Abgehts1 | 16.03.2016 17:50 | Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
durchgeführt von N (2016-03-16 17:30:18)
Gestartet von C:\Users\N\Desktop
Windows 10 Home Version 1511 (X64) (2015-12-10 20:50:34)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-2029053422-4224349141-4035465236-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2029053422-4224349141-4035465236-503 - Limited - Disabled)
Gast (S-1-5-21-2029053422-4224349141-4035465236-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2029053422-4224349141-4035465236-1003 - Limited - Enabled)
N (S-1-5-21-2029053422-4224349141-4035465236-1001 - Administrator - Enabled) => C:\Users\N
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
abFiles (HKLM-x32\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.00.3009 - Acer Incorporated)
abPhoto (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 3.03.2004.4 - Acer Incorporated)
Acer Care Center (HKLM\...\{A424844F-CDB3-45E2-BB77-1DDE4A091E76}) (Version: 1.00.3008 - Acer Incorporated)
Acer Explorer Agent (HKLM\...\{4D0F42CF-1693-43D9-BDC8-19141D023EE0}) (Version: 2.00.3000 - Acer Incorporated)
Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.8115 - Acer Incorporated)
Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.8106.0 - Acer Incorporated)
Acer Quick Access (HKLM\...\{C1FA525F-D701-4B31-9D32-504FC0CF0B98}) (Version: 1.01.3018 - Acer Incorporated)
Acer User Experience Improvement Program App Monitor Plugin (HKLM\...\{978724F6-1863-4DD5-9E66-FB77F5AB5613}) (Version: 1.02.3005 - Acer Incorporated)
Acer User Experience Improvement Program Framework (HKLM\...\{12A718F2-2357-4D41-9E1F-18583A4745F7}) (Version: 1.02.3005 - Acer Incorporated)
Acer Video Player (HKLM-x32\...\{B6846F20-4821-11E3-8F96-0800200C9A66}) (Version: 1.00.2011.1 - Acer Incorporated)
Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.182 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.14) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.14 - Adobe Systems Incorporated)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.16.282 - Avira Operations GmbH & Co. KG)
Avira Launcher (HKLM-x32\...\{3b87484e-d70b-4b4f-ad59-2ae89571e2cf}) (Version: 1.1.56.9119 - Avira Operations GmbH & Co. KG)
Avira Launcher (x32 Version: 1.1.56.9119 - Avira Operations GmbH & Co. KG) Hidden
Canon MX510 series On-screen Manual (HKLM-x32\...\Canon MX510 series On-screen Manual) (Version: - )
CCleaner (HKLM\...\CCleaner) (Version: 5.12 - Piriform)
Common Desktop Agent (Version: 1.62.0 - OEM) Hidden
Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.0.4220 - CyberLink Corp.)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.4609.02 - CyberLink Corp.)
devolo Informer (HKLM-x32\...\dslmon) (Version: 28.0.0.0 - devolo AG)
FileZilla Client 3.14.1 (HKLM-x32\...\FileZilla Client) (Version: 3.14.1 - Tim Kosse)
Foxit PhantomPDF (HKLM-x32\...\{D4DF5498-C95C-4A02-9951-725FB2D7BC0D}) (Version: 6.0.121.624 - Foxit Corporation)
Genesys USB Mass Storage Device (HKLM-x32\...\{959B7F35-2819-40C5-A0CD-3C53B5FCC935}) (Version: 4.3.2.2.1001 - Genesys Logic)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.87 - Google Inc.)
Google Earth (HKLM-x32\...\{817750FA-EC6A-485D-9901-0683AE6FFDF1}) (Version: 7.1.5.1557 - Google)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
inSSIDer Home (HKLM-x32\...\{9E54E4AE-B67A-4925-8E92-0E1F9817FD73}) (Version: 3.1.2.1 - MetaGeek, LLC)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 10.0.30.1072 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4248 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 13.2.0.1016 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 1.1.226.0 - Intel Corporation)
Intel(R) Technology Access (HKLM-x32\...\{2ff1a4b2-d080-4abd-a571-d0cef9664790}) (Version: 1.7.0.1011 - Intel Corporation)
Intel(R) Technology Access Software Asset Manager (x32 Version: 3.1.814 - Intel Corporation) Hidden
Intel(R) Update Manager (HKLM-x32\...\{B991A1BC-DE0F-41B3-9037-B2F948F706EC}) (Version: 3.1.1228 - Intel Corporation)
Intel(R) Wireless Bluetooth(R)(patch version 17.1.1431.1) (HKLM\...\{302600C1-6BDF-4FD1-1407-148929CC1385}) (Version: 17.1.1407.0480 - Intel Corporation)
Intel® Chipsatz-Gerätesoftware (x32 Version: 10.0.22 - Intel(R) Corporation) Hidden
Intel® PROSet/Wireless Software (HKLM-x32\...\{7991b5ae-96d7-4df2-97fb-a605b7cb638b}) (Version: 17.12.0 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.38 - Irfan Skiljan)
Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Microsoft Office Professional Edition 2003 (HKLM-x32\...\{90110407-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d491dd9d-2eda-4d75-b504-1a201436e7fd}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Mozilla Firefox 44.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 44.0.2 (x86 de)) (Version: 44.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 44.0.2.5884 - Mozilla)
Mozilla Thunderbird 38.7.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 38.7.0 (x86 de)) (Version: 38.7.0 - Mozilla)
Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.7.5 - Notepad++ Team)
NVIDIA Grafiktreiber 333.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 333.57 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation)
Opera Stable 34.0.2036.36 (HKLM-x32\...\Opera 34.0.2036.36) (Version: 34.0.2036.36 - Opera Software)
PDF Architect 2 (HKLM-x32\...\PDF Architect 2) (Version: 2.0.51.17865 - pdfforge GmbH)
PDF Architect 2 Create Module (x32 Version: 2.1.6.19758 - pdfforge GmbH) Hidden
PDF Architect 2 Edit Module (x32 Version: 2.1.6.19758 - pdfforge GmbH) Hidden
PDF Architect 2 View Module (x32 Version: 2.1.6.19758 - pdfforge GmbH) Hidden
PDFCreator (HKLM\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 2.0.2 - pdfforge)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.34.617.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7535 - Realtek Semiconductor Corp.)
Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 1.05.75.00(19.01.2015) - Samsung Electronics Co., Ltd.)
Samsung OCR Software (HKLM-x32\...\Samsung OCR Software) (Version: 1.01.12 (15.10.2014) - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
Startfenster (HKLM-x32\...\Startfenster) (Version: - Startfenster)
TrueCrypt (HKLM-x32\...\TrueCrypt) (Version: 7.1a - TrueCrypt Foundation)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.0 - VideoLAN)
WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
CustomCLSID: HKU\S-1-5-21-2029053422-4224349141-4035465236-1001_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\N\AppData\Local\Microsoft\OneDrive\17.3.6281.1202\FileCoAuth.exe (Microsoft Corporation)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {02FDDDE1-E617-40C0-8458-76486796044E} - System32\Tasks\IntelTA-Upgrade-56460984-97c2-4bc7-a632-d776cf817f5d => C:\Program Files (x86)\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-08-12] (Intel Corporation)
Task: {03C22A1F-1233-46BB-9A6F-B124E7D1B508} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13] (Adobe Systems Incorporated)
Task: {16A64688-119F-4FB5-922C-24A3F101067C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-13] (Google Inc.)
Task: {177033A8-D186-48F6-9EC9-89301A43CBDE} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> Keine Datei <==== ACHTUNG
Task: {1F6E25B3-C13C-42DA-AE7D-CBABD265323A} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2014-10-17] (Acer Incorporate)
Task: {25981592-64B8-493F-82BB-C4064403C8D4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-11-16] (Piriform Ltd)
Task: {26D731B1-3F8A-4E9B-9278-58AAA0239373} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2014-08-29] ()
Task: {35956ABB-8766-4AC1-93CD-4AA3FD10A3AD} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe [2014-07-22] (Acer Incorporated)
Task: {3D259D3A-CDC2-4B90-AFF7-ABFBC74F0A23} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> Keine Datei <==== ACHTUNG
Task: {4442DF99-BD63-4712-BD98-3ED4D4C7DC54} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [2015-09-04] (Intel Corporation)
Task: {4BACFB17-3994-4DB5-993B-C31C5B66EE2D} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {4D57CB2D-5D07-4F91-BAB1-295EADF6ABA4} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> Keine Datei <==== ACHTUNG
Task: {52CDA299-C3AA-471E-BD38-D56FB9D402F2} - System32\Tasks\Opera scheduled Autoupdate 1450131290 => C:\Program Files (x86)\Opera\launcher.exe [2015-12-14] (Opera Software)
Task: {55E21077-EAF9-4BE4-AE0C-76C57781265B} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe [2014-03-13] (TODO: <Company name>)
Task: {59F96AC2-132D-4A4A-972D-FC2DF2B15B29} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-11] (Adobe Systems Incorporated)
Task: {66061A64-9888-4FCA-82D0-3B76810CC445} - System32\Tasks\IntelTA-Upgrade-56460984-97c2-4bc7-a632-d776cf817f5d-Logon => C:\Program Files (x86)\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [2015-08-12] (Intel Corporation)
Task: {6914A177-C835-4EE9-9D46-7C46E3C720A9} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> Keine Datei <==== ACHTUNG
Task: {71409741-66D7-4EE7-9EA4-6B3A29E6B78B} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> Keine Datei <==== ACHTUNG
Task: {80A010D2-CA99-4862-B01E-B88C780E3C9B} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [2014-06-09] (Acer Incorporated)
Task: {860F3CD1-420D-4603-8697-C62525C6C49A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> Keine Datei <==== ACHTUNG
Task: {88A14315-519C-4659-9A6D-C1A1BE9646C0} - System32\Tasks\{2941E6A6-9B4B-4286-B8C4-5D32F0C4D8DA} => pcalua.exe -a D:\ServicePacks\Office2003SP2-KB887616-FullFile-DEU.exe -d D:\ServicePacks
Task: {8EAD4306-6BCB-4F0F-AAB4-3025A15CAB3F} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> Keine Datei <==== ACHTUNG
Task: {901295A4-841B-4FBD-9A3C-3703002E9C11} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [2014-08-29] ()
Task: {9C72E6FC-7A79-4126-8448-856226533F59} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> Keine Datei <==== ACHTUNG
Task: {A8552D39-79F8-48D4-835F-981E0430740C} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
Task: {A9A32A34-D441-49F0-A039-57779F95123F} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe [2014-12-30] (Acer Incorporate)
Task: {C6CBD6E6-07FB-4443-BFC3-EDB9267CB5CC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-13] (Google Inc.)
Task: {E14A842A-4254-4B51-9FE9-BB697E4C5E59} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> Keine Datei <==== ACHTUNG
Task: {E4636C88-D5B6-4ECC-938E-7892E6162AFF} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> Keine Datei <==== ACHTUNG
Task: {E6DD3FE7-A3BC-431C-BA7D-87EB08BE7970} - System32\Tasks\Quick Access Quick Launcher => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [2014-10-17] (Acer Incorporate)
Task: {EEFEBF57-C35F-4B5C-85B2-373B922E85AA} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-09-25] (Intel Corporation)
Task: {FC8A6213-1019-4FAE-92E5-234BD67D05F6} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> Keine Datei <==== ACHTUNG
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Verknüpfungen =============================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2015-10-30 08:18 - 2015-10-30 08:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2015-12-10 21:17 - 2015-07-13 18:37 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2014-12-04 06:19 - 2014-12-04 06:19 - 00029184 _____ () C:\WINDOWS\System32\sst9clm.dll
2015-07-07 10:44 - 2015-07-07 10:44 - 00088064 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\libglog.dll
2015-12-03 12:43 - 2015-12-03 12:43 - 00369824 _____ () C:\Program Files\Intel Corporation\Intel(R) Technology Access\JsonCpp.dll
2014-08-29 19:55 - 2012-04-24 11:43 - 00254512 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
2016-03-01 19:28 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-01 19:28 - 2016-02-23 12:27 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2014-08-29 20:00 - 2014-07-01 22:13 - 00111872 _____ () C:\Program Files (x86)\Acer\clear.fi plug-in\Clearfishellext_x64.dll
2015-10-16 11:02 - 2015-10-16 11:02 - 00043480 _____ () C:\Program Files\FileZilla FTP Client\fzshellext_64.dll
2014-05-12 10:49 - 2014-05-12 10:49 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll
2016-01-22 17:46 - 2016-01-22 17:47 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2015-12-18 18:03 - 2015-12-07 05:14 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-03-01 19:28 - 2016-02-23 09:36 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2016-03-01 19:28 - 2016-02-23 09:38 - 00674816 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\MtcUvc.dll
2016-01-12 21:03 - 2016-01-05 02:29 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-01-12 21:03 - 2016-01-05 02:23 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-01-28 04:48 - 2016-01-16 06:10 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-01-28 04:48 - 2016-01-16 06:13 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2014-09-08 13:39 - 2014-09-08 13:39 - 00464608 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
2014-09-08 13:38 - 2014-09-08 13:38 - 00051200 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrvPS.dll
2015-10-14 00:14 - 2015-10-14 00:14 - 00415128 _____ () C:\WINDOWS\system32\igfxTray.exe
2015-11-16 17:55 - 2015-11-16 17:55 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll
2016-01-21 15:07 - 2016-01-21 15:07 - 03746816 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1601.49020.0_x64__8wekyb3d8bbwe\Calculator.exe
2015-12-16 13:06 - 2015-12-16 13:06 - 00258560 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1601.49020.0_x64__8wekyb3d8bbwe\StoreRatingPromotion.dll
2016-02-19 04:02 - 2016-01-18 06:50 - 00110952 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\zlib1.dll
2016-02-19 04:02 - 2016-01-18 06:50 - 00253800 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\collector.dll
2016-02-19 04:02 - 2016-01-18 06:50 - 00295272 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\stat.dll
2016-02-19 04:02 - 2016-01-18 06:50 - 00104296 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_filesystem-vc120-mt-1_56.dll
2016-02-19 04:02 - 2016-01-18 06:50 - 00020328 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_system-vc120-mt-1_56.dll
2016-02-19 04:02 - 2016-01-18 06:50 - 00044392 _____ () C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\boost_date_time-vc120-mt-1_56.dll
2016-01-22 17:46 - 2016-01-22 17:47 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-01-22 17:46 - 2016-01-22 17:48 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2014-10-10 09:37 - 2014-10-10 09:37 - 01243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
IE trusted site: HKU\S-1-5-21-2029053422-4224349141-4035465236-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-2029053422-4224349141-4035465236-1001\...\webcompanion.com -> hxxp://webcompanion.com
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-2029053422-4224349141-4035465236-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\N\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\irfanview_wallpaper.bmp
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-2029053422-4224349141-4035465236-1001\...\StartupApproved\Run: => "CCleaner Monitoring"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{09CE9A06-8A9E-4DA9-9944-4B73DD4A1A0B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{F0825DFC-3AAE-4566-BC69-94C14ECE49B4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [UDP Query User{B4E3832F-DEEC-4705-A4F1-17A912AD9A3F}C:\program files (x86)\samsung\easy printer manager\ids.application.exe] => (Block) C:\program files (x86)\samsung\easy printer manager\ids.application.exe
FirewallRules: [TCP Query User{CAA816DA-964C-4871-8CE4-FAD9159D1504}C:\program files (x86)\samsung\easy printer manager\ids.application.exe] => (Block) C:\program files (x86)\samsung\easy printer manager\ids.application.exe
FirewallRules: [{3458DD54-E0FF-4F06-BB29-EF4CB149B028}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDirector10\PDR10.EXE
FirewallRules: [{DB3BE63B-6FCD-4057-A6AF-2596A11BA895}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{96D89B5C-58D3-4755-AD8B-91EEA9E706C8}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{A4F8DA0F-6AE5-451E-AA84-E0EED01AC04D}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{4BB4B980-4B2D-45A2-AF75-6A91021BA3B7}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{549E3BB0-DE9A-4F7D-B47E-282EB7EEEF71}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{068FAEF0-419C-42F8-9935-E7A12CE7DD2B}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\DMCDaemon.exe
FirewallRules: [{CEDB11DA-08F7-4AB2-B54D-09BBBC28445C}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{F5D0EC4F-CEA6-489B-95B9-C40F7EA8DC3A}] => (Allow) C:\Program Files (x86)\Acer\abPhoto\WindowsUpnp.exe
FirewallRules: [{0F127E0F-2071-4BE6-BC28-63A41B47D13A}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{1751083F-7DDF-4412-88B6-E05418E92D7B}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe
FirewallRules: [{54F6A32B-6948-4FEF-A57C-6BA536DFAA3A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{888125BB-D889-44CB-B922-28413FF10809}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{15F73C0C-440B-4973-ACB5-30FE4EEB7500}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{CFD21178-1725-4673-AEC9-A2A77A253F4C}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{F56202D4-035B-44F6-A5B7-E08F6681E61F}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{CBEB4760-FBED-41B3-9D4E-346E0E8582A3}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{B2B04D74-4D1E-44D5-86B6-F2E41273B08B}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{8D9313EA-FF05-49DA-8C0B-79B25551082E}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe
FirewallRules: [{C0296847-BAB9-446B-8314-55A54D1A51AA}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMR\PowerDVD12DMREngine.exe
FirewallRules: [{20CFD4E9-85FB-4D98-BDBD-7FD4E38E243D}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe
FirewallRules: [{B5922C87-6EC4-41AE-9111-E094B9097022}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12Agent.exe
FirewallRules: [{C093B4CD-1E9C-47DF-9015-7A47C7FFD980}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe
FirewallRules: [{8383797B-53F4-412F-95F1-F048C29D2149}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe
FirewallRules: [{CB5ABBA3-1E86-4429-97A2-0F506D54D736}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{10640A74-D2BD-487E-A73B-2FA73372BBD2}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{A07C76B7-2343-4272-9C9D-B8C69B94D9C2}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{7F8A2009-6962-4247-A434-9280F75D10C3}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{7C7EA8C0-9FD9-453A-948D-FC4E14F276D2}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{2F8B0130-C480-49D8-9C2A-4B48D6F6D7F3}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{BE0B074B-A135-40AB-855C-49835F6D0C74}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{29CC40DC-D0D2-4453-9786-5F47A3EA2030}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{4EE4EC7C-763B-4E07-9A42-2CE6DF107A58}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{B987E89B-6C79-4763-BF9C-539B4DD7F083}] => (Allow) C:\Program Files (x86)\Acer\AOP Framework\acer\ccd.exe
FirewallRules: [{41276BFF-AA67-4858-89F3-0E85FA519C7B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A3C66825-576B-4315-B51C-AA83112763BE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{D20BF435-F48F-44D5-A549-C71F1418A797}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [{B02646F3-908B-453E-BA4F-FC26373E8D12}] => (Allow) C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe
FirewallRules: [{FB85B955-35EF-4507-9B30-2141DDC7EEEB}] => (Allow) C:\Program Files (x86)\Acer\abPhoto_\DMCDaemon.exe
FirewallRules: [{12CC09B2-7FE9-44A1-A0E4-510D10FFAC73}] => (Allow) C:\Program Files (x86)\Acer\abPhoto_\DMCDaemon.exe
FirewallRules: [{6E6D7321-1F43-43A4-9A34-57F94760A3CA}] => (Allow) C:\Program Files (x86)\Acer\abPhoto_\WindowsUpnp.exe
FirewallRules: [{2E5809E2-8A42-4202-8C32-D3AFEC54C9A1}] => (Allow) C:\Program Files (x86)\Acer\abPhoto_\WindowsUpnp.exe
FirewallRules: [{B3AD0B5F-0A21-4E88-8EB3-EA85BEEFF3EF}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{3D3CC092-9DD1-4502-A817-6797919B6F2F}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{A486D24C-9B61-40B4-8E72-93ED9A55602E}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{C3C8F912-2D54-4F25-A18E-1A2013229BD2}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{DED0C103-98A9-4CAF-AE21-9EDC0B492E29}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{9F69C44F-57E9-445F-AFFE-7793239F3611}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\DMCDaemon.exe
FirewallRules: [{76AB3FE9-4CF3-4FE5-96E9-7A5252F1E815}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{B18F5023-8536-4A2A-81C5-4BC3E3DB8D53}] => (Allow) C:\Program Files (x86)\Acer\abMedia_\WindowsUpnpMV.exe
FirewallRules: [{E3FD31AD-B3E7-4937-A90C-661C8C3A8A9A}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{A991926C-AE83-4F79-8699-1463AC1F06B5}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{C04473F2-504E-4556-B75F-302719F7C0A1}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{0D39C4C5-5C77-4E5E-9E9C-F2685D3BF29E}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{00410E6D-2F62-4A9A-AB68-A872CA697865}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{290182D5-526B-4E32-9AFA-954FB5E8CDDE}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{574F26F0-1A0D-48AA-B732-DC6DD1DC93A7}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{1D070A4E-BA71-41D3-8E2C-9415A3F41BE1}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{6D826ADD-55CE-4774-82E5-4290D7ED2542}] => (Allow) C:\Users\N\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe
FirewallRules: [TCP Query User{C2CDB4F8-F747-4B53-8D3E-5D34EFA2818A}C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe
FirewallRules: [UDP Query User{543A0548-D63E-4550-A504-89F1607283FE}C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_40\bin\javaw.exe
FirewallRules: [{954C88E0-2A8D-4F1B-8708-DA97A0C78651}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{1E64612B-F391-44CF-9D64-91560804439E}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{D8B62E34-94B3-437C-99CF-F05840CEEDE6}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDS.Application.exe
FirewallRules: [{B3DC475A-627D-45DB-8842-AD22744DFB61}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe
FirewallRules: [{2CA6F76D-A8FB-4217-8E7C-E85C78B09504}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\IDSAlert.exe
FirewallRules: [{9108025C-231F-4C89-B101-C405F634562E}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\uninstall.exe
FirewallRules: [{A7678E10-8C04-4DB9-9D7F-019BD05D1404}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\CDAS2PC.exe
FirewallRules: [{24EA0596-8540-4BE0-AE71-19079CE19388}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\ScanProcess.exe
FirewallRules: [{4AD56A4E-D66C-49EA-84A9-3E355E6C3FF0}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\CDAS2PC\Scan2PCNotify.exe
FirewallRules: [TCP Query User{48CEBED7-F496-4D91-AFF6-03848457784A}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [UDP Query User{34B97044-4C47-44A6-B9A5-9131722598E8}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe
FirewallRules: [{9C39E06B-F98A-491C-A9B0-CD174334D625}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{D41D2468-CBC9-4905-A1B3-A92B9FCBC416}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{F55DE8AF-4578-466B-B283-2CBDAC60BA72}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{A5306DA8-14B2-4C84-87C4-685B6684D464}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{72795CEE-C5D5-4118-849C-FC9D69F6155B}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{A9E2AEE5-D34E-43CB-8AEC-607775F5B958}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{56F639C6-859A-4AB1-98F1-51CC06353A82}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{C14C0A27-F72A-4AEA-8502-105324E4B3B8}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{881C077B-338F-436D-AB92-105800156B8E}] => (Allow) C:\Program Files (x86)\devolo\informer\devinf.exe
FirewallRules: [{3C81E540-499B-48EE-B0C0-29283BBE6BE6}] => (Allow) C:\Program Files (x86)\devolo\informer\devinf.exe
FirewallRules: [TCP Query User{7D700656-366B-4336-9FA8-2829D3577974}C:\program files (x86)\devolo\informer\devinf.exe] => (Block) C:\program files (x86)\devolo\informer\devinf.exe
FirewallRules: [UDP Query User{B97AF2B0-E9AB-4047-9AF1-1AA6CA791ACE}C:\program files (x86)\devolo\informer\devinf.exe] => (Block) C:\program files (x86)\devolo\informer\devinf.exe
FirewallRules: [{B29916CE-AF60-4553-B924-3CB36CDB13D3}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{FBA78783-5120-41EB-927C-0A18ABA78028}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{4C56058B-75C2-4F5E-ADC5-4D4EA1008F3B}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{D4451628-2524-4152-B6E4-981455DFEE50}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{7DFAF8BE-7EB0-4499-8A77-8638E0A67ECE}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{9CA75E08-2DB5-4959-B27C-8BE1437B3151}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{5D0181E7-C9E5-4280-A36B-82924D5CE0E8}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{B84B6206-FAB7-4A90-935C-479F9ED34AA8}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{B22E2741-837D-4162-938C-8DB875D94C31}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{1BBF642B-46F2-4A93-9EC2-3893F1FE39A7}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{79F460D8-A888-42C6-82A5-8886627BB684}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{0738E064-B81A-4B99-B323-A254E8AC0516}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{8E628FC3-C062-4979-9756-84B4ECED6F41}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{1BCA9CBF-DD4C-463E-9FB7-079389B51660}] => (Allow) C:\Program Files (x86)\Acer\abMedia\DMCDaemon.exe
FirewallRules: [{9B84E567-4294-4B7D-9DA9-C5D52A7112BD}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [{F82DF048-9D1B-417F-8572-0CF938B63517}] => (Allow) C:\Program Files (x86)\Acer\abMedia\WindowsUpnpMV.exe
FirewallRules: [TCP Query User{1A54048D-C2BA-4AB2-B614-2D9445BD8DE3}C:\program files\ws_ftp\ws_ftp95.exe] => (Block) C:\program files\ws_ftp\ws_ftp95.exe
FirewallRules: [UDP Query User{2256809B-40C7-4037-AF98-CDA80FAD7AB7}C:\program files\ws_ftp\ws_ftp95.exe] => (Block) C:\program files\ws_ftp\ws_ftp95.exe
FirewallRules: [{1E1EA2E9-CCDD-41C5-8CD1-470BCFB2F6A9}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Wiederherstellungspunkte =========================
07-03-2016 10:35:18 Windows Update
10-03-2016 12:30:14 Windows Update
14-03-2016 12:11:16 Windows Update
15-03-2016 16:25:25 Intel(R) Technology Access
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (03/15/2016 04:37:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SkypeHost.exe, Version: 10.1.2123.10, Zeitstempel: 0x569054dc
Name des fehlerhaften Moduls: SkyWrap.dll, Version: 10.1.2123.10, Zeitstempel: 0x569054c9
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00ac6197
ID des fehlerhaften Prozesses: 0x560
Startzeit der fehlerhaften Anwendung: 0xSkypeHost.exe0
Pfad der fehlerhaften Anwendung: SkypeHost.exe1
Pfad des fehlerhaften Moduls: SkypeHost.exe2
Berichtskennung: SkypeHost.exe3
Vollständiger Name des fehlerhaften Pakets: SkypeHost.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: SkypeHost.exe5
Error: (03/15/2016 04:26:18 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.
System Error:
Zugriff verweigert
.
Error: (03/15/2016 04:21:21 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm avcenter.exe, Version 15.0.16.262 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: d074
Startzeit: 01d17ecd94dbd869
Beendigungszeit: 5204
Anwendungspfad: C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
Berichts-ID: 8daf7814-eac1-11e5-82af-2c600c0e0d29
Vollständiger Name des fehlerhaften Pakets:
Auf das fehlerhafte Paket bezogene Anwendungs-ID:
Error: (03/15/2016 04:21:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Name des fehlerhaften Moduls: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Ausnahmecode: 0xe0464645
Fehleroffset: 0x000000000000a6d6
ID des fehlerhaften Prozesses: 0xc124
Startzeit der fehlerhaften Anwendung: 0xNetworkUXBroker.exe0
Pfad der fehlerhaften Anwendung: NetworkUXBroker.exe1
Pfad des fehlerhaften Moduls: NetworkUXBroker.exe2
Berichtskennung: NetworkUXBroker.exe3
Vollständiger Name des fehlerhaften Pakets: NetworkUXBroker.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: NetworkUXBroker.exe5
Error: (03/15/2016 04:21:15 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: LAPTOP)
Description: Das Paket „windows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewy+microsoft.windows.immersivecontrolpanel“ wurde beendet, da das Anhalten zu lange dauerte.
Error: (03/15/2016 04:14:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Name des fehlerhaften Moduls: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Ausnahmecode: 0xe0464645
Fehleroffset: 0x000000000000a6d6
ID des fehlerhaften Prozesses: 0xc124
Startzeit der fehlerhaften Anwendung: 0xNetworkUXBroker.exe0
Pfad der fehlerhaften Anwendung: NetworkUXBroker.exe1
Pfad des fehlerhaften Moduls: NetworkUXBroker.exe2
Berichtskennung: NetworkUXBroker.exe3
Vollständiger Name des fehlerhaften Pakets: NetworkUXBroker.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: NetworkUXBroker.exe5
Error: (03/15/2016 02:50:29 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 2484) (User: LAPTOP)
Description: Das Paket „windows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewy+microsoft.windows.immersivecontrolpanel“ wurde beendet, da das Anhalten zu lange dauerte.
Error: (03/15/2016 02:49:58 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAPTOP)
Description: Bei der Aktivierung der App „windows.immersivecontrolpanel_cw5n1h2txyewy!microsoft.windows.immersivecontrolpanel“ ist folgender Fehler aufgetreten: -2144927142. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“.
Error: (03/15/2016 02:49:58 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm SystemSettings.exe, Version 10.0.10586.11 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Systemsteuerung "Sicherheit und Wartung", um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: d3a4
Startzeit: 01d17ec17a773251
Beendigungszeit: 4294967295
Anwendungspfad: C:\Windows\ImmersiveControlPanel\SystemSettings.exe
Berichts-ID: cd27da5c-eab4-11e5-82af-2c600c0e0d29
Vollständiger Name des fehlerhaften Pakets: windows.immersivecontrolpanel_6.2.0.0_neutral_neutral_cw5n1h2txyewy
Auf das fehlerhafte Paket bezogene Anwendungs-ID: microsoft.windows.immersivecontrolpanel
Error: (03/15/2016 02:49:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Name des fehlerhaften Moduls: NetworkUXBroker.exe, Version: 10.0.10586.0, Zeitstempel: 0x5632d7f4
Ausnahmecode: 0xe0464645
Fehleroffset: 0x000000000000a6d6
ID des fehlerhaften Prozesses: 0x8d5c
Startzeit der fehlerhaften Anwendung: 0xNetworkUXBroker.exe0
Pfad der fehlerhaften Anwendung: NetworkUXBroker.exe1
Pfad des fehlerhaften Moduls: NetworkUXBroker.exe2
Berichtskennung: NetworkUXBroker.exe3
Vollständiger Name des fehlerhaften Pakets: NetworkUXBroker.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: NetworkUXBroker.exe5
Systemfehler:
=============
Error: (03/16/2016 03:24:36 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar
Error: (03/16/2016 12:49:21 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar
Error: (03/16/2016 01:09:13 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar
Error: (03/15/2016 11:07:22 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}
Error: (03/15/2016 11:04:21 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Avira Browser-Schutz" ist vom Dienst "Avira Echtzeit-Scanner" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1070
Error: (03/15/2016 11:04:21 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "Avira Email-Schutz" ist vom Dienst "Avira Echtzeit-Scanner" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
%%1070
Error: (03/15/2016 11:04:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Windows Presentation Foundation-Schriftartcache 3.0.0.0" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (03/15/2016 11:04:10 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "Avira Echtzeit-Scanner" wurde nicht richtig gestartet.
Error: (03/15/2016 11:04:10 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "Avira Echtzeit-Scanner" wurde nicht richtig gestartet.
Error: (03/15/2016 11:04:02 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst FontCache3.0.0.0 erreicht.
CodeIntegrity:
===================================
Date: 2016-03-11 10:49:54.921
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-03-10 12:19:50.780
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-03-02 15:02:31.356
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-02-11 22:55:05.740
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-02-11 16:15:09.166
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-02-11 12:27:41.215
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-01-29 12:37:52.565
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-01-13 13:59:35.526
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2016-01-06 04:07:20.150
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
Date: 2015-12-31 22:44:35.369
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz
Prozentuale Nutzung des RAM: 31%
Installierter physikalischer RAM: 8107.32 MB
Verfügbarer physikalischer RAM: 5543.03 MB
Summe virtueller Speicher: 9387.32 MB
Verfügbarer virtueller Speicher: 6593.72 MB
==================== Laufwerke ================================
Drive c: (Acer) (Fixed) (Total:914.71 GB) (Free:656.97 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: F47BB2AF)
Partition: GPT.
==================== Ende von Addition.txt ============================ Code:
17:33:41.0229 0x4b34 TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12
17:33:41.0240 0x4b34 UEFI system
17:33:44.0303 0x4b34 ============================================================
17:33:44.0303 0x4b34 Current date / time: 2016/03/16 17:33:44.0303
17:33:44.0303 0x4b34 SystemInfo:
17:33:44.0304 0x4b34
17:33:44.0304 0x4b34 OS Version: 10.0.10586 ServicePack: 0.0
17:33:44.0304 0x4b34 Product type: Workstation
17:33:44.0304 0x4b34 ComputerName: LAPTOP
17:33:44.0304 0x4b34 UserName: Nils
17:33:44.0304 0x4b34 Windows directory: C:\WINDOWS
17:33:44.0304 0x4b34 System windows directory: C:\WINDOWS
17:33:44.0304 0x4b34 Running under WOW64
17:33:44.0304 0x4b34 Processor architecture: Intel x64
17:33:44.0304 0x4b34 Number of processors: 4
17:33:44.0304 0x4b34 Page size: 0x1000
17:33:44.0304 0x4b34 Boot type: Normal boot
17:33:44.0304 0x4b34 ============================================================
17:33:44.0644 0x4b34 KLMD registered as C:\WINDOWS\system32\drivers\02867094.sys
17:33:44.0894 0x4b34 System UUID: {6319AFC0-DB06-DB3B-D829-4981D69FB039}
17:33:45.0301 0x4b34 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
17:33:45.0305 0x4b34 ============================================================
17:33:45.0305 0x4b34 \Device\Harddisk0\DR0:
17:33:45.0305 0x4b34 GPT partitions:
17:33:45.0306 0x4b34 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {954B674D-EE5B-4DEE-BD45-73EC56692ECB}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x12C000
17:33:45.0306 0x4b34 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {40A71D62-F045-4A2A-AED1-69EB4D0134AC}, Name: EFI system partition, StartLBA 0x12C800, BlocksNum 0x96000
17:33:45.0306 0x4b34 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {981CE8A7-6CF7-4737-8907-8D95CC02FFC8}, Name: Microsoft reserved partition, StartLBA 0x1C2800, BlocksNum 0x40000
17:33:45.0306 0x4b34 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {C7CEADBD-73A8-485A-A0A8-AE94CB3F7AEC}, Name: Basic data partition, StartLBA 0x202800, BlocksNum 0x7256B000
17:33:45.0306 0x4b34 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {4643052F-DD20-49C2-9B9B-B60DE0F34D1C}, Name: , StartLBA 0x7276D800, BlocksNum 0xE1000
17:33:45.0306 0x4b34 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {B80D3EF7-6FD0-4EA4-958B-D4F8F78B0C86}, Name: Basic data partition, StartLBA 0x7284E800, BlocksNum 0x1EB8000
17:33:45.0306 0x4b34 MBR partitions:
17:33:45.0306 0x4b34 ============================================================
17:33:45.0337 0x4b34 C: <-> \Device\Harddisk0\DR0\Partition4
17:33:45.0337 0x4b34 ============================================================
17:33:45.0337 0x4b34 Initialize success
17:33:45.0337 0x4b34 ============================================================
17:34:10.0271 0x1fa4 ============================================================
17:34:10.0271 0x1fa4 Scan started
17:34:10.0271 0x1fa4 Mode: Manual; SigCheck; TDLFS;
17:34:10.0271 0x1fa4 ============================================================
17:34:10.0271 0x1fa4 KSN ping started
17:34:12.0680 0x1fa4 KSN ping finished: true
17:34:16.0406 0x1fa4 ================ Scan system memory ========================
17:34:16.0406 0x1fa4 System memory - ok
17:34:16.0407 0x1fa4 ================ Scan services =============================
17:34:16.0563 0x1fa4 1394ohci - ok
17:34:16.0567 0x1fa4 3ware - ok
17:34:16.0586 0x1fa4 ACPI - ok
17:34:16.0590 0x1fa4 acpiex - ok
17:34:16.0593 0x1fa4 acpipagr - ok
17:34:16.0613 0x1fa4 AcpiPmi - ok
17:34:16.0616 0x1fa4 acpitime - ok
17:34:16.0701 0x1fa4 [ F2CEEE9ABBCEF207ACB103215AC28BC2, F8F8B8AF6317926D7AC0CA2CA23628B2C69327A2792D58D3328443C5ED9514E9 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
17:34:16.0738 0x1fa4 AdobeARMservice - ok
17:34:16.0835 0x1fa4 [ 99B993BD0F4C033D832B50D5E83BEBEC, A091635B2B428A51400468353F52D3FF35095460D3FA8CB29E2C4A804D87B845 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
17:34:16.0846 0x1fa4 AdobeFlashPlayerUpdateSvc - ok
17:34:16.0862 0x1fa4 ADP80XX - ok
17:34:16.0885 0x1fa4 AFD - ok
17:34:16.0888 0x1fa4 agp440 - ok
17:34:16.0900 0x1fa4 ahcache - ok
17:34:16.0912 0x1fa4 AJRouter - ok
17:34:16.0918 0x1fa4 ALG - ok
17:34:16.0921 0x1fa4 AmdK8 - ok
17:34:16.0924 0x1fa4 AmdPPM - ok
17:34:16.0927 0x1fa4 amdsata - ok
17:34:16.0930 0x1fa4 amdsbs - ok
17:34:16.0934 0x1fa4 amdxata - ok
17:34:17.0008 0x1fa4 [ 37CD9EB03B36D8329F96BA921470DB54, 0CD3BFBA51F84D83E3B208D2BED7CE8E91B447B2037014663EC7CB8E5A925201 ] AntiVirMailService C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
17:34:17.0037 0x1fa4 AntiVirMailService - ok
17:34:17.0070 0x1fa4 [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
17:34:17.0085 0x1fa4 AntiVirSchedulerService - ok
17:34:17.0129 0x1fa4 [ 98C06275DB53A1E70AB8CB94013B20D4, 5DE48C829A66B0F4C8119E75D985D63C1020FA318696BD19E44E0A07CD6F1ED0 ] AntiVirService C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
17:34:17.0144 0x1fa4 AntiVirService - ok
17:34:17.0295 0x1fa4 [ 1F5CC3C23E10290A3FF9CAA74AA30D07, A4F1F3465A5E0A914EE5A4FEF4A6B639956BA04B7145EF68820BC2A15DEE4162 ] AntiVirWebService C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
17:34:17.0342 0x1fa4 AntiVirWebService - ok
17:34:17.0361 0x1fa4 AppID - ok
17:34:17.0377 0x1fa4 AppIDSvc - ok
17:34:17.0380 0x1fa4 Appinfo - ok
17:34:17.0384 0x1fa4 AppReadiness - ok
17:34:17.0405 0x1fa4 AppXSvc - ok
17:34:17.0415 0x1fa4 arcsas - ok
17:34:17.0421 0x1fa4 AsyncMac - ok
17:34:17.0430 0x1fa4 atapi - ok
17:34:17.0454 0x1fa4 AudioEndpointBuilder - ok
17:34:17.0471 0x1fa4 Audiosrv - ok
17:34:17.0506 0x1fa4 [ 5CF5E80616F74B769AABCF76FEA791D1, CA56643D41DB4E139FE85098DCD67187AAC126CE2414276364A97334E15F9F53 ] avgntflt C:\WINDOWS\system32\DRIVERS\avgntflt.sys
17:34:17.0536 0x1fa4 avgntflt - ok
17:34:17.0549 0x1fa4 [ 8AC3D6C2E2B0B22E918817A96DA4875E, AE6FB86A09373918DD7FA7E19DA9B2915AAAE6DDF5939245F44B5512E3710E1B ] avipbb C:\WINDOWS\system32\DRIVERS\avipbb.sys
17:34:17.0558 0x1fa4 avipbb - ok
17:34:17.0593 0x1fa4 [ 98BB62ABFD17F284C3C5DE40F8266F3C, CD08C737BE9FC32FF98252FCFFCAE779EC6FAB76BF80F0835ACE71F1E155D70D ] Avira.ServiceHost C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
17:34:17.0605 0x1fa4 Avira.ServiceHost - ok
17:34:17.0634 0x1fa4 [ 79F7741A773FF194EEC64A8161AE26D5, 3DDEA5FBDCB74A2BACC895A44C8C2A947F09E2649ED61D781E99DD61DBFACA5D ] avkmgr C:\WINDOWS\system32\DRIVERS\avkmgr.sys
17:34:17.0641 0x1fa4 avkmgr - ok
17:34:17.0658 0x1fa4 [ 02488D56FE0DB002CE3B1E120A0ED889, 487067731C2CA1BA8A1CF1C403C2342C153E6BE0CE9B003D914D9647059EFDBD ] avnetflt C:\WINDOWS\system32\DRIVERS\avnetflt.sys
17:34:17.0665 0x1fa4 avnetflt - ok
17:34:17.0679 0x1fa4 AxInstSV - ok
17:34:17.0693 0x1fa4 b06bdrv - ok
17:34:17.0698 0x1fa4 BasicDisplay - ok
17:34:17.0702 0x1fa4 BasicRender - ok
17:34:17.0707 0x1fa4 bcmfn - ok
17:34:17.0709 0x1fa4 bcmfn2 - ok
17:34:17.0713 0x1fa4 BDESVC - ok
17:34:17.0731 0x1fa4 Beep - ok
17:34:17.0748 0x1fa4 BFE - ok
17:34:17.0761 0x1fa4 BITS - ok
17:34:17.0764 0x1fa4 bowser - ok
17:34:17.0782 0x1fa4 BrokerInfrastructure - ok
17:34:17.0786 0x1fa4 Browser - ok
17:34:17.0804 0x1fa4 BthAvrcpTg - ok
17:34:17.0814 0x1fa4 BthEnum - ok
17:34:17.0818 0x1fa4 BthHFEnum - ok
17:34:17.0821 0x1fa4 bthhfhid - ok
17:34:17.0824 0x1fa4 BthHFSrv - ok
17:34:17.0862 0x1fa4 BthLEEnum - ok
17:34:17.0867 0x1fa4 BTHMODEM - ok
17:34:17.0875 0x1fa4 BthPan - ok
17:34:17.0896 0x1fa4 BTHPORT - ok
17:34:17.0900 0x1fa4 bthserv - ok
17:34:17.0906 0x1fa4 BTHUSB - ok
17:34:17.0931 0x1fa4 buttonconverter - ok
17:34:17.0947 0x1fa4 CapImg - ok
17:34:17.0951 0x1fa4 cdfs - ok
17:34:17.0954 0x1fa4 CDPSvc - ok
17:34:17.0957 0x1fa4 cdrom - ok
17:34:17.0960 0x1fa4 CertPropSvc - ok
17:34:17.0988 0x1fa4 [ 3B6316004C773CFAD5E6C38EC5DDDBD4, 7F8A68A6267E0C8EC11F84A1034F71991DBD78BB1C7440B6D4AE025EFBCBB534 ] cfwids C:\WINDOWS\system32\drivers\cfwids.sys
17:34:17.0995 0x1fa4 cfwids - ok
17:34:18.0008 0x1fa4 circlass - ok
17:34:18.0012 0x1fa4 CLFS - ok
17:34:18.0030 0x1fa4 ClipSVC - ok
17:34:18.0039 0x1fa4 CmBatt - ok
17:34:18.0044 0x1fa4 CNG - ok
17:34:18.0047 0x1fa4 cnghwassist - ok
17:34:18.0092 0x1fa4 CompositeBus - ok
17:34:18.0095 0x1fa4 COMSysApp - ok
17:34:18.0098 0x1fa4 condrv - ok
17:34:18.0116 0x1fa4 CoreMessagingRegistrar - ok
17:34:18.0190 0x1fa4 [ 700A193A1555B083E3A08F5D3A844925, 974F7F0C78289EFE821407E418EB65A022D6445DED8EA112B9866784AF0221EE ] cphs C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
17:34:18.0238 0x1fa4 cphs - ok
17:34:18.0259 0x1fa4 CryptSvc - ok
17:34:18.0274 0x1fa4 dam - ok
17:34:18.0296 0x1fa4 DcomLaunch - ok
17:34:18.0300 0x1fa4 DcpSvc - ok
17:34:18.0303 0x1fa4 defragsvc - ok
17:34:18.0306 0x1fa4 DeviceAssociationService - ok
17:34:18.0313 0x1fa4 DeviceInstall - ok
17:34:18.0317 0x1fa4 DevQueryBroker - ok
17:34:18.0322 0x1fa4 Dfsc - ok
17:34:18.0353 0x1fa4 [ 85137571AEC8AC757D497B9DD30D544D, 6E15C9FB4010B26A8E5AFD4E85F7362B2616EB8503ACCE28EC31AC1E7D18566F ] dg_ssudbus C:\WINDOWS\system32\DRIVERS\ssudbus.sys
17:34:18.0363 0x1fa4 dg_ssudbus - ok
17:34:18.0366 0x1fa4 Dhcp - ok
17:34:18.0416 0x1fa4 diagnosticshub.standardcollector.service - ok
17:34:18.0437 0x1fa4 DiagTrack - ok
17:34:18.0521 0x1fa4 [ 9A136E1BC9060C0AA4D53D02EA31568D, 1D5B43981A7F23052DE18C8DE288FBB9BB7820EF97B5D9F5A04A58BDA305664A ] DigitalWave.Update.Service C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe
17:34:18.0535 0x1fa4 DigitalWave.Update.Service - ok
17:34:18.0545 0x1fa4 disk - ok
17:34:18.0558 0x1fa4 DmEnrollmentSvc - ok
17:34:18.0561 0x1fa4 dmvsc - ok
17:34:18.0575 0x1fa4 dmwappushservice - ok
17:34:18.0592 0x1fa4 Dnscache - ok
17:34:18.0596 0x1fa4 dot3svc - ok
17:34:18.0600 0x1fa4 DPS - ok
17:34:18.0614 0x1fa4 drmkaud - ok
17:34:18.0629 0x1fa4 DsmSvc - ok
17:34:18.0646 0x1fa4 DsSvc - ok
17:34:18.0651 0x1fa4 DXGKrnl - ok
17:34:18.0653 0x1fa4 Eaphost - ok
17:34:18.0657 0x1fa4 ebdrv - ok
17:34:18.0666 0x1fa4 EFS - ok
17:34:18.0670 0x1fa4 EhStorClass - ok
17:34:18.0685 0x1fa4 EhStorTcgDrv - ok
17:34:18.0692 0x1fa4 embeddedmode - ok
17:34:18.0695 0x1fa4 EntAppSvc - ok
17:34:18.0860 0x1fa4 [ 6066FDFF6E02A0F1F2584EBC9D4A1E63, 2CD1405C4664FBE2EB120EB9F56FCDC629F334AD6BA609A9B442FE594CB6A247 ] ePowerSvc C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
17:34:18.0916 0x1fa4 ePowerSvc - ok
17:34:18.0922 0x1fa4 ErrDev - ok
17:34:18.0942 0x1fa4 EventSystem - ok
17:34:18.0945 0x1fa4 exfat - ok
17:34:18.0955 0x1fa4 fastfat - ok
17:34:18.0963 0x1fa4 Fax - ok
17:34:18.0967 0x1fa4 fdc - ok
17:34:18.0971 0x1fa4 fdPHost - ok
17:34:18.0974 0x1fa4 FDResPub - ok
17:34:18.0977 0x1fa4 fhsvc - ok
17:34:18.0994 0x1fa4 FileCrypt - ok
17:34:18.0996 0x1fa4 FileInfo - ok
17:34:19.0000 0x1fa4 Filetrace - ok
17:34:19.0003 0x1fa4 flpydisk - ok
17:34:19.0006 0x1fa4 FltMgr - ok
17:34:19.0010 0x1fa4 FontCache - ok
17:34:19.0088 0x1fa4 FontCache3.0.0.0 - ok
17:34:19.0092 0x1fa4 FsDepends - ok
17:34:19.0095 0x1fa4 Fs_Rec - ok
17:34:19.0098 0x1fa4 fvevol - ok
17:34:19.0101 0x1fa4 gagp30kx - ok
17:34:19.0112 0x1fa4 gencounter - ok
17:34:19.0127 0x1fa4 genericusbfn - ok
17:34:19.0151 0x1fa4 [ 0066B2A97819E8F0490F3BE78039FDB7, C052B45AAAED43403A3FA701E0C0928F9A33ACB518ECA510CD10D35D7CF69311 ] GeneStor C:\WINDOWS\System32\drivers\GeneStor.sys
17:34:19.0159 0x1fa4 GeneStor - ok
17:34:19.0163 0x1fa4 GPIOClx0101 - ok
17:34:19.0179 0x1fa4 gpsvc - ok
17:34:19.0183 0x1fa4 GpuEnergyDrv - ok
17:34:19.0242 0x1fa4 [ E1B44A75947137F4143308D566889837, EC7E883E7AF38BF3AC0AC513CFDE0186038443E9ACC7AD616EE6BD0EC09AACB9 ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
17:34:19.0249 0x1fa4 gupdate - ok
17:34:19.0253 0x1fa4 [ E1B44A75947137F4143308D566889837, EC7E883E7AF38BF3AC0AC513CFDE0186038443E9ACC7AD616EE6BD0EC09AACB9 ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
17:34:19.0260 0x1fa4 gupdatem - ok
17:34:19.0264 0x1fa4 HDAudBus - ok
17:34:19.0268 0x1fa4 HidBatt - ok
17:34:19.0282 0x1fa4 HidBth - ok
17:34:19.0285 0x1fa4 hidi2c - ok
17:34:19.0288 0x1fa4 hidinterrupt - ok
17:34:19.0291 0x1fa4 HidIr - ok
17:34:19.0294 0x1fa4 hidserv - ok
17:34:19.0297 0x1fa4 HidUsb - ok
17:34:19.0336 0x1fa4 [ 29F981739E50305128022CBE10B3659C, 25060937145B0DCA8CD088E78993BFEF1430CDDFF433E606AFC93993CBBF4B3E ] HipShieldK C:\WINDOWS\system32\drivers\HipShieldK.sys
17:34:19.0359 0x1fa4 HipShieldK - ok
17:34:19.0372 0x1fa4 HomeGroupListener - ok
17:34:19.0387 0x1fa4 HomeGroupProvider - ok
17:34:19.0391 0x1fa4 HpSAMD - ok
17:34:19.0401 0x1fa4 HTTP - ok
17:34:19.0414 0x1fa4 hwpolicy - ok
17:34:19.0419 0x1fa4 hyperkbd - ok
17:34:19.0425 0x1fa4 i8042prt - ok
17:34:19.0431 0x1fa4 iai2c - ok
17:34:19.0438 0x1fa4 iaLPSS2i_I2C - ok
17:34:19.0442 0x1fa4 iaLPSSi_GPIO - ok
17:34:19.0446 0x1fa4 iaLPSSi_I2C - ok
17:34:19.0490 0x1fa4 [ 9863EC0FB887C0AD0C3A20AC3BF91629, B695048C370CB91BB0CFF2E29641636225B23347B08F7E451FB91CF8B1A0120A ] iaStorA C:\WINDOWS\system32\drivers\iaStorA.sys
17:34:19.0510 0x1fa4 iaStorA - ok
17:34:19.0514 0x1fa4 iaStorAV - ok
17:34:19.0517 0x1fa4 iaStorV - ok
17:34:19.0520 0x1fa4 ibbus - ok
17:34:19.0589 0x1fa4 [ F39940584D12775B73712CF50056FBAC, 5EEB3011C3352A29E9BFE560DCDC2A573737EB03C0222F5AABF51C8C116BF6E4 ] iBtSiva C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe
17:34:19.0597 0x1fa4 iBtSiva - ok
17:34:19.0628 0x1fa4 [ 78DC93872CF915831F98DD46DF6283EE, 084E6BF12835A6DABC8F6EB6A758866DE1C44396A9F5078262F89ECC27A9A1BD ] ibtusb C:\WINDOWS\system32\DRIVERS\ibtusb.sys
17:34:19.0640 0x1fa4 ibtusb - ok
17:34:19.0661 0x1fa4 [ 83FF82FE209E7997067B375DAD6CF23D, E312DD068E51DBF96A8232D7D1C9F158652FDA23649655F1102928B320795091 ] ICCS C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
17:34:19.0670 0x1fa4 ICCS - ok
17:34:19.0703 0x1fa4 icssvc - ok
17:34:19.0706 0x1fa4 IEEtwCollectorService - ok
17:34:19.0886 0x1fa4 [ 548712979B0BA12ECE2D8549797593D4, 6809412A76DE30C914A65BB8546E436AD540E00610D5D13FDE486C4446E95C24 ] igfx C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
17:34:20.0011 0x1fa4 igfx - ok
17:34:20.0056 0x1fa4 [ BA1BA1C9E40BCEB88678747C1E7C256F, C85CC690D353FCEBFD243304C25EEAA2BC13DB1E2A4C8C65371F455511540959 ] igfxCUIService2.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
17:34:20.0074 0x1fa4 igfxCUIService2.0.0.0 - ok
17:34:20.0087 0x1fa4 IKEEXT - ok
17:34:20.0102 0x1fa4 [ CF25067821BB89E87021E9493C178863, 1AA25378EFD977BC6CD9405A395FA2962770385FAB5A9A55FC95B5F6DFD8D1AE ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
17:34:20.0109 0x1fa4 intaud_WaveExtensible - ok
17:34:20.0241 0x1fa4 [ 622868E4BAE8FBCD22CB1A5901A2C824, C1A2264C0984DD16C83B663C9CE43E049E1356E32C5771C3ACE225F285699138 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
17:34:20.0332 0x1fa4 IntcAzAudAddService - ok
17:34:20.0367 0x1fa4 [ 49F22F023A27D62D241BE87EDAD4CC37, 7124F017F8C7D435D21D4793D481F5BAEF93736F63AFA1879E3FB19F971F4FA9 ] IntcDAud C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
17:34:20.0383 0x1fa4 IntcDAud - ok
17:34:20.0458 0x1fa4 [ 9A6DEB5DDF7E29728F6FEA5092AFA3F2, 21C47A0490EBA302657EF30C560E4AF83777685FFE126DCCAC310163C47401D1 ] Intel(R) Capability Licensing Service TCP IP Interface C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
17:34:20.0490 0x1fa4 Intel(R) Capability Licensing Service TCP IP Interface - ok
17:34:20.0549 0x1fa4 [ 4E8816C659026539CF740EEC006F32D5, 3CA822F6659CD701122DBAFF3568B5B7E7415BEE340B56E7C4A8E672EFADDEFF ] Intel(R) TA SAM C:\Program Files (x86)\Intel Corporation\Intel(R) Technology Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe
17:34:20.0558 0x1fa4 Intel(R) TA SAM - ok
17:34:20.0592 0x1fa4 [ D0066944317BE37185136B696E61CFF4, 58FC4E3BAA1F0830BA0E5A7874371730A208E959A42595806D49B8CBE26B22F7 ] Intel(R) TechnologyAccessLegacyCSLoader C:\Program Files\Intel Corporation\Intel(R) Technology Access\LegacyCsLoaderService.exe
17:34:20.0603 0x1fa4 Intel(R) TechnologyAccessLegacyCSLoader - ok
17:34:20.0627 0x1fa4 [ FC7006DB6EC6C6EEA26FF6F5F93A3494, 484F4309CD32B7C0E32D18B19F327AF04E751766B2CAD9D1639A8FB14BBFF1C5 ] Intel(R) TechnologyAccessService C:\Program Files\Intel Corporation\Intel(R) Technology Access\IntelTechnologyAccessService.exe
17:34:20.0643 0x1fa4 Intel(R) TechnologyAccessService - ok
17:34:20.0646 0x1fa4 intelide - ok
17:34:20.0665 0x1fa4 intelpep - ok
17:34:20.0682 0x1fa4 intelppm - ok
17:34:20.0685 0x1fa4 IoQos - ok
17:34:20.0689 0x1fa4 IpFilterDriver - ok
17:34:20.0697 0x1fa4 iphlpsvc - ok
17:34:20.0702 0x1fa4 IPMIDRV - ok
17:34:20.0705 0x1fa4 IPNAT - ok
17:34:20.0709 0x1fa4 IRENUM - ok
17:34:20.0712 0x1fa4 isapnp - ok
17:34:20.0716 0x1fa4 iScsiPrt - ok
17:34:20.0762 0x1fa4 [ 16B5B394028D8ED80A569123A38DC4F7, 19839364B7A48584615F0ED56D94AB6E6F8159EAD826605F74C73845CE2C5C12 ] iumsvc C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
17:34:20.0773 0x1fa4 iumsvc - ok
17:34:20.0791 0x1fa4 [ 2DB1E2AE4A0DE62026296F0A6C29F3F5, A5A3D4D5BF9FF1DB5AC3BE15699B52707C8EB71EFA8FA82E7AE7A0C52C224380 ] iwdbus C:\WINDOWS\System32\drivers\iwdbus.sys
17:34:20.0798 0x1fa4 iwdbus - ok
17:34:20.0838 0x1fa4 [ CA295D3E5032DDF8A3CBD1A256E646FA, 03879D331AE446FCF25D0193805A5E0C17764439B5B8FE1D684DDB96B1A358C9 ] jhi_service C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
17:34:20.0848 0x1fa4 jhi_service - ok
17:34:20.0860 0x1fa4 kbdclass - ok
17:34:20.0864 0x1fa4 kbdhid - ok
17:34:20.0868 0x1fa4 kdnic - ok
17:34:20.0873 0x1fa4 KeyIso - ok
17:34:20.0877 0x1fa4 KSecDD - ok
17:34:20.0890 0x1fa4 KSecPkg - ok
17:34:20.0895 0x1fa4 ksthunk - ok
17:34:20.0908 0x1fa4 KtmRm - ok
17:34:20.0920 0x1fa4 LanmanServer - ok
17:34:20.0929 0x1fa4 LanmanWorkstation - ok
17:34:20.0943 0x1fa4 lfsvc - ok
17:34:20.0946 0x1fa4 LicenseManager - ok
17:34:20.0950 0x1fa4 lltdio - ok
17:34:20.0958 0x1fa4 lltdsvc - ok
17:34:20.0982 0x1fa4 [ 4ACC60B4CBC911F3F34A1D66213BBBF5, C09A87ACAE0D41FD425BAF076FFE9B601DB89BB66199E5BD72FC59C6A8E449DB ] LMDriver C:\WINDOWS\System32\drivers\LMDriver.sys
17:34:20.0988 0x1fa4 LMDriver - ok
17:34:20.0997 0x1fa4 lmhosts - ok
17:34:21.0046 0x1fa4 [ ED5C8B920F2ACF11A26586B2FA66BF3D, D6F014F0CCAB7EDA38A8CC58F439D2A8CD89195AE84F82E25475CE11CB3883C9 ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
17:34:21.0061 0x1fa4 LMS - ok
17:34:21.0117 0x1fa4 [ 4C5177C5EA6A66C6CFAA49737C023ED1, 3FA54E51A7B8EF438A93E96B3067139B911D3128B6048C135CA39B8E7200D5F5 ] LMSvc C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
17:34:21.0131 0x1fa4 LMSvc - ok
17:34:21.0147 0x1fa4 LSI_SAS - ok
17:34:21.0154 0x1fa4 LSI_SAS2i - ok
17:34:21.0158 0x1fa4 LSI_SAS3i - ok
17:34:21.0160 0x1fa4 LSI_SSS - ok
17:34:21.0175 0x1fa4 LSM - ok
17:34:21.0186 0x1fa4 luafv - ok
17:34:21.0202 0x1fa4 MapsBroker - ok
17:34:21.0249 0x1fa4 [ BF9EB1361EF8D456AB15D5AC2765D860, 5A622F26203438BAF768EFAFCAFD78971E90EE6A0A9FC954FE8A68D5B4C9E9C9 ] mccspsvc C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
17:34:21.0263 0x1fa4 mccspsvc - ok
17:34:21.0406 0x1fa4 [ 23CBDFFE2B580A649DB2D4BB50B1DADF, 771FC99477FDCF98994691CA1BDFB65DF07B93CD563A77068665DC85BF919CB8 ] McODS C:\ProgramData\McAfee\Update\Installs\pkg_default\Download_Files\default\vso\vso_li_cat\%VSINSTALL_DIR64%\mcods.exe
17:34:21.0424 0x1fa4 McODS - ok
17:34:21.0447 0x1fa4 megasas - ok
17:34:21.0450 0x1fa4 megasr - ok
17:34:21.0477 0x1fa4 [ 1BC9159CF58BABD89419072EA180A8F6, 6C9AB779C2355A341800A8F93AAAF9B19FAFF444CD6A7BD27C63D53F379A75EF ] MEIx64 C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys
17:34:21.0487 0x1fa4 MEIx64 - ok
17:34:21.0503 0x1fa4 MessagingService - ok
17:34:21.0660 0x1fa4 [ 1A0C96A38A888838DF9523C973E3FE87, 9C41EDBFA21DF2684EED81AD56FC440AED002FB5C760DECFF1A454835273637B ] mfeapfk C:\WINDOWS\system32\drivers\mfeapfk.sys
17:34:21.0670 0x1fa4 mfeapfk - ok
17:34:21.0695 0x1fa4 [ 3EAF75ED747B2D60ABA4E45107D96E80, DC8141AAE425417F64D5070D573A0BDA40CF4FBDE041240FB331B2DDF0F8A361 ] mfeavfk C:\WINDOWS\system32\drivers\mfeavfk.sys
17:34:21.0727 0x1fa4 mfeavfk - ok
17:34:21.0835 0x1fa4 [ B330B4A4F5E41462AB334A26897856BD, 2ECD4B2F1DF54EFF8FF8EA0FC4529ECD18F70BD14CE8C8680F08D9AE3950575F ] mfeelamk C:\WINDOWS\system32\drivers\mfeelamk.sys
17:34:21.0873 0x1fa4 mfeelamk - ok
17:34:21.0923 0x1fa4 [ 12279E1080026A15D272AE6AAB97FBC7, A52F2D9B7CECA6D1CF28B72F5766F001F1480F08C7ACDC32BC7F9057FBBF9277 ] mfefire C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
17:34:21.0933 0x1fa4 mfefire - ok
17:34:21.0961 0x1fa4 [ 07CFCE5D75C27474E20DE8715794F229, C20F36B242DB592D2FE1EB43EA339514969BAB9561D76FAC7CA6204F6AFCB8B8 ] mfefirek C:\WINDOWS\system32\drivers\mfefirek.sys
17:34:21.0978 0x1fa4 mfefirek - ok
17:34:22.0033 0x1fa4 [ 29D0483A9EBB01DB2036A52E3BF23D6B, D4D6FDE489E937634BEA2C2F5DF65C560E5160AD9EA85088A59AE88FD9C06B2E ] mfehidk C:\WINDOWS\system32\drivers\mfehidk.sys
17:34:22.0054 0x1fa4 mfehidk - ok
17:34:22.0077 0x1fa4 [ 4B34DFBC138C5C8FAC6F814575E41376, 584F76A0EA8ADAC415D118796E7B08969ABE717CB0FCC2D3B505BF86450D4E40 ] mfencrk C:\WINDOWS\system32\DRIVERS\mfencrk.sys
17:34:22.0085 0x1fa4 mfencrk - ok
17:34:22.0100 0x1fa4 [ 9A642F163F1FB12DE395A6010A9AD687, A86E092417C0C40E6FB9F6206D82391CEE4495FFA6F8A442BE50D349ACBA44B9 ] mfevtp C:\Windows\system32\mfevtps.exe
17:34:22.0113 0x1fa4 mfevtp - ok
17:34:22.0143 0x1fa4 [ 1134C87CC1184F5B88F0C7002ACFDC99, 9029E15BF5186258CACF7D46F0E182949E93B78B3F17ED680FE8ECF12EFFF646 ] mfewfpk C:\WINDOWS\system32\drivers\mfewfpk.sys
17:34:22.0156 0x1fa4 mfewfpk - ok
17:34:22.0159 0x1fa4 mlx4_bus - ok
17:34:22.0182 0x1fa4 MMCSS - ok
17:34:22.0186 0x1fa4 Modem - ok
17:34:22.0189 0x1fa4 monitor - ok
17:34:22.0199 0x1fa4 mouclass - ok
17:34:22.0203 0x1fa4 mouhid - ok
17:34:22.0206 0x1fa4 mountmgr - ok
17:34:22.0238 0x1fa4 [ 5961C5D8EDD2E2A3B99F1782AE1AC21F, C383A4724A335737C4C7C3211AFCFB82D373267EC634BC47EE078A1C66E1F62A ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
17:34:22.0362 0x1fa4 MozillaMaintenance - ok
17:34:22.0372 0x1fa4 mpsdrv - ok
17:34:22.0391 0x1fa4 MpsSvc - ok
17:34:22.0417 0x1fa4 MRxDAV - ok
17:34:22.0431 0x1fa4 mrxsmb - ok
17:34:22.0436 0x1fa4 mrxsmb10 - ok
17:34:22.0440 0x1fa4 mrxsmb20 - ok
17:34:22.0443 0x1fa4 MsBridge - ok
17:34:22.0454 0x1fa4 MSDTC - ok
17:34:22.0466 0x1fa4 Msfs - ok
17:34:22.0488 0x1fa4 msgpiowin32 - ok
17:34:22.0503 0x1fa4 mshidkmdf - ok
17:34:22.0507 0x1fa4 mshidumdf - ok
17:34:22.0510 0x1fa4 msisadrv - ok
17:34:22.0525 0x1fa4 MSiSCSI - ok
17:34:22.0528 0x1fa4 msiserver - ok
17:34:22.0532 0x1fa4 MSKSSRV - ok
17:34:22.0547 0x1fa4 MsLldp - ok
17:34:22.0550 0x1fa4 MSPCLOCK - ok
17:34:22.0554 0x1fa4 MSPQM - ok
17:34:22.0557 0x1fa4 MsRPC - ok
17:34:22.0562 0x1fa4 mssmbios - ok
17:34:22.0566 0x1fa4 MSTEE - ok
17:34:22.0569 0x1fa4 MTConfig - ok
17:34:22.0574 0x1fa4 Mup - ok
17:34:22.0577 0x1fa4 mvumis - ok
17:34:22.0582 0x1fa4 NativeWifiP - ok
17:34:22.0598 0x1fa4 NcaSvc - ok
17:34:22.0600 0x1fa4 NcbService - ok
17:34:22.0605 0x1fa4 NcdAutoSetup - ok
17:34:22.0608 0x1fa4 ndfltr - ok
17:34:22.0611 0x1fa4 NDIS - ok
17:34:22.0615 0x1fa4 NdisCap - ok
17:34:22.0622 0x1fa4 NdisImPlatform - ok
17:34:22.0637 0x1fa4 [ 93052B06C5E4F33B0A459DD3CDA0E8D4, 3A3C8D8F5D733E4E7D44DB026DDE88A1C117A9AA5275C42A5B16CE1EBE8CE908 ] ndisrd C:\WINDOWS\system32\DRIVERS\ndisrfl.sys
17:34:22.0645 0x1fa4 ndisrd - ok
17:34:22.0649 0x1fa4 NdisTapi - ok
17:34:22.0652 0x1fa4 Ndisuio - ok
17:34:22.0655 0x1fa4 NdisVirtualBus - ok
17:34:22.0658 0x1fa4 NdisWan - ok
17:34:22.0662 0x1fa4 ndiswanlegacy - ok
17:34:22.0665 0x1fa4 ndproxy - ok
17:34:22.0670 0x1fa4 Ndu - ok
17:34:22.0673 0x1fa4 NetBIOS - ok
17:34:22.0679 0x1fa4 NetBT - ok
17:34:22.0682 0x1fa4 Netlogon - ok
17:34:22.0693 0x1fa4 Netman - ok
17:34:22.0697 0x1fa4 netprofm - ok
17:34:22.0717 0x1fa4 NetSetupSvc - ok
17:34:22.0744 0x1fa4 [ 3C3FEBD9D5CA88A92B8BCA720218D0BD, 394E9A4A9003F729B22C49FB4D63EFD044DF5263782500EB9DBB09BCC4884A41 ] NetTap630 C:\WINDOWS\system32\DRIVERS\nettap630.sys
17:34:22.0752 0x1fa4 NetTap630 - ok
17:34:22.0777 0x1fa4 NetTcpPortSharing - ok
17:34:22.0802 0x1fa4 NETwNb64 - ok
17:34:22.0811 0x1fa4 NgcCtnrSvc - ok
17:34:22.0832 0x1fa4 NgcSvc - ok
17:34:22.0838 0x1fa4 NlaSvc - ok
17:34:22.0853 0x1fa4 Npfs - ok
17:34:22.0932 0x1fa4 [ 49697C2C761ACB5C0DE99CC8FE93E95B, 02EEA7FB21D28B235A05FE0A6061170F366470EF6E45C9B21D7C8C0E7C728FC5 ] NPF_devolo C:\WINDOWS\sysWOW64\drivers\npf_devolo.sys
17:34:22.0947 0x1fa4 NPF_devolo - ok
17:34:22.0967 0x1fa4 npsvctrig - ok
17:34:22.0971 0x1fa4 nsi - ok
17:34:22.0973 0x1fa4 nsiproxy - ok
17:34:22.0992 0x1fa4 NTFS - ok
17:34:22.0992 0x4810 Object required for P2P: [ 99B993BD0F4C033D832B50D5E83BEBEC ] AdobeFlashPlayerUpdateSvc
17:34:22.0996 0x1fa4 Null - ok
17:34:23.0308 0x1fa4 [ AEEA2EC9CEEB8ADE8284583BBB98AB0D, AB629C047EFB8F5CF13FF923C332A05CD3F510A8C07D2EA6D3C493E2533DB1E0 ] nvlddmkm C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
17:34:23.0549 0x1fa4 nvlddmkm - ok
17:34:23.0656 0x1fa4 [ 85E63F9C45CFC44CC1F43AC07610B79F, EB76634AE88E5586324235C5BF2BFEA2E2C7E7DDE21B938CE7CF3491C78D409B ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
17:34:23.0700 0x1fa4 NvNetworkService - ok
17:34:23.0717 0x1fa4 nvraid - ok
17:34:23.0720 0x1fa4 nvstor - ok
17:34:23.0757 0x1fa4 [ 1B44B5244EAF26BEC315AE84B0AFFC66, 760F376FFF7665E32718E890387CA2404D70DED2D2694A1647483722287D01B8 ] nvsvc C:\WINDOWS\system32\nvvsvc.exe
17:34:23.0785 0x1fa4 nvsvc - ok
17:34:23.0789 0x1fa4 nv_agp - ok
17:34:23.0798 0x1fa4 OneSyncSvc - ok
17:34:23.0894 0x1fa4 [ 7A56CF3E3F12E8AF599963B16F50FB6A, 882C82BAE96D263138D4C0D6C425458B770B7B9C8E9C1D28AC918BF6BE94A5C2 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
17:34:23.0902 0x1fa4 ose - ok
17:34:23.0920 0x1fa4 p2pimsvc - ok
17:34:23.0926 0x1fa4 p2psvc - ok
17:34:23.0939 0x1fa4 Parport - ok
17:34:23.0942 0x1fa4 partmgr - ok
17:34:23.0948 0x1fa4 PcaSvc - ok
17:34:23.0952 0x1fa4 pci - ok
17:34:23.0957 0x1fa4 pciide - ok
17:34:23.0962 0x1fa4 pcmcia - ok
17:34:23.0968 0x1fa4 pcw - ok
17:34:23.0972 0x1fa4 pdc - ok
17:34:24.0058 0x1fa4 [ 8F98C4BC605261B4B6E568FE791EB67A, 7B0D99D972A60423F7378BEE886061695FDA79B59AFF939744A130721E0174A1 ] PDF Architect 2 C:\Program Files (x86)\PDF Architect 2\ws.exe
17:34:24.0102 0x1fa4 PDF Architect 2 - ok
17:34:24.0147 0x1fa4 [ B2309F132A31AF03C0A249AEDE8CF289, BBAE32AA55E495ACB9A8089C090ADD78BE1DC16233CAA61BBED1456CA718D430 ] PDF Architect 2 Creator C:\Program Files (x86)\PDF Architect 2\creator-ws.exe
17:34:24.0167 0x1fa4 PDF Architect 2 Creator - ok
17:34:24.0199 0x1fa4 [ 9077A3059AB47834633AEAAED465F3D9, 9CA662E9CBA30795E4E5DAB3E309D2062FFDC2053C261054E24EF7EE5300F69F ] pdfforge CrashHandler C:\Program Files (x86)\PDF Architect 2\crash-handler-ws.exe
17:34:24.0221 0x1fa4 pdfforge CrashHandler - ok
17:34:24.0241 0x1fa4 PEAUTH - ok
17:34:24.0255 0x1fa4 percsas2i - ok
17:34:24.0259 0x1fa4 percsas3i - ok
17:34:24.0270 0x1fa4 PerfHost - ok
17:34:24.0307 0x1fa4 PhoneSvc - ok
17:34:24.0325 0x1fa4 PimIndexMaintenanceSvc - ok
17:34:24.0384 0x1fa4 pla - ok
17:34:24.0402 0x1fa4 PlugPlay - ok
17:34:24.0405 0x1fa4 PNRPAutoReg - ok
17:34:24.0408 0x1fa4 PNRPsvc - ok
17:34:24.0416 0x1fa4 PolicyAgent - ok
17:34:24.0420 0x1fa4 Power - ok
17:34:24.0437 0x1fa4 PptpMiniport - ok
17:34:24.0590 0x1fa4 [ 959F94AD1255BC749884EDDD14EC29C4, 2CD6DA9778EA36FA0B4080F6DB1C634712238E014E47546403CD3CDB35A1DCA8 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
17:34:24.0711 0x1fa4 PrintNotify - ok
17:34:24.0725 0x1fa4 Processor - ok
17:34:24.0736 0x1fa4 ProfSvc - ok
17:34:24.0751 0x1fa4 Psched - ok
17:34:24.0818 0x1fa4 [ 992DBEEC25BC2535B03B564367A3B652, 68CA8A8C4B03A06BB71E5DBB3883B3605C4AA64322665BFACC410206362A7AD9 ] QASvc C:\Program Files\Acer\Acer Quick Access\QASvc.exe
17:34:24.0835 0x1fa4 QASvc - ok
17:34:24.0859 0x1fa4 [ A5B22EACF1DA28E19CC9F80D37978657, 9543615574D540AC825DBE8D1581DFC8CC0B7A1113420903F6747E3789EEACDA ] QRDCIO C:\WINDOWS\System32\drivers\QRDCIO.sys
17:34:24.0883 0x1fa4 QRDCIO - ok
17:34:24.0901 0x1fa4 QWAVE - ok
17:34:24.0917 0x1fa4 QWAVEdrv - ok
17:34:24.0930 0x1fa4 [ 6A52182919E25FB56D253D389F92CE98, AE6497D5CF324CB813248ADECB0F53E5CB3D6C326774E2257319E4CE7782C591 ] RadioShim C:\WINDOWS\System32\drivers\RadioShim.sys
17:34:24.0937 0x1fa4 RadioShim - ok
17:34:24.0954 0x1fa4 RasAcd - ok
17:34:24.0965 0x1fa4 RasAgileVpn - ok
17:34:24.0978 0x1fa4 RasAuto - ok
17:34:24.0988 0x1fa4 Rasl2tp - ok
17:34:25.0002 0x1fa4 RasMan - ok
17:34:25.0005 0x1fa4 RasPppoe - ok
17:34:25.0008 0x1fa4 RasSstp - ok
17:34:25.0011 0x1fa4 rdbss - ok
17:34:25.0016 0x1fa4 rdpbus - ok
17:34:25.0019 0x1fa4 RDPDR - ok
17:34:25.0025 0x1fa4 RdpVideoMiniport - ok
17:34:25.0029 0x1fa4 rdyboost - ok
17:34:25.0034 0x1fa4 ReFSv1 - ok
17:34:25.0047 0x1fa4 RemoteAccess - ok
17:34:25.0050 0x1fa4 RemoteRegistry - ok
17:34:25.0054 0x1fa4 RetailDemo - ok
17:34:25.0057 0x1fa4 RFCOMM - ok
17:34:25.0145 0x1fa4 [ 41DDCF1ADD1FB7DE23DCF671740DDBE6, 87ECB5C883CEFF76D126A5B4D92E069C9298FA5B62CC981870F9ECCA13C074F1 ] RichVideo C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
17:34:25.0156 0x1fa4 RichVideo - ok
17:34:25.0188 0x1fa4 [ F15FB6917435F714F31604FAE64BF254, DE917BCDA6DE8636A6652148647C9CCDC8D5EF31F222A9FD1CD1FAF5EDED3B0F ] RMSvc C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
17:34:25.0202 0x1fa4 RMSvc - ok
17:34:25.0214 0x1fa4 RpcEptMapper - ok
17:34:25.0231 0x1fa4 RpcLocator - ok
17:34:25.0234 0x1fa4 RpcSs - ok
17:34:25.0249 0x1fa4 rspndr - ok
17:34:25.0251 0x1fa4 rt640x64 - ok
17:34:25.0254 0x1fa4 s3cap - ok
17:34:25.0275 0x1fa4 SamSs - ok
17:34:25.0290 0x1fa4 sbp2port - ok
17:34:25.0304 0x1fa4 SCardSvr - ok
17:34:25.0308 0x1fa4 ScDeviceEnum - ok
17:34:25.0312 0x1fa4 scfilter - ok
17:34:25.0324 0x1fa4 Schedule - ok
17:34:25.0342 0x1fa4 SCPolicySvc - ok
17:34:25.0355 0x1fa4 sdbus - ok
17:34:25.0362 0x1fa4 SDRSVC - ok
17:34:25.0386 0x1fa4 sdstor - ok
17:34:25.0410 0x1fa4 seclogon - ok
17:34:25.0415 0x1fa4 SENS - ok
17:34:25.0434 0x1fa4 SensorDataService - ok
17:34:25.0446 0x1fa4 SensorService - ok
17:34:25.0450 0x1fa4 SensrSvc - ok
17:34:25.0467 0x1fa4 SerCx - ok
17:34:25.0482 0x1fa4 SerCx2 - ok
17:34:25.0486 0x1fa4 Serenum - ok
17:34:25.0490 0x1fa4 Serial - ok
17:34:25.0494 0x1fa4 sermouse - ok
17:34:25.0519 0x1fa4 SessionEnv - ok
17:34:25.0525 0x1fa4 sfloppy - ok
17:34:25.0541 0x1fa4 SharedAccess - ok
17:34:25.0546 0x1fa4 ShellHWDetection - ok
17:34:25.0546 0x4810 Object send P2P result: true
17:34:25.0547 0x4810 Object required for P2P: [ 37CD9EB03B36D8329F96BA921470DB54 ] AntiVirMailService
17:34:25.0550 0x1fa4 SiSRaid2 - ok
17:34:25.0555 0x1fa4 SiSRaid4 - ok
17:34:25.0576 0x1fa4 smphost - ok
17:34:25.0600 0x1fa4 SmsRouter - ok
17:34:25.0622 0x1fa4 SNMPTRAP - ok
17:34:25.0639 0x1fa4 spaceport - ok
17:34:25.0642 0x1fa4 SpbCx - ok
17:34:25.0653 0x1fa4 Spooler - ok
17:34:25.0656 0x1fa4 sppsvc - ok
17:34:25.0658 0x1fa4 srv - ok
17:34:25.0661 0x1fa4 srv2 - ok
17:34:25.0665 0x1fa4 srvnet - ok
17:34:25.0675 0x1fa4 SSDPSRV - ok
17:34:25.0706 0x1fa4 [ 0211AB46B73A2623B86C1CFCB30579AB, 7CC9BA2DF7B9EA6BB17EE342898EDD7F54703B93B6DED6A819E83A7EE9F938B4 ] SSPORT C:\Windows\system32\Drivers\SSPORT.sys
17:34:25.0712 0x1fa4 SSPORT - ok
17:34:25.0726 0x1fa4 SstpSvc - ok
17:34:25.0756 0x1fa4 [ 9B74226E10CD57E965F87014841016F9, 95C76049DBBF3B31A9B01CFD0EDAAC47DE9A1F096B61D05C47FB85E1AFC07288 ] ssudmdm C:\WINDOWS\system32\DRIVERS\ssudmdm.sys
17:34:25.0766 0x1fa4 ssudmdm - ok
17:34:25.0782 0x1fa4 StateRepository - ok
17:34:25.0785 0x1fa4 stexstor - ok
17:34:25.0800 0x1fa4 stisvc - ok
17:34:25.0803 0x1fa4 storahci - ok
17:34:25.0811 0x1fa4 storflt - ok
17:34:25.0814 0x1fa4 stornvme - ok
17:34:25.0818 0x1fa4 storqosflt - ok
17:34:25.0837 0x1fa4 StorSvc - ok
17:34:25.0840 0x1fa4 storufs - ok
17:34:25.0843 0x1fa4 storvsc - ok
17:34:25.0849 0x1fa4 svsvc - ok
17:34:25.0852 0x1fa4 swenum - ok
17:34:25.0856 0x1fa4 swprv - ok
17:34:25.0891 0x1fa4 [ 1BCD06B8BA217CB73FDFF07E7921AC2D, 9E495715ACD48CFD3482CA022CA79A17645DA46DBB69006C69B3FC61B87EF18B ] SynRMIHID C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys
17:34:25.0912 0x1fa4 SynRMIHID - ok
17:34:25.0946 0x1fa4 Synth3dVsc - ok
17:34:25.0964 0x1fa4 SysMain - ok
17:34:25.0980 0x1fa4 SystemEventsBroker - ok
17:34:25.0990 0x1fa4 TabletInputService - ok
17:34:25.0995 0x1fa4 TapiSrv - ok
17:34:26.0010 0x1fa4 Tcpip - ok
17:34:26.0017 0x1fa4 Tcpip6 - ok
17:34:26.0035 0x1fa4 tcpipreg - ok
17:34:26.0051 0x1fa4 tdx - ok
17:34:26.0055 0x1fa4 terminpt - ok
17:34:26.0060 0x1fa4 TermService - ok
17:34:26.0066 0x1fa4 Themes - ok
17:34:26.0088 0x1fa4 TieringEngineService - ok
17:34:26.0092 0x1fa4 tiledatamodelsvc - ok
17:34:26.0116 0x1fa4 TimeBroker - ok
17:34:26.0132 0x1fa4 TPM - ok
17:34:26.0135 0x1fa4 TrkWks - ok
17:34:26.0158 0x1fa4 [ 370A6907DDF79532A39319492B1FA38A, 46AECC5160F04FC3FFE4D37B404CCBBD1C5DC1501C2CEEE8284FF544DBDF10F8 ] truecrypt C:\WINDOWS\system32\drivers\truecrypt.sys
17:34:26.0169 0x1fa4 truecrypt - ok
17:34:26.0192 0x4ad4 Object required for P2P: [ D0066944317BE37185136B696E61CFF4 ] Intel(R) TechnologyAccessLegacyCSLoader
17:34:26.0198 0x1fa4 TrustedInstaller - ok
17:34:26.0210 0x1fa4 tsusbflt - ok
17:34:26.0246 0x1fa4 TsUsbGD - ok
17:34:26.0251 0x1fa4 tunnel - ok
17:34:26.0281 0x1fa4 tzautoupdate - ok
17:34:26.0285 0x1fa4 uagp35 - ok
17:34:26.0298 0x1fa4 UASPStor - ok
17:34:26.0302 0x1fa4 UcmCx0101 - ok
17:34:26.0307 0x1fa4 UcmUcsi - ok
17:34:26.0311 0x1fa4 Ucx01000 - ok
17:34:26.0315 0x1fa4 UdeCx - ok
17:34:26.0318 0x1fa4 udfs - ok
17:34:26.0322 0x1fa4 UEFI - ok
17:34:26.0359 0x1fa4 [ EB7E8BF35D31BC9F111E282C2F263854, 8969BCC5072499A2ACFEFF583BC7849BA25629EB0CBB708D581FC8D58388E772 ] UEIPSvc C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
17:34:26.0370 0x1fa4 UEIPSvc - ok
17:34:26.0373 0x1fa4 Ufx01000 - ok
17:34:26.0392 0x1fa4 UfxChipidea - ok
17:34:26.0395 0x1fa4 ufxsynopsys - ok
17:34:26.0409 0x1fa4 UI0Detect - ok
17:34:26.0412 0x1fa4 uliagpkx - ok
17:34:26.0415 0x1fa4 umbus - ok
17:34:26.0419 0x1fa4 UmPass - ok
17:34:26.0436 0x1fa4 UmRdpService - ok
17:34:26.0445 0x1fa4 UnistoreSvc - ok
17:34:26.0500 0x1fa4 upnphost - ok
17:34:26.0511 0x1fa4 UrsChipidea - ok
17:34:26.0514 0x1fa4 UrsCx01000 - ok
17:34:26.0518 0x1fa4 UrsSynopsys - ok
17:34:26.0520 0x1fa4 usbccgp - ok
17:34:26.0534 0x1fa4 usbcir - ok
17:34:26.0537 0x1fa4 usbehci - ok
17:34:26.0540 0x1fa4 usbhub - ok
17:34:26.0560 0x1fa4 USBHUB3 - ok
17:34:26.0563 0x1fa4 usbohci - ok
17:34:26.0567 0x1fa4 usbprint - ok
17:34:26.0570 0x1fa4 usbscan - ok
17:34:26.0584 0x1fa4 usbser - ok
17:34:26.0595 0x1fa4 USBSTOR - ok
17:34:26.0599 0x1fa4 usbuhci - ok
17:34:26.0602 0x1fa4 usbvideo - ok
17:34:26.0605 0x1fa4 USBXHCI - ok
17:34:26.0621 0x1fa4 UserDataSvc - ok
17:34:26.0676 0x1fa4 UserManager - ok
17:34:26.0691 0x1fa4 UsoSvc - ok
17:34:26.0693 0x1fa4 VaultSvc - ok
17:34:26.0697 0x1fa4 vdrvroot - ok
17:34:26.0707 0x1fa4 vds - ok
17:34:26.0711 0x1fa4 VerifierExt - ok
17:34:26.0715 0x1fa4 vhdmp - ok
17:34:26.0718 0x1fa4 vhf - ok
17:34:26.0722 0x1fa4 vmbus - ok
17:34:26.0725 0x1fa4 VMBusHID - ok
17:34:26.0740 0x1fa4 vmicguestinterface - ok
17:34:26.0743 0x1fa4 vmicheartbeat - ok
17:34:26.0746 0x1fa4 vmickvpexchange - ok
17:34:26.0750 0x1fa4 vmicrdv - ok
17:34:26.0753 0x1fa4 vmicshutdown - ok
17:34:26.0756 0x1fa4 vmictimesync - ok
17:34:26.0759 0x1fa4 vmicvmsession - ok
17:34:26.0762 0x1fa4 vmicvss - ok
17:34:26.0766 0x1fa4 volmgr - ok
17:34:26.0770 0x1fa4 volmgrx - ok
17:34:26.0773 0x1fa4 volsnap - ok
17:34:26.0788 0x1fa4 vpci - ok
17:34:26.0792 0x1fa4 vsmraid - ok
17:34:26.0795 0x1fa4 VSS - ok
17:34:26.0799 0x1fa4 VSTXRAID - ok
17:34:26.0803 0x1fa4 vwifibus - ok
17:34:26.0808 0x1fa4 vwififlt - ok
17:34:26.0812 0x1fa4 vwifimp - ok
17:34:26.0827 0x1fa4 W32Time - ok
17:34:26.0830 0x1fa4 WacomPen - ok
17:34:26.0848 0x1fa4 WalletService - ok
17:34:26.0851 0x1fa4 wanarp - ok
17:34:26.0855 0x1fa4 wanarpv6 - ok
17:34:26.0859 0x1fa4 wbengine - ok
17:34:26.0873 0x1fa4 WbioSrvc - ok
17:34:26.0884 0x1fa4 Wcmsvc - ok
17:34:26.0887 0x1fa4 wcncsvc - ok
17:34:26.0891 0x1fa4 WcsPlugInService - ok
17:34:26.0894 0x1fa4 WdBoot - ok
17:34:26.0907 0x1fa4 Wdf01000 - ok
17:34:26.0921 0x1fa4 WdFilter - ok
17:34:26.0925 0x1fa4 WdiServiceHost - ok
17:34:26.0928 0x1fa4 WdiSystemHost - ok
17:34:26.0932 0x1fa4 wdiwifi - ok
17:34:26.0936 0x1fa4 WdNisDrv - ok
17:34:26.0958 0x1fa4 WdNisSvc - ok
17:34:26.0962 0x1fa4 WebClient - ok
17:34:26.0965 0x1fa4 Wecsvc - ok
17:34:26.0969 0x1fa4 WEPHOSTSVC - ok
17:34:26.0973 0x1fa4 wercplsupport - ok
17:34:26.0976 0x1fa4 WerSvc - ok
17:34:26.0980 0x1fa4 WFPLWFS - ok
17:34:26.0984 0x1fa4 WiaRpc - ok
17:34:27.0001 0x1fa4 WIMMount - ok
17:34:27.0004 0x1fa4 WinDefend - ok
17:34:27.0011 0x1fa4 WindowsTrustedRT - ok
17:34:27.0029 0x1fa4 WindowsTrustedRTProxy - ok
17:34:27.0039 0x1fa4 WinHttpAutoProxySvc - ok
17:34:27.0051 0x1fa4 WinMad - ok
17:34:27.0085 0x1fa4 Winmgmt - ok
17:34:27.0099 0x1fa4 WinRM - ok
17:34:27.0132 0x1fa4 WINUSB - ok
17:34:27.0135 0x1fa4 WinVerbs - ok
17:34:27.0148 0x1fa4 WlanSvc - ok
17:34:27.0152 0x1fa4 wlidsvc - ok
17:34:27.0155 0x1fa4 WmiAcpi - ok
17:34:27.0162 0x1fa4 wmiApSrv - ok
17:34:27.0176 0x1fa4 WMPNetworkSvc - ok
17:34:27.0211 0x1fa4 [ 2A9650FCC696DB28E45EA8B33B99B8E6, FBEBC6C05D50F578C6EEE0A7285EBE1DEADB08DD21FA3232630FD8D5A68FC3FB ] Wof C:\WINDOWS\system32\drivers\Wof.sys
17:34:27.0245 0x1fa4 Wof - ok
17:34:27.0261 0x1fa4 workfolderssvc - ok
17:34:27.0265 0x1fa4 wpcfltr - ok
17:34:27.0268 0x1fa4 WPDBusEnum - ok
17:34:27.0271 0x1fa4 WpdUpFltr - ok
17:34:27.0275 0x1fa4 WpnService - ok
17:34:27.0278 0x1fa4 ws2ifsl - ok
17:34:27.0294 0x1fa4 wscsvc - ok
17:34:27.0297 0x1fa4 WSDPrintDevice - ok
17:34:27.0300 0x1fa4 WSDScan - ok
17:34:27.0304 0x1fa4 WSearch - ok
17:34:27.0324 0x1fa4 WSService - ok
17:34:27.0327 0x1fa4 wuauserv - ok
17:34:27.0331 0x1fa4 WudfPf - ok
17:34:27.0335 0x1fa4 WUDFRd - ok
17:34:27.0339 0x1fa4 wudfsvc - ok
17:34:27.0342 0x1fa4 WUDFWpdFs - ok
17:34:27.0345 0x1fa4 WUDFWpdMtp - ok
17:34:27.0353 0x1fa4 WwanSvc - ok
17:34:27.0374 0x1fa4 XblAuthManager - ok
17:34:27.0380 0x1fa4 XblGameSave - ok
17:34:27.0391 0x1fa4 xboxgip - ok
17:34:27.0408 0x1fa4 XboxNetApiSvc - ok
17:34:27.0412 0x1fa4 xinputhid - ok
17:34:27.0414 0x1fa4 ================ Scan global ===============================
17:34:27.0481 0x1fa4 [ Global ] - ok
17:34:27.0481 0x1fa4 ================ Scan MBR ==================================
17:34:27.0489 0x1fa4 [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
17:34:27.0609 0x1fa4 \Device\Harddisk0\DR0 - ok
17:34:27.0609 0x1fa4 ================ Scan VBR ==================================
17:34:27.0612 0x1fa4 [ 78FADE02EC55570FC1B9F4A7D5F3B88D ] \Device\Harddisk0\DR0\Partition1
17:34:27.0662 0x1fa4 \Device\Harddisk0\DR0\Partition1 - ok
17:34:27.0674 0x1fa4 [ 5113AE5F254011564DCDC11FF691FAE4 ] \Device\Harddisk0\DR0\Partition2
17:34:27.0730 0x1fa4 \Device\Harddisk0\DR0\Partition2 - ok
17:34:27.0744 0x1fa4 [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition3
17:34:27.0744 0x1fa4 \Device\Harddisk0\DR0\Partition3 - ok
17:34:27.0759 0x1fa4 [ B7EC8FBF7E726205C252EE5E8C9FCB8D ] \Device\Harddisk0\DR0\Partition4
17:34:27.0879 0x1fa4 \Device\Harddisk0\DR0\Partition4 - ok
17:34:27.0912 0x1fa4 [ 8709DB5C12F86C950267B047CA0FC78D ] \Device\Harddisk0\DR0\Partition5
17:34:27.0940 0x1fa4 \Device\Harddisk0\DR0\Partition5 - ok
17:34:27.0959 0x1fa4 [ 8F0C8021E5746FD68AF6FC1FFE58B90B ] \Device\Harddisk0\DR0\Partition6
17:34:27.0989 0x1fa4 \Device\Harddisk0\DR0\Partition6 - ok
17:34:27.0990 0x1fa4 ================ Scan generic autorun ======================
17:34:28.0069 0x4810 Object send P2P result: true
17:34:28.0070 0x4810 Object required for P2P: [ 5CF5E80616F74B769AABCF76FEA791D1 ] avgntflt
17:34:28.0401 0x1fa4 [ 65E8545F1297CD83534C354A7BED1848, 19B3F3C17A335837454DC1851C6436D0BB2D8B1595AEB4DC71265FB20868B48F ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
17:34:28.0754 0x4ad4 Object send P2P result: true
17:34:28.0834 0x1fa4 RTHDVCPL - ok
17:34:28.0924 0x1fa4 [ E14A09758B8709CB4BE4B9BF6D10B6F6, 9F2989005B3654DEEBEDD0006CCEA8C9E77151DBDFD51122F9387F319872F3AD ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
17:34:28.0999 0x1fa4 NvBackend - ok
17:34:29.0044 0x1fa4 [ 8CC5E4DB25E4C22A308E2820E69D4950, A53BBE06FF226DA7E37C3ADA881AF4F856E439553DFA7D10DDECB07196545B39 ] C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
17:34:29.0060 0x1fa4 CDAServer - ok
17:34:29.0076 0x1fa4 mcpltui_exe - ok
17:34:29.0154 0x1fa4 [ 1CE11C53E562D5F7EAFCF47E0E696516, 4E8264DB3CA9B2344905BC2CAE6A9E73190A3CCF3D154B3CBDAF4F73F8FCD64B ] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
17:34:29.0196 0x1fa4 avgnt - ok
17:34:29.0216 0x1fa4 abDocsDllLoader - ok
17:34:29.0246 0x1fa4 [ 86069F4F421FB355C41FD734500E477F, CB4CE22C3298280B033105875079A373D7E1ADEA15F0F71A2095CCA50CF7E5A5 ] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
17:34:29.0257 0x1fa4 Avira SystrayStartTrigger - ok
17:34:29.0376 0x1fa4 [ 4EAF6F8F0B3BE33A0E3877EB7FFD48D4, CD89A31004E3E5A3253554CABF70B89D4F2FCBC40161FFA9E633CD85261A2769 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
17:34:29.0420 0x1fa4 Adobe ARM - ok
17:34:29.0473 0x1fa4 OneDriveSetup - ok
17:34:29.0474 0x1fa4 OneDriveSetup - ok
17:34:29.0742 0x1fa4 [ 40335C8877B6B84842AF03A40E1BB206, 33433ED8961B1AEEBD30F8DD53A541C711C403D019F1074406FF9C9D1E9F4113 ] C:\Program Files\CCleaner\CCleaner64.exe
17:34:29.0977 0x1fa4 CCleaner Monitoring - ok
17:34:29.0984 0x1fa4 Waiting for KSN requests completion. In queue: 48
17:34:30.0594 0x4810 Object send P2P result: true
17:34:30.0594 0x4810 Object required for P2P: [ 98BB62ABFD17F284C3C5DE40F8266F3C ] Avira.ServiceHost
17:34:30.0985 0x1fa4 Waiting for KSN requests completion. In queue: 46
17:34:31.0985 0x1fa4 Waiting for KSN requests completion. In queue: 46
17:34:32.0540 0x49c4 Object required for P2P: [ 4EAF6F8F0B3BE33A0E3877EB7FFD48D4 ] C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
17:34:32.0985 0x1fa4 Waiting for KSN requests completion. In queue: 23
17:34:33.0124 0x4810 Object send P2P result: true
17:34:33.0125 0x4810 Object required for P2P: [ 6066FDFF6E02A0F1F2584EBC9D4A1E63 ] ePowerSvc
17:34:33.0985 0x1fa4 Waiting for KSN requests completion. In queue: 16
17:34:34.0986 0x1fa4 Waiting for KSN requests completion. In queue: 16
17:34:35.0062 0x49c4 Object send P2P result: true
17:34:35.0695 0x4810 Object send P2P result: true
17:34:36.0009 0x1fa4 AV detected via SS2: Avira Antivirus, C:\Program Files (x86)\Avira\AntiVir Desktop\wsctool.exe ( 15.0.16.273 ), 0x41000 ( enabled : updated )
17:34:36.0022 0x1fa4 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.9.10586.0 ), 0x60100 ( disabled : updated )
17:34:36.0025 0x1fa4 Win FW state via NFP2: enabled ( trusted )
17:34:38.0503 0x1fa4 ============================================================
17:34:38.0503 0x1fa4 Scan finished
17:34:38.0503 0x1fa4 ============================================================
17:34:38.0525 0x48f4 Detected object count: 0
17:34:38.0525 0x48f4 Actual detected object count: 0 |