Code:
2017-07-16 10:54 - 2017-07-16 10:54 - 000205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000203168 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostBroker.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScDeviceEnum.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000192416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\certprop.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000181656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000179608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostUser.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeHelper.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Clipc.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Profile.RetailInfo.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000142752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcifs.sys
2017-07-16 10:54 - 2017-07-16 10:54 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMPushRouterCore.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschap.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000136096 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Bluetooth.Profiles.Gatt.Interface.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000125344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000123520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Clipc.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000117664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2017-07-16 10:54 - 2017-07-16 10:54 - 000102312 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialUIBroker.exe
2017-07-16 10:54 - 2017-07-16 10:54 - 000096672 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2017-07-16 10:54 - 2017-07-16 10:54 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncCsp.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000094624 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys
2017-07-16 10:54 - 2017-07-16 10:54 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WFDSConMgr.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dataclen.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000058488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe
2017-07-16 10:54 - 2017-07-16 10:54 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2017-07-16 10:54 - 2017-07-16 10:54 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\cldapi.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cldapi.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000049656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msasn1.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000041376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininitext.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll
2017-07-16 10:54 - 2017-07-16 10:54 - 000034720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2017-07-16 10:54 - 2017-07-16 10:54 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2017-07-16 10:54 - 2017-07-16 10:54 - 000031932 _____ C:\WINDOWS\system32\edgehtmlpluginpolicy.bin
2017-07-16 10:54 - 2017-07-16 10:54 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapprovp.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 006726656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 006535168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 004709528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 004672848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 004175872 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 003135488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 003116184 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 002765824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.UnifiedTile.CuratedTileCollections.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 002730496 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 002625024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 002438656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 002347520 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 002341376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 002088960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 002085280 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceFlows.DataModel.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001911752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001852776 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001700408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001657344 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001628160 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001611776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpeechPal.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001605632 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001600512 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbghelp.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001596600 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001583616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001557288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001506816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001506712 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001474800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001463296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001459728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001455592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001433600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001409048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001333136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001320352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001302528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001275904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001266544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001242624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001141760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001102848 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001085440 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001078272 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001067008 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001060352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001046016 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001035264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 001003624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000987648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000975360 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000974848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmgaserver.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000972800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000909824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000909312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000866816 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSMDesktopProvider.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000826368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSMDesktopProvider.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000809472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSSO.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000807424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000797184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000777400 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000741784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000731136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmgaserver.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000730016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000716440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000708712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000673280 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000673112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000667040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000660384 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000651680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000647168 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000606960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000601088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000599576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000573856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000559000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000557568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000549888 _____ (Microsoft Corporation) C:\WINDOWS\system32\DictationManager.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000546208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000543648 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000523296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000457728 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000444928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000439808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Midi.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2017-07-16 10:50 - 2017-07-16 10:50 - 000414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000409504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DictationManager.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000388000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2017-07-16 10:50 - 2017-07-16 10:50 - 000382368 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000370928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000363424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000354360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000354304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputSwitch.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Midi.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000321376 _____ (Microsoft Corporation) C:\WINDOWS\system32\capauthz.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000311200 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudBackupSettings.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000287648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VEEventDispatcher.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000266640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\capauthz.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000259400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudBackupSettings.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\devicengccredprov.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000219040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreenps.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\RstrtMgr.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000188824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Diagnostics.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RstrtMgr.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devicengccredprov.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\NPSM.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\embeddedmodesvc.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000148480 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000144288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storahci.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smartscreenps.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSaveExt.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000130464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NPSM.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000112544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000105456 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000095584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmjpegdec.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrvext.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000086016 _____ C:\WINDOWS\system32\xboxgipsynthetic.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2017-07-16 10:50 - 2017-07-16 10:50 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmjpegdec.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCredentialDeployment.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2017-07-16 10:50 - 2017-07-16 10:50 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\bfsvc.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000059904 _____ C:\WINDOWS\SysWOW64\xboxgipsynthetic.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvps.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000047104 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000038912 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksthunk.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000027040 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmptrap.exe
2017-07-16 10:50 - 2017-07-16 10:50 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rootmdm.sys
2017-07-16 10:50 - 2017-07-16 10:50 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2017-07-16 10:50 - 2017-07-16 10:50 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2017-07-16 10:48 - 2017-03-17 23:00 - 005739008 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2017-07-16 10:48 - 2017-03-17 22:59 - 002629120 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2017-07-16 10:48 - 2017-03-17 22:48 - 006348288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2017-07-16 10:48 - 2017-03-17 22:43 - 002629120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll
2017-07-16 10:48 - 2017-03-17 22:35 - 005484544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll
2017-07-16 10:47 - 2017-07-16 10:47 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2017-07-16 10:47 - 2017-07-16 09:59 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2017-07-16 10:46 - 2017-07-16 10:46 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2017-07-16 10:46 - 2017-07-16 10:46 - 000000000 ____D C:\WINDOWS\SysWOW64\BestPractices
2017-07-16 10:46 - 2017-07-16 10:46 - 000000000 ____D C:\WINDOWS\system32\msmq
2017-07-16 10:46 - 2017-07-16 10:46 - 000000000 ____D C:\WINDOWS\system32\BestPractices
2017-07-16 10:46 - 2017-07-16 10:46 - 000000000 ____D C:\Program Files\Reference Assemblies
2017-07-16 10:46 - 2017-07-16 10:46 - 000000000 ____D C:\Program Files\MSBuild
2017-07-16 10:46 - 2017-07-16 10:46 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-07-16 10:46 - 2017-07-16 10:46 - 000000000 ____D C:\Program Files (x86)\MSBuild
2017-07-16 10:46 - 2017-07-16 10:46 - 000000000 ____D C:\inetpub
2017-07-16 10:46 - 2017-02-10 12:26 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2017-07-16 10:46 - 2017-02-10 12:26 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2017-07-16 10:46 - 2017-02-10 12:26 - 000035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2017-07-16 10:46 - 2017-02-10 12:21 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2017-07-16 10:46 - 2017-02-10 12:21 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-07-16 10:46 - 2017-02-10 12:21 - 000035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2017-07-16 10:09 - 2017-07-16 10:09 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2017-07-16 10:08 - 2017-07-16 10:08 - 000000000 ____D C:\ProgramData\USOShared
2017-07-16 10:07 - 2017-07-16 10:07 - 000000020 ___SH C:\Users\Sherys\ntuser.ini
2017-07-16 10:06 - 2017-07-16 10:06 - 000007623 _____ C:\WINDOWS\diagwrn.xml
2017-07-16 10:06 - 2017-07-16 10:06 - 000007623 _____ C:\WINDOWS\diagerr.xml
2017-07-16 10:04 - 2017-08-09 21:17 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-07-16 10:04 - 2017-07-24 06:18 - 000004032 _____ C:\WINDOWS\System32\Tasks\SafeZone scheduled Autoupdate 1489054854
2017-07-16 10:04 - 2017-07-24 06:18 - 000003994 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
2017-07-16 10:04 - 2017-07-16 10:04 - 000003816 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2017-07-16 10:04 - 2017-07-16 10:04 - 000003556 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2017-07-16 10:04 - 2017-07-16 10:04 - 000003332 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2017-07-16 10:04 - 2017-07-16 10:04 - 000002146 _____ C:\WINDOWS\System32\Tasks\StartCN
2017-07-16 10:04 - 2017-07-16 10:04 - 000000000 ____D C:\WINDOWS\System32\Tasks\WPD
2017-07-16 10:04 - 2017-07-16 10:04 - 000000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2017-07-16 10:04 - 2017-07-16 10:04 - 000000000 ____D C:\WINDOWS\System32\Tasks\ASUS
2017-07-16 10:02 - 2017-07-16 10:02 - 000001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2017-07-16 10:01 - 2017-07-16 10:02 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2017-07-16 10:01 - 2017-07-16 10:01 - 000000000 ____D C:\Program Files\Common Files\SpeechEngines
2017-07-16 10:01 - 2017-03-18 22:56 - 002233344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2017-07-16 10:00 - 2017-08-09 21:47 - 000000000 ____D C:\Users\Sherys
2017-07-16 10:00 - 2017-08-09 21:21 - 002345272 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-07-16 10:00 - 2017-07-16 10:01 - 000000000 ____D C:\ProgramData\Package Cache
2017-07-16 10:00 - 2017-07-16 10:00 - 001931144 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 _SHDL C:\Users\Sherys\Vorlagen
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 _SHDL C:\Users\Sherys\Startmenü
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 _SHDL C:\Users\Sherys\Netzwerkumgebung
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 _SHDL C:\Users\Sherys\Lokale Einstellungen
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 _SHDL C:\Users\Sherys\Eigene Dateien
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 _SHDL C:\Users\Sherys\Druckumgebung
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 _SHDL C:\Users\Sherys\Documents\Eigene Videos
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 _SHDL C:\Users\Sherys\Documents\Eigene Musik
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 _SHDL C:\Users\Sherys\Documents\Eigene Bilder
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 _SHDL C:\Users\Sherys\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 _SHDL C:\Users\Sherys\AppData\Local\Verlauf
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 _SHDL C:\Users\Sherys\AppData\Local\Anwendungsdaten
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 _SHDL C:\Users\Sherys\Anwendungsdaten
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2017-07-16 10:00 - 2017-07-16 10:00 - 000000000 ____D C:\Program Files (x86)\AMD
2017-07-16 09:59 - 2017-08-09 21:37 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-07-16 09:59 - 2017-08-09 21:17 - 000217120 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-07-16 09:59 - 2017-08-09 21:16 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2017-07-16 09:59 - 2017-07-16 10:01 - 000000000 ____D C:\Program Files (x86)\Razer
2017-07-16 09:59 - 2017-07-16 10:00 - 000000000 ____D C:\Program Files\AMD
2017-07-16 09:59 - 2017-07-16 09:59 - 000000000 ____H C:\ProgramData\DP45977C.lfl
2017-07-16 09:59 - 2017-07-16 09:59 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2017-07-16 09:59 - 2017-07-16 09:59 - 000000000 ____D C:\Program Files\Realtek
2017-07-16 09:59 - 2017-07-16 09:59 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2017-07-13 23:09 - 2017-07-16 10:07 - 000000000 ___DC C:\WINDOWS\Panther
2017-07-13 21:37 - 2017-07-13 21:37 - 000000000 ____D C:\Users\Sherys\AppData\Local\RzStats
2017-07-13 18:54 - 2017-07-13 18:54 - 000000000 ____D C:\Users\Sherys\AppData\Local\AdvancedChromaConfigurato
2017-07-13 18:23 - 2016-10-08 08:56 - 000137840 _____ (Razer, Inc.) C:\WINDOWS\system32\Drivers\rzpnk.sys
2017-07-13 18:23 - 2016-09-17 02:12 - 000044144 _____ (Razer, Inc.) C:\WINDOWS\system32\Drivers\rzpmgrk.sys
2017-07-13 18:22 - 2017-07-13 18:22 - 000000000 ____D C:\Program Files\Razer Chroma SDK
2017-07-13 18:22 - 2017-07-13 18:22 - 000000000 ____D C:\Program Files (x86)\Razer Chroma SDK
2017-07-13 18:15 - 2017-07-16 10:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2017-07-13 18:15 - 2017-07-13 21:36 - 000000000 ____D C:\Users\Sherys\AppData\Local\Razer
2017-07-13 18:15 - 2017-07-13 18:24 - 000000000 ____D C:\ProgramData\Razer
2017-07-13 18:13 - 2017-07-13 18:13 - 001524744 _____ C:\Users\Sherys\Downloads\Razer Synapse - CHIP-Installer.exe
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2017-08-09 23:23 - 2017-03-18 23:01 - 000000000 ____D C:\WINDOWS\INF
2017-08-09 23:20 - 2017-03-10 21:15 - 000000000 ____D C:\Users\Sherys\AppData\Roaming\Curse Client
2017-08-09 23:20 - 2017-03-09 13:06 - 000000000 ____D C:\Users\Sherys\AppData\Local\Battle.net
2017-08-09 22:40 - 2017-03-21 22:17 - 000000000 ____D C:\Heroes of the Storm
2017-08-09 21:47 - 2017-03-10 20:32 - 000000000 ____D C:\World of Warcraft
2017-08-09 21:46 - 2017-03-09 13:02 - 000000000 ____D C:\Program Files (x86)\Battle.net
2017-08-09 21:24 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-08-09 21:23 - 2017-03-09 17:36 - 000000000 ____D C:\Users\Sherys\AppData\Local\Spotify
2017-08-09 21:23 - 2017-03-09 17:34 - 000000000 ____D C:\Users\Sherys\AppData\Roaming\Spotify
2017-08-09 21:21 - 2017-03-20 06:35 - 001033918 _____ C:\WINDOWS\system32\perfh007.dat
2017-08-09 21:21 - 2017-03-20 06:35 - 000240000 _____ C:\WINDOWS\system32\perfc007.dat
2017-08-09 21:18 - 2017-03-09 16:51 - 000000000 ____D C:\Program Files (x86)\Steam
2017-08-09 21:18 - 2017-03-08 23:37 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-08-09 21:16 - 2017-03-18 23:03 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-08-09 21:16 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2017-08-09 21:16 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2017-08-09 21:16 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2017-08-09 21:16 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\oobe
2017-08-09 21:16 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\ShellExperiences
2017-08-09 21:16 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2017-08-09 21:16 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-08-09 21:16 - 2017-03-18 13:40 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2017-08-09 18:57 - 2017-03-18 22:51 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-08-09 18:18 - 2017-03-09 11:19 - 001015880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2017-08-09 18:18 - 2017-03-09 11:19 - 000146704 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswmonflt.sys
2017-08-09 18:14 - 2017-03-18 23:03 - 000000000 ___HD C:\Program Files\WindowsApps
2017-08-09 14:04 - 2017-03-09 11:40 - 000000000 ____D C:\WINDOWS\system32\MRT
2017-08-09 14:02 - 2017-03-09 11:40 - 140394280 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-08-09 13:57 - 2017-03-08 23:37 - 000000000 ____D C:\Users\Sherys\AppData\Local\Packages
2017-08-09 13:53 - 2017-03-11 15:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteelSeries
2017-08-09 13:52 - 2017-03-09 15:05 - 000002277 _____ C:\Users\Sherys\Desktop\Discord.lnk
2017-08-09 13:52 - 2017-03-09 15:05 - 000000000 ____D C:\Users\Sherys\AppData\Roaming\discord
2017-08-09 13:52 - 2017-03-09 15:05 - 000000000 ____D C:\Users\Sherys\AppData\Local\Discord
2017-08-08 18:36 - 2017-03-08 20:00 - 000002264 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-08-08 18:36 - 2017-03-08 20:00 - 000002252 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-08-05 23:52 - 2017-06-15 11:02 - 000000000 ____D C:\Users\Sherys\AppData\Roaming\vlc
2017-07-31 22:46 - 2017-03-08 23:37 - 000000000 ____D C:\Users\Sherys\AppData\Local\ConnectedDevicesPlatform
2017-07-31 17:15 - 2017-03-18 23:06 - 000835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2017-07-31 17:15 - 2017-03-18 23:06 - 000177648 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2017-07-27 21:15 - 2017-03-08 23:39 - 000002425 _____ C:\Users\Sherys\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-07-27 21:15 - 2017-03-08 23:39 - 000000000 ___RD C:\Users\Sherys\OneDrive
2017-07-24 06:18 - 2017-06-07 18:46 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys
2017-07-24 06:18 - 2017-03-09 12:20 - 000001088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2017-07-24 06:18 - 2017-03-09 11:19 - 000343288 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbloga.sys
2017-07-24 06:18 - 2017-03-09 11:19 - 000320008 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsdrivera.sys
2017-07-24 06:18 - 2017-03-09 11:19 - 000198976 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbidsha.sys
2017-07-24 06:18 - 2017-03-09 11:19 - 000146664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswmonflt.sys.150086989889003
2017-07-24 06:18 - 2017-03-09 11:19 - 000057728 _____ (AVAST Software s.r.o.) C:\WINDOWS\system32\Drivers\aswbuniva.sys
2017-07-19 10:52 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\rescache
2017-07-19 10:00 - 2017-03-23 17:28 - 000000000 ____D C:\Diablo III
2017-07-17 06:07 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\appcompat
2017-07-16 10:58 - 2017-03-18 23:03 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2017-07-16 10:56 - 2017-03-18 23:06 - 000000000 ____D C:\WINDOWS\Setup
2017-07-16 10:55 - 2017-03-18 23:03 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2017-07-16 10:55 - 2017-03-18 23:03 - 000000000 ___SD C:\WINDOWS\system32\F12
2017-07-16 10:55 - 2017-03-18 23:03 - 000000000 ___RD C:\Program Files\Windows Defender
2017-07-16 10:55 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\migwiz
2017-07-16 10:55 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\appraiser
2017-07-16 10:55 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2017-07-16 10:51 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2017-07-16 10:51 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\Provisioning
2017-07-16 10:51 - 2017-03-18 13:40 - 000000000 ____D C:\WINDOWS\system32\Dism
2017-07-16 10:48 - 2017-03-20 06:36 - 000000000 ____D C:\WINDOWS\OCR
2017-07-16 10:46 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2017-07-16 10:46 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\MUI
2017-07-16 10:46 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2017-07-16 10:46 - 2017-03-18 22:59 - 000611840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqsnap.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqutil.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000261120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqrt.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa.tlb
2017-07-16 10:46 - 2017-03-18 22:59 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa30.tlb
2017-07-16 10:46 - 2017-03-18 22:59 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa20.tlb
2017-07-16 10:46 - 2017-03-18 22:59 - 000054272 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqoa10.tlb
2017-07-16 10:46 - 2017-03-18 22:59 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2017-07-16 10:46 - 2017-03-18 22:59 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe
2017-07-16 10:46 - 2017-03-18 22:59 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mqcertui.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll
2017-07-16 10:46 - 2017-03-18 22:59 - 000009096 _____ C:\WINDOWS\SysWOW64\msmqtrc.mof
2017-07-16 10:46 - 2017-03-18 22:56 - 001380352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000389632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2017-07-16 10:46 - 2017-03-18 22:56 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2017-07-16 10:46 - 2017-03-18 22:56 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2017-07-16 10:46 - 2017-03-18 22:56 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2017-07-16 10:46 - 2017-03-18 22:56 - 000051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2017-07-16 10:46 - 2017-03-18 22:56 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2017-07-16 10:46 - 2017-03-18 22:56 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe
2017-07-16 10:46 - 2017-03-18 22:56 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2017-07-16 10:46 - 2017-03-18 22:56 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe
2017-07-16 10:46 - 2017-03-18 22:56 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe
2017-07-16 10:46 - 2017-03-18 22:56 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2017-07-16 10:46 - 2017-03-18 22:56 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll
2017-07-16 10:46 - 2017-03-18 22:56 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll
2017-07-16 10:08 - 2017-03-18 23:03 - 000000000 ____D C:\ProgramData\USOPrivate
2017-07-16 10:07 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2017-07-16 10:07 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files\Windows NT
2017-07-16 10:06 - 2017-03-18 23:03 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-07-16 10:06 - 2016-07-16 13:47 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2017-07-16 10:05 - 2017-03-20 06:37 - 000000000 ____D C:\WINDOWS\HoloShell
2017-07-16 10:05 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\Registration
2017-07-16 10:04 - 2017-03-18 23:03 - 000000000 __RSD C:\WINDOWS\Media
2017-07-16 10:04 - 2017-03-18 23:03 - 000000000 __RHD C:\Users\Public\Libraries
2017-07-16 10:04 - 2017-03-08 22:38 - 000023056 _____ C:\WINDOWS\system32\emptyregdb.dat
2017-07-16 10:02 - 2017-06-15 10:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2017-07-16 10:02 - 2017-06-11 12:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2
2017-07-16 10:02 - 2017-05-18 18:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings
2017-07-16 10:02 - 2017-05-07 14:42 - 000000000 ____D C:\WINDOWS\system32\UNP
2017-07-16 10:02 - 2017-03-23 19:28 - 000000000 ____D C:\Users\Sherys\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameSpy Arcade
2017-07-16 10:02 - 2017-03-23 17:52 - 000000000 ____D C:\Users\Sherys\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2017-07-16 10:02 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2017-07-16 10:02 - 2017-03-09 17:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2017-07-16 10:02 - 2017-03-09 16:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2017-07-16 10:02 - 2017-03-09 13:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2017-07-16 10:02 - 2017-03-09 10:49 - 000000000 ____D C:\Users\Sherys\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps
2017-07-16 10:01 - 2017-04-16 02:14 - 000000000 ____D C:\WINDOWS\system32\f7413a12ea79bc2e1bf91..bin
2017-07-16 10:01 - 2017-03-20 06:35 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep
2017-07-16 10:01 - 2017-03-18 23:03 - 000000000 __SHD C:\Program Files\Windows Sidebar
2017-07-16 10:01 - 2017-03-18 23:03 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar
2017-07-16 10:01 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-07-16 10:01 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2017-07-16 10:01 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\IME
2017-07-16 10:01 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\spool
2017-07-16 10:01 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\NDF
2017-07-16 10:01 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\Macromed
2017-07-16 10:01 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\IME
2017-07-16 10:01 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\schemas
2017-07-16 10:01 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2017-07-16 10:01 - 2017-03-09 18:23 - 000000000 ____D C:\WINDOWS\system32\ÿÿÿÿÿÿÿÿ
2017-07-16 10:01 - 2017-03-09 15:05 - 000000000 ____D C:\Users\Sherys\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc
2017-07-16 10:01 - 2009-07-14 07:32 - 000000000 ____D C:\Program Files\Microsoft Games
2017-07-16 10:00 - 2017-03-18 13:40 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2017-07-16 09:59 - 2017-03-09 10:49 - 000000000 ____D C:\AMD
2017-07-11 20:33 - 2017-03-08 19:58 - 000000000 ____D C:\Program Files (x86)\Google
2017-07-10 18:22 - 2017-03-09 11:19 - 000585608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2017-07-10 18:22 - 2017-03-09 11:19 - 000361336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2017-07-10 18:22 - 2017-03-09 11:19 - 000360792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswvmm.sys.149970373264006
2017-07-10 18:22 - 2017-03-09 11:19 - 000198768 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2017-07-10 18:22 - 2017-03-09 11:19 - 000110352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2017-07-10 18:22 - 2017-03-09 11:19 - 000084392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2017-07-10 18:22 - 2017-03-09 11:19 - 000046984 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2017-07-10 18:22 - 2017-03-09 11:01 - 000000000 ____D C:\ProgramData\AVAST Software
2017-07-10 18:21 - 2017-03-09 12:16 - 000041800 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2017-07-16 09:59 - 2017-07-16 09:59 - 000000000 ____H () C:\ProgramData\DP45977C.lfl
==================== Bamital & volsnap ======================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2017-08-05 12:00
==================== Ende von FRST.txt ============================ Und die Addition.txt Datei Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 09-08-2017
durchgeführt von Sherys (09-08-2017 23:26:12)
Gestartet von C:\Users\Sherys\Desktop
Windows 10 Home Version 1703 (X64) (2017-07-16 08:07:42)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-1145231142-964970557-2513409844-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1145231142-964970557-2513409844-503 - Limited - Disabled)
Gast (S-1-5-21-1145231142-964970557-2513409844-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1145231142-964970557-2513409844-1002 - Limited - Enabled)
Sherys (S-1-5-21-1145231142-964970557-2513409844-1000 - Administrator - Enabled) => C:\Users\Sherys
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
Adobe Flash Player 25 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 25.0.0.171 - Adobe Systems Incorporated)
AMD Catalyst Install Manager (HKLM\...\{5DDB9EF7-1BC0-C9C1-9829-6B9CF68AC357}) (Version: 8.0.903.0 - Advanced Micro Devices, Inc.)
AMD Settings (HKLM\...\WUCCCApp) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.5.2303 - AVAST Software)
Banished (HKLM\...\Steam App 242920) (Version: - Shining Rock Software LLC)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Catalyst Control Center Next Localization BR (HKLM\...\{3E245378-BF77-6946-C6F6-096DBE5EAB82}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization BR (HKLM\...\{E7AA1A02-575C-14C6-FBEF-4BE6D46A5B74}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{45907537-804A-514F-5280-5F4F12A6DCBC}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{EB6C44F1-0F78-FE10-BC63-90BA50AB0CE9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{962364E4-08BB-347D-32E7-2B789F37BF8A}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{B26D75B8-FAB7-6F8B-767F-BAF975383D91}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{36EDC500-E4C0-371C-9865-08450415C1E9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{A0407E39-2AA4-60B3-885F-3C5347B6909E}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{0989D0EA-AFF3-5F9A-3D25-20EE133E409B}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{4C2FB7FD-89FD-BA5C-585A-3811F326AD34}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{A8689A0F-5928-7300-B82B-C5E85131B7BA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{D74218A3-C503-57EF-AC9F-2220082E7ADE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{76AAF56B-93D8-161D-809A-EC05F3B913DA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{DA433FCF-90A1-19A5-65A7-FDF82DE4826D}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{063CED74-F5F0-870E-DC9C-2D78FDEDA3EE}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{949F125B-A6CC-5A5E-EEE7-4AC50305C1FA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{13BB60AA-88F7-4B1F-2DEC-D81EEDE8B3AA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{20D46801-147B-30AD-7C5A-AC4560A79096}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{22C39711-2747-D264-319A-1550BEEAAEC6}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{37AA6227-FF2C-95AC-87C0-45DCC0BB87DA}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{1DBACFDB-5E43-7882-36BD-53526D34BD22}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{EB328356-1DF0-1CCE-3607-6361DD329219}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{87E6EC29-AEC5-28CB-F773-93EB6C1B8A2B}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{A91FC4BF-C1EC-ADCA-79D1-F4F0671F1D60}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{CA55697D-BD74-3ED8-6B21-D7EDAD3B7D02}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{ED75A775-03A7-F214-868D-497748707968}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{07BFBD5C-2F63-6828-1B61-B41A44113F3B}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{CFC860C8-4F51-E08C-A74C-2E444ED06160}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{9338D693-38B7-1ED4-9B42-BFA1D5600CCB}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{E6038D3E-5D87-8DF7-6D05-BE7532C3E73E}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{C971C145-258D-6650-7088-13DDB161327A}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{DFAD9DAC-4768-C8BB-4E0E-5239605A9BEA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{EBA09DAF-14B4-7BE7-676E-6E2FB21EDBDD}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{FFBFBD1F-B160-A119-7C43-8584FA2E5665}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{4D1D5407-9B69-6422-629C-8518A26004A4}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{9AA4DD93-94BF-22EA-C9D2-7084F304A31B}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{379D900B-A785-6DB0-012E-434356A365B3}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{A8379BAB-59A9-C0A3-8BCC-4852EA403692}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{24DF617A-CD23-6E6A-126B-23630D2781CE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{366C4FB5-CF6E-258B-418D-E6D29549A278}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{83DDDFD8-AD42-72F9-E4F1-5456FDB304C9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{B10089DE-934F-6E0F-683A-B788F89348DF}) (Version: 2016.1121.1657.30480 - Advanced Micro Devices, Inc.) Hidden
Chrome Remote Desktop Host (HKLM-x32\...\{2357F394-41A9-40CE-A79E-008AE07B35F9}) (Version: 60.0.3112.25 - Google Inc.)
Curse (HKLM-x32\...\{1F2611FB-6F69-4AA8-BECD-243BD8CB45F3}) (Version: 6.0.0.0 - Curse)
Diablo III (HKLM-x32\...\Diablo III) (Version: - Blizzard Entertainment)
Discord (HKU\S-1-5-21-1145231142-964970557-2513409844-1000\...\Discord) (Version: 0.0.298 - Discord Inc.)
GameSpy Arcade (HKLM-x32\...\GameSpy Arcade) (Version: - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 60.0.3112.90 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden
Guild Wars 2 (HKLM\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.)
Heroes of the Storm (HKLM-x32\...\Heroes of the Storm) (Version: - Blizzard Entertainment)
Life Is Strange™ (HKLM\...\Steam App 319630) (Version: - DONTNOD Entertainment)
Malwarebytes Version 3.1.2.1733 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.1.2.1733 - Malwarebytes)
Microsoft OneDrive (HKU\S-1-5-21-1145231142-964970557-2513409844-1000\...\OneDriveSetup.exe) (Version: 17.3.6943.0625 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
Oracle VM VirtualBox 5.1.16 (HKLM\...\{8834A1E1-4C15-431B-9268-3463F726AB13}) (Version: 5.1.16 - Oracle Corporation)
Origin (HKLM-x32\...\Origin) (Version: 10.4.5.25153 - Electronic Arts, Inc.)
Plague Inc: Evolved (HKLM\...\Steam App 246620) (Version: - Ndemic Creations)
RAT8 (HKLM\...\{8DAB3139-28C1-4EA4-B103-3E1A188F3FC6}) (Version: 7.0.60.3 - Mad Catz Inc)
Razer Chroma SDK Core Components (HKLM-x32\...\Razer Chroma SDK) (Version: 2.3.6 - Razer Inc.)
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.20.17.413 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.67.1226.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7023 - Realtek Semiconductor Corp.)
SafeZone Stable 3.55.2393.609 (HKLM-x32\...\SafeZone 3.55.2393.609) (Version: 3.55.2393.609 - Avast Software) Hidden
SpellForce: Platinum Edition (HKLM\...\Steam App 39540) (Version: - Phenomic)
Spotify (HKU\S-1-5-21-1145231142-964970557-2513409844-1000\...\Spotify) (Version: 1.0.60.492.gbb40dab8 - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SteelSeries Engine 3.10.12 (HKLM\...\SteelSeries Engine 3) (Version: 3.10.12 - SteelSeries ApS)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.1 - TeamSpeak Systems GmbH)
The Witcher 3: Wild Hunt (HKLM\...\Steam App 292030) (Version: - CD PROJEKT RED)
Torchlight II (HKLM\...\Steam App 200710) (Version: - Runic Games)
VLC media player (HKLM\...\VLC media player) (Version: 2.2.6 - VideoLAN)
Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation)
Windows 10-Upgrade-Assistent (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.17364 - Microsoft Corporation)
Windows-Treiberpaket - SteelSeries (HidUsb) HIDClass (06/09/2010 1.0.2.0) (HKLM\...\0F7DD176693D493C7502506ABE5F948A4C14EA2E) (Version: 06/09/2010 1.0.2.0 - SteelSeries)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)
World of Warcraft MMO Gaming Mouse (HKLM-x32\...\{C9DF0468-5F31-4799-B4FE-CBAD37FFB8DE}) (Version: 1.14.0000 - SteelSeries)
World of Warcraft(R) MMO Gaming Mouse: Legendary Edition (HKLM-x32\...\{AA909E80-DC40-4AF0-A693-376F9F1C8582}) (Version: 1.01.0015 - SteelSeries)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-24] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-24] (AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-24] (AVAST Software)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2017-04-24] (Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-07-24] (AVAST Software)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2017-05-09] (Malwarebytes)
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {020C5E95-61E5-47D2-ABB5-AD4BEB8EAC36} - System32\Tasks\ASUS\RunDAOD => C:\Windows\DAODx.exe [2009-03-30] ()
Task: {0AA56EB6-7495-46D1-93BD-39AB8CEE360E} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {20C2DE5F-9155-461B-B116-44A08D87F329} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {21649793-8753-4B3B-8932-90E20F206308} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_25_0_0_171_pepper.exe [2017-05-25] (Adobe Systems Incorporated)
Task: {2FE80576-54C3-4321-8383-5CF19ECDC632} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {3CD43683-A106-4488-8EB1-D5B1A1DA8802} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {3E1CC7E2-980A-4F5C-8B1C-62222368459E} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {3FC99E8C-98CB-4057-8AF0-2376532E1AC6} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {5D9B8DA5-461A-41F2-A266-2AD88A932B0C} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {5EE38769-CEF4-42AD-8F01-6646D42D0A69} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {668DB9BD-21DC-432A-8DDD-1E35C7A0BC93} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {7F713306-CF73-4978-8752-1D1B0FB3517A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-03-08] (Google Inc.)
Task: {8378383C-19C8-4AA0-85C6-CFB52EA86DF8} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {9EEF7B2E-9A7B-4C67-A59C-C59A3D9D3996} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [2017-04-24] (Advanced Micro Devices, Inc.)
Task: {A3ED1F5E-4B2B-4FC0-BC15-9B273943D287} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {B1FFD7C3-6597-4EAB-9D6D-7C2733F075C2} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {BD2428AF-E29C-4025-B412-956888596580} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {C1D98C51-68DB-4EB4-8847-F2D544F9D6E6} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2017-07-24] (AVAST Software)
Task: {C27868F0-8563-4678-83B1-8CA4A2088BB7} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {C2AF3E15-FB39-4C82-B448-081C94C448D4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-03-08] (Google Inc.)
Task: {C6B363B1-9F0A-4E2B-A6D9-DA09F66DED7F} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D0DB5915-AE79-4112-95D7-CB4224824F1C} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {D0FCF595-3034-4361-BBBE-796167B912FB} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {D5D73A3D-57D4-4BC3-8A3F-8D270C4EC92F} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {D94A82BC-E465-4792-AD0F-E567FF17D2FE} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-07-12] (AVAST Software)
Task: {ECDEC472-6BFA-4F7A-B2EF-2BC76E17C53A} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {F4E2D374-5143-440D-95F8-4E6C5FA55841} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {F6736609-B2C7-451A-91E3-F7DD1566B6F9} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {FBA7B650-0CD4-43E2-B396-72ECEF25225F} - System32\Tasks\SafeZone scheduled Autoupdate 1489054854 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2017-06-13] (Avast Software)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
==================== Verknüpfungen & WMI ========================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
ShortcutWithArgument: C:\Users\Sherys\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Chrome Remote Desktop.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp
ShortcutWithArgument: C:\Users\Sherys\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Murder Files.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=ijfecbiladpinddbjfodaaiahggomhaf
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2017-08-09 18:08 - 2017-06-27 12:06 - 002260432 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2016-09-25 00:20 - 2016-09-25 00:21 - 000189264 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2017-03-18 22:58 - 2017-03-18 22:58 - 000138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2009-03-30 08:32 - 2009-03-30 08:32 - 000032768 ____R () C:\Windows\DAODx.exe
2016-09-14 03:00 - 2016-09-14 03:00 - 000014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2016-09-14 03:00 - 2016-09-14 03:00 - 000739840 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2016-09-14 03:00 - 2016-09-14 03:00 - 000014336 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2016-09-14 03:00 - 2016-09-14 03:00 - 000071168 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2016-09-14 02:59 - 2016-09-14 02:59 - 000011776 _____ () C:\Program Files\AMD\CNext\CNext\libEGL.dll
2016-09-14 02:59 - 2016-09-14 02:59 - 002013696 _____ () C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2016-09-14 03:00 - 2016-09-14 03:00 - 000191488 _____ () C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2017-03-18 22:59 - 2017-03-20 06:36 - 001731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-07-14 19:54 - 2017-07-14 19:56 - 000074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-07-14 19:54 - 2017-07-14 19:56 - 000203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-07-14 19:54 - 2017-07-14 19:56 - 043573248 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-07-14 19:54 - 2017-07-14 19:56 - 002435584 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\skypert.dll
2017-03-11 15:30 - 2011-10-03 21:17 - 001945600 _____ () C:\Program Files (x86)\SteelSeries\World of Warcraft(R) MMO Gaming Mouse Legendary Edition\WoWMHID4.exe
2017-04-07 08:37 - 2017-04-07 08:37 - 000298448 _____ () C:\ProgramData\Razer\Synapse\RzStats\RzStats.Manager.exe
2017-07-19 07:08 - 2017-07-19 07:08 - 001528296 _____ () C:\Program Files (x86)\Battle.net\Battle.net.9093\Battle.net Helper.exe
2017-08-08 18:36 - 2017-08-02 09:39 - 003824472 _____ () C:\Program Files (x86)\Google\Chrome\Application\60.0.3112.90\libglesv2.dll
2017-08-08 18:36 - 2017-08-02 09:39 - 000100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\60.0.3112.90\libegl.dll
2017-03-09 17:19 - 2017-03-09 17:06 - 002493440 _____ () C:\Program Files (x86)\Origin\libGLESv2.dll
2017-07-24 06:18 - 2017-07-24 06:18 - 000170224 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2017-07-24 06:18 - 2017-07-24 06:18 - 001065936 _____ () C:\Program Files\AVAST Software\Avast\AvChrome.dll
2017-07-10 18:21 - 2017-07-10 18:21 - 067109376 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2017-07-24 06:18 - 2017-07-24 06:18 - 000192664 _____ () C:\Program Files\AVAST Software\Avast\event_routing_rpc.dll
2017-07-24 06:18 - 2017-07-24 06:18 - 000224256 _____ () C:\Program Files\AVAST Software\Avast\tasks_core.dll
2017-07-24 06:18 - 2017-07-24 06:18 - 000292920 _____ () C:\Program Files\AVAST Software\Avast\gaming_mode_ui.dll
2017-07-24 06:18 - 2017-07-24 06:18 - 000689272 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2017-08-09 13:52 - 2017-08-08 15:13 - 001893880 _____ () C:\Users\Sherys\AppData\Local\Discord\app-0.0.298\ffmpeg.dll
2017-08-09 13:52 - 2017-08-09 13:52 - 001577976 _____ () \\?\C:\Users\Sherys\AppData\Roaming\discord\0.0.298\modules\discord_toaster\discord_toaster.node
2017-08-09 13:52 - 2017-08-08 15:13 - 001938424 _____ () C:\Users\Sherys\AppData\Local\Discord\app-0.0.298\libglesv2.dll
2017-08-09 13:52 - 2017-08-08 15:13 - 000095736 _____ () C:\Users\Sherys\AppData\Local\Discord\app-0.0.298\libegl.dll
2017-03-09 16:57 - 2017-05-17 03:54 - 000678176 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2017-03-09 16:57 - 2016-09-01 03:02 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2017-03-09 16:57 - 2017-07-18 02:33 - 002497824 _____ () C:\Program Files (x86)\Steam\video.dll
2017-03-09 16:57 - 2016-09-01 03:02 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2017-03-09 16:57 - 2016-09-01 03:02 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2017-03-09 16:57 - 2016-01-27 09:49 - 002549760 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll
2017-03-09 16:57 - 2016-01-27 09:49 - 000491008 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll
2017-03-09 16:57 - 2016-01-27 09:49 - 000332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll
2017-03-09 16:57 - 2016-01-27 09:49 - 000442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll
2017-03-09 16:57 - 2016-01-27 09:49 - 000485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll
2017-03-09 16:57 - 2017-07-18 02:33 - 000884512 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2017-03-09 16:57 - 2016-07-05 00:17 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2017-08-09 13:52 - 2017-08-09 13:52 - 009596408 _____ () \\?\C:\Users\Sherys\AppData\Roaming\discord\0.0.298\modules\discord_voice\discord_voice.node
2017-08-09 13:52 - 2017-08-09 13:52 - 001440248 _____ () \\?\C:\Users\Sherys\AppData\Roaming\discord\0.0.298\modules\discord_utils\discord_utils.node
2017-08-09 21:18 - 2017-08-09 21:18 - 000148992 _____ () \\?\C:\Users\Sherys\AppData\Local\Temp\5EE4.tmp.node
2017-08-09 13:52 - 2017-08-09 13:52 - 002658296 _____ () \\?\C:\Users\Sherys\AppData\Roaming\discord\0.0.298\modules\discord_rpc\discord_rpc.node
2017-08-09 13:52 - 2017-08-09 13:52 - 002673656 _____ () \\?\C:\Users\Sherys\AppData\Roaming\discord\0.0.298\modules\discord_contact_import\discord_contact_import.node
2017-03-09 16:59 - 2017-07-06 19:58 - 073088800 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
2017-06-11 11:30 - 2017-05-17 03:54 - 000678176 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll
2017-03-09 16:57 - 2017-07-18 02:33 - 000384288 _____ () C:\Program Files (x86)\Steam\steam.dll
2017-03-11 16:52 - 2010-08-11 15:18 - 000010752 _____ () C:\Program Files (x86)\SteelSeries\World of Warcraft MMO Gaming Mouse\VDHIDWDM.DLL
2016-04-05 17:57 - 2016-04-05 17:57 - 000393608 _____ () C:\Users\Sherys\AppData\Roaming\Curse Client\Bin\opus.dll
2017-03-04 02:59 - 2017-07-25 19:22 - 000535872 _____ () C:\Users\Sherys\AppData\Roaming\Curse Client\Bin\Curse.Presto.Interface.dll
2017-05-22 12:13 - 2017-05-22 12:13 - 000143824 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2017-01-11 00:04 - 2017-04-11 19:35 - 001950528 _____ () C:\Users\Sherys\AppData\Roaming\Curse Client\Bin\Electron\ffmpeg.dll
2017-01-11 00:04 - 2017-04-11 19:36 - 002270528 _____ () C:\Users\Sherys\AppData\Roaming\Curse Client\Bin\Electron\libglesv2.dll
2017-01-11 00:04 - 2017-04-11 19:35 - 000088384 _____ () C:\Users\Sherys\AppData\Roaming\Curse Client\Bin\Electron\libegl.dll
2017-07-13 21:36 - 2016-10-08 09:13 - 050656768 _____ () C:\Users\Sherys\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libcef.dll
2017-07-13 21:36 - 2016-10-08 09:13 - 001874944 _____ () C:\Users\Sherys\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libglesv2.dll
2017-07-13 21:36 - 2016-10-08 09:13 - 000075264 _____ () C:\Users\Sherys\AppData\Local\razer\InGameEngine\cache\RzStats.Manager\cef\libegl.dll
2017-03-01 17:25 - 2017-03-01 17:25 - 001877504 _____ () C:\Program Files\SteelSeries\SteelSeries Engine 3\ffmpeg.dll
2017-03-01 17:25 - 2017-03-01 17:25 - 001922560 _____ () C:\Program Files\SteelSeries\SteelSeries Engine 3\libglesv2.dll
2017-03-01 17:25 - 2017-03-01 17:25 - 000079872 _____ () C:\Program Files\SteelSeries\SteelSeries Engine 3\libegl.dll
2017-07-19 07:09 - 2017-07-19 07:09 - 055782888 _____ () C:\Program Files (x86)\Battle.net\Battle.net.9093\libcef.dll
2017-07-19 07:10 - 2017-07-19 07:10 - 000540336 _____ () C:\Program Files (x86)\Battle.net\Battle.net.9093\ortp.dll
2017-07-19 07:09 - 2017-07-19 07:09 - 000133632 _____ () C:\Program Files (x86)\Battle.net\Battle.net.9093\libEGL.dll
2017-07-19 07:09 - 2017-07-19 07:10 - 003384832 _____ () C:\Program Files (x86)\Battle.net\Battle.net.9093\libGLESv2.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-1145231142-964970557-2513409844-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Sherys\Desktop\desktop\h9oCX0k.jpg
DNS Servers: 192.168.2.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
HKU\S-1-5-21-1145231142-964970557-2513409844-1000\...\StartupApproved\Run: => "OneDrive"
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [UDP Query User{F7357B62-202F-4C85-9143-C949DE1FF64C}C:\heroes of the storm\versions\base55288\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base55288\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{EC20056A-7A19-4E09-9E74-3C27F7D239C6}C:\heroes of the storm\versions\base55288\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base55288\heroesofthestorm_x64.exe
FirewallRules: [{25E8D747-F553-4259-90D8-80F1BCFE31FF}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609\SZBrowser.exe
FirewallRules: [{9A218CDD-DDB9-48CE-9F96-F0811F7BE2B0}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\60.0.3112.25\remoting_host.exe
FirewallRules: [UDP Query User{D005F516-3BA3-4115-9E67-037C9CFA14A5}C:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{B1FA43E2-A254-484E-B7BF-6CA7ABE0B803}C:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base55010\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{8438523B-968F-4872-95BF-B93931373B95}C:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{58C066B9-8789-4FD7-823C-CDDB86BDEE55}C:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base54968\heroesofthestorm_x64.exe
FirewallRules: [{0E0E619F-9B16-433B-9B5B-5055DD0802C3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe
FirewallRules: [{E6C3EA7C-0D44-4262-AB77-3886EBD3EFF5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\The Witcher 3\bin\x64\witcher3.exe
FirewallRules: [{95E834E8-C55A-4D17-A628-D84F4F03A30F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe
FirewallRules: [{99630789-1D09-4A97-AF84-A65EA9F3506C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe
FirewallRules: [{2D2BD4A7-DA24-481E-B5C1-40CED5522303}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PlagueInc\PlagueIncEvolved.exe
FirewallRules: [{BD2B301D-EC09-477A-95B5-86BCDF9D20CB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\PlagueInc\PlagueIncEvolved.exe
FirewallRules: [UDP Query User{EB64B09C-9ECC-40AF-9AE9-DD7195515768}C:\diablo iii\x64\diablo iii64.exe] => (Allow) C:\diablo iii\x64\diablo iii64.exe
FirewallRules: [TCP Query User{3DC3038D-8197-4AEC-8472-1C8DDB75858D}C:\diablo iii\x64\diablo iii64.exe] => (Allow) C:\diablo iii\x64\diablo iii64.exe
FirewallRules: [UDP Query User{0FF1D96F-5742-4B0F-9E5F-ACA27932D2FF}C:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{573BAB2B-1808-4092-AE6B-885D96E2553B}C:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{1D973F13-A43C-4D15-9F8B-86312E0F479B}C:\users\sherys\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\sherys\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{7AFB00B1-29B7-4B46-9B38-DC6F07821B68}C:\users\sherys\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\sherys\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{8388CF53-6C9C-4D09-800F-EADAFDC16F01}C:\program files (x86)\steam\steamapps\common\torchlight ii\torchlight2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\torchlight ii\torchlight2.exe
FirewallRules: [TCP Query User{3C0CEE0F-323F-4E1C-B505-4812EECFFAE0}C:\program files (x86)\steam\steamapps\common\torchlight ii\torchlight2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\torchlight ii\torchlight2.exe
FirewallRules: [UDP Query User{165BF053-86B4-4DFF-9E71-E2375C9FEB97}C:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{2092FA12-5B3C-42F3-B719-85ECEBD868BD}C:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base54339\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{9B2D4CA8-A295-4560-A45B-20AA6A4E3F8A}C:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{458F8BE2-C34C-4BC7-874B-E819542B565B}C:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base53965\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{C8F0311E-2224-462E-9615-C0AAAD90B638}C:\world of warcraft\overwatch\overwatch.exe] => (Allow) C:\world of warcraft\overwatch\overwatch.exe
FirewallRules: [TCP Query User{943C85D6-091A-4AB8-B9A8-B32C6F47DFEB}C:\world of warcraft\overwatch\overwatch.exe] => (Allow) C:\world of warcraft\overwatch\overwatch.exe
FirewallRules: [UDP Query User{EE678595-9AF4-41CC-90FF-04E968BB96DD}C:\program files (x86)\battle.net\battle.net.8839\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8839\battle.net.exe
FirewallRules: [TCP Query User{5EA3C66B-BF75-4E3E-B9D3-AF0E7326406D}C:\program files (x86)\battle.net\battle.net.8839\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8839\battle.net.exe
FirewallRules: [{2BCDBB7A-83C9-43BC-9398-2BB8B422A66E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Torchlight II\ModLauncher.exe
FirewallRules: [{F800C425-E190-4E2F-8AC4-452585C5D0A2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Torchlight II\ModLauncher.exe
FirewallRules: [{6C5FD5D4-B5D4-4D7E-940E-028D32F50006}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Banished\Application-steam-x64.exe
FirewallRules: [{9585BC9E-60E3-4A44-8E7A-55BE7EE14FD4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Banished\Application-steam-x64.exe
FirewallRules: [{E41710CA-C742-4038-A904-6E5E38BEBF52}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe
FirewallRules: [{06F6F41D-6284-4CDF-876C-AF1DE5F629A7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Life Is Strange\Binaries\Win32\LifeIsStrange.exe
FirewallRules: [UDP Query User{713BC850-D992-4334-B393-C896075E54A8}C:\program files (x86)\battle.net\battle.net.8800\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8800\battle.net.exe
FirewallRules: [TCP Query User{0CAF64C8-1AE8-4FD4-BDB8-C931E1979B40}C:\program files (x86)\battle.net\battle.net.8800\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8800\battle.net.exe
FirewallRules: [UDP Query User{57D2E65D-7424-4E24-9EF3-0C701194C9BE}C:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{6D88E230-A03C-4D53-849A-3F8F0EF50F2D}C:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base53548\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{9CB632E9-0AC5-494D-B217-402524509514}C:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{7EE0A967-68CF-4ED1-88BB-BD4568B49BD7}C:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base53275\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{D379AF5D-97FB-4419-AB27-F3BA0C0D397C}C:\program files (x86)\battle.net\battle.net.8733\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8733\battle.net.exe
FirewallRules: [TCP Query User{8A71E12D-11B9-4C98-83B6-BE0201F467B6}C:\program files (x86)\battle.net\battle.net.8733\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8733\battle.net.exe
FirewallRules: [UDP Query User{A4799A7D-C897-4DD6-BA9F-F70C7C69D570}C:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{6CFEA7FF-0535-4292-93DC-7F370C48B7CA}C:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base52986\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{60FBABB4-546E-460B-813A-32B63D19E9A9}C:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{A2B81292-BBD2-45B4-8E8E-3C629531FB1C}C:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base52860\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{7024353E-0B99-4DEC-83B2-F3E9C98C4278}C:\diablo iii\x64\diablo iii64.exe] => (Allow) C:\diablo iii\x64\diablo iii64.exe
FirewallRules: [TCP Query User{D0D01982-E369-4E06-AAF5-098421449FFA}C:\diablo iii\x64\diablo iii64.exe] => (Allow) C:\diablo iii\x64\diablo iii64.exe
FirewallRules: [UDP Query User{C3AFCA79-3EBE-42AC-B47D-D39FEBAEA7B0}C:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{C557368E-B4F8-4651-9984-FF2824C4805B}C:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base52647\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{72738F19-91DE-4E2A-840D-029111BD0EF3}C:\program files (x86)\battle.net\battle.net.8657\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8657\battle.net.exe
FirewallRules: [TCP Query User{18892285-7478-4611-8C30-6339B1F25781}C:\program files (x86)\battle.net\battle.net.8657\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8657\battle.net.exe
FirewallRules: [UDP Query User{058DC37D-D7AA-4368-8B56-739E0D265ED3}C:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{264AF7FE-8C12-4501-8EC1-BF129C4FF5C4}C:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base52351\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{A3519CDB-0D18-4898-A2DB-5A07F24FCC5C}C:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{AF6E5FDE-69F5-4744-BE45-5DFC2AC36E83}C:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base52124\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{3F844210-FE8E-4FAB-9FC9-F01DFDFE22A2}C:\program files (x86)\battle.net\battle.net.8600\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8600\battle.net.exe
FirewallRules: [TCP Query User{C914AEB5-7395-4BE2-9CAD-0FF836841598}C:\program files (x86)\battle.net\battle.net.8600\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.8600\battle.net.exe
FirewallRules: [UDP Query User{9F44C562-4ED8-4FDD-A9A5-70C778C2E76B}C:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{C0182474-AAD0-4836-963D-00C658C287B6}C:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base52008\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{ADFAB14A-89CF-476E-89E6-FA188D3C7861}C:\users\sherys\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\sherys\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{618FC8CC-7170-4B53-96E2-7B4DD7D968B0}C:\users\sherys\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\sherys\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{5C5E22E0-CCC8-412E-B631-7279609293FF}C:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{22DB3DE8-CB57-4DC5-B3FF-209CF59D1EA5}C:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe
FirewallRules: [{9561CCB1-9CB8-415D-A644-9CB259407CB0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spellforce Platinum Edition\SpellForce.exe
FirewallRules: [{445A1ECF-8C28-4114-8211-BEFBE5BF8587}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spellforce Platinum Edition\SpellForce.exe
FirewallRules: [UDP Query User{D8782877-7CEF-43C5-8359-30A6225F38AE}C:\world of warcraft\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe] => (Allow) C:\world of warcraft\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{E6CFE5E7-CFB7-43CF-AD0D-0326E6DB0AD9}C:\world of warcraft\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe] => (Allow) C:\world of warcraft\heroes of the storm\versions\base51779\heroesofthestorm_x64.exe
FirewallRules: [{6C9D5159-46B6-4F3C-B5EF-EB88214747D3}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{0F8AD99B-3708-4638-BD22-6834D3434D69}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{22E51342-2186-49E2-B17F-EA075D3A7E6A}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{F8564002-B833-49AA-9E76-DEB7DA09CD93}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{B9E4B56F-9D82-4F17-AA58-013B033A4277}] => (Allow) C:\Program Files\AVAST Software\SZBrowser\3.55.2393.609_0\SZBrowser.exe
FirewallRules: [TCP Query User{CB5974FC-287D-414A-A670-8ADD862C6ACE}C:\heroes of the storm\versions\base55844\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base55844\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{FB492E8C-5737-4B9A-9FF1-1542D21E31DE}C:\heroes of the storm\versions\base55844\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base55844\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{8F3DF7D1-21AF-42F7-B081-6B13A312AD87}C:\program files (x86)\battle.net\battle.net.9093\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.9093\battle.net.exe
FirewallRules: [UDP Query User{B25CF1E6-69B5-4957-B72B-A66591D57099}C:\program files (x86)\battle.net\battle.net.9093\battle.net.exe] => (Allow) C:\program files (x86)\battle.net\battle.net.9093\battle.net.exe
FirewallRules: [TCP Query User{ED325CD7-515E-4889-AE71-F0A947BB797B}C:\world of warcraft\overwatch\overwatch.exe] => (Allow) C:\world of warcraft\overwatch\overwatch.exe
FirewallRules: [UDP Query User{675C3F03-8BB2-4B4C-8BCB-B69C7A2209FA}C:\world of warcraft\overwatch\overwatch.exe] => (Allow) C:\world of warcraft\overwatch\overwatch.exe
FirewallRules: [{68F56E2D-78B5-4185-962F-B69F1AFB0CA8}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{E1CDE6C4-2036-48DF-8CD0-D30A754D2415}C:\heroes of the storm\versions\base56175\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base56175\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{FD56BC3E-D599-47F7-A112-846B4AAAB7B6}C:\heroes of the storm\versions\base56175\heroesofthestorm_x64.exe] => (Allow) C:\heroes of the storm\versions\base56175\heroesofthestorm_x64.exe
==================== Wiederherstellungspunkte =========================
16-07-2017 19:07:18 Windows Update
26-07-2017 11:09:59 Geplanter Prüfpunkt
05-08-2017 09:46:24 Geplanter Prüfpunkt
09-08-2017 13:48:28 Windows Update
==================== Fehlerhafte Geräte im Gerätemanager =============
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (08/09/2017 10:18:54 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "WmiApRpl" in der DLL "C:\WINDOWS\system32\wbem\wmiaprpl.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.
Error: (08/09/2017 10:18:54 PM) (Source: Perflib) (EventID: 1023) (User: )
Description: Die erweiterbare Leistungsindikator-DLL rdyboost kann nicht geladen werden. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Windows-Fehlercode.
Error: (08/09/2017 10:18:54 PM) (Source: PerfNet) (EventID: 2004) (User: )
Description: Das Serverdienst-Leistungsobjekt kann nicht geöffnet werden. Die ersten vier Bytes (DWORD) des Datenabschnitts enthalten den Statuscode.
Error: (08/09/2017 10:18:53 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "MSDTC" in der DLL "C:\WINDOWS\system32\msdtcuiu.DLL" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.
Error: (08/09/2017 10:18:53 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "Lsa" in der DLL "C:\Windows\System32\Secur32.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.
Error: (08/09/2017 10:18:53 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "ESENT" in der DLL "C:\WINDOWS\system32\esentprf.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.
Error: (08/09/2017 09:17:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: svchost.exe_AppReadiness, Version: 10.0.15063.0, Zeitstempel: 0x02799ef5
Name des fehlerhaften Moduls: ntdll.dll, Version: 10.0.15063.447, Zeitstempel: 0xa329d3a8
Ausnahmecode: 0xc0000374
Fehleroffset: 0x00000000000f775f
ID des fehlerhaften Prozesses: 0x19cc
Startzeit der fehlerhaften Anwendung: 0x01d311443275b74a
Pfad der fehlerhaften Anwendung: c:\windows\system32\svchost.exe
Pfad des fehlerhaften Moduls: C:\WINDOWS\SYSTEM32\ntdll.dll
Berichtskennung: d32f5aca-8b94-412e-83e5-e1cec8da455c
Vollständiger Name des fehlerhaften Pakets:
Anwendungs-ID, die relativ zum fehlerhaften Paket ist:
Error: (08/09/2017 07:13:44 PM) (Source: Perflib) (EventID: 1008) (User: )
Description: Die Open-Prozedur für den Dienst "WmiApRpl" in der DLL "C:\WINDOWS\system32\wbem\wmiaprpl.dll" war nicht erfolgreich. Die Leistungsdaten für diesen Dienst sind nicht verfügbar. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Fehlercode.
Error: (08/09/2017 07:13:44 PM) (Source: Perflib) (EventID: 1023) (User: )
Description: Die erweiterbare Leistungsindikator-DLL rdyboost kann nicht geladen werden. Die ersten vier Bytes (DWORD) des Datenbereichs enthalten den Windows-Fehlercode.
Error: (08/09/2017 07:13:44 PM) (Source: PerfNet) (EventID: 2004) (User: )
Description: Das Serverdienst-Leistungsobjekt kann nicht geöffnet werden. Die ersten vier Bytes (DWORD) des Datenabschnitts enthalten den Statuscode.
Systemfehler:
=============
Error: (08/09/2017 09:17:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "App-Vorbereitung" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Error: (08/09/2017 09:17:16 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Error: (08/09/2017 09:17:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "CldFlt" wurde aufgrund folgenden Fehlers nicht gestartet:
Die Anforderung wird nicht unterstützt.
Error: (08/09/2017 09:15:06 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Der Dienst Update Orchestrator Service konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden.
Error: (08/09/2017 06:12:54 PM) (Source: DCOM) (EventID: 10016) (User: Sherys-PC)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "Sherys-PC\Sherys" (SID: S-1-5-21-1145231142-964970557-2513409844-1000) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Start" für die COM-Serveranwendung mit der CLSID
{7022A3B3-D004-4F52-AF11-E9E987FEE25F}
und der APPID
{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (08/09/2017 06:12:53 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
Error: (08/09/2017 06:12:53 PM) (Source: DCOM) (EventID: 10016) (User: Sherys-PC)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "Sherys-PC\Sherys" (SID: S-1-5-21-1145231142-964970557-2513409844-1000) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Start" für die COM-Serveranwendung mit der CLSID
{7022A3B3-D004-4F52-AF11-E9E987FEE25F}
und der APPID
{ADA41B3C-C6FD-4A08-8CC1-D6EFDE67BE7D}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (08/09/2017 06:12:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "CldFlt" wurde aufgrund folgenden Fehlers nicht gestartet:
Die Anforderung wird nicht unterstützt.
Error: (08/09/2017 02:16:35 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
Description: 5
Error: (08/09/2017 01:47:19 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Der Dienst "NetTcpActivator" ist vom Dienst "NetTcpPortSharing" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:
Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
CodeIntegrity:
===================================
Date: 2017-08-09 18:08:19.794
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
Date: 2017-08-09 18:08:19.778
Description: Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe) attempted to load \Device\HarddiskVolume2\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Store signing level requirements.
==================== Speicherinformationen ===========================
Prozessor: AMD FX(tm)-4300 Quad-Core Processor
Prozentuale Nutzung des RAM: 46%
Installierter physikalischer RAM: 8092.86 MB
Verfügbarer physikalischer RAM: 4366.02 MB
Summe virtueller Speicher: 16284.86 MB
Verfügbarer virtueller Speicher: 10898.08 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:977.55 GB) (Free:676.3 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 978.1 GB) (Disk ID: B7A9A47E)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=977.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=450 MB) - (Type=27)
==================== Ende von Addition.txt ============================ |