Teil 11 Code:
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\filetrace.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDisplayStatusManager.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbrand.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ndfetw.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Apphlpdm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035168 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_15b3.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00035168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxssrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasphone.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\pots.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpui.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipconfig.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\hid.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\extrac32.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbuhci.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Workplace.WorkplaceSettings.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\hidserv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\findstr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\RNDISMP.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dmvsc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\choice.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\TsUsbGD.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\DmNotificationBroker.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\cofiredm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmpapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcnsh.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\cacls.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtffilt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouhid.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fdc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\buttonconverter.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthpanapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmAgent.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\WofUtil.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msisip.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ias.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhf.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDOIProxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\APHostRes.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhv.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00031528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxdm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\InprocLogger.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifmon.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tape.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fcvsc.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00031072 _____ (Promise Technology, Inc.) C:\WINDOWS\system32\Drivers\stexstor.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\timeout.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxsstore.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasser.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWNet.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthhfHid.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeevts.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmiprop.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ureg.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncmlhook.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcPing.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapprovp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\clip.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncuprov.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAMRNBSink.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\LldpNotify.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wacompen.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00029536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbd.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbohci.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\CmBatt.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Dot3Conn.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscdll.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmpbk32.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00029024 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_19a2.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00029024 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_10df.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrshost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsutilext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dswave.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\urschipidea.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00028512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uefi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00028512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\atapi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.SystemManufacturers.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\more.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidbatt.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\asyncmac.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00027944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sermouse.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmutil.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CheckNetIsolation.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00027488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\urssynopsys.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgentc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbprint.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmoleaututils.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEject.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026976 _____ (Microsoft Corporation) C:\WINDOWS\system32\streamci.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026976 _____ (Mellanox) C:\WINDOWS\system32\Drivers\winmad.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026976 _____ (Advanced Micro Devices) C:\WINDOWS\system32\Drivers\amdxata.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\winusb.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsldr.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npsvctrig.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\delegatorprovider.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\davhlpr.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WINSRPC.DLL
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi_passthru.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\osbaseln.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifibus.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HyperVideo.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\flpydisk.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\DefaultPrinterProvider.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\comp.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\chkwudrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\chkdsk.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ARP.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsUpdateElevatedInstaller.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfnet.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\netbtugc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcdProp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\fc.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtClient.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsperf.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\VMBusHID.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcfgutils.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tbs.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAMRNBSink.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\TtlsExt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sisbkup.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\serwvdrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Register-CimProvider.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serenum.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00024416 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd1394.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\sort.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ROUTE.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.ps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mcd.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\cofire.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsDeviceAccessRevocation.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mgmtapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCCSPal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\lmhsvc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsvcctl.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kdnic.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\acu.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\xmlprovi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\umdmxfrm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\spopk.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\PnPutil.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcVSp1res.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ws2ifsl.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmprocessxmlfiltered.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\isapnp.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\uniplat.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\replace.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasctrs.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ndproxystub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\energytask.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usb8023.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BtaMPM.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\convert.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00021856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cmimcext.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00021656 _____ C:\WINDOWS\system32\NetTrace.PLA.Diagnostics.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\PING.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\nbtstat.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdPHost.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskperf.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\bridgeunattend.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshelper.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.BackgroundPlayback.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdial.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiltcfg.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\NdisVirtualBus.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\genericusbfn.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\chkntfs.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\attrib.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshqos.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Background.ps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmstplua.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00020184 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumbase.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019992 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtIntcLpioDMA.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnlsres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\runas.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\irclass.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\EsdSip.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhv1394.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\PATHPING.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\irenum.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\doskey.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00019296 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupetw.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00019296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msisadrv.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00019296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelide.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\serialui.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernelceip.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DmOmaCpMo.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00018784 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllhost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00018656 _____ (Microsoft Corporation) C:\WINDOWS\system32\psapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsock32.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\syssetup.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdm64.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\netbios.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wmiacpi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sfloppy.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\clb.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WindowsTrustedRTProxy.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00017935 _____ C:\WINDOWS\system32\EventViewer_EventDetails.xsl
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\TRACERT.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\stdole2.tlb
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\RmClient.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mountvol.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\icsunattend.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhuxapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmpushproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017624 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\bcmfn2.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00017432 _____ (Microsoft Corporation) C:\WINDOWS\system32\HalExtPL080.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wowreg32.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\print.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nrpsrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\label.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ktmutil.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsilog.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseetw.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasacd.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00017248 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00017248 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_07_1415.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\secinit.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommonPal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hnetmon.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsavailux.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\find.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\subst.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\regidle.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\pstask.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRINFO.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\finger.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hyperkbd.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet_uart16550.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00016168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSChannel.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmptrap.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcwrun.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ifsutilx.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MTConfig.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_IS2022.DLL
2015-07-10 12:59 - 2015-07-10 12:59 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pciide.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmApplicationHealthMonitorProxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwinsat.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpts.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00015200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdstub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshirda.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpPortingLibrary.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrssrv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeSyncTask.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcommandlineutils.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\chcp.com
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfmifsproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\c_GSM7.DLL
2015-07-10 12:59 - 2015-07-10 12:59 - 00014552 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumdll.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbperf.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensApi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\recover.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\HOSTNAME.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\EasPoliciesBrokerPS.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Dmpusbstor.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\DockInterface.ProxyStub.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcmonitor.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\amsiproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmcodecdspps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\whhelper.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\svsvc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityRtapiPal.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmiso8601utils.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\dabapi.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_ISCII.DLL
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsUsbRedirectionGroupPolicyExtension.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_1137.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\InfDefaultInstall.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Eap3Host.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmgencounter.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpipmi.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschapext.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MinstoreEvents.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-battery-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\umpass.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rootmdm.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mstee.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpitime.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\acproxy.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\TCPSVCS.EXE
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\netwphelper.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpipagr.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\DefaultDeviceManager.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlibres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeDateMUICallback.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\spnet.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\regedt32.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiwer.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\EasPoliciesBrokerHost.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mshidumdf.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\errdev.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomcnfg.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\help.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\CIRCoInst.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\spmpm.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Locator.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mspqm.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\acledit.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmcodecdspps.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\plasrv.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Nlsdl.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllhst3g.exe
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\comcat.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AutoWorkplaceN.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshhyperv.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcNs4.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\osuninst.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxex.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\idndl.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vms3cap.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mshidkmdf.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00008192 _____ C:\WINDOWS\system32\settings.dat
2015-07-10 12:59 - 2015-07-10 12:59 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\gpuenergydrv.sys
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\stdole32.tlb
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\shimeng.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-hal-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Firewall.cpl
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\FamilySafetyExt.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrolluxdll.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-storage-tiering-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-sleepstudy-events.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\system32\normaliz.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004675 _____ C:\WINDOWS\system32\wsmanconfig_schema.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2help.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzsyncres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004148 _____ C:\WINDOWS\system32\psmodulediscoveryprovider.mof
2015-07-10 12:59 - 2015-07-10 12:59 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00004014 _____ C:\WINDOWS\system32\xwizard.dtd
2015-07-10 12:59 - 2015-07-10 12:59 - 00003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanutil.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootstr.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncRes.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\sfc.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\msafd.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lz32.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lltdres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\icmp.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmdskres2.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAppsRes.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\bridgeres.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrsmgr.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rnr20.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00002426 _____ C:\WINDOWS\system32\WsmTxt.xsl
2015-07-10 12:59 - 2015-07-10 12:59 - 00002269 _____ C:\WINDOWS\system32\WimBootCompress.ini
2015-07-10 12:59 - 2015-07-10 12:59 - 00002125 _____ C:\WINDOWS\system32\AppxProvisioning.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00001820 _____ C:\WINDOWS\system32\rasctrnm.h
2015-07-10 12:59 - 2015-07-10 12:59 - 00001559 _____ C:\WINDOWS\system32\WsmPty.xsl
2015-07-10 12:59 - 2015-07-10 12:59 - 00000843 _____ C:\WINDOWS\system32\onlinesetup.cmd
2015-07-10 12:59 - 2015-07-10 12:59 - 00000714 _____ C:\WINDOWS\system32\RestartManager.mof
2015-07-10 12:59 - 2015-07-10 12:59 - 00000614 _____ C:\WINDOWS\system32\WdsUnattendTemplate.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00000565 _____ C:\WINDOWS\system32\NdfEventView.xml
2015-07-10 12:59 - 2015-07-10 12:59 - 00000176 _____ C:\WINDOWS\system32\RestartManagerUninstall.mof
2015-07-10 12:59 - 2015-07-10 12:59 - 00000035 _____ C:\WINDOWS\system32\winrm.cmd
2015-07-10 12:55 - 2015-08-06 01:43 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-07-10 11:11 - 2015-07-10 11:11 - 00000164 _____ C:\WINDOWS\system32\config\FP
2015-07-10 11:07 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2015-07-10 11:07 - 2015-07-10 13:04 - 00000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2015-07-10 11:07 - 2015-07-10 11:07 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2015-07-10 11:07 - 2015-07-10 11:07 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2015-07-10 11:05 - 2015-08-08 09:09 - 00131072 ___SH C:\WINDOWS\system32\config\BBI
2015-07-10 11:05 - 2015-07-29 20:59 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2015-07-10 11:05 - 2015-07-29 20:59 - 00000000 ____D C:\WINDOWS\system32\Dism
2015-07-10 11:05 - 2015-07-29 20:44 - 00000000 __RHD C:\Users\Default
2015-07-10 11:05 - 2015-07-29 20:30 - 00065536 ___SH C:\WINDOWS\system32\config\ELAM
2015-07-10 11:05 - 2015-07-29 20:22 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2015-07-10 11:05 - 2015-07-10 18:34 - 00000000 ____D C:\WINDOWS\servicing
2015-07-10 11:05 - 2015-07-10 11:05 - 00897024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmiEngine.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00618272 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00254816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdscore.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00243040 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmipnpinstall.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00207200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdscore.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00202240 _____ (Microsoft Corporation) C:\WINDOWS\system32\PkgMgr.exe
2015-07-10 11:05 - 2015-07-10 11:05 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PkgMgr.exe
2015-07-10 11:05 - 2015-07-10 11:05 - 00191840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmipnpinstall.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00135520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SSShim.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00111456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SSShim.dll
2015-07-10 11:05 - 2015-07-10 11:05 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxstrace.exe
2015-07-10 11:05 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\SysWOW64\downlevel
2015-07-10 11:05 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\SMI
2015-07-10 11:05 - 2015-07-10 11:05 - 00000000 ____D C:\WINDOWS\system32\downlevel
2015-07-09 19:11 - 2015-07-09 19:11 - 00478392 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\kl1.sys
2015-07-09 19:11 - 2015-07-09 19:11 - 00247016 _____ (Kaspersky Lab UK Ltd) C:\WINDOWS\system32\Drivers\cm_km_w.sys
2015-07-09 19:11 - 2015-07-09 19:11 - 00190648 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\kneps.sys
2015-07-09 19:11 - 2015-07-09 19:11 - 00085360 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klwtp.sys
2015-07-09 19:11 - 2015-07-09 19:11 - 00077680 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klwfp.sys
2015-07-09 19:11 - 2015-07-09 19:11 - 00064368 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\kldisk.sys
2015-07-09 19:11 - 2015-07-09 19:11 - 00040304 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klkbdflt.sys
2015-07-09 19:11 - 2015-07-09 19:11 - 00039792 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klmouflt.sys
2015-07-09 19:11 - 2015-07-09 19:11 - 00039792 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klim6.sys
2015-07-09 19:11 - 2015-07-09 19:11 - 00024944 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klpd.sys
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-08-08 09:11 - 2015-07-03 10:43 - 00000000 ____D C:\Users\NA\AppData\Local\ClassicShell
2015-08-08 08:07 - 2015-07-03 11:08 - 00326175 ____N C:\WINDOWS\Minidump\080815-31250-01.dmp
2015-08-08 06:35 - 2015-07-03 10:15 - 00000000 ____D C:\Users\NA\AppData\Local\VirtualStore
2015-08-05 21:07 - 2015-07-03 10:17 - 00000000 ____D C:\Users\NA\AppData\Roaming\Adobe
2015-08-01 12:43 - 2012-10-23 12:27 - 00000000 ____D C:\temp
2015-07-30 10:20 - 2015-07-03 10:15 - 00000000 ____D C:\Users\NA\AppData\Local\Packages
2015-07-29 23:55 - 2012-08-17 02:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2015-07-29 23:38 - 2015-07-03 10:55 - 00000000 ____D C:\Users\NA\AppData\Local\NVIDIA Corporation
2015-07-29 20:41 - 2015-07-03 10:24 - 00003710 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1390383356-2510122101-3705231715-1002
2015-07-29 20:30 - 2015-07-03 11:10 - 00000000 ____D C:\Users\NA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-07-29 20:30 - 2015-07-03 11:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-07-29 20:30 - 2015-07-03 10:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp
2015-07-29 20:30 - 2015-07-03 10:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-07-29 20:30 - 2015-07-03 10:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
2015-07-29 20:30 - 2012-10-23 12:34 - 00000000 ____D C:\Program Files (x86)\Bluetooth Suite
2015-07-29 20:29 - 2013-08-22 15:36 - 00000000 ____D C:\Users\Default.migrated
2015-07-29 20:26 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2015-07-29 20:26 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2015-07-29 20:25 - 2015-07-03 10:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Media Suite
2015-07-29 20:25 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2015-07-29 20:25 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\ADFS
2015-07-29 20:25 - 2012-10-23 12:44 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUSDVD
2015-07-29 20:25 - 2012-08-02 15:28 - 00000000 ____D C:\ProgramData\PRICache
2015-07-29 11:11 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData
2015-07-27 18:52 - 2012-07-26 10:12 - 00000000 ____D C:\WINDOWS\AUInstallAgent
2015-07-26 08:41 - 2015-07-03 10:58 - 00000000 ____D C:\Users\NA\AppData\Roaming\Winamp
2015-07-26 03:04 - 2012-10-23 12:31 - 00000000 ____D C:\Program Files\DIFX
2015-07-24 06:21 - 2015-07-03 10:55 - 01756608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll
2015-07-24 06:21 - 2015-07-03 10:55 - 01710568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2015-07-24 06:21 - 2015-07-03 10:55 - 01423304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2015-07-24 06:21 - 2015-07-03 10:55 - 01316000 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll
2015-07-23 23:26 - 2012-08-17 02:52 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-07-23 23:25 - 2012-08-17 02:52 - 00000000 ____D C:\ProgramData\Adobe
2015-07-23 16:58 - 2015-07-03 12:43 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-07-23 15:45 - 2015-07-03 11:11 - 00000000 ____D C:\Program Files (x86)\SpeedFan
2015-07-23 15:18 - 2015-07-03 10:58 - 00000000 ____D C:\Program Files (x86)\Winamp
2015-07-10 13:00 - 2012-07-26 10:18 - 00000001 ___SH C:\BOOTNXT
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2015-08-08 07:26 - 2015-08-08 09:12 - 0000401 _____ () C:\Users\NA\AppData\Roaming\sp_data.sys
2015-07-25 00:14 - 2015-08-07 23:06 - 0004608 _____ () C:\Users\NA\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-08-08 06:42 - 2015-08-08 06:42 - 0000036 _____ () C:\Users\NA\AppData\Local\housecall.guid.cache
2015-08-08 07:45 - 2015-08-08 07:45 - 0007618 _____ () C:\Users\NA\AppData\Local\Resmon.ResmonCfg
2015-07-29 20:19 - 2015-07-29 20:19 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2012-08-17 02:52 - 2012-07-30 08:03 - 0000217 _____ () C:\ProgramData\SetStretch.cmd
2012-08-17 02:52 - 2009-07-22 12:04 - 0024576 _____ () C:\ProgramData\SetStretch.exe
2015-07-03 10:24 - 2015-07-03 10:25 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
2015-07-03 10:24 - 2015-07-03 10:24 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
Einige Dateien in TEMP:
====================
C:\Users\NA\AppData\Local\Temp\AFOEGFDIJCFUGT.exe
C:\Users\NA\AppData\Local\Temp\CCJIT.exe
==================== Bamital & volsnap Check =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2015-07-29 20:14 Addition TXT Teil 1 Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:06-08-2015
durchgeführt von NA (2015-08-08 09:05:42)
Gestartet von C:\Users\NA\Downloads
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-1390383356-2510122101-3705231715-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1390383356-2510122101-3705231715-503 - Limited - Disabled)
Gast (S-1-5-21-1390383356-2510122101-3705231715-501 - Limited - Disabled)
NA (S-1-5-21-1390383356-2510122101-3705231715-1002 - Administrator - Enabled) => C:\Users\NA
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Kaspersky Anti-Virus (Disabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886}
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Kaspersky Anti-Virus (Disabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
2007 Microsoft Office Suite Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
2007 Microsoft Office Suite Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden
Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated)
Adobe Photoshop CS2 (HKLM-x32\...\Adobe Photoshop CS2 - {236BB7C4-4419-42FD-0407-1E257A25E34D}) (Version: 9.0 - Adobe Systems, Inc.)
Adobe Reader X MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.0.0 - Adobe Systems Incorporated)
Angry IP Scanner (HKLM-x32\...\Angry IP Scanner) (Version: 3.3.3 - Angry IP Scanner)
ASUS Instant Connect (HKLM-x32\...\{89ECB85A-D933-4CEA-9116-5CBC9C2ED95B}) (Version: 1.2.8 - ASUS)
ASUS InstantOn (HKLM-x32\...\{749F674B-2674-47E8-879C-5626A06B2A91}) (Version: 3.0.2 - ASUS)
ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.1.5 - ASUS)
ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 2.0.4 - ASUS)
ASUS Smart Gesture (HKLM-x32\...\{4D3286A6-F6AB-498A-82A4-E4F040529F3D}) (Version: 3.3.14 - ASUS)
ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.03.0004 - ASUS)
ASUS Tutor (HKLM-x32\...\{58172D66-2F69-4215-9AEC-ED8196023736}) (Version: 1.0.7 - ASUS)
ASUS USB Charger Plus (HKLM-x32\...\{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}) (Version: 2.1.4 - ASUS)
ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.26 - ASUS)
ASUSDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4126.52 - CyberLink Corp.)
ASUSDVD (x32 Version: 10.0.4126.52 - CyberLink Corp.) Hidden
AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.10.168 - ASUSTEK)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0022 - ASUS)
Autodesk FBX Review (HKLM\...\{B9342F8C-3E1B-45EF-AEFC-0A00E156AF56}) (Version: 1.3.0.0 - Autodesk)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bitvise SSH Client 6.31 (remove only) (HKLM-x32\...\BvSshClient) (Version: - )
CCleaner (HKLM\...\CCleaner) (Version: 5.08 - Piriform)
Classic Shell (HKLM\...\{7C129CF8-199F-4269-AAEE-60B5D8D716E2}) (Version: 4.2.1 - IvoSoft)
CodeStuff Starter (HKLM-x32\...\CodeStuff Starter) (Version: 5.6.2.9 - CodeStuff)
CyberLink LabelPrint 2.5 (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.5415 - CyberLink Corp.)
CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 7.0.0.2914 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Duden Professional (HKLM-x32\...\{CADD1164-F60E-484B-A01C-F5CDE6FD40FD}) (Version: 10.0.0 - Bibliographisches Institut GmbH)
ELAN Touchpad 15.8.4.3_X64_WHQL (HKLM\...\Elantech) (Version: 15.8.4.3 - ELAN Microelectronic Corp.)
ExpressCache (HKLM\...\{2EBEFDA8-F905-4C39-AC1C-D5ABE7B3E0AE}) (Version: 1.0.86 - Diskeeper Corporation)
Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Fraps (remove only) (HKLM-x32\...\Fraps) (Version: - )
Google Update Helper (x32 Version: 1.3.21.129 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.28.1 - Google Inc.) Hidden
Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\FFD10ECE-F715-4a86-9BD8-F6F47DA5DA1C) (Version: 6.0.5.1080 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3308 - Intel Corporation)
Intel(R) Rapid Start Technology (HKLM-x32\...\3D073343-CEEB-4ce7-85AC-A69A7631B5D6) (Version: 2.1.0.1002 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan)
Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation)
Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Kaspersky Anti-Virus (HKLM-x32\...\InstallWIX_{02FECEE0-16B2-43DB-BC3B-C844477FC142}) (Version: 15.0.2.361 - Kaspersky Lab)
Kaspersky Anti-Virus (x32 Version: 15.0.2.361 - Kaspersky Lab) Hidden
Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40416.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{b341426f-8543-4e0d-96c3-e976f8ec5ab6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Mozilla Firefox 39.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 39.0.3 (x86 de)) (Version: 39.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 39.0.3 - Mozilla)
MPC-HC 1.7.9 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.9 - MPC-HC Team)
Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google)
NVIDIA GeForce Experience 2.5.12.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.5.12.11 - NVIDIA Corporation)
NVIDIA Grafiktreiber 353.62 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 353.62 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Open 3D Model Viewer (HKLM-x32\...\{EBDFEC36-5277-454F-875B-F0AA2CDC3C92}) (Version: 1.10.0000 - Alexander Gessler)
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.208 - Qualcomm Atheros Communications)
Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.3.730.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.8400.27023 - Realtek Semiconductor Corp.)
SceneSwitch (HKLM-x32\...\{5172E572-C175-4F80-A6D5-5CB45826AD61}) (Version: 1.0.14 - ASUS)
Screen Recorder Launcher (HKU\S-1-5-21-1390383356-2510122101-3705231715-1002\...\ScreenRecorderLauncher) (Version: 1.7 - )
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
SHIELD Streaming (Version: 4.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.5.12.11 - NVIDIA Corporation) Hidden
Skype™ 7.7 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.7.102 - Skype Technologies S.A.)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH)
Trend Micro RUBotted 2.0 Beta (HKLM-x32\...\{54D4EAF5-4C80-4878-B4AC-5AE454A02E3C}_is1) (Version: 2.0.0.1034 - Trend Micro, Inc.)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft)
Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)
Windows-Treiberpaket - ASUS (ATP) Mouse (01/13/2015 1.0.0.233) (HKLM\...\8335D73177E6D80E7ADC00FED2275758BD28AEFB) (Version: 01/13/2015 1.0.0.233 - ASUS)
WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - Riverbed Technology, Inc.)
WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-1390383356-2510122101-3705231715-1002_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6}\InprocServer32 -> C:\Windows\system32\shell32.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1390383356-2510122101-3705231715-1002_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\NA\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1390383356-2510122101-3705231715-1002_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\NA\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1390383356-2510122101-3705231715-1002_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\NA\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1390383356-2510122101-3705231715-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-1390383356-2510122101-3705231715-1002_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\NA\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1390383356-2510122101-3705231715-1002_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\NA\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1390383356-2510122101-3705231715-1002_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\NA\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1390383356-2510122101-3705231715-1002_Classes\CLSID\{AFD6BFDC-F329-41BB-9C53-764B965DD483}\InprocServer32 -> C:\Windows\system32\mscoree.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1390383356-2510122101-3705231715-1002_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\NA\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1390383356-2510122101-3705231715-1002_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\NA\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1390383356-2510122101-3705231715-1002_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\NA\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1390383356-2510122101-3705231715-1002_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\NA\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncApi64.dll (Microsoft Corporation)
==================== Wiederherstellungspunkte =========================
05-08-2015 20:44:38 Windows Modules Installer
08-08-2015 07:18:07 JRT Pre-Junkware Removal
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {00EEBA9C-F9EF-4272-B793-C830FBADD359} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [2015-07-10] (Microsoft Corporation)
Task: {0CCA7916-2916-4F12-BD32-1E3BE31E1269} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [2015-07-10] (Microsoft Corporation)
Task: {115CB6F0-0342-42C7-8F33-547BB3823494} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [2012-07-24] (ASUSTek Computer Inc.)
Task: {1641F54C-1E57-4902-AB65-EE2B65E5629D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {19865544-CE08-40BE-8B8C-87C47681433D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sihboot => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {1D3D099E-EE1E-4907-8BA2-BA8F12D11AA6} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe [2015-07-10] (Microsoft Corporation)
Task: {26EAEFBB-A811-4FFC-9941-17B554419B29} - \Microsoft\Windows\Setup\gwx\launchtrayprocess No Task File <==== ACHTUNG
Task: {2C97A00A-1C5C-4318-B5CC-8A1A126B77F9} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask
Task: {2E4D82CB-B298-4274-94D5-42BACF2FC29E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-05] (Google Inc.)
Task: {2F52D5DF-EA4F-432B-9F33-9EDC38691BA8} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-07-17] (Piriform Ltd)
Task: {3950B384-2841-4030-8A20-0F0C0B3D45E6} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-07-03] (Microsoft Corporation)
Task: {3D1D2945-50FF-4510-A536-D1FC653FE6D6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent No Task File <==== ACHTUNG
Task: {3DFA0466-0416-4560-BB16-FA008E0AE061} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d No Task File <==== ACHTUNG
Task: {3F6E048D-6404-433B-8F5F-CFF4D89BF89E} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => Rundll32.exe generaltel.dll,RunTelemetryW
Task: {41160EA0-208B-4C3E-B4DB-805BBABC6B93} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [2015-07-10] (Microsoft Corporation)
Task: {4454A8D0-2E4E-4A02-BF67-48DF6A7BFAB4} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask
Task: {4BA1F0D2-B6EB-46E9-A827-B63FFD09DC17} - System32\Tasks\ASUS InstantOn Config => C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe [2012-08-06] (ASUS)
Task: {5C4E6F1F-FA45-4AFB-BDC9-028E79F8658A} - System32\Tasks\{E0A60E4C-9290-4AFE-9163-91FB1EA27C07} => pcalua.exe -a C:\Users\NA\Downloads\AntiRootkit\PAVARK.exe -d C:\Users\NA\Downloads\AntiRootkit
Task: {5D3EE910-62AC-47B9-9956-591BF45A49E0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-05] (Google Inc.)
Task: {5E5515C1-7D87-4904-B9CE-FD29EB2ADB72} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync
Task: {611C823C-437B-46E7-9683-5312DFFCFD7B} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Policy Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {653E9E69-3C64-44C2-B381-CC5514969CFD} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d No Task File <==== ACHTUNG
Task: {711EE2F9-A611-4773-AF8E-D4B278A6718D} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask
Task: {7200B306-5179-4CFA-976F-650D9693CCDC} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d No Task File <==== ACHTUNG
Task: {73551810-E5F4-433E-9494-0D00B55C855E} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask
Task: {744C9FEA-08B7-43E1-A729-0F94647D655C} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Resume On Boot => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {763C6E84-56F6-4F22-9937-64C3970A405C} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig No Task File <==== ACHTUNG
Task: {784AE36D-5787-4F83-AF00-4C5A0F24E31D} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d No Task File <==== ACHTUNG
Task: {78B77FA3-9D97-441D-97B6-68CEA40B4F74} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe generaltel.dll,RunTelemetry -maintenance
Task: {7A003965-A297-4DC6-B15B-852D798391E0} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => C:\WINDOWS\system32\MusNotification.exe [2015-07-29] (Microsoft Corporation)
Task: {848DCC36-520C-4946-BF68-C7EFFEFA2F84} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_ReadyToReboot => C:\windows\system32\MusNotification.exe [2015-07-29] (Microsoft Corporation)
Task: {8DF84CB3-D8E0-4307-A35B-CA74E21786DB} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [2015-07-29] (Microsoft Corporation)
Task: {A01692AB-B7AD-42A7-B1C0-B30767006F3B} - System32\Tasks\ASUS Smart Gesture Launcher => C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLauncher.exe
Task: {A263C0D8-470D-4C0B-B8A8-89810BEC25F5} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd No Task File <==== ACHTUNG
Task: {A364E297-00AD-490D-900E-22AC34598C71} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Maintenance Install => C:\Windows\system32\usoclient.exe [2015-07-10] (Microsoft Corporation)
Task: {A5B6CD85-1B57-49B9-BA80-5D5D65F02826} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager
Task: {AC29E64E-3271-47BA-B8F1-914523CF379B} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Automatic App Update
Task: {B9B36D41-C776-424E-9A13-5387E17A2CEB} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\Windows\System32\WiFiTask.exe [2015-07-10] (Microsoft Corporation)
Task: {BA40EA09-415E-4B6D-A462-3D3E7303CC37} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2012-08-24] (ASUS)
Task: {C0B6CEE6-76BF-425A-94FE-143B496508C1} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent No Task File <==== ACHTUNG
Task: {C2162702-FFEB-48C0-AA5F-2DA3A8887D61} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation
Task: {C56AFFD3-06B8-4A16-AF7E-F7A6EB3FAE9E} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr
Task: {C5EE2EA2-5312-4D1F-B9D0-41B18DF31B78} - System32\Tasks\Microsoft\Windows\WindowsUpdate\sih => C:\Windows\System32\sihclient.exe [2015-07-10] (Microsoft Corporation)
Task: {C7A236B2-12E1-46DC-9501-3B1B0209CC09} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [2015-07-10] (Microsoft Corporation)
Task: {D2401052-A382-42DE-9C79-D1CF3563F654} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation
Task: {DAF2BAE3-1C5B-4CB5-9F62-0911C031A15A} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\Windows\system32\disksnapshot.exe [2015-07-10] (Microsoft Corporation)
Task: {EA12143E-19E9-4168-8088-F9075A12E4C0} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B No Task File <==== ACHTUNG
Task: {EA3F661E-B31C-44A9-B40C-E3D5D56149D4} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker_Display => C:\windows\system32\MusNotification.exe [2015-07-29] (Microsoft Corporation)
Task: {ED0B944E-324D-47EA-B02D-A4E472F61629} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d No Task File <==== ACHTUNG
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2015-07-29 20:58 - 2015-07-29 20:58 - 00032768 _____ () C:\WINDOWS\SYSTEM32\licensemanagerapi.dll
2015-07-13 20:45 - 2015-07-23 06:02 - 00011920 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
2015-07-29 20:20 - 2015-07-23 03:10 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2012-09-07 06:41 - 2012-07-30 13:27 - 00030592 _____ () C:\WINDOWS\system32\DptfPolicyConfigTDPService.exe
2012-09-07 06:41 - 2012-07-30 13:26 - 00029056 _____ () C:\WINDOWS\system32\DptfParticipantProcessorService.exe
2015-07-29 20:59 - 2015-07-29 20:59 - 00403968 _____ () C:\WINDOWS\System32\diagtrack_wininternal.dll
2015-08-06 01:27 - 2015-07-30 08:05 - 02498808 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2012-08-24 18:26 - 2012-08-24 18:26 - 00031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll
2015-08-06 01:27 - 2015-07-30 08:05 - 02498808 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-07-10 12:59 - 2015-07-10 12:59 - 00429056 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2015-08-06 01:27 - 2015-08-02 03:37 - 06569472 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2015-07-10 13:00 - 2015-07-10 18:45 - 00471040 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2015-08-06 01:27 - 2015-08-02 03:34 - 01806848 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2015-08-06 01:27 - 2015-08-02 03:35 - 02274816 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2014-12-23 16:54 - 2014-12-23 16:54 - 01272616 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\kpcengine.2.3.dll
2015-08-08 06:38 - 2010-08-24 19:06 - 00085840 _____ () C:\Program Files (x86)\Trend Micro\RUBotted\hc_help.dll
2015-07-13 20:45 - 2015-07-23 06:02 - 00012104 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
2015-07-03 10:54 - 2015-07-24 06:22 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2012-08-24 18:17 - 2012-08-24 18:17 - 00009216 _____ () C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll
2014-12-23 16:54 - 2014-12-23 16:54 - 00502056 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\FFExt\content_blocker@kaspersky.com\npcontentblocker.dll
2014-12-23 16:54 - 2014-12-23 16:54 - 00608040 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 15.0.2\FFExt\virtual_keyboard@kaspersky.com\npvkplugin.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\74833134.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\74833134.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Ahcache.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CoreMessagingRegistrar => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\StateRepository => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TileDataModelSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\UserManager => ""="Service"
==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer trusted/restricted ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-1390383356-2510122101-3705231715-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\NA\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKLM\...\StartupApproved\StartupFolder: => "AsusVibeLauncher.lnk"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-1390383356-2510122101-3705231715-1002\...\StartupApproved\StartupFolder: => "Adobe Gamma.lnk"
HKU\S-1-5-21-1390383356-2510122101-3705231715-1002\...\StartupApproved\Run: => "Skype"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{50088D85-AF86-4209-8663-34D4264C344D}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe
FirewallRules: [{8741A430-5048-48A7-81E6-71B0500C7E55}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE
FirewallRules: [{AA61731E-3F75-4FF2-A928-531F2690FDD5}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{2B4464FE-8B63-4661-9B1F-0BE54E6F300F}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{D5E0A46B-800D-4607-AF51-323943953871}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{FEA1D8F1-B5BF-4844-9AC6-66005BE29FA0}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [{F78797A5-BB80-4A39-B36E-02CBC84AE068}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe
FirewallRules: [TCP Query User{40C8BFD2-D488-41FE-883D-EF66AAA47F93}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{8586D046-ACC7-4AE6-9779-9BB4F80B8440}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{DFB963BE-7677-48DD-89BC-6C1DA871B997}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{53160981-E9A7-4D37-B4A9-AFF2F2EAEAE3}] => (Allow) LPort=2869
FirewallRules: [{A4045CCA-9038-4E80-AAE0-020BCDE44499}] => (Allow) LPort=1900
FirewallRules: [{2D87DFB6-ED6B-44ED-A0DC-8C6F8E9959A7}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{9C8AA0F2-BC20-46C4-96D9-1FBE1CD6A556}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe
FirewallRules: [{26057A0E-3E06-454B-9360-0A7C593AA163}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{7F46EF18-EB13-4CF7-9A9F-9EC43E2AF638}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{25BA9553-A2EE-412C-93CC-31A9DFA70F3E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{BA785C57-461A-439C-88F4-2FB565FAE1D7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{C1D48DA3-7663-48B7-9D01-AE7017437832}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{69B56F30-E3C6-45FA-BB65-6D57CAE4A88C}C:\program files (x86)\asus\asus smart gesture\astpcenter\x64\asussgplusbtserver64.exe] => (Allow) C:\program files (x86)\asus\asus smart gesture\astpcenter\x64\asussgplusbtserver64.exe
FirewallRules: [UDP Query User{E4E46770-8493-4288-9F77-5B5C7EE123BA}C:\program files (x86)\asus\asus smart gesture\astpcenter\x64\asussgplusbtserver64.exe] => (Allow) C:\program files (x86)\asus\asus smart gesture\astpcenter\x64\asussgplusbtserver64.exe
==================== Fehlerhafte Geräte im Gerätemanager =============
Name: Controller der Familie Realtek PCIe GBE
Description: Controller der Familie Realtek PCIe GBE
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Realtek
Service: rt640x64
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (08/08/2015 08:41:01 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm OTL.exe, Version 3.2.69.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 1b20
Startzeit: 01d0d1a2f5b2e2da
Beendigungszeit: 4294967295
Anwendungspfad: C:\Users\NA\Downloads\OTL.exe
Berichts-ID: 6e0c795c-3d98-11e5-bea1-fd8413ba69b8
Vollständiger Name des fehlerhaften Pakets:
Auf das fehlerhafte Paket bezogene Anwendungs-ID:
Error: (08/08/2015 08:24:57 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm OTL.exe, Version 3.2.69.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: 16b4
Startzeit: 01d0d1a2b94a744e
Beendigungszeit: 4294967295
Anwendungspfad: C:\Users\NA\Downloads\OTL.exe
Berichts-ID: 2e4910af-3d96-11e5-bea1-fd8413ba69b8
Vollständiger Name des fehlerhaften Pakets:
Auf das fehlerhafte Paket bezogene Anwendungs-ID:
Error: (08/08/2015 08:22:45 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: OHub.exe, Version: 16.0.6105.2351, Zeitstempel: 0x55c26502
Name des fehlerhaften Moduls: Mso30Imm.dll, Version: 16.0.6014.1000, Zeitstempel: 0x55a5783f
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000012b70
ID des fehlerhaften Prozesses: 0x18e0
Startzeit der fehlerhaften Anwendung: 0xOHub.exe0
Pfad der fehlerhaften Anwendung: OHub.exe1
Pfad des fehlerhaften Moduls: OHub.exe2
Berichtskennung: OHub.exe3
Vollständiger Name des fehlerhaften Pakets: OHub.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: OHub.exe5
Error: (08/08/2015 08:09:05 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: ElanTPCfg64.exe, Version: 1.0.65.1, Zeitstempel: 0x4f0be108
Name des fehlerhaften Moduls: ETDApi.dll, Version: 11.9.8.1, Zeitstempel: 0x5464772b
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000008f72
ID des fehlerhaften Prozesses: 0x2cc
Startzeit der fehlerhaften Anwendung: 0xElanTPCfg64.exe0
Pfad der fehlerhaften Anwendung: ElanTPCfg64.exe1
Pfad des fehlerhaften Moduls: ElanTPCfg64.exe2
Berichtskennung: ElanTPCfg64.exe3
Vollständiger Name des fehlerhaften Pakets: ElanTPCfg64.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ElanTPCfg64.exe5
Error: (08/08/2015 07:25:31 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: ElanTPCfg64.exe, Version: 1.0.65.1, Zeitstempel: 0x4f0be108
Name des fehlerhaften Moduls: ETDApi.dll, Version: 11.9.8.1, Zeitstempel: 0x5464772b
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000008f72
ID des fehlerhaften Prozesses: 0x146c
Startzeit der fehlerhaften Anwendung: 0xElanTPCfg64.exe0
Pfad der fehlerhaften Anwendung: ElanTPCfg64.exe1
Pfad des fehlerhaften Moduls: ElanTPCfg64.exe2
Berichtskennung: ElanTPCfg64.exe3
Vollständiger Name des fehlerhaften Pakets: ElanTPCfg64.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ElanTPCfg64.exe5
Error: (08/08/2015 07:20:56 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 39.0.3.5696, Zeitstempel: 0x55c33d81
Name des fehlerhaften Moduls: mozalloc.dll, Version: 39.0.3.5696, Zeitstempel: 0x55c32c73
Ausnahmecode: 0x80000003
Fehleroffset: 0x00001aa1
ID des fehlerhaften Prozesses: 0x38c4
Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0
Pfad der fehlerhaften Anwendung: plugin-container.exe1
Pfad des fehlerhaften Moduls: plugin-container.exe2
Berichtskennung: plugin-container.exe3
Vollständiger Name des fehlerhaften Pakets: plugin-container.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: plugin-container.exe5
Error: (08/08/2015 07:18:12 AM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.
System Error:
Zugriff verweigert
.
Error: (08/08/2015 06:51:57 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: RootkitRevealer.exe, Version: 1.71.0.0, Zeitstempel: 0x44e255aa
Name des fehlerhaften Moduls: RootkitRevealer.exe, Version: 1.71.0.0, Zeitstempel: 0x44e255aa
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000040cd
ID des fehlerhaften Prozesses: 0x1f48
Startzeit der fehlerhaften Anwendung: 0xRootkitRevealer.exe0
Pfad der fehlerhaften Anwendung: RootkitRevealer.exe1
Pfad des fehlerhaften Moduls: RootkitRevealer.exe2
Berichtskennung: RootkitRevealer.exe3
Vollständiger Name des fehlerhaften Pakets: RootkitRevealer.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: RootkitRevealer.exe5
Error: (08/08/2015 06:51:20 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: RootkitRevealer.exe, Version: 1.71.0.0, Zeitstempel: 0x44e255aa
Name des fehlerhaften Moduls: RootkitRevealer.exe, Version: 1.71.0.0, Zeitstempel: 0x44e255aa
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000040cd
ID des fehlerhaften Prozesses: 0xc08
Startzeit der fehlerhaften Anwendung: 0xRootkitRevealer.exe0
Pfad der fehlerhaften Anwendung: RootkitRevealer.exe1
Pfad des fehlerhaften Moduls: RootkitRevealer.exe2
Berichtskennung: RootkitRevealer.exe3
Vollständiger Name des fehlerhaften Pakets: RootkitRevealer.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: RootkitRevealer.exe5
Error: (08/08/2015 06:32:51 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: ElanTPCfg64.exe, Version: 1.0.65.1, Zeitstempel: 0x4f0be108
Name des fehlerhaften Moduls: ETDApi.dll, Version: 11.9.8.1, Zeitstempel: 0x5464772b
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000008f72
ID des fehlerhaften Prozesses: 0x13e4
Startzeit der fehlerhaften Anwendung: 0xElanTPCfg64.exe0
Pfad der fehlerhaften Anwendung: ElanTPCfg64.exe1
Pfad des fehlerhaften Moduls: ElanTPCfg64.exe2
Berichtskennung: ElanTPCfg64.exe3
Vollständiger Name des fehlerhaften Pakets: ElanTPCfg64.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ElanTPCfg64.exe5
Systemfehler:
=============
Error: (08/08/2015 08:40:53 AM) (Source: disk) (EventID: 7) (User: )
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.
Error: (08/08/2015 08:25:07 AM) (Source: disk) (EventID: 7) (User: )
Description: Fehlerhafter Block bei Gerät \Device\Harddisk0\DR0.
Error: (08/08/2015 08:11:52 AM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}
Error: (08/08/2015 08:10:42 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Intel(R) Management and Security Application User Notification Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (08/08/2015 08:10:42 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Intel(R) Management and Security Application User Notification Service erreicht.
Error: (08/08/2015 08:09:18 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Presentation Foundation-Schriftartcache 3.0.0.0" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (08/08/2015 08:09:18 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Windows Presentation Foundation-Schriftartcache 3.0.0.0 erreicht.
Error: (08/08/2015 08:07:44 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Intel(R) Dynamic Application Loader Host Interface Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (08/08/2015 08:07:44 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Intel(R) Dynamic Application Loader Host Interface Service erreicht.
Error: (08/08/2015 08:07:42 AM) (Source: BugCheck) (EventID: 1001) (User: )
Description: 0x000000be (0xfffff960ab2c0000, 0x8030000128d6e001, 0xffffd000205ff131, 0x000000000000000b)C:\WINDOWS\Minidump\080815-31250-01.dmp080815-31250-01
Microsoft Office:
=========================
CodeIntegrity:
===================================
Date: 2015-08-04 14:19:33.476
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-08-03 15:35:16.364
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-08-02 12:54:33.883
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-08-01 15:43:50.177
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-08-01 15:43:50.162
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-08-01 15:43:50.143
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-08-01 15:43:50.128
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-08-01 15:43:50.103
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-08-01 15:43:50.087
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2015-08-01 15:43:49.863
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Speicherinformationen ===========================
Processor: Intel(R) Core(TM) i5-3317U CPU @ 1.70GHz
Percentage of memory in use: 32%
Total physical RAM: 8013.52 MB
Available physical RAM: 5418.72 MB
Total Virtual: 16205.52 MB
Available Virtual: 13677.71 MB
==================== Drives ================================
Drive c: (OS) (Fixed) (Total:185.86 GB) (Free:107.44 GB) NTFS ==>[System mit Startkomponenten (eingeholt von lesen Laufwerk)]
Drive d: (Data) (Fixed) (Total:258.35 GB) (Free:227.65 GB) NTFS
Drive f: (500 GB 1) (Fixed) (Total:443.23 GB) (Free:208.24 GB) NTFS
Drive g: (500 GB 2) (Fixed) (Total:488.28 GB) (Free:119.52 GB) NTFS
Drive y: (Volume) (Fixed) (Total:22.36 GB) (Free:22.31 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: A3677F4F)
Partition: GPT Partition Type.
========================================================
Disk: 1 (Size: 22.4 GB) (Disk ID: A3677F2B)
Partition: GPT Partition Type.
========================================================
Disk: 2 (MBR Code: Windows 7 or 8) (Size: 931.5 GB) (Disk ID: 47BD5845)
Partition 1: (Not Active) - (Size=443.2 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=488.3 GB) - (Type=07 NTFS)
==================== Ende von log ============================ |