-E861-484f-8273-0445EE161910} -> D:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2004-12-14] (Adobe Systems Incorporated) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\URLREDIR.DLL [2018-08-02] (Microsoft Corporation) BHO-x32: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll [2015-11-27] (DVDVideoSoft Ltd.) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - D:\Programme\Adobe\Acrobat 7.0\Acrobat\AcroIEFavClient.dll [2004-12-14] (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.) DPF: HKLM {B479199A-1242-4E3C-AD81-7F0DF801B4AE} hxxp://download.microsoft.com/download/C/9/C/C9C3D86D-84AC-4AF0-8584-842756A66467/MicrosoftDownloadManager.cab DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-08-19] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-08-19] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-08-19] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-08-19] (Microsoft Corporation) FireFox: ======== FF DefaultProfile: uz8bupwy.default FF ProfilePath: C:\Users\Arne\AppData\Roaming\Mozilla\Firefox\Profiles\uz8bupwy.default [2018-08-28] FF Homepage: Mozilla\Firefox\Profiles\uz8bupwy.default -> hxxp://www.google.de/ FF NewTab: Mozilla\Firefox\Profiles\uz8bupwy.default -> hxxp://www.bing.com/?pc=COSP&ptag=D060916-A6B219395BABB4E59ADF&form=CONMHP&conlogo=CT3332005 FF NetworkProxy: Mozilla\Firefox\Profiles\uz8bupwy.default -> type", 0 FF Extension: (Firebug) - C:\Users\Arne\AppData\Roaming\Mozilla\Firefox\Profiles\uz8bupwy.default\Extensions\firebug@software.joehewitt.com.xpi [2017-03-02] [Legacy] FF Extension: (Instagram for Firefox) - C:\Users\Arne\AppData\Roaming\Mozilla\Firefox\Profiles\uz8bupwy.default\Extensions\jid0-BumCY9dUzYckeJaH3JEeimjBpxM@jetpack.xpi [2016-04-27] [Legacy] FF Extension: (AdBlock) - C:\Users\Arne\AppData\Roaming\Mozilla\Firefox\Profiles\uz8bupwy.default\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2018-07-29] FF Extension: (Instagram Video Download) - C:\Users\Arne\AppData\Roaming\Mozilla\Firefox\Profiles\uz8bupwy.default\Extensions\lumerias-instagram@lumerias.com.xpi [2017-07-11] FF Extension: (Print Edit WE) - C:\Users\Arne\AppData\Roaming\Mozilla\Firefox\Profiles\uz8bupwy.default\Extensions\printedit-we@DW-dev.xpi [2018-01-14] FF Extension: (Print Edit) - C:\Users\Arne\AppData\Roaming\Mozilla\Firefox\Profiles\uz8bupwy.default\Extensions\printedit@DW-dev.xpi [2017-08-18] [Legacy] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_30_0_0_154.dll [2018-08-15] () FF Plugin: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-02-10] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-02-10] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.0 -> D:\Programme\VLC Player\npvlc.dll [2015-02-27] (VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-08-06] (Adobe Systems) FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [2013-12-02] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_30_0_0_154.dll [2018-08-15] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw.dll [2017-03-31] (Adobe Systems, Inc.) FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2015-10-29] (CANON INC.) FF Plugin-x32: @Microsoft.com/DownloadManager,version=1.1 -> C:\Windows\ [] () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-05-13] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-08-06] (Adobe Systems) FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [2013-12-02] (Adobe Systems) FF Plugin HKU\S-1-5-21-2068704244-1425643408-3996308100-1000: @talk.google.com/GoogleTalkPlugin -> C:\Users\Arne\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google) FF Plugin HKU\S-1-5-21-2068704244-1425643408-3996308100-1000: @talk.google.com/O1DPlugin -> C:\Users\Arne\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google) FF Plugin HKU\S-1-5-21-2068704244-1425643408-3996308100-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Arne\AppData\Local\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.) FF Plugin HKU\S-1-5-21-2068704244-1425643408-3996308100-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Arne\AppData\Local\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.) FF Plugin ProgramFiles/Appdata: C:\Users\Arne\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Arne\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-12-08] (Google) StartMenuInternet: FIREFOX.EXE - D:\Programme\Mozilla Firefox\firefox.exe Chrome: ======= CHR HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx Opera: ======= OPR Session Restore: -> ist aktiviert. ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2321384 2018-05-11] (Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2128872 2018-05-11] (Adobe Systems, Incorporated) R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [5238520 2018-05-22] (G DATA Software AG) R2 AVKWCtl; C:\Program Files (x86)\G DATA\TotalProtection\AVK\AVKWCtlx64.exe [3460656 2017-11-27] (G Data Software AG) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6893704 2018-06-21] () R2 chip1click; C:\Program Files (x86)\Chip Digital GmbH\chip1click\chip 1-click installer.exe [84992 2016-06-24] (Chip Digital GmbH) [Datei ist nicht signiert] <==== ACHTUNG R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8853984 2018-08-09] (Microsoft Corporation) S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [243464 2013-09-02] (CyberLink) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-08-26] (Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-08-26] (Dropbox, Inc.) R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [51024 2018-08-14] (Dropbox, Inc.) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [388968 2016-01-19] (Digital Wave Ltd.) [Datei ist nicht signiert] S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [774272 2018-03-29] (EasyAntiCheat Ltd) R2 GDBackupSvc; C:\Program Files (x86)\G DATA\TotalProtection\AVKBackup\AVKBackupService.exe [4005864 2017-11-27] (G DATA Software AG) R3 GDFwSvc; C:\Program Files (x86)\G DATA\TotalProtection\Firewall\GDFwSvcx64.exe [3528688 2017-12-05] (G Data Software AG) R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [906704 2017-11-27] (G DATA Software AG) S3 GDTunerSvc; C:\Program Files (x86)\G DATA\TotalProtection\AVKTuner\AVKTunerService.exe [2538472 2017-11-27] (G DATA Software AG) R2 HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2014-06-27] (Nero AG) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [389696 2017-07-10] () S2 MxService; C:\Program Files (x86)\Maxthon5\Bin\MxService.exe [144152 2018-08-28] (Maxthon International ltd.) S3 Origin Client Service; D:\Programme\Origin\OriginClientService.exe [1931632 2015-04-16] (Electronic Arts) R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [Datei ist nicht signiert] R2 PDF24; D:\Programme\PDF24\pdf24.exe [217736 2017-06-08] (Geek Software GmbH) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Datei ist nicht signiert] R2 TeamViewer; D:\Programme\TeamViewer_Service.exe [6634224 2018-02-02] (TeamViewer GmbH) R3 TSNxGService; C:\Program Files (x86)\G DATA\TotalProtection\TSNxG\TSNxGService.exe [262560 2017-12-07] (G DATA Software) S3 VSStandardCollectorService140; D:\Programme\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [56040 2015-11-19] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.227\WsAppService.exe [492768 2017-06-21] (Wondershare) R2 WsDrvInst; D:\Program Files (x86)\Wondershare\Dr.Fone for Android\Library\DriverInstaller\DriverInstall.exe [118048 2017-06-22] (Wondershare) ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31920 2014-04-09] (Wondershare) S3 BstkDrv; C:\Program Files (x86)\BlueStacks\BstkDrv.sys [269408 2018-05-23] (Bluestack System Inc. ) S3 EasyAntiCheatSys; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.sys [836288 2018-06-01] (EasyAntiCheat Oy) R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [209936 2018-01-16] (G Data Software AG) R3 gddcd; C:\Windows\System32\drivers\gddcd64.sys [89160 2016-08-31] (G DATA Software AG) R1 gddcv; C:\Windows\System32\drivers\gddcv64.sys [69192 2016-08-31] (G DATA Software AG) R3 GDKBB; C:\Windows\system32\drivers\GDKBB64.sys [46104 2017-09-16] (G Data Software AG) R3 GDKBFlt; C:\Windows\system32\drivers\GDKBFlt64.sys [38984 2018-01-16] (G DATA Software AG) R1 GDMnIcpt; C:\Windows\system32\drivers\MiniIcpt.sys [342584 2018-01-16] (G Data Software AG) R3 GDPkIcpt; C:\Windows\system32\drivers\PktIcpt.sys [162360 2018-05-28] (G Data Software AG) R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [75320 2018-05-28] (G DATA Software AG) R1 HookCentre; C:\Windows\system32\drivers\HookCentre.sys [179256 2018-01-16] (G Data Software AG) R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [129312 2014-09-30] (Intel Corporation) R2 npf; C:\Windows\system32\drivers\npf.sys [36600 2017-09-10] (Riverbed Technology, Inc.) R0 TS4NT; C:\Windows\System32\Drivers\TS4nt.sys [109128 2018-05-28] (G DATA Software AG) S1 vmkbd3; C:\Windows\System32\DRIVERS\vmkbd.sys [52288 2016-11-11] (VMware, Inc.) R3 voxaldriver; C:\Windows\System32\DRIVERS\voxaldriverx64.sys [34512 2016-03-04] () S2 BstHdDrv; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) Error(1) reading file: "C:\Users\Arne\Downloads\Die Drei " 2018-08-28 22:52 - 2018-08-28 22:52 - 000027130 _____ C:\Users\Arne\Desktop\FRST.txt 2018-08-28 22:52 - 2018-08-28 22:52 - 000000000 ____D C:\FRST 2018-08-28 22:51 - 2018-08-28 22:51 - 002413056 _____ (Farbar) C:\Users\Arne\Desktop\FRST64.exe 2018-08-28 20:41 - 2018-08-28 20:41 - 000003582 _____ C:\Windows\System32\Tasks\Maxthon5 Update 2018-08-28 20:41 - 2018-08-28 20:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MX5 2018-08-28 20:41 - 2018-08-28 20:41 - 000000000 ____D C:\ProgramData\cache 2018-08-28 20:41 - 2018-08-28 20:41 - 000000000 ____D C:\Program Files (x86)\Maxthon5 2018-08-26 18:57 - 2018-08-28 21:26 - 000000574 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk 2018-08-26 18:52 - 2018-08-28 22:03 - 000001210 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job 2018-08-26 18:52 - 2018-08-28 21:28 - 000001206 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job 2018-08-26 18:52 - 2018-08-26 18:58 - 000004206 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA 2018-08-26 18:52 - 2018-08-26 18:58 - 000003954 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore 2018-08-26 18:52 - 2018-08-26 18:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2018-08-26 18:52 - 2018-08-26 18:52 - 000000000 ____D C:\Program Files (x86)\Dropbox 2018-08-21 08:42 - 2018-08-21 08:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2018-08-21 08:42 - 2018-08-21 08:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2018-08-14 13:51 - 2018-08-14 13:51 - 000051024 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe 2018-08-14 13:51 - 2018-08-14 13:51 - 000050232 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys 2018-08-14 13:51 - 2018-08-14 13:51 - 000050232 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys 2018-08-14 13:51 - 2018-08-14 13:51 - 000045640 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys 2018-08-06 20:49 - 2018-08-06 20:49 - 000000000 ____D C:\Users\Arne\.cache 2018-08-06 20:48 - 2018-08-06 20:48 - 000000000 ____D C:\Users\Arne\Documents\Apowersoft 2018-08-06 20:48 - 2017-09-10 15:54 - 000370424 _____ (Riverbed Technology, Inc.) C:\Windows\system32\wpcap.dll 2018-08-06 20:48 - 2017-09-10 15:54 - 000282360 _____ (Riverbed Technology, Inc.) C:\Windows\SysWOW64\wpcap.dll 2018-08-06 20:48 - 2017-09-10 15:54 - 000107768 _____ (Riverbed Technology, Inc.) C:\Windows\system32\Packet.dll 2018-08-06 20:48 - 2017-09-10 15:54 - 000098040 _____ (Riverbed Technology, Inc.) C:\Windows\SysWOW64\Packet.dll 2018-08-06 20:48 - 2017-09-10 15:54 - 000053299 _____ C:\Windows\SysWOW64\pthreadVC.dll 2018-08-06 20:48 - 2017-09-10 15:54 - 000036600 _____ (Riverbed Technology, Inc.) C:\Windows\system32\Drivers\npf.sys 2018-08-03 18:54 - 2018-08-03 18:54 - 000002176 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk 2018-08-03 18:54 - 2018-08-03 18:54 - 000002164 _____ C:\Users\Public\Desktop\Google Earth Pro.lnk 2018-08-03 18:54 - 2018-08-03 18:54 - 000000000 ____D C:\Program Files\Google ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2018-08-28 22:44 - 2018-05-10 22:27 - 000000528 _____ C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-2068704244-1425643408-3996308100-1000.job 2018-08-28 22:38 - 2016-04-03 12:58 - 000000000 ____D C:\Users\Arne\AppData\Roaming\Telegram Desktop 2018-08-28 22:37 - 2018-05-10 22:27 - 000000624 _____ C:\Windows\Tasks\G2MUploadTask-S-1-5-21-2068704244-1425643408-3996308100-1000.job 2018-08-28 22:11 - 2016-11-22 12:28 - 000000000 ____D C:\Users\Arne\AppData\LocalLow\Mozilla 2018-08-28 21:47 - 2016-05-15 23:07 - 000000000 ____D C:\Users\Arne\AppData\Roaming\.minecraft 2018-08-28 21:36 - 2009-07-14 06:45 - 000015120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2018-08-28 21:36 - 2009-07-14 06:45 - 000015120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2018-08-28 21:32 - 2009-07-14 19:58 - 000699092 _____ C:\Windows\system32\perfh007.dat 2018-08-28 21:32 - 2009-07-14 19:58 - 000149232 _____ C:\Windows\system32\perfc007.dat 2018-08-28 21:32 - 2009-07-14 07:13 - 001619284 _____ C:\Windows\system32\PerfStringBackup.INI 2018-08-28 21:32 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2018-08-28 21:28 - 2015-11-19 17:40 - 000000000 ____D C:\Users\Arne\AppData\Local\HTC MediaHub 2018-08-28 21:28 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2018-08-28 21:14 - 2015-04-11 15:59 - 000000000 ____D C:\Users\Arne\AppData\Roaming\TS3Client 2018-08-28 21:12 - 2015-12-07 13:54 - 000000000 ____D C:\Users\Arne\AppData\Local\CrashDumps 2018-08-28 20:38 - 2014-12-21 20:22 - 000000000 ____D C:\Users\Arne\AppData\Local\Adobe 2018-08-28 20:32 - 2017-12-21 22:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2018-08-28 20:32 - 2014-12-21 18:38 - 000001310 _____ C:\Users\Public\Desktop\Skype.lnk 2018-08-26 18:56 - 2014-12-13 23:57 - 000000000 ____D C:\Users\Arne\AppData\Local\ElevatedDiagnostics 2018-08-26 18:55 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF 2018-08-26 18:52 - 2015-06-19 06:39 - 000000000 ____D C:\Users\Arne\AppData\Local\Dropbox 2018-08-26 18:44 - 2015-04-17 02:40 - 000000000 ____D C:\Users\Arne\AppData\Roaming\Dropbox 2018-08-26 18:41 - 2014-12-21 22:35 - 000000000 ____D C:\Users\Arne\AppData\Local\Google 2018-08-26 18:41 - 2014-12-21 22:35 - 000000000 ____D C:\Program Files (x86)\Google 2018-08-26 17:33 - 2017-11-06 17:57 - 000000000 ____D C:\ProgramData\CanonIJPLM 2018-08-23 21:15 - 2015-04-12 23:09 - 000000000 ____D C:\Users\Arne\AppData\Roaming\Apowersoft 2018-08-21 20:38 - 2015-04-17 02:41 - 000000000 ___RD C:\Users\Arne\Dropbox 2018-08-21 08:42 - 2018-05-13 20:13 - 000002392 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2018-08-21 08:42 - 2015-03-14 18:48 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2018-08-19 03:44 - 2018-05-10 22:27 - 000000000 ____D C:\Users\Arne\AppData\Local\GoToMeeting 2018-08-19 00:15 - 2015-03-14 18:48 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-08-17 14:26 - 2018-05-10 22:27 - 000003648 _____ C:\Windows\System32\Tasks\G2MUploadTask-S-1-5-21-2068704244-1425643408-3996308100-1000 2018-08-17 14:26 - 2018-05-10 22:27 - 000003552 _____ C:\Windows\System32\Tasks\G2MUpdateTask-S-1-5-21-2068704244-1425643408-3996308100-1000 2018-08-15 21:39 - 2017-05-14 21:17 - 000004526 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier 2018-08-15 21:39 - 2014-12-14 01:00 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2018-08-15 21:39 - 2014-12-14 01:00 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2018-08-15 21:39 - 2014-12-14 01:00 - 000004366 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2018-08-15 21:39 - 2014-12-14 01:00 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2018-08-15 21:39 - 2014-12-14 01:00 - 000000000 ____D C:\Windows\system32\Macromed 2018-08-15 20:47 - 2018-03-15 02:39 - 000004514 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier 2018-08-13 20:32 - 2018-05-14 23:07 - 000003170 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2068704244-1425643408-3996308100-1000 2018-08-13 20:32 - 2015-03-14 18:56 - 000002177 _____ C:\Users\Arne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2018-08-13 20:32 - 2015-03-14 18:56 - 000000000 ___RD C:\Users\Arne\OneDrive 2018-08-11 11:21 - 2016-05-13 19:31 - 000000000 ____D C:\Users\Arne\AppData\Roaming\WhatsApp 2018-08-11 11:04 - 2018-01-20 21:50 - 000000000 ____D C:\Users\Arne\AppData\Local\WhatsApp 2018-08-11 11:04 - 2016-05-13 19:31 - 000000000 ____D C:\Users\Arne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2018-08-11 11:04 - 2016-05-13 19:31 - 000000000 ____D C:\Users\Arne\AppData\Local\SquirrelTemp 2018-08-09 19:35 - 2017-09-19 21:15 - 000003856 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1505848506 2018-08-09 19:35 - 2017-09-19 21:14 - 000000000 ____D C:\Program Files\Opera 2018-08-06 20:49 - 2014-12-13 23:55 - 000000000 ____D C:\Users\Arne 2018-08-06 20:48 - 2015-05-19 14:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft 2018-08-06 20:48 - 2015-05-19 14:24 - 000000000 ____D C:\Program Files (x86)\Apowersoft 2018-08-06 20:40 - 2018-04-16 17:20 - 000000000 ____D C:\Users\Arne\AppData\Local\4kdownload.com 2018-08-06 20:39 - 2016-01-11 20:15 - 000000000 ____D C:\Program Files (x86)\4KDownload ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-09-22 22:32 - 2018-07-24 22:18 - 000000132 _____ () C:\Users\Arne\AppData\Roaming\Adobe CS6-PNG-Format - Voreinstellungen 2015-04-03 00:51 - 2015-04-03 01:28 - 000000128 _____ () C:\Users\Arne\AppData\Roaming\Camdata.ini 2015-04-03 00:51 - 2015-04-03 01:28 - 000000408 _____ () C:\Users\Arne\AppData\Roaming\CamLayout.ini 2015-04-03 00:51 - 2015-04-03 01:28 - 000000408 _____ () C:\Users\Arne\AppData\Roaming\CamShapes.ini 2015-04-03 00:51 - 2015-04-03 01:28 - 000004548 _____ () C:\Users\Arne\AppData\Roaming\CamStudio.cfg 2014-12-14 00:45 - 2014-12-14 00:45 - 000000000 _____ () C:\Users\Arne\AppData\Roaming\gdfw.log 2014-12-14 00:45 - 2014-12-14 00:45 - 000000779 _____ () C:\Users\Arne\AppData\Roaming\gdscan.log 2016-03-04 19:29 - 2016-03-04 19:30 - 000001181 _____ () C:\Users\Arne\AppData\Roaming\trace_FilterInstaller.txt 2016-03-04 19:29 - 2016-03-04 19:29 - 000000000 _____ () C:\Users\Arne\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt 2015-04-03 00:50 - 2015-04-03 00:51 - 000000096 _____ () C:\Users\Arne\AppData\Roaming\version2.xml 2016-10-05 23:21 - 2016-10-05 23:21 - 000000843 _____ () C:\Users\Arne\AppData\Local\recently-used.xbel Einige Dateien in TEMP: ==================== 2018-02-10 13:43 - 2018-02-10 13:43 - 001864256 _____ (Oracle Corporation) C:\Users\Arne\AppData\Local\Temp\jre-8u161-windows-au.exe 2017-08-24 21:31 - 2017-07-07 17:11 - 001114112 _____ (Microsoft Corporation) C:\Users\Arne\AppData\Local\Temp\kernel32.dll 2017-10-13 07:00 - 2017-10-13 07:00 - 007186992 _____ (Microsoft Corporation) C:\Users\Arne\AppData\Local\Temp\launcher_vs2012_sp4_vcredist_x64.exe 2017-10-13 07:00 - 2017-10-13 07:00 - 006554576 _____ (Microsoft Corporation) C:\Users\Arne\AppData\Local\Temp\launcher_vs2012_sp4_vcredist_x86.exe 2017-12-11 19:21 - 2017-12-11 19:21 - 059162608 _____ (Skype Technologies S.A.) C:\Users\Arne\AppData\Local\Temp\SkypeSetup.exe 2017-11-06 18:23 - 2016-01-14 16:20 - 000362656 _____ (CANON INC.) C:\Users\Arne\AppData\Local\Temp\uninstall.exe ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2018-08-22 18:12 ==================== Ende von FRST.txt ============================ Geändert von Enra93 (28.08.2018 um 21:59 Uhr) |
28.08.2018, 22:00 | #2 |
| Addition.txt FRST Additions Logfile:
__________________Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 23.08.2018 durchgeführt von Arne (28-08-2018 22:52:42) Gestartet von C:\Users\Arne\Desktop Windows 7 Home Premium Service Pack 1 (X64) (2014-12-13 21:55:13) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-2068704244-1425643408-3996308100-500 - Administrator - Disabled) Arne (S-1-5-21-2068704244-1425643408-3996308100-1000 - Administrator - Enabled) => C:\Users\Arne Gast (S-1-5-21-2068704244-1425643408-3996308100-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2068704244-1425643408-3996308100-1002 - Limited - Enabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: G DATA TOTAL SECURITY (Enabled - Up to date) {A9C56A9B-ECCD-57EA-78F6-92511DA1C885} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: G DATA TOTAL SECURITY (Enabled - Up to date) {12A48B7F-CAF7-5864-4246-A92366268238} FW: G DATA TOTAL SECURITY (Enabled) {91FEEBBE-A6A2-56B2-53A9-3B64E3728FFE} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) 4K Stogram 2.6 (HKLM\...\{CBD24523-4E64-4DFB-8311-05019EFD0D6B}) (Version: 2.6.14.1590 - Open Media LLC) Adobe Acrobat 7.0 Professional - English, Français, Deutsch (HKLM-x32\...\Adobe Acrobat 7.0 Professional - English, Français, Deutsch - V) (Version: 7.0.0 - Adobe Systems) Adobe CS6 German Speech Analysis Models (HKLM-x32\...\{4509E223-2AC0-41F4-B51A-94E132AFD2BD}) (Version: 3.0 - Adobe Systems Incorporated) Adobe Flash Player 30 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 30.0.0.154 - Adobe Systems Incorporated) Adobe Flash Player 30 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 30.0.0.154 - Adobe Systems Incorporated) Adobe Flash Player 30 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 30.0.0.154 - Adobe Systems Incorporated) Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated) Adobe Shockwave Player 12.2 (HKLM-x32\...\{39EA6AA6-F891-4D70-867D-839DA49948D2}) (Version: 12.2.9.199 - Adobe Systems, Inc) Adobe Update Management Tool (HKLM-x32\...\{534A7A1A-7102-4AF6-23EA-7CD279C7B625}_is1) (Version: 6.2 - PainteR) AIMP3 (HKLM-x32\...\AIMP3) (Version: v3.60.1465, 29.12.2014 - AIMP DevTeam) Allgemeine Runtime Files (x86) (HKLM\...\{1F6D1DB5-82B5-41A4-85A2-0A382C142A35}_is1) (Version: 1.0.5.1 - Sereby Corporation) Amazon Music (HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Amazon Amazon Music) (Version: 6.6.1.1350 - Amazon Services LLC) AMD Install Manager (HKLM\...\AMD Catalyst Install Manager) (Version: 5.00 - Advanced Micro Devices, Inc.) Application Insights Tools for Visual Studio 2015 (HKLM-x32\...\{AFADB5DC-3ABC-421F-9DAD-BDABE511258B}) (Version: 4.0.51117.1 - Microsoft Corporation) aTube Catcher Version 3.8 (HKLM-x32\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp) Audacity 2.1.1 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.1 - Audacity Team) AudibleManager (HKLM-x32\...\AudibleManager) (Version: 2004824035.48.56.34671850 - Audible, Inc.) Azure AD Authentication Connected Service (HKLM-x32\...\{3FEAC561-1CF6-41D6-B0F3-BECDD9C88A1B}) (Version: 14.0.23107 - Microsoft Corporation) Hidden AzureTools.Notifications (HKLM-x32\...\{1E5CA362-39B6-4BD0-B9C0-69CF15F0FEA2}) (Version: 2.7.30611.1601 - Microsoft Corporation) Hidden Blend for Visual Studio SDK for .NET 4.5 (HKLM-x32\...\{37E53780-3944-4A6A-842F-727128E8616E}) (Version: 3.0.40218.0 - Microsoft Corporation) Hidden Blender (HKLM\...\Blender) (Version: 2.74 - Blender Foundation) BlueStacks App Player (HKLM-x32\...\BlueStacks) (Version: 4.1.17.2008 - BlueStack Systems, Inc.) CameraHelperMsi (HKLM-x32\...\{15634701-BACE-4449-8B25-1567DA8C9FD3}) (Version: 13.51.815.0 - Logitech) Hidden CamStudio 2.7.2 (HKLM\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7.2 - CamStudio Open Source) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.) Canon IJ Network Scanner Selector EX2 (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX2) (Version: 2.0.0.19 - Canon Inc.) Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.3.1.4 - Canon Inc.) Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 5.4.0 - Canon Inc.) Canon My Image Garden (HKLM-x32\...\Canon My Image Garden) (Version: 3.5.2 - Canon Inc.) Canon My Image Garden Design Files (HKLM-x32\...\Canon My Image Garden Design Files) (Version: 3.5.2 - Canon Inc.) Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.7.1 - Canon Inc.) Canon TS6000 series Benutzerregistrierung (HKLM-x32\...\Canon TS6000 series Benutzerregistrierung) (Version: - *Canon Inc.) Canon TS6000 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_TS6000_series) (Version: 1.01 - Canon Inc.) Canon TS6000 series On-Screen-Handbuch (HKLM-x32\...\Canon TS6000 series On-Screen-Handbuch) (Version: 1.1.0 - Canon Inc.) Canon Utilities EOS Utility 2 (HKLM-x32\...\EOS Utility 2) (Version: 2.14.10.2 - Canon Inc.) Catalyst Control Center Next Localization BR (HKLM\...\{57F75D04-50DF-DF75-AEF7-3889FD499B69}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHS (HKLM\...\{12217A64-3EB7-E89D-6011-874D9E20C75A}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CHT (HKLM\...\{49429C11-393B-C286-BBFD-D92608DA2D5B}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization CS (HKLM\...\{59AA411E-2A99-5E09-5054-0BC064B8AF0E}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DA (HKLM\...\{7E2F413A-F00F-9594-93C1-399FC2A78B80}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization DE (HKLM\...\{3DAB607D-36A8-BFD6-C66C-D32C895CFF7F}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization EL (HKLM\...\{18D21A5A-F64F-F473-0771-40CA23383A43}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization ES (HKLM\...\{A2E6049D-5D45-ACCB-D342-1403A6969B0A}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FI (HKLM\...\{8937C9B9-B633-B232-E1D4-E2B1109A84D3}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization FR (HKLM\...\{E7BA847A-41FB-EA16-BA6F-604C28351E07}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization HU (HKLM\...\{B9D2237B-128B-EA3A-E487-07732C928E65}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization IT (HKLM\...\{4E78BAB0-11D1-2AA8-888F-457C3C3D6122}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization JA (HKLM\...\{CD61C8E9-1A33-1503-C3CB-31D694CEF1CD}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization KO (HKLM\...\{97989A01-9EC6-8C8A-BB95-03DB4C4380A9}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NL (HKLM\...\{DCA60703-DC9D-3511-FF14-EF0BE6F9F0C7}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization NO (HKLM\...\{C4F8068D-5FE1-2C11-25D6-2BF70EFCDB4F}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization PL (HKLM\...\{65E7E7FB-53AD-16B9-BBA9-CF4FAB9521E4}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization RU (HKLM\...\{9B9EF42A-2062-5C50-0030-6CDD2682C9D4}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization SV (HKLM\...\{A5AAA3A1-79C9-7869-F870-9705C3714F9E}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TH (HKLM\...\{AC126BBD-FE46-A668-2E0F-8C6E0A20D592}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Next Localization TR (HKLM\...\{8270B6CF-A4B8-D73B-7E1D-22ADB6DD34AA}) (Version: 2015.1118.123.2413 - Advanced Micro Devices, Inc.) Hidden CBTL_TwitterImageDownloader (HKLM-x32\...\{2223143E-3B2D-46B4-BD2F-B6DEAED131EF}) (Version: 2.00.0000 - Code Between The Lines) chip 1-click download service (HKLM-x32\...\{503CA94E-0834-4CEE-AD92-BA17AF4E809A}) (Version: 2.2.1.0 - Chip Digital GmbH) <==== ACHTUNG ConvertHelper 3.1.1 (HKLM\...\{27CC6AB1-E72B-4179-AF1A-EAE507EBAF52}}_is1) (Version: - DownloadHelper) CPUID HWMonitor 1.27 (HKLM\...\CPUID HWMonitor_is1) (Version: - ) Cross+A (Deutsch) (HKLM-x32\...\Cross+A (Deutsch)) (Version: 8.38.0.1094 - Sergey Kutasov, Ilya Morozov) CrystalDiskInfo 6.5.2 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 6.5.2 - Crystal Dew World) CyberLink BD_3D Advisor 2.0 (HKLM-x32\...\{2D2D8FE2-605C-4D3C-B706-36E981E7EEF0}) (Version: 2.0.6410 - CyberLink Corp.) CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{8F14AA37-5193-4A14-BD5B-BDF9B361AEF7}) (Version: 10.0 - CyberLink Corp.) D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden Debut Videorekorder (HKLM-x32\...\Debut) (Version: 1.95 - NCH Software) Devenv-Ressourcen für Microsoft Visual Studio 2015 (HKLM-x32\...\{FB44808B-AC6F-301D-806D-77815A51E242}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Discord (HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Discord) (Version: 0.0.301 - Discord Inc.) Dotfuscator and Analytics Community Edition 5.19.0 (HKLM-x32\...\{4C5B1DD0-7E8E-4972-9247-818E6D030552}) (Version: 5.19.0.2930 - PreEmptive Solutions) Hidden Dotfuscator and Analytics Community Edition Language Pack 5.19.0 de-DE (HKLM-x32\...\{F6A3F154-2010-4013-B88A-4CC052FDE375}) (Version: 5.19.0.2930 - PreEmptive Solutions) Hidden Dropbox (HKLM-x32\...\Dropbox) (Version: 55.4.171 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.127.1 - Dropbox, Inc.) Hidden Entity Framework 6.1.3 Tools for Visual Studio 2015 Update 1 (HKLM-x32\...\{2A56910C-69C8-495D-8ED8-9080F0A14E58}) (Version: 14.0.41103.0 - Microsoft Corporation) EPSON Universal Print Driver Printer Uninstall (HKLM\...\EPSON Universal Print Driver) (Version: - SEIKO EPSON Corporation) EPSON WF-3520 Series Printer Uninstall (HKLM\...\EPSON WF-3520 Series) (Version: - SEIKO EPSON Corporation) Erforderliche Komponenten für SSDT (HKLM-x32\...\{2466E484-9D86-416B-9C88-AA533F15AF1C}) (Version: 12.0.2000.8 - Microsoft Corporation) erLT (HKLM-x32\...\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}) (Version: 1.20.138.34 - Logitech, Inc.) Hidden Euro Truck Simulator 2 Multiplayer 0.1.8.2 Alpha (HKLM-x32\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 0.1.8.2 Alpha - ETS2MP Team) Express Burn (HKLM-x32\...\ExpressBurn) (Version: 4.78 - NCH Software) Far Cry 3 (HKLM-x32\...\Uplay Install 46) (Version: - Ubisoft) Far Cry 4 (HKLM-x32\...\Uplay Install 420) (Version: - Ubisoft) Far Cry 5 (HKLM-x32\...\Uplay Install 1803) (Version: - Ubisoft) FileZilla Client 3.14.1 (HKLM-x32\...\FileZilla Client) (Version: 3.14.1 - Tim Kosse) Fotogalerie (HKLM-x32\...\{41BF4A3B-D60A-4E92-883F-C88C8C157261}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Free Alarm Clock 3.1.0 (HKLM-x32\...\{8ED5A2F1-338F-4608-8AF7-BCD1ADC1E1F7}_is1) (Version: 3.1 - Comfort Software Group) Free Audio Converter (HKLM-x32\...\Free Audio Converter_is1) (Version: 5.0.73.119 - DVDVideoSoft Ltd.) Free Instagram Downloader (HKLM-x32\...\{0BF469D0-0A84-439A-B889-F94734EE2250}) (Version: 1.2.1.0 - iWesoft) Free MP4 Video Converter (HKLM-x32\...\Free MP4 Video Converter_is1) (Version: 5.0.72.1224 - DVDVideoSoft Ltd.) Free Video to JPG Converter (HKLM-x32\...\Free Video to JPG Converter_is1) (Version: 5.0.69.1127 - DVDVideoSoft Ltd.) Free YouTube Download (HKLM-x32\...\Free YouTube Download_is1) (Version: 4.0.7.1117 - DVDVideoSoft Ltd.) FreeCAD 0.16 - A free open source CAD system (HKLM\...\FreeCAD 0.16) (Version: 0.16.6700 - Juergen Riegel) G DATA TOTAL SECURITY (HKLM-x32\...\G DATA TOTAL SECURITY) (Version: 25.4.0.4 - G DATA Software AG) Garmin BaseCamp (HKLM-x32\...\{36A0D446-B8E9-4753-BDFE-335F6F4DE59C}) (Version: 4.5.2 - Garmin Ltd or its subsidiaries) Garmin USB Drivers (HKLM\...\{DC7720F2-98BE-41C1-B0A8-E391362E86B8}) (Version: 2.3.1.1 - Garmin Ltd or its subsidiaries) Gemeinsam genutzte Microsoft Azure-Komponenten für Visual Studio 2015 Sprachpaket (DEU) - v1.5 (HKLM-x32\...\{A0F1E5BA-EDF3-44A6-B7E1-01136E8092B0}) (Version: 1.5.30619.1602 - Microsoft Corporation) Hidden GeoSetter 3.4.16 (HKLM-x32\...\GeoSetter_is1) (Version: - Friedemann Schmidt) GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team) Google Earth Pro (HKLM\...\{F914BC59-918A-498F-B2E3-B274C9CB48A8}) (Version: 7.3.2.5491 - Google) Google Talk Plugin (HKLM-x32\...\{F9B579C2-D854-300A-BE62-A09EB9D722E4}) (Version: 5.41.3.0 - Google) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden GoTo Opener (HKLM-x32\...\{1F803452-798F-49FB-A5DD-9F527F7017E4}) (Version: 1.0.473 - LogMeIn, Inc.) GoToMeeting 8.33.0.9250 (HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\GoToMeeting) (Version: 8.33.0.9250 - LogMeIn, Inc.) Grand Theft Auto V (HKLM-x32\...\{E01FA564-2094-4833-8F2F-1FFEC6AFCC46}) (Version: "1.00.0000" - Rockstar Games) Hex-Editor MX (HKLM-x32\...\{7FC7AD70-1DF3-4B84-9AA2-4FB680F45572}_is1) (Version: 6.0 - NEXT-Soft) HTC Driver Installer (HKLM-x32\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.17.0.001 - HTC Corporation) HTC Sync Manager (HKLM-x32\...\{231D0C79-98A6-4693-A366-36DE7D7346EC}) (Version: 3.1.64.0 - HTC) IIS 10.0 Express (HKLM\...\{7A28A2B0-458B-4A58-84AC-C90D2D4B79FB}) (Version: 10.0.1735 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{08274920-8908-45c2-9258-8ad67ff77b09}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{ad846bae-d44b-4722-abad-f7420e08bcd9}.sdb) (Version: - ) IMG2MS (HKLM-x32\...\{B09009BB-6D3C-4B06-A2C9-37B107670DAC}) (Version: 80.27 - TM) IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.9 - HTC) Java 8 Update 161 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180161F0}) (Version: 8.0.1610.12 - Oracle Corporation) Java 8 Update 161 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180161F0}) (Version: 8.0.1610.12 - Oracle Corporation) Java SE Development Kit 7 Update 80 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170800}) (Version: 1.7.0.800 - Oracle) Knuddels Standalone App (HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Knuddels App ) (Version: "2015.12.6.0" - "Knuddels App") Leawo Blu-ray Player Version 1.9.6.1 (HKLM-x32\...\{CF7F52BF-DEE0-44CD-A7E1-AADD5CCECCDD}_is1) (Version: 1.9.6.1 - Leawo Software) LG ODD Auto Firmware Update (HKLM-x32\...\{6179550A-3E7C-499E-BCC9-9E8113E0A285}) (Version: 10.01.0712.01 - ) Logitech Webcam-Software (HKLM-x32\...\{D40EB009-0499-459c-A8AF-C9C110766215}) (Version: 2.51 - Logitech Inc.) MAGIX Connect (HKLM-x32\...\MAGIX_connector_is1) (Version: 2.5.1.83 - MAGIX Software GmbH) MAGIX Speed burnR (MSI) (HKLM\...\{B7802BC1-5F76-48D2-A622-98195BD50B87}) (Version: 7.0.2.6 - MAGIX Software GmbH) Hidden MAGIX Speed burnR (MSI) (HKLM-x32\...\MX.{B7802BC1-5F76-48D2-A622-98195BD50B87}) (Version: 7.0.2.6 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Designelemente) (HKLM\...\{67025742-42D8-4E8D-92BF-3C001AA7C645}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Designelemente) (HKLM\...\MX.{67025742-42D8-4E8D-92BF-3C001AA7C645}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Filmvorlagen 1) (HKLM\...\{E9D2A2BC-900E-4CBE-8543-E2EEF79163CB}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Filmvorlagen 1) (HKLM\...\MX.{E9D2A2BC-900E-4CBE-8543-E2EEF79163CB}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Filmvorlagen 2) (HKLM\...\{38B2C12F-B11F-40A5-B04C-9819949FFE01}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Filmvorlagen 2) (HKLM\...\MX.{38B2C12F-B11F-40A5-B04C-9819949FFE01}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Filmvorlagen 3) (HKLM\...\{1759FCEB-940B-4D92-9F45-E55E7E6736C0}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Filmvorlagen 3) (HKLM\...\MX.{1759FCEB-940B-4D92-9F45-E55E7E6736C0}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Filmvorlagen 4) (HKLM\...\{A35C545A-8BF8-40C4-BC04-50216A46C2F0}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Filmvorlagen 4) (HKLM\...\MX.{A35C545A-8BF8-40C4-BC04-50216A46C2F0}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Filmvorlagen 5) (HKLM\...\{57AA9D95-6A4C-4247-B98A-6EA983F3E0FB}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Filmvorlagen 5) (HKLM\...\MX.{57AA9D95-6A4C-4247-B98A-6EA983F3E0FB}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Filmvorlagen 6) (HKLM\...\{D3AC4780-D1C1-4A70-9832-BB64E79C62B3}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Filmvorlagen 6) (HKLM\...\MX.{D3AC4780-D1C1-4A70-9832-BB64E79C62B3}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Filmvorlagen 7) (HKLM\...\{98C37332-DC95-426F-A987-043FA9A282D1}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Filmvorlagen 7) (HKLM\...\MX.{98C37332-DC95-426F-A987-043FA9A282D1}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Fotoshow Maker-Stile 1) (HKLM\...\{CB907D67-2FA8-4E28-8A9F-D5A35074E281}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Fotoshow Maker-Stile 1) (HKLM\...\MX.{CB907D67-2FA8-4E28-8A9F-D5A35074E281}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Fotoshow Maker-Stile 2) (HKLM\...\{3F16328C-62E2-41AD-953F-23F0332EAF78}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Fotoshow Maker-Stile 2) (HKLM\...\MX.{3F16328C-62E2-41AD-953F-23F0332EAF78}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (HKLM\...\{B9D9D873-ADDA-4D0C-B691-0F323C6DD62A}) (Version: 15.0.0.62 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (HKLM\...\MX.{B9D9D873-ADDA-4D0C-B691-0F323C6DD62A}) (Version: 15.0.0.62 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Individuelle Menüvorlagen) (HKLM\...\{33AFBCF9-0338-494D-BAFD-1367B5BD5A30}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Individuelle Menüvorlagen) (HKLM\...\MX.{33AFBCF9-0338-494D-BAFD-1367B5BD5A30}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Menüvorlagen 1) (HKLM\...\{8BCE1A1B-3EB0-4DCB-8C9F-6D235CA493FC}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Menüvorlagen 1) (HKLM\...\MX.{8BCE1A1B-3EB0-4DCB-8C9F-6D235CA493FC}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Menüvorlagen 2) (HKLM\...\{7D42CCF5-305C-49E7-9828-D89C05AEA82D}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Menüvorlagen 2) (HKLM\...\MX.{7D42CCF5-305C-49E7-9828-D89C05AEA82D}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (NewBlue ActionCam Package) (HKLM\...\{02C01AE1-F497-475A-AA45-43E41A495136}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (NewBlue ActionCam Package) (HKLM\...\MX.{02C01AE1-F497-475A-AA45-43E41A495136}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (proDAD Mercalli V4) (HKLM\...\{89CF4765-0012-4619-BA4E-1571376A25CA}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (proDAD Mercalli V4) (HKLM\...\MX.{89CF4765-0012-4619-BA4E-1571376A25CA}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Soundtrack Maker-Stile) (HKLM\...\{416D1902-8D1C-4F9C-A303-369408018457}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Soundtrack Maker-Stile) (HKLM\...\MX.{416D1902-8D1C-4F9C-A303-369408018457}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Titeleffekte) (HKLM\...\{28FE7891-77C0-45E1-9CA4-35E9250F91DA}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Titeleffekte) (HKLM\...\MX.{28FE7891-77C0-45E1-9CA4-35E9250F91DA}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium (Überblendeffekte) (HKLM\...\{585234EA-CDB3-48A7-B6C4-0EFF9A86D244}) (Version: 1.0.0.0 - MAGIX Software GmbH) Hidden MAGIX Video deluxe 2016 Premium (Überblendeffekte) (HKLM\...\MX.{585234EA-CDB3-48A7-B6C4-0EFF9A86D244}) (Version: 1.0.0.0 - MAGIX Software GmbH) MAGIX Video deluxe 2016 Premium Update (HKLM\...\{05EC0475-A301-4906-BDC0-F6AF1EBF9770}) (Version: 15.0.0.114 - MAGIX Software GmbH) Hidden Merkaartor (HKLM\...\Merkaartor) (Version: 0.18.3-64bit - ) Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 Multi-Targeting Pack (HKLM-x32\...\{19E8AE59-4D4A-3534-B567-6CC08FA4102E}) (Version: 4.5.51651 - Microsoft Corporation) Microsoft .NET Framework 4.6 SDK (Deutsch) (HKLM-x32\...\{EE8BD24B-75E1-4BBF-86B9-91FE16ADE71C}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6 SDK (HKLM-x32\...\{B5915D37-0637-4A26-A3AA-C5DC9F856370}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6 Targeting Pack (HKLM-x32\...\{2CC6A4A7-AAC2-46C9-9DBB-3727B5954F65}) (Version: 4.6.00081 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (Deutsch) (HKLM-x32\...\{529EFF09-750D-48B9-A47A-34A3B6248C3F}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 SDK (HKLM-x32\...\{2F0ECC80-B9E4-4485-8083-CD32F22ABD92}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (ENU) (HKLM-x32\...\{8EEB28EE-5141-411C-9CF0-9952264FE4AF}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Framework 4.6.1 Targeting Pack (HKLM-x32\...\{8BC3EEC9-090F-4C53-A8DA-1BEC913040F9}) (Version: 4.6.01055 - Microsoft Corporation) Microsoft .NET Version Manager (x64) 1.0.0-beta5 (HKLM\...\{c5a4aba3-1aba-3ef8-b2d5-c3fa37f59738}) (Version: 1.0.10609.0 - Microsoft Corporation) Microsoft Download Manager (HKLM-x32\...\{654977DB-0001-0002-0001-EABD228DDE8B}) (Version: 1.2.1 - Microsoft Corporation) Microsoft Help Viewer 2.2 (HKLM-x32\...\Microsoft Help Viewer 2.2) (Version: 2.2.24720 - Microsoft Corporation) Microsoft Help Viewer 2.2 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.2 Sprachpaket - DEU) (Version: 2.2.24720 - Microsoft Corporation) Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.5031.1000 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\OneDriveSetup.exe) (Version: 18.131.0701.0007 - Microsoft Corporation) Microsoft Outlook 2016 - de-de (HKLM\...\OutlookRetail - de-de) (Version: 16.0.10325.20118 - Microsoft Corporation) Microsoft Outlook 2016 - en-us (HKLM\...\OutlookRetail - en-us) (Version: 16.0.10325.20118 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{F09DEB00-9F41-4BC9-BA81-9F131B12B3D5}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{8E4BA1E5-54E8-41F0-919B-CD875B83CFCE}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (14.0.50616.0) (HKLM-x32\...\{FA604873-01A0-4834-AF87-418534E465BB}) (Version: 14.0.50616.0 - Microsoft Corporation) Microsoft SQL Server*2014 Management Objects (HKLM-x32\...\{4F4CB3E2-9D2F-465A-854B-8276B02F4E7D}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 Management Objects (x64) (HKLM\...\{03CB711D-679E-46ED-851B-C568418CF914}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 Transact-SQL ScriptDom (HKLM\...\{F2A2DB39-2C5A-4764-AA0F-5AB112663FFA}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft SQL Server*2014 T-SQL Language Service (HKLM-x32\...\{06BE8B71-46C6-434B-869E-85C58EF3120A}) (Version: 12.0.2000.8 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61187 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61186 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.7523 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.7523 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.7523 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61135 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61135 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61135 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61135 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61135 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61135 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61135 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61135 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{82f2609e-68ba-408d-963f-530ad8809435}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{577ff5ba-39aa-4d8c-a3a9-f95012763438}) (Version: 12.0.40660.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25017 (HKLM-x32\...\{e9d78d68-c26c-4da7-9158-99355d8ef3ad}) (Version: 14.10.25017.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25017 (HKLM-x32\...\{58b3beca-b999-4f6f-a48c-81681136a620}) (Version: 14.10.25017.0 - Microsoft Corporation) Microsoft Visual J# 2.0 Redistributable Package - SE (x64) (HKLM\...\Microsoft Visual J# 2.0 Redistributable Package - SE (x64)) (Version: - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Community 2015 mit Update 1 (HKLM-x32\...\{013c11fd-b596-4e15-a6e6-8373b77f0b5e}) (Version: 14.0.24720.0 - Microsoft Corporation) Microsoft Web Deploy 3.6 (HKLM\...\{ED4CC1E5-043E-4157-8452-B5E533FE2BA1}) (Version: 3.1238.1955 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2014 (HKLM\...\{7F6DCED8-6A2B-4436-AF20-8F659D04E388}) (Version: 12.0.2402.29 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2014 (HKLM-x32\...\{48BF289B-F3FA-4023-9251-80ABF7B726F9}) (Version: 12.0.2402.29 - Microsoft Corporation) Minecraft (HKLM-x32\...\{1C16BCA3-EBC1-49F6-8623-8FBFB9CCC872}) (Version: 1.0.3.0 - Mojang) Mit C# erstellte geräteübergreifende Hybrid-Apps - Vorlagen - DEU (HKLM-x32\...\{F6C04806-5A52-31D1-ACF7-A010F8315E7A}) (Version: 14.0.23107 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{70C91B91-61E8-4D06-86D6-A9DCC291983A}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Movie Maker (HKLM-x32\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 35.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 35.0.1 (x86 de)) (Version: 35.0.1 - Mozilla) Mozilla Firefox 61.0.2 (x64 de) (HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Mozilla Firefox 61.0.2 (x64 de)) (Version: 61.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.3.0 - Mozilla) Mp3tag v2.78 (HKLM-x32\...\Mp3tag) (Version: v2.78 - Florian Heidenreich) MSBuild/NuGet Integration 14.0 (x86) (HKLM-x32\...\{FA0599C5-C083-41BE-8AEA-E8EB9070D128}) (Version: 14.0.24720 - Microsoft Corporation) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2721691) (HKLM-x32\...\{355B5AC0-CEEE-42C5-AD4D-7F3CFD806C36}) (Version: 4.30.2114.0 - Microsoft Corporation) MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation) MX5 (HKLM-x32\...\Maxthon5) (Version: 5.2.4.2000 - Maxthon International Limited) Nero BurningROM 2016 (HKLM-x32\...\{6C1E6289-0A1B-4ED5-A376-0819DE3651FD}) (Version: 17.0.00200 - Nero AG) Nero Info (HKLM-x32\...\{F030BFE8-8476-4C08-A553-233DE80A2BE1}) (Version: 16.0.2000 - Nero AG) Nero Recode 2016 (HKLM-x32\...\{5A18888A-1CBF-43F3-B6DF-C8294BDD1780}) (Version: 17.0.00100 - Nero AG) Nero WaveEditor (HKLM-x32\...\{8EBCCD6B-CDE8-4070-80BC-8A3109C6944B}) (Version: 14.0.00300 - Nero AG) NetBeans IDE 8.0.2 (HKLM\...\nbi-nb-base-8.0.2.0.201411181905) (Version: 8.0.2 - NetBeans.org) NewBlue Titler EX for MAGIX (HKLM-x32\...\NewBlue Titler EX for MAGIX) (Version: 1.0 - NewBlue) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.1 - Notepad++ Team) Office 15 Click-to-Run Extensibility Component (HKLM-x32\...\{90150000-008C-0000-0000-0000000FF1CE}) (Version: 15.0.5031.1000 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (HKLM-x32\...\{90150000-008C-0407-0000-0000000FF1CE}) (Version: 15.0.5031.1000 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.10325.20118 - Microsoft Corporation) Hidden Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.10325.20118 - Microsoft Corporation) Hidden Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.10325.20118 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0407-0000-0000000FF1CE}) (Version: 16.0.10325.20118 - Microsoft Corporation) Hidden Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.10325.20118 - Microsoft Corporation) Hidden Opera Stable 54.0.2952.71 (HKLM-x32\...\Opera 54.0.2952.71) (Version: 54.0.2952.71 - Opera Software) Origin (HKLM-x32\...\Origin) (Version: 9.5.12.2862 - Electronic Arts, Inc.) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 RC für Windows Store-Apps (Deutsch) (HKLM-x32\...\{63045916-32E7-31D6-BD8E-C13406E137B5}) (Version: 4.5.21005 - Microsoft Corporation) Hidden Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM-x32\...\{3F514FDC-F0F2-3B99-86D6-F7B3A2679B39}) (Version: 4.5.51209 - Microsoft Corporation) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6 (Deutsch) (HKLM-x32\...\{FACF2669-E25A-428A-9167-5EEDE741F3B9}) (Version: 4.6.00127 - Microsoft Corporation) Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM-x32\...\{4860C1E5-CE58-4D32-89DE-37951333B4C9}) (Version: 4.6.01055 - Microsoft Corporation) PDF Settings CC (HKLM-x32\...\{1FBAE18D-4DE4-47AA-83EC-D1B046F262DC}) (Version: 12.0 - Adobe Systems Incorporated) Hidden PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden PDF24 Creator 8.2.0 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) PHOTO projects 3 elements (64-Bit) (HKLM\...\COLOR_PROJECTS_3_2_C935FDA1_is1) (Version: 3.34 - Franzis Verlag GmbH) PreEmptive Analytics Client German Language Pack (HKLM-x32\...\{B9EE1E60-4884-4B2F-9187-92F532437D60}) (Version: 1.2.5134.1 - PreEmptive Solutions) Hidden PreEmptive Analytics Visual Studio Components (HKLM-x32\...\{436A18DD-5F2C-4B3C-985E-AD3C13B0CC25}) (Version: 1.2.5134.1 - PreEmptive Solutions) Hidden Prerequisite installer (HKLM-x32\...\{3AAB08A3-F129-4BD5-B409-AE674F93759D}) (Version: 12.0.0010 - Nero AG) Hidden Prerequisite installer (HKLM-x32\...\{5F284483-EE8D-447E-BEBE-2BF13B08C4BF}) (Version: 17.0.0002 - Nero AG) Hidden Raptr (HKLM-x32\...\Raptr) (Version: - ) RawTherapee Version 4.2 (HKLM\...\{128459AB-59A7-430A-8BD0-3D8803D50400}_is1) (Version: 4.2 - rawtherapee.com) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.88.617.2014 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7256 - Realtek Semiconductor Corp.) ROCCAT Ryos Keyboard Driver (HKLM-x32\...\{70F3EF93-44F4-446A-90B8-33DAB2799AF1}) (Version: 1.29.0006 - Roccat GmbH) Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 1.1.7.8 - Rockstar Games) Roslyn Language Services - x86 (HKLM-x32\...\{6A7F37C9-1E37-3A9A-93D4-09BBEB4BD343}) (Version: 14.0.24720 - Microsoft Corporation) Hidden Roslyn Language Services - x86 (HKLM-x32\...\{C6ABF51B-7C6D-3047-A974-F2A804793E3E}) (Version: 14.0.24720 - Microsoft Corporation) Hidden SketchUp 2015 (HKLM\...\{A83795B9-570F-40FF-ACB4-710B568EBA22}) (Version: 15.3.331 - Trimble Navigation Limited) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype Version 8.22 (HKLM-x32\...\Skype_is1) (Version: 8.22 - Skype Technologies S.A.) Speccy (HKLM\...\Speccy) (Version: 1.31 - Piriform) Splinter Cell Chaos Theory (HKLM-x32\...\Uplay Install 95) (Version: - Ubisoft) Spotify (HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Spotify) (Version: 1.0.42.151.g19de0aa6 - Spotify AB) Stashimi Stub Installer (HKLM-x32\...\{910B539D-F257-46C8-9CB8-6C95EFF9CF22}) (Version: 18.001.1 - Nero AG) Hidden Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation) Team Explorer for Microsoft Visual Studio 2015 (HKLM-x32\...\{48992F68-BEE6-35D8-89AC-6A81406F1096}) (Version: 14.0.24712 - Microsoft Corporation) Hidden TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.93450 - TeamViewer) Telegram Desktop version 1.3.10 (HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 1.3.10 - Telegram Messenger LLP) Test Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{9EABBFE1-7EED-47D9-8FB8-21D7E4808057}) (Version: 14.0.23107 - Microsoft Corporation) Hidden TextMaker Viewer (HKLM-x32\...\TextMaker Viewer) (Version: - SoftMaker Software GmbH) TypeScript Power Tool (HKLM-x32\...\{7FBEE165-A653-4B2A-A93A-4643794E22A8}) (Version: 1.7.4.0 - Microsoft Corporation) Hidden TypeScript Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{D7C8A95B-B1EE-43B1-837D-C73D1321FEBA}) (Version: 1.7.4.0 - Microsoft Corporation) Hidden TypeScript Tools for Microsoft Visual Studio 2015 1.7.4.0 (HKLM-x32\...\{33e2204a-4ec6-4458-895a-47e2a404d990}) (Version: 1.7.24720.0 - Microsoft Corporation) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Uplay (HKLM-x32\...\Uplay) (Version: 4.9 - Ubisoft) Urwigo (HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\58f19a2872fb977e) (Version: 1.22.0.144 - Urwigo) Video Download Capture V6.4.1 (HKLM-x32\...\{b3336f66-e079-4ff6-abdb-51e2fab781d5}_is1) (Version: 6.4.1 - APOWERSOFT LIMITED) Video Download Capture Version 5.0.3 (HKLM-x32\...\{3C9D008D-3716-4C3F-90CD-38ED57568FAB}_is1) (Version: 5.0.3 - APOWERSOFT LIMITED) VideoDownloaderUltimate (HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\VideoDownloaderUltimateWinApp) (Version: 1.0.1.74 - Link64) Visual Studio 2015 Update 1 (KB3022398) (HKLM-x32\...\{fcaa9dba-9438-48b6-ad91-4e9b4cc7084a}) (Version: 14.0.24720 - Microsoft Corporation) VLC media player (HKLM\...\VLC media player) (Version: 2.2.0 - VideoLAN) Voxal Voice Changer (HKLM-x32\...\Voxal) (Version: 1.25 - NCH Software) VS Update core components (HKLM-x32\...\{5F7870A1-0586-313E-A9FF-3249DCE9F63A}) (Version: 14.0.24720 - Microsoft Corporation) Hidden WCF Data Services 5.6.4 DEU Language Pack (HKLM-x32\...\{A18C9DC6-4DE8-4C3C-9CE7-8CCC33BFAB3A}) (Version: 5.6.62175.4 - Microsoft Corporation) Hidden WCF Data Services 5.6.4 Runtime (HKLM-x32\...\{DB85E7BD-B2DD-43D4-B3C0-23D7B527B597}) (Version: 5.6.62175.4 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2015 (HKLM-x32\...\{0A3B508E-5638-4471-BCC9-954E1868CB86}) (Version: 5.6.62175.4 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2015 DEU Language Pack (HKLM-x32\...\{7498BA51-A725-4293-A5E4-AB28BDE1C18A}) (Version: 5.6.62175.4 - Microsoft Corporation) Hidden WhatsApp (HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\WhatsApp) (Version: 0.3.225 - WhatsApp) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) WinISD beta (HKLM-x32\...\WinISD beta) (Version: - ) WinRAR 5.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH) xImage (HKLM-x32\...\{31492759-0E89-46B5-9770-F6E5808E3017}) (Version: 2.3 - GARMIN) XnView 2.35 (HKLM-x32\...\XnView_is1) (Version: 2.35 - Gougelet Pierre-e) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000_Classes\CLSID\{144DF3B2-2402-47AE-9583-5A045929A8D4}\InprocServer32 -> C:\Users\Arne\AppData\Local\Google\Update\1.3.33.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5}\InprocServer32 -> C:\Users\Arne\AppData\Local\Microsoft\OneDrive\17.3.6743.1212\amd64\FileCoAuthLib64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000_Classes\CLSID\{590C4387-5EBD-4D46-8A84-CD0BA2EF2856}\InprocServer32 -> C:\Users\Arne\AppData\Local\Google\Update\1.3.30.3\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000_Classes\CLSID\{59B55F04-DE14-4BB8-92FF-C4A22EF2E5F4}\InprocServer32 -> C:\Users\Arne\AppData\Local\Google\Update\1.3.31.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000_Classes\CLSID\{5a92069a-6adf-4258-9731-669af3266146}\InprocServer32 -> C:\Windows\system32\dfshim.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000_Classes\CLSID\{793EE463-1304-471C-ADF1-68C2FFB01247}\InprocServer32 -> C:\Users\Arne\AppData\Local\Google\Update\1.3.29.5\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Arne\AppData\Local\GoToMeeting\8625\G2MOutlookAddin64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000_Classes\CLSID\{8C46158B-D978-483C-A312-16EE5013BE04}\InprocServer32 -> C:\Users\Arne\AppData\Local\Google\Update\1.3.33.3\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000_Classes\CLSID\{91A41FCC-BC02-42D8-A36E-0D27FF9BFFC8}\InprocServer32 -> C:\Users\Arne\AppData\Local\Google\Update\1.3.33.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000_Classes\CLSID\{CB492AF1-2CEF-4E58-BE47-471C77D0C8BA}\InprocServer32 -> C:\Users\Arne\AppData\Local\Google\Update\1.3.32.7\psuser_64.dll => Keine Datei CustomCLSID: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000_Classes\CLSID\{D45F043D-F17F-4e8a-8435-70971D9FA46D}\InprocServer32 -> D:\Programme\Blender Foundation\Blender\BlendThumb64.dll () CustomCLSID: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Arne\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000_Classes\CLSID\{EA724FD3-844D-43A9-A8C9-A5BC35FC20E4}\InprocServer32 -> C:\Users\Arne\AppData\Local\Google\Update\1.3.33.17\psuser_64.dll (Google Inc.) ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ContextMenuHandlers1-x32: [Adobe.Acrobat.ContextMenu] -> {D25B2CAB-8A9A-4517-A9B2-CB5F68A5A802} => D:\Programme\Adobe\Acrobat 7.0\Acrobat Elements\ContextMenu.dll [2004-12-14] (Adobe Systems Inc.) ContextMenuHandlers1-x32: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => D:\Programme\Notepad++\NppShell_06.dll [2014-05-12] () ContextMenuHandlers1-x32: [AVK9CM] -> {CAF4C320-32F5-11D3-A222-004095200FF2} => C:\Program Files (x86)\G DATA\TotalProtection\AVK\ShellExt64.dll [2017-11-27] (G DATA Software AG) ContextMenuHandlers1-x32: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ContextMenuHandlers1-x32-x32: [GeoSetterShellExt] -> {7506374C-A693-427B-8DDD-99DAFB79433D} => C:\Program Files (x86)\GeoSetter\GeoSetterShellExt.dll [2011-02-01] (Friedemann Schmidt) ContextMenuHandlers1-x32-x32: [GeoSetterShellExt64] -> {A50BD5C6-4B18-44F3-8D6D-62DE89A969E9} => C:\Program Files (x86)\GeoSetter\GeoSetterShellExt64.dll [2011-02-01] (Friedemann Schmidt) ContextMenuHandlers1-x32-x32: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [2016-06-25] (Florian Heidenreich) ContextMenuHandlers1-x32-x32: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Programme\WinRAR\rarext.dll [2014-12-04] (Alexander Roshal) ContextMenuHandlers1-x32-x32-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Programme\WinRAR\rarext32.dll [2014-12-04] (Alexander Roshal) ContextMenuHandlers2: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [2016-06-25] (Florian Heidenreich) ContextMenuHandlers3: [Reisswolf] -> {1F0F1EE7-36B9-11D2-8985-0080ADA96E9B} => C:\Program Files (x86)\G DATA\TotalProtection\Shredder\Reisswlf64.dll [2017-11-27] (G DATA Software AG) ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ContextMenuHandlers4: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [2016-06-25] (Florian Heidenreich) ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2015-11-18] (Advanced Micro Devices, Inc.) ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.22.0.dll [2018-08-14] (Dropbox, Inc.) ContextMenuHandlers6: [AVK9CM] -> {CAF4C320-32F5-11D3-A222-004095200FF2} => C:\Program Files (x86)\G DATA\TotalProtection\AVK\ShellExt64.dll [2017-11-27] (G DATA Software AG) ContextMenuHandlers6-x32: [GeoSetterShellExt] -> {7506374C-A693-427B-8DDD-99DAFB79433D} => C:\Program Files (x86)\GeoSetter\GeoSetterShellExt.dll [2011-02-01] (Friedemann Schmidt) ContextMenuHandlers6-x32: [GeoSetterShellExt64] -> {A50BD5C6-4B18-44F3-8D6D-62DE89A969E9} => C:\Program Files (x86)\GeoSetter\GeoSetterShellExt64.dll [2011-02-01] (Friedemann Schmidt) ContextMenuHandlers6-x32: [Reisswolf] -> {1F0F1EE7-36B9-11D2-8985-0080ADA96E9B} => C:\Program Files (x86)\G DATA\TotalProtection\Shredder\Reisswlf64.dll [2017-11-27] (G DATA Software AG) ContextMenuHandlers6-x32: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Programme\WinRAR\rarext.dll [2014-12-04] (Alexander Roshal) ContextMenuHandlers6-x32-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Programme\WinRAR\rarext32.dll [2014-12-04] (Alexander Roshal) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {0A78F28A-9087-4B09-AD7A-2E51DDE4D5AC} - System32\Tasks\Maxthon5 Update => C:\Program Files (x86)\Maxthon5\Bin\Maxthon.exe [2018-08-28] (Maxthon International ltd.) Task: {18C42D52-3771-4055-AF07-E688CC3B8722} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2018-08-26] (Dropbox, Inc.) Task: {1DFB722B-52C7-4E04-9C8C-682E42B9A890} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-08-19] (Microsoft Corporation) Task: {2E1367DE-5B55-4399-9B34-6120277313BF} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2068704244-1425643408-3996308100-1000UA => C:\Users\Arne\AppData\Local\Google\Update\GoogleUpdate.exe [2016-02-04] (Google Inc.) Task: {3F24BF35-A9F6-42D2-8A63-E551A3EDB10C} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-08-09] (Microsoft Corporation) Task: {3F264AB9-D63C-4768-8F86-F9F82A4FC803} - System32\Tasks\{4B671D95-4404-4E53-907E-2744A437E6BF} => C:\Windows\system32\pcalua.exe -a C:\Users\Arne\Downloads\01.2016\InstagramDownloader_setup_CB-DL-Manager.exe Task: {3F7A41C7-5327-4BAD-842F-9FFE7E09294C} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-08-19] (Microsoft Corporation) Task: {4387C7CE-F6A1-46A5-B4B8-0F75FD2FACB7} - System32\Tasks\{85BC3519-960C-4D17-BB0D-E0E6D8CAA200} => C:\Windows\system32\pcalua.exe -a C:\Users\Arne\Desktop\portable\PhotoshopCS4Portable\PhotoshopCS4Portable.exe -d C:\Users\Arne\Desktop\portable\PhotoshopCS4Portable Task: {44DEB4A9-EFF0-419C-B076-893D1D54A32C} - System32\Tasks\G2MUploadTask-S-1-5-21-2068704244-1425643408-3996308100-1000 => C:\Users\Arne\AppData\Local\GoToMeeting\9250\g2mupload.exe [2018-08-17] (LogMeIn, Inc.) Task: {4F797ADD-B244-4284-A564-3F5D2BB6300F} - System32\Tasks\G2MUpdateTask-S-1-5-21-2068704244-1425643408-3996308100-1000 => C:\Users\Arne\AppData\Local\GoToMeeting\9250\g2mupdate.exe [2018-08-17] (LogMeIn, Inc.) Task: {50CA54A4-2BA6-4889-967D-36CDF132963F} - System32\Tasks\AMD Updater => C:\Program Files\AMD\CIM\\Bin64\InstallManagerApp.exe [2015-11-18] (Advanced Micro Devices, Inc.) Task: {540F3B63-78A6-4DFD-8BEF-F003DDFBBFC0} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [2015-06-04] (Nero AG) Task: {6FB61B4C-0981-42E6-8C52-0B52BC42E83E} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2068704244-1425643408-3996308100-1000Core => C:\Users\Arne\AppData\Local\Google\Update\GoogleUpdate.exe [2016-02-04] (Google Inc.) Task: {74E03603-BF92-41B6-88E0-D999DA3F7748} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-08-19] (Microsoft Corporation) Task: {7C1E75C7-168B-4572-8CC9-25703FF44F0A} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-08-09] (Microsoft Corporation) Task: {8767FC35-138A-4E2B-9AE2-6944B11073AE} - System32\Tasks\Opera scheduled Autoupdate 1505848506 => C:\Program Files\Opera\launcher.exe [2018-08-07] (Opera Software) Task: {9B9AA665-9998-4AEF-A8E5-C48A815E5319} - System32\Tasks\{851041BB-A5C3-4EF5-9604-2ECD3153F402} => C:\Windows\system32\pcalua.exe -a C:\Users\Arne\Downloads\InstagramDownloader_setup_CB-DL-Manager.exe -d C:\Users\Arne\Downloads Task: {A09F7D0C-4300-4B9A-9DED-68143F99042D} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2018-08-26] (Dropbox, Inc.) Task: {A8DE846E-B328-450F-8926-DC922F1B2917} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {B0914A18-EF12-4EE5-AF37-48563D0104C0} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_154_Plugin.exe [2018-08-15] (Adobe Systems Incorporated) Task: {C09FA839-4E17-485C-AF30-4A3DA3EE54CE} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2018-08-15] (Adobe Systems Incorporated) Task: {C33A0B91-703D-4F3C-8ACE-0B196242442A} - System32\Tasks\AdobeGCInvoker-1.0-PEAL1993-Arne => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-05-11] (Adobe Systems, Incorporated) Task: {C541AE36-0691-4C70-B056-D7B009462A81} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-28] (Google Inc.) Task: {CBADDBE0-406A-4D74-8578-7E13A868D400} - System32\Tasks\BlueStacksHelper => C:\ProgramData\BlueStacks\Client\Helper\BlueStacksHelper.exe [2018-06-08] (BlueStack Systems, Inc.) Task: {CD7F8E47-47BC-49AB-BB92-A49907666E18} - System32\Tasks\Microsoft\Office\OfficeOsfInstaller => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\osfinstaller.exe [2018-08-19] (Microsoft Corporation) Task: {F6CF866A-E165-445A-A586-CD20CABEA736} - System32\Tasks\AdobeAAMUpdater-1.0-PEAL1993-Arne => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2015-08-05] (Adobe Systems Incorporated) Task: {F9C72AEF-172C-45CF-B90B-9C085E944D2C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-08-19] (Microsoft Corporation) Task: {FE63D695-B3EA-4883-975C-E5B9206B4E67} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_30_0_0_154_pepper.exe [2018-08-15] (Adobe Systems Incorporated) Task: {FEF34A2C-E6BE-42C4-92B9-E0D53572F3FC} - System32\Tasks\{746E70CB-F457-490D-9B4D-EDD2978BD5F9} => C:\Windows\system32\pcalua.exe -a C:\Users\Arne\Downloads\mcedit2-win64-2.0.0-beta11.exe -d C:\Users\Arne\Downloads (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-2068704244-1425643408-3996308100-1000.job => C:\Users\Arne\AppData\Local\GoToMeeting\9250\g2mupdate.exe Task: C:\Windows\Tasks\G2MUploadTask-S-1-5-21-2068704244-1425643408-3996308100-1000.job => C:\Users\Arne\AppData\Local\GoToMeeting\9250\g2mupload.exe ==================== Verknüpfungen & WMI ======================== (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) Shortcut: C:\Users\Arne\Favorites\Downloadseite von NCH Software.lnk -> hxxp://www.nch.com.au/de/index.htm Shortcut: C:\Users\Arne\Favorites\NCH Software Download Site.lnk -> hxxp://www.nch.com.au/index.htm Shortcut: C:\Users\Arne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Instagram Downloader\Free Instagram Downloader Website.lnk -> hxxp://www.iwesoft.com/productinfo.php?id=3 ShortcutWithArgument: C:\Users\Arne\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WorldofTanks.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> hxxp://mmotraffic.com/catalog/goplay/1327/MTE3NjYvLy8xMzI3/ ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2017-11-06 17:57 - 2017-07-10 13:12 - 000389696 _____ () C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE 2013-10-17 16:27 - 2013-10-17 16:27 - 000166912 _____ () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe 2015-10-16 12:02 - 2015-10-16 12:02 - 000043480 _____ () D:\Programme\FileZilla\FileZilla FTP Client\fzshellext_64.dll 2017-12-05 12:29 - 2017-12-05 12:29 - 000557544 _____ () C:\Program Files (x86)\Common Files\G Data\AVKProxy\PktIcpt2x64.dll 2015-06-25 17:34 - 2015-06-25 17:34 - 000014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll 2015-06-25 17:37 - 2015-06-25 17:37 - 000739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-06-25 17:35 - 2015-06-25 17:35 - 000014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll 2015-06-25 17:38 - 2015-06-25 17:38 - 000071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll 2015-06-25 16:53 - 2015-06-25 16:53 - 000011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll 2015-06-25 16:51 - 2015-06-25 16:51 - 002013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll 2015-10-19 11:55 - 2015-10-19 11:55 - 000821240 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe 2015-01-16 22:14 - 2016-01-19 05:02 - 000110952 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll 2015-01-16 22:14 - 2016-01-19 05:02 - 000253800 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\collector.dll 2015-01-16 22:14 - 2016-01-19 05:02 - 000295272 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\stat.dll 2015-01-16 22:14 - 2016-01-19 05:02 - 000104296 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll 2015-01-16 22:14 - 2016-01-19 05:02 - 000020328 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll 2015-01-16 22:14 - 2016-01-19 05:02 - 000044392 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll 2015-10-19 11:54 - 2015-10-19 11:54 - 000030720 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\DbAccess.dll 2015-10-19 11:55 - 2015-10-19 11:55 - 000607016 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\sqlite3.dll 2015-10-19 11:55 - 2015-10-19 11:55 - 000059392 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\NAdvLog.dll 2015-10-19 11:55 - 2015-10-19 11:55 - 000035864 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\NFileCacheDBAccess.dll 2015-10-19 11:55 - 2015-10-19 11:55 - 000079888 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\ninstallerhelper.dll 2015-10-19 11:56 - 2015-10-19 11:56 - 000129016 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\zlib1.dll 2015-10-19 11:57 - 2015-10-19 11:57 - 000223240 _____ () C:\Program Files (x86)\HTC\HTC Sync Manager\DevConnMon.dll 2011-03-09 14:21 - 2011-03-09 14:21 - 000619816 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll 2011-03-09 14:21 - 2011-03-09 14:21 - 000013096 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll 2018-08-26 18:52 - 2018-08-14 13:51 - 001112256 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_watchdog.dll 2018-08-26 18:52 - 2018-08-14 13:51 - 002247496 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_crashpad.dll 2018-08-26 18:52 - 2018-08-14 13:55 - 000023888 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:53 - 000025456 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000142496 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:53 - 001958760 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:53 - 000025960 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000118416 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes35.dll 2018-08-26 18:52 - 2018-08-14 13:51 - 000109208 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:53 - 000074952 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:53 - 000083784 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000418960 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom35.dll 2018-08-26 18:52 - 2018-08-14 13:51 - 000027800 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000049312 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000023704 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000131736 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000119456 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:55 - 000401608 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:56 - 000033128 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32.compiled._winffi_kernel32.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000026784 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000182936 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000027800 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000028824 _____ () C:\Program Files (x86)\Dropbox\Client\win32job.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:52 - 000026312 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:56 - 000027856 _____ () C:\Program Files (x86)\Dropbox\Client\winshell.compiled._winshell.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000053920 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000065696 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:56 - 000028520 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:55 - 000068968 _____ () C:\Program Files (x86)\Dropbox\Client\winenumhandles.compiled._WinEnumHandles.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:52 - 000027488 _____ () C:\Program Files (x86)\Dropbox\Client\crashpad.compiled._Crashpad.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:56 - 000034000 _____ () C:\Program Files (x86)\Dropbox\Client\winreindex.compiled._winreindex.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:54 - 003822784 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:55 - 000090560 _____ () C:\Program Files (x86)\Dropbox\Client\sip.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:53 - 001779392 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:53 - 001927624 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000032920 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:54 - 000156880 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:53 - 000517576 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:54 - 000052424 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineCore.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:54 - 000042960 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:54 - 000131016 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:54 - 000218456 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:53 - 000206024 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000061592 _____ () C:\Program Files (x86)\Dropbox\Client\win32print.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:56 - 000051552 _____ () C:\Program Files (x86)\Dropbox\Client\winrpcserver.compiled._RPCServer.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000027808 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:56 - 000027864 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.user32.compiled._winffi_user32.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:55 - 000025960 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi.compiled._winffi_iphlpapi.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:56 - 000025824 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror.compiled._winffi_winerror.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:56 - 000026328 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet.compiled._winffi_wininet.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:53 - 000031976 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000494232 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:56 - 000029408 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:53 - 000027096 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:51 - 000036496 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll 2018-08-26 18:52 - 2018-08-14 13:55 - 000026336 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.advapi32.compiled._winffi_advapi32.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:53 - 000439744 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL 2018-08-26 18:52 - 2018-08-14 13:55 - 000036048 _____ () C:\Program Files (x86)\Dropbox\Client\wind3d11.compiled._wind3d11.cp35-win32.pyd 2018-08-26 18:52 - 2018-08-14 13:53 - 000026288 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.DLL 2018-08-26 18:52 - 2018-08-14 13:53 - 001592128 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxldtlfudivq`qsp`26hfm [0] AlternateDataStreams: C:\Users\Arne\Desktop\IMAG0262.jpg:com.dropbox.attributes [168] AlternateDataStreams: C:\Users\Arne\Desktop\IMAG0262.jpg:com.dropbox.attrs [58] ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\localhost -> localhost IE trusted site: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\webcompanion.com -> hxxp://webcompanion.com ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2016-08-31 21:24 - 000000857 _____ C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 gdpwmgrlocalhost ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Arne\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist deaktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Ryos Driver.lnk => C:\Windows\pss\Ryos Driver.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Arne^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^An OneNote senden.lnk => C:\Windows\pss\An OneNote senden.lnk.Startup MSCONFIG\startupfolder: C:^Users^Arne^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Produktregistrierung.lnk => C:\Windows\pss\Logitech . Produktregistrierung.lnk.Startup MSCONFIG\startupreg: AdobeAAMUpdater-1.0 => "C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" MSCONFIG\startupreg: AdobeCEPServiceManager => "C:\Program Files (x86)\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe" -launchedbylogin MSCONFIG\startupreg: Amazon Music => C:\Users\Arne\AppData\Local\Amazon Music\Amazon Music.exe MSCONFIG\startupreg: Amazon Music Helper => "C:\Users\Arne\AppData\Local\Amazon Music\Amazon Music Helper.exe" MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe MSCONFIG\startupreg: FreeAC => C:\Program Files (x86)\FreeAlarmClock\FreeAlarmClock.exe -autorun MSCONFIG\startupreg: LWS => D:\Programme\Logitech\LWS\Webcam Software\LWS.exe -hide MSCONFIG\startupreg: PDFPrint => "D:\Programme\PDF24\pdf24.exe" MSCONFIG\startupreg: Pokki => "%LOCALAPPDATA%\Pokki\Engine\HostAppServiceUpdater.exe" /LOGON MSCONFIG\startupreg: Raptr => "C:\Program Files (x86)\Raptr\raptrstub.exe" --startup MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{908F66E5-197B-4736-8696-58C31388E054}] => (Allow) D:\Programme\TeamViewer.exe FirewallRules: [{D4955E65-0CDA-42B1-96CC-7F4B4FB0D52A}] => (Allow) D:\Programme\TeamViewer.exe FirewallRules: [{CE170147-18E0-4732-92AC-80D7C7B335C8}] => (Allow) D:\Programme\TeamViewer_Service.exe FirewallRules: [{66548BCB-B530-4695-AC25-A7527E0AE0F4}] => (Allow) D:\Programme\TeamViewer_Service.exe FirewallRules: [{B0921C0D-067A-4F4C-AFAD-1FFD2863EC53}] => (Block) %USERPROFILE%\Desktop\Photoshop_CC_14_LS20\Set-up.exe FirewallRules: [{4114DC5F-6DFB-4EE1-983F-BAED15E626D2}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{CA8330F2-E4E6-4DAB-A9B0-1CCF80845CBA}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe FirewallRules: [{C63D1F31-6ABB-4ABF-BDF5-10AAE638EC26}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{8C242F2C-5951-48F2-A5A0-39FF270D6206}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe FirewallRules: [{B5B335BA-EF24-40E5-BD7D-04F24C5694BA}] => (Allow) D:\Programme\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{B8309741-6E57-4D7A-9EE5-CBBF796C6098}] => (Allow) D:\Programme\Steam\steamapps\common\Counter-Strike Source\hl2.exe FirewallRules: [{459A9FC6-D4D6-4943-B900-CE8FB303FADA}] => (Allow) D:\Programme\Ubisoft\FarCry 4\bin\FarCry4.exe FirewallRules: [{B9694D7C-A3CB-4EEA-B429-57D301B9F658}] => (Allow) D:\Programme\Ubisoft\FarCry 4\bin\FarCry4.exe FirewallRules: [{B1C46578-0DED-4AE3-86B6-A3455503F7B9}] => (Allow) D:\Programme\Ubisoft\FarCry 4\bin\IGE_WPF64.exe FirewallRules: [{B21E9D66-22EF-4F77-854B-90AC698DC9FD}] => (Allow) D:\Programme\Ubisoft\FarCry 4\bin\IGE_WPF64.exe FirewallRules: [{A7897C67-AC38-48B5-AE20-0D5C26285BAC}] => (Allow) C:\Users\Arne\AppData\Local\CrossBrowser\Application\crossbrowser.exe FirewallRules: [{FF29FB51-666E-4BFE-B5E3-78E9DFDE238C}] => (Allow) D:\Programme\Mozilla Firefox\firefox.exe FirewallRules: [{6A2FCED0-FEAD-45E8-9237-873BF8EBB12D}] => (Allow) D:\Programme\Mozilla Firefox\firefox.exe FirewallRules: [{8511CCED-F89A-4033-8341-9CFF4CDB94D3}] => (Allow) C:\Users\Arne\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{C1B3B105-96D6-4680-A56D-8214F44EE6FD}] => (Allow) D:\Programme\Steam\steamapps\common\Cities_Skylines\Cities.exe FirewallRules: [{2E6692BE-913B-4BC1-93F0-8B83B308699E}] => (Allow) D:\Programme\Steam\steamapps\common\Cities_Skylines\Cities.exe FirewallRules: [{7CA238ED-141D-4383-AF34-DD10C6BEFF81}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\Streaming Video Recorder.exe FirewallRules: [{0235E348-BF2E-46CF-861C-FC49D40554AD}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\Streaming Video Recorder.exe FirewallRules: [{30525028-AFEC-4E27-93F9-BC8C659A2FE7}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftSrv.dll FirewallRules: [{6244722E-EEB4-428E-BDE0-C8DC0ED59EB2}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftSrv.dll FirewallRules: [{230AF86C-71A1-49D2-90B6-1C0410F2BBFB}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDump.dll FirewallRules: [{AEA7B882-2646-402A-B26B-A82FAC857C3F}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDump.dll FirewallRules: [{CCEF1BCF-83AA-48CB-B90D-846ECF57B80F}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftAC.dll FirewallRules: [{CEBA1CD0-E1EB-4386-A986-27E1415013B5}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftAC.dll FirewallRules: [{C7E892E0-4928-4A77-ABA8-906B252F7D81}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftPlayer.dll FirewallRules: [{83CE3CE7-A507-4C30-BF45-0D125082184B}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftPlayer.dll FirewallRules: [{E5146C63-25F4-46DB-A503-8EED93A3EB69}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDownloaderHelp.dll FirewallRules: [{61DED80A-A751-4280-8098-28FAD18BBFCE}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftDownloaderHelp.dll FirewallRules: [{CE264433-65A8-42D5-ACC4-B67605939641}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftHDSDump.dll FirewallRules: [{76E1E210-1DE0-46CE-AD21-1D8087023A14}] => (Allow) C:\Program Files (x86)\Apowersoft\Streaming Video Recorder\ApowersoftHDSDump.dll FirewallRules: [{DAEB8E97-F207-4BA3-ADD1-F2728E096A4E}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\Video Download Capture.exe FirewallRules: [{D3BE3756-0F39-4586-AFDE-F109AEBB70E9}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\Video Download Capture.exe FirewallRules: [{45317251-B992-419B-8009-4C1D0EF9A902}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftSrv.dll FirewallRules: [{121A031F-BB8F-4E6B-AFBE-CBC1838DBCB7}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftSrv.dll FirewallRules: [{BB8967F8-E09F-4B74-8D01-C420090A164A}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDump.dll FirewallRules: [{DA5BBF6C-01B5-4B47-9A5A-445B72C5AA75}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDump.dll FirewallRules: [{CCB318A3-E281-44AC-A37E-C9E6BFCB783C}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftAC.dll FirewallRules: [{75B4FD42-B7DD-4D48-A1F2-620ACDB6AE7D}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftAC.dll FirewallRules: [{38BB9972-FEBF-4AEB-8257-25C386997E66}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftPlayer.dll FirewallRules: [{37B9D4C3-8EA1-489D-B6DA-EFD8D7CDBAF3}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftPlayer.dll FirewallRules: [{9FB033C3-6E7D-423D-BD39-005AFEDB5006}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDownloaderHelp.dll FirewallRules: [{7595E392-7078-40B0-B538-AD7C6E772015}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftDownloaderHelp.dll FirewallRules: [{D8432F21-FFB0-4DBE-AAA6-708376B30DA6}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftHDSDump.dll FirewallRules: [{DE135A77-9124-423E-B429-8C370E717FC0}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture\ApowersoftHDSDump.dll FirewallRules: [{C8FD899A-36A4-4BED-A5C0-0E2C0DA2E9B2}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{AAC9C7CC-3B69-4E08-BE8F-9A1F8B3D9DFA}] => (Allow) LPort=2869 FirewallRules: [{7A6845FD-ED46-48DC-881C-34BA86FE6889}] => (Allow) LPort=1900 FirewallRules: [{3FEED9CF-2945-460C-9A6B-E2F314914CED}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{31B17D9C-75D2-43BE-8A5A-C963DAC574A2}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{77981F32-E84A-4096-9689-D6A96D27506D}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{B326F220-801E-4FE2-B3D7-EC84F79EC584}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{D79E2559-66E1-4215-AB6B-2FB18ACF8E17}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE FirewallRules: [{8B622B45-FEE3-4CC1-B350-FA58D6EF9CB1}] => (Allow) D:\Programme\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{1B6E5204-E80A-40D8-8DEE-3D2D67C8BA59}] => (Allow) D:\Programme\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{AE22BED8-7895-436A-ABC4-2B0289C051CF}] => (Allow) D:\Programme\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{6DB980E5-29D5-40FC-863D-5539EB3EF975}] => (Allow) D:\Programme\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{FE55CD5D-06E1-4B10-8D32-6D9E39E32E17}] => (Allow) C:\Program Files (x86)\HTC\HTC Sync Manager\HTCSyncManager.exe FirewallRules: [{F1CB806B-66EC-41B5-9486-69617EC493FA}] => (Allow) D:\Programme\Microsoft Visual Studio 14.0\Common7\IDE\devenv.exe FirewallRules: [{B7FAB56A-1C89-450E-A3D7-DDCE315E12C9}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{B86EC9FA-BE98-42D6-8047-E4DF6E5A812A}] => (Allow) C:\Program Files (x86)\Raptr\raptr.exe FirewallRules: [{68D67A7D-28FD-4750-B04E-5571124D6019}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{38D50005-587D-4E59-ACEF-2FEDFDEF4DCC}] => (Allow) C:\Program Files (x86)\Raptr\raptr_im.exe FirewallRules: [{6C55A7D6-6B7B-4FB8-8F64-94726B068E68}] => (Allow) D:\Programme\Steam\steamapps\common\Just Cause 3\JustCause3.exe FirewallRules: [{1997B543-67EA-4BB6-8E2D-66B35F1B8A5D}] => (Allow) D:\Programme\Steam\steamapps\common\Just Cause 3\JustCause3.exe FirewallRules: [{8D70142E-A9F9-4B42-B364-A6977275D165}] => (Allow) C:\Program Files (x86)\HTC\HTC Sync Manager\HTCSyncManager.exe FirewallRules: [{D5D5001C-1CD5-400A-BD51-CA4DC1C12C8F}] => (Allow) C:\Program Files (x86)\Nero\Nero 2016\Nero Burning ROM\StartNBR.exe FirewallRules: [{351534E8-CFAC-498D-B07E-D8434638C01A}] => (Allow) C:\Program Files (x86)\Nero\Nero 2016\Nero Burning ROM\nero.exe FirewallRules: [{5DBD57E9-9C82-449C-9E62-EA5B46BE71EE}] => (Allow) C:\Users\Arne\AppData\Local\Temp\andy-x64\Setup.exe FirewallRules: [{6134B563-DE46-4DAB-9C2D-9E9E84C839A9}] => (Allow) C:\Users\Arne\AppData\Local\Temp\andy-x64\Setup.exe FirewallRules: [{D5D0E5E6-85E1-456F-BAEB-F6E173BB275A}] => (Allow) C:\Program Files\Andy\andy.exe FirewallRules: [{8615EF84-7CB9-4EA7-8D8C-D0FA13D996CD}] => (Allow) C:\Program Files\Andy\andy.exe FirewallRules: [{BC6F8A44-D93E-4DF4-BBE9-2A532067FD7F}] => (Allow) C:\Program Files\Andy\AndyConsole.exe FirewallRules: [{C50C261F-7B1F-4622-BFF2-D0F942465C2C}] => (Allow) C:\Program Files\Andy\AndyConsole.exe FirewallRules: [{C652FF10-B90B-4743-9DAE-D31738E4FEDB}] => (Allow) C:\Program Files\Andy\HandyAndy.exe FirewallRules: [{BDD5AC9E-5E1D-42A5-B001-FB33F23B88AF}] => (Allow) C:\Program Files\Andy\HandyAndy.exe FirewallRules: [{AD26EF26-D13B-4C5F-9CB6-B5805DD08A70}] => (Allow) C:\Program Files\Andy\SetupFiles\Uninstall.exe FirewallRules: [{48105846-B94E-40EB-9C72-AA2F3C3E5402}] => (Allow) C:\Program Files\Andy\SetupFiles\Uninstall.exe FirewallRules: [{3381EC70-49D7-4483-B0EF-7C8FFD93CC25}] => (Allow) C:\Users\Arne\AppData\Local\Temp\RemoveTemp.exe FirewallRules: [{858A5F4F-7552-4073-947C-7C3869E7E171}] => (Allow) C:\Users\Arne\AppData\Local\Temp\RemoveTemp.exe FirewallRules: [{0A633EC1-5CC8-4B19-88A6-180935E4C24F}] => (Allow) C:\Program Files\Andy\SetupFiles\VMwareCheck.exe FirewallRules: [{3275E549-A445-43C4-9C15-DB9FEE6164E0}] => (Allow) C:\Program Files\Andy\SetupFiles\VMwareCheck.exe FirewallRules: [{D2717BAA-8DD1-4A3A-993B-FB941CAE62D3}] => (Allow) C:\Program Files\Andy\SetupFiles\AndyDoctor.exe FirewallRules: [{B28F8E58-6565-41C8-A2AA-089F690DD893}] => (Allow) C:\Program Files\Andy\SetupFiles\AndyDoctor.exe FirewallRules: [{BEA0DFBB-6045-4A59-BCBD-E201B3BF0C9B}] => (Allow) C:\Program Files\MAGIX\Video deluxe 2016 Premium\Videodeluxe.exe FirewallRules: [{19003A64-51ED-442D-BAC0-7C36FE0F1444}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{25E0CAF2-B867-46F8-B759-973124F4317D}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe FirewallRules: [{6E0EE714-C1CB-42E4-86FB-6F56D28694BB}] => (Allow) D:\Programme\Ubisoft\Far Cry 4\bin\FarCry4.exe FirewallRules: [{9C9E2E6F-571F-4C7D-99E6-C6234245565E}] => (Allow) D:\Programme\Ubisoft\Far Cry 4\bin\FarCry4.exe FirewallRules: [{FE31ECDD-1C00-4F8B-8D1F-97AEC4540418}] => (Allow) D:\Programme\Ubisoft\Far Cry 4\bin\IGE_WPF64.exe FirewallRules: [{22C5D7F6-251E-49C4-997F-CAB90ED07691}] => (Allow) D:\Programme\Ubisoft\Far Cry 4\bin\IGE_WPF64.exe FirewallRules: [{84A7C15B-BE27-40C1-A9AE-765ED5D77861}] => (Allow) D:\Programme\Ubisoft\Far Cry 5\bin\FarCry5.exe FirewallRules: [{2356580B-9719-47CB-8FB2-920175B81F64}] => (Allow) D:\Programme\Ubisoft\Far Cry 5\bin\ArcadeEditor64.exe FirewallRules: [{E463DEC7-D086-4341-93B2-1D20FFED7ECF}] => (Allow) D:\Programme\Ubisoft\Far Cry 5\bin\FarCry5.exe FirewallRules: [{378F7A9A-96C6-4301-BBDA-1FB79E0DE0A2}] => (Allow) D:\Programme\Ubisoft\Far Cry 5\bin\ArcadeEditor64.exe FirewallRules: [{11B1A81E-B949-4205-9DB4-4C0DB8015B42}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe FirewallRules: [{9A541598-9D84-4DFD-9930-B06B87C5BAB3}] => (Allow) C:\Program Files (x86)\BlueStacks\HD-Player.exe FirewallRules: [{EBCE83E5-A00E-46A5-B40B-FFA6A8CBFDA3}] => (Allow) D:\Programme\Steam\steamapps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox_BE.exe FirewallRules: [{FE6B2802-DD67-4334-9BC0-B9510A98D766}] => (Allow) D:\Programme\Steam\steamapps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox_BE.exe FirewallRules: [{496DDE54-311A-42BD-9BC3-C80356F48764}] => (Allow) D:\Programme\Steam\steamapps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox.exe FirewallRules: [{BF3C6908-0A26-4937-A667-5ACBD1F7E473}] => (Allow) D:\Programme\Steam\steamapps\common\Conan Exiles\ConanSandbox\Binaries\Win64\ConanSandbox.exe FirewallRules: [{E0412ABD-0BB8-41F6-9FCA-6BE94E7B8DEA}] => (Allow) D:\Programme\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{DE5E233F-FA53-4CFC-BAE7-2573CF4B60BB}] => (Allow) D:\Programme\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe FirewallRules: [{AD969456-7761-4F89-9134-B32D3673860A}] => (Allow) D:\Programme\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{59D2E408-ABC2-480C-8F92-8561C0B582A5}] => (Allow) D:\Programme\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe FirewallRules: [{0DF56775-A568-46AE-92AC-CD1FA5254770}] => (Allow) C:\Program Files\Opera\54.0.2952.64\opera.exe FirewallRules: [{1DAA2CCC-C278-4CB8-90E2-8D59757D4508}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture 6\Video Download Capture 6.exe FirewallRules: [{EFAA50AB-09D8-4CF9-85E8-5764293B404A}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture 6\Video Download Capture 6.exe FirewallRules: [{5E636CEC-F35D-4387-97F6-1AA8E611A39D}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture 6\rtmpsrv.exe FirewallRules: [{7AA4F91C-A54D-4DFC-810C-82FF6BF88ED3}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture 6\rtmpsrv.exe FirewallRules: [{CF23DAE7-4AB5-4866-815B-546C9ABC8D1A}] => (Allow) C:\Program Files\Opera\54.0.2952.71\opera.exe FirewallRules: [{8673D71A-A56E-46CE-AE30-F3CE8862C26A}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe FirewallRules: [{7F8FE7DB-AAE0-447A-BAF0-6F8CF40AC6FA}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe FirewallRules: [{29D1A8E6-115E-4004-B3B3-AF8931B85994}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe FirewallRules: [{21F2569D-4D32-48AE-AAC1-7E4980D9E293}] => (Allow) C:\Program Files (x86)\Maxthon5\Bin\Maxthon.exe FirewallRules: [{9A2077B0-2E41-4AD4-B8D0-3C4E34A6ABD6}] => (Allow) C:\Program Files (x86)\Maxthon5\Bin\Maxthon.exe FirewallRules: [{6ED1E5FA-1E9D-4FE1-A550-42FCB4D769C9}] => (Allow) D:\Programme\TeamViewer.exe FirewallRules: [{552BBB9C-A773-4126-8152-34EFC9DE6FD4}] => (Allow) D:\Programme\TeamViewer.exe FirewallRules: [{59E9179A-2CB9-4A49-9DE7-79D24128297B}] => (Allow) D:\Programme\TeamViewer_Service.exe FirewallRules: [{738DFC0C-6535-4C6D-9394-D9CCF1E6FC14}] => (Allow) D:\Programme\TeamViewer_Service.exe ==================== Wiederherstellungspunkte ========================= ==================== Fehlerhafte Geräte im Gerätemanager ============= Name: BlueStacks Hypervisor Description: BlueStacks Hypervisor Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: BstHdDrv Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: SM-Bus-Controller Description: SM-Bus-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: USB (Universal Serial Bus)-Controller Description: USB (Universal Serial Bus)-Controller Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (08/28/2018 10:05:52 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm googleearth.exe, Version 7.3.2.5491 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1e8c Startzeit: 01d43f0a6d06e87b Endzeit: 7 Anwendungspfad: C:\Program Files\Google\Google Earth Pro\client\googleearth.exe Berichts-ID: be00700e-aafd-11e8-be2c-74d435bbfd7d Error: (08/28/2018 09:12:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: ts3client_win64.exe, Version: 3.1.9.0, Zeitstempel: 0x5aec75e5 Name des fehlerhaften Moduls: ucrtbase.DLL, Version: 10.0.10586.788, Zeitstempel: 0x5879ab76 Ausnahmecode: 0x40000015 Fehleroffset: 0x000000000006990f ID des fehlerhaften Prozesses: 0x564 Startzeit der fehlerhaften Anwendung: 0x01d43f02fbbfdcff Pfad der fehlerhaften Anwendung: D:\Programme\TeamSpeak 3 Client\ts3client_win64.exe Pfad des fehlerhaften Moduls: C:\Windows\system32\ucrtbase.DLL Berichtskennung: 45b554a4-aaf6-11e8-b015-74d435bbfd7d Error: (08/28/2018 09:11:49 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: Skype.exe, Version: 8.22.0.2, Zeitstempel: 0x5adf922c Name des fehlerhaften Moduls: Skype.exe, Version: 8.22.0.2, Zeitstempel: 0x5adf922c Ausnahmecode: 0xc0000005 Fehleroffset: 0x00e11b67 ID des fehlerhaften Prozesses: 0x2304 Startzeit der fehlerhaften Anwendung: 0x01d43efd6b6de490 Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe Pfad des fehlerhaften Moduls: C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe Berichtskennung: 3636bbf0-aaf6-11e8-b015-74d435bbfd7d Error: (08/28/2018 08:37:19 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "c:\program files (x86)\microsoft office\root\office16\odbc drivers\salesforce\lib\libcurl32.dlla\libcurl.dll". Die abhängige Assemblierung "OpenSSL.DllA,processorArchitecture="*",type="win32",version="1.0.0.4"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (08/26/2018 05:36:58 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "c:\program files (x86)\microsoft office\root\office16\odbc drivers\salesforce\lib\libcurl32.dlla\libcurl.dll". Die abhängige Assemblierung "OpenSSL.DllA,processorArchitecture="*",type="win32",version="1.0.0.4"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (08/24/2018 02:43:53 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "c:\program files (x86)\microsoft office\root\office16\odbc drivers\salesforce\lib\libcurl32.dlla\libcurl.dll". Die abhängige Assemblierung "OpenSSL.DllA,processorArchitecture="*",type="win32",version="1.0.0.4"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (08/23/2018 08:46:19 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "c:\program files (x86)\microsoft office\root\office16\odbc drivers\salesforce\lib\libcurl32.dlla\libcurl.dll". Die abhängige Assemblierung "OpenSSL.DllA,processorArchitecture="*",type="win32",version="1.0.0.4"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (08/22/2018 07:56:32 PM) (Source: chip 1-click download service) (EventID: 0) (User: ) Description: |ERORRS=;(360) error at GetNetworkTime:Der angegebene Host ist unbekannt ;(380) error at getOrdersForVersion:Der Remotename konnte nicht aufgelöst werden: 'service.chip-secured-download.de' ;(180) error at GetHttpWebRequest: 1Der Remotename konnte nicht aufgelöst werden: 'api.chip-secured-download.de' ;(480) Could not load new Downlaoder Systemfehler: ============= Error: (08/28/2018 09:28:44 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: vmkbd3 Error: (08/28/2018 09:28:37 PM) (Source: Service Control Manager) (EventID: 7016) (User: ) Description: Der Dienst "chip 1-click download service" hat einen ungültigen aktuellen Status gemeldet: 0 Error: (08/28/2018 09:28:37 PM) (Source: Service Control Manager) (EventID: 7016) (User: ) Description: Der Dienst "chip 1-click download service" hat einen ungültigen aktuellen Status gemeldet: 0 Error: (08/28/2018 09:28:37 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "BlueStacks Hypervisor" wurde aufgrund folgenden Fehlers nicht gestartet: Das System kann die angegebene Datei nicht finden. Error: (08/28/2018 09:27:54 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "G DATA Personal Firewall" ist vom Dienst "G DATA Dateisystem Wächter" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: Der Dienst wurde nicht gestartet. Error: (08/28/2018 09:27:54 PM) (Source: DCOM) (EventID: 10005) (User: ) Description: Bei DCOM ist der Fehler "1068" aufgetreten, als der Dienst "GDFwSvc" mit den Argumenten "-Service" gestartet wurde, um den folgenden Server zu verwenden: {1DED95CA-C567-464A-B405-087EDDF0B095} Error: (08/28/2018 08:30:32 PM) (Source: volsnap) (EventID: 36) (User: ) Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte. Error: (08/28/2018 08:28:23 PM) (Source: Service Control Manager) (EventID: 7026) (User: ) Description: Das Laden folgender Boot- oder Systemstarttreiber ist fehlgeschlagen: vmkbd3 Windows Defender: =================================== Date: 2017-10-16 19:55:36.426 Description: Die Windows Defender-Überprüfung wurde vor Fertigstellung beendet. Überprüfungs-ID:{3D4AA422-F4B6-4E26-B806-1FF4ECDE6D8B} Überprüfungstyp:AntiSpyware Überprüfungsparameter:Schnellscan Benutzer:NT-AUTORITÄT\NETZWERKDIENST Date: 2018-07-05 09:20:14.657 Description: Beim Aktualisieren der Signaturen wurde von Windows Defender ein Fehler festgestellt. Neue Signaturversion:1.271.442.0 Vorherige Signaturversion:1.265.948.0 Aktualisierungsquelle:Benutzer Signaturtyp:AntiSpyware Aktualisierungstyp:Delta Benutzer:NT-AUTORITÄT\SYSTEM Aktuelle Modulversion:1.1.15000.2 Vorherige Modulversion:1.1.14700.5 Fehlercode:0x80070666 Fehlerbeschreibung:Eine andere Version des Produkts ist bereits installiert. Die Installation dieser Version kann nicht fortgesetzt werden. Verwenden Sie die Systemsteuerungsoption "Software", um die vorhandene Version dieses Produkts zu konfigurieren oder zu entfernen. Date: 2018-07-05 09:20:14.657 Description: Beim Aktualisieren des Moduls wurde von Windows Defender ein Fehler festgestellt. Neue Modulversion:1.1.15000.2 Vorherige Modulversion:1.1.14700.5 Aktualisierungsquelle:Benutzer Benutzer:NT-AUTORITÄT\SYSTEM Fehlercode:0x80070666 Fehlerbeschreibung:Eine andere Version des Produkts ist bereits installiert. Die Installation dieser Version kann nicht fortgesetzt werden. Verwenden Sie die Systemsteuerungsoption "Software", um die vorhandene Version dieses Produkts zu konfigurieren oder zu entfernen. Date: 2017-10-07 03:14:40.850 Description: Beim Aktualisieren der Signaturen wurde von Windows Defender ein Fehler festgestellt. Neue Signaturversion:1.253.360.0 Vorherige Signaturversion:1.253.176.0 Aktualisierungsquelle:Benutzer Signaturtyp:AntiSpyware Aktualisierungstyp:Delta Benutzer:NT-AUTORITÄT\SYSTEM Aktuelle Modulversion:1.1.14202.0 Vorherige Modulversion:1.1.14202.0 Fehlercode:0x80096010 Fehlerbeschreibung:Die digitale Signatur des Objekts konnte nicht bestätigt werden. Date: 2017-02-28 10:07:57.682 Description: Beim Aktualisieren der Signaturen wurde von Windows Defender ein Fehler festgestellt. Neue Signaturversion:1.237.316.0 Vorherige Signaturversion:1.237.98.0 Aktualisierungsquelle:Benutzer Signaturtyp:AntiSpyware Aktualisierungstyp:Delta Benutzer:NT-AUTORITÄT\SYSTEM Aktuelle Modulversion:1.1.13504.0 Vorherige Modulversion:1.1.13504.0 Fehlercode:0x8050a005 Fehlerbeschreibung:Das Programm kann keine Definitionsdateien finden, die dazu dienen, unerwünschte Software zu erkennen. Überprüfen Sie, ob aktualisierte Definitionsdateien vorhanden sind, und versuchen Sie es dann erneut. Weitere Informationen zum Installieren von Updates finden Sie unter "Hilfe und Support". ==================== Speicherinformationen =========================== Prozessor: Intel(R) Xeon(R) CPU E3-1240 v3 @ 3.40GHz Prozentuale Nutzung des RAM: 24% Installierter physikalischer RAM: 16334.85 MB Verfügbarer physikalischer RAM: 12258.7 MB Summe virtueller Speicher: 32667.89 MB Verfügbarer virtueller Speicher: 27549.47 MB ==================== Laufwerke ================================ Drive c: () (Fixed) (Total:238.37 GB) (Free:21.59 GB) NTFS Drive d: (Lokaler Datenträger) (Fixed) (Total:931.51 GB) (Free:360.75 GB) NTFS Drive e: (Lokaler Datenträger) (Fixed) (Total:1863.01 GB) (Free:1054.02 GB) NTFS \\?\Volume{0d7ce6c3-834c-11e4-9e2e-806e6f6e6963}\ (System-reserviert) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: C4048F14) Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 31499D7D) Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows 7/8/10) (Size: 238.5 GB) (Disk ID: 407331A8) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=238.4 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
28.08.2018, 22:48 | #3 | |||
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet)Zitat:
Zitat:
Zitat:
Ist da sein gewerblich genutztes System?
__________________ |
29.08.2018, 12:29 | #4 | ||||
| Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet)Zitat:
Zitat:
Nein, es ist ein privates System, welches im Harware Bereich durch einen Systemadministrator eines norddeutschen Automobilkonzerns zusammen gestellt wurde. |
29.08.2018, 12:47 | #5 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet) Bitte richtig lesen. Wenn ich schreibe, dass die Dinger die Analysen hier stören muss man nicht wirklich fragen was JETZT als Alternative installiert werden soll wo die Analyse noch nichtmal richtig angefangen hat. Außerdem sollst du auch nicht einfach so weitersurfen, sondern erst dann wenn wir - wenn nötig - die Kiste bereinigt haben! Also GDATA bitte deinstallieren. Und am besten auch weiteren alten oder unnötigen Krempel, du hast da teilweise extrem altes Zeugs drauf. Ich empfehle auch Flash Player und zB Nero und das alte Java-Geraffel zu entsorgen. Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
__________________ Logfiles bitte immer in CODE-Tags posten |
29.08.2018, 15:56 | #6 |
| Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet) Mahlzeit, nun habe ich mal aufgelistete Programme entfernt. Ebenfalls einige für mich nicht mehr relevante Programm gleich mit deinstalliert. Habe dazu einen neuen Logfile erstellt. Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 23.08.2018 durchgeführt von Arne (Administrator) auf PEAL1993 (29-08-2018 16:54:20) Gestartet von C:\Users\Arne\Desktop Geladene Profile: Arne (Verfügbare Profile: Arne) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (AMD) C:\Windows\System32\atiesrxx.exe (Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (AMD) C:\Windows\System32\atieclxx.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe (Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE (Nero AG) C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe () C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe (Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cnext.exe (© 2015 Microsoft Corporation) C:\Users\Arne\AppData\Local\Microsoft\BingSvc\BingSvc.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.4.3.227\WsAppService.exe (cyberlink) C:\Program Files (x86)\CyberLink\Shared files\brs.exe (CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Wondershare) D:\Program Files (x86)\Wondershare\Dr.Fone for Android\Library\DriverInstaller\DriverInstall.exe () C:\Program Files (x86)\HTC\HTC Sync Manager\HTC Sync\adb.exe (Microsoft Corporation) C:\Windows\splwow64.exe (CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508240 2015-08-05] (Adobe Systems Incorporated) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\cnext.exe [4859592 2015-11-18] (Advanced Micro Devices, Inc.) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [316392 2018-05-11] (Adobe Systems, Incorporated) HKLM-x32\...\Run: [CLMLServer] => C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [107816 2011-03-09] (CyberLink) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-03-08] (CyberLink Corp.) HKLM-x32\...\Run: [BDRegion] => C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [179976 2013-09-02] (cyberlink) HKLM-x32\...\Run: [LGODDFU] => C:\Program Files (x86)\lg_fwupdate\lgfw.exe [27760 2012-07-12] (Bitleader) HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1075296 2013-04-25] (Adobe Systems Incorporated) HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [270912 2015-06-17] (CANON INC.) HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1314432 2016-06-09] (CANON INC.) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [3749184 2018-08-14] (Dropbox, Inc.) HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [433800 2018-08-16] (Geek Software GmbH) HKU\S-1-5-19\...\Winlogon: [Shell] C:\Windows\explorer.exe [3229696 2016-08-29] (Microsoft Corporation) <==== ACHTUNG HKU\S-1-5-20\...\Winlogon: [Shell] C:\Windows\explorer.exe [3229696 2016-08-29] (Microsoft Corporation) <==== ACHTUNG HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Run: [BingSvc] => C:\Users\Arne\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-12-17] (© 2015 Microsoft Corporation) HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Run: [VideoDownloaderUltimate] => C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe [2467656 2016-02-08] (Link64 GmbH) HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Run: [Google Update] => C:\Users\Arne\AppData\Local\Google\Update\1.3.33.17\GoogleUpdateCore.exe [601680 2018-05-19] (Google Inc.) HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\...\Winlogon: [Shell] C:\Windows\explorer.exe [3229696 2016-08-29] (Microsoft Corporation) <==== ACHTUNG HKU\S-1-5-18\...\RunOnce: [SPReview] => "C:\Windows\System32\SPReview\SPReview.exe" /sp:1 /errorfwlink:"hxxp://go.microsoft.com/fwlink/?LinkID=122915" /build:7601 HKU\S-1-5-18\...\Winlogon: [Shell] C:\Windows\explorer.exe [3229696 2016-08-29] (Microsoft Corporation) <==== ACHTUNG CHR HKLM\SOFTWARE\Policies\Google: Beschränkung <==== ACHTUNG CHR HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\SOFTWARE\Policies\Google: Beschränkung <==== ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) ProxyEnable: [S-1-5-21-2068704244-1425643408-3996308100-1000] => Proxy ist aktiviert. ProxyServer: [S-1-5-21-2068704244-1425643408-3996308100-1000] => http=127.0.0.1:8888;https=127.0.0.1:8888 Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{52078FD8-0874-4704-A444-F97C3A56F6BC}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{5EF87EF5-2FDB-4460-AEE0-490E678E3A6C}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{723BFB67-7F3C-42BF-AE1A-8E84E4B51C4F}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{B7FC4786-DABF-4623-838D-53B150B181F9}: [DhcpNameServer] 192.168.42.129 ManualProxies: 1http=127.0.0.1:8888;https=127.0.0.1:8888 Internet Explorer: ================== HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000 -> DefaultScope {DC9D9C20-7FCA-4DD9-B2F0-D7A0A883ACE1} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 SearchScopes: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?pc=COSP&ptag=D060916-A6B219395BABB4E59ADF&form=CONBDF&conlogo=CT3332005&q={searchTerms} SearchScopes: HKU\S-1-5-21-2068704244-1425643408-3996308100-1000 -> {DC9D9C20-7FCA-4DD9-B2F0-D7A0A883ACE1} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1 BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-08-19] (Microsoft Corporation) BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (CANON INC.) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\URLREDIR.DLL [2018-08-02] (Microsoft Corporation) BHO: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll [2015-11-27] (DVDVideoSoft Ltd.) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (CANON INC.) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\URLREDIR.DLL [2018-08-02] (Microsoft Corporation) BHO-x32: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll [2015-11-27] (DVDVideoSoft Ltd.) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (CANON INC.) DPF: HKLM {B479199A-1242-4E3C-AD81-7F0DF801B4AE} hxxp://download.microsoft.com/download/C/9/C/C9C3D86D-84AC-4AF0-8584-842756A66467/MicrosoftDownloadManager.cab Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-08-19] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-08-19] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-08-19] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-08-19] (Microsoft Corporation) FireFox: ======== FF DefaultProfile: uz8bupwy.default FF ProfilePath: C:\Users\Arne\AppData\Roaming\Mozilla\Firefox\Profiles\uz8bupwy.default [2018-08-29] FF Homepage: Mozilla\Firefox\Profiles\uz8bupwy.default -> hxxp://www.google.de/ FF NewTab: Mozilla\Firefox\Profiles\uz8bupwy.default -> hxxp://www.bing.com/?pc=COSP&ptag=D060916-A6B219395BABB4E59ADF&form=CONMHP&conlogo=CT3332005 FF NetworkProxy: Mozilla\Firefox\Profiles\uz8bupwy.default -> type", 0 FF Extension: (AdBlock) - C:\Users\Arne\AppData\Roaming\Mozilla\Firefox\Profiles\uz8bupwy.default\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2018-07-29] FF Extension: (Instagram Video Download) - C:\Users\Arne\AppData\Roaming\Mozilla\Firefox\Profiles\uz8bupwy.default\Extensions\lumerias-instagram@lumerias.com.xpi [2017-07-11] FF Extension: (Print Edit WE) - C:\Users\Arne\AppData\Roaming\Mozilla\Firefox\Profiles\uz8bupwy.default\Extensions\printedit-we@DW-dev.xpi [2018-01-14] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_30_0_0_154.dll [Keine Datei] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-08-06] (Adobe Systems) FF Plugin: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [2013-12-02] (Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_30_0_0_154.dll [Keine Datei] FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2015-10-29] (CANON INC.) FF Plugin-x32: @Microsoft.com/DownloadManager,version=1.1 -> C:\Windows\ [] () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-05-13] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-08-06] (Adobe Systems) FF Plugin-x32: adobe.com/AdobeExManDetect -> C:\Program Files (x86)\Adobe\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [2013-12-02] (Adobe Systems) FF Plugin HKU\S-1-5-21-2068704244-1425643408-3996308100-1000: @talk.google.com/GoogleTalkPlugin -> C:\Users\Arne\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google) FF Plugin HKU\S-1-5-21-2068704244-1425643408-3996308100-1000: @talk.google.com/O1DPlugin -> C:\Users\Arne\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google) FF Plugin HKU\S-1-5-21-2068704244-1425643408-3996308100-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Arne\AppData\Local\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.) FF Plugin HKU\S-1-5-21-2068704244-1425643408-3996308100-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Arne\AppData\Local\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.) FF Plugin ProgramFiles/Appdata: C:\Users\Arne\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Arne\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-12-08] (Google) Chrome: ======= CHR HKU\S-1-5-21-2068704244-1425643408-3996308100-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2321384 2018-05-11] (Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2128872 2018-05-11] (Adobe Systems, Incorporated) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6893704 2018-06-21] () R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8853984 2018-08-09] (Microsoft Corporation) S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [243464 2013-09-02] (CyberLink) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-08-26] (Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-08-26] (Dropbox, Inc.) R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [51024 2018-08-14] (Dropbox, Inc.) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [388968 2016-01-19] (Digital Wave Ltd.) [Datei ist nicht signiert] S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [774272 2018-03-29] (EasyAntiCheat Ltd) R2 HTCMonitorService; C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe [87368 2014-06-27] (Nero AG) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [389696 2017-07-10] () R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [166912 2013-10-17] () [Datei ist nicht signiert] S2 PDF24; D:\Programme\PDF24\pdf24.exe [217736 2017-06-08] (Geek Software GmbH) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Datei ist nicht signiert] R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.227\WsAppService.exe [492768 2017-06-21] (Wondershare) R2 WsDrvInst; D:\Program Files (x86)\Wondershare\Dr.Fone for Android\Library\DriverInstaller\DriverInstall.exe [118048 2017-06-22] (Wondershare) S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [X] S3 Origin Client Service; "D:\Programme\Origin\OriginClientService.exe" [X] S3 VSStandardCollectorService140; "D:\Programme\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe" [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 Apowersoft_AudioDevice; C:\Windows\System32\drivers\Apowersoft_AudioDevice.sys [31920 2014-04-09] (Wondershare) S3 BstkDrv; C:\Program Files (x86)\BlueStacks\BstkDrv.sys [269408 2018-05-23] (Bluestack System Inc. ) S3 EasyAntiCheatSys; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.sys [836288 2018-06-01] (EasyAntiCheat Oy) R3 gddcd; C:\Windows\System32\drivers\gddcd64.sys [89160 2016-08-31] (G DATA Software AG) R1 gddcv; C:\Windows\System32\drivers\gddcv64.sys [69192 2016-08-31] (G DATA Software AG) R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [129312 2014-09-30] (Intel Corporation) R2 npf; C:\Windows\system32\drivers\npf.sys [36600 2017-09-10] (Riverbed Technology, Inc.) S1 vmkbd3; C:\Windows\System32\DRIVERS\vmkbd.sys [52288 2016-11-11] (VMware, Inc.) R3 voxaldriver; C:\Windows\System32\DRIVERS\voxaldriverx64.sys [34512 2016-03-04] () S2 BstHdDrv; \??\C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) Error(1) reading file: "C:\Users\Arne\Downloads\Die Drei " 2018-08-29 16:54 - 2018-08-29 16:54 - 000020527 _____ C:\Users\Arne\Desktop\FRST.txt 2018-08-29 16:52 - 2018-08-29 16:52 - 000000000 ____D C:\Users\Arne\Desktop\FRST_1 2018-08-29 16:47 - 2018-08-29 16:47 - 022096696 _____ (Geek Software GmbH ) C:\Users\Arne\Downloads\pdf24-creator-8.6.0.exe 2018-08-29 16:47 - 2018-08-29 16:47 - 000001088 _____ C:\Users\Public\Desktop\PDF24.lnk 2018-08-29 16:47 - 2018-08-29 16:47 - 000000000 ____D C:\Program Files (x86)\PDF24 2018-08-29 16:38 - 2018-08-29 16:39 - 000000000 ____D C:\Users\Arne\Desktop\Mozilla Firefox Bookmarks 2018-08-29 16:36 - 2018-08-29 16:36 - 000000936 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2018-08-29 16:36 - 2018-08-29 16:36 - 000000000 ____D C:\Program Files\Mozilla Firefox 2018-08-29 16:35 - 2018-08-29 16:35 - 039287200 _____ (Mozilla) C:\Users\Arne\Downloads\Firefox Setup 61.0.2.exe 2018-08-29 15:34 - 2018-08-29 15:34 - 000001959 _____ C:\Users\Arne\Desktop\Hex-Editor MX.lnk 2018-08-29 14:43 - 2018-08-29 14:43 - 000001034 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk 2018-08-29 14:43 - 2018-08-29 14:43 - 000000000 ____D C:\Users\Arne\Desktop\REVO 2018-08-29 14:43 - 2018-08-29 14:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2018-08-29 14:43 - 2018-08-29 14:43 - 000000000 ____D C:\Program Files\VS Revo Group 2018-08-28 22:52 - 2018-08-29 16:54 - 000000000 ____D C:\FRST 2018-08-28 22:51 - 2018-08-28 22:51 - 002413056 _____ (Farbar) C:\Users\Arne\Desktop\FRST64.exe 2018-08-28 20:41 - 2018-08-28 20:41 - 000000000 ____D C:\ProgramData\cache 2018-08-26 18:52 - 2018-08-29 16:51 - 000001206 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job 2018-08-26 18:52 - 2018-08-29 16:03 - 000001210 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job 2018-08-26 18:52 - 2018-08-26 18:58 - 000004206 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineUA 2018-08-26 18:52 - 2018-08-26 18:58 - 000003954 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskMachineCore 2018-08-26 18:52 - 2018-08-26 18:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2018-08-26 18:52 - 2018-08-26 18:52 - 000000000 ____D C:\Program Files (x86)\Dropbox 2018-08-21 08:42 - 2018-08-21 08:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2018-08-21 08:42 - 2018-08-21 08:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2018-08-14 13:51 - 2018-08-14 13:51 - 000051024 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe 2018-08-14 13:51 - 2018-08-14 13:51 - 000050232 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys 2018-08-14 13:51 - 2018-08-14 13:51 - 000050232 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys 2018-08-14 13:51 - 2018-08-14 13:51 - 000045640 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys 2018-08-06 20:49 - 2018-08-06 20:49 - 000000000 ____D C:\Users\Arne\.cache 2018-08-06 20:48 - 2018-08-06 20:48 - 000000000 ____D C:\Users\Arne\Documents\Apowersoft 2018-08-06 20:48 - 2017-09-10 15:54 - 000370424 _____ (Riverbed Technology, Inc.) C:\Windows\system32\wpcap.dll 2018-08-06 20:48 - 2017-09-10 15:54 - 000282360 _____ (Riverbed Technology, Inc.) C:\Windows\SysWOW64\wpcap.dll 2018-08-06 20:48 - 2017-09-10 15:54 - 000107768 _____ (Riverbed Technology, Inc.) C:\Windows\system32\Packet.dll 2018-08-06 20:48 - 2017-09-10 15:54 - 000098040 _____ (Riverbed Technology, Inc.) C:\Windows\SysWOW64\Packet.dll 2018-08-06 20:48 - 2017-09-10 15:54 - 000053299 _____ C:\Windows\SysWOW64\pthreadVC.dll 2018-08-06 20:48 - 2017-09-10 15:54 - 000036600 _____ (Riverbed Technology, Inc.) C:\Windows\system32\Drivers\npf.sys 2018-08-03 18:54 - 2018-08-03 18:54 - 000002176 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk 2018-08-03 18:54 - 2018-08-03 18:54 - 000002164 _____ C:\Users\Public\Desktop\Google Earth Pro.lnk 2018-08-03 18:54 - 2018-08-03 18:54 - 000000000 ____D C:\Program Files\Google ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2018-08-29 16:52 - 2016-11-22 12:28 - 000000000 ____D C:\Users\Arne\AppData\LocalLow\Mozilla 2018-08-29 16:51 - 2015-11-19 17:40 - 000000000 ____D C:\Users\Arne\AppData\Local\HTC MediaHub 2018-08-29 16:51 - 2014-12-14 20:26 - 000152576 _____ C:\Users\Arne\AppData\Local\GDIPFONTCACHEV1.DAT 2018-08-29 16:51 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2018-08-29 16:51 - 2009-07-14 06:45 - 005311120 _____ C:\Windows\system32\FNTCACHE.DAT 2018-08-29 16:51 - 2009-07-14 06:45 - 000015120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2018-08-29 16:51 - 2009-07-14 06:45 - 000015120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2018-08-29 16:50 - 2018-05-13 20:17 - 000000000 ____D C:\Users\Arne\AppData\Roaming\G Data 2018-08-29 16:50 - 2015-04-30 18:52 - 000000000 ____D C:\#GDATA.Recovery.Data# 2018-08-29 16:50 - 2014-12-14 00:44 - 000000000 ____D C:\ProgramData\G Data 2018-08-29 16:50 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\Setup 2018-08-29 16:50 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\oobe 2018-08-29 16:50 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\MUI 2018-08-29 16:50 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\SysWOW64\com 2018-08-29 16:48 - 2009-07-14 19:58 - 000699092 _____ C:\Windows\system32\perfh007.dat 2018-08-29 16:48 - 2009-07-14 19:58 - 000149232 _____ C:\Windows\system32\perfc007.dat 2018-08-29 16:48 - 2009-07-14 07:13 - 001619284 _____ C:\Windows\system32\PerfStringBackup.INI 2018-08-29 16:48 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2018-08-29 16:47 - 2017-06-15 14:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24 2018-08-29 16:44 - 2018-05-10 22:27 - 000000528 _____ C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-2068704244-1425643408-3996308100-1000.job 2018-08-29 16:44 - 2015-04-22 15:26 - 000000000 ____D C:\Users\Arne\Documents\Adobe 2018-08-29 16:43 - 2014-12-24 15:14 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2018-08-29 16:42 - 2014-12-13 23:55 - 000000000 ____D C:\Users\Arne 2018-08-29 16:37 - 2018-05-10 22:27 - 000000624 _____ C:\Windows\Tasks\G2MUploadTask-S-1-5-21-2068704244-1425643408-3996308100-1000.job 2018-08-29 15:59 - 2014-12-14 01:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT 2018-08-29 15:59 - 2014-12-14 01:02 - 000000000 ____D C:\Program Files (x86)\ROCCAT 2018-08-29 15:57 - 2015-01-17 02:22 - 000000000 ____D C:\Users\Arne\AppData\Roaming\Opera Software 2018-08-29 15:57 - 2015-01-17 02:22 - 000000000 ____D C:\Users\Arne\AppData\Local\Opera Software 2018-08-29 15:56 - 2015-07-01 00:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetBeans 2018-08-29 15:54 - 2017-07-23 20:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewBlue 2018-08-29 15:54 - 2017-07-23 20:58 - 000000000 ____D C:\Program Files\NewBlue 2018-08-29 15:45 - 2017-07-23 20:35 - 000000000 ____D C:\Users\Arne\AppData\Roaming\MAGIX 2018-08-29 15:45 - 2017-07-23 20:35 - 000000000 ____D C:\ProgramData\MAGIX 2018-08-29 15:35 - 2014-12-21 22:24 - 000000000 ____D C:\Program Files (x86)\Steam 2018-08-29 15:27 - 2017-10-23 19:55 - 000000000 ____D C:\Users\Arne\AppData\Local\iWesoft 2018-08-29 15:22 - 2015-03-13 14:37 - 000000000 ____D C:\ProgramData\NCH Software 2018-08-29 15:22 - 2015-03-13 14:37 - 000000000 ____D C:\Program Files (x86)\NCH Software 2018-08-29 15:12 - 2015-12-01 02:36 - 000000000 ____D C:\Program Files (x86)\AppInsights 2018-08-29 14:45 - 2015-01-11 23:28 - 000000000 ____D C:\Users\Public\Documents\Adobe PDF 2018-08-29 14:45 - 2014-12-21 20:23 - 000000000 ____D C:\ProgramData\Adobe 2018-08-29 13:06 - 2014-12-21 20:22 - 000000000 ____D C:\Users\Arne\AppData\Local\Adobe 2018-08-28 22:38 - 2016-04-03 12:58 - 000000000 ____D C:\Users\Arne\AppData\Roaming\Telegram Desktop 2018-08-28 21:47 - 2016-05-15 23:07 - 000000000 ____D C:\Users\Arne\AppData\Roaming\.minecraft 2018-08-28 21:14 - 2015-04-11 15:59 - 000000000 ____D C:\Users\Arne\AppData\Roaming\TS3Client 2018-08-28 21:12 - 2015-12-07 13:54 - 000000000 ____D C:\Users\Arne\AppData\Local\CrashDumps 2018-08-26 18:56 - 2014-12-13 23:57 - 000000000 ____D C:\Users\Arne\AppData\Local\ElevatedDiagnostics 2018-08-26 18:55 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF 2018-08-26 18:52 - 2015-06-19 06:39 - 000000000 ____D C:\Users\Arne\AppData\Local\Dropbox 2018-08-26 18:44 - 2015-04-17 02:40 - 000000000 ____D C:\Users\Arne\AppData\Roaming\Dropbox 2018-08-26 18:41 - 2014-12-21 22:35 - 000000000 ____D C:\Users\Arne\AppData\Local\Google 2018-08-26 18:41 - 2014-12-21 22:35 - 000000000 ____D C:\Program Files (x86)\Google 2018-08-26 17:33 - 2017-11-06 17:57 - 000000000 ____D C:\ProgramData\CanonIJPLM 2018-08-23 21:15 - 2015-04-12 23:09 - 000000000 ____D C:\Users\Arne\AppData\Roaming\Apowersoft 2018-08-21 20:38 - 2015-04-17 02:41 - 000000000 ___RD C:\Users\Arne\Dropbox 2018-08-21 08:42 - 2018-05-13 20:13 - 000002392 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2018-08-21 08:42 - 2015-03-14 18:48 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2018-08-19 03:44 - 2018-05-10 22:27 - 000000000 ____D C:\Users\Arne\AppData\Local\GoToMeeting 2018-08-19 00:15 - 2015-03-14 18:48 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-08-17 14:26 - 2018-05-10 22:27 - 000003648 _____ C:\Windows\System32\Tasks\G2MUploadTask-S-1-5-21-2068704244-1425643408-3996308100-1000 2018-08-17 14:26 - 2018-05-10 22:27 - 000003552 _____ C:\Windows\System32\Tasks\G2MUpdateTask-S-1-5-21-2068704244-1425643408-3996308100-1000 2018-08-15 21:39 - 2017-05-14 21:17 - 000004526 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier 2018-08-15 21:39 - 2014-12-14 01:00 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2018-08-15 21:39 - 2014-12-14 01:00 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2018-08-15 21:39 - 2014-12-14 01:00 - 000004366 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2018-08-15 20:47 - 2018-03-15 02:39 - 000004514 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier 2018-08-13 20:32 - 2018-05-14 23:07 - 000003170 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2068704244-1425643408-3996308100-1000 2018-08-13 20:32 - 2015-03-14 18:56 - 000002177 _____ C:\Users\Arne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2018-08-13 20:32 - 2015-03-14 18:56 - 000000000 ___RD C:\Users\Arne\OneDrive 2018-08-11 11:21 - 2016-05-13 19:31 - 000000000 ____D C:\Users\Arne\AppData\Roaming\WhatsApp 2018-08-11 11:04 - 2018-01-20 21:50 - 000000000 ____D C:\Users\Arne\AppData\Local\WhatsApp 2018-08-11 11:04 - 2016-05-13 19:31 - 000000000 ____D C:\Users\Arne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2018-08-11 11:04 - 2016-05-13 19:31 - 000000000 ____D C:\Users\Arne\AppData\Local\SquirrelTemp 2018-08-06 20:48 - 2015-05-19 14:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft 2018-08-06 20:48 - 2015-05-19 14:24 - 000000000 ____D C:\Program Files (x86)\Apowersoft 2018-08-06 20:40 - 2018-04-16 17:20 - 000000000 ____D C:\Users\Arne\AppData\Local\4kdownload.com 2018-08-06 20:39 - 2016-01-11 20:15 - 000000000 ____D C:\Program Files (x86)\4KDownload ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-09-22 22:32 - 2018-07-24 22:18 - 000000132 _____ () C:\Users\Arne\AppData\Roaming\Adobe CS6-PNG-Format - Voreinstellungen 2015-04-03 00:51 - 2015-04-03 01:28 - 000000128 _____ () C:\Users\Arne\AppData\Roaming\Camdata.ini 2015-04-03 00:51 - 2015-04-03 01:28 - 000000408 _____ () C:\Users\Arne\AppData\Roaming\CamLayout.ini 2015-04-03 00:51 - 2015-04-03 01:28 - 000000408 _____ () C:\Users\Arne\AppData\Roaming\CamShapes.ini 2015-04-03 00:51 - 2015-04-03 01:28 - 000004548 _____ () C:\Users\Arne\AppData\Roaming\CamStudio.cfg 2014-12-14 00:45 - 2014-12-14 00:45 - 000000000 _____ () C:\Users\Arne\AppData\Roaming\gdfw.log 2014-12-14 00:45 - 2014-12-14 00:45 - 000000779 _____ () C:\Users\Arne\AppData\Roaming\gdscan.log 2016-03-04 19:29 - 2016-03-04 19:30 - 000001181 _____ () C:\Users\Arne\AppData\Roaming\trace_FilterInstaller.txt 2016-03-04 19:29 - 2016-03-04 19:29 - 000000000 _____ () C:\Users\Arne\AppData\Roaming\trace_FilterInstaller.txt-CRT.txt 2015-04-03 00:50 - 2015-04-03 00:51 - 000000096 _____ () C:\Users\Arne\AppData\Roaming\version2.xml 2016-10-05 23:21 - 2016-10-05 23:21 - 000000843 _____ () C:\Users\Arne\AppData\Local\recently-used.xbel Einige Dateien in TEMP: ==================== 2018-02-10 13:43 - 2018-02-10 13:43 - 001864256 _____ (Oracle Corporation) C:\Users\Arne\AppData\Local\Temp\jre-8u161-windows-au.exe 2017-08-24 21:31 - 2017-07-07 17:11 - 001114112 _____ (Microsoft Corporation) C:\Users\Arne\AppData\Local\Temp\kernel32.dll 2017-10-13 07:00 - 2017-10-13 07:00 - 007186992 _____ (Microsoft Corporation) C:\Users\Arne\AppData\Local\Temp\launcher_vs2012_sp4_vcredist_x64.exe 2017-10-13 07:00 - 2017-10-13 07:00 - 006554576 _____ (Microsoft Corporation) C:\Users\Arne\AppData\Local\Temp\launcher_vs2012_sp4_vcredist_x86.exe 2018-08-29 15:56 - 2018-08-29 15:56 - 002611200 _____ (Opera Software) C:\Users\Arne\AppData\Local\Temp\Opera_installer_1808291356538966552.dll 2017-12-11 19:21 - 2017-12-11 19:21 - 059162608 _____ (Skype Technologies S.A.) C:\Users\Arne\AppData\Local\Temp\SkypeSetup.exe 2017-11-06 18:23 - 2016-01-14 16:20 - 000362656 _____ (CANON INC.) C:\Users\Arne\AppData\Local\Temp\uninstall.exe 2018-08-29 15:14 - 2010-08-27 19:44 - 001238448 _____ (Audible Inc.) C:\Users\Arne\AppData\Local\Temp\Upgrade.exe 2018-08-29 16:50 - 2018-08-29 16:50 - 001490656 _____ (Microsoft Corporation) C:\Users\Arne\AppData\Local\Temp\WdfCoInstaller01007.dll ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2018-08-22 18:12 ==================== Ende von FRST.txt ============================ |
29.08.2018, 19:50 | #7 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet) Schädlinge suchen mit Kaspersky TDSS-Killer Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ Logfiles bitte immer in CODE-Tags posten |
06.09.2018, 17:30 | #8 |
| Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet) Mahlzeit, kleine Frage. Das Board lässt mich den LOG nicht einfügen, da ich mit 206367 Zeichen die max. Anzahl an Zeichen deutlich überschreite. Wie soll ich weiter fortfahren? |
06.09.2018, 20:58 | #9 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet) Beiträge richtig lesen inkl. Lesestoff.
__________________ Logfiles bitte immer in CODE-Tags posten |
10.09.2018, 19:24 | #10 |
| Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet) Moin, entschuldigung, den Satz habe ich tatsächlich überlesen. Code:
ATTFilter 18:10:12.0740 0x06ec TDSS rootkit removing tool 3.1.0.17 Apr 20 2018 12:12:17 18:10:19.0395 0x06ec ============================================================ 18:10:19.0395 0x06ec Current date / time: 2018/09/06 18:10:19.0395 18:10:19.0395 0x06ec SystemInfo: 18:10:19.0395 0x06ec 18:10:19.0395 0x06ec OS Version: 6.1.7601 ServicePack: 1.0 18:10:19.0395 0x06ec Product type: Workstation 18:10:19.0395 0x06ec ComputerName: PEAL1993 18:10:19.0396 0x06ec UserName: Arne 18:10:19.0396 0x06ec Windows directory: C:\Windows 18:10:19.0396 0x06ec System windows directory: C:\Windows 18:10:19.0396 0x06ec Running under WOW64 18:10:19.0396 0x06ec Processor architecture: Intel x64 18:10:19.0396 0x06ec Number of processors: 8 18:10:19.0396 0x06ec Page size: 0x1000 18:10:19.0396 0x06ec Boot type: Normal boot 18:10:19.0396 0x06ec CodeIntegrityOptions = 0x00000001 18:10:19.0396 0x06ec ============================================================ 18:10:19.0490 0x06ec KLMD registered as C:\Windows\system32\drivers\74309308.sys 18:10:19.0490 0x06ec KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 7601.23864, osProperties = 0x1 18:10:19.0521 0x06ec System UUID: {714FC352-B01A-1048-B70E-7428F183F288} 18:10:19.0572 0x06ec Drive \Device\Harddisk2\DR2 - Size: 0x3B9E656000 ( 238.47 Gb ), SectorSize: 0x200, Cylinders: 0x799A, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 18:10:19.0572 0x06ec Drive \Device\Harddisk1\DR1 - Size: 0xE8E0CADE00 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 18:10:19.0572 0x06ec Drive \Device\Harddisk0\DR0 - Size: 0x1D1C1116000 ( 1863.02 Gb ), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 18:10:19.0577 0x06ec ============================================================ 18:10:19.0577 0x06ec \Device\Harddisk2\DR2: 18:10:19.0577 0x06ec MBR partitions: 18:10:19.0577 0x06ec \Device\Harddisk2\DR2\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000 18:10:19.0577 0x06ec \Device\Harddisk2\DR2\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x1DCC0000 18:10:19.0577 0x06ec \Device\Harddisk1\DR1: 18:10:19.0577 0x06ec MBR partitions: 18:10:19.0577 0x06ec \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x74705000 18:10:19.0577 0x06ec \Device\Harddisk0\DR0: 18:10:19.0578 0x06ec MBR partitions: 18:10:19.0578 0x06ec \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xE8E07800 18:10:19.0578 0x06ec ============================================================ 18:10:19.0579 0x06ec C: <-> \Device\Harddisk2\DR2\Partition2 18:10:19.0579 0x06ec D: <-> \Device\Harddisk1\DR1\Partition1 18:10:19.0580 0x06ec E: <-> \Device\Harddisk0\DR0\Partition1 18:10:19.0580 0x06ec ============================================================ 18:10:19.0581 0x06ec Initialize success 18:10:19.0581 0x06ec ============================================================ 18:11:12.0410 0x16e0 ============================================================ 18:11:12.0410 0x16e0 Scan started 18:11:12.0410 0x16e0 Mode: Manual; SigCheck; TDLFS; 18:11:12.0410 0x16e0 ============================================================ 18:11:12.0410 0x16e0 KSN ping started 18:11:13.0448 0x16e0 KSN ping finished: false 18:11:13.0737 0x16e0 ================ Scan system memory ======================== 18:11:13.0737 0x16e0 System memory - ok 18:11:13.0738 0x16e0 ================ Scan services ============================= 18:11:13.0769 0x16e0 [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 18:11:13.0803 0x16e0 1394ohci - ok 18:11:13.0812 0x16e0 [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys 18:11:13.0824 0x16e0 ACPI - ok 18:11:13.0826 0x16e0 [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 18:11:13.0840 0x16e0 AcpiPmi - ok 18:11:13.0858 0x16e0 AdobeFlashPlayerUpdateSvc - ok 18:11:13.0867 0x16e0 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 18:11:13.0879 0x16e0 adp94xx - ok 18:11:13.0886 0x16e0 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 18:11:13.0895 0x16e0 adpahci - ok 18:11:13.0900 0x16e0 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 18:11:13.0906 0x16e0 adpu320 - ok 18:11:13.0910 0x16e0 [ 262D7C87D0AC20B96EF9877D3CA478A0, 54F7E5A5F8991C5525500C1ECCF3D3135D13F48866C366E52DF1D052DB2EE15B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 18:11:13.0918 0x16e0 AeLookupSvc - ok 18:11:13.0927 0x16e0 [ 0DC2A9882540DEA4A55B08785E09D8FC, 69B15724B0034F9915AACE109A6C596D6AF2DA350FC18C9A0CD98C81CB7EDEE3 ] AFD C:\Windows\system32\drivers\afd.sys 18:11:13.0946 0x16e0 AFD - ok 18:11:13.0984 0x16e0 [ 3D1BB871A893182B0058A4898D5AFE29, 77AAD5ADD3C0F6AE2056CD4891644CE7F12946B05A4BDBCC711A1BD3B2C650C2 ] AGMService C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe 18:11:14.0034 0x16e0 AGMService - ok 18:11:14.0038 0x16e0 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys 18:11:14.0043 0x16e0 agp440 - ok 18:11:14.0074 0x16e0 [ C20CA26CDE768CA950C622B866292FC2, 007B142A02B3676F320F9BBB92AAAE1589938FD19D20701655114CE84588526B ] AGSService C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe 18:11:14.0118 0x16e0 AGSService - ok 18:11:14.0123 0x16e0 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 18:11:14.0134 0x16e0 ALG - ok 18:11:14.0136 0x16e0 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys 18:11:14.0140 0x16e0 aliide - ok 18:11:14.0147 0x16e0 [ 1988ACBAB87EF67E63EC2D00A0CF5B26, 7B2C20E9E25289FE54D393F04C540C43C75AEEB11B4FFA31866FF7B23F8AFF66 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe 18:11:14.0164 0x16e0 AMD External Events Utility - ok 18:11:14.0166 0x16e0 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys 18:11:14.0170 0x16e0 amdide - ok 18:11:14.0173 0x16e0 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 18:11:14.0182 0x16e0 AmdK8 - ok 18:11:14.0184 0x16e0 amdkmdag - ok 18:11:14.0195 0x16e0 [ 1E2E0FD45B2F9ADD2E5A5125D44F9BCE, B4D65566D15A26865A1506B5BE0E5E0CFBCCB655A2AD358314628FA37169EB6B ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys 18:11:14.0214 0x16e0 amdkmdap - ok 18:11:14.0217 0x16e0 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 18:11:14.0224 0x16e0 AmdPPM - ok 18:11:14.0228 0x16e0 [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys 18:11:14.0234 0x16e0 amdsata - ok 18:11:14.0239 0x16e0 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 18:11:14.0245 0x16e0 amdsbs - ok 18:11:14.0248 0x16e0 [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys 18:11:14.0252 0x16e0 amdxata - ok 18:11:14.0254 0x16e0 [ 4542CC17440E85D2D2D73A7D40FAED0A, F157F9A137DEACFC5A1A982265F5CE05A79C0CF8F13291773E2351BEFCB94E08 ] Apowersoft_AudioDevice C:\Windows\system32\drivers\Apowersoft_AudioDevice.sys 18:11:14.0261 0x16e0 Apowersoft_AudioDevice - ok 18:11:14.0264 0x16e0 [ F5206C19AAD6BA60360888E9A20396C7, CB4D257F463DCAB6F79605AFA1A1850561447D11B2219C19302129F8FE7E3B71 ] AppID C:\Windows\system32\drivers\appid.sys 18:11:14.0273 0x16e0 AppID - ok 18:11:14.0276 0x16e0 [ 56CDF84E681464371CF7385E97406113, 95B80252D1534A1E25F4FA4EC08C80A39E233E0F599DF037B954D1898FA6B787 ] AppIDSvc C:\Windows\System32\appidsvc.dll 18:11:14.0282 0x16e0 AppIDSvc - ok 18:11:14.0285 0x16e0 [ DE23E052E557580674785CDF45B613F3, A955ADC6CC7D816BA7CE1065F911E7A3295A1908C22BE0A3C506C38CFEE8DE0D ] Appinfo C:\Windows\System32\appinfo.dll 18:11:14.0296 0x16e0 Appinfo - ok 18:11:14.0299 0x16e0 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\DRIVERS\arc.sys 18:11:14.0304 0x16e0 arc - ok 18:11:14.0307 0x16e0 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 18:11:14.0313 0x16e0 arcsas - ok 18:11:14.0321 0x16e0 [ 92C120176C43C62AFE107B5D945CE6EC, E3BA1200BD04167589D7AF29F6550F3242DB321DDCD6890D645A2053CC78C7E6 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 18:11:14.0327 0x16e0 aspnet_state - ok 18:11:14.0329 0x16e0 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 18:11:14.0365 0x16e0 AsyncMac - ok 18:11:14.0368 0x16e0 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys 18:11:14.0372 0x16e0 atapi - ok 18:11:14.0376 0x16e0 [ 80AA9265E820A8667EDEF731E31335B6, 549DC0BCF988F25CF3F89A784DC9B97C6D4DF697302F5CF467EFA2B816991A52 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys 18:11:14.0383 0x16e0 AtiHDAudioService - ok 18:11:14.0395 0x16e0 [ 67C717EC24FCAAE7B518D9E06AD036AB, F08550E4FCEC2899FACEF2A18CEE3D068D5911FFD2FF5534E4921E56FB0AEF59 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 18:11:14.0413 0x16e0 AudioEndpointBuilder - ok 18:11:14.0425 0x16e0 [ 67C717EC24FCAAE7B518D9E06AD036AB, F08550E4FCEC2899FACEF2A18CEE3D068D5911FFD2FF5534E4921E56FB0AEF59 ] AudioSrv C:\Windows\System32\Audiosrv.dll 18:11:14.0439 0x16e0 AudioSrv - ok 18:11:14.0442 0x16e0 [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll 18:11:14.0457 0x16e0 AxInstSV - ok 18:11:14.0465 0x16e0 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 18:11:14.0479 0x16e0 b06bdrv - ok 18:11:14.0485 0x16e0 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 18:11:14.0494 0x16e0 b57nd60a - ok 18:11:14.0498 0x16e0 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 18:11:14.0506 0x16e0 BDESVC - ok 18:11:14.0508 0x16e0 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 18:11:14.0526 0x16e0 Beep - ok 18:11:14.0623 0x16e0 [ ED48EB300FAF75F58E2B502E709CE661, 332AF05F8644F5AE24237FC664D67152097D3969A76F3A7C8EF33B74B46D3D70 ] BEService C:\Program Files (x86)\Common Files\BattlEye\BEService.exe 18:11:14.0735 0x16e0 BEService - ok 18:11:14.0753 0x16e0 [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll 18:11:14.0772 0x16e0 BFE - ok 18:11:14.0786 0x16e0 [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll 18:11:14.0837 0x16e0 BITS - ok 18:11:14.0840 0x16e0 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 18:11:14.0845 0x16e0 blbdrive - ok 18:11:14.0848 0x16e0 [ ABA3984C822E4D3F889699912D85D6C5, 2251FA135CC290DA13DAE4743F393C7CC9E6A737C054707CB8D72C369D1FFACB ] bowser C:\Windows\system32\DRIVERS\bowser.sys 18:11:14.0859 0x16e0 bowser - ok 18:11:14.0861 0x16e0 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 18:11:14.0874 0x16e0 BrFiltLo - ok 18:11:14.0876 0x16e0 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 18:11:14.0882 0x16e0 BrFiltUp - ok 18:11:14.0886 0x16e0 [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll 18:11:14.0895 0x16e0 Browser - ok 18:11:14.0901 0x16e0 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 18:11:14.0913 0x16e0 Brserid - ok 18:11:14.0915 0x16e0 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 18:11:14.0923 0x16e0 BrSerWdm - ok 18:11:14.0925 0x16e0 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 18:11:14.0933 0x16e0 BrUsbMdm - ok 18:11:14.0935 0x16e0 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 18:11:14.0941 0x16e0 BrUsbSer - ok 18:11:14.0945 0x16e0 BstHdDrv - ok 18:11:14.0951 0x16e0 [ AE5ADD416B20A7E39E71E4F8B46467E4, F056C14E8C9983424B67B6C5EF009517B0C2146ABBAA856EFB45058FAD7408BA ] BstkDrv C:\Program Files (x86)\BlueStacks\BstkDrv.sys 18:11:14.0960 0x16e0 BstkDrv - ok 18:11:14.0963 0x16e0 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 18:11:14.0971 0x16e0 BTHMODEM - ok 18:11:14.0975 0x16e0 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 18:11:14.0993 0x16e0 bthserv - ok 18:11:14.0996 0x16e0 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 18:11:15.0016 0x16e0 cdfs - ok 18:11:15.0020 0x16e0 [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 18:11:15.0255 0x16e0 cdrom - ok 18:11:15.0259 0x16e0 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll 18:11:15.0277 0x16e0 CertPropSvc - ok 18:11:15.0281 0x16e0 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\DRIVERS\circlass.sys 18:11:15.0289 0x16e0 circlass - ok 18:11:15.0296 0x16e0 [ 3963FEC1892368DD500E6ED1F5C286CE, A04689CB07AF1C1B4B1032B0ACAD88DA3EB03D89A575C59FE602A65E8C246138 ] CLFS C:\Windows\system32\CLFS.sys 18:11:15.0306 0x16e0 CLFS - ok 18:11:15.0436 0x16e0 [ D47D4B492814A7D004389486E08FD3F1, 82E4376D29545F9BE0AE86B8BED393FEEEB1E4EE520E9167EEFEFA5DC09E158C ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe 18:11:15.0576 0x16e0 ClickToRunSvc - ok 18:11:15.0592 0x16e0 [ A1DB80A012F4C1C3DA78688E08BFBE80, 419349DAA67A355A11F99D5B1B50F70BA8C9544FE2783CA358B641305B3383B4 ] CLKMSVC10_38F51D56 C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe 18:11:15.0598 0x16e0 CLKMSVC10_38F51D56 - ok 18:11:15.0604 0x16e0 [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 18:11:15.0609 0x16e0 clr_optimization_v2.0.50727_32 - ok 18:11:15.0613 0x16e0 [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 18:11:15.0618 0x16e0 clr_optimization_v2.0.50727_64 - ok 18:11:15.0625 0x16e0 [ 1A3D6CABDC37B34D85059185272DBB2F, C7FAB62EC4D9947ADAD0E065D4CDAF8D6EA2AF9FD0C3A1F1A676276825808FD8 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 18:11:15.0631 0x16e0 clr_optimization_v4.0.30319_32 - ok 18:11:15.0634 0x16e0 [ 59B44C95D56A9BB269B1D4A3F25468C2, 462799657FA493866A14F0D36D5D92C95E8886E6AC5F199D069E6938425A9218 ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 18:11:15.0640 0x16e0 clr_optimization_v4.0.30319_64 - ok 18:11:15.0642 0x16e0 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 18:11:15.0648 0x16e0 CmBatt - ok 18:11:15.0651 0x16e0 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys 18:11:15.0655 0x16e0 cmdide - ok 18:11:15.0664 0x16e0 [ A98CED39AD91B445E2E442A9BD67E8B4, B4189DEEF1C0EE22AE983119047B1A40FFDD8F3E163DFFABD7C2706231B0B1B0 ] CNG C:\Windows\system32\Drivers\cng.sys 18:11:15.0678 0x16e0 CNG - ok 18:11:15.0681 0x16e0 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 18:11:15.0686 0x16e0 Compbatt - ok 18:11:15.0688 0x16e0 [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 18:11:15.0696 0x16e0 CompositeBus - ok 18:11:15.0698 0x16e0 COMSysApp - ok 18:11:15.0700 0x16e0 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 18:11:15.0705 0x16e0 crcdisk - ok 18:11:15.0710 0x16e0 [ 48FEDBE324F1EA9417BA1D62AE863011, 2C3D84F0842237A3BF2838DDB4126807977EB36588FA669B1E6671077584EF18 ] CryptSvc C:\Windows\system32\cryptsvc.dll 18:11:15.0719 0x16e0 CryptSvc - ok 18:11:15.0724 0x16e0 [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdate C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe 18:11:15.0730 0x16e0 dbupdate - ok 18:11:15.0733 0x16e0 [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdatem C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe 18:11:15.0739 0x16e0 dbupdatem - ok 18:11:15.0742 0x16e0 [ 646AFD6F45B1B5AB9CE77C09B755B90B, CFC61FC136C9C062F509D2C756266F581BA9B2FDB1D2C8CBAAA66F51D1E8B876 ] DbxSvc C:\Windows\system32\DbxSvc.exe 18:11:15.0747 0x16e0 DbxSvc - ok 18:11:15.0756 0x16e0 [ 5E9F8D029D9B03110D835CBFC058068B, 038FDF99C643C8102026BA26A75899A56E91AD0C239DF71AA5443FD35C718C78 ] DcomLaunch C:\Windows\system32\rpcss.dll 18:11:15.0770 0x16e0 DcomLaunch - ok 18:11:15.0777 0x16e0 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 18:11:15.0798 0x16e0 defragsvc - ok 18:11:15.0803 0x16e0 [ 9B38580063D281A99E68EF5813022A5F, D91676B0E0A8E2A090E3E5DD340ABCFC20AE0F55B4C82869D6CFB34239BD27DA ] DfsC C:\Windows\system32\Drivers\dfsc.sys 18:11:15.0813 0x16e0 DfsC - ok 18:11:15.0816 0x16e0 [ 1E0F456A03E204F92D24437CD907A512, 8BB28AF33BDEFFECC4EC5C6BFBFBDA525A32FA6A26382353E01FF94BAD2A200C ] dg_ssudbus C:\Windows\system32\DRIVERS\ssudbus.sys 18:11:15.0822 0x16e0 dg_ssudbus - ok 18:11:15.0829 0x16e0 [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll 18:11:15.0840 0x16e0 Dhcp - ok 18:11:15.0863 0x16e0 [ EE9954237F15BE4DD9304D12E4D305ED, F295C9BAF20F0E669B673AFCC16B4969EE31B6A3808980DAB93D9B0F167DA3C0 ] DiagTrack C:\Windows\system32\diagtrack.dll 18:11:15.0898 0x16e0 DiagTrack - ok 18:11:15.0907 0x16e0 [ DEE4A1F675EC604E9641B1A03CF1816F, A0AC84713DDFD9A94B8558DFA26B278FB29833C5663451CC582ACA85B29CBFD8 ] DigitalWave.Update.Service C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe 18:11:15.0917 0x16e0 DigitalWave.Update.Service - detected UnsignedFile.Multi.Generic ( 1 ) 18:11:16.0995 0x16e0 DigitalWave.Update.Service ( UnsignedFile.Multi.Generic ) - warning 18:11:17.0008 0x16e0 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 18:11:17.0025 0x16e0 discache - ok 18:11:17.0029 0x16e0 [ 616387BBD83372220B09DE95F4E67BBC, 5E2D5280BB775576E7CDE3FA6BDE494E183123635E5908CF7EBF1FF52966D07D ] Disk C:\Windows\system32\drivers\disk.sys 18:11:17.0034 0x16e0 Disk - ok 18:11:17.0038 0x16e0 [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll 18:11:17.0048 0x16e0 Dnscache - ok 18:11:17.0053 0x16e0 [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll 18:11:17.0073 0x16e0 dot3svc - ok 18:11:17.0080 0x16e0 [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll 18:11:17.0099 0x16e0 DPS - ok 18:11:17.0102 0x16e0 [ 26FE888505E5A945B0536AF9A2A27A6F, A6B16ED498BAFE300E1F0E0A241E3D62F7A1C5973EE775904ED14F33A2BC08A6 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 18:11:17.0108 0x16e0 drmkaud - ok 18:11:17.0124 0x16e0 [ 5CEF80AE869336376F550ECAE91E424A, 49152AC35556A5629AE7A4A762FDB2112FAD1C9CDB91E6196172809F74A3149A ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 18:11:17.0143 0x16e0 DXGKrnl - ok 18:11:17.0148 0x16e0 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 18:11:17.0168 0x16e0 EapHost - ok 18:11:17.0181 0x16e0 [ 610BF0CA400801B50AB6C34F8C268FAF, 0CA01A691B68684541BCC8D97087D07C2ADC03D76DD3798305F77B11A8AFF570 ] EasyAntiCheat C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe 18:11:17.0204 0x16e0 EasyAntiCheat - ok 18:11:17.0219 0x16e0 [ 78AC59B45CFBFCC68DA7D397D6819D03, C423C3A49D8F9BF931C694309AA982A2A554E7F2CEEC44F9AA1C13F98F9D6FBF ] EasyAntiCheatSys C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.sys 18:11:17.0238 0x16e0 EasyAntiCheatSys - ok 18:11:17.0286 0x16e0 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 18:11:17.0340 0x16e0 ebdrv - ok 18:11:17.0345 0x16e0 [ 61FF4456A65C5CF4CFF918F5C484F0A0, F9B6DDF62B4175093DD38C00520C7F0D52FBAB0077A8ED1391DD5188E400F481 ] EFS C:\Windows\System32\lsass.exe 18:11:17.0352 0x16e0 EFS - ok 18:11:17.0365 0x16e0 [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 18:11:17.0384 0x16e0 ehRecvr - ok 18:11:17.0388 0x16e0 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe 18:11:17.0398 0x16e0 ehSched - ok 18:11:17.0408 0x16e0 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 18:11:17.0420 0x16e0 elxstor - ok 18:11:17.0425 0x16e0 [ A7E8186E04F38E836C19AC147F8B2ED0, 329639595F02060C215A6334FCE1651FB9B9B5679BA9052A487B57265608D162 ] EPSON_PM_RPCV4_05 C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE 18:11:17.0431 0x16e0 EPSON_PM_RPCV4_05 - ok 18:11:17.0433 0x16e0 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys 18:11:17.0438 0x16e0 ErrDev - ok 18:11:17.0447 0x16e0 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll 18:11:17.0470 0x16e0 EventSystem - ok 18:11:17.0475 0x16e0 [ 7E45F8B117419ABA3BB26579F6E70324, 03FE86519860153E1BE571F10ACC9BA58FFB5A661C5C3EBDF3B77973BCD96C84 ] exfat C:\Windows\system32\drivers\exfat.sys 18:11:17.0484 0x16e0 exfat - ok 18:11:17.0489 0x16e0 [ 6EDFA237D25433C03F42FBFDB16BDD24, A30F89A40F7AFC475D3C2D3591FB9AFC06AE3FEBC915FDCB24ED77946FBA4E2C ] fastfat C:\Windows\system32\drivers\fastfat.sys 18:11:17.0500 0x16e0 fastfat - ok 18:11:17.0512 0x16e0 [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe 18:11:17.0528 0x16e0 Fax - ok 18:11:17.0531 0x16e0 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\DRIVERS\fdc.sys 18:11:17.0537 0x16e0 fdc - ok 18:11:17.0539 0x16e0 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll 18:11:17.0558 0x16e0 fdPHost - ok 18:11:17.0561 0x16e0 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll 18:11:17.0580 0x16e0 FDResPub - ok 18:11:17.0582 0x16e0 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 18:11:17.0588 0x16e0 FileInfo - ok 18:11:17.0590 0x16e0 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 18:11:17.0607 0x16e0 Filetrace - ok 18:11:17.0610 0x16e0 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 18:11:17.0615 0x16e0 flpydisk - ok 18:11:17.0622 0x16e0 [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 18:11:17.0631 0x16e0 FltMgr - ok 18:11:17.0649 0x16e0 [ 785F474FB5E67E448E1931C98E8D0ABC, 911697D580CBF508A6F4A52D4F95A6976CF9A0EC3549076A8D0B5C8BD947C989 ] FontCache C:\Windows\system32\FntCache.dll 18:11:17.0678 0x16e0 FontCache - ok 18:11:17.0681 0x16e0 [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 18:11:17.0686 0x16e0 FontCache3.0.0.0 - ok 18:11:17.0689 0x16e0 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 18:11:17.0694 0x16e0 FsDepends - ok 18:11:17.0699 0x16e0 [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 18:11:17.0704 0x16e0 Fs_Rec - ok 18:11:17.0710 0x16e0 [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 18:11:17.0719 0x16e0 fvevol - ok 18:11:17.0722 0x16e0 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 18:11:17.0727 0x16e0 gagp30kx - ok 18:11:17.0731 0x16e0 [ 14C0178E02279087B7141A4B80E711BF, 500534CFC017F3A37EC950F6BD4C05243E4A70D51528C9E8096E548231FF9D8C ] gddcd C:\Windows\system32\drivers\gddcd64.sys 18:11:17.0738 0x16e0 gddcd - ok 18:11:17.0740 0x16e0 [ 8D08E86C511503D837EA286B7E824A2B, 7BB752CF563D6B9F964228760C4BEFFC0A54CE684D447975AC016256E424887F ] gddcv C:\Windows\system32\drivers\gddcv64.sys 18:11:17.0746 0x16e0 gddcv - ok 18:11:17.0759 0x16e0 [ E4AE497857409127ED57562AF913A903, 262ADD713B1FBF6200550967D1F8635B55D01BBD8FA2E753536E71A4EC87867B ] gpsvc C:\Windows\System32\gpsvc.dll 18:11:17.0779 0x16e0 gpsvc - ok 18:11:17.0784 0x16e0 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:11:17.0789 0x16e0 gupdate - ok 18:11:17.0792 0x16e0 [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:11:17.0797 0x16e0 gupdatem - ok 18:11:17.0799 0x16e0 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 18:11:17.0806 0x16e0 hcw85cir - ok 18:11:17.0813 0x16e0 [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 18:11:17.0825 0x16e0 HdAudAddService - ok 18:11:17.0829 0x16e0 [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys 18:11:17.0839 0x16e0 HDAudBus - ok 18:11:17.0842 0x16e0 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 18:11:17.0847 0x16e0 HidBatt - ok 18:11:17.0851 0x16e0 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 18:11:17.0858 0x16e0 HidBth - ok 18:11:17.0861 0x16e0 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 18:11:17.0868 0x16e0 HidIr - ok 18:11:17.0870 0x16e0 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\system32\hidserv.dll 18:11:17.0888 0x16e0 hidserv - ok 18:11:17.0891 0x16e0 [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 18:11:17.0897 0x16e0 HidUsb - ok 18:11:17.0900 0x16e0 [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll 18:11:17.0918 0x16e0 hkmsvc - ok 18:11:17.0923 0x16e0 [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 18:11:17.0933 0x16e0 HomeGroupListener - ok 18:11:17.0938 0x16e0 [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 18:11:17.0947 0x16e0 HomeGroupProvider - ok 18:11:17.0950 0x16e0 [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 18:11:17.0955 0x16e0 HpSAMD - ok 18:11:17.0957 0x16e0 [ F47CEC45FB85791D4AB237563AD0FA8F, 1035066D48BD179855BCA7F62EFA1B951E6E839D2E29E15A31844E18A126DD41 ] HTCAND64 C:\Windows\system32\Drivers\ANDROIDUSB.sys 18:11:17.0967 0x16e0 HTCAND64 - ok 18:11:17.0973 0x16e0 [ 5C8BC8A28798FD010E7ABC4E0D588CAA, 622CAFD3DCBB05E15539589FDD4002DA6F24790FC55BDF05AA3D043E8A34E53E ] HTCMonitorService C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe 18:11:17.0978 0x16e0 HTCMonitorService - ok 18:11:17.0981 0x16e0 [ B8B1B284362E1D8135112573395D5DA5, 97BC6A7B2DCD7CC854B912A85BB2FCF199592E8E16A7C405EAF89B02D5DE4AEE ] htcnprot C:\Windows\system32\DRIVERS\htcnprot.sys 18:11:17.0985 0x16e0 htcnprot - ok 18:11:17.0996 0x16e0 [ CF5C9BD985120781200D35FD445D0BD5, 91B37F595A196542458CBBCDAD80779721D228A7030A34E55995DDBB06649248 ] HTTP C:\Windows\system32\drivers\HTTP.sys 18:11:18.0019 0x16e0 HTTP - ok 18:11:18.0021 0x16e0 [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 18:11:18.0026 0x16e0 hwpolicy - ok 18:11:18.0030 0x16e0 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 18:11:18.0037 0x16e0 i8042prt - ok 18:11:18.0045 0x16e0 [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 18:11:18.0055 0x16e0 iaStorV - ok 18:11:18.0070 0x16e0 [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 18:11:18.0088 0x16e0 idsvc - ok 18:11:18.0091 0x16e0 IEEtwCollectorService - ok 18:11:18.0094 0x16e0 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 18:11:18.0099 0x16e0 iirsp - ok 18:11:18.0107 0x16e0 [ FD7D6BD46A7947C2D7E5789562D28B98, 330970B71DE7546EBC04219789CEB36670FB2AAD4BD1288B9A26F76756712B45 ] IJPLMSVC C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE 18:11:18.0116 0x16e0 IJPLMSVC - ok 18:11:18.0131 0x16e0 [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll 18:11:18.0149 0x16e0 IKEEXT - ok 18:11:18.0209 0x16e0 [ 1747CAA9AB414DEC0FF38CDEBD3A7418, 0B647EF6FFF1E02DAD8B4C764A4A00430898BD089304D52BC05E0D99E80F1236 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 18:11:18.0274 0x16e0 IntcAzAudAddService - ok 18:11:18.0280 0x16e0 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys 18:11:18.0285 0x16e0 intelide - ok 18:11:18.0287 0x16e0 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 18:11:18.0294 0x16e0 intelppm - ok 18:11:18.0297 0x16e0 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll 18:11:18.0315 0x16e0 IPBusEnum - ok 18:11:18.0319 0x16e0 [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 18:11:18.0336 0x16e0 IpFilterDriver - ok 18:11:18.0346 0x16e0 [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 18:11:18.0361 0x16e0 iphlpsvc - ok 18:11:18.0365 0x16e0 [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 18:11:18.0371 0x16e0 IPMIDRV - ok 18:11:18.0374 0x16e0 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys 18:11:18.0393 0x16e0 IPNAT - ok 18:11:18.0395 0x16e0 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys 18:11:18.0403 0x16e0 IRENUM - ok 18:11:18.0405 0x16e0 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys 18:11:18.0410 0x16e0 isapnp - ok 18:11:18.0416 0x16e0 [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 18:11:18.0425 0x16e0 iScsiPrt - ok 18:11:18.0427 0x16e0 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 18:11:18.0432 0x16e0 kbdclass - ok 18:11:18.0435 0x16e0 [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 18:11:18.0441 0x16e0 kbdhid - ok 18:11:18.0443 0x16e0 [ 61FF4456A65C5CF4CFF918F5C484F0A0, F9B6DDF62B4175093DD38C00520C7F0D52FBAB0077A8ED1391DD5188E400F481 ] KeyIso C:\Windows\system32\lsass.exe 18:11:18.0448 0x16e0 KeyIso - ok 18:11:18.0451 0x16e0 [ B6839909DDC1DDA53A5470DA3DE638A4, A127A15D31F9C291DCBAF05BA8513E9CC1084E5799D3E07CF7F6C874F7EB9546 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 18:11:18.0457 0x16e0 KSecDD - ok 18:11:18.0461 0x16e0 [ EF5F0751E656C74E550E46B047FBEA57, 2784D6ECFFEB2A98DE81BC47052A5BEEE77BBD8395BA89BE1CB82B9EEF50F846 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 18:11:18.0467 0x16e0 KSecPkg - ok 18:11:18.0470 0x16e0 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 18:11:18.0488 0x16e0 ksthunk - ok 18:11:18.0495 0x16e0 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll 18:11:18.0520 0x16e0 KtmRm - ok 18:11:18.0525 0x16e0 [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\system32\srvsvc.dll 18:11:18.0547 0x16e0 LanmanServer - ok 18:11:18.0550 0x16e0 [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 18:11:18.0570 0x16e0 LanmanWorkstation - ok 18:11:18.0573 0x16e0 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 18:11:18.0590 0x16e0 lltdio - ok 18:11:18.0596 0x16e0 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll 18:11:18.0617 0x16e0 lltdsvc - ok 18:11:18.0619 0x16e0 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll 18:11:18.0636 0x16e0 lmhosts - ok 18:11:18.0640 0x16e0 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 18:11:18.0646 0x16e0 LSI_FC - ok 18:11:18.0651 0x16e0 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 18:11:18.0656 0x16e0 LSI_SAS - ok 18:11:18.0659 0x16e0 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 18:11:18.0664 0x16e0 LSI_SAS2 - ok 18:11:18.0667 0x16e0 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 18:11:18.0672 0x16e0 LSI_SCSI - ok 18:11:18.0675 0x16e0 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys 18:11:18.0694 0x16e0 luafv - ok 18:11:18.0701 0x16e0 [ A401CFF74982D8DF851F20307C806073, 1D7BA90C9E77FAAE59F60AB5310EC41D9C5B98F1F9A89A3CDB9169E6DEF565DA ] LVRS64 C:\Windows\system32\DRIVERS\lvrs64.sys 18:11:18.0710 0x16e0 LVRS64 - ok 18:11:18.0779 0x16e0 [ 13384CB5F5813E65F31078D6ABFAAF38, A6E7374C15CAECC273197BF62F8F926BA30E9509270A8470756F4710E1DEA126 ] LVUVC64 C:\Windows\system32\DRIVERS\lvuvc64.sys 18:11:18.0854 0x16e0 LVUVC64 - ok 18:11:18.0862 0x16e0 [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 18:11:18.0869 0x16e0 Mcx2Svc - ok 18:11:18.0871 0x16e0 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 18:11:18.0876 0x16e0 megasas - ok 18:11:18.0882 0x16e0 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 18:11:18.0890 0x16e0 MegaSR - ok 18:11:18.0893 0x16e0 [ 1BC9159CF58BABD89419072EA180A8F6, 6C9AB779C2355A341800A8F93AAAF9B19FAFF444CD6A7BD27C63D53F379A75EF ] MEIx64 C:\Windows\system32\DRIVERS\TeeDriverx64.sys 18:11:18.0901 0x16e0 MEIx64 - ok 18:11:18.0903 0x16e0 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll 18:11:18.0922 0x16e0 MMCSS - ok 18:11:18.0925 0x16e0 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys 18:11:18.0942 0x16e0 Modem - ok 18:11:18.0944 0x16e0 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 18:11:18.0951 0x16e0 monitor - ok 18:11:18.0954 0x16e0 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 18:11:18.0958 0x16e0 mouclass - ok 18:11:18.0961 0x16e0 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 18:11:18.0967 0x16e0 mouhid - ok 18:11:18.0970 0x16e0 [ 072D8646E23ECF8A3F5F0157017B4DB6, EBFB1459ECC5AF94C94FB49CEBC724542612680F0777E24B5AA6E062C0EE5D94 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 18:11:18.0975 0x16e0 mountmgr - ok 18:11:18.0980 0x16e0 [ 6B9E93FF7C9213359E548A494D733D52, 406CE127B6F8B4334B4EADD35788246E50FB505FE1E391B91FF60B1E56348295 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 18:11:18.0986 0x16e0 MozillaMaintenance - ok 18:11:18.0991 0x16e0 [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys 18:11:18.0999 0x16e0 mpio - ok 18:11:19.0002 0x16e0 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 18:11:19.0020 0x16e0 mpsdrv - ok 18:11:19.0034 0x16e0 [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll 18:11:19.0063 0x16e0 MpsSvc - ok 18:11:19.0067 0x16e0 [ 98DB1790F0A584E0A2528B92B052417F, 9AA04CA73AFE599810CD233B9CEC212E16D44DCEDF5C7D0181C7257F498068B5 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 18:11:19.0079 0x16e0 MRxDAV - ok 18:11:19.0083 0x16e0 [ 0CAFC684CABD24D089A53467CAF5C7BB, 0E5B7264CCA845BFE0BF6CC084D75D7039DD5C66D8A38A1F896730A21ADF085E ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 18:11:19.0095 0x16e0 mrxsmb - ok 18:11:19.0101 0x16e0 [ B9361F539BAAC1D362808157EAE0BA3B, C26E0F7A1B32F2DDE597BB12FC06007372EDF01396BE58CDEB425AED6579FCDE ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 18:11:19.0111 0x16e0 mrxsmb10 - ok 18:11:19.0115 0x16e0 [ A77260AE4B9E7B6C11675FB907D27AE8, F72BA83B962E1FEF2B6FFB39BDC15D9707F3001FBD91AFE47909FBC7043440D7 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 18:11:19.0123 0x16e0 mrxsmb20 - ok 18:11:19.0126 0x16e0 [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys 18:11:19.0130 0x16e0 msahci - ok 18:11:19.0134 0x16e0 [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys 18:11:19.0140 0x16e0 msdsm - ok 18:11:19.0144 0x16e0 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe 18:11:19.0152 0x16e0 MSDTC - ok 18:11:19.0157 0x16e0 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys 18:11:19.0175 0x16e0 Msfs - ok 18:11:19.0177 0x16e0 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 18:11:19.0193 0x16e0 mshidkmdf - ok 18:11:19.0196 0x16e0 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 18:11:19.0200 0x16e0 msisadrv - ok 18:11:19.0204 0x16e0 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 18:11:19.0224 0x16e0 MSiSCSI - ok 18:11:19.0226 0x16e0 msiserver - ok 18:11:19.0228 0x16e0 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 18:11:19.0245 0x16e0 MSKSSRV - ok 18:11:19.0247 0x16e0 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 18:11:19.0264 0x16e0 MSPCLOCK - ok 18:11:19.0266 0x16e0 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 18:11:19.0283 0x16e0 MSPQM - ok 18:11:19.0290 0x16e0 [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 18:11:19.0300 0x16e0 MsRPC - ok 18:11:19.0304 0x16e0 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 18:11:19.0308 0x16e0 mssmbios - ok 18:11:19.0311 0x16e0 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 18:11:19.0329 0x16e0 MSTEE - ok 18:11:19.0331 0x16e0 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 18:11:19.0338 0x16e0 MTConfig - ok 18:11:19.0340 0x16e0 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys 18:11:19.0346 0x16e0 Mup - ok 18:11:19.0355 0x16e0 [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll 18:11:19.0380 0x16e0 napagent - ok 18:11:19.0388 0x16e0 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 18:11:19.0400 0x16e0 NativeWifiP - ok 18:11:19.0414 0x16e0 [ 4DF6F43F761A600208F90A55D05F9B7E, AC93B4497FB428F7EC42DCF5956A2A61B951394E555BF6C89E55943E0B681586 ] NAUpdate C:\Program Files (x86)\Nero\Update\NASvc.exe 18:11:19.0429 0x16e0 NAUpdate - ok 18:11:19.0446 0x16e0 [ F7309F42555F8AAB7144A51A1F2585B0, 065277A8AFAEE3888C997A76D2F751070F92DF4C3354D16B194860B4BDAFF937 ] NDIS C:\Windows\system32\drivers\ndis.sys 18:11:19.0464 0x16e0 NDIS - ok 18:11:19.0467 0x16e0 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 18:11:19.0484 0x16e0 NdisCap - ok 18:11:19.0487 0x16e0 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 18:11:19.0504 0x16e0 NdisTapi - ok 18:11:19.0507 0x16e0 [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 18:11:19.0523 0x16e0 Ndisuio - ok 18:11:19.0528 0x16e0 [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 18:11:19.0547 0x16e0 NdisWan - ok 18:11:19.0550 0x16e0 [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 18:11:19.0567 0x16e0 NDProxy - ok 18:11:19.0569 0x16e0 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 18:11:19.0588 0x16e0 NetBIOS - ok 18:11:19.0594 0x16e0 [ E47D571FEC2C76E867935109AB2A770C, F349D25890B6F476B106FD75BFB081DB737CA9B224D95E44927942FFF2DF82CD ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 18:11:19.0604 0x16e0 NetBT - ok 18:11:19.0606 0x16e0 [ 61FF4456A65C5CF4CFF918F5C484F0A0, F9B6DDF62B4175093DD38C00520C7F0D52FBAB0077A8ED1391DD5188E400F481 ] Netlogon C:\Windows\system32\lsass.exe 18:11:19.0611 0x16e0 Netlogon - ok 18:11:19.0618 0x16e0 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll 18:11:19.0640 0x16e0 Netman - ok 18:11:19.0644 0x16e0 [ 0A84CDBA132359052C017888C2DFC8E6, C1B0524171E8E2BF2209747D4129018A38F8AC7737670B362CE9F691D57E8C07 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:11:19.0650 0x16e0 NetMsmqActivator - ok 18:11:19.0653 0x16e0 [ 0A84CDBA132359052C017888C2DFC8E6, C1B0524171E8E2BF2209747D4129018A38F8AC7737670B362CE9F691D57E8C07 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:11:19.0659 0x16e0 NetPipeActivator - ok 18:11:19.0668 0x16e0 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll 18:11:19.0692 0x16e0 netprofm - ok 18:11:19.0697 0x16e0 [ 0A84CDBA132359052C017888C2DFC8E6, C1B0524171E8E2BF2209747D4129018A38F8AC7737670B362CE9F691D57E8C07 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:11:19.0703 0x16e0 NetTcpActivator - ok 18:11:19.0706 0x16e0 [ 0A84CDBA132359052C017888C2DFC8E6, C1B0524171E8E2BF2209747D4129018A38F8AC7737670B362CE9F691D57E8C07 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:11:19.0713 0x16e0 NetTcpPortSharing - ok 18:11:19.0715 0x16e0 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 18:11:19.0720 0x16e0 nfrd960 - ok 18:11:19.0727 0x16e0 [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc C:\Windows\System32\nlasvc.dll 18:11:19.0738 0x16e0 NlaSvc - ok 18:11:19.0741 0x16e0 [ DE7FCC77F4A503AF4CA6A47D49B3713D, 4BFAA99393F635CD05D91A64DE73EDB5639412C129E049F0FE34F88517A10FC6 ] npf C:\Windows\system32\drivers\npf.sys 18:11:19.0746 0x16e0 npf - ok 18:11:19.0748 0x16e0 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys 18:11:19.0766 0x16e0 Npfs - ok 18:11:19.0768 0x16e0 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll 18:11:19.0787 0x16e0 nsi - ok 18:11:19.0790 0x16e0 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 18:11:19.0807 0x16e0 nsiproxy - ok 18:11:19.0833 0x16e0 [ 7FD5A7FB8F55254E9AF5666C653AF3CA, 5EE9805BB4A952AE455D08953FF12E55879776A521B3333F2730AC552DC17C48 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 18:11:19.0863 0x16e0 Ntfs - ok 18:11:19.0866 0x16e0 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys 18:11:19.0883 0x16e0 Null - ok 18:11:19.0887 0x16e0 [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys 18:11:19.0893 0x16e0 nvraid - ok 18:11:19.0897 0x16e0 [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys 18:11:19.0904 0x16e0 nvstor - ok 18:11:19.0908 0x16e0 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 18:11:19.0913 0x16e0 nv_agp - ok 18:11:19.0916 0x16e0 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 18:11:19.0922 0x16e0 ohci1394 - ok 18:11:19.0925 0x16e0 Origin Client Service - ok 18:11:19.0930 0x16e0 [ BCF967CBE47EE574E3C3793A9AD7F224, EF7C943FDD2C73C70AE56CCE929AADDB98967ADC5FB0F0B1C5BB35D1FD4CB255 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 18:11:19.0937 0x16e0 ose - ok 18:11:20.0015 0x16e0 [ FE9C0029E1AF26350D9985D00520E5C8, 967079CCF7B2CBD4B48C9F076675C26AF93A1CEC26C96811F279414E34004EE6 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE 18:11:20.0098 0x16e0 osppsvc - ok 18:11:20.0109 0x16e0 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 18:11:20.0121 0x16e0 p2pimsvc - ok 18:11:20.0129 0x16e0 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll 18:11:20.0141 0x16e0 p2psvc - ok 18:11:20.0145 0x16e0 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\DRIVERS\parport.sys 18:11:20.0152 0x16e0 Parport - ok 18:11:20.0155 0x16e0 [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys 18:11:20.0160 0x16e0 partmgr - ok 18:11:20.0165 0x16e0 [ 446462BBA744DA60379574926FD51EAB, 4A79E8EF28670333F4733FA0016508DC88E9BDC566B455DA5EDEDC514612180A ] PassThru Service C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe 18:11:20.0169 0x16e0 PassThru Service - detected UnsignedFile.Multi.Generic ( 1 ) 18:11:20.0169 0x16e0 PassThru Service ( UnsignedFile.Multi.Generic ) - warning 18:11:20.0169 0x16e0 Force sending object to P2P due to detect: PassThru Service 18:11:20.0170 0x16e0 Object send P2P result: false 18:11:20.0175 0x16e0 [ 3CD83692C43D87088E85E3C916146FFB, 9E812535E8FBA045FDA30F68E9EB2031132C37721D542A2DC9D4C33E2B137FCF ] PcaSvc C:\Windows\System32\pcasvc.dll 18:11:20.0185 0x16e0 PcaSvc - ok 18:11:20.0190 0x16e0 [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys 18:11:20.0197 0x16e0 pci - ok 18:11:20.0199 0x16e0 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys 18:11:20.0204 0x16e0 pciide - ok 18:11:20.0209 0x16e0 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 18:11:20.0216 0x16e0 pcmcia - ok 18:11:20.0219 0x16e0 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys 18:11:20.0224 0x16e0 pcw - ok 18:11:20.0226 0x16e0 PDF24 - ok 18:11:20.0238 0x16e0 [ EA4D67448BE493D543F1730D6CD04694, 24717C5E41B7CA522F3330EF2228B6685E710A5259396E9887A1C1E7A413F8CA ] PEAUTH C:\Windows\system32\drivers\peauth.sys 18:11:20.0256 0x16e0 PEAUTH - ok 18:11:20.0277 0x16e0 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe 18:11:20.0283 0x16e0 PerfHost - ok 18:11:20.0307 0x16e0 [ BC5F8C5C7ACCD0B884FCB8B67616F537, 5C99E9D7E7095CED52B1F5F4A569E54F124602C573DD2B25731E0D57FDA22A27 ] pla C:\Windows\system32\pla.dll 18:11:20.0336 0x16e0 pla - ok 18:11:20.0347 0x16e0 [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 18:11:20.0361 0x16e0 PlugPlay - ok 18:11:20.0364 0x16e0 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 18:11:20.0370 0x16e0 PNRPAutoReg - ok 18:11:20.0376 0x16e0 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 18:11:20.0385 0x16e0 PNRPsvc - ok 18:11:20.0394 0x16e0 [ 80D6B0563ED2BF10656B1D4748331082, B7E6B5E1148B7EE537E8D5C3A65450876B61CD45A395267D08699746E98AD574 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 18:11:20.0408 0x16e0 PolicyAgent - ok 18:11:20.0413 0x16e0 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll 18:11:20.0433 0x16e0 Power - ok 18:11:20.0436 0x16e0 [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 18:11:20.0454 0x16e0 PptpMiniport - ok 18:11:20.0457 0x16e0 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\DRIVERS\processr.sys 18:11:20.0463 0x16e0 Processor - ok 18:11:20.0468 0x16e0 [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc C:\Windows\system32\profsvc.dll 18:11:20.0478 0x16e0 ProfSvc - ok 18:11:20.0480 0x16e0 [ 61FF4456A65C5CF4CFF918F5C484F0A0, F9B6DDF62B4175093DD38C00520C7F0D52FBAB0077A8ED1391DD5188E400F481 ] ProtectedStorage C:\Windows\system32\lsass.exe 18:11:20.0486 0x16e0 ProtectedStorage - ok 18:11:20.0490 0x16e0 [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 18:11:20.0508 0x16e0 Psched - ok 18:11:20.0533 0x16e0 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 18:11:20.0560 0x16e0 ql2300 - ok 18:11:20.0565 0x16e0 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 18:11:20.0571 0x16e0 ql40xx - ok 18:11:20.0576 0x16e0 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll 18:11:20.0588 0x16e0 QWAVE - ok 18:11:20.0590 0x16e0 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 18:11:20.0598 0x16e0 QWAVEdrv - ok 18:11:20.0600 0x16e0 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 18:11:20.0617 0x16e0 RasAcd - ok 18:11:20.0620 0x16e0 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 18:11:20.0637 0x16e0 RasAgileVpn - ok 18:11:20.0641 0x16e0 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll 18:11:20.0660 0x16e0 RasAuto - ok 18:11:20.0663 0x16e0 [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 18:11:20.0682 0x16e0 Rasl2tp - ok 18:11:20.0689 0x16e0 [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll 18:11:20.0711 0x16e0 RasMan - ok 18:11:20.0714 0x16e0 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 18:11:20.0732 0x16e0 RasPppoe - ok 18:11:20.0735 0x16e0 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 18:11:20.0753 0x16e0 RasSstp - ok 18:11:20.0760 0x16e0 [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 18:11:20.0781 0x16e0 rdbss - ok 18:11:20.0784 0x16e0 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 18:11:20.0791 0x16e0 rdpbus - ok 18:11:20.0793 0x16e0 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 18:11:20.0809 0x16e0 RDPCDD - ok 18:11:20.0812 0x16e0 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 18:11:20.0829 0x16e0 RDPENCDD - ok 18:11:20.0831 0x16e0 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 18:11:20.0848 0x16e0 RDPREFMP - ok 18:11:20.0852 0x16e0 [ 313F68E1A3E6345A4F47A36B07062F34, B8318A0AE06BDE278931CA52F960B9FE226FD9894B076858DDB755AE26E1E66F ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys 18:11:20.0866 0x16e0 RdpVideoMiniport - ok 18:11:20.0873 0x16e0 [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 18:11:20.0882 0x16e0 RDPWD - ok 18:11:20.0888 0x16e0 [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 18:11:20.0895 0x16e0 rdyboost - ok 18:11:20.0899 0x16e0 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll 18:11:20.0919 0x16e0 RemoteAccess - ok 18:11:20.0923 0x16e0 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll 18:11:20.0944 0x16e0 RemoteRegistry - ok 18:11:20.0947 0x16e0 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 18:11:20.0966 0x16e0 RpcEptMapper - ok 18:11:20.0969 0x16e0 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe 18:11:20.0975 0x16e0 RpcLocator - ok 18:11:20.0983 0x16e0 [ 5E9F8D029D9B03110D835CBFC058068B, 038FDF99C643C8102026BA26A75899A56E91AD0C239DF71AA5443FD35C718C78 ] RpcSs C:\Windows\system32\rpcss.dll 18:11:20.0996 0x16e0 RpcSs - ok 18:11:21.0000 0x16e0 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 18:11:21.0018 0x16e0 rspndr - ok 18:11:21.0033 0x16e0 [ 439F755B450CF66B139742CA32AACF9F, DB047454CE026E71F7F5A0B4158D667D7E439A2B5A4F3CC008649FCDBA22A727 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys 18:11:21.0051 0x16e0 RTL8167 - ok 18:11:21.0054 0x16e0 [ 61FF4456A65C5CF4CFF918F5C484F0A0, F9B6DDF62B4175093DD38C00520C7F0D52FBAB0077A8ED1391DD5188E400F481 ] SamSs C:\Windows\system32\lsass.exe 18:11:21.0059 0x16e0 SamSs - ok 18:11:21.0063 0x16e0 [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 18:11:21.0068 0x16e0 sbp2port - ok 18:11:21.0073 0x16e0 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll 18:11:21.0093 0x16e0 SCardSvr - ok 18:11:21.0096 0x16e0 [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 18:11:21.0113 0x16e0 scfilter - ok 18:11:21.0130 0x16e0 [ 40686B59C127F0C93B4234E4A1E3472A, B2DD61CB796C6AA8AFD285D43472B94646CA6D331D282818E0FDC9DE28DDE9CF ] Schedule C:\Windows\system32\schedsvc.dll 18:11:21.0153 0x16e0 Schedule - ok 18:11:21.0157 0x16e0 [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll 18:11:21.0174 0x16e0 SCPolicySvc - ok 18:11:21.0178 0x16e0 [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll 18:11:21.0189 0x16e0 SDRSVC - ok 18:11:21.0191 0x16e0 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 18:11:21.0197 0x16e0 secdrv - ok 18:11:21.0200 0x16e0 [ A19623BDD61E66A12AB53992002B4F3A, E351CEEC086084A417BA3BD0EEF46114D3147EC38E3EF8BE49B724F9D028CC56 ] seclogon C:\Windows\system32\seclogon.dll 18:11:21.0207 0x16e0 seclogon - ok 18:11:21.0210 0x16e0 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll 18:11:21.0230 0x16e0 SENS - ok 18:11:21.0232 0x16e0 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll 18:11:21.0240 0x16e0 SensrSvc - ok 18:11:21.0242 0x16e0 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 18:11:21.0249 0x16e0 Serenum - ok 18:11:21.0252 0x16e0 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\DRIVERS\serial.sys 18:11:21.0260 0x16e0 Serial - ok 18:11:21.0263 0x16e0 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 18:11:21.0270 0x16e0 sermouse - ok 18:11:21.0275 0x16e0 [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll 18:11:21.0295 0x16e0 SessionEnv - ok 18:11:21.0298 0x16e0 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 18:11:21.0306 0x16e0 sffdisk - ok 18:11:21.0308 0x16e0 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 18:11:21.0315 0x16e0 sffp_mmc - ok 18:11:21.0317 0x16e0 [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 18:11:21.0324 0x16e0 sffp_sd - ok 18:11:21.0327 0x16e0 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 18:11:21.0334 0x16e0 sfloppy - ok 18:11:21.0341 0x16e0 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll 18:11:21.0364 0x16e0 SharedAccess - ok 18:11:21.0371 0x16e0 [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 18:11:21.0394 0x16e0 ShellHWDetection - ok 18:11:21.0397 0x16e0 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 18:11:21.0401 0x16e0 SiSRaid2 - ok 18:11:21.0404 0x16e0 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 18:11:21.0409 0x16e0 SiSRaid4 - ok 18:11:21.0412 0x16e0 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys 18:11:21.0430 0x16e0 Smb - ok 18:11:21.0434 0x16e0 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 18:11:21.0440 0x16e0 SNMPTRAP - ok 18:11:21.0442 0x16e0 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys 18:11:21.0447 0x16e0 spldr - ok 18:11:21.0456 0x16e0 [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe 18:11:21.0471 0x16e0 Spooler - ok 18:11:21.0525 0x16e0 [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe 18:11:21.0596 0x16e0 sppsvc - ok 18:11:21.0602 0x16e0 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll 18:11:21.0621 0x16e0 sppuinotify - ok 18:11:21.0629 0x16e0 [ 546C81F238F084A393EC54114741A0A8, AA223A2A8E8503CBDB0CE6A70620B372E0591070F9FF7D8532A93B54EF7B7E51 ] srv C:\Windows\system32\DRIVERS\srv.sys 18:11:21.0642 0x16e0 srv - ok 18:11:21.0650 0x16e0 [ 431D2B06E8F93EAEC53E8FA37FCFF2F1, 4CB94D250E9D2646FCE7284D4D3CED1BB02E4D79AD33A414D16EF794195868CA ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 18:11:21.0662 0x16e0 srv2 - ok 18:11:21.0667 0x16e0 [ 42EDAB3E3E8E25C7093674936C2DB4BD, B2D5E006B748F24F0FF2CEFFC3D056F3D50E8A818BDFF4231C87C022A25F44ED ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 18:11:21.0675 0x16e0 srvnet - ok 18:11:21.0680 0x16e0 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 18:11:21.0702 0x16e0 SSDPSRV - ok 18:11:21.0705 0x16e0 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll 18:11:21.0725 0x16e0 SstpSvc - ok 18:11:21.0730 0x16e0 [ F38232291F05CE25BA1C47FB51EB64CB, 7F72E87D02F3072E0D61D528BEBB8F4BFB6AD67FC94A93745493C9A0907FF435 ] ssudmdm C:\Windows\system32\DRIVERS\ssudmdm.sys 18:11:21.0737 0x16e0 ssudmdm - ok 18:11:21.0761 0x16e0 [ 0608A6DB82B8E6845BCC624051F31130, 9FF2993FFDC273AE8EB9F4E870620B6287024E013F778154F1A022A9370A1A34 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 18:11:21.0790 0x16e0 Steam Client Service - ok 18:11:21.0793 0x16e0 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 18:11:21.0798 0x16e0 stexstor - ok 18:11:21.0808 0x16e0 [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll 18:11:21.0826 0x16e0 stisvc - ok 18:11:21.0828 0x16e0 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\drivers\swenum.sys 18:11:21.0833 0x16e0 swenum - ok 18:11:21.0843 0x16e0 [ F577910A133A592234EBAAD3F3AFA258, 36F514740EE2D2B2F7ABFFFA13D575233EC4CE774EB58BF889C09930FEF1F443 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe 18:11:21.0855 0x16e0 SwitchBoard - detected UnsignedFile.Multi.Generic ( 1 ) 18:11:21.0855 0x16e0 SwitchBoard ( UnsignedFile.Multi.Generic ) - warning 18:11:21.0864 0x16e0 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll 18:11:21.0890 0x16e0 swprv - ok 18:11:21.0917 0x16e0 [ 2E730941CC5BF6200A4F56D1E9C24AAD, 758836D55DC84F3EBE9917DC6FAB8E6170A5B238FEDBCFDB6D7C5C6EA98E08B2 ] SysMain C:\Windows\system32\sysmain.dll 18:11:21.0949 0x16e0 SysMain - ok 18:11:21.0954 0x16e0 [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll 18:11:21.0964 0x16e0 TabletInputService - ok 18:11:21.0970 0x16e0 [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll 18:11:21.0992 0x16e0 TapiSrv - ok 18:11:22.0020 0x16e0 [ 7FB36A0A036ADDACE0A868E4A43C1C27, AFDCD57C49D06F31C02F37C81B67BA148CDC9B62AD62B771925D31339DDA9012 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 18:11:22.0052 0x16e0 Tcpip - ok 18:11:22.0080 0x16e0 [ 7FB36A0A036ADDACE0A868E4A43C1C27, AFDCD57C49D06F31C02F37C81B67BA148CDC9B62AD62B771925D31339DDA9012 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 18:11:22.0108 0x16e0 TCPIP6 - ok 18:11:22.0113 0x16e0 [ 7FE5586314EE7D6AA8483264A089E5AF, 4E3EA68713A45C22F1B9A1AA125E15D06D0C5E637B815537431ADFB6D7563879 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 18:11:22.0120 0x16e0 tcpipreg - ok 18:11:22.0126 0x16e0 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 18:11:22.0132 0x16e0 TDPIPE - ok 18:11:22.0135 0x16e0 [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 18:11:22.0140 0x16e0 TDTCP - ok 18:11:22.0143 0x16e0 [ 4DD986720F7CB7A8A5D1226793097B9A, 9020375B45E9C966BF44CF425C127D7E0EC82EB99C7047F225C25402FF97743D ] tdx C:\Windows\system32\DRIVERS\tdx.sys 18:11:22.0151 0x16e0 tdx - ok 18:11:22.0154 0x16e0 [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\drivers\termdd.sys 18:11:22.0160 0x16e0 TermDD - ok 18:11:22.0171 0x16e0 [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService C:\Windows\System32\termsrv.dll 18:11:22.0186 0x16e0 TermService - ok 18:11:22.0190 0x16e0 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll 18:11:22.0198 0x16e0 Themes - ok 18:11:22.0201 0x16e0 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll 18:11:22.0219 0x16e0 THREADORDER - ok 18:11:22.0223 0x16e0 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll 18:11:22.0243 0x16e0 TrkWks - ok 18:11:22.0248 0x16e0 [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 18:11:22.0267 0x16e0 TrustedInstaller - ok 18:11:22.0270 0x16e0 [ 19BEDA57F3E0A06B8D5EB6D619BD5624, 952D5FAFD662C93628C12A6F7EB8E240A44216C0A15CBD2F5016BC357CBFE821 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 18:11:22.0277 0x16e0 tssecsrv - ok 18:11:22.0280 0x16e0 [ E9981ECE8D894CEF7038FD1D040EB426, DCDDCE933CAECE8180A3447199B07F2F0413704EEC1A09606EE357901A84A7CF ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 18:11:22.0287 0x16e0 TsUsbFlt - ok 18:11:22.0291 0x16e0 [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 18:11:22.0309 0x16e0 tunnel - ok 18:11:22.0312 0x16e0 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 18:11:22.0317 0x16e0 uagp35 - ok 18:11:22.0323 0x16e0 [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 18:11:22.0344 0x16e0 udfs - ok 18:11:22.0348 0x16e0 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe 18:11:22.0356 0x16e0 UI0Detect - ok 18:11:22.0358 0x16e0 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 18:11:22.0364 0x16e0 uliagpkx - ok 18:11:22.0367 0x16e0 [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys 18:11:22.0373 0x16e0 umbus - ok 18:11:22.0375 0x16e0 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 18:11:22.0380 0x16e0 UmPass - ok 18:11:22.0390 0x16e0 [ 67A95B9D129ED5399E7965CD09CF30E7, F1F2F684146F1CCB293BB9871117B8CFC1D04588A830F67CE5D3F0D034D93B2A ] UMVPFSrv C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe 18:11:22.0400 0x16e0 UMVPFSrv - ok 18:11:22.0407 0x16e0 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll 18:11:22.0430 0x16e0 upnphost - ok 18:11:22.0433 0x16e0 [ B0435098C81D04CAFFF80DDB746CD3A2, A17B207740382E38729571F0B0BC98FF874E856A7C7CE9EB930328A2AD88F52A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys 18:11:22.0441 0x16e0 usbaudio - ok 18:11:22.0444 0x16e0 [ 28B81917A195B67617AF7DCF4DFE5736, 40A4D2AAE1BDE5ABA8708ED150396E913C566ECD5CDA40D6C6DB256F1B9FD4A9 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 18:11:22.0451 0x16e0 usbccgp - ok 18:11:22.0455 0x16e0 [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys 18:11:22.0462 0x16e0 usbcir - ok 18:11:22.0464 0x16e0 [ B626F048318DAE65A3317F0592BE592C, 284D8FFE1D35F852EFDA182A72288AC3A10D6ED825FE2CC5812497D3FE291AF1 ] usbehci C:\Windows\system32\drivers\usbehci.sys 18:11:22.0471 0x16e0 usbehci - ok 18:11:22.0478 0x16e0 [ 390109E8E05BA00375DCB1ED64DC60AF, B8628502590B423BEFB6F7C8C69FAD0667AD0746FF6B444EE02016E8E1052B78 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 18:11:22.0488 0x16e0 usbhub - ok 18:11:22.0490 0x16e0 [ B4DF0F4C1D9D25DFE1DAD1D8670F1D4F, 4317C2DEDC639527B53864BAEC46CBE022D298C0503E29E1072DD1C851D92BFC ] usbohci C:\Windows\system32\drivers\usbohci.sys 18:11:22.0496 0x16e0 usbohci - ok 18:11:22.0498 0x16e0 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 18:11:22.0505 0x16e0 usbprint - ok 18:11:22.0509 0x16e0 [ 9661DA76B4531B2DA272ECCE25A8AF24, FEA93254A21E71A7EB8AD35FCCAD2C1E41F7329EC33B1734F5B41307A34D8637 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys 18:11:22.0515 0x16e0 usbscan - ok 18:11:22.0518 0x16e0 [ D029DD09E22EB24318A8FC3D8138BA43, C95805E8BF75ECB939520AE86420B16467B0771C161C51C9F1A37649ADFADCD0 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 18:11:22.0525 0x16e0 USBSTOR - ok 18:11:22.0527 0x16e0 [ CFEAAF96E666E3DCBD8F6DFF516784AE, 006218A3DB5851790CC0A7F3DCD7B3AF82F624DA679296DE507AFD36C5468317 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 18:11:22.0533 0x16e0 usbuhci - ok 18:11:22.0536 0x16e0 [ 7B28E2FBE75115660FAB31079C0A9F29, 81BB5A3E64B652A672A0782A88ABF6DDD729D38712D0706CE0FB9DE6D1EE1515 ] usb_rndisx C:\Windows\system32\DRIVERS\usb8023x.sys 18:11:22.0542 0x16e0 usb_rndisx - ok 18:11:22.0545 0x16e0 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll 18:11:22.0563 0x16e0 UxSms - ok 18:11:22.0565 0x16e0 [ 61FF4456A65C5CF4CFF918F5C484F0A0, F9B6DDF62B4175093DD38C00520C7F0D52FBAB0077A8ED1391DD5188E400F481 ] VaultSvc C:\Windows\system32\lsass.exe 18:11:22.0570 0x16e0 VaultSvc - ok 18:11:22.0573 0x16e0 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 18:11:22.0578 0x16e0 vdrvroot - ok 18:11:22.0587 0x16e0 [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe 18:11:22.0612 0x16e0 vds - ok 18:11:22.0615 0x16e0 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 18:11:22.0622 0x16e0 vga - ok 18:11:22.0624 0x16e0 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys 18:11:22.0641 0x16e0 VgaSave - ok 18:11:22.0646 0x16e0 [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 18:11:22.0654 0x16e0 vhdmp - ok 18:11:22.0657 0x16e0 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys 18:11:22.0661 0x16e0 viaide - ok 18:11:22.0664 0x16e0 [ 57F53D802486F346BF0110F56B4B07D1, 7B31CE1010ED51350D5C69D5D4C93A1E55053887AEBCF7C3899901139BD67C8D ] vmkbd3 C:\Windows\system32\DRIVERS\vmkbd.sys 18:11:22.0670 0x16e0 vmkbd3 - ok 18:11:22.0673 0x16e0 [ 1CA7A1295E0DF2DB74EA2005FF1B47D1, A9F5634782FD7887BEB445A76FF5E27F3311AB5B3397C9A9A61220F417A51BF7 ] VMnetAdapter C:\Windows\system32\DRIVERS\vmnetadapter.sys 18:11:22.0678 0x16e0 VMnetAdapter - ok 18:11:22.0681 0x16e0 [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys 18:11:22.0687 0x16e0 volmgr - ok 18:11:22.0693 0x16e0 [ 85C5468BC395819AE2A0C747334BA14C, 75EB4751F90F3347229442A5622539383CE0B1834EE7B995260D0D433BA2E25F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 18:11:22.0703 0x16e0 volmgrx - ok 18:11:22.0709 0x16e0 [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys 18:11:22.0717 0x16e0 volsnap - ok 18:11:22.0721 0x16e0 [ C9D128C4A4C2642A64959FDA6D255523, E429DAD7B6879CE0D65A63A9DB44842BD02563855A85016F99E70BBA6C0356C2 ] voxaldriver C:\Windows\system32\DRIVERS\voxaldriverx64.sys 18:11:22.0725 0x16e0 voxaldriver - ok 18:11:22.0730 0x16e0 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 18:11:22.0736 0x16e0 vsmraid - ok 18:11:22.0760 0x16e0 [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe 18:11:22.0801 0x16e0 VSS - ok 18:11:22.0803 0x16e0 VSStandardCollectorService140 - ok 18:11:22.0806 0x16e0 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 18:11:22.0813 0x16e0 vwifibus - ok 18:11:22.0820 0x16e0 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll 18:11:22.0843 0x16e0 W32Time - ok 18:11:22.0847 0x16e0 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 18:11:22.0852 0x16e0 WacomPen - ok 18:11:22.0856 0x16e0 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 18:11:22.0873 0x16e0 WANARP - ok 18:11:22.0875 0x16e0 [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 18:11:22.0892 0x16e0 Wanarpv6 - ok 18:11:22.0916 0x16e0 [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe 18:11:22.0945 0x16e0 wbengine - ok 18:11:22.0951 0x16e0 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 18:11:22.0962 0x16e0 WbioSrvc - ok 18:11:22.0969 0x16e0 [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll 18:11:22.0983 0x16e0 wcncsvc - ok 18:11:22.0987 0x16e0 [ BC00873272B3771CCDA38336AF2B4D4B, 3E412DEC5F172B4C5FD5C227CD790EE56B90A00A8B538704E8F973D230BE2289 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 18:11:22.0995 0x16e0 WcsPlugInService - ok 18:11:22.0997 0x16e0 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\DRIVERS\wd.sys 18:11:23.0001 0x16e0 Wd - ok 18:11:23.0015 0x16e0 [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 18:11:23.0032 0x16e0 Wdf01000 - ok 18:11:23.0036 0x16e0 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost C:\Windows\system32\wdi.dll 18:11:23.0044 0x16e0 WdiServiceHost - ok 18:11:23.0046 0x16e0 [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost C:\Windows\system32\wdi.dll 18:11:23.0053 0x16e0 WdiSystemHost - ok 18:11:23.0059 0x16e0 [ EE841B6D1F2B9508D3ABAE52AC05A94F, F1AE981FCDBFC4672A4EABABD41382E93762EFC2EDAD96E75530E7ACA5AF1FD8 ] WebClient C:\Windows\System32\webclnt.dll 18:11:23.0071 0x16e0 WebClient - ok 18:11:23.0076 0x16e0 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll 18:11:23.0098 0x16e0 Wecsvc - ok 18:11:23.0101 0x16e0 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll 18:11:23.0121 0x16e0 wercplsupport - ok 18:11:23.0124 0x16e0 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll 18:11:23.0144 0x16e0 WerSvc - ok 18:11:23.0146 0x16e0 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 18:11:23.0165 0x16e0 WfpLwf - ok 18:11:23.0167 0x16e0 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys 18:11:23.0172 0x16e0 WIMMount - ok 18:11:23.0174 0x16e0 WinDefend - ok 18:11:23.0176 0x16e0 WinHttpAutoProxySvc - ok 18:11:23.0184 0x16e0 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 18:11:23.0206 0x16e0 Winmgmt - ok 18:11:23.0236 0x16e0 [ EBDA1B0F15CB9B2CBCC6C94824E4E054, C51314F7D611E4903DA00EFA8EB99365414436324D256083CE0B5A8E055E8E06 ] WinRM C:\Windows\system32\WsmSvc.dll 18:11:23.0276 0x16e0 WinRM - ok 18:11:23.0282 0x16e0 [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 18:11:23.0289 0x16e0 WinUsb - ok 18:11:23.0304 0x16e0 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll 18:11:23.0326 0x16e0 Wlansvc - ok 18:11:23.0363 0x16e0 [ 357CABBF155AFD1D3926E62539D2A3A7, C43CFF84E7D930B4999DC061AB0766B57AAD7540B3E6EE54605B10ECE90825F5 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 18:11:23.0400 0x16e0 wlidsvc - ok 18:11:23.0404 0x16e0 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 18:11:23.0410 0x16e0 WmiAcpi - ok 18:11:23.0416 0x16e0 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 18:11:23.0425 0x16e0 wmiApSrv - ok 18:11:23.0427 0x16e0 WMPNetworkSvc - ok 18:11:23.0429 0x16e0 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll 18:11:23.0436 0x16e0 WPCSvc - ok 18:11:23.0439 0x16e0 [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 18:11:23.0448 0x16e0 WPDBusEnum - ok 18:11:23.0450 0x16e0 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 18:11:23.0467 0x16e0 ws2ifsl - ok 18:11:23.0477 0x16e0 [ 103CCD4D3CE1FF6AF01F0FABA6B290AB, A8A7B847A11718A570D722060A9A09369027F03FCC32EB7AA21BF5F70AFBB651 ] WsAppService C:\Program Files (x86)\Wondershare\WAF\2.4.3.227\WsAppService.exe 18:11:23.0489 0x16e0 WsAppService - ok 18:11:23.0493 0x16e0 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\System32\wscsvc.dll 18:11:23.0503 0x16e0 wscsvc - ok 18:11:23.0505 0x16e0 [ 8D918B1DB190A4D9B1753A66FA8C96E8, DB7D2714DC04D2D6999A207D7399A5647C8653E5A1AD80856A65C5B6065AEDFE ] WSDPrintDevice C:\Windows\system32\DRIVERS\WSDPrint.sys 18:11:23.0512 0x16e0 WSDPrintDevice - ok 18:11:23.0540 0x16e0 [ 9EEBDF7B21D16A8AF897D30607C2AB45, C86D3C16314A5A3C843A4F8316E46E22AC7BB5E54F3750050A2C56DC09E9ABCD ] WsDrvInst D:\Program Files (x86)\Wondershare\Dr.Fone for Android\Library\DriverInstaller\DriverInstall.exe 18:11:23.0545 0x16e0 WsDrvInst - ok 18:11:23.0548 0x16e0 [ 4A2A5C50DD1A63577D3ACA94269FBC7F, F75C1906D431CF871AD954218DF32A0F206E45FF49332DEF9F13C0A36A407047 ] WSDScan C:\Windows\system32\DRIVERS\WSDScan.sys 18:11:23.0553 0x16e0 WSDScan - ok 18:11:23.0554 0x16e0 WSearch - ok 18:11:23.0593 0x16e0 [ 88009DB9E1166B6B6713A858C176FECD, CBF4C63D3C5D14AF3C3F0D9C48E5AC9E7A4323BFB0363E9948FD801963BE1467 ] wuauserv C:\Windows\system32\wuaueng.dll 18:11:23.0635 0x16e0 wuauserv - ok 18:11:23.0640 0x16e0 [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 18:11:23.0647 0x16e0 WudfPf - ok 18:11:23.0654 0x16e0 [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 18:11:23.0663 0x16e0 WUDFRd - ok 18:11:23.0666 0x16e0 [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 18:11:23.0674 0x16e0 wudfsvc - ok 18:11:23.0680 0x16e0 [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll 18:11:23.0689 0x16e0 WwanSvc - ok
__________________ Gruß Enra93 |
10.09.2018, 19:24 | #11 |
| Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet)Code:
ATTFilter 18:11:23.0693 0x16e0 ================ Scan global =============================== 18:11:23.0695 0x16e0 [ 168EA9CD9BD6056BB6F60B57D5304BBE, 5A2F98754F042A7D80E7483842967EB362F01D57CE9720B24C7EDAA047F24C6F ] C:\Windows\system32\basesrv.dll 18:11:23.0700 0x16e0 [ 8925F0181AB6A43A4AF6420211FDEC47, E795784FE4C62B463800C712D7E6AD855E22C80261C31DC8F3E3B9B6F2808B2F ] C:\Windows\system32\winsrv.dll 18:11:23.0708 0x16e0 [ 8925F0181AB6A43A4AF6420211FDEC47, E795784FE4C62B463800C712D7E6AD855E22C80261C31DC8F3E3B9B6F2808B2F ] C:\Windows\system32\winsrv.dll 18:11:23.0713 0x16e0 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll 18:11:23.0720 0x16e0 [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe 18:11:23.0724 0x16e0 [ Global ] - ok 18:11:23.0725 0x16e0 ================ Scan MBR ================================== 18:11:23.0726 0x16e0 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk2\DR2 18:11:23.0787 0x16e0 \Device\Harddisk2\DR2 - ok 18:11:23.0788 0x16e0 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1 18:11:23.0836 0x16e0 \Device\Harddisk1\DR1 - ok 18:11:23.0839 0x16e0 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 18:11:24.0443 0x16e0 \Device\Harddisk0\DR0 - ok 18:11:24.0443 0x16e0 ================ Scan VBR ================================== 18:11:24.0449 0x16e0 [ 1A1291110FDA7E5F1BE35382E2F5E8B1 ] \Device\Harddisk2\DR2\Partition1 18:11:24.0451 0x16e0 \Device\Harddisk2\DR2\Partition1 - ok 18:11:24.0456 0x16e0 [ 5FD6BE246B3C354F2C2ECF5AC95021ED ] \Device\Harddisk2\DR2\Partition2 18:11:24.0458 0x16e0 \Device\Harddisk2\DR2\Partition2 - ok 18:11:24.0463 0x16e0 [ 3599B3FE75EBB7F8FD3B67298679FE57 ] \Device\Harddisk1\DR1\Partition1 18:11:24.0466 0x16e0 \Device\Harddisk1\DR1\Partition1 - ok 18:11:24.0470 0x16e0 [ 0DD92FFE13BCEAAE73D7664E64233EA8 ] \Device\Harddisk0\DR0\Partition1 18:11:24.0473 0x16e0 \Device\Harddisk0\DR0\Partition1 - ok 18:11:24.0473 0x16e0 ================ Scan generic autorun ====================== 18:11:24.0490 0x16e0 [ 63B913AAB1244D8DED54CF0EFC8A56BD, 639830E9ECB004F09EA968EDF68C0037B5DFF7CCFF007DE5D11DEF2166707341 ] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe 18:11:24.0508 0x16e0 AdobeAAMUpdater-1.0 - ok 18:11:24.0511 0x16e0 [ C36BB659F08F046B139C8D1B980BF1AC, 405F03534BE8B45185695F68DEB47D4DAF04DCD6DF9D351CA6831D3721B1EFC4 ] C:\Windows\system32\rundll32.exe 18:11:24.0524 0x16e0 Logitech Download Assistant - ok 18:11:24.0595 0x16e0 [ 6C1D16D4275DBC2B4D05377BF9408319, 38443F6EDB2E4C0210BC8A157C0699E63450ED4F1CE5C2A8D45ACC7A6BB67314 ] C:\Program Files\AMD\CNext\CNext\cnext.exe 18:11:24.0669 0x16e0 StartCN - ok 18:11:24.0679 0x16e0 [ 7DC06D017872420EAFBD512225F8F4E2, FF47A89958AB9995DC8CAE1848528C326B9306E88E19ACC25ED23D64EFA0DF66 ] C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe 18:11:24.0689 0x16e0 AdobeGCInvoker-1.0 - ok 18:11:24.0694 0x16e0 [ 35048D8E8A0BF7A797CD5757ACD7EED0, 890FCF24869614B3990B575A588ECB35C25A5B896F21BF9C66D43C93787FDD7A ] C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe 18:11:24.0699 0x16e0 CLMLServer - ok 18:11:24.0703 0x16e0 [ C049C40CAEE8900130BD5F80B594CC7B, F54FC31662A9B8032B380793D534F34A0C63FED9C84DE313D17A61612EB31DC4 ] C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe 18:11:24.0708 0x16e0 RemoteControl10 - ok 18:11:24.0713 0x16e0 [ 0CD7D396138D325400CB5A0D964EBE08, 6C347E9483FBF48212F560F9A2B1B49C4066D4F8437C3C8B579129FEAE28460E ] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe 18:11:24.0719 0x16e0 BDRegion - ok 18:11:24.0721 0x16e0 [ 9D56299FA5C9B3D9E67FF3ACB301139F, 202A0542BEA33C5F78A406EF9479EB7BD42FCBEAC9F49F38F6ECC48554117811 ] C:\Program Files (x86)\lg_fwupdate\lgfw.exe 18:11:24.0724 0x16e0 LGODDFU - ok 18:11:24.0734 0x16e0 [ F577910A133A592234EBAAD3F3AFA258, 36F514740EE2D2B2F7ABFFFA13D575233EC4CE774EB58BF889C09930FEF1F443 ] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe 18:11:24.0744 0x16e0 SwitchBoard - detected UnsignedFile.Multi.Generic ( 1 ) 18:11:24.0744 0x16e0 SwitchBoard ( UnsignedFile.Multi.Generic ) - warning 18:11:24.0744 0x16e0 Force sending object to P2P due to detect: C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe 18:11:24.0746 0x16e0 Object send P2P result: false 18:11:24.0763 0x16e0 [ 3EE19173AC7BB16AD239B195D97C13B0, A9E5FC90F20DC7500A186C9D184ED55BC04038FFC6D97714E64C660EAE808A98 ] C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe 18:11:24.0783 0x16e0 AdobeCS6ServiceManager - ok 18:11:24.0790 0x16e0 [ E7594F966F61CFECC9B70350589DEBBF, FE37A8E1ED47486FFF9083032E3B555E9B0D91A0C964019E27EFF2C5F1272D07 ] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe 18:11:24.0797 0x16e0 IJNetworkScannerSelectorEX2 - ok 18:11:24.0817 0x16e0 [ 8A32FF690135458F5563C836D6AC9A10, FDEF87A07B4AFCC0C8D230197A5D6E3313A82FCC3A7BE4EDDAF96E1C189213FF ] C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE 18:11:24.0840 0x16e0 CanonQuickMenu - ok 18:11:24.0897 0x16e0 [ E67118779196D1FDB49899709B62CBD5, E2891E34735C29018831818A58DA40900179A90A68FC92C6C903C57947AF73FC ] C:\Program Files (x86)\Dropbox\Client\Dropbox.exe 18:11:24.0959 0x16e0 Dropbox - ok 18:11:24.0968 0x16e0 [ 405D71583114582DCE7DDCEB87B8BD35, 586622D1D056509A84DB423160E9989F77ECA4E9F471B3467EB14EC56E755516 ] C:\Program Files (x86)\PDF24\pdf24.exe 18:11:24.0979 0x16e0 PDFPrint - ok 18:11:24.0999 0x16e0 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 18:11:25.0024 0x16e0 Sidebar - ok 18:11:25.0027 0x16e0 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 18:11:25.0037 0x16e0 mctadmin - ok 18:11:25.0056 0x16e0 [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 18:11:25.0075 0x16e0 Sidebar - ok 18:11:25.0078 0x16e0 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 18:11:25.0087 0x16e0 mctadmin - ok 18:11:25.0094 0x16e0 [ CC436BB2A26391F3DEBE316F6FB0474F, 2DA63827AD1449CA5F2888ADFA9645F1EAF8B39D26EC214441EE80F3A56E6E72 ] C:\Users\Arne\AppData\Local\Microsoft\BingSvc\BingSvc.exe 18:11:25.0100 0x16e0 BingSvc - ok 18:11:25.0137 0x16e0 [ 4A23B327CAD20CCB29B542001D3BA590, 84D9FBF71F5F4830C2B67AA72C1203BC844FA51616AA0CF3C3F9E5BCD049AAB5 ] C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe 18:11:25.0178 0x16e0 VideoDownloaderUltimate - ok 18:11:25.0191 0x16e0 [ 678DD73CA364411BCF431892B8F878DA, 0853A5FB66DDB187947BF9A51789728B75E34885592F51C2BBBC583729B23E40 ] C:\Users\Arne\AppData\Local\Google\Update\1.3.33.17\GoogleUpdateCore.exe 18:11:25.0204 0x16e0 Google Update - ok 18:11:25.0214 0x16e0 Win FW state via NFP2: disabled ( trusted ) 18:11:25.0214 0x16e0 ============================================================ 18:11:25.0214 0x16e0 Scan finished 18:11:25.0214 0x16e0 ============================================================ 18:11:25.0219 0x1768 Detected object count: 4 18:11:25.0219 0x1768 Actual detected object count: 4 18:11:53.0252 0x1768 DigitalWave.Update.Service ( UnsignedFile.Multi.Generic ) - skipped by user 18:11:53.0252 0x1768 DigitalWave.Update.Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 18:11:53.0254 0x1768 PassThru Service ( UnsignedFile.Multi.Generic ) - skipped by user 18:11:53.0254 0x1768 PassThru Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 18:11:53.0256 0x1768 SwitchBoard ( UnsignedFile.Multi.Generic ) - skipped by user 18:11:53.0256 0x1768 SwitchBoard ( UnsignedFile.Multi.Generic ) - User select action: Skip 18:11:53.0258 0x1768 SwitchBoard ( UnsignedFile.Multi.Generic ) - skipped by user 18:11:53.0258 0x1768 SwitchBoard ( UnsignedFile.Multi.Generic ) - User select action: Skip 18:13:41.0857 0x165c ============================================================ 18:13:41.0857 0x165c Scan started 18:13:41.0857 0x165c Mode: Manual; SigCheck; TDLFS; 18:13:41.0857 0x165c ============================================================ 18:13:41.0857 0x165c KSN ping started 18:13:42.0879 0x165c KSN ping finished: false 18:13:43.0735 0x165c ================ Scan system memory ======================== 18:13:43.0735 0x165c System memory - ok 18:13:43.0735 0x165c ================ Scan services ============================= 18:13:43.0767 0x165c [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 18:13:43.0783 0x165c 1394ohci - ok 18:13:43.0796 0x165c [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys 18:13:43.0806 0x165c ACPI - ok 18:13:43.0808 0x165c [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 18:13:43.0815 0x165c AcpiPmi - ok 18:13:43.0833 0x165c AdobeFlashPlayerUpdateSvc - ok 18:13:43.0841 0x165c [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 18:13:43.0852 0x165c adp94xx - ok 18:13:43.0859 0x165c [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 18:13:43.0868 0x165c adpahci - ok 18:13:43.0872 0x165c [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 18:13:43.0878 0x165c adpu320 - ok 18:13:43.0882 0x165c [ 262D7C87D0AC20B96EF9877D3CA478A0, 54F7E5A5F8991C5525500C1ECCF3D3135D13F48866C366E52DF1D052DB2EE15B ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 18:13:43.0887 0x165c AeLookupSvc - ok 18:13:43.0896 0x165c [ 0DC2A9882540DEA4A55B08785E09D8FC, 69B15724B0034F9915AACE109A6C596D6AF2DA350FC18C9A0CD98C81CB7EDEE3 ] AFD C:\Windows\system32\drivers\afd.sys 18:13:43.0908 0x165c AFD - ok 18:13:43.0945 0x165c [ 3D1BB871A893182B0058A4898D5AFE29, 77AAD5ADD3C0F6AE2056CD4891644CE7F12946B05A4BDBCC711A1BD3B2C650C2 ] AGMService C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe 18:13:43.0990 0x165c AGMService - ok 18:13:43.0996 0x165c [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys 18:13:44.0001 0x165c agp440 - ok 18:13:44.0032 0x165c [ C20CA26CDE768CA950C622B866292FC2, 007B142A02B3676F320F9BBB92AAAE1589938FD19D20701655114CE84588526B ] AGSService C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe 18:13:44.0074 0x165c AGSService - ok 18:13:44.0080 0x165c [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 18:13:44.0086 0x165c ALG - ok 18:13:44.0088 0x165c [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys 18:13:44.0093 0x165c aliide - ok 18:13:44.0098 0x165c [ 1988ACBAB87EF67E63EC2D00A0CF5B26, 7B2C20E9E25289FE54D393F04C540C43C75AEEB11B4FFA31866FF7B23F8AFF66 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe 18:13:44.0108 0x165c AMD External Events Utility - ok 18:13:44.0110 0x165c [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys 18:13:44.0114 0x165c amdide - ok 18:13:44.0117 0x165c [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 18:13:44.0122 0x165c AmdK8 - ok 18:13:44.0124 0x165c amdkmdag - ok 18:13:44.0135 0x165c [ 1E2E0FD45B2F9ADD2E5A5125D44F9BCE, B4D65566D15A26865A1506B5BE0E5E0CFBCCB655A2AD358314628FA37169EB6B ] amdkmdap C:\Windows\system32\DRIVERS\atikmpag.sys 18:13:44.0150 0x165c amdkmdap - ok 18:13:44.0154 0x165c [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 18:13:44.0159 0x165c AmdPPM - ok 18:13:44.0163 0x165c [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys 18:13:44.0168 0x165c amdsata - ok 18:13:44.0173 0x165c [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 18:13:44.0180 0x165c amdsbs - ok 18:13:44.0182 0x165c [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys 18:13:44.0187 0x165c amdxata - ok 18:13:44.0189 0x165c [ 4542CC17440E85D2D2D73A7D40FAED0A, F157F9A137DEACFC5A1A982265F5CE05A79C0CF8F13291773E2351BEFCB94E08 ] Apowersoft_AudioDevice C:\Windows\system32\drivers\Apowersoft_AudioDevice.sys 18:13:44.0194 0x165c Apowersoft_AudioDevice - ok 18:13:44.0196 0x165c [ F5206C19AAD6BA60360888E9A20396C7, CB4D257F463DCAB6F79605AFA1A1850561447D11B2219C19302129F8FE7E3B71 ] AppID C:\Windows\system32\drivers\appid.sys 18:13:44.0202 0x165c AppID - ok 18:13:44.0204 0x165c [ 56CDF84E681464371CF7385E97406113, 95B80252D1534A1E25F4FA4EC08C80A39E233E0F599DF037B954D1898FA6B787 ] AppIDSvc C:\Windows\System32\appidsvc.dll 18:13:44.0209 0x165c AppIDSvc - ok 18:13:44.0212 0x165c [ DE23E052E557580674785CDF45B613F3, A955ADC6CC7D816BA7CE1065F911E7A3295A1908C22BE0A3C506C38CFEE8DE0D ] Appinfo C:\Windows\System32\appinfo.dll 18:13:44.0218 0x165c Appinfo - ok 18:13:44.0222 0x165c [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\DRIVERS\arc.sys 18:13:44.0227 0x165c arc - ok 18:13:44.0230 0x165c [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 18:13:44.0235 0x165c arcsas - ok 18:13:44.0244 0x165c [ 92C120176C43C62AFE107B5D945CE6EC, E3BA1200BD04167589D7AF29F6550F3242DB321DDCD6890D645A2053CC78C7E6 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 18:13:44.0249 0x165c aspnet_state - ok 18:13:44.0253 0x165c [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 18:13:44.0270 0x165c AsyncMac - ok 18:13:44.0273 0x165c [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys 18:13:44.0277 0x165c atapi - ok 18:13:44.0281 0x165c [ 80AA9265E820A8667EDEF731E31335B6, 549DC0BCF988F25CF3F89A784DC9B97C6D4DF697302F5CF467EFA2B816991A52 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys 18:13:44.0287 0x165c AtiHDAudioService - ok 18:13:44.0300 0x165c [ 67C717EC24FCAAE7B518D9E06AD036AB, F08550E4FCEC2899FACEF2A18CEE3D068D5911FFD2FF5534E4921E56FB0AEF59 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 18:13:44.0313 0x165c AudioEndpointBuilder - ok 18:13:44.0325 0x165c [ 67C717EC24FCAAE7B518D9E06AD036AB, F08550E4FCEC2899FACEF2A18CEE3D068D5911FFD2FF5534E4921E56FB0AEF59 ] AudioSrv C:\Windows\System32\Audiosrv.dll 18:13:44.0338 0x165c AudioSrv - ok 18:13:44.0342 0x165c [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll 18:13:44.0351 0x165c AxInstSV - ok 18:13:44.0360 0x165c [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 18:13:44.0370 0x165c b06bdrv - ok 18:13:44.0377 0x165c [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 18:13:44.0385 0x165c b57nd60a - ok 18:13:44.0389 0x165c [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 18:13:44.0395 0x165c BDESVC - ok 18:13:44.0397 0x165c [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 18:13:44.0413 0x165c Beep - ok 18:13:44.0507 0x165c [ ED48EB300FAF75F58E2B502E709CE661, 332AF05F8644F5AE24237FC664D67152097D3969A76F3A7C8EF33B74B46D3D70 ] BEService C:\Program Files (x86)\Common Files\BattlEye\BEService.exe 18:13:44.0603 0x165c BEService - ok 18:13:44.0621 0x165c [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll 18:13:44.0635 0x165c BFE - ok 18:13:44.0649 0x165c [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll 18:13:44.0677 0x165c BITS - ok 18:13:44.0680 0x165c [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 18:13:44.0685 0x165c blbdrive - ok 18:13:44.0688 0x165c [ ABA3984C822E4D3F889699912D85D6C5, 2251FA135CC290DA13DAE4743F393C7CC9E6A737C054707CB8D72C369D1FFACB ] bowser C:\Windows\system32\DRIVERS\bowser.sys 18:13:44.0695 0x165c bowser - ok 18:13:44.0697 0x165c [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 18:13:44.0704 0x165c BrFiltLo - ok 18:13:44.0706 0x165c [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 18:13:44.0713 0x165c BrFiltUp - ok 18:13:44.0717 0x165c [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll 18:13:44.0723 0x165c Browser - ok 18:13:44.0729 0x165c [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 18:13:44.0738 0x165c Brserid - ok 18:13:44.0740 0x165c [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 18:13:44.0747 0x165c BrSerWdm - ok 18:13:44.0749 0x165c [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 18:13:44.0755 0x165c BrUsbMdm - ok 18:13:44.0757 0x165c [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 18:13:44.0762 0x165c BrUsbSer - ok 18:13:44.0766 0x165c BstHdDrv - ok 18:13:44.0771 0x165c [ AE5ADD416B20A7E39E71E4F8B46467E4, F056C14E8C9983424B67B6C5EF009517B0C2146ABBAA856EFB45058FAD7408BA ] BstkDrv C:\Program Files (x86)\BlueStacks\BstkDrv.sys 18:13:44.0780 0x165c BstkDrv - ok 18:13:44.0783 0x165c [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 18:13:44.0790 0x165c BTHMODEM - ok 18:13:44.0794 0x165c [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 18:13:44.0813 0x165c bthserv - ok 18:13:44.0816 0x165c [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 18:13:44.0834 0x165c cdfs - ok 18:13:44.0838 0x165c [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 18:13:44.0845 0x165c cdrom - ok 18:13:44.0848 0x165c [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll 18:13:44.0864 0x165c CertPropSvc - ok 18:13:44.0869 0x165c [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\DRIVERS\circlass.sys 18:13:44.0876 0x165c circlass - ok 18:13:44.0883 0x165c [ 3963FEC1892368DD500E6ED1F5C286CE, A04689CB07AF1C1B4B1032B0ACAD88DA3EB03D89A575C59FE602A65E8C246138 ] CLFS C:\Windows\system32\CLFS.sys 18:13:44.0892 0x165c CLFS - ok 18:13:45.0020 0x165c [ D47D4B492814A7D004389486E08FD3F1, 82E4376D29545F9BE0AE86B8BED393FEEEB1E4EE520E9167EEFEFA5DC09E158C ] ClickToRunSvc C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe 18:13:45.0139 0x165c ClickToRunSvc - ok 18:13:45.0155 0x165c [ A1DB80A012F4C1C3DA78688E08BFBE80, 419349DAA67A355A11F99D5B1B50F70BA8C9544FE2783CA358B641305B3383B4 ] CLKMSVC10_38F51D56 C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe 18:13:45.0162 0x165c CLKMSVC10_38F51D56 - ok 18:13:45.0167 0x165c [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 18:13:45.0171 0x165c clr_optimization_v2.0.50727_32 - ok 18:13:45.0175 0x165c [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 18:13:45.0180 0x165c clr_optimization_v2.0.50727_64 - ok 18:13:45.0187 0x165c [ 1A3D6CABDC37B34D85059185272DBB2F, C7FAB62EC4D9947ADAD0E065D4CDAF8D6EA2AF9FD0C3A1F1A676276825808FD8 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 18:13:45.0192 0x165c clr_optimization_v4.0.30319_32 - ok 18:13:45.0196 0x165c [ 59B44C95D56A9BB269B1D4A3F25468C2, 462799657FA493866A14F0D36D5D92C95E8886E6AC5F199D069E6938425A9218 ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 18:13:45.0202 0x165c clr_optimization_v4.0.30319_64 - ok 18:13:45.0204 0x165c [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 18:13:45.0209 0x165c CmBatt - ok 18:13:45.0211 0x165c [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys 18:13:45.0215 0x165c cmdide - ok 18:13:45.0224 0x165c [ A98CED39AD91B445E2E442A9BD67E8B4, B4189DEEF1C0EE22AE983119047B1A40FFDD8F3E163DFFABD7C2706231B0B1B0 ] CNG C:\Windows\system32\Drivers\cng.sys 18:13:45.0237 0x165c CNG - ok 18:13:45.0240 0x165c [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 18:13:45.0245 0x165c Compbatt - ok 18:13:45.0247 0x165c [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\drivers\CompositeBus.sys 18:13:45.0254 0x165c CompositeBus - ok 18:13:45.0256 0x165c COMSysApp - ok 18:13:45.0259 0x165c [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 18:13:45.0263 0x165c crcdisk - ok 18:13:45.0268 0x165c [ 48FEDBE324F1EA9417BA1D62AE863011, 2C3D84F0842237A3BF2838DDB4126807977EB36588FA669B1E6671077584EF18 ] CryptSvc C:\Windows\system32\cryptsvc.dll 18:13:45.0277 0x165c CryptSvc - ok 18:13:45.0282 0x165c [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdate C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe 18:13:45.0288 0x165c dbupdate - ok 18:13:45.0291 0x165c [ A1F58FFF448E4099297D6EE0641D4D0E, 47839789332AAF8861F7731BF2D3FBB5E0991EA0D0B457BB4C8C1784F76C73DC ] dbupdatem C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe 18:13:45.0297 0x165c dbupdatem - ok 18:13:45.0300 0x165c [ 646AFD6F45B1B5AB9CE77C09B755B90B, CFC61FC136C9C062F509D2C756266F581BA9B2FDB1D2C8CBAAA66F51D1E8B876 ] DbxSvc C:\Windows\system32\DbxSvc.exe 18:13:45.0305 0x165c DbxSvc - ok 18:13:45.0314 0x165c [ 5E9F8D029D9B03110D835CBFC058068B, 038FDF99C643C8102026BA26A75899A56E91AD0C239DF71AA5443FD35C718C78 ] DcomLaunch C:\Windows\system32\rpcss.dll 18:13:45.0328 0x165c DcomLaunch - ok 18:13:45.0335 0x165c [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 18:13:45.0356 0x165c defragsvc - ok 18:13:45.0360 0x165c [ 9B38580063D281A99E68EF5813022A5F, D91676B0E0A8E2A090E3E5DD340ABCFC20AE0F55B4C82869D6CFB34239BD27DA ] DfsC C:\Windows\system32\Drivers\dfsc.sys 18:13:45.0368 0x165c DfsC - ok 18:13:45.0372 0x165c [ 1E0F456A03E204F92D24437CD907A512, 8BB28AF33BDEFFECC4EC5C6BFBFBDA525A32FA6A26382353E01FF94BAD2A200C ] dg_ssudbus C:\Windows\system32\DRIVERS\ssudbus.sys 18:13:45.0377 0x165c dg_ssudbus - ok 18:13:45.0384 0x165c [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll 18:13:45.0394 0x165c Dhcp - ok 18:13:45.0416 0x165c [ EE9954237F15BE4DD9304D12E4D305ED, F295C9BAF20F0E669B673AFCC16B4969EE31B6A3808980DAB93D9B0F167DA3C0 ] DiagTrack C:\Windows\system32\diagtrack.dll 18:13:45.0441 0x165c DiagTrack - ok 18:13:45.0451 0x165c [ DEE4A1F675EC604E9641B1A03CF1816F, A0AC84713DDFD9A94B8558DFA26B278FB29833C5663451CC582ACA85B29CBFD8 ] DigitalWave.Update.Service C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe 18:13:45.0460 0x165c DigitalWave.Update.Service - detected UnsignedFile.Multi.Generic ( 1 ) 18:13:45.0460 0x165c DigitalWave.Update.Service ( UnsignedFile.Multi.Generic ) - warning 18:13:45.0462 0x165c [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 18:13:45.0479 0x165c discache - ok 18:13:45.0482 0x165c [ 616387BBD83372220B09DE95F4E67BBC, 5E2D5280BB775576E7CDE3FA6BDE494E183123635E5908CF7EBF1FF52966D07D ] Disk C:\Windows\system32\drivers\disk.sys 18:13:45.0487 0x165c Disk - ok 18:13:45.0492 0x165c [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll 18:13:45.0500 0x165c Dnscache - ok 18:13:45.0505 0x165c [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll 18:13:45.0525 0x165c dot3svc - ok 18:13:45.0533 0x165c [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll 18:13:45.0552 0x165c DPS - ok 18:13:45.0554 0x165c [ 26FE888505E5A945B0536AF9A2A27A6F, A6B16ED498BAFE300E1F0E0A241E3D62F7A1C5973EE775904ED14F33A2BC08A6 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 18:13:45.0558 0x165c drmkaud - ok 18:13:45.0574 0x165c [ 5CEF80AE869336376F550ECAE91E424A, 49152AC35556A5629AE7A4A762FDB2112FAD1C9CDB91E6196172809F74A3149A ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 18:13:45.0591 0x165c DXGKrnl - ok 18:13:45.0596 0x165c [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 18:13:45.0615 0x165c EapHost - ok 18:13:45.0628 0x165c [ 610BF0CA400801B50AB6C34F8C268FAF, 0CA01A691B68684541BCC8D97087D07C2ADC03D76DD3798305F77B11A8AFF570 ] EasyAntiCheat C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe 18:13:45.0648 0x165c EasyAntiCheat - ok 18:13:45.0661 0x165c [ 78AC59B45CFBFCC68DA7D397D6819D03, C423C3A49D8F9BF931C694309AA982A2A554E7F2CEEC44F9AA1C13F98F9D6FBF ] EasyAntiCheatSys C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.sys 18:13:45.0678 0x165c EasyAntiCheatSys - ok 18:13:45.0727 0x165c [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 18:13:45.0774 0x165c ebdrv - ok 18:13:45.0780 0x165c [ 61FF4456A65C5CF4CFF918F5C484F0A0, F9B6DDF62B4175093DD38C00520C7F0D52FBAB0077A8ED1391DD5188E400F481 ] EFS C:\Windows\System32\lsass.exe 18:13:45.0785 0x165c EFS - ok 18:13:45.0798 0x165c [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr C:\Windows\ehome\ehRecvr.exe 18:13:45.0811 0x165c ehRecvr - ok 18:13:45.0815 0x165c [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe 18:13:45.0822 0x165c ehSched - ok 18:13:45.0832 0x165c [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 18:13:45.0843 0x165c elxstor - ok 18:13:45.0847 0x165c [ A7E8186E04F38E836C19AC147F8B2ED0, 329639595F02060C215A6334FCE1651FB9B9B5679BA9052A487B57265608D162 ] EPSON_PM_RPCV4_05 C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE 18:13:45.0852 0x165c EPSON_PM_RPCV4_05 - ok 18:13:45.0854 0x165c [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys 18:13:45.0859 0x165c ErrDev - ok 18:13:45.0892 0x165c [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll 18:13:45.0913 0x165c EventSystem - ok 18:13:45.0918 0x165c [ 7E45F8B117419ABA3BB26579F6E70324, 03FE86519860153E1BE571F10ACC9BA58FFB5A661C5C3EBDF3B77973BCD96C84 ] exfat C:\Windows\system32\drivers\exfat.sys 18:13:45.0926 0x165c exfat - ok 18:13:45.0931 0x165c [ 6EDFA237D25433C03F42FBFDB16BDD24, A30F89A40F7AFC475D3C2D3591FB9AFC06AE3FEBC915FDCB24ED77946FBA4E2C ] fastfat C:\Windows\system32\drivers\fastfat.sys 18:13:45.0938 0x165c fastfat - ok 18:13:45.0950 0x165c [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe 18:13:45.0964 0x165c Fax - ok 18:13:45.0967 0x165c [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\DRIVERS\fdc.sys 18:13:45.0972 0x165c fdc - ok 18:13:45.0974 0x165c [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll 18:13:45.0991 0x165c fdPHost - ok 18:13:45.0994 0x165c [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll 18:13:46.0010 0x165c FDResPub - ok 18:13:46.0013 0x165c [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 18:13:46.0018 0x165c FileInfo - ok 18:13:46.0020 0x165c [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 18:13:46.0036 0x165c Filetrace - ok 18:13:46.0039 0x165c [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 18:13:46.0044 0x165c flpydisk - ok 18:13:46.0051 0x165c [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 18:13:46.0059 0x165c FltMgr - ok 18:13:46.0078 0x165c [ 785F474FB5E67E448E1931C98E8D0ABC, 911697D580CBF508A6F4A52D4F95A6976CF9A0EC3549076A8D0B5C8BD947C989 ] FontCache C:\Windows\system32\FntCache.dll 18:13:46.0100 0x165c FontCache - ok 18:13:46.0104 0x165c [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 18:13:46.0108 0x165c FontCache3.0.0.0 - ok 18:13:46.0111 0x165c [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 18:13:46.0116 0x165c FsDepends - ok 18:13:46.0121 0x165c [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 18:13:46.0125 0x165c Fs_Rec - ok 18:13:46.0131 0x165c [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 18:13:46.0139 0x165c fvevol - ok 18:13:46.0142 0x165c [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 18:13:46.0147 0x165c gagp30kx - ok 18:13:46.0150 0x165c [ 14C0178E02279087B7141A4B80E711BF, 500534CFC017F3A37EC950F6BD4C05243E4A70D51528C9E8096E548231FF9D8C ] gddcd C:\Windows\system32\drivers\gddcd64.sys 18:13:46.0156 0x165c gddcd - ok 18:13:46.0159 0x165c [ 8D08E86C511503D837EA286B7E824A2B, 7BB752CF563D6B9F964228760C4BEFFC0A54CE684D447975AC016256E424887F ] gddcv C:\Windows\system32\drivers\gddcv64.sys 18:13:46.0164 0x165c gddcv - ok 18:13:46.0177 0x165c [ E4AE497857409127ED57562AF913A903, 262ADD713B1FBF6200550967D1F8635B55D01BBD8FA2E753536E71A4EC87867B ] gpsvc C:\Windows\System32\gpsvc.dll 18:13:46.0192 0x165c gpsvc - ok 18:13:46.0197 0x165c [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:13:46.0202 0x165c gupdate - ok 18:13:46.0205 0x165c [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 18:13:46.0210 0x165c gupdatem - ok 18:13:46.0212 0x165c [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 18:13:46.0217 0x165c hcw85cir - ok 18:13:46.0224 0x165c [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 18:13:46.0235 0x165c HdAudAddService - ok 18:13:46.0239 0x165c [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\drivers\HDAudBus.sys 18:13:46.0246 0x165c HDAudBus - ok 18:13:46.0249 0x165c [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 18:13:46.0254 0x165c HidBatt - ok 18:13:46.0257 0x165c [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 18:13:46.0265 0x165c HidBth - ok 18:13:46.0267 0x165c [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 18:13:46.0274 0x165c HidIr - ok 18:13:46.0277 0x165c [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\system32\hidserv.dll 18:13:46.0296 0x165c hidserv - ok 18:13:46.0298 0x165c [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 18:13:46.0304 0x165c HidUsb - ok 18:13:46.0307 0x165c [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll 18:13:46.0326 0x165c hkmsvc - ok 18:13:46.0332 0x165c [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 18:13:46.0340 0x165c HomeGroupListener - ok 18:13:46.0345 0x165c [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 18:13:46.0353 0x165c HomeGroupProvider - ok 18:13:46.0356 0x165c [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 18:13:46.0361 0x165c HpSAMD - ok 18:13:46.0364 0x165c [ F47CEC45FB85791D4AB237563AD0FA8F, 1035066D48BD179855BCA7F62EFA1B951E6E839D2E29E15A31844E18A126DD41 ] HTCAND64 C:\Windows\system32\Drivers\ANDROIDUSB.sys 18:13:46.0371 0x165c HTCAND64 - ok 18:13:46.0376 0x165c [ 5C8BC8A28798FD010E7ABC4E0D588CAA, 622CAFD3DCBB05E15539589FDD4002DA6F24790FC55BDF05AA3D043E8A34E53E ] HTCMonitorService C:\Program Files (x86)\HTC\HTC Sync Manager\HSMServiceEntry.exe 18:13:46.0380 0x165c HTCMonitorService - ok 18:13:46.0383 0x165c [ B8B1B284362E1D8135112573395D5DA5, 97BC6A7B2DCD7CC854B912A85BB2FCF199592E8E16A7C405EAF89B02D5DE4AEE ] htcnprot C:\Windows\system32\DRIVERS\htcnprot.sys 18:13:46.0386 0x165c htcnprot - ok 18:13:46.0398 0x165c [ CF5C9BD985120781200D35FD445D0BD5, 91B37F595A196542458CBBCDAD80779721D228A7030A34E55995DDBB06649248 ] HTTP C:\Windows\system32\drivers\HTTP.sys 18:13:46.0413 0x165c HTTP - ok 18:13:46.0416 0x165c [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 18:13:46.0420 0x165c hwpolicy - ok 18:13:46.0424 0x165c [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 18:13:46.0430 0x165c i8042prt - ok 18:13:46.0437 0x165c [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 18:13:46.0446 0x165c iaStorV - ok 18:13:46.0461 0x165c [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 18:13:46.0476 0x165c idsvc - ok 18:13:46.0479 0x165c IEEtwCollectorService - ok 18:13:46.0482 0x165c [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 18:13:46.0487 0x165c iirsp - ok 18:13:46.0495 0x165c [ FD7D6BD46A7947C2D7E5789562D28B98, 330970B71DE7546EBC04219789CEB36670FB2AAD4BD1288B9A26F76756712B45 ] IJPLMSVC C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE 18:13:46.0504 0x165c IJPLMSVC - ok 18:13:46.0518 0x165c [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll 18:13:46.0534 0x165c IKEEXT - ok 18:13:46.0594 0x165c [ 1747CAA9AB414DEC0FF38CDEBD3A7418, 0B647EF6FFF1E02DAD8B4C764A4A00430898BD089304D52BC05E0D99E80F1236 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 18:13:46.0650 0x165c IntcAzAudAddService - ok 18:13:46.0656 0x165c [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys 18:13:46.0661 0x165c intelide - ok 18:13:46.0664 0x165c [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 18:13:46.0669 0x165c intelppm - ok 18:13:46.0672 0x165c [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll 18:13:46.0690 0x165c IPBusEnum - ok 18:13:46.0693 0x165c [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 18:13:46.0711 0x165c IpFilterDriver - ok 18:13:46.0722 0x165c [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 18:13:46.0735 0x165c iphlpsvc - ok 18:13:46.0738 0x165c [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 18:13:46.0745 0x165c IPMIDRV - ok 18:13:46.0748 0x165c [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys 18:13:46.0767 0x165c IPNAT - ok 18:13:46.0770 0x165c [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys 18:13:46.0777 0x165c IRENUM - ok 18:13:46.0780 0x165c [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys 18:13:46.0784 0x165c isapnp - ok 18:13:46.0790 0x165c [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 18:13:46.0798 0x165c iScsiPrt - ok 18:13:46.0801 0x165c [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 18:13:46.0806 0x165c kbdclass - ok 18:13:46.0809 0x165c [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 18:13:46.0814 0x165c kbdhid - ok 18:13:46.0816 0x165c [ 61FF4456A65C5CF4CFF918F5C484F0A0, F9B6DDF62B4175093DD38C00520C7F0D52FBAB0077A8ED1391DD5188E400F481 ] KeyIso C:\Windows\system32\lsass.exe 18:13:46.0821 0x165c KeyIso - ok 18:13:46.0825 0x165c [ B6839909DDC1DDA53A5470DA3DE638A4, A127A15D31F9C291DCBAF05BA8513E9CC1084E5799D3E07CF7F6C874F7EB9546 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 18:13:46.0830 0x165c KSecDD - ok 18:13:46.0834 0x165c [ EF5F0751E656C74E550E46B047FBEA57, 2784D6ECFFEB2A98DE81BC47052A5BEEE77BBD8395BA89BE1CB82B9EEF50F846 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 18:13:46.0839 0x165c KSecPkg - ok 18:13:46.0842 0x165c [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 18:13:46.0859 0x165c ksthunk - ok 18:13:46.0867 0x165c [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll 18:13:46.0889 0x165c KtmRm - ok 18:13:46.0895 0x165c [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\system32\srvsvc.dll 18:13:46.0915 0x165c LanmanServer - ok 18:13:46.0918 0x165c [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 18:13:46.0937 0x165c LanmanWorkstation - ok 18:13:46.0942 0x165c [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 18:13:46.0959 0x165c lltdio - ok 18:13:46.0965 0x165c [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll 18:13:46.0986 0x165c lltdsvc - ok 18:13:46.0988 0x165c [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll 18:13:47.0005 0x165c lmhosts - ok 18:13:47.0009 0x165c [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 18:13:47.0015 0x165c LSI_FC - ok 18:13:47.0020 0x165c [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 18:13:47.0025 0x165c LSI_SAS - ok 18:13:47.0028 0x165c [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 18:13:47.0033 0x165c LSI_SAS2 - ok 18:13:47.0036 0x165c [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 18:13:47.0042 0x165c LSI_SCSI - ok 18:13:47.0045 0x165c [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys 18:13:47.0063 0x165c luafv - ok 18:13:47.0070 0x165c [ A401CFF74982D8DF851F20307C806073, 1D7BA90C9E77FAAE59F60AB5310EC41D9C5B98F1F9A89A3CDB9169E6DEF565DA ] LVRS64 C:\Windows\system32\DRIVERS\lvrs64.sys 18:13:47.0078 0x165c LVRS64 - ok 18:13:47.0148 0x165c [ 13384CB5F5813E65F31078D6ABFAAF38, A6E7374C15CAECC273197BF62F8F926BA30E9509270A8470756F4710E1DEA126 ] LVUVC64 C:\Windows\system32\DRIVERS\lvuvc64.sys 18:13:47.0213 0x165c LVUVC64 - ok 18:13:47.0221 0x165c [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 18:13:47.0227 0x165c Mcx2Svc - ok 18:13:47.0230 0x165c [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 18:13:47.0234 0x165c megasas - ok 18:13:47.0240 0x165c [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 18:13:47.0248 0x165c MegaSR - ok 18:13:47.0251 0x165c [ 1BC9159CF58BABD89419072EA180A8F6, 6C9AB779C2355A341800A8F93AAAF9B19FAFF444CD6A7BD27C63D53F379A75EF ] MEIx64 C:\Windows\system32\DRIVERS\TeeDriverx64.sys 18:13:47.0258 0x165c MEIx64 - ok 18:13:47.0261 0x165c [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll 18:13:47.0278 0x165c MMCSS - ok 18:13:47.0280 0x165c [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys 18:13:47.0297 0x165c Modem - ok 18:13:47.0299 0x165c [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 18:13:47.0305 0x165c monitor - ok 18:13:47.0308 0x165c [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 18:13:47.0312 0x165c mouclass - ok 18:13:47.0314 0x165c [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 18:13:47.0319 0x165c mouhid - ok 18:13:47.0323 0x165c [ 072D8646E23ECF8A3F5F0157017B4DB6, EBFB1459ECC5AF94C94FB49CEBC724542612680F0777E24B5AA6E062C0EE5D94 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 18:13:47.0328 0x165c mountmgr - ok 18:13:47.0332 0x165c [ 6B9E93FF7C9213359E548A494D733D52, 406CE127B6F8B4334B4EADD35788246E50FB505FE1E391B91FF60B1E56348295 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 18:13:47.0338 0x165c MozillaMaintenance - ok 18:13:47.0343 0x165c [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys 18:13:47.0349 0x165c mpio - ok 18:13:47.0352 0x165c [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 18:13:47.0370 0x165c mpsdrv - ok 18:13:47.0384 0x165c [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll 18:13:47.0410 0x165c MpsSvc - ok 18:13:47.0415 0x165c [ 98DB1790F0A584E0A2528B92B052417F, 9AA04CA73AFE599810CD233B9CEC212E16D44DCEDF5C7D0181C7257F498068B5 ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 18:13:47.0422 0x165c MRxDAV - ok 18:13:47.0426 0x165c [ 0CAFC684CABD24D089A53467CAF5C7BB, 0E5B7264CCA845BFE0BF6CC084D75D7039DD5C66D8A38A1F896730A21ADF085E ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 18:13:47.0434 0x165c mrxsmb - ok 18:13:47.0440 0x165c [ B9361F539BAAC1D362808157EAE0BA3B, C26E0F7A1B32F2DDE597BB12FC06007372EDF01396BE58CDEB425AED6579FCDE ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 18:13:47.0449 0x165c mrxsmb10 - ok 18:13:47.0453 0x165c [ A77260AE4B9E7B6C11675FB907D27AE8, F72BA83B962E1FEF2B6FFB39BDC15D9707F3001FBD91AFE47909FBC7043440D7 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 18:13:47.0460 0x165c mrxsmb20 - ok 18:13:47.0463 0x165c [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys 18:13:47.0467 0x165c msahci - ok 18:13:47.0471 0x165c [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys 18:13:47.0477 0x165c msdsm - ok 18:13:47.0480 0x165c [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe 18:13:47.0488 0x165c MSDTC - ok 18:13:47.0493 0x165c [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys 18:13:47.0509 0x165c Msfs - ok 18:13:47.0512 0x165c [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 18:13:47.0528 0x165c mshidkmdf - ok 18:13:47.0530 0x165c [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 18:13:47.0534 0x165c msisadrv - ok 18:13:47.0539 0x165c [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 18:13:47.0557 0x165c MSiSCSI - ok 18:13:47.0559 0x165c msiserver - ok 18:13:47.0561 0x165c [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 18:13:47.0577 0x165c MSKSSRV - ok 18:13:47.0579 0x165c [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 18:13:47.0596 0x165c MSPCLOCK - ok 18:13:47.0598 0x165c [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 18:13:47.0614 0x165c MSPQM - ok 18:13:47.0621 0x165c [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 18:13:47.0630 0x165c MsRPC - ok 18:13:47.0633 0x165c [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\drivers\mssmbios.sys 18:13:47.0637 0x165c mssmbios - ok 18:13:47.0639 0x165c [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 18:13:47.0656 0x165c MSTEE - ok 18:13:47.0658 0x165c [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 18:13:47.0663 0x165c MTConfig - ok 18:13:47.0666 0x165c [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys 18:13:47.0671 0x165c Mup - ok 18:13:47.0680 0x165c [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll 18:13:47.0703 0x165c napagent - ok 18:13:47.0710 0x165c [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 18:13:47.0722 0x165c NativeWifiP - ok 18:13:47.0735 0x165c [ 4DF6F43F761A600208F90A55D05F9B7E, AC93B4497FB428F7EC42DCF5956A2A61B951394E555BF6C89E55943E0B681586 ] NAUpdate C:\Program Files (x86)\Nero\Update\NASvc.exe 18:13:47.0749 0x165c NAUpdate - ok 18:13:47.0766 0x165c [ F7309F42555F8AAB7144A51A1F2585B0, 065277A8AFAEE3888C997A76D2F751070F92DF4C3354D16B194860B4BDAFF937 ] NDIS C:\Windows\system32\drivers\ndis.sys 18:13:47.0782 0x165c NDIS - ok 18:13:47.0786 0x165c [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 18:13:47.0803 0x165c NdisCap - ok 18:13:47.0806 0x165c [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 18:13:47.0824 0x165c NdisTapi - ok 18:13:47.0827 0x165c [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 18:13:47.0844 0x165c Ndisuio - ok 18:13:47.0849 0x165c [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 18:13:47.0867 0x165c NdisWan - ok 18:13:47.0870 0x165c [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 18:13:47.0887 0x165c NDProxy - ok 18:13:47.0890 0x165c [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 18:13:47.0907 0x165c NetBIOS - ok 18:13:47.0913 0x165c [ E47D571FEC2C76E867935109AB2A770C, F349D25890B6F476B106FD75BFB081DB737CA9B224D95E44927942FFF2DF82CD ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 18:13:47.0921 0x165c NetBT - ok 18:13:47.0923 0x165c [ 61FF4456A65C5CF4CFF918F5C484F0A0, F9B6DDF62B4175093DD38C00520C7F0D52FBAB0077A8ED1391DD5188E400F481 ] Netlogon C:\Windows\system32\lsass.exe 18:13:47.0928 0x165c Netlogon - ok 18:13:47.0935 0x165c [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll 18:13:47.0956 0x165c Netman - ok 18:13:47.0960 0x165c [ 0A84CDBA132359052C017888C2DFC8E6, C1B0524171E8E2BF2209747D4129018A38F8AC7737670B362CE9F691D57E8C07 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:13:47.0966 0x165c NetMsmqActivator - ok 18:13:47.0969 0x165c [ 0A84CDBA132359052C017888C2DFC8E6, C1B0524171E8E2BF2209747D4129018A38F8AC7737670B362CE9F691D57E8C07 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:13:47.0976 0x165c NetPipeActivator - ok 18:13:47.0984 0x165c [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll 18:13:48.0008 0x165c netprofm - ok 18:13:48.0013 0x165c [ 0A84CDBA132359052C017888C2DFC8E6, C1B0524171E8E2BF2209747D4129018A38F8AC7737670B362CE9F691D57E8C07 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:13:48.0019 0x165c NetTcpActivator - ok 18:13:48.0022 0x165c [ 0A84CDBA132359052C017888C2DFC8E6, C1B0524171E8E2BF2209747D4129018A38F8AC7737670B362CE9F691D57E8C07 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:13:48.0029 0x165c NetTcpPortSharing - ok 18:13:48.0032 0x165c [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 18:13:48.0037 0x165c nfrd960 - ok 18:13:48.0043 0x165c [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc C:\Windows\System32\nlasvc.dll 18:13:48.0053 0x165c NlaSvc - ok 18:13:48.0055 0x165c [ DE7FCC77F4A503AF4CA6A47D49B3713D, 4BFAA99393F635CD05D91A64DE73EDB5639412C129E049F0FE34F88517A10FC6 ] npf C:\Windows\system32\drivers\npf.sys 18:13:48.0060 0x165c npf - ok 18:13:48.0062 0x165c [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys 18:13:48.0080 0x165c Npfs - ok 18:13:48.0082 0x165c [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll 18:13:48.0100 0x165c nsi - ok 18:13:48.0103 0x165c [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 18:13:48.0120 0x165c nsiproxy - ok 18:13:48.0146 0x165c [ 7FD5A7FB8F55254E9AF5666C653AF3CA, 5EE9805BB4A952AE455D08953FF12E55879776A521B3333F2730AC552DC17C48 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 18:13:48.0172 0x165c Ntfs - ok 18:13:48.0175 0x165c [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys 18:13:48.0192 0x165c Null - ok 18:13:48.0195 0x165c [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys 18:13:48.0201 0x165c nvraid - ok 18:13:48.0206 0x165c [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys 18:13:48.0212 0x165c nvstor - ok 18:13:48.0216 0x165c [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 18:13:48.0222 0x165c nv_agp - ok 18:13:48.0225 0x165c [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 18:13:48.0231 0x165c ohci1394 - ok 18:13:48.0234 0x165c Origin Client Service - ok 18:13:48.0239 0x165c [ BCF967CBE47EE574E3C3793A9AD7F224, EF7C943FDD2C73C70AE56CCE929AADDB98967ADC5FB0F0B1C5BB35D1FD4CB255 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 18:13:48.0246 0x165c ose - ok 18:13:48.0324 0x165c [ FE9C0029E1AF26350D9985D00520E5C8, 967079CCF7B2CBD4B48C9F076675C26AF93A1CEC26C96811F279414E34004EE6 ] osppsvc C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE 18:13:48.0394 0x165c osppsvc - ok 18:13:48.0407 0x165c [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 18:13:48.0416 0x165c p2pimsvc - ok 18:13:48.0425 0x165c [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll 18:13:48.0436 0x165c p2psvc - ok 18:13:48.0439 0x165c [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\DRIVERS\parport.sys 18:13:48.0445 0x165c Parport - ok 18:13:48.0449 0x165c [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys 18:13:48.0454 0x165c partmgr - ok 18:13:48.0458 0x165c [ 446462BBA744DA60379574926FD51EAB, 4A79E8EF28670333F4733FA0016508DC88E9BDC566B455DA5EDEDC514612180A ] PassThru Service C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe 18:13:48.0462 0x165c PassThru Service - detected UnsignedFile.Multi.Generic ( 1 ) 18:13:48.0462 0x165c PassThru Service ( UnsignedFile.Multi.Generic ) - warning 18:13:48.0467 0x165c [ 3CD83692C43D87088E85E3C916146FFB, 9E812535E8FBA045FDA30F68E9EB2031132C37721D542A2DC9D4C33E2B137FCF ] PcaSvc C:\Windows\System32\pcasvc.dll 18:13:48.0476 0x165c PcaSvc - ok 18:13:48.0481 0x165c [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys 18:13:48.0487 0x165c pci - ok 18:13:48.0490 0x165c [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys 18:13:48.0494 0x165c pciide - ok 18:13:48.0499 0x165c [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 18:13:48.0506 0x165c pcmcia - ok 18:13:48.0509 0x165c [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys 18:13:48.0513 0x165c pcw - ok 18:13:48.0515 0x165c PDF24 - ok 18:13:48.0526 0x165c [ EA4D67448BE493D543F1730D6CD04694, 24717C5E41B7CA522F3330EF2228B6685E710A5259396E9887A1C1E7A413F8CA ] PEAUTH C:\Windows\system32\drivers\peauth.sys 18:13:48.0541 0x165c PEAUTH - ok 18:13:48.0560 0x165c [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe 18:13:48.0566 0x165c PerfHost - ok 18:13:48.0589 0x165c [ BC5F8C5C7ACCD0B884FCB8B67616F537, 5C99E9D7E7095CED52B1F5F4A569E54F124602C573DD2B25731E0D57FDA22A27 ] pla C:\Windows\system32\pla.dll 18:13:48.0613 0x165c pla - ok 18:13:48.0624 0x165c [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 18:13:48.0635 0x165c PlugPlay - ok 18:13:48.0637 0x165c [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 18:13:48.0643 0x165c PNRPAutoReg - ok 18:13:48.0650 0x165c [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 18:13:48.0660 0x165c PNRPsvc - ok 18:13:48.0668 0x165c [ 80D6B0563ED2BF10656B1D4748331082, B7E6B5E1148B7EE537E8D5C3A65450876B61CD45A395267D08699746E98AD574 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 18:13:48.0680 0x165c PolicyAgent - ok 18:13:48.0685 0x165c [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll 18:13:48.0704 0x165c Power - ok 18:13:48.0707 0x165c [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 18:13:48.0725 0x165c PptpMiniport - ok 18:13:48.0728 0x165c [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\DRIVERS\processr.sys 18:13:48.0733 0x165c Processor - ok 18:13:48.0738 0x165c [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc C:\Windows\system32\profsvc.dll 18:13:48.0746 0x165c ProfSvc - ok 18:13:48.0748 0x165c [ 61FF4456A65C5CF4CFF918F5C484F0A0, F9B6DDF62B4175093DD38C00520C7F0D52FBAB0077A8ED1391DD5188E400F481 ] ProtectedStorage C:\Windows\system32\lsass.exe 18:13:48.0754 0x165c ProtectedStorage - ok 18:13:48.0758 0x165c [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 18:13:48.0775 0x165c Psched - ok 18:13:48.0800 0x165c [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 18:13:48.0824 0x165c ql2300 - ok 18:13:48.0828 0x165c [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 18:13:48.0834 0x165c ql40xx - ok 18:13:48.0839 0x165c [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll 18:13:48.0850 0x165c QWAVE - ok 18:13:48.0852 0x165c [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 18:13:48.0860 0x165c QWAVEdrv - ok 18:13:48.0862 0x165c [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 18:13:48.0878 0x165c RasAcd - ok 18:13:48.0881 0x165c [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 18:13:48.0898 0x165c RasAgileVpn - ok 18:13:48.0901 0x165c [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll 18:13:48.0919 0x165c RasAuto - ok 18:13:48.0923 0x165c [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 18:13:48.0940 0x165c Rasl2tp - ok 18:13:48.0947 0x165c [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll 18:13:48.0968 0x165c RasMan - ok 18:13:48.0974 0x165c [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 18:13:48.0992 0x165c RasPppoe - ok 18:13:48.0995 0x165c [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 18:13:49.0012 0x165c RasSstp - ok 18:13:49.0019 0x165c [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 18:13:49.0038 0x165c rdbss - ok 18:13:49.0040 0x165c [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 18:13:49.0047 0x165c rdpbus - ok 18:13:49.0049 0x165c [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 18:13:49.0065 0x165c RDPCDD - ok 18:13:49.0067 0x165c [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 18:13:49.0084 0x165c RDPENCDD - ok 18:13:49.0086 0x165c [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 18:13:49.0103 0x165c RDPREFMP - ok 18:13:49.0106 0x165c [ 313F68E1A3E6345A4F47A36B07062F34, B8318A0AE06BDE278931CA52F960B9FE226FD9894B076858DDB755AE26E1E66F ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys 18:13:49.0114 0x165c RdpVideoMiniport - ok 18:13:49.0121 0x165c [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 18:13:49.0129 0x165c RDPWD - ok 18:13:49.0134 0x165c [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 18:13:49.0141 0x165c rdyboost - ok 18:13:49.0144 0x165c [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll 18:13:49.0163 0x165c RemoteAccess - ok 18:13:49.0168 0x165c [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll 18:13:49.0188 0x165c RemoteRegistry - ok 18:13:49.0191 0x165c [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 18:13:49.0209 0x165c RpcEptMapper - ok 18:13:49.0211 0x165c [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe 18:13:49.0216 0x165c RpcLocator - ok 18:13:49.0225 0x165c [ 5E9F8D029D9B03110D835CBFC058068B, 038FDF99C643C8102026BA26A75899A56E91AD0C239DF71AA5443FD35C718C78 ] RpcSs C:\Windows\system32\rpcss.dll 18:13:49.0238 0x165c RpcSs - ok 18:13:49.0241 0x165c [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 18:13:49.0259 0x165c rspndr - ok 18:13:49.0274 0x165c [ 439F755B450CF66B139742CA32AACF9F, DB047454CE026E71F7F5A0B4158D667D7E439A2B5A4F3CC008649FCDBA22A727 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys 18:13:49.0290 0x165c RTL8167 - ok 18:13:49.0292 0x165c [ 61FF4456A65C5CF4CFF918F5C484F0A0, F9B6DDF62B4175093DD38C00520C7F0D52FBAB0077A8ED1391DD5188E400F481 ] SamSs C:\Windows\system32\lsass.exe 18:13:49.0298 0x165c SamSs - ok 18:13:49.0301 0x165c [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 18:13:49.0307 0x165c sbp2port - ok 18:13:49.0311 0x165c [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll 18:13:49.0330 0x165c SCardSvr - ok 18:13:49.0333 0x165c [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 18:13:49.0349 0x165c scfilter - ok 18:13:49.0366 0x165c [ 40686B59C127F0C93B4234E4A1E3472A, B2DD61CB796C6AA8AFD285D43472B94646CA6D331D282818E0FDC9DE28DDE9CF ] Schedule C:\Windows\system32\schedsvc.dll 18:13:49.0386 0x165c Schedule - ok 18:13:49.0389 0x165c [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll 18:13:49.0406 0x165c SCPolicySvc - ok 18:13:49.0411 0x165c [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll 18:13:49.0418 0x165c SDRSVC - ok 18:13:49.0421 0x165c [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 18:13:49.0426 0x165c secdrv - ok 18:13:49.0428 0x165c [ A19623BDD61E66A12AB53992002B4F3A, E351CEEC086084A417BA3BD0EEF46114D3147EC38E3EF8BE49B724F9D028CC56 ] seclogon C:\Windows\system32\seclogon.dll 18:13:49.0434 0x165c seclogon - ok 18:13:49.0437 0x165c [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll 18:13:49.0454 0x165c SENS - ok 18:13:49.0457 0x165c [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll 18:13:49.0463 0x165c SensrSvc - ok 18:13:49.0465 0x165c [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 18:13:49.0470 0x165c Serenum - ok 18:13:49.0473 0x165c [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\DRIVERS\serial.sys 18:13:49.0479 0x165c Serial - ok 18:13:49.0481 0x165c [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 18:13:49.0486 0x165c sermouse - ok 18:13:49.0492 0x165c [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll 18:13:49.0509 0x165c SessionEnv - ok 18:13:49.0512 0x165c [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 18:13:49.0518 0x165c sffdisk - ok 18:13:49.0520 0x165c [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 18:13:49.0526 0x165c sffp_mmc - ok 18:13:49.0528 0x165c [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 18:13:49.0534 0x165c sffp_sd - ok 18:13:49.0537 0x165c [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 18:13:49.0542 0x165c sfloppy - ok 18:13:49.0549 0x165c [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll 18:13:49.0570 0x165c SharedAccess - ok 18:13:49.0577 0x165c [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 18:13:49.0598 0x165c ShellHWDetection - ok 18:13:49.0601 0x165c [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 18:13:49.0606 0x165c SiSRaid2 - ok 18:13:49.0609 0x165c [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 18:13:49.0614 0x165c SiSRaid4 - ok 18:13:49.0617 0x165c [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys 18:13:49.0634 0x165c Smb - ok 18:13:49.0638 0x165c [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 18:13:49.0645 0x165c SNMPTRAP - ok 18:13:49.0647 0x165c [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys 18:13:49.0651 0x165c spldr - ok 18:13:49.0661 0x165c [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe 18:13:49.0675 0x165c Spooler - ok 18:13:49.0730 0x165c [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe 18:13:49.0793 0x165c sppsvc - ok 18:13:49.0800 0x165c [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll 18:13:49.0819 0x165c sppuinotify - ok 18:13:49.0828 0x165c [ 546C81F238F084A393EC54114741A0A8, AA223A2A8E8503CBDB0CE6A70620B372E0591070F9FF7D8532A93B54EF7B7E51 ] srv C:\Windows\system32\DRIVERS\srv.sys 18:13:49.0839 0x165c srv - ok 18:13:49.0846 0x165c [ 431D2B06E8F93EAEC53E8FA37FCFF2F1, 4CB94D250E9D2646FCE7284D4D3CED1BB02E4D79AD33A414D16EF794195868CA ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 18:13:49.0858 0x165c srv2 - ok 18:13:49.0863 0x165c [ 42EDAB3E3E8E25C7093674936C2DB4BD, B2D5E006B748F24F0FF2CEFFC3D056F3D50E8A818BDFF4231C87C022A25F44ED ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 18:13:49.0871 0x165c srvnet - ok 18:13:49.0876 0x165c [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 18:13:49.0897 0x165c SSDPSRV - ok 18:13:49.0900 0x165c [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll 18:13:49.0919 0x165c SstpSvc - ok 18:13:49.0924 0x165c [ F38232291F05CE25BA1C47FB51EB64CB, 7F72E87D02F3072E0D61D528BEBB8F4BFB6AD67FC94A93745493C9A0907FF435 ] ssudmdm C:\Windows\system32\DRIVERS\ssudmdm.sys 18:13:49.0931 0x165c ssudmdm - ok 18:13:49.0956 0x165c [ 0608A6DB82B8E6845BCC624051F31130, 9FF2993FFDC273AE8EB9F4E870620B6287024E013F778154F1A022A9370A1A34 ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 18:13:49.0982 0x165c Steam Client Service - ok 18:13:49.0986 0x165c [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 18:13:49.0990 0x165c stexstor - ok 18:13:50.0000 0x165c [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll 18:13:50.0016 0x165c stisvc - ok 18:13:50.0019 0x165c [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\drivers\swenum.sys 18:13:50.0023 0x165c swenum - ok 18:13:50.0033 0x165c [ F577910A133A592234EBAAD3F3AFA258, 36F514740EE2D2B2F7ABFFFA13D575233EC4CE774EB58BF889C09930FEF1F443 ] SwitchBoard C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe 18:13:50.0044 0x165c SwitchBoard - detected UnsignedFile.Multi.Generic ( 1 ) 18:13:50.0044 0x165c SwitchBoard ( UnsignedFile.Multi.Generic ) - warning 18:13:50.0053 0x165c [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll 18:13:50.0078 0x165c swprv - ok 18:13:50.0105 0x165c [ 2E730941CC5BF6200A4F56D1E9C24AAD, 758836D55DC84F3EBE9917DC6FAB8E6170A5B238FEDBCFDB6D7C5C6EA98E08B2 ] SysMain C:\Windows\system32\sysmain.dll 18:13:50.0133 0x165c SysMain - ok 18:13:50.0138 0x165c [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll 18:13:50.0147 0x165c TabletInputService - ok 18:13:50.0154 0x165c [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll 18:13:50.0175 0x165c TapiSrv - ok 18:13:50.0202 0x165c [ 7FB36A0A036ADDACE0A868E4A43C1C27, AFDCD57C49D06F31C02F37C81B67BA148CDC9B62AD62B771925D31339DDA9012 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 18:13:50.0231 0x165c Tcpip - ok 18:13:50.0259 0x165c [ 7FB36A0A036ADDACE0A868E4A43C1C27, AFDCD57C49D06F31C02F37C81B67BA148CDC9B62AD62B771925D31339DDA9012 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 18:13:50.0288 0x165c TCPIP6 - ok 18:13:50.0292 0x165c [ 7FE5586314EE7D6AA8483264A089E5AF, 4E3EA68713A45C22F1B9A1AA125E15D06D0C5E637B815537431ADFB6D7563879 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 18:13:50.0298 0x165c tcpipreg - ok 18:13:50.0304 0x165c [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 18:13:50.0310 0x165c TDPIPE - ok 18:13:50.0312 0x165c [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 18:13:50.0317 0x165c TDTCP - ok 18:13:50.0321 0x165c [ 4DD986720F7CB7A8A5D1226793097B9A, 9020375B45E9C966BF44CF425C127D7E0EC82EB99C7047F225C25402FF97743D ] tdx C:\Windows\system32\DRIVERS\tdx.sys 18:13:50.0328 0x165c tdx - ok 18:13:50.0331 0x165c [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\drivers\termdd.sys 18:13:50.0336 0x165c TermDD - ok 18:13:50.0348 0x165c [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService C:\Windows\System32\termsrv.dll 18:13:50.0363 0x165c TermService - ok 18:13:50.0366 0x165c [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll 18:13:50.0375 0x165c Themes - ok 18:13:50.0378 0x165c [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll 18:13:50.0397 0x165c THREADORDER - ok 18:13:50.0401 0x165c [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll 18:13:50.0420 0x165c TrkWks - ok 18:13:50.0424 0x165c [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 18:13:50.0442 0x165c TrustedInstaller - ok 18:13:50.0445 0x165c [ 19BEDA57F3E0A06B8D5EB6D619BD5624, 952D5FAFD662C93628C12A6F7EB8E240A44216C0A15CBD2F5016BC357CBFE821 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 18:13:50.0450 0x165c tssecsrv - ok 18:13:50.0453 0x165c [ E9981ECE8D894CEF7038FD1D040EB426, DCDDCE933CAECE8180A3447199B07F2F0413704EEC1A09606EE357901A84A7CF ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 18:13:50.0458 0x165c TsUsbFlt - ok 18:13:50.0462 0x165c [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 18:13:50.0479 0x165c tunnel - ok 18:13:50.0482 0x165c [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 18:13:50.0487 0x165c uagp35 - ok 18:13:50.0493 0x165c [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 18:13:50.0513 0x165c udfs - ok 18:13:50.0517 0x165c [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe 18:13:50.0523 0x165c UI0Detect - ok 18:13:50.0526 0x165c [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 18:13:50.0531 0x165c uliagpkx - ok 18:13:50.0533 0x165c [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys 18:13:50.0539 0x165c umbus - ok 18:13:50.0541 0x165c [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 18:13:50.0546 0x165c UmPass - ok 18:13:50.0555 0x165c [ 67A95B9D129ED5399E7965CD09CF30E7, F1F2F684146F1CCB293BB9871117B8CFC1D04588A830F67CE5D3F0D034D93B2A ] UMVPFSrv C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe 18:13:50.0564 0x165c UMVPFSrv - ok 18:13:50.0571 0x165c [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll 18:13:50.0593 0x165c upnphost - ok 18:13:50.0596 0x165c [ B0435098C81D04CAFFF80DDB746CD3A2, A17B207740382E38729571F0B0BC98FF874E856A7C7CE9EB930328A2AD88F52A ] usbaudio C:\Windows\system32\drivers\usbaudio.sys 18:13:50.0602 0x165c usbaudio - ok 18:13:50.0605 0x165c [ 28B81917A195B67617AF7DCF4DFE5736, 40A4D2AAE1BDE5ABA8708ED150396E913C566ECD5CDA40D6C6DB256F1B9FD4A9 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 18:13:50.0611 0x165c usbccgp - ok 18:13:50.0615 0x165c [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys 18:13:50.0620 0x165c usbcir - ok 18:13:50.0623 0x165c [ B626F048318DAE65A3317F0592BE592C, 284D8FFE1D35F852EFDA182A72288AC3A10D6ED825FE2CC5812497D3FE291AF1 ] usbehci C:\Windows\system32\drivers\usbehci.sys 18:13:50.0628 0x165c usbehci - ok 18:13:50.0634 0x165c [ 390109E8E05BA00375DCB1ED64DC60AF, B8628502590B423BEFB6F7C8C69FAD0667AD0746FF6B444EE02016E8E1052B78 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 18:13:50.0643 0x165c usbhub - ok 18:13:50.0645 0x165c [ B4DF0F4C1D9D25DFE1DAD1D8670F1D4F, 4317C2DEDC639527B53864BAEC46CBE022D298C0503E29E1072DD1C851D92BFC ] usbohci C:\Windows\system32\drivers\usbohci.sys 18:13:50.0650 0x165c usbohci - ok 18:13:50.0652 0x165c [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 18:13:50.0659 0x165c usbprint - ok 18:13:50.0662 0x165c [ 9661DA76B4531B2DA272ECCE25A8AF24, FEA93254A21E71A7EB8AD35FCCAD2C1E41F7329EC33B1734F5B41307A34D8637 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys 18:13:50.0667 0x165c usbscan - ok 18:13:50.0671 0x165c [ D029DD09E22EB24318A8FC3D8138BA43, C95805E8BF75ECB939520AE86420B16467B0771C161C51C9F1A37649ADFADCD0 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 18:13:50.0677 0x165c USBSTOR - ok 18:13:50.0679 0x165c [ CFEAAF96E666E3DCBD8F6DFF516784AE, 006218A3DB5851790CC0A7F3DCD7B3AF82F624DA679296DE507AFD36C5468317 ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 18:13:50.0684 0x165c usbuhci - ok 18:13:50.0686 0x165c [ 7B28E2FBE75115660FAB31079C0A9F29, 81BB5A3E64B652A672A0782A88ABF6DDD729D38712D0706CE0FB9DE6D1EE1515 ] usb_rndisx C:\Windows\system32\DRIVERS\usb8023x.sys 18:13:50.0691 0x165c usb_rndisx - ok 18:13:50.0693 0x165c [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll 18:13:50.0710 0x165c UxSms - ok 18:13:50.0713 0x165c [ 61FF4456A65C5CF4CFF918F5C484F0A0, F9B6DDF62B4175093DD38C00520C7F0D52FBAB0077A8ED1391DD5188E400F481 ] VaultSvc C:\Windows\system32\lsass.exe 18:13:50.0718 0x165c VaultSvc - ok 18:13:50.0720 0x165c [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 18:13:50.0725 0x165c vdrvroot - ok 18:13:50.0735 0x165c [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe 18:13:50.0758 0x165c vds - ok 18:13:50.0761 0x165c [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 18:13:50.0767 0x165c vga - ok 18:13:50.0769 0x165c [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys 18:13:50.0786 0x165c VgaSave - ok 18:13:50.0791 0x165c [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 18:13:50.0798 0x165c vhdmp - ok 18:13:50.0801 0x165c [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys 18:13:50.0805 0x165c viaide - ok 18:13:50.0808 0x165c [ 57F53D802486F346BF0110F56B4B07D1, 7B31CE1010ED51350D5C69D5D4C93A1E55053887AEBCF7C3899901139BD67C8D ] vmkbd3 C:\Windows\system32\DRIVERS\vmkbd.sys 18:13:50.0813 0x165c vmkbd3 - ok 18:13:50.0816 0x165c [ 1CA7A1295E0DF2DB74EA2005FF1B47D1, A9F5634782FD7887BEB445A76FF5E27F3311AB5B3397C9A9A61220F417A51BF7 ] VMnetAdapter C:\Windows\system32\DRIVERS\vmnetadapter.sys 18:13:50.0822 0x165c VMnetAdapter - ok 18:13:50.0824 0x165c [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys 18:13:50.0829 0x165c volmgr - ok 18:13:50.0836 0x165c [ 85C5468BC395819AE2A0C747334BA14C, 75EB4751F90F3347229442A5622539383CE0B1834EE7B995260D0D433BA2E25F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 18:13:50.0845 0x165c volmgrx - ok 18:13:50.0851 0x165c [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap C:\Windows\system32\drivers\volsnap.sys 18:13:50.0859 0x165c volsnap - ok 18:13:50.0861 0x165c [ C9D128C4A4C2642A64959FDA6D255523, E429DAD7B6879CE0D65A63A9DB44842BD02563855A85016F99E70BBA6C0356C2 ] voxaldriver C:\Windows\system32\DRIVERS\voxaldriverx64.sys 18:13:50.0865 0x165c voxaldriver - ok 18:13:50.0869 0x165c [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 18:13:50.0876 0x165c vsmraid - ok 18:13:50.0900 0x165c [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe 18:13:50.0938 0x165c VSS - ok 18:13:50.0940 0x165c VSStandardCollectorService140 - ok 18:13:50.0942 0x165c [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 18:13:50.0949 0x165c vwifibus - ok 18:13:50.0956 0x165c [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll 18:13:50.0978 0x165c W32Time - ok 18:13:50.0981 0x165c [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 18:13:50.0986 0x165c WacomPen - ok 18:13:50.0989 0x165c [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 18:13:51.0006 0x165c WANARP - ok 18:13:51.0008 0x165c [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 18:13:51.0025 0x165c Wanarpv6 - ok 18:13:51.0049 0x165c [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe 18:13:51.0073 0x165c wbengine - ok 18:13:51.0079 0x165c [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 18:13:51.0090 0x165c WbioSrvc - ok 18:13:51.0097 0x165c [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll 18:13:51.0110 0x165c wcncsvc - ok 18:13:51.0114 0x165c [ BC00873272B3771CCDA38336AF2B4D4B, 3E412DEC5F172B4C5FD5C227CD790EE56B90A00A8B538704E8F973D230BE2289 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 18:13:51.0120 0x165c WcsPlugInService - ok 18:13:51.0123 0x165c [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\DRIVERS\wd.sys 18:13:51.0127 0x165c Wd - ok 18:13:51.0140 0x165c [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 18:13:51.0155 0x165c Wdf01000 - ok 18:13:51.0159 0x165c [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost C:\Windows\system32\wdi.dll 18:13:51.0166 0x165c WdiServiceHost - ok 18:13:51.0168 0x165c [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost C:\Windows\system32\wdi.dll 18:13:51.0174 0x165c WdiSystemHost - ok 18:13:51.0180 0x165c [ EE841B6D1F2B9508D3ABAE52AC05A94F, F1AE981FCDBFC4672A4EABABD41382E93762EFC2EDAD96E75530E7ACA5AF1FD8 ] WebClient C:\Windows\System32\webclnt.dll 18:13:51.0189 0x165c WebClient - ok 18:13:51.0195 0x165c [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll 18:13:51.0214 0x165c Wecsvc - ok 18:13:51.0218 0x165c [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll 18:13:51.0237 0x165c wercplsupport - ok 18:13:51.0240 0x165c [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll 18:13:51.0259 0x165c WerSvc - ok 18:13:51.0262 0x165c [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 18:13:51.0279 0x165c WfpLwf - ok 18:13:51.0281 0x165c [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys 18:13:51.0285 0x165c WIMMount - ok 18:13:51.0287 0x165c WinDefend - ok 18:13:51.0289 0x165c WinHttpAutoProxySvc - ok 18:13:51.0297 0x165c [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 18:13:51.0316 0x165c Winmgmt - ok 18:13:51.0346 0x165c [ EBDA1B0F15CB9B2CBCC6C94824E4E054, C51314F7D611E4903DA00EFA8EB99365414436324D256083CE0B5A8E055E8E06 ] WinRM C:\Windows\system32\WsmSvc.dll 18:13:51.0379 0x165c WinRM - ok 18:13:51.0386 0x165c [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 18:13:51.0393 0x165c WinUsb - ok 18:13:51.0408 0x165c [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll 18:13:51.0427 0x165c Wlansvc - ok 18:13:51.0463 0x165c [ 357CABBF155AFD1D3926E62539D2A3A7, C43CFF84E7D930B4999DC061AB0766B57AAD7540B3E6EE54605B10ECE90825F5 ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 18:13:51.0495 0x165c wlidsvc - ok 18:13:51.0501 0x165c [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\drivers\wmiacpi.sys 18:13:51.0506 0x165c WmiAcpi - ok 18:13:51.0512 0x165c [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 18:13:51.0519 0x165c wmiApSrv - ok 18:13:51.0521 0x165c WMPNetworkSvc - ok 18:13:51.0523 0x165c [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll 18:13:51.0529 0x165c WPCSvc - ok 18:13:51.0532 0x165c [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 18:13:51.0540 0x165c WPDBusEnum - ok 18:13:51.0542 0x165c [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 18:13:51.0559 0x165c ws2ifsl - ok 18:13:51.0569 0x165c [ 103CCD4D3CE1FF6AF01F0FABA6B290AB, A8A7B847A11718A570D722060A9A09369027F03FCC32EB7AA21BF5F70AFBB651 ] WsAppService C:\Program Files (x86)\Wondershare\WAF\2.4.3.227\WsAppService.exe 18:13:51.0579 0x165c WsAppService - ok 18:13:51.0583 0x165c [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\System32\wscsvc.dll 18:13:51.0592 0x165c wscsvc - ok 18:13:51.0594 0x165c [ 8D918B1DB190A4D9B1753A66FA8C96E8, DB7D2714DC04D2D6999A207D7399A5647C8653E5A1AD80856A65C5B6065AEDFE ] WSDPrintDevice C:\Windows\system32\DRIVERS\WSDPrint.sys 18:13:51.0601 0x165c WSDPrintDevice - ok 18:13:51.0604 0x165c [ 9EEBDF7B21D16A8AF897D30607C2AB45, C86D3C16314A5A3C843A4F8316E46E22AC7BB5E54F3750050A2C56DC09E9ABCD ] WsDrvInst D:\Program Files (x86)\Wondershare\Dr.Fone for Android\Library\DriverInstaller\DriverInstall.exe 18:13:51.0610 0x165c WsDrvInst - ok 18:13:51.0612 0x165c [ 4A2A5C50DD1A63577D3ACA94269FBC7F, F75C1906D431CF871AD954218DF32A0F206E45FF49332DEF9F13C0A36A407047 ] WSDScan C:\Windows\system32\DRIVERS\WSDScan.sys 18:13:51.0617 0x165c WSDScan - ok 18:13:51.0619 0x165c WSearch - ok 18:13:51.0659 0x165c [ 88009DB9E1166B6B6713A858C176FECD, CBF4C63D3C5D14AF3C3F0D9C48E5AC9E7A4323BFB0363E9948FD801963BE1467 ] wuauserv C:\Windows\system32\wuaueng.dll 18:13:51.0700 0x165c wuauserv - ok 18:13:51.0705 0x165c [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 18:13:51.0712 0x165c WudfPf - ok 18:13:51.0719 0x165c [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 18:13:51.0727 0x165c WUDFRd - ok 18:13:51.0730 0x165c [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 18:13:51.0737 0x165c wudfsvc - ok 18:13:51.0742 0x165c [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll 18:13:51.0751 0x165c WwanSvc - ok 18:13:51.0754 0x165c ================ Scan global =============================== 18:13:51.0757 0x165c [ 168EA9CD9BD6056BB6F60B57D5304BBE, 5A2F98754F042A7D80E7483842967EB362F01D57CE9720B24C7EDAA047F24C6F ] C:\Windows\system32\basesrv.dll 18:13:51.0762 0x165c [ 8925F0181AB6A43A4AF6420211FDEC47, E795784FE4C62B463800C712D7E6AD855E22C80261C31DC8F3E3B9B6F2808B2F ] C:\Windows\system32\winsrv.dll 18:13:51.0768 0x165c [ 8925F0181AB6A43A4AF6420211FDEC47, E795784FE4C62B463800C712D7E6AD855E22C80261C31DC8F3E3B9B6F2808B2F ] C:\Windows\system32\winsrv.dll 18:13:51.0773 0x165c [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll 18:13:51.0781 0x165c [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe 18:13:51.0785 0x165c [ Global ] - ok 18:13:51.0785 0x165c ================ Scan MBR ================================== 18:13:51.0786 0x165c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk2\DR2 18:13:51.0845 0x165c \Device\Harddisk2\DR2 - ok 18:13:51.0846 0x165c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1 18:13:51.0863 0x165c \Device\Harddisk1\DR1 - ok 18:13:52.0591 0x165c [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0 18:13:52.0679 0x165c \Device\Harddisk0\DR0 - ok 18:13:52.0679 0x165c ================ Scan VBR ================================== 18:13:52.0687 0x165c [ 1A1291110FDA7E5F1BE35382E2F5E8B1 ] \Device\Harddisk2\DR2\Partition1 18:13:52.0690 0x165c \Device\Harddisk2\DR2\Partition1 - ok 18:13:52.0695 0x165c [ 5FD6BE246B3C354F2C2ECF5AC95021ED ] \Device\Harddisk2\DR2\Partition2 18:13:52.0698 0x165c \Device\Harddisk2\DR2\Partition2 - ok 18:13:52.0702 0x165c [ 3599B3FE75EBB7F8FD3B67298679FE57 ] \Device\Harddisk1\DR1\Partition1 18:13:52.0705 0x165c \Device\Harddisk1\DR1\Partition1 - ok 18:13:52.0709 0x165c [ 0DD92FFE13BCEAAE73D7664E64233EA8 ] \Device\Harddisk0\DR0\Partition1 18:13:52.0711 0x165c \Device\Harddisk0\DR0\Partition1 - ok 18:13:52.0711 0x165c ================ Scan generic autorun ====================== 18:13:52.0727 0x165c [ 63B913AAB1244D8DED54CF0EFC8A56BD, 639830E9ECB004F09EA968EDF68C0037B5DFF7CCFF007DE5D11DEF2166707341 ] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe 18:13:52.0744 0x165c AdobeAAMUpdater-1.0 - ok 18:13:52.0747 0x165c [ C36BB659F08F046B139C8D1B980BF1AC, 405F03534BE8B45185695F68DEB47D4DAF04DCD6DF9D351CA6831D3721B1EFC4 ] C:\Windows\system32\rundll32.exe 18:13:52.0755 0x165c Logitech Download Assistant - ok 18:13:52.0826 0x165c [ 6C1D16D4275DBC2B4D05377BF9408319, 38443F6EDB2E4C0210BC8A157C0699E63450ED4F1CE5C2A8D45ACC7A6BB67314 ] C:\Program Files\AMD\CNext\CNext\cnext.exe 18:13:52.0891 0x165c StartCN - ok 18:13:52.0901 0x165c [ 7DC06D017872420EAFBD512225F8F4E2, FF47A89958AB9995DC8CAE1848528C326B9306E88E19ACC25ED23D64EFA0DF66 ] C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe 18:13:52.0910 0x165c AdobeGCInvoker-1.0 - ok 18:13:52.0915 0x165c [ 35048D8E8A0BF7A797CD5757ACD7EED0, 890FCF24869614B3990B575A588ECB35C25A5B896F21BF9C66D43C93787FDD7A ] C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe 18:13:52.0920 0x165c CLMLServer - ok 18:13:52.0924 0x165c [ C049C40CAEE8900130BD5F80B594CC7B, F54FC31662A9B8032B380793D534F34A0C63FED9C84DE313D17A61612EB31DC4 ] C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe 18:13:52.0929 0x165c RemoteControl10 - ok 18:13:52.0933 0x165c [ 0CD7D396138D325400CB5A0D964EBE08, 6C347E9483FBF48212F560F9A2B1B49C4066D4F8437C3C8B579129FEAE28460E ] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe 18:13:52.0939 0x165c BDRegion - ok 18:13:52.0941 0x165c [ 9D56299FA5C9B3D9E67FF3ACB301139F, 202A0542BEA33C5F78A406EF9479EB7BD42FCBEAC9F49F38F6ECC48554117811 ] C:\Program Files (x86)\lg_fwupdate\lgfw.exe 18:13:52.0944 0x165c LGODDFU - ok 18:13:52.0954 0x165c [ F577910A133A592234EBAAD3F3AFA258, 36F514740EE2D2B2F7ABFFFA13D575233EC4CE774EB58BF889C09930FEF1F443 ] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe 18:13:52.0964 0x165c SwitchBoard - detected UnsignedFile.Multi.Generic ( 1 ) 18:13:52.0964 0x165c SwitchBoard ( UnsignedFile.Multi.Generic ) - warning 18:13:52.0981 0x165c [ 3EE19173AC7BB16AD239B195D97C13B0, A9E5FC90F20DC7500A186C9D184ED55BC04038FFC6D97714E64C660EAE808A98 ] C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe 18:13:52.0998 0x165c AdobeCS6ServiceManager - ok 18:13:53.0005 0x165c [ E7594F966F61CFECC9B70350589DEBBF, FE37A8E1ED47486FFF9083032E3B555E9B0D91A0C964019E27EFF2C5F1272D07 ] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe 18:13:53.0011 0x165c IJNetworkScannerSelectorEX2 - ok 18:13:53.0032 0x165c [ 8A32FF690135458F5563C836D6AC9A10, FDEF87A07B4AFCC0C8D230197A5D6E3313A82FCC3A7BE4EDDAF96E1C189213FF ] C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE 18:13:53.0053 0x165c CanonQuickMenu - ok 18:13:53.0111 0x165c [ E67118779196D1FDB49899709B62CBD5, E2891E34735C29018831818A58DA40900179A90A68FC92C6C903C57947AF73FC ] C:\Program Files (x86)\Dropbox\Client\Dropbox.exe 18:13:53.0162 0x165c Dropbox - ok 18:13:53.0173 0x165c [ 405D71583114582DCE7DDCEB87B8BD35, 586622D1D056509A84DB423160E9989F77ECA4E9F471B3467EB14EC56E755516 ] C:\Program Files (x86)\PDF24\pdf24.exe 18:13:53.0182 0x165c PDFPrint - ok 18:13:53.0201 0x165c [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 18:13:53.0222 0x165c Sidebar - ok 18:13:53.0226 0x165c [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 18:13:53.0234 0x165c mctadmin - ok 18:13:53.0253 0x165c [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 18:13:53.0273 0x165c Sidebar - ok 18:13:53.0276 0x165c [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 18:13:53.0285 0x165c mctadmin - ok 18:13:53.0292 0x165c [ CC436BB2A26391F3DEBE316F6FB0474F, 2DA63827AD1449CA5F2888ADFA9645F1EAF8B39D26EC214441EE80F3A56E6E72 ] C:\Users\Arne\AppData\Local\Microsoft\BingSvc\BingSvc.exe 18:13:53.0297 0x165c BingSvc - ok 18:13:53.0334 0x165c [ 4A23B327CAD20CCB29B542001D3BA590, 84D9FBF71F5F4830C2B67AA72C1203BC844FA51616AA0CF3C3F9E5BCD049AAB5 ] C:\ProgramData\VideoDownloaderUltimateWinApp\VideoDownloaderUltimate.exe 18:13:53.0369 0x165c VideoDownloaderUltimate - ok 18:13:53.0383 0x165c [ 678DD73CA364411BCF431892B8F878DA, 0853A5FB66DDB187947BF9A51789728B75E34885592F51C2BBBC583729B23E40 ] C:\Users\Arne\AppData\Local\Google\Update\1.3.33.17\GoogleUpdateCore.exe 18:13:53.0395 0x165c Google Update - ok 18:13:53.0400 0x165c Win FW state via NFP2: disabled ( trusted ) 18:13:53.0400 0x165c ============================================================ 18:13:53.0400 0x165c Scan finished 18:13:53.0400 0x165c ============================================================ 18:13:53.0403 0x1670 Detected object count: 4 18:13:53.0403 0x1670 Actual detected object count: 4 18:25:43.0589 0x1670 DigitalWave.Update.Service ( UnsignedFile.Multi.Generic ) - skipped by user 18:25:43.0589 0x1670 DigitalWave.Update.Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 18:25:43.0591 0x1670 PassThru Service ( UnsignedFile.Multi.Generic ) - skipped by user 18:25:43.0591 0x1670 PassThru Service ( UnsignedFile.Multi.Generic ) - User select action: Skip 18:25:43.0593 0x1670 SwitchBoard ( UnsignedFile.Multi.Generic ) - skipped by user 18:25:43.0593 0x1670 SwitchBoard ( UnsignedFile.Multi.Generic ) - User select action: Skip 18:25:43.0595 0x1670 SwitchBoard ( UnsignedFile.Multi.Generic ) - skipped by user 18:25:43.0595 0x1670 SwitchBoard ( UnsignedFile.Multi.Generic ) - User select action: Skip
__________________ Gruß Enra93 |
10.09.2018, 21:46 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet) Adware/Junkware/Toolbars entfernen Alte Versionen von adwCleaner vorher löschen, danach neu runterladen auf den Desktop! Virenscanner jetzt vor dem Einsatz dieser Tools bitte komplett deaktivieren! adwCleaner v7.x Downloade Dir bitte AdwCleaner auf deinen Desktop (Bebilderte Anleitung).
__________________ Logfiles bitte immer in CODE-Tags posten |
12.09.2018, 16:39 | #13 |
| Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet)Code:
ATTFilter # ------------------------------- # Malwarebytes AdwCleaner 7.2.3.1 # ------------------------------- # Build: 09-03-2018 # Database: 2018-09-12.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 09-12-2018 # Duration: 00:00:01 # OS: Windows 7 Home Premium # Cleaned: 53 # Failed: 0 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** Deleted C:\Windows\System32\config\systemprofile\AppData\Local\DMR Deleted C:\Users\Arne\AppData\Local\ContextTrue Deleted C:\Users\Arne\AppData\Local\StormFall Deleted C:\Users\Arne\AppData\Roaming\StormFall Deleted C:\Users\Arne\AppData\Roaming\VOPackage Deleted C:\Windows\SysWOW64\config\systemprofile\AppData\Local\LavasoftTcpService Deleted C:\Program Files (x86)\MBOT_DE_383 ***** [ Files ] ***** Deleted C:\Windows\System32\LavasoftTcpService64.dll Deleted C:\Windows\System32\LavasoftTcpServiceOff.ini Deleted C:\Windows\SysWOW64\LavasoftTcpServiceOff.ini Deleted C:\Windows\SysWOW64\lavasofttcpservice.dll ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** Deleted C:\Users\Arne\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\WorldofTanks.lnk ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** Deleted HKLM\Software\Microsoft\Shared Tools\MSConfig\startupreg\Pokki Deleted HKCU\Software\Pokki Deleted HKLM\SYSTEM\CurrentControlSet\Services\EventLog\Application\chip 1-click download service Deleted HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{A7897C67-AC38-48B5-AE20-0D5C26285BAC} Deleted HKCU\Software\InstallCore Deleted HKCU\Software\Link64 Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{FCAA532B-E807-4027-940C-BA16B9D50105} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{CB31FF8F-BF80-4D2B-ADBE-12C6F5347890} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{9A754403-27B1-4ED7-96D7-588F07888EBF} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{8F010D54-C023-457F-AF03-497EACB6D519} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{472EF1D2-4AAE-470D-AE85-6AF8177916FD} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{3A5A5381-DAAF-4C0D-B032-2C66B3EE4A8D} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{26C7AFDB-3690-449E-B979-B0AF5CC56DD4} Deleted HKLM\Software\Wow6432Node\Classes\CLSID\{0015CAC9-FC30-4CD0-BFAA-7412CC2C4DD9} Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\amiupdaterExd Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\amiupdaterExi Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\StormFall W1 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\StormFall W2 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\StormFall TW2 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\StormFall TW1 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WOT WFRI1 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WOT W2 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WOT W1 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WOT WMON1 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WOT WWED1 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WOT WTUE1 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WOT WW1 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WOT WTHUR1 Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WOT N Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WOT T Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WOT WW2 Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Deleted HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com Deleted HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\VOPackage Deleted HKLM\Software\Wow6432Node\Lavasoft\Web Companion Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com Deleted HKLM\Software\Wow6432Node\Classes\AppID\LavasoftTcpService.exe Deleted HKLM\SOFTWARE\Classes\AppID\LavasoftTcpService.exe Deleted HKLM\Software\Wow6432Node\Classes\AppID\{2CE0F1DC-C504-4B7B-A385-D94A2531DFFB} Deleted HKLM\Software\Classes\AppID\{2CE0F1DC-C504-4B7B-A385-D94A2531DFFB} ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ************************* [+] Delete Prefetch [+] Delete Tracing Keys [+] Reset Chromium Policies [+] Reset Proxy Settings [+] Reset Winsock ************************* AdwCleaner[S00].txt - [6616 octets] - [12/09/2018 17:38:02] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
__________________ Gruß Enra93 |
12.09.2018, 18:15 | #14 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet) Bitte die Instruktionen richtig umsetzen Zitat:
__________________ Logfiles bitte immer in CODE-Tags posten |
14.09.2018, 14:02 | #15 |
| Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet)Code:
ATTFilter # ------------------------------- # Malwarebytes AdwCleaner 7.2.3.1 # ------------------------------- # Build: 09-03-2018 # Database: 2018-09-13.1 (Cloud) # Support: https://www.malwarebytes.com/support # # ------------------------------- # Mode: Clean # ------------------------------- # Start: 09-14-2018 # Duration: 00:00:00 # OS: Windows 7 Home Premium # Cleaned: 1 # Failed: 0 ***** [ Services ] ***** No malicious services cleaned. ***** [ Folders ] ***** No malicious folders cleaned. ***** [ Files ] ***** No malicious files cleaned. ***** [ DLL ] ***** No malicious DLLs cleaned. ***** [ WMI ] ***** No malicious WMI cleaned. ***** [ Shortcuts ] ***** No malicious shortcuts cleaned. ***** [ Tasks ] ***** No malicious tasks cleaned. ***** [ Registry ] ***** Deleted HKCU\Software\Link64 ***** [ Chromium (and derivatives) ] ***** No malicious Chromium entries cleaned. ***** [ Chromium URLs ] ***** No malicious Chromium URLs cleaned. ***** [ Firefox (and derivatives) ] ***** No malicious Firefox entries cleaned. ***** [ Firefox URLs ] ***** No malicious Firefox URLs cleaned. ************************* [+] Delete Prefetch [+] Delete Tracing Keys [+] Reset Chromium Policies [+] Reset IE Policies [+] Reset Proxy Settings [+] Reset Winsock ************************* AdwCleaner[S00].txt - [6616 octets] - [12/09/2018 17:38:02] AdwCleaner[C00].txt - [5916 octets] - [12/09/2018 17:38:17] AdwCleaner[S01].txt - [1395 octets] - [14/09/2018 15:00:22] ########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########
__________________ Gruß Enra93 |
Themen zu Windows 7 - Internetzugriff einiger Programme blockiert (Schädling vermutet) |
blockiert, canon, deaktiviert, fehler, firefox, firewall, forum, g-data, installiert, internet, kein internet, keine verbindung, lösung, neu, neuinstallation, nicht mehr, problem, probleme, programme, schädling, surfen, test, verbindung, windows, windows 7, zugriff |