Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 12.05.2016, 13:19   #1
SaSa591xx
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



hey leute!
habe nen alten laptop von meiner mutter bekommen. dieser läuft ständig auf 100% cpu. hab mich ihrem problem angenommen, aber komme nicht weiter. scheint sich wohl zu tief eingegraben zu haben. wenn ihr fragt WAS ich gemacht habe, die programme MALWAREFIGHTER von IOBIT drüber laufen lassen, AVAST und einige weitere malwareprogramme.

FRST habe ich mir schon runtergeladen, da ich gesehen habe, dass dieses programm von euch immerwieder verlangt wird.

warte auf weitere instruktionen, DANKE !!!!

Alt 12.05.2016, 16:24   #2
M-K-D-B
/// TB-Ausbilder
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%






Mein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen.


Bitte beachte folgende Hinweise:
  • Falls wir Hinweise auf illegal erworbene Software finden, werden wir den Support unterbrechen bis jegliche Art von illegaler Software vom Rechner entfernt wurde.
  • Lies dir die Anleitungen sorgfältig durch. Solltest du Probleme haben, stoppe mit deiner Bearbeitung und beschreibe mir dein Problem so gut es geht.
  • Solltest du mir nicht innerhalb von 3 Tagen antworten, gehe ich davon aus, dass du keine Hilfe mehr benötigst. Dann lösche ich dein Thema aus meinem Abo. Solltest du einmal länger abwesend sein, so gib mir bitte Bescheid!
  • Während der Bereinigung bitte nichts installieren oder deinstallieren, außer ich bitte dich darum!
  • Bitte beachten: Download bei filepony.de: So ladet Ihr unsere Tools richtig!
  • Alle zu verwendenen Programme sind auf dem Desktop abzuspeichern und von dort als Administrator zu starten!



Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste alle Logdateien in CODE-Tags:
So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke aauf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.

Danke für deine Mitarbeit!




Zur ersten Analyse bitte FRST und TDSS-Killer ausführen:



Schritt 1
Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)






Schritt 2
Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.







Bitte poste mit deiner nächsten Antwort
  • die Logdatei von TDSS-Killer,
  • die beiden neuen Logdateien von FRST.
__________________


Alt 12.05.2016, 20:21   #3
SaSa591xx
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



vielen vielen dank matthias!

vorweg, ich habe mega respekt davor, WIE ihr aus dem ganzen wirrwarr etwas erkennen könnt!

Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:09-05-2016
durchgeführt von 59192 (Administrator) auf 59192-PC (12-05-2016 20:55:53)
Gestartet von C:\Users\59192\Desktop
Geladene Profile: 59192 (Verfügbare Profile: 59192)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: IE)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\TiMiniService.exe
(Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\TiResumeSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUS) C:\Windows\AsScrPro.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [Trend Micro Client Framework] => C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe [192520 2010-10-12] (Trend Micro Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7400576 2016-05-12] (AVAST Software)
HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-05-11] (AVAST Software)
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 80.69.100.212 80.69.100.205
Tcpip\..\Interfaces\{BF1A99F9-E950-48BE-A3E6-6642B7529BAF}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{F25CE885-A832-4338-8D09-0C20AD424728}: [DhcpNameServer] 80.69.100.212 80.69.100.205

Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG
HKU\S-1-5-21-508882545-2078725825-758961529-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-508882545-2078725825-758961529-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-508882545-2078725825-758961529-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus.msn.com
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ASUT
SearchScopes: HKU\S-1-5-21-508882545-2078725825-758961529-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-508882545-2078725825-758961529-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = 
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2015-11-12] (IObit)
BHO: TmIEPlugInBHO Class -> {1CA1377B-DC1D-4A52-9585-6E06050FAC53} -> C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg.dll [2010-09-17] (Trend Micro Inc.)
BHO: Partner BHO Class -> {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} -> C:\ProgramData\Partner\Partner64.dll => Keine Datei
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-05-11] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2011-04-13] (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll [2011-04-13] (Google Inc.)
BHO: TmBpIeBHO Class -> {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} -> C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe64.dll [2010-09-17] (Trend Micro Inc.)
BHO-x32: TmIEPlugInBHO Class -> {1CA1377B-DC1D-4A52-9585-6E06050FAC53} -> C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll [2010-09-17] (Trend Micro Inc.)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-13] (Atheros Commnucations)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-05-11] (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2011-04-13] (Google Inc.)
BHO-x32: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll [2011-04-13] (Google Inc.)
BHO-x32: TmBpIeBHO Class -> {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} -> C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe32.dll [2010-09-17] (Trend Micro Inc.)
BHO-x32: Google Dictionary Compression sdch -> {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2011-04-13] (Google Inc.)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-02] (Microsoft Corporation.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2011-04-13] (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2011-04-13] (Google Inc.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-02] (Microsoft Corporation.)
Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe64.dll [2010-09-17] (Trend Micro Inc.)
Handler-x32: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe32.dll [2010-09-17] (Trend Micro Inc.)
Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg.dll [2010-09-17] (Trend Micro Inc.)
Handler-x32: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll [2010-09-17] (Trend Micro Inc.)

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_213.dll [2016-05-11] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll [2016-05-11] ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll [2010-04-01] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll [2010-01-23] (Zeon Corporation)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-05-11]
FF HKLM-x32\...\Firefox\Extensions: [{22C7F6C6-8D67-4534-92B5-529A0EC09405}] - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension
FF Extension: Trend Micro NSC Firefox Extension - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension [2011-04-13] [ist nicht signiert]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF

Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com/ig/redirectdomain?brand=ASUT&bmod=ASUT
CHR Profile: C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-05-11]
CHR Extension: (Google Drive) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-05-11]
CHR Extension: (YouTube) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-11]
CHR Extension: (Google Docs Offline) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-11]
CHR Extension: (Avast Online Security) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-05-11]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-11]
CHR Extension: (Google Mail) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-11]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-05-11]

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AdvancedSystemCareService9; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [446240 2016-01-05] (IObit)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2011-07-14] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [Datei ist nicht signiert]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [Datei ist nicht signiert]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [243296 2016-05-11] (AVAST Software)
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2960672 2016-04-21] (IObit)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 TiMiniService; C:\Program Files\Trend Micro\Titanium\TiMiniService.exe [241488 2010-09-17] (Trend Micro Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
S3 Amsp; "C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe" coreFrameworkHost.exe -m=rb -dt=60000 [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R0 amdide64; C:\Windows\System32\DRIVERS\amdide64.sys [11944 2016-05-11] (Advanced Micro Devices Inc.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-05-11] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-05-11] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [107792 2016-05-11] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-05-11] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-05-11] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1070904 2016-05-11] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [465792 2016-05-11] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [166432 2016-05-11] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [287528 2016-05-11] (AVAST Software)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-05-11] (REALiX(tm))
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-05-12] (Malwarebytes)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64896 2016-03-10] (Malwarebytes Corporation)
R3 RTSUER; C:\Windows\System32\Drivers\RtsUer.sys [413912 2016-05-11] (Realsil Semiconductor Corporation)
R2 tmactmon; C:\Windows\System32\DRIVERS\tmactmon.sys [90704 2010-09-17] (Trend Micro Inc.)
R2 tmcomm; C:\Windows\System32\DRIVERS\tmcomm.sys [144464 2010-09-17] (Trend Micro Inc.)
R2 tmevtmgr; C:\Windows\System32\DRIVERS\tmevtmgr.sys [67664 2010-09-17] (Trend Micro Inc.)
R1 tmtdi; C:\Windows\System32\DRIVERS\tmtdi.sys [105552 2010-09-17] (Trend Micro Inc.)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-05-12 20:59 - 2016-05-12 20:59 - 00246848 _____ (Kaspersky Lab, Yury Parshin) C:\Windows\system32\Drivers\33081080.sys
2016-05-12 20:58 - 2016-05-12 20:58 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\59192\Downloads\tdsskiller (1).exe
2016-05-12 20:55 - 2016-05-12 20:57 - 00018743 _____ C:\Users\59192\Desktop\FRST.txt
2016-05-12 20:55 - 2016-05-12 20:55 - 00000000 ____D C:\FRST
2016-05-12 20:53 - 2016-05-12 20:53 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\59192\Desktop\tdsskiller.exe
2016-05-12 20:52 - 2016-05-12 20:52 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\59192\Downloads\tdsskiller.exe
2016-05-12 20:51 - 2016-05-12 20:52 - 02381312 _____ (Farbar) C:\Users\59192\Desktop\FRST64.exe
2016-05-12 20:22 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2016-05-12 20:22 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2016-05-12 20:22 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2016-05-12 20:22 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2016-05-12 20:22 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2016-05-12 20:22 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2016-05-12 20:22 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2016-05-12 20:22 - 2012-06-02 16:57 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2016-05-12 17:59 - 2016-04-09 08:57 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-05-12 17:59 - 2016-04-09 08:54 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-05-12 17:59 - 2015-01-17 04:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2016-05-12 17:59 - 2015-01-17 04:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2016-05-12 17:59 - 2014-09-04 07:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2016-05-12 17:59 - 2014-09-04 07:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2016-05-12 17:58 - 2016-01-22 08:18 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2016-05-12 17:58 - 2016-01-22 08:18 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2016-05-12 17:58 - 2016-01-22 08:17 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll
2016-05-12 17:58 - 2016-01-22 08:04 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2016-05-12 17:58 - 2016-01-22 08:04 - 00535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2016-05-12 17:58 - 2016-01-22 08:02 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
2016-05-12 17:58 - 2016-01-22 08:02 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll
2016-05-12 17:57 - 2016-01-22 08:19 - 14179840 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-05-12 17:57 - 2016-01-22 08:15 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-05-12 17:57 - 2016-01-22 08:12 - 01940992 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-05-12 17:57 - 2016-01-22 08:05 - 12877824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2016-05-12 17:57 - 2016-01-22 08:00 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2016-05-12 17:57 - 2016-01-22 07:59 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-05-12 17:57 - 2016-01-22 07:19 - 03231232 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-05-12 17:57 - 2016-01-22 07:12 - 02973184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-05-12 17:57 - 2014-10-03 04:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2016-05-12 17:57 - 2014-10-03 04:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2016-05-12 17:57 - 2014-10-03 04:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2016-05-12 17:57 - 2014-10-03 04:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2016-05-12 17:57 - 2014-10-03 04:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2016-05-12 17:57 - 2014-10-03 03:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2016-05-12 17:57 - 2014-10-03 03:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2016-05-12 17:57 - 2014-10-03 03:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2016-05-12 17:57 - 2014-10-03 03:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2016-05-12 17:57 - 2014-10-03 03:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2016-05-12 17:56 - 2016-02-09 11:57 - 14634496 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-05-12 17:56 - 2016-02-09 11:57 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-05-12 17:56 - 2016-02-09 11:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-05-12 17:56 - 2016-02-09 11:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-05-12 17:56 - 2016-02-09 11:54 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-05-12 17:56 - 2016-02-09 11:51 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2016-05-12 17:56 - 2016-02-09 11:51 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-05-12 17:56 - 2016-02-09 11:13 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2016-05-12 17:56 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2016-05-12 17:56 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2016-05-12 17:56 - 2015-02-03 05:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-05-12 17:56 - 2015-02-03 05:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2016-05-12 17:56 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2016-05-12 17:56 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2016-05-12 17:55 - 2015-10-13 06:57 - 00950720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2016-05-12 17:55 - 2011-05-24 13:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2016-05-12 17:55 - 2011-05-24 12:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll
2016-05-12 17:55 - 2011-05-24 12:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll
2016-05-12 17:55 - 2011-05-24 12:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2016-05-12 17:55 - 2011-05-24 12:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2016-05-12 17:54 - 2016-04-06 17:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2016-05-12 17:54 - 2014-10-25 03:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2016-05-12 17:54 - 2014-10-25 03:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2016-05-12 17:53 - 2016-03-09 20:54 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2016-05-12 17:53 - 2016-03-09 20:34 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
2016-05-12 17:53 - 2014-07-17 04:07 - 03722240 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2016-05-12 17:53 - 2014-07-17 04:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2016-05-12 17:53 - 2014-07-17 04:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2016-05-12 17:53 - 2014-07-17 04:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2016-05-12 17:53 - 2014-07-17 04:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2016-05-12 17:53 - 2014-07-17 04:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2016-05-12 17:53 - 2014-07-17 03:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2016-05-12 17:53 - 2014-07-17 03:39 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2016-05-12 17:53 - 2014-07-17 03:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2016-05-12 17:53 - 2014-07-17 03:39 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2016-05-12 17:53 - 2014-07-17 03:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2016-05-12 17:53 - 2014-07-17 03:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2016-05-12 17:53 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2016-05-12 17:53 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2016-05-12 17:53 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2016-05-12 17:53 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2016-05-12 17:53 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2016-05-12 17:53 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2016-05-12 17:53 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2016-05-12 17:53 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2016-05-12 17:53 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2016-05-12 17:53 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2016-05-12 17:53 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2016-05-12 17:53 - 2011-12-16 10:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2016-05-12 17:53 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll
2016-05-12 17:53 - 2011-05-03 07:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-05-12 17:53 - 2011-05-03 06:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-05-12 17:53 - 2011-02-18 12:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2016-05-12 17:53 - 2011-02-18 07:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
2016-05-12 17:52 - 2015-11-03 21:04 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll
2016-05-12 17:52 - 2015-11-03 20:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll
2016-05-12 17:52 - 2014-12-08 05:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2016-05-12 17:52 - 2014-12-08 04:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2016-05-12 17:52 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2016-05-12 17:52 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2016-05-12 17:52 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2016-05-12 17:52 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2016-05-12 17:52 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2016-05-12 17:52 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2016-05-12 17:52 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2016-05-12 17:52 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2016-05-12 17:52 - 2013-05-13 07:51 - 01464320 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2016-05-12 17:52 - 2013-05-13 07:51 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2016-05-12 17:52 - 2013-05-13 07:51 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2016-05-12 17:52 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2016-05-12 17:52 - 2013-05-13 06:45 - 01160192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2016-05-12 17:52 - 2013-05-13 06:45 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2016-05-12 17:52 - 2013-05-13 06:45 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2016-05-12 17:52 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2016-05-12 17:52 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2016-05-12 17:52 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2016-05-12 17:51 - 2016-04-09 09:02 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-05-12 17:51 - 2016-04-09 09:01 - 05546216 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-05-12 17:51 - 2016-04-09 09:01 - 00706280 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-05-12 17:51 - 2016-04-09 09:01 - 00154344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-05-12 17:51 - 2016-04-09 09:01 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-05-12 17:51 - 2016-04-09 08:59 - 03998952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2016-05-12 17:51 - 2016-04-09 08:59 - 03943144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2016-05-12 17:51 - 2016-04-09 08:59 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 01464320 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00260608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 07:52 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2016-05-12 17:51 - 2016-04-09 07:52 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2016-05-12 17:51 - 2016-04-09 07:52 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2016-05-12 17:51 - 2016-04-09 07:51 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-05-12 17:51 - 2016-04-09 07:48 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2016-05-12 17:51 - 2016-04-09 07:47 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-05-12 17:51 - 2016-04-09 07:44 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-05-12 17:51 - 2016-04-09 07:44 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-05-12 17:51 - 2016-04-09 07:44 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-05-12 17:51 - 2016-04-09 07:43 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2016-05-12 17:51 - 2016-04-09 07:43 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-05-12 17:51 - 2016-04-09 07:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2016-05-12 17:51 - 2016-04-09 07:38 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2016-05-12 17:51 - 2016-04-09 07:38 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2016-05-12 17:51 - 2016-04-09 07:38 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2016-05-12 17:51 - 2016-04-09 07:38 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2016-05-12 17:51 - 2016-04-09 07:37 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2016-05-12 17:51 - 2016-04-09 07:37 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 07:37 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 07:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 07:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2016-05-12 17:51 - 2016-03-24 00:43 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2016-05-12 17:51 - 2016-03-24 00:40 - 00634432 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-05-12 17:51 - 2016-03-24 00:40 - 00546656 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-05-12 17:51 - 2016-03-24 00:40 - 00459344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-05-12 17:51 - 2016-03-24 00:40 - 00298192 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2016-05-12 17:51 - 2016-03-24 00:39 - 00251000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2016-05-12 17:50 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-05-12 17:49 - 2015-03-04 06:55 - 00367552 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2016-05-12 17:49 - 2015-03-04 06:41 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2016-05-12 17:49 - 2015-03-04 06:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2016-05-12 17:49 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2016-05-12 17:49 - 2011-08-27 07:37 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-05-12 17:49 - 2011-08-27 07:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2016-05-12 17:49 - 2011-08-27 06:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2016-05-12 17:49 - 2011-08-27 06:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2016-05-12 17:48 - 2015-09-02 05:04 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-05-12 17:48 - 2015-09-02 05:04 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-05-12 17:48 - 2015-09-02 05:04 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2016-05-12 17:48 - 2015-09-02 05:04 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2016-05-12 17:48 - 2015-09-02 04:48 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2016-05-12 17:48 - 2015-09-02 04:48 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-05-12 17:48 - 2015-09-02 04:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2016-05-12 17:48 - 2015-09-02 04:47 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2016-05-12 17:48 - 2015-09-02 03:51 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-05-12 17:48 - 2015-09-02 03:47 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-05-12 17:48 - 2015-09-02 03:33 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-05-12 17:47 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2016-05-12 17:47 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2016-05-12 17:45 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2016-05-12 17:45 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2016-05-12 17:45 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2016-05-12 17:45 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2016-05-12 17:45 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2016-05-12 17:31 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2016-05-12 17:31 - 2012-03-01 08:38 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2016-05-12 17:31 - 2012-03-01 08:33 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2016-05-12 17:31 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2016-05-12 17:31 - 2012-03-01 07:37 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2016-05-12 17:31 - 2012-03-01 07:33 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2016-05-12 17:31 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2016-05-12 17:24 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2016-05-12 17:24 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2016-05-12 17:24 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2016-05-12 17:24 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2016-05-12 17:24 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2016-05-12 17:24 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2016-05-12 17:24 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2016-05-12 17:24 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2016-05-12 16:30 - 2015-02-04 05:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2016-05-12 16:30 - 2015-02-04 04:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2016-05-12 16:11 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2016-05-12 16:11 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2016-05-12 16:11 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2016-05-12 14:26 - 2016-05-12 14:29 - 00038119 _____ C:\Users\59192\Downloads\Addition.txt
2016-05-11 22:48 - 2016-05-12 17:14 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-05-11 22:47 - 2016-05-12 17:14 - 00000000 ____D C:\Users\59192\Desktop\mbar
2016-05-11 22:45 - 2016-05-11 22:45 - 16563352 _____ (Malwarebytes Corp.) C:\Users\59192\Downloads\mbar-1.09.3.1001.exe
2016-05-11 18:14 - 2016-05-11 22:04 - 00000000 ____D C:\Windows\erdnt
2016-05-11 16:23 - 2016-05-12 15:36 - 00000000 ____D C:\AdwCleaner
2016-05-11 16:21 - 2016-05-11 16:21 - 03640384 _____ C:\Users\59192\Downloads\AdwCleaner_5.116.exe
2016-05-11 16:17 - 2016-05-12 20:43 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-05-11 16:14 - 2016-05-12 16:21 - 00109272 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-05-11 16:14 - 2016-05-11 16:14 - 00001104 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2016-05-11 16:14 - 2016-05-11 16:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-05-11 16:14 - 2016-05-11 16:14 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-05-11 16:14 - 2016-05-11 16:14 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2016-05-11 16:14 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-05-11 16:14 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-05-11 16:11 - 2016-05-11 16:12 - 22851472 _____ (Malwarebytes ) C:\Users\59192\Downloads\mbam-setup-2.2.1.1043.exe
2016-05-11 15:17 - 2016-05-11 15:17 - 00000000 ____D C:\ProgramData\BDLogging
2016-05-11 15:17 - 2016-03-31 17:54 - 00452040 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys
2016-05-11 14:54 - 2016-05-11 14:54 - 71184384 _____ C:\Windows\system32\config\SOFTWARE.iobit
2016-05-11 14:54 - 2016-05-11 14:54 - 126414848 _____ C:\Windows\system32\config\COMPONENTS.iobit
2016-05-11 14:54 - 2016-05-11 14:54 - 00278528 _____ C:\Windows\system32\config\DEFAULT.iobit
2016-05-11 14:54 - 2016-05-11 14:54 - 00024576 _____ C:\Windows\system32\config\SECURITY.iobit
2016-05-11 14:54 - 2016-05-11 14:54 - 00024576 _____ C:\Windows\system32\config\SAM.iobit
2016-05-11 14:47 - 2016-05-11 14:47 - 00000000 ___SD C:\Users\59192\AppData\LocalLow\Temp
2016-05-11 14:44 - 2016-05-11 14:44 - 00000000 ____D C:\Users\59192\AppData\Roaming\AVAST Software
2016-05-11 14:43 - 2016-05-11 14:43 - 00003902 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1462970565
2016-05-11 14:43 - 2016-05-11 14:43 - 00001924 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2016-05-11 14:43 - 2016-05-11 14:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-05-11 14:43 - 2016-05-11 14:42 - 00001039 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
2016-05-11 14:43 - 2016-05-11 14:42 - 00001039 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-05-11 14:40 - 2016-05-12 07:48 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-05-11 14:40 - 2016-05-11 14:40 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2016-05-11 14:40 - 2016-05-11 14:40 - 00000000 ____D C:\Program Files\Common Files\AV
2016-05-11 14:40 - 2016-05-11 14:38 - 00465792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2016-05-11 14:40 - 2016-05-11 14:38 - 00287528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2016-05-11 14:40 - 2016-05-11 14:38 - 00166432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2016-05-11 14:40 - 2016-05-11 14:38 - 00107792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2016-05-11 14:40 - 2016-05-11 14:38 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2016-05-11 14:40 - 2016-05-11 14:38 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2016-05-11 14:40 - 2016-05-11 14:38 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2016-05-11 14:40 - 2016-05-11 14:37 - 01070904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2016-05-11 14:40 - 2016-05-11 14:37 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2016-05-11 14:38 - 2016-05-11 14:38 - 00398152 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2016-05-11 14:38 - 2016-05-11 14:38 - 00052184 _____ (AVAST Software) C:\Windows\avastSS.scr
2016-05-11 14:37 - 2016-05-11 14:37 - 00000000 ____D C:\Program Files\AVAST Software
2016-05-11 14:36 - 2016-05-11 14:38 - 00000000 ____D C:\ProgramData\AVAST Software
2016-05-11 13:50 - 2016-05-11 14:07 - 00000946 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-05-11 13:50 - 2016-05-11 13:50 - 00003940 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-05-11 13:35 - 2016-05-11 13:35 - 72203792 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2016-05-11 13:35 - 2016-05-11 13:35 - 05576400 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2016-05-11 13:35 - 2016-05-11 13:35 - 04803840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-05-11 13:35 - 2016-05-11 13:35 - 03283248 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 03282032 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 03198720 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 03081808 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 02894976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-05-11 13:35 - 2016-05-11 13:35 - 02050184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 02049664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 01780624 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 01591064 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 01508936 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 01356512 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00743968 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00708320 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00689888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00678192 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00677680 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00574760 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00532384 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00504312 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00445408 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00441272 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00387320 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00330568 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00253904 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00253872 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00231920 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00221976 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00214840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00209536 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00192992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00190552 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFProc64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00166208 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00122328 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00118600 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00110984 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00096064 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFComm64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00093504 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFSAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00092480 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFHAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00092480 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFDAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00090920 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00088352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00088328 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00083632 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00023704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2016-05-11 13:32 - 2016-05-11 13:32 - 00113392 _____ (Advanced Micro Devices) C:\Windows\system32\DelayAPO.dll
2016-05-11 13:32 - 2016-05-11 13:32 - 00104984 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\AtihdW76.sys
2016-05-11 13:29 - 2016-05-11 13:29 - 09890008 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RsCRIcon.dll
2016-05-11 13:29 - 2016-05-11 13:29 - 04330200 _____ (TODO: <Company name>) C:\Windows\RtCRU64.exe
2016-05-11 13:29 - 2016-05-11 13:29 - 01027840 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2016-05-11 13:29 - 2016-05-11 13:29 - 00413912 _____ (Realsil Semiconductor Corporation) C:\Windows\system32\Drivers\RtsUer.sys
2016-05-11 13:29 - 2016-05-11 13:29 - 00083160 _____ (Realtek Semiconductor.) C:\Windows\system32\RtCRX64.dll
2016-05-11 13:29 - 2016-05-11 13:29 - 00082544 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2016-05-11 13:26 - 2016-05-11 13:26 - 04162560 _____ (Qualcomm Atheros Communications, Inc.) C:\Windows\system32\Drivers\athrx.sys
2016-05-11 13:25 - 2016-05-11 13:25 - 00600776 _____ (Qualcomm Atheros) C:\Windows\system32\Drivers\btfilter.sys
2016-05-11 13:25 - 2016-05-11 13:25 - 00011944 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\Drivers\amdide64.sys
2016-05-11 13:20 - 2016-05-11 13:20 - 26029568 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 19606528 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 15713280 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 13288960 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 10242560 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2016-05-11 13:20 - 2016-05-11 13:20 - 06606848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 06322688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 05481984 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 03478016 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 03048448 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00919040 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00618823 _____ C:\Windows\system32\atiicdxx.dat
2016-05-11 13:20 - 2016-05-11 13:20 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGX.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00364544 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00360960 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2016-05-11 13:20 - 2016-05-11 13:20 - 00204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2016-05-11 13:20 - 2016-05-11 13:20 - 00204952 _____ C:\Windows\system32\ativvsvl.dat
2016-05-11 13:20 - 2016-05-11 13:20 - 00159744 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2016-05-11 13:20 - 2016-05-11 13:20 - 00157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2016-05-11 13:20 - 2016-05-11 13:20 - 00157144 _____ C:\Windows\system32\ativvsva.dat
2016-05-11 13:20 - 2016-05-11 13:20 - 00120320 _____ (AMD) C:\Windows\system32\atitmm64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00069632 _____ (AMD) C:\Windows\system32\coinst_8.973.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00059392 _____ (ATI Technologies, Inc.) C:\Windows\system32\atiedu64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00056832 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00056832 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00056320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00056320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00053248 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00051200 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00046080 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00045056 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00044544 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00044032 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\ati2edxx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00042496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00041984 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00033280 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00021504 _____ (AMD) C:\Windows\system32\atimuixx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00017920 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00014848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00014848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00003917 _____ C:\Windows\SysWOW64\atipblag.dat
2016-05-11 13:20 - 2016-05-11 13:20 - 00003917 _____ C:\Windows\system32\atipblag.dat
2016-05-11 13:19 - 2016-05-11 13:20 - 02852480 _____ C:\Windows\SysWOW64\atiumdva.cap
2016-05-11 13:19 - 2016-05-11 13:19 - 02818784 _____ C:\Windows\system32\atiumd6a.cap
2016-05-11 13:19 - 2016-05-11 13:19 - 00250344 _____ C:\Windows\SysWOW64\atiapfxx.blb
2016-05-11 13:19 - 2016-05-11 13:19 - 00250344 _____ C:\Windows\system32\atiapfxx.blb
2016-05-11 13:19 - 2016-05-11 13:19 - 00038177 _____ C:\Windows\atiogl.xml
2016-05-11 12:58 - 2016-05-11 12:58 - 24917504 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 19607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 14404096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 12829696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 06026240 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-05-11 12:58 - 2016-05-11 12:58 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-05-11 12:58 - 2016-05-11 12:58 - 02426880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 02278912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-05-11 12:58 - 2016-05-11 12:58 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-05-11 12:58 - 2016-05-11 12:58 - 01950720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2016-05-11 12:58 - 2016-05-11 12:58 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2016-05-11 12:58 - 2016-05-11 12:58 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-05-11 12:58 - 2016-05-11 12:58 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00342728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-05-11 12:58 - 2016-05-11 12:58 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2016-05-11 12:58 - 2016-05-11 12:58 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2016-05-11 12:58 - 2016-05-11 12:58 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-05-11 12:56 - 2016-05-11 12:56 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2016-05-11 12:56 - 2016-05-11 12:56 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2016-05-11 12:55 - 2016-05-11 12:55 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-05-11 12:55 - 2016-05-11 12:55 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2016-05-11 12:55 - 2016-05-11 12:55 - 00376688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2016-05-11 12:55 - 2016-05-11 12:55 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-05-11 12:55 - 2016-05-11 12:55 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2016-05-11 12:55 - 2016-05-11 12:55 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2016-05-11 12:54 - 2016-05-11 12:54 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2016-05-11 12:48 - 2016-05-11 12:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-05-11 12:45 - 2016-05-11 12:45 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2016-05-11 12:45 - 2016-05-11 12:45 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2016-05-11 12:43 - 2016-05-11 12:43 - 00000000 ____D C:\Windows\IObit
2016-05-11 12:42 - 2016-05-12 20:44 - 00002874 _____ C:\Windows\System32\Tasks\Driver Booster SkipUAC (59192)
2016-05-11 12:42 - 2016-05-11 13:40 - 00002166 _____ C:\Users\Public\Desktop\Driver Booster 3.lnk
2016-05-11 12:42 - 2016-05-11 12:42 - 00027552 _____ (REALiX(tm)) C:\Windows\SysWOW64\Drivers\HWiNFO64A.SYS
2016-05-11 12:42 - 2016-05-11 12:42 - 00003242 _____ C:\Windows\System32\Tasks\Driver Booster Scheduler
2016-05-11 12:42 - 2016-05-11 12:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3
2016-05-11 12:36 - 2016-05-12 20:22 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-05-11 12:36 - 2016-05-11 13:50 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-05-11 12:36 - 2016-05-11 13:50 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-05-11 12:36 - 2016-05-11 13:50 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-05-11 12:36 - 2016-05-11 12:36 - 00000000 ____D C:\Windows\system32\Macromed
2016-05-11 12:35 - 2016-05-11 13:51 - 00000000 ____D C:\Users\59192\AppData\Local\Adobe
2016-05-11 12:31 - 2016-05-11 12:31 - 00000000 ____D C:\Users\59192\AppData\Roaming\Apple Computer
2016-05-11 12:13 - 2016-05-11 12:13 - 00000000 ____D C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705}
2016-05-11 12:07 - 2016-05-12 16:18 - 00000000 ____D C:\ProgramData\ProductData
2016-05-11 12:07 - 2016-05-11 14:12 - 00002904 _____ C:\Windows\System32\Tasks\Uninstaller_SkipUac_59192
2016-05-11 12:07 - 2016-05-11 12:31 - 00000000 ____D C:\Users\59192\AppData\LocalLow\IObit
2016-05-11 12:07 - 2016-05-11 12:08 - 00000000 ____D C:\Users\59192\AppData\Roaming\ProductData
2016-05-11 12:07 - 2016-05-11 12:07 - 00001368 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk
2016-05-11 12:07 - 2016-05-11 12:07 - 00001356 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk
2016-05-11 12:07 - 2016-05-11 12:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
2016-05-11 12:07 - 2016-05-11 12:07 - 00000000 ____D C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
2016-05-11 12:06 - 2016-05-11 15:01 - 00002258 _____ C:\Users\Public\Desktop\Advanced SystemCare 9.lnk
2016-05-11 12:06 - 2016-05-11 14:12 - 00000000 ____D C:\ProgramData\IObit
2016-05-11 12:06 - 2016-05-11 12:42 - 00000000 ____D C:\Users\59192\AppData\Roaming\IObit
2016-05-11 12:06 - 2016-05-11 12:42 - 00000000 ____D C:\Program Files (x86)\IObit
2016-05-11 12:06 - 2016-05-11 12:07 - 00003180 _____ C:\Windows\System32\Tasks\ASC9_PerformanceMonitor
2016-05-11 12:06 - 2016-05-11 12:06 - 00002868 _____ C:\Windows\System32\Tasks\ASC9_SkipUac_59192
2016-05-11 12:06 - 2016-05-11 12:06 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled
2016-05-11 12:06 - 2016-05-11 12:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
2016-05-11 12:04 - 2016-05-11 12:04 - 00000000 ____D C:\Users\59192\AppData\Roaming\Macromedia
2016-05-11 09:27 - 2016-05-11 09:27 - 00002177 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-05-11 08:12 - 2016-05-11 08:12 - 00000000 _____ C:\Windows\AsRunBar.txt
2016-05-11 08:12 - 2012-12-11 20:06 - 00000007 _____ C:\Pass.txt
2016-05-11 08:12 - 2011-11-11 03:46 - 00000031 _____ C:\Windows\AsToolCDVer.txt
2016-05-11 08:11 - 2016-05-11 07:37 - 00000000 ____D C:\eSupport
2016-05-11 07:57 - 2016-05-11 07:57 - 00017285 _____ C:\devlist.txt
2016-05-11 07:41 - 2016-05-11 07:43 - 00000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite
2016-05-11 07:41 - 2016-05-11 07:43 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite
2016-05-11 07:40 - 2016-05-11 07:43 - 00000000 ____D C:\Program Files (x86)\CyberLink
2016-05-11 07:39 - 2016-05-11 07:43 - 00000000 ____D C:\ProgramData\CyberLink
2016-05-11 07:39 - 2016-05-11 07:41 - 00000000 ____D C:\ProgramData\Temp
2016-05-11 07:39 - 2016-05-11 07:39 - 00074192 _____ C:\Windows\AsChkDev.txt
2016-05-11 07:39 - 2016-05-11 07:39 - 00000000 _____ C:\Windows\SysWOW64\Drivers\1043_ASUSTEK_K43BR_K53BR_K73BR_V20_WIN7.MRK
2016-05-11 07:37 - 2016-05-11 16:57 - 00001934 _____ C:\Windows\system32\AutoRunFilter.ini
2016-05-11 07:37 - 2016-05-11 16:57 - 00001359 _____ C:\Windows\system32\ServiceFilter.ini
2016-05-11 07:37 - 2016-05-11 11:18 - 00000080 _____ C:\Windows\system32\Defrag.ini
2016-05-11 07:37 - 2016-05-11 07:37 - 03058304 _____ (ASUS) C:\Windows\AsScrPro.exe
2016-05-11 07:37 - 2016-05-11 07:37 - 00520192 _____ (ScreenTime Media) C:\Windows\SysWOW64\ASUS_Screensaver.scr
2016-05-11 07:37 - 2016-05-11 07:37 - 00000716 _____ C:\Users\Public\Desktop\eManual.Lnk
2016-05-11 07:37 - 2016-05-11 07:37 - 00000000 ____D C:\Windows\SysWOW64\ASUS_Screensaver dir
2016-05-11 07:37 - 2016-05-11 07:37 - 00000000 ____D C:\Program Files\ASUS
2016-05-11 07:37 - 2011-01-25 23:11 - 00379520 _____ (ASUSTeK Computer Inc.) C:\Windows\system32\FBAgent.exe
2016-05-11 07:37 - 2009-06-13 02:55 - 00000105 _____ C:\Windows\system32\FastBoot.ini
2016-05-11 07:37 - 2009-06-05 22:35 - 00000052 _____ C:\Windows\system32\RemoveFont.ini
2016-05-11 07:37 - 2009-06-05 22:35 - 00000015 _____ C:\Windows\system32\BootTime.ini
2016-05-11 07:36 - 2016-05-11 07:36 - 00002984 _____ C:\Windows\System32\Tasks\ASUS SmartLogon Console Sensor
2016-05-11 07:35 - 2016-05-11 07:38 - 00000000 ____D C:\Program Files\P4G
2016-05-11 07:35 - 2016-05-11 07:35 - 00003066 _____ C:\Windows\System32\Tasks\ACMON
2016-05-11 07:35 - 2016-05-11 07:35 - 00003044 _____ C:\Windows\System32\Tasks\ASUS P4G
2016-05-11 07:35 - 2016-05-11 07:35 - 00002984 _____ C:\Windows\System32\Tasks\ATKOSD2
2016-05-11 07:35 - 2016-05-11 07:35 - 00000000 ____D C:\ProgramData\P4G
2016-05-11 07:35 - 2011-10-04 21:14 - 00155648 _____ (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
2016-05-11 07:34 - 2016-05-11 07:34 - 00000000 ____D C:\Program Files\Elantech
2016-05-11 07:33 - 2016-05-11 07:33 - 00000000 _____ C:\Windows\ativpsrm.bin
2016-05-11 07:31 - 2016-05-11 07:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
2016-05-11 07:31 - 2016-05-11 07:31 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2016-05-11 07:31 - 2016-05-11 07:31 - 00000000 ____D C:\Program Files (x86)\AMD APP
2016-05-11 07:31 - 2010-11-29 10:50 - 00044672 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys
2016-05-11 07:30 - 2016-05-11 07:31 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2016-05-11 07:30 - 2016-05-11 07:30 - 00000000 ____D C:\ProgramData\AMD
2016-05-11 07:30 - 2016-05-11 07:30 - 00000000 ____D C:\Program Files\ATI Technologies
2016-05-11 07:30 - 2016-05-11 07:30 - 00000000 ____D C:\Program Files\ATI
2016-05-11 07:30 - 2010-02-18 18:18 - 00046136 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdiox64.sys
2016-05-11 07:29 - 2016-05-11 13:20 - 06936064 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll
2016-05-11 07:29 - 2016-05-11 13:20 - 01083392 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2016-05-11 07:29 - 2016-05-11 13:20 - 00535552 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2016-05-11 07:29 - 2016-05-11 13:20 - 00513536 _____ (AMD) C:\Windows\system32\atieclxx.exe
2016-05-11 07:29 - 2016-05-11 13:20 - 00238080 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2016-05-11 07:29 - 2016-05-11 13:20 - 00054784 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll
2016-05-11 07:29 - 2016-05-11 13:20 - 00032768 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2016-05-11 07:29 - 2016-05-11 07:29 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_btath_hcrp_01009.Wdf
2016-05-11 07:29 - 2011-07-14 00:14 - 00423424 _____ (ATI Technologies, Inc.) C:\Windows\system32\atipdl64.dll
2016-05-11 07:29 - 2011-07-14 00:13 - 00356352 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\atipdlxx.dll
2016-05-11 07:29 - 2011-07-14 00:13 - 00278528 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\Oemdspif.dll
2016-05-11 07:29 - 2011-07-13 23:58 - 01113088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6v.dll
2016-05-11 07:29 - 2011-07-13 23:57 - 01828864 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdmv.dll
2016-05-11 07:29 - 2010-08-27 20:33 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe
2016-05-11 07:29 - 2009-06-22 17:34 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe
2016-05-11 07:29 - 2009-05-11 23:35 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atibtmon.exe
2016-05-11 07:28 - 2016-05-11 07:28 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program
2016-05-11 07:27 - 2016-05-11 07:28 - 00000000 ____D C:\Program Files (x86)\Bluetooth Suite
2016-05-11 07:27 - 2016-05-11 07:27 - 00000000 ____D C:\Windows\Options
2016-05-11 07:27 - 2016-05-11 07:27 - 00000000 ____D C:\Program Files (x86)\Atheros
2016-05-11 07:27 - 2011-03-10 23:43 - 00056654 _____ C:\Windows\system32\athrextx.cat
2016-05-11 07:27 - 2011-03-07 20:22 - 02228736 _____ (Atheros Communications, Inc.) C:\Windows\system32\athrx.sys
2016-05-11 07:26 - 2016-05-11 15:15 - 00000000 ____D C:\Windows\SysWOW64\sda
2016-05-11 07:26 - 2016-05-10 23:19 - 00000000 ____D C:\ProgramData\Atheros
2016-05-11 07:26 - 2011-01-18 11:16 - 09888360 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsUStoricon.dll
2016-05-11 07:26 - 2011-01-18 11:16 - 00422504 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtsUStor.dll
2016-05-11 07:26 - 2011-01-18 11:16 - 00250984 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsUStor.sys
2016-05-11 07:24 - 2016-05-11 13:29 - 00116304 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2016-05-11 07:24 - 2016-05-11 07:24 - 00002755 _____ C:\Users\Public\Desktop\ASUS Sonic Focus.lnk
2016-05-11 07:23 - 2016-05-11 13:37 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-05-11 07:23 - 2016-05-11 07:43 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-05-11 07:23 - 2016-05-11 07:26 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-05-11 07:23 - 2016-05-11 07:24 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-05-11 07:23 - 2016-05-11 07:23 - 00000000 ____D C:\ProgramData\SonicFocus
2016-05-11 07:23 - 2016-05-11 07:23 - 00000000 ____D C:\Program Files\Realtek
2016-05-11 07:23 - 2011-10-18 12:10 - 00099432 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInst64.dll
2016-05-11 07:23 - 2011-10-17 11:30 - 03213928 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2016-05-11 07:23 - 2011-08-31 13:12 - 01698408 ____N (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2016-05-11 07:23 - 2011-07-27 18:55 - 02604376 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll
2016-05-11 07:23 - 2011-07-27 18:55 - 02132824 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll
2016-05-11 07:22 - 2011-01-28 21:03 - 00180736 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll
2016-05-11 07:22 - 2011-01-28 07:46 - 00148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifsutil.dll
2016-05-11 07:21 - 2016-05-11 00:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility
2016-05-10 23:53 - 2016-05-11 16:40 - 00000000 ____D C:\Users\59192\AppData\Local\Google
2016-05-10 23:53 - 2016-05-10 23:53 - 00000000 ____D C:\Users\59192\AppData\Roaming\Adobe
2016-05-10 23:53 - 2016-05-10 23:53 - 00000000 ____D C:\Users\59192\AppData\LocalLow\Google
2016-05-10 23:52 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-05-10 23:52 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-05-10 23:52 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2016-05-10 23:52 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-05-10 23:52 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-05-10 23:52 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-05-10 23:52 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2016-05-10 23:52 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-05-10 23:52 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-05-10 23:52 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2016-05-10 23:52 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-05-10 23:52 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2016-05-10 23:52 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-05-10 23:52 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2016-05-10 23:49 - 2016-05-10 23:49 - 00000000 ____D C:\Users\59192\AppData\Roaming\ASUS WebStorage
2016-05-10 23:19 - 2016-05-11 15:10 - 00000000 ____D C:\Users\59192\Documents\Bluetooth Folder
2016-05-10 23:19 - 2016-05-10 23:19 - 00000000 ____D C:\Users\59192\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium Internet Security
2016-05-10 23:19 - 2016-05-10 23:19 - 00000000 ____D C:\Users\59192\AppData\Local\BMExplorer
2016-05-10 23:17 - 2016-05-11 14:09 - 00001411 _____ C:\Users\59192\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-05-10 23:16 - 2016-05-12 20:06 - 00058520 _____ C:\Users\59192\AppData\Local\GDIPFONTCACHEV1.DAT
2016-05-10 23:16 - 2016-05-11 12:33 - 00045056 _____ C:\Windows\SysWOW64\acovcnt.exe
2016-05-10 23:16 - 2016-05-10 23:16 - 00000000 __RSD C:\Users\Public\Desktop\AsusTools
2016-05-10 23:16 - 2016-05-10 23:16 - 00000000 ____D C:\Users\59192\AppData\Local\VirtualStore
2016-05-10 23:16 - 2016-05-10 23:16 - 00000000 ____D C:\Users\59192\AppData\Local\Power2Go
2016-05-10 23:16 - 2016-05-10 23:16 - 00000000 ____D C:\ProgramData\FolderView
2016-05-10 23:15 - 2016-05-11 07:43 - 00000000 ____D C:\Users\59192\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite
2016-05-10 23:15 - 2016-05-10 23:17 - 00000000 ____D C:\Users\59192
2016-05-10 23:15 - 2016-05-10 23:15 - 00000020 ___SH C:\Users\59192\ntuser.ini
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Vorlagen
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Startmenü
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Netzwerkumgebung
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Lokale Einstellungen
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Eigene Dateien
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Druckumgebung
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Documents\Eigene Videos
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Documents\Eigene Musik
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Documents\Eigene Bilder
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\AppData\Local\Verlauf
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\AppData\Local\Anwendungsdaten
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Anwendungsdaten
2016-05-10 23:15 - 2009-07-14 09:44 - 00000000 ____D C:\Users\59192\AppData\Roaming\Media Center Programs

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-05-12 20:49 - 2009-07-14 06:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-05-12 20:49 - 2009-07-14 06:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-05-12 20:47 - 2011-04-11 14:05 - 00438430 _____ C:\Windows\system32\perfh001.dat
2016-05-12 20:47 - 2011-04-11 14:05 - 00079916 _____ C:\Windows\system32\perfc001.dat
2016-05-12 20:47 - 2011-03-17 13:52 - 00678144 _____ C:\Windows\system32\perfh019.dat
2016-05-12 20:47 - 2011-03-17 13:52 - 00132644 _____ C:\Windows\system32\perfc019.dat
2016-05-12 20:47 - 2011-02-19 07:02 - 00358086 _____ C:\Windows\system32\perfh00D.dat
2016-05-12 20:47 - 2011-02-19 07:02 - 00070026 _____ C:\Windows\system32\perfc00D.dat
2016-05-12 20:47 - 2011-02-19 06:56 - 00552564 _____ C:\Windows\system32\perfh008.dat
2016-05-12 20:47 - 2011-02-19 06:56 - 00089672 _____ C:\Windows\system32\perfc008.dat
2016-05-12 20:47 - 2011-02-19 06:51 - 00390160 _____ C:\Windows\system32\prfh0404.dat
2016-05-12 20:47 - 2011-02-19 06:51 - 00107320 _____ C:\Windows\system32\prfc0404.dat
2016-05-12 20:47 - 2011-02-19 06:45 - 00681496 _____ C:\Windows\system32\prfh0816.dat
2016-05-12 20:47 - 2011-02-19 06:45 - 00134338 _____ C:\Windows\system32\prfc0816.dat
2016-05-12 20:47 - 2011-02-19 06:40 - 00692768 _____ C:\Windows\system32\perfh013.dat
2016-05-12 20:47 - 2011-02-19 06:40 - 00133360 _____ C:\Windows\system32\perfc013.dat
2016-05-12 20:47 - 2011-02-19 06:35 - 00691422 _____ C:\Windows\system32\perfh010.dat
2016-05-12 20:47 - 2011-02-19 06:35 - 00127758 _____ C:\Windows\system32\perfc010.dat
2016-05-12 20:47 - 2011-02-19 06:29 - 00696366 _____ C:\Windows\system32\perfh00C.dat
2016-05-12 20:47 - 2011-02-19 06:29 - 00130822 _____ C:\Windows\system32\perfc00C.dat
2016-05-12 20:47 - 2011-02-19 06:24 - 00655278 _____ C:\Windows\system32\perfh007.dat
2016-05-12 20:47 - 2011-02-19 06:24 - 00130146 _____ C:\Windows\system32\perfc007.dat
2016-05-12 20:47 - 2011-02-19 06:19 - 00695412 _____ C:\Windows\system32\perfh00A.dat
2016-05-12 20:47 - 2011-02-19 06:19 - 00137456 _____ C:\Windows\system32\perfc00A.dat
2016-05-12 20:47 - 2009-07-14 07:13 - 08503202 _____ C:\Windows\system32\PerfStringBackup.INI
2016-05-12 20:47 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-05-12 20:42 - 2011-04-13 04:33 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-05-12 20:39 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-05-12 20:27 - 2011-04-13 04:33 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-05-12 20:03 - 2009-07-14 06:45 - 00268536 _____ C:\Windows\system32\FNTCACHE.DAT
2016-05-12 19:59 - 2009-07-14 09:45 - 00000000 ____D C:\Program Files\Windows Journal
2016-05-12 00:41 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2016-05-11 15:01 - 2009-07-29 08:03 - 00000000 ____D C:\Windows\Panther
2016-05-11 14:02 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2016-05-11 11:32 - 2011-04-13 04:51 - 00000000 ____D C:\ProgramData\Trend Micro
2016-05-11 11:05 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Public\Libraries
2016-05-11 09:27 - 2011-04-13 04:33 - 00002189 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-05-11 09:27 - 2011-04-13 04:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2016-05-11 09:21 - 2011-04-13 04:33 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-05-11 09:21 - 2011-04-13 04:33 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-05-11 08:11 - 2009-07-29 07:20 - 00000000 ____D C:\Windows\ASUS
2016-05-11 07:58 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sysprep
2016-05-11 07:57 - 2009-07-29 07:20 - 00000000 ____D C:\Windows\Log
2016-05-11 07:36 - 2011-04-13 04:47 - 00000000 ____D C:\Program Files (x86)\ASUS
2016-05-11 07:35 - 2011-04-13 04:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2016-05-11 07:29 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-05-11 07:28 - 2011-03-13 19:53 - 00246804 _____ C:\Windows\system32\Drivers\AtherosBt.bin
2016-05-10 23:16 - 2011-04-13 04:49 - 00000000 ____D C:\ProgramData\ChangeFolderView
2016-05-10 23:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2011-04-13 04:48 - 2010-07-07 01:10 - 0131472 _____ () C:\ProgramData\FullRemove.exe
2016-05-11 07:41 - 2016-05-11 07:43 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
2016-05-11 07:40 - 2016-05-11 07:41 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log

==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2009-07-29 07:04

==================== Ende von FRST.txt ============================
         
__________________

Alt 12.05.2016, 20:22   #4
SaSa591xx
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:09-05-2016
durchgeführt von 59192 (2016-05-12 21:00:14)
Gestartet von C:\Users\59192\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2016-05-10 21:15:43)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

59192 (S-1-5-21-508882545-2078725825-758961529-1001 - Administrator - Enabled) => C:\Users\59192
Administrator (S-1-5-21-508882545-2078725825-758961529-500 - Administrator - Disabled)
Gast (S-1-5-21-508882545-2078725825-758961529-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-508882545-2078725825-758961529-1003 - Limited - Enabled)

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Trend Micro Titanium Internet Security (Disabled - Up to date) {68F968AC-2AA0-091D-848C-803E83E35902}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Trend Micro Titanium Internet Security (Disabled - Up to date) {D3988948-0C9A-0693-BE3C-BB4CF86413BF}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Adobe Flash Player 21 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 21.0.0.213 - Adobe Systems Incorporated)
Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.213 - Adobe Systems Incorporated)
Adobe Flash Player 21 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 21.0.0.213 - Adobe Systems Incorporated)
Advanced SystemCare 9 (HKLM-x32\...\Advanced SystemCare_is1) (Version: 9.3.0 - IObit)
AMD Catalyst Install Manager (HKLM\...\{EC591B58-07C2-1BF3-C2DB-7CBA363B7A08}) (Version: 3.0.838.0 - Advanced Micro Devices, Inc.)
ASUS AI Recovery (HKLM-x32\...\{D39F0676-163E-4595-A917-E28F99BBD4D2}) (Version: 1.0.16 - ASUS)
ASUS FaceLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0012 - ASUS)
ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.25 - ASUS)
ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 1.1.48 - ASUS)
ASUS Sonic Focus (HKLM-x32\...\{B0002707-4F7E-4745-88A7-852DA8A88635}) (Version: 1.0.0.5 - Synopsys )
ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0034 - ASUS)
ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.23 - asus)
ASUS WebStorage (HKLM-x32\...\ASUS WebStorage) (Version: 3.0.84.161 - eCareme Technologies, Inc.)
ASUS_Screensaver (HKLM-x32\...\ASUS_Screensaver) (Version:  - )
AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.4.617 - ASUSTEK)
Atheros Client Installation Program (HKLM-x32\...\{D3694B69-6F8C-42D3-8A0A-EB2AB528C02C}) (Version: 7.0 - Atheros)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0014 - ASUS)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 11.2.2262 - AVAST Software)
Bing Bar (HKLM-x32\...\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}) (Version: 7.0.610.0 - Microsoft Corporation)
Bluetooth Win7 Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.2.0.65 - Atheros Communications)
Bookworm Deluxe (HKLM-x32\...\Bookworm Deluxe) (Version:  - Oberon Media Inc.)
Control ActiveX de Windows Live Mesh para conexiones remotas (HKLM-x32\...\{04668DF2-D32F-4555-9C7E-35523DCD6544}) (Version: 15.4.5722.2 - Microsoft Corporation)
Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation)
Controlo ActiveX do Windows Live Mesh para Ligações Remotas (HKLM-x32\...\{E54EEB5D-41ED-40FE-B4A8-8565DB81469B}) (Version: 15.4.5722.2 - Microsoft Corporation)
Cooking Dash (HKLM-x32\...\Cooking Dash) (Version:  - Oberon Media Inc.)
CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1908 - CyberLink Corp.)
CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3602c - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Driver Booster 3.3 (HKLM-x32\...\Driver Booster_is1) (Version: 3.3 - IObit)
ETDWare PS/2-X64 8.0.5.1_WHQL (HKLM\...\Elantech) (Version: 8.0.5.1 - ELAN Microelectronic Corp.)
Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.9 - ASUS)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Game Park Console (HKLM-x32\...\{E71E60C1-533E-45A5-8D80-E475E88D2B17}_is1) (Version: 6.2.1.1 - Oberon Media, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.94 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version:  - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.2.183.13 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
Governor of Poker (HKLM-x32\...\Governor of Poker) (Version:  - Oberon Media Inc.)
Hotel Dash Suite Success (HKLM-x32\...\Hotel Dash Suite Success) (Version:  - Oberon Media Inc.)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 5.3.0.142 - IObit)
Jewel Quest 3 (HKLM-x32\...\Jewel Quest 3) (Version:  - Oberon Media Inc.)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Luxor 3 (HKLM-x32\...\Luxor 3) (Version:  - Oberon Media Inc.)
Mahjongg dimensions (HKLM-x32\...\Mahjongg dimensions) (Version:  - Oberon Media Inc.)
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.50401.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Nuance PDF Reader (HKLM-x32\...\{B480904D-F73F-4673-B034-8A5F492C9184}) (Version: 6.00.0041 - Nuance Communications, Inc.)
Plants vs Zombies (HKLM-x32\...\Plants vs Zombies) (Version:  - Oberon Media Inc.)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31222 - Realtek Semiconduct Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.42.304.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7746 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30127 - Realtek Semiconductor Corp.)
SafeZone Stable 1.48.2066.101 (x32 Version: 1.48.2066.101 - Avast Software) Hidden
Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.3 - IObit)
syncables desktop SE (HKLM-x32\...\{341697D8-9923-445E-B42A-529E5A99CB7A}) (Version: 5.5.746.11492 - syncables)
Trend Micro Titanium Internet Security (HKLM\...\{ABBD4BA8-6703-40D2-AB1E-5BB1F7DB49A4}) (Version: 3.0 - Trend Micro Inc.)
Trend Micro Titanium Internet Security (Version: 3.00 - Trend Micro Inc.) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}) (Version: 15.4.5722.2 - Microsoft Corporation)
WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.32.0 - ASUS)
Wireless Console 3 (HKLM-x32\...\{C4BC5A5F-4A97-47CC-99C3-AB8E10572AFE}) (Version: 3.0.24 - ASUS)
World of Goo (HKLM-x32\...\World of Goo) (Version:  - Oberon Media Inc.)
Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (HKLM-x32\...\{F665F3B8-01B4-46A9-8E47-FF8DC2208C9F}) (Version: 15.4.5722.2 - Microsoft Corporation)
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden
Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Элемент управления Windows Live Mesh ActiveX для удаленных подключений (HKLM-x32\...\{BCB0D6F7-7EAB-4009-A6F2-8E0E7F317773}) (Version: 15.4.5722.2 - Microsoft Corporation)
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (HKLM-x32\...\{9D4C7DFA-CBBB-4F06-BDAC-94D831406DF0}) (Version: 15.4.5722.2 - Microsoft Corporation)
بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة (HKLM-x32\...\{E18B30AA-6E2D-480C-B918-AF61009F4010}) (Version: 15.4.5722.2 - Microsoft Corporation)
معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
適用遠端連線的 Windows Live Mesh ActiveX 控制項 (HKLM-x32\...\{622DE1BE-9EDE-49D3-B349-29D64760342A}) (Version: 15.4.5722.2 - Microsoft Corporation)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {0D41A30D-2B0B-414A-89D1-E99399C8E5CE} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2011-07-22] (ASUS)
Task: {22D94CE5-5E2A-44CF-B677-AE34C4A9CFEA} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-05-11] (AVAST Software)
Task: {29A26B23-2F35-42BE-A58D-71928DB610DA} - System32\Tasks\ASC9_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [2016-05-06] (IObit)
Task: {35834D62-929B-4592-B177-9EC0D16FC717} - System32\Tasks\SafeZone scheduled Autoupdate 1462970565 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-04-15] (Avast Software)
Task: {3FE30182-3D7A-4462-88A3-D3B232E8B8B7} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_213_pepper.exe [2016-05-11] (Adobe Systems Incorporated)
Task: {40BD6655-B9DA-485D-AC73-3BECB23EE151} - System32\Tasks\Driver Booster SkipUAC (59192) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2016-04-01] (IObit)
Task: {453205A9-174F-4F92-BF9C-C45FAC5B7FCF} - System32\Tasks\Driver Booster Scheduler => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2016-03-28] (IObit)
Task: {60F398C6-F009-4FEB-B4EF-955537F134F2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-11] (Google Inc.)
Task: {6488ED3E-9F07-4A79-8D3A-F2D9F8DB8659} - System32\Tasks\Uninstaller_SkipUac_59192 => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2016-04-27] (IObit)
Task: {84A77F86-B445-48DE-B57F-B89B693CD5C2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-11] (Google Inc.)
Task: {A511D133-DEAD-440F-9406-91D38FAB6541} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe [2011-10-03] (ASUS)
Task: {AB9EDB8B-964C-459F-BBD3-99F4A664E3FD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-05-11] (Adobe Systems Incorporated)
Task: {B253258F-E635-4E07-B046-7432CA573660} - System32\Tasks\ASC9_SkipUac_59192 => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [2016-05-10] (IObit)
Task: {BE38F6AE-FBD9-4DB0-9EF8-F6CC117D92FB} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2011-10-04] (ASUS)
Task: {EB8BE82F-417A-4A70-BACB-C1541ADC3138} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2011-10-14] (ASUS)
Task: {FB97A698-3353-46DB-B523-7AE95D8BEAC3} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-05-11] (AVAST Software)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_213_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2011-04-13 04:51 - 2010-09-17 10:52 - 00047104 _____ () C:\Program Files\Trend Micro\AMSP\boost_thread-vc80-mt-1_36.dll
2011-04-13 04:51 - 2010-09-17 10:52 - 00042496 _____ () C:\Program Files\Trend Micro\AMSP\boost_date_time-vc80-mt-1_36.dll
2010-07-15 01:11 - 2010-07-15 01:11 - 00031360 _____ () C:\Program Files\P4G\DevMng.dll
2016-05-11 14:38 - 2016-05-11 14:38 - 00123344 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2016-05-11 14:38 - 2016-05-11 14:38 - 00135816 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-05-12 20:15 - 2016-05-12 20:15 - 02905088 _____ () C:\Program Files\AVAST Software\Avast\defs\16051201\algo.dll
2016-05-11 14:38 - 2016-05-11 14:38 - 00309912 _____ () C:\Program Files\AVAST Software\Avast\browser_pass.dll
2016-05-11 14:38 - 2016-05-11 14:38 - 00479680 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2009-11-02 23:20 - 2009-11-02 23:20 - 00619816 ____N () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll
2009-11-02 23:23 - 2009-11-02 23:23 - 00013096 ____N () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll
2011-10-04 21:14 - 2011-10-04 21:14 - 00009216 _____ () C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll
2016-05-11 12:06 - 2015-12-23 18:32 - 00355616 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madExcept_.bpl
2016-05-11 12:06 - 2015-12-23 18:32 - 00190240 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madBasic_.bpl
2016-05-11 12:06 - 2015-12-23 18:32 - 00057632 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare\madDisAsm_.bpl
2016-05-11 12:07 - 2015-12-23 18:32 - 00190240 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madBasic_.bpl
2016-05-11 12:07 - 2015-12-23 18:32 - 00057632 _____ () C:\Program Files (x86)\IObit\IObit Uninstaller\madDisAsm_.bpl
2016-05-11 14:38 - 2016-05-11 14:38 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2016-05-11 09:27 - 2016-04-28 01:25 - 01738904 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.94\libglesv2.dll
2016-05-11 09:27 - 2016-04-28 01:25 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.94\libegl.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\100sexlinks.com -> 100sexlinks.com

Da befinden sich 4788 mehr Seiten.


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2009-07-14 04:34 - 2016-05-11 21:59 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts

127.0.0.1       localhost

==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-508882545-2078725825-758961529-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\59192\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 80.69.100.212 - 80.69.100.205
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

MSCONFIG\startupreg: Advanced SystemCare 9 => "C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe" /Auto
MSCONFIG\startupreg: ASUS Screen Saver Protector => C:\Windows\AsScrPro.exe
MSCONFIG\startupreg: ASUSPRP => "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
MSCONFIG\startupreg: ASUSWebStorage => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe /S
MSCONFIG\startupreg: AthBtTray => "C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
MSCONFIG\startupreg: AtherosBtStack => "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
MSCONFIG\startupreg: ATKMEDIA => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
MSCONFIG\startupreg: ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
MSCONFIG\startupreg: ETDCtrl => %ProgramFiles%\Elantech\ETDCtrl.exe
MSCONFIG\startupreg: HControlUser => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
MSCONFIG\startupreg: IObit Malware Fighter => "C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /autostart
MSCONFIG\startupreg: RtHDVBg => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /SF3 
MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MSCONFIG\startupreg: SonicMasterTray => C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe
MSCONFIG\startupreg: Trend Micro Titanium => C:\Program Files\Trend Micro\Titanium\VizorShortCut.exe -ReFlush "none" "none"
MSCONFIG\startupreg: UpdateLBPShortCut => "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
MSCONFIG\startupreg: UpdateP2GoShortCut => "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
MSCONFIG\startupreg: VizorHtmlDialog.exe => "C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe" "DEF" "EULA" "C:\Program Files\Trend Micro\Titanium\UI\Installer.cmpt\resources\preinstall_01_welcome_trial.html" "DEF" "DEF" "DEF"
MSCONFIG\startupreg: Wireless Console 3 => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [{50D76052-134E-46DB-AF8E-63827F883C0F}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{6D86BBA6-660B-4EA4-9C85-ADBCBF533D55}] => (Allow) LPort=2869
FirewallRules: [{B827E1C7-5A7A-484C-9653-2FE388A8B888}] => (Allow) LPort=1900
FirewallRules: [{25BDD843-A815-48A8-A216-66D065687049}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{8EF01BA1-D1F6-4D73-AADB-AB5E81F83EF1}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe
FirewallRules: [{A72233AF-337A-40D3-BCE9-4CBCFF8C6B0B}] => (Allow) LPort=5353
FirewallRules: [{506984D9-DE61-4E40-9679-2D3BDE5A3CB8}] => (Allow) LPort=8182
FirewallRules: [{D309E191-9706-4651-83D7-01113C40CDF3}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{1BB0BD14-B6F3-49A4-97EB-E2F34850FEFB}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{517AC5EB-FF49-46C1-9BD9-92044B0A6877}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{F4A711DC-97E5-47C4-9B15-AFA623A26CBC}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{907818C0-AF5B-4210-A5D8-C84CA36E07AE}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{2E14A695-277F-4E24-B5F5-F698316EFB39}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe
FirewallRules: [{A52C2940-0372-415E-8F99-59F9F427DC4B}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe

==================== Wiederherstellungspunkte =========================

10-05-2016 23:50:30 Windows Update
11-05-2016 12:43:02 Windows Modules Installer
11-05-2016 13:13:34 Driver Booster : AMD High Definition Audio Device
12-05-2016 17:18:10 Windows Update
12-05-2016 18:14:08 Windows Update
12-05-2016 20:16:41 Windows Update

==================== Fehlerhafte Geräte im Gerätemanager =============

Name: Qualcomm Atheros AR9002WB-1NG Wireless Network Adapter
Description: Qualcomm Atheros AR9002WB-1NG Wireless Network Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: athr
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Bluetooth Module
Description: Bluetooth Module
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Qualcomm Atheros Communications
Service: BTHUSB
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. 


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (05/11/2016 04:57:30 PM) (Source: ESENT) (EventID: 455) (User: )
Description: taskhost (2620) WebCacheLocal: Fehler -1811 (0xfffff8ed) beim Öffnen von Protokolldatei C:\Users\59192\AppData\Local\Microsoft\Windows\WebCache\V01.log.

Error: (05/10/2016 11:38:05 PM) (Source: Google Update) (EventID: 20) (User: NT-AUTORITÄT)
Description: Network Request Error.
Error: 0x80072ee7. Http status code: 0.
Url=https://tools.google.com/service/update2
Trying config: source=IE, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.
Trying config: source=IE, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.

Error: (05/10/2016 11:24:51 PM) (Source: Google Update) (EventID: 20) (User: NT-AUTORITÄT)
Description: Network Request Error.
Error: 0x80072ee7. Http status code: 0.
Url=https://tools.google.com/service/update2
Trying config: source=IE, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.
Trying config: source=IE, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.

Error: (05/10/2016 11:15:38 PM) (Source: Google Update) (EventID: 20) (User: NT-AUTORITÄT)
Description: Network Request Error.
Error: 0x80072ee7. Http status code: 0.
Url=https://tools.google.com/service/update2
Trying config: source=auto, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.
Trying config: source=auto, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.


Systemfehler:
=============
Error: (05/12/2016 08:37:40 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen.

Error: (05/12/2016 08:26:50 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Der Dienst Windows Update konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden.

Error: (05/12/2016 08:03:01 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen.

Error: (05/12/2016 07:58:31 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen.

Error: (05/12/2016 05:36:23 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen.

Error: (05/12/2016 04:18:30 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "LiveUpdate" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (05/12/2016 04:15:43 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen.

Error: (05/12/2016 01:26:07 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {995C996E-D918-4A8C-A302-45719A6F4EA7}

Error: (05/12/2016 12:41:14 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.

Error: (05/11/2016 11:53:01 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.


CodeIntegrity:
===================================
  Date: 2016-05-12 19:57:49.220
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-12 19:57:49.220
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-12 17:35:43.014
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-12 17:35:42.998
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-12 16:15:02.657
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-12 16:15:02.657
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-11 23:30:42.654
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-11 23:30:42.639
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-11 23:25:28.062
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-11 23:25:28.046
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.


==================== Speicherinformationen =========================== 

Prozessor: AMD E-450 APU with Radeon(tm) HD Graphics
Prozentuale Nutzung des RAM: 58%
Installierter physikalischer RAM: 8171.71 MB
Verfügbarer physikalischer RAM: 3370.44 MB
Summe virtueller Speicher: 16341.61 MB
Verfügbarer virtueller Speicher: 11981.52 MB

==================== Laufwerke ================================

Drive c: (OS) (Fixed) (Total:128 GB) (Free:72.9 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)]
Drive d: (DATA) (Fixed) (Total:145.09 GB) (Free:22.04 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 45AB51FA)
Partition 1: (Not Active) - (Size=25 GB) - (Type=1C)
Partition 2: (Active) - (Size=128 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=145.1 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt ============================
         

Alt 12.05.2016, 20:22   #5
SaSa591xx
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



Code:
ATTFilter
20:59:35.0128 0x1178  TDSS rootkit removing tool 3.1.0.9 Dec 11 2015 22:49:12
20:59:49.0582 0x1178  ============================================================
20:59:49.0582 0x1178  Current date / time: 2016/05/12 20:59:49.0582
20:59:49.0582 0x1178  SystemInfo:
20:59:49.0582 0x1178  
20:59:49.0583 0x1178  OS Version: 6.1.7601 ServicePack: 1.0
20:59:49.0583 0x1178  Product type: Workstation
20:59:49.0583 0x1178  ComputerName: 59192-PC
20:59:49.0592 0x1178  UserName: 59192
20:59:49.0592 0x1178  Windows directory: C:\Windows
20:59:49.0592 0x1178  System windows directory: C:\Windows
20:59:49.0592 0x1178  Running under WOW64
20:59:49.0592 0x1178  Processor architecture: Intel x64
20:59:49.0592 0x1178  Number of processors: 2
20:59:49.0592 0x1178  Page size: 0x1000
20:59:49.0592 0x1178  Boot type: Normal boot
20:59:49.0592 0x1178  ============================================================
20:59:52.0900 0x1178  KLMD registered as C:\Windows\system32\drivers\33081080.sys
20:59:53.0945 0x1178  System UUID: {B88ABBE9-A3FB-32A7-6DF1-EB3C8A0FF306}
20:59:56.0804 0x1178  Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 ( 298.09 Gb ), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
20:59:56.0815 0x1178  ============================================================
20:59:56.0816 0x1178  \Device\Harddisk0\DR0:
20:59:56.0816 0x1178  MBR partitions:
20:59:56.0816 0x1178  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3200800, BlocksNum 0x10000000
20:59:56.0816 0x1178  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x13200800, BlocksNum 0x1222D800
20:59:56.0816 0x1178  ============================================================
20:59:56.0872 0x1178  C: <-> \Device\Harddisk0\DR0\Partition1
20:59:56.0963 0x1178  D: <-> \Device\Harddisk0\DR0\Partition2
20:59:56.0964 0x1178  ============================================================
20:59:56.0964 0x1178  Initialize success
20:59:56.0964 0x1178  ============================================================
21:10:40.0159 0x1390  ============================================================
21:10:40.0159 0x1390  Scan started
21:10:40.0159 0x1390  Mode: Manual; SigCheck; TDLFS; 
21:10:40.0159 0x1390  ============================================================
21:10:40.0159 0x1390  KSN ping started
21:11:00.0890 0x1390  KSN ping finished: true
21:11:07.0758 0x1390  ================ Scan system memory ========================
21:11:07.0758 0x1390  System memory - ok
21:11:07.0760 0x1390  ================ Scan services =============================
21:11:08.0256 0x1390  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
21:11:10.0182 0x1390  1394ohci - ok
21:11:10.0307 0x1390  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
21:11:10.0369 0x1390  ACPI - ok
21:11:10.0401 0x1390  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
21:11:10.0646 0x1390  AcpiPmi - ok
21:11:12.0826 0x1390  [ 04A7B373A727BD3ACD824621CF65AE70, 37FD3893811D8E7FDB2794AE18CB5A85D7FA13AB24DBEEF91F68832668204D21 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
21:11:12.0873 0x1390  AdobeFlashPlayerUpdateSvc - ok
21:11:12.0951 0x1390  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
21:11:13.0060 0x1390  adp94xx - ok
21:11:13.0169 0x1390  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\drivers\adpahci.sys
21:11:13.0263 0x1390  adpahci - ok
21:11:13.0279 0x1390  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
21:11:13.0326 0x1390  adpu320 - ok
21:11:13.0560 0x1390  [ 91C596BE98F65830352B466C19705533, 4FB4614839E405F127B7E9B801CF9E6166EBCBAB62506F2153CEAFB07CA6BB8D ] AdvancedSystemCareService9 C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
21:11:13.0622 0x1390  AdvancedSystemCareService9 - ok
21:11:13.0773 0x1390  [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
21:11:13.0963 0x1390  AeLookupSvc - ok
21:11:14.0181 0x1390  [ 6E79A119B0CE418FE44E0C824BF3F039, 7C7E8ED41EFCDB20C1A0C038BB6C53CDBE6709E3573C8A93B4059C0CD08759EB ] AFBAgent        C:\Windows\system32\FBAgent.exe
21:11:15.0112 0x1390  AFBAgent - ok
21:11:15.0344 0x1390  [ 314C17917AC8523EC77A710215012A65, 725CF2D5F63C06F7704C24FE0CFA696215DADC6C0EC445D9671E82F8E23E56AD ] AFD             C:\Windows\system32\drivers\afd.sys
21:11:15.0490 0x1390  AFD - ok
21:11:15.0537 0x1390  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\drivers\agp440.sys
21:11:15.0615 0x1390  agp440 - ok
21:11:15.0662 0x1390  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
21:11:15.0724 0x1390  ALG - ok
21:11:15.0787 0x1390  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\drivers\aliide.sys
21:11:15.0818 0x1390  aliide - ok
21:11:15.0892 0x1390  [ 9A7A5A438D5DFD955E12ED809EB36847, 984B869D8C42BA5D90CB9DF999212BDBB715B3074ED29440837AD52D72762001 ] AMD External Events Utility C:\Windows\system32\atiesrxx.exe
21:11:16.0040 0x1390  AMD External Events Utility - ok
21:11:16.0172 0x1390  AMD FUEL Service - ok
21:11:16.0288 0x1390  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\drivers\amdide.sys
21:11:16.0356 0x1390  amdide - ok
21:11:16.0433 0x1390  [ 35D34AD337A1AC46F74C3377B4CCA88E, 046695BDF540EDCA87C36EDC725615ACA99DA57558A54CAC1B49F245D702B406 ] amdide64        C:\Windows\system32\DRIVERS\amdide64.sys
21:11:16.0539 0x1390  amdide64 - ok
21:11:16.0596 0x1390  [ 6A2EEB0C4133B20773BB3DD0B7B377B4, E4CB35C6937C70A145A13E5AE5B34A271B49101DA623171ACBFDA8601E5A70EA ] amdiox64        C:\Windows\system32\DRIVERS\amdiox64.sys
21:11:16.0699 0x1390  amdiox64 - ok
21:11:16.0745 0x1390  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
21:11:16.0870 0x1390  AmdK8 - ok
21:11:21.0097 0x1390  [ EAD6B85ED88DE44F755CACD7DBE6CA56, 8575B8B58FBF1C480BAD7521A797822E98896503F3AA09199AAC23531F5A2041 ] amdkmdag        C:\Windows\system32\DRIVERS\atikmdag.sys
21:11:22.0432 0x1390  amdkmdag - ok
21:11:22.0527 0x1390  [ 87A7D53EEFBC2260542CB37783802A1F, 88F711ED3BCB7983D4B0BDD41635C75020CA2A6EF3AEECBF5C29405B15AA3C8E ] amdkmdap        C:\Windows\system32\DRIVERS\atikmpag.sys
21:11:22.0652 0x1390  amdkmdap - ok
21:11:22.0704 0x1390  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
21:11:22.0817 0x1390  AmdPPM - ok
21:11:22.0848 0x1390  [ 6EC6D772EAE38DC17C14AED9B178D24B, B4FB936B31B1265B8CC6B426C64965C34D0CCF1638E645ACD65E88F4AFFC57A6 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
21:11:22.0944 0x1390  amdsata - ok
21:11:22.0964 0x1390  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
21:11:23.0105 0x1390  amdsbs - ok
21:11:23.0136 0x1390  [ 1142A21DB581A84EA5597B03A26EBAA0, F94EB140D0CD068760D7EB081FF75154C75DAC75E5E24B6DE4E4F9CE65A70343 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
21:11:23.0151 0x1390  amdxata - ok
21:11:23.0279 0x1390  [ CAEE7C1AFC9F1C9EE8DD11ACD18D22E7, B8953CC6B833E76F1483EFDB0198F14FA43E530D1A9FEA33260FD2EDB811B230 ] amd_sata        C:\Windows\system32\DRIVERS\amd_sata.sys
21:11:23.0371 0x1390  amd_sata - ok
21:11:23.0415 0x1390  [ 23726116B4FBCC84FC45B95157C08F5F, BCF1762FFB36D3846628917DC86CF26A83BDFE7D3DE54F8D6B1B1D3AC3E73F02 ] amd_xata        C:\Windows\system32\DRIVERS\amd_xata.sys
21:11:23.0512 0x1390  amd_xata - ok
21:11:23.0688 0x1390  [ E8494519BCB9E3B1B72E5604993A76E3, 5599ACE200014F89A94AD34096EC008491A82A047742CD085C88153B67FEBF28 ] Amsp            C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe
21:11:23.0823 0x1390  Amsp - ok
21:11:23.0948 0x1390  [ 6474F8823C7188D2DA579F01FB6CED6B, 81D4E9D026CA60FB8840D520D151B8C2F4745A75DF90A4D6C80641F1A23AB605 ] AppID           C:\Windows\system32\drivers\appid.sys
21:11:24.0093 0x1390  AppID - ok
21:11:24.0137 0x1390  [ 8F58BA1F7772D6D7CE45F03309608001, CDB109E0DD241042C058F7D81A1BDEBC34435CB2DC4A7A7A3692193DD5806097 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
21:11:24.0321 0x1390  AppIDSvc - ok
21:11:24.0372 0x1390  [ 3977D4A871CA0D4F2ED1E7DB46829731, 2AF1C3225994769C3FD25CD7E9603964B035576F25B0B6D91545566E0722FFAA ] Appinfo         C:\Windows\System32\appinfo.dll
21:11:24.0715 0x1390  Appinfo - ok
21:11:24.0810 0x1390  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\drivers\arc.sys
21:11:24.0931 0x1390  arc - ok
21:11:24.0956 0x1390  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\drivers\arcsas.sys
21:11:25.0048 0x1390  arcsas - ok
21:11:25.0159 0x1390  [ 18E5C2F937F9DEB8C282DF66A3761925, 30294C381F8C7DCB45EF9BCF572F410FF47630E12D5AA02259C6C80F07BEF495 ] ASLDRService    C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
21:11:25.0190 0x0ff8  Object required for P2P: [ 04A7B373A727BD3ACD824621CF65AE70 ] AdobeFlashPlayerUpdateSvc
21:11:25.0253 0x1390  ASLDRService - ok
21:11:25.0335 0x1390  [ 4C016FD76ED5C05E84CA8CAB77993961, 025E7BE9FCEFD6A83F4471BBA0C11F1C11BD5047047D26626DA24EE9A419CDC4 ] ASMMAP64        C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys
21:11:25.0415 0x1390  ASMMAP64 - ok
21:11:25.0471 0x1390  [ 1694434F5B9AB16772C7A8E2EF9134CA, B84FA624EB6D438BB01AB886AE85FA42BEA46F2E33454C6C4D9078015813CDB5 ] aswHwid         C:\Windows\system32\drivers\aswHwid.sys
21:11:25.0522 0x1390  aswHwid - ok
21:11:25.0571 0x1390  [ 786E8BCDFF674068F3C950615FC2E71C, B5803960297F9622F594EC113FF6C89221606FC6B26B02EA6F021BE38AA66794 ] aswKbd          C:\Windows\system32\drivers\aswKbd.sys
21:11:25.0673 0x1390  aswKbd - ok
21:11:25.0704 0x1390  [ 33D0DD0471FDF449C81338863FC63978, D5898B51B3BCE43E62D459CE808888085D82A4B9B284F90E3301CEF7C33C03E4 ] aswMonFlt       C:\Windows\system32\drivers\aswMonFlt.sys
21:11:25.0759 0x1390  aswMonFlt - ok
21:11:25.0790 0x1390  [ DF190688D993A3DB227BFB0BB40BD7D4, C7EDA64AE84001089AE2085B8336B7572DEDDCC80EAAA05D73C9C675CAD8C511 ] aswRdr          C:\Windows\system32\drivers\aswRdr2.sys
21:11:25.0896 0x1390  aswRdr - ok
21:11:25.0961 0x1390  [ D873455DFA27680585AE238503917DF5, CAD9CBCD24F33FF8E49C77C795F8FE0540243E455A6FC9E3035B8C15C9EEBD6C ] aswRvrt         C:\Windows\system32\drivers\aswRvrt.sys
21:11:26.0072 0x1390  aswRvrt - ok
21:11:26.0277 0x1390  [ A371A06EC8F4830C263D3F5CA5A11B65, 62E55DD439C106184F3AF73198D5CEAB5828A0EE1E30A13C35103B1B57966AB6 ] aswSnx          C:\Windows\system32\drivers\aswSnx.sys
21:11:26.0543 0x1390  aswSnx - ok
21:11:26.0633 0x1390  [ 6B7F6CE19A16240EE9DE2C528897ED9C, 3B7C24F5B152B408D87DA70B01AD2E744DCB877D46602C0620931FCADB275E17 ] aswSP           C:\Windows\system32\drivers\aswSP.sys
21:11:26.0861 0x1390  aswSP - ok
21:11:27.0054 0x1390  [ 3575F9226251DE48E065ED5C384A21EF, 032F53FEEB0BB43F1AD673EE13F507D3A8AC10F78543EA1294C40BAA918ED323 ] aswStm          C:\Windows\system32\drivers\aswStm.sys
21:11:27.0198 0x1390  aswStm - ok
21:11:27.0232 0x1390  [ BA4CDCD8C0395E91C38CD2C5CE3E7FA2, EF037C9C62F67C3D4432C86E3F568F62AABF468C792EA75477FCBC8EC8151C29 ] aswVmm          C:\Windows\system32\drivers\aswVmm.sys
21:11:27.0373 0x1390  aswVmm - ok
21:11:27.0545 0x1390  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
21:11:27.0767 0x1390  AsyncMac - ok
21:11:27.0823 0x1390  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\drivers\atapi.sys
21:11:27.0850 0x1390  atapi - ok
21:11:28.0107 0x1390  [ CBE61B4494165F458BD87E37181EE934, E95654DCC0F977A3604B6BE435BEE109AC8F9F7494FD3A132F5FB477BBF7B105 ] AthBTPort       C:\Windows\system32\DRIVERS\btath_flt.sys
21:11:28.0284 0x1390  AthBTPort - ok
21:11:28.0394 0x1390  [ 4C4A576818EA028257C624AE36FF7A03, 951521E0531D943EF55737EE99BBCBD6CC6ABC50530985D774EEBE8564166EDB ] Atheros Bt&Wlan Coex Agent C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
21:11:28.0596 0x1390  Atheros Bt&Wlan Coex Agent - detected UnsignedFile.Multi.Generic ( 1 )
21:11:30.0574 0x0ff8  Object send P2P result: true
21:11:32.0181 0x0860  Object required for P2P: [ 1694434F5B9AB16772C7A8E2EF9134CA ] aswHwid
21:11:33.0364 0x1390  Detect skipped due to KSN trusted
21:11:33.0364 0x1390  Atheros Bt&Wlan Coex Agent - ok
21:11:33.0458 0x1390  [ 21753130331188C4B474E1D3B396E629, F0FBE5F3281121DEF634F8273A2F43C5ADE538D9F280D6C9560D212B8B027A38 ] AtherosSvc      C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
21:11:33.0489 0x1390  AtherosSvc - detected UnsignedFile.Multi.Generic ( 1 )
21:11:36.0237 0x0860  Object send P2P result: true
21:11:36.0237 0x0860  Object required for P2P: [ 786E8BCDFF674068F3C950615FC2E71C ] aswKbd
21:11:37.0744 0x1390  Detect skipped due to KSN trusted
21:11:37.0744 0x1390  AtherosSvc - ok
21:11:38.0281 0x1390  [ 6A8BE7EF08F3AE3B81555788D978A43A, 72CDB29F7C629723FCFAA4380DF41E5CB53C5FA5BDDCEAD527A04AE0E1E513E0 ] athr            C:\Windows\system32\DRIVERS\athrx.sys
21:11:38.0959 0x1390  athr - ok
21:11:39.0084 0x1390  [ DA52C2608739A40493D5811B3E9A0BC1, F95F852C845D5DAD2DFE1B2678AE3C917A56F359E862379D3F518CBBFB4F1157 ] AtiHDAudioService C:\Windows\system32\drivers\AtihdW76.sys
21:11:39.0199 0x1390  AtiHDAudioService - ok
21:11:39.0294 0x1390  [ 7910158929571214A959D5A6D16DD9C0, 9B4F8A3AF9E09B2F772EEF1CB8F7EAB8A226068784837F375AE97B89B0B3A383 ] ATKGFNEXSrv     C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
21:11:39.0393 0x1390  ATKGFNEXSrv - ok
21:11:39.0499 0x1390  [ 41CEAFFCF3550785E59E3EC9BEE8D97A, 89FE604088B65B82AA794E1DA8429033CD2F05FFB2D7EFAAC7B967C7A83D1B1E ] ATKWMIACPIIO    C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys
21:11:39.0575 0x1390  ATKWMIACPIIO - ok
21:11:39.0698 0x1390  [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
21:11:39.0972 0x1390  AudioEndpointBuilder - ok
21:11:40.0241 0x1390  [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
21:11:40.0527 0x1390  AudioSrv - ok
21:11:41.0828 0x1390  [ A24AF1F8186B4B69D54DCC4B059CA695, 882338FEF206231B9FD83787A8685A7B69D76A414923B511A8D6A7619CB86F87 ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
21:11:41.0963 0x1390  avast! Antivirus - ok
21:11:41.0978 0x0860  Object send P2P result: true
21:11:42.0041 0x1390  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\Windows\System32\AxInstSV.dll
21:11:42.0228 0x1390  AxInstSV - ok
21:11:42.0384 0x1390  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
21:11:42.0560 0x1390  b06bdrv - ok
21:11:42.0622 0x1390  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
21:11:42.0825 0x1390  b57nd60a - ok
21:11:43.0060 0x1390  [ 93EE7D9C35AE7E9FFDA148D7805F1421, 9D88D5CC08F887B35A893FEC80D8CC4A9E4EAAF533E27D0F1B9CC36C171C92DA ] BBSvc           C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE
21:11:43.0091 0x1390  BBSvc - ok
21:11:43.0138 0x1390  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
21:11:43.0232 0x1390  BDESVC - ok
21:11:43.0294 0x1390  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
21:11:43.0450 0x1390  Beep - ok
21:11:43.0548 0x1390  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE             C:\Windows\System32\bfe.dll
21:11:43.0735 0x1390  BFE - ok
21:11:44.0343 0x1390  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\Windows\system32\qmgr.dll
21:11:44.0692 0x1390  BITS - ok
21:11:44.0794 0x1390  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
21:11:44.0897 0x1390  blbdrive - ok
21:11:44.0953 0x1390  [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
21:11:45.0067 0x1390  bowser - ok
21:11:45.0087 0x1390  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
21:11:45.0196 0x1390  BrFiltLo - ok
21:11:45.0218 0x1390  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
21:11:45.0393 0x1390  BrFiltUp - ok
21:11:45.0579 0x1390  [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
21:11:45.0770 0x1390  BridgeMP - ok
21:11:45.0942 0x1390  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser         C:\Windows\System32\browser.dll
21:11:46.0020 0x1390  Browser - ok
21:11:46.0084 0x1390  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
21:11:46.0209 0x1390  Brserid - ok
21:11:46.0230 0x1390  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
21:11:46.0440 0x1390  BrSerWdm - ok
21:11:46.0462 0x1390  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
21:11:46.0622 0x1390  BrUsbMdm - ok
21:11:46.0637 0x1390  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
21:11:46.0817 0x1390  BrUsbSer - ok
21:11:46.0961 0x1390  [ FE70889A85C57A9268101B2DB0474509, 9E957390A52BE4E5642724FEC06A201682F93DD1C6F2C00A5F57351460CF5AE0 ] BTATH_A2DP      C:\Windows\system32\drivers\btath_a2dp.sys
21:11:47.0255 0x1390  BTATH_A2DP - ok
21:11:47.0336 0x1390  [ A83A91D07D1FE6BBE7A9DB46CA00434B, 9EF851047189E13954C0F6A325E4843914C423C0D1EDAE21A34AB3A962BBD5AC ] BTATH_BUS       C:\Windows\system32\DRIVERS\btath_bus.sys
21:11:47.0511 0x1390  BTATH_BUS - ok
21:11:47.0574 0x1390  [ C864FF85EE16D61C2BDD5EF76824625F, 6D2FE57688D9E8B4277BF6DA9C219DEB367274364FBE17EFC353CEDB2D7EA35D ] BTATH_HCRP      C:\Windows\system32\DRIVERS\btath_hcrp.sys
21:11:47.0898 0x1390  BTATH_HCRP - ok
21:11:47.0957 0x1390  [ 0DEA505EFB5D771826D177EF8B8A208F, FD8027DA791F04077490749AC5A08F73CCBA1731462579AA9008CD8DD82FBBBC ] BTATH_LWFLT     C:\Windows\system32\DRIVERS\btath_lwflt.sys
21:11:48.0117 0x1390  BTATH_LWFLT - ok
21:11:48.0287 0x1390  [ 724C8088C96EFE7A3E63FEC21D4681C0, 4F9B258BE0FEA634A0D93B3892F2F039A7CAD184C9A81DFC2B67B0D4B39C5035 ] BTATH_RCP       C:\Windows\system32\DRIVERS\btath_rcp.sys
21:11:48.0388 0x1390  BTATH_RCP - ok
21:11:48.0604 0x1390  [ 20B2675ED7ECB162B5275E627EB8AE03, 3CCF4D3DF6B7EFFBDBF2CE43526D4A5CA1001A179E6ADDF9A259D2FEE3E4386E ] BtFilter        C:\Windows\system32\DRIVERS\btfilter.sys
21:11:48.0784 0x1390  BtFilter - ok
21:11:48.0907 0x1390  [ CF98190A94F62E405C8CB255018B2315, E1B2540023C4FE9FD588E4B6AE6347DFA565EB3898F21E5360882BF3E8B5E781 ] BthEnum         C:\Windows\system32\DRIVERS\BthEnum.sys
21:11:48.0995 0x1390  BthEnum - ok
21:11:49.0010 0x1390  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
21:11:49.0198 0x1390  BTHMODEM - ok
21:11:49.0229 0x1390  [ 02DD601B708DD0667E1331FA8518E9FF, 7DE6CC4DBB621CD03B01D9CE6CF66EAFE31D39030A391562CD0E278E1D70ADE1 ] BthPan          C:\Windows\system32\DRIVERS\bthpan.sys
21:11:49.0354 0x1390  BthPan - ok
21:11:49.0447 0x1390  [ 0D25B6D300BA26A5F2C3B2A8E96B158B, 45C4D18367BDBD85D442221286FE4E9EBC053F1927A32403B2DEBF95AD4E6676 ] BTHPORT         C:\Windows\system32\Drivers\BTHport.sys
21:11:49.0603 0x1390  BTHPORT - ok
21:11:49.0746 0x1390  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
21:11:50.0073 0x1390  bthserv - ok
21:11:50.0103 0x1390  [ 1F9912F8EC5BFA53432E71E150636A8A, D8DE353FA5A6B95EA1CBC79731657044C09BED38B831B8365DCCA8A6DEA67111 ] BTHUSB          C:\Windows\system32\Drivers\BTHUSB.sys
21:11:50.0218 0x1390  BTHUSB - ok
21:11:50.0265 0x1390  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
21:11:50.0483 0x1390  cdfs - ok
21:11:50.0608 0x1390  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
21:11:50.0755 0x1390  cdrom - ok
21:11:50.0796 0x1390  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc     C:\Windows\System32\certprop.dll
21:11:50.0952 0x1390  CertPropSvc - ok
21:11:50.0968 0x1390  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\drivers\circlass.sys
21:11:51.0092 0x1390  circlass - ok
21:11:51.0155 0x1390  [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS            C:\Windows\system32\CLFS.sys
21:11:51.0202 0x1390  CLFS - ok
21:11:51.0439 0x1390  [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
21:11:51.0561 0x1390  clr_optimization_v2.0.50727_32 - ok
21:11:51.0727 0x1390  [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
21:11:51.0758 0x1390  clr_optimization_v2.0.50727_64 - ok
21:11:51.0805 0x1390  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
21:11:52.0008 0x1390  CmBatt - ok
21:11:52.0101 0x1390  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
21:11:52.0132 0x1390  cmdide - ok
21:11:52.0210 0x1390  [ CA3FB5A6B626D8A00A89E049CF95954E, CD5E3E40972513195108BA46CEC1D0AEA6B09A67EEBDD17EB759BD1729B07C06 ] CNG             C:\Windows\system32\Drivers\cng.sys
21:11:52.0288 0x1390  CNG - ok
21:11:52.0382 0x1390  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
21:11:52.0413 0x1390  Compbatt - ok
21:11:52.0445 0x1390  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\Windows\system32\DRIVERS\CompositeBus.sys
21:11:52.0570 0x1390  CompositeBus - ok
21:11:52.0601 0x1390  COMSysApp - ok
21:11:52.0617 0x1390  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
21:11:52.0679 0x1390  crcdisk - ok
21:11:52.0757 0x1390  [ D8129C49798CBBFB2E4351D4B7B8EF9C, 7C125DBA3F88E7C6D98AE0869EDB7995360904A913923528ABD0429B2608C313 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
21:11:52.0851 0x1390  CryptSvc - ok
21:11:52.0945 0x1390  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch      C:\Windows\system32\rpcss.dll
21:11:53.0210 0x1390  DcomLaunch - ok
21:11:53.0319 0x1390  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
21:11:53.0537 0x1390  defragsvc - ok
21:11:53.0553 0x1390  [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
21:11:53.0818 0x1390  DfsC - ok
21:11:53.0881 0x1390  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
21:11:54.0083 0x1390  Dhcp - ok
21:11:54.0115 0x1390  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
21:11:54.0302 0x1390  discache - ok
21:11:54.0380 0x1390  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\Windows\system32\drivers\disk.sys
21:11:54.0426 0x1390  Disk - ok
21:11:54.0501 0x1390  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
21:11:54.0699 0x1390  Dnscache - ok
21:11:54.0788 0x1390  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc         C:\Windows\System32\dot3svc.dll
21:11:55.0253 0x1390  dot3svc - ok
21:11:55.0344 0x1390  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS             C:\Windows\system32\dps.dll
21:11:55.0648 0x1390  DPS - ok
21:11:55.0695 0x1390  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
21:11:55.0882 0x1390  drmkaud - ok
21:11:56.0038 0x1390  [ F5BEE30450E18E6B83A5012C100616FD, 44D0577D159FC2BDF4EAD1DC2C7FD14925D075225EF97608CAC52DEE405B08FD ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
21:11:56.0196 0x1390  DXGKrnl - ok
21:11:56.0305 0x1390  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
21:11:56.0493 0x1390  EapHost - ok
21:11:57.0102 0x1390  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
21:11:57.0990 0x1390  ebdrv - ok
21:11:58.0161 0x1390  [ 54C0E3156872881F6AB017210278E27E, 8C3C71535FAC3897E1AE5505302387D7EC7C93D9DB6CA8AD6C1E1B26FE33D367 ] EFS             C:\Windows\System32\lsass.exe
21:11:58.0274 0x1390  EFS - ok
21:11:58.0487 0x1390  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
21:11:58.0736 0x1390  ehRecvr - ok
21:11:58.0811 0x1390  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
21:11:58.0959 0x1390  ehSched - ok
21:11:59.0084 0x1390  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
21:11:59.0162 0x1390  elxstor - ok
21:11:59.0271 0x1390  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
21:11:59.0391 0x1390  ErrDev - ok
21:11:59.0453 0x1390  [ 4C120D2B2EA269EAE7A5744794EB6DB1, 11CD724908CB6327E4E8CFBC908B090AFC33B929FF0DBDC08D8368771E4AA0C9 ] ETD             C:\Windows\system32\DRIVERS\ETD.sys
21:11:59.0500 0x1390  ETD - ok
21:11:59.0656 0x1390  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
21:11:59.0879 0x1390  EventSystem - ok
21:12:00.0004 0x1390  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
21:12:00.0206 0x1390  exfat - ok
21:12:00.0331 0x1390  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
21:12:00.0628 0x1390  fastfat - ok
21:12:01.0115 0x1390  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax             C:\Windows\system32\fxssvc.exe
21:12:01.0412 0x1390  Fax - ok
21:12:01.0441 0x1390  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\drivers\fdc.sys
21:12:01.0568 0x1390  fdc - ok
21:12:01.0627 0x1390  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
21:12:01.0877 0x1390  fdPHost - ok
21:12:02.0088 0x1390  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
21:12:02.0407 0x1390  FDResPub - ok
21:12:02.0538 0x1390  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
21:12:02.0567 0x1390  FileInfo - ok
21:12:02.0971 0x1390  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
21:12:03.0123 0x1390  Filetrace - ok
21:12:03.0155 0x1390  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
21:12:03.0264 0x1390  flpydisk - ok
21:12:03.0295 0x1390  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
21:12:03.0389 0x1390  FltMgr - ok
21:12:03.0580 0x1390  [ C4C183E6551084039EC862DA1C945E3D, 0874A2ACDD24D64965AA9A76E9C818E216880AE4C9A2E07ED932EE404585CEE6 ] FontCache       C:\Windows\system32\FntCache.dll
21:12:04.0095 0x1390  FontCache - ok
21:12:04.0596 0x1390  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
21:12:04.0622 0x1390  FontCache3.0.0.0 - ok
21:12:04.0755 0x1390  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
21:12:04.0786 0x1390  FsDepends - ok
21:12:04.0879 0x1390  [ 6C06701BF1DB05405804D7EB610991CE, 75DEB2204D9AC338ED7C4742BEFAFA0AFC7E42B2C1B54A57DF8A1AD097D9EC3E ] fssfltr         C:\Windows\system32\DRIVERS\fssfltr.sys
21:12:04.0895 0x1390  fssfltr - ok
21:12:05.0067 0x1390  [ 4CE9DAC1518FF7E77BD213E6394B9D77, D7D0D29DF93AC7DC5F85E385EEB45306C7BD87ACA7AAC5A8D47893D120C32C03 ] fsssvc          C:\Program Files (x86)\Windows Live\Family Safety\fsssvc.exe
21:12:05.0270 0x1390  fsssvc - ok
21:12:05.0363 0x1390  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
21:12:05.0395 0x1390  Fs_Rec - ok
21:12:05.0473 0x1390  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
21:12:05.0535 0x1390  fvevol - ok
21:12:05.0637 0x1390  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
21:12:05.0696 0x1390  gagp30kx - ok
21:12:05.0899 0x1390  [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc           C:\Windows\System32\gpsvc.dll
21:12:06.0070 0x1390  gpsvc - ok
21:12:06.0227 0x1390  [ 50FCC5C822A6B4FC6F377EE9F9F37C7B, 57BD4032367D91EF19931E927127AA1D54DA6118B36C219B0FFD95326A2FFCA0 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:12:06.0258 0x1390  gupdate - ok
21:12:06.0320 0x1390  [ 50FCC5C822A6B4FC6F377EE9F9F37C7B, 57BD4032367D91EF19931E927127AA1D54DA6118B36C219B0FFD95326A2FFCA0 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
21:12:06.0352 0x1390  gupdatem - ok
21:12:06.0398 0x1390  [ CC839E8D766CC31A7710C9F38CF3E375, 327D57F18B4A2D1CB06C5682D3364097ECD3CF40C2719AA1F41D0B49A26003E4 ] gusvc           C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
21:12:06.0445 0x1390  gusvc - ok
21:12:06.0461 0x1390  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
21:12:06.0570 0x1390  hcw85cir - ok
21:12:06.0632 0x1390  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
21:12:06.0823 0x1390  HdAudAddService - ok
21:12:06.0963 0x1390  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
21:12:07.0088 0x1390  HDAudBus - ok
21:12:07.0104 0x1390  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
21:12:07.0197 0x1390  HidBatt - ok
21:12:07.0229 0x1390  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\drivers\hidbth.sys
21:12:07.0327 0x1390  HidBth - ok
21:12:07.0373 0x1390  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\drivers\hidir.sys
21:12:07.0483 0x1390  HidIr - ok
21:12:07.0592 0x1390  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\System32\hidserv.dll
21:12:07.0782 0x1390  hidserv - ok
21:12:07.0813 0x1390  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
21:12:07.0891 0x1390  HidUsb - ok
21:12:07.0953 0x1390  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\Windows\system32\kmsvc.dll
21:12:08.0156 0x1390  hkmsvc - ok
21:12:08.0265 0x1390  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
21:12:08.0467 0x1390  HomeGroupListener - ok
21:12:08.0556 0x1390  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
21:12:08.0728 0x1390  HomeGroupProvider - ok
21:12:08.0788 0x1390  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
21:12:08.0863 0x1390  HpSAMD - ok
21:12:09.0163 0x1390  [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
21:12:09.0396 0x1390  HTTP - ok
21:12:10.0844 0x1390  [ EF558A02D734A1403583E95CCEEC2487, F0D052DAF48A62E4A90D067BFCB5EE9563804DE68D0EA82E0E11C8D16AD19D29 ] HWiNFO32        C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS
21:12:10.0875 0x1390  HWiNFO32 - ok
21:12:10.0922 0x1390  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
21:12:10.0959 0x1390  hwpolicy - ok
21:12:11.0028 0x1390  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\DRIVERS\i8042prt.sys
21:12:11.0075 0x1390  i8042prt - ok
21:12:11.0138 0x1390  [ 3DF4395A7CF8B7A72A5F4606366B8C2D, 483588B8FC6E05488ED631C4E1CFC398553FEBFA2CD2BB527B4DF12D19774F80 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
21:12:11.0184 0x1390  iaStorV - ok
21:12:11.0387 0x1390  [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
21:12:11.0465 0x1390  idsvc - ok
21:12:11.0560 0x1390  IEEtwCollectorService - ok
21:12:11.0606 0x1390  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
21:12:11.0622 0x1390  iirsp - ok
21:12:11.0856 0x1390  [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT          C:\Windows\System32\ikeext.dll
21:12:11.0934 0x1390  IKEEXT - ok
21:12:12.0358 0x1390  [ 0300934A429A0C83DA6892787B787A53, 168A164AA47747B088E2354BDE6EF4D265600BA4AE80399D806D938DB79B41BE ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
21:12:12.0766 0x1390  IntcAzAudAddService - ok
21:12:12.0862 0x1390  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\drivers\intelide.sys
21:12:12.0909 0x1390  intelide - ok
21:12:12.0945 0x1390  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\drivers\intelppm.sys
21:12:13.0007 0x1390  intelppm - ok
21:12:13.0054 0x1390  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
21:12:13.0235 0x1390  IPBusEnum - ok
21:12:13.0281 0x1390  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
21:12:13.0359 0x1390  IpFilterDriver - ok
21:12:13.0469 0x1390  [ A34A587FFFD45FA649FBA6D03784D257, C9A2BCD4E2A5EB6E320092A3AFD5737ECDCDA0B83EE42314A23C4978F2974767 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
21:12:13.0722 0x1390  iphlpsvc - ok
21:12:13.0762 0x1390  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
21:12:13.0836 0x1390  IPMIDRV - ok
21:12:13.0863 0x1390  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
21:12:14.0057 0x1390  IPNAT - ok
21:12:14.0088 0x1390  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
21:12:14.0168 0x1390  IRENUM - ok
21:12:14.0231 0x1390  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
21:12:14.0246 0x1390  isapnp - ok
21:12:14.0340 0x1390  [ D931D7309DEB2317035B07C9F9E6B0BD, 13AD84172ED8C6153F8A98499C01733B74E48464CE07D099508E38D409913ED3 ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
21:12:14.0371 0x1390  iScsiPrt - ok
21:12:14.0418 0x1390  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
21:12:14.0449 0x1390  kbdclass - ok
21:12:14.0496 0x1390  [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
21:12:14.0543 0x1390  kbdhid - ok
21:12:14.0621 0x1390  [ E63EF8C3271D014F14E2469CE75FECB4, 3A8DFA4B446AFDC35F01FD5218D0BEBC510A1E3DE9976210F00D19767D0F9069 ] kbfiltr         C:\Windows\system32\DRIVERS\kbfiltr.sys
21:12:14.0652 0x1390  kbfiltr - ok
21:12:14.0714 0x1390  [ 54C0E3156872881F6AB017210278E27E, 8C3C71535FAC3897E1AE5505302387D7EC7C93D9DB6CA8AD6C1E1B26FE33D367 ] KeyIso          C:\Windows\system32\lsass.exe
21:12:14.0761 0x1390  KeyIso - ok
21:12:14.0917 0x1390  [ 0878723427BA190E5ABA5AA0112FA4D4, E332C83D3F4DF71761AA3DAC2C721FC2029F71ECC88A66E175BA56510855C4D4 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
21:12:14.0948 0x1390  KSecDD - ok
21:12:15.0089 0x1390  [ C08CCCE2BE68D04E6C142614736959DA, AEC0AFC5C28DDC14DD6918BB6E236FA1C85CC30D69DA9AE40F9962D88248040F ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
21:12:15.0120 0x1390  KSecPkg - ok
21:12:15.0182 0x1390  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
21:12:15.0260 0x1390  ksthunk - ok
21:12:15.0323 0x1390  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
21:12:15.0416 0x1390  KtmRm - ok
21:12:15.0572 0x1390  [ 033B4AED2C5519072C0D81E00804D003, 6C450A604C382416C482FED43098B4E95BD61B480B0CEFD728A269446AF18708 ] L1C             C:\Windows\system32\DRIVERS\L1C62x64.sys
21:12:15.0604 0x1390  L1C - ok
21:12:15.0838 0x1390  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\Windows\System32\srvsvc.dll
21:12:15.0947 0x1390  LanmanServer - ok
21:12:16.0196 0x1390  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
21:12:16.0290 0x1390  LanmanWorkstation - ok
21:12:16.0961 0x1390  [ C31120CCEAFB15C90B0EEECE761A7C86, DFADBE22771B5F57C70B7CAFB746495F0558871F18C0F30B4D67935CC95468A7 ] LiveUpdateSvc   C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
21:12:17.0148 0x1390  LiveUpdateSvc - ok
21:12:17.0210 0x1390  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
21:12:17.0304 0x1390  lltdio - ok
21:12:17.0366 0x1390  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
21:12:17.0476 0x1390  lltdsvc - ok
21:12:17.0491 0x1390  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
21:12:17.0585 0x1390  lmhosts - ok
21:12:17.0678 0x1390  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
21:12:17.0725 0x1390  LSI_FC - ok
21:12:17.0772 0x1390  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
21:12:17.0803 0x1390  LSI_SAS - ok
21:12:17.0834 0x1390  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
21:12:17.0866 0x1390  LSI_SAS2 - ok
21:12:17.0897 0x1390  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
21:12:17.0928 0x1390  LSI_SCSI - ok
21:12:17.0959 0x1390  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
21:12:18.0068 0x1390  luafv - ok
21:12:18.0209 0x1390  [ 78BFF5425E044086E74E78650A359FBB, 294738C10F3ED933D4EC40EA0659372FCF19A3C6D45D356917438CA495F2CB45 ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
21:12:18.0240 0x1390  MBAMProtector - ok
21:12:18.0396 0x1390  [ 9611577752E293259C7DCE19E9026362, 8CB5DFD63FA15603BB6FA6B501E09ED7F4DE0E8F68CB28B78CECAC3711BEFD24 ] MBAMScheduler   C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
21:12:18.0505 0x1390  MBAMScheduler - ok
21:12:18.0661 0x1390  [ F1A89A34388B5626F1548D393B23ECB1, EA00AC76C4C8C9340753B58A3313C9177A9B98F9F1BDE08F184CD0F53D0C186F ] MBAMService     C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
21:12:18.0739 0x1390  MBAMService - ok
21:12:18.0942 0x1390  [ 78488AF2AB2111D67B3C4044707A519B, 7AA71B9C4C7949A1A21F60EF7CCEDE0079794990696B60557B5DC86F4D47223A ] MBAMSwissArmy   C:\Windows\system32\drivers\MBAMSwissArmy.sys
21:12:18.0973 0x1390  MBAMSwissArmy - ok
21:12:19.0004 0x1390  [ 452ACB7A9914398D9E18CCCFFCF92208, 754AF45C19731C356E7E84497B04E0333759AC86DC553BA275EFC09845E43E4D ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
21:12:19.0036 0x1390  MBAMWebAccessControl - ok
21:12:19.0098 0x1390  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
21:12:19.0145 0x1390  Mcx2Svc - ok
21:12:19.0176 0x1390  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\drivers\megasas.sys
21:12:19.0207 0x1390  megasas - ok
21:12:19.0254 0x1390  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
21:12:19.0285 0x1390  MegaSR - ok
21:12:19.0348 0x1390  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
21:12:19.0426 0x1390  MMCSS - ok
21:12:19.0457 0x1390  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
21:12:19.0550 0x1390  Modem - ok
21:12:19.0706 0x1390  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
21:12:19.0753 0x1390  monitor - ok
21:12:20.0081 0x1390  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
21:12:20.0128 0x1390  mouclass - ok
21:12:20.0221 0x1390  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
21:12:20.0268 0x1390  mouhid - ok
21:12:20.0330 0x1390  [ 32E7A3D591D671A6DF2DB515A5CBE0FA, 47CED0B9067AE8BF5EEF60B17ADEE5906BEDCC56E4CB460B7BFBC12BB9A69E63 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
21:12:20.0362 0x1390  mountmgr - ok
21:12:20.0455 0x1390  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\Windows\system32\drivers\mpio.sys
21:12:20.0502 0x1390  mpio - ok
21:12:20.0518 0x1390  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
21:12:20.0596 0x1390  mpsdrv - ok
21:12:20.0876 0x1390  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\Windows\system32\mpssvc.dll
21:12:21.0017 0x1390  MpsSvc - ok
21:12:21.0126 0x1390  [ DC722758B8261E1ABAFD31A3C0A66380, 88BBE073E2CCD1DAB4656DDC53D5161E8A91D035ADAC1465D0CEBA86F1BB6D9A ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
21:12:21.0173 0x1390  MRxDAV - ok
21:12:21.0251 0x1390  [ 035C0A9A63DF3F3A52B90D8F6BF0F166, F409C8A31156E31A6D16D2B34EEE3098CE0D76A4DB7B49810EDDA2E2E19B2E26 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
21:12:21.0298 0x1390  mrxsmb - ok
21:12:21.0407 0x1390  [ 8308FC2E9147D7632221E3279BB14660, 3051FF91493FD03B7EDD4EDB23B2DE8DD7E03D46E231BC5925502BE98E78B1CB ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
21:12:21.0469 0x1390  mrxsmb10 - ok
21:12:21.0563 0x1390  [ 1F8DA4ECAEA7E2BCD97E738795817431, FBEF64C7067F5AFF864EF7E220C8A47AC43EB0BFD9A4E4C908F9D9D159AC5139 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
21:12:21.0594 0x1390  mrxsmb20 - ok
21:12:21.0672 0x1390  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\Windows\system32\drivers\msahci.sys
21:12:21.0688 0x1390  msahci - ok
21:12:21.0781 0x1390  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
21:12:21.0812 0x1390  msdsm - ok
21:12:21.0875 0x1390  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
21:12:21.0922 0x1390  MSDTC - ok
21:12:21.0968 0x1390  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
21:12:22.0078 0x1390  Msfs - ok
21:12:22.0093 0x1390  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
21:12:22.0171 0x1390  mshidkmdf - ok
21:12:22.0202 0x1390  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
21:12:22.0249 0x1390  msisadrv - ok
21:12:22.0358 0x1390  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
21:12:22.0499 0x1390  MSiSCSI - ok
21:12:22.0499 0x1390  msiserver - ok
21:12:22.0592 0x1390  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
21:12:22.0670 0x1390  MSKSSRV - ok
21:12:22.0764 0x1390  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
21:12:22.0842 0x1390  MSPCLOCK - ok
21:12:22.0951 0x1390  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
21:12:23.0045 0x1390  MSPQM - ok
21:12:23.0092 0x1390  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
21:12:23.0138 0x1390  MsRPC - ok
21:12:23.0170 0x1390  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\DRIVERS\mssmbios.sys
21:12:23.0201 0x1390  mssmbios - ok
21:12:23.0216 0x1390  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
21:12:23.0341 0x1390  MSTEE - ok
21:12:23.0357 0x1390  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\drivers\MTConfig.sys
21:12:23.0388 0x1390  MTConfig - ok
21:12:23.0419 0x1390  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
21:12:23.0450 0x1390  Mup - ok
21:12:23.0528 0x1390  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\Windows\system32\qagentRT.dll
21:12:23.0638 0x1390  napagent - ok
21:12:23.0747 0x1390  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
21:12:23.0809 0x1390  NativeWifiP - ok
21:12:23.0934 0x1390  [ F7309F42555F8AAB7144A51A1F2585B0, 065277A8AFAEE3888C997A76D2F751070F92DF4C3354D16B194860B4BDAFF937 ] NDIS            C:\Windows\system32\drivers\ndis.sys
21:12:24.0043 0x1390  NDIS - ok
21:12:24.0106 0x1390  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
21:12:24.0184 0x1390  NdisCap - ok
21:12:24.0230 0x1390  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
21:12:24.0308 0x1390  NdisTapi - ok
21:12:24.0355 0x1390  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
21:12:24.0449 0x1390  Ndisuio - ok
21:12:24.0464 0x1390  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
21:12:24.0558 0x1390  NdisWan - ok
21:12:24.0574 0x1390  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
21:12:24.0667 0x1390  NDProxy - ok
21:12:24.0730 0x1390  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
21:12:24.0808 0x1390  NetBIOS - ok
21:12:24.0854 0x1390  [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
21:12:24.0964 0x1390  NetBT - ok
21:12:24.0995 0x1390  [ 54C0E3156872881F6AB017210278E27E, 8C3C71535FAC3897E1AE5505302387D7EC7C93D9DB6CA8AD6C1E1B26FE33D367 ] Netlogon        C:\Windows\system32\lsass.exe
21:12:25.0026 0x1390  Netlogon - ok
21:12:25.0088 0x1390  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
21:12:25.0198 0x1390  Netman - ok
21:12:25.0244 0x1390  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
21:12:25.0354 0x1390  netprofm - ok
21:12:25.0400 0x1390  [ 9D0157074866FCF3EA2A07185D93FC72, C4107EE60ADA7E326DF7B27602166E9D57CB9982717605730BF7C7D2401E30A9 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
21:12:25.0447 0x1390  NetTcpPortSharing - ok
21:12:25.0510 0x1390  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
21:12:25.0541 0x1390  nfrd960 - ok
21:12:25.0588 0x1390  [ 1EE99A89CC788ADA662441D1E9830529, 6B4FDD74BB81E12BD4B25A3E8AECB0FA77FA0075D454DD1D6DC1790ADF1F2AA8 ] NlaSvc          C:\Windows\System32\nlasvc.dll
21:12:25.0775 0x1390  NlaSvc - ok
21:12:25.0806 0x1390  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
21:12:25.0931 0x1390  Npfs - ok
21:12:26.0024 0x1390  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
21:12:26.0165 0x1390  nsi - ok
21:12:26.0196 0x1390  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
21:12:26.0336 0x1390  nsiproxy - ok
21:12:26.0477 0x1390  [ 05D78AA5CB5F3F5C31160BDB955D0B7C, E3CD3FAF52ED11A8FB96D667510F1EDCA49053705AA3A13F560F8F6EC995CA45 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
21:12:26.0633 0x1390  Ntfs - ok
21:12:26.0680 0x1390  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
21:12:26.0758 0x1390  Null - ok
21:12:26.0789 0x1390  [ 5D9FD91F3D38DC9DA01E3CB5FA89CD48, 7738785DE8B50D69993F4408498B812D0283FEE5C04FF5B89C20F149B44E9737 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
21:12:26.0836 0x1390  nvraid - ok
21:12:26.0867 0x1390  [ F7CD50FE7139F07E77DA8AC8033D1832, DA96F4B15C8165E6AE1D00E03A062C66CA3A3089E4FF0E9E11CE00B154DD12EC ] nvstor          C:\Windows\system32\drivers\nvstor.sys
21:12:26.0898 0x1390  nvstor - ok
21:12:26.0929 0x1390  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
21:12:26.0960 0x1390  nv_agp - ok
21:12:27.0007 0x1390  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
21:12:27.0054 0x1390  ohci1394 - ok
21:12:27.0116 0x1390  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
21:12:27.0179 0x1390  p2pimsvc - ok
21:12:27.0288 0x1390  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
21:12:27.0382 0x1390  p2psvc - ok
21:12:27.0428 0x1390  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\drivers\parport.sys
21:12:27.0475 0x1390  Parport - ok
21:12:27.0506 0x1390  [ 871EADAC56B0A4C6512BBE32753CCF79, F9FD9DBA55274BB72B897550988DCDFD0F2D9367BE641DFDE07D240052DDC180 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
21:12:27.0538 0x1390  partmgr - ok
21:12:27.0600 0x1390  [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc          C:\Windows\System32\pcasvc.dll
21:12:27.0647 0x1390  PcaSvc - ok
21:12:27.0678 0x1390  [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci             C:\Windows\system32\drivers\pci.sys
21:12:27.0725 0x1390  pci - ok
21:12:27.0740 0x1390  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\drivers\pciide.sys
21:12:27.0772 0x1390  pciide - ok
21:12:27.0818 0x1390  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
21:12:27.0850 0x1390  pcmcia - ok
21:12:27.0881 0x1390  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
21:12:27.0912 0x1390  pcw - ok
21:12:27.0959 0x1390  [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
21:12:28.0084 0x1390  PEAUTH - ok
21:12:28.0146 0x1390  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
21:12:28.0193 0x1390  PerfHost - ok
21:12:28.0411 0x1390  [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla             C:\Windows\system32\pla.dll
21:12:28.0583 0x1390  pla - ok
21:12:28.0661 0x1390  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
21:12:28.0723 0x1390  PlugPlay - ok
21:12:28.0754 0x1390  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
21:12:28.0801 0x1390  PNRPAutoReg - ok
21:12:28.0832 0x1390  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
21:12:28.0926 0x1390  PNRPsvc - ok
21:12:28.0988 0x1390  [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
21:12:29.0113 0x1390  PolicyAgent - ok
21:12:29.0176 0x1390  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
21:12:29.0269 0x1390  Power - ok
21:12:29.0347 0x1390  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
21:12:29.0441 0x1390  PptpMiniport - ok
21:12:29.0503 0x1390  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\drivers\processr.sys
21:12:29.0534 0x1390  Processor - ok
21:12:29.0597 0x1390  [ 5C78838B4D166D1A27DB3A8A820C799A, BBF7E1D0B6754CF06BF3936671FDF5BF6E845CA5678D0940EA54E9212B539B7F ] ProfSvc         C:\Windows\system32\profsvc.dll
21:12:29.0706 0x1390  ProfSvc - ok
21:12:29.0737 0x1390  [ 54C0E3156872881F6AB017210278E27E, 8C3C71535FAC3897E1AE5505302387D7EC7C93D9DB6CA8AD6C1E1B26FE33D367 ] ProtectedStorage C:\Windows\system32\lsass.exe
21:12:29.0768 0x1390  ProtectedStorage - ok
21:12:29.0846 0x1390  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
21:12:29.0940 0x1390  Psched - ok
21:12:30.0236 0x1390  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
21:12:30.0346 0x1390  ql2300 - ok
21:12:30.0392 0x1390  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
21:12:30.0424 0x1390  ql40xx - ok
21:12:30.0486 0x1390  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
21:12:30.0548 0x1390  QWAVE - ok
21:12:30.0564 0x1390  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
21:12:30.0611 0x1390  QWAVEdrv - ok
21:12:30.0658 0x1390  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
21:12:30.0751 0x1390  RasAcd - ok
21:12:30.0814 0x1390  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
21:12:30.0907 0x1390  RasAgileVpn - ok
21:12:31.0001 0x1390  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
21:12:31.0094 0x1390  RasAuto - ok
21:12:31.0157 0x1390  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
21:12:31.0235 0x1390  Rasl2tp - ok
21:12:31.0422 0x1390  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\Windows\System32\rasmans.dll
21:12:31.0531 0x1390  RasMan - ok
21:12:31.0547 0x1390  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
21:12:31.0781 0x1390  RasPppoe - ok
21:12:32.0108 0x1390  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
21:12:32.0202 0x1390  RasSstp - ok
21:12:32.0233 0x1390  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
21:12:32.0342 0x1390  rdbss - ok
21:12:32.0358 0x1390  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\drivers\rdpbus.sys
21:12:32.0405 0x1390  rdpbus - ok
21:12:32.0452 0x1390  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
21:12:32.0530 0x1390  RDPCDD - ok
21:12:32.0576 0x1390  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
21:12:32.0670 0x1390  RDPENCDD - ok
21:12:32.0701 0x1390  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
21:12:32.0795 0x1390  RDPREFMP - ok
21:12:32.0857 0x1390  [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
21:12:32.0966 0x1390  RDPWD - ok
21:12:33.0060 0x1390  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
21:12:33.0107 0x1390  rdyboost - ok
21:12:33.0169 0x1390  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
21:12:33.0263 0x1390  RemoteAccess - ok
21:12:33.0310 0x1390  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
21:12:33.0419 0x1390  RemoteRegistry - ok
21:12:33.0450 0x1390  [ 3DD798846E2C28102B922C56E71B7932, 30B111615D74CB2213997A5C08DD9C8613ADE441D9423CC1C49A753D13CE524D ] RFCOMM          C:\Windows\system32\DRIVERS\rfcomm.sys
21:12:33.0512 0x1390  RFCOMM - ok
21:12:33.0544 0x1390  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
21:12:33.0653 0x1390  RpcEptMapper - ok
21:12:33.0700 0x1390  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
21:12:33.0746 0x1390  RpcLocator - ok
21:12:33.0793 0x1390  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs           C:\Windows\system32\rpcss.dll
21:12:33.0918 0x1390  RpcSs - ok
21:12:34.0012 0x1390  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
21:12:34.0105 0x1390  rspndr - ok
21:12:34.0214 0x1390  [ 135A64530D7699AD48F29D73A658DD11, 35838AE8ACFD9047C68DD0C8910557A82998E5CD778D5B98D4767AFA4BCE85BB ] RSUSBSTOR       C:\Windows\system32\Drivers\RtsUStor.sys
21:12:34.0246 0x1390  RSUSBSTOR - ok
21:12:34.0370 0x1390  [ 37B763C613BF00926F0C3C8BE6AEA3D2, 4B79AB48E619FA0F3D7610CE826DF194BB69BBA3AD2519C7CA27D17274CF9810 ] RTL8167         C:\Windows\system32\DRIVERS\Rt64win7.sys
21:12:34.0480 0x1390  RTL8167 - ok
21:12:34.0620 0x1390  [ AE4607D7C7AA83A863BFA214483E8EE4, 828CC9F40BAB2F65AF75608D37ED17EF608E73E911132DD085F0685F163EFEC6 ] RTSUER          C:\Windows\system32\Drivers\RtsUer.sys
21:12:34.0667 0x1390  RTSUER - ok
21:12:34.0698 0x1390  [ 54C0E3156872881F6AB017210278E27E, 8C3C71535FAC3897E1AE5505302387D7EC7C93D9DB6CA8AD6C1E1B26FE33D367 ] SamSs           C:\Windows\system32\lsass.exe
21:12:34.0745 0x1390  SamSs - ok
21:12:34.0776 0x1390  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
21:12:34.0823 0x1390  sbp2port - ok
21:12:34.0932 0x1390  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
21:12:35.0057 0x1390  SCardSvr - ok
21:12:35.0088 0x1390  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
21:12:35.0166 0x1390  scfilter - ok
21:12:35.0416 0x1390  [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule        C:\Windows\system32\schedsvc.dll
21:12:35.0572 0x1390  Schedule - ok
21:12:35.0634 0x1390  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc     C:\Windows\System32\certprop.dll
21:12:35.0712 0x1390  SCPolicySvc - ok
21:12:35.0759 0x1390  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
21:12:35.0821 0x1390  SDRSVC - ok
21:12:35.0899 0x1390  [ CC781378E7EDA615D2CDCA3B17829FA4, 137BF83A2A3D69335AD031B8D73473526F782CB8917A34B3CD92F923E7660F2A ] SeaPort         C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
21:12:35.0930 0x1390  SeaPort - ok
21:12:35.0993 0x1390  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
21:12:36.0086 0x1390  secdrv - ok
21:12:36.0118 0x1390  [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon        C:\Windows\system32\seclogon.dll
21:12:36.0196 0x1390  seclogon - ok
21:12:36.0242 0x1390  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\system32\sens.dll
21:12:36.0352 0x1390  SENS - ok
21:12:36.0367 0x1390  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
21:12:36.0445 0x1390  SensrSvc - ok
21:12:36.0492 0x1390  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\drivers\serenum.sys
21:12:36.0523 0x1390  Serenum - ok
21:12:36.0570 0x1390  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\drivers\serial.sys
21:12:36.0617 0x1390  Serial - ok
21:12:36.0648 0x1390  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\drivers\sermouse.sys
21:12:36.0695 0x1390  sermouse - ok
21:12:36.0820 0x1390  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\Windows\system32\sessenv.dll
21:12:36.0913 0x1390  SessionEnv - ok
21:12:36.0960 0x1390  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
21:12:37.0007 0x1390  sffdisk - ok
21:12:37.0038 0x1390  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
21:12:37.0085 0x1390  sffp_mmc - ok
21:12:37.0100 0x1390  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
21:12:37.0147 0x1390  sffp_sd - ok
21:12:37.0319 0x1390  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
21:12:37.0366 0x1390  sfloppy - ok
21:12:37.0490 0x1390  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
21:12:37.0646 0x1390  SharedAccess - ok
21:12:37.0756 0x1390  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
21:12:37.0865 0x1390  ShellHWDetection - ok
21:12:37.0927 0x1390  [ 1BC348CF6BAA90EC8E533EF6E6A69933, 2B26F6EB701F48E092DED6A7B888F24736F2899EE81D54DD4B1E9DF7CFD36E7A ] SiSGbeLH        C:\Windows\system32\DRIVERS\SiSG664.sys
21:12:37.0958 0x1390  SiSGbeLH - ok
21:12:38.0005 0x1390  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
21:12:38.0036 0x1390  SiSRaid2 - ok
21:12:38.0052 0x1390  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
21:12:38.0083 0x1390  SiSRaid4 - ok
21:12:38.0130 0x1390  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
21:12:38.0224 0x1390  Smb - ok
21:12:38.0317 0x1390  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
21:12:38.0364 0x1390  SNMPTRAP - ok
21:12:38.0395 0x1390  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
21:12:38.0436 0x1390  spldr - ok
21:12:38.0499 0x1390  [ B96C17B5DC1424D56EEA3A99E97428CD, AF0A85066A7983878DC1C663811CE61C6CA1912DC956184F878B7B82DB93C651 ] Spooler         C:\Windows\System32\spoolsv.exe
21:12:38.0624 0x1390  Spooler - ok
21:12:38.0858 0x1390  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\Windows\system32\sppsvc.exe
21:12:39.0170 0x1390  sppsvc - ok
21:12:39.0201 0x1390  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
21:12:39.0310 0x1390  sppuinotify - ok
21:12:39.0404 0x1390  [ 65BBF4920148C2EE279055DA7228FC7B, 3780947B69277A4AF835D6D45E16AAE5FFC6127763DFE1E2110AB282514CCFDE ] srv             C:\Windows\system32\DRIVERS\srv.sys
21:12:39.0450 0x1390  srv - ok
21:12:39.0606 0x1390  [ DA939F762A1CCC2D77428621DDBD40A7, D77CA5ADFD121D2E85B0EF3BF6E75C27C60CDC1FAA8909AE8D280E27281F9F37 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
21:12:39.0669 0x1390  srv2 - ok
21:12:39.0700 0x1390  [ 3F847C9DC87299516F7DC82FB6572865, 6536C044DF175FA560AE41FA082FB92A3D6FA35752200A7437EA5B5AA9D4590B ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
21:12:39.0762 0x1390  srvnet - ok
21:12:39.0809 0x1390  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
21:12:39.0918 0x1390  SSDPSRV - ok
21:12:39.0950 0x1390  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
21:12:40.0059 0x1390  SstpSvc - ok
21:12:40.0137 0x1390  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
21:12:40.0168 0x1390  stexstor - ok
21:12:40.0308 0x1390  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\Windows\System32\wiaservc.dll
21:12:40.0418 0x1390  stisvc - ok
21:12:40.0464 0x1390  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\DRIVERS\swenum.sys
21:12:40.0496 0x1390  swenum - ok
21:12:40.0574 0x1390  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
21:12:40.0698 0x1390  swprv - ok
21:12:40.0839 0x1390  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain         C:\Windows\system32\sysmain.dll
21:12:40.0979 0x1390  SysMain - ok
21:12:41.0026 0x1390  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
21:12:41.0104 0x1390  TabletInputService - ok
21:12:41.0198 0x1390  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv         C:\Windows\System32\tapisrv.dll
21:12:41.0307 0x1390  TapiSrv - ok
21:12:41.0354 0x1390  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS             C:\Windows\System32\tbssvc.dll
21:12:41.0447 0x1390  TBS - ok
21:12:41.0603 0x1390  [ 40AF23633D197905F03AB5628C558C51, 644656A15236E964E4BE57B42225EAA5643C4CF1FFF6D306813A000716F9D72C ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
21:12:41.0728 0x1390  Tcpip - ok
21:12:41.0962 0x1390  [ 40AF23633D197905F03AB5628C558C51, 644656A15236E964E4BE57B42225EAA5643C4CF1FFF6D306813A000716F9D72C ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
21:12:42.0165 0x1390  TCPIP6 - ok
21:12:42.0227 0x1390  [ DF687E3D8836BFB04FCC0615BF15A519, 7C5B1E72673B4299DFC21E869F0FBB28198CA54DF4F4AF7080005F2D82467784 ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
21:12:42.0305 0x1390  tcpipreg - ok
21:12:42.0336 0x1390  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
21:12:42.0394 0x1390  TDPIPE - ok
21:12:42.0441 0x1390  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
21:12:42.0472 0x1390  TDTCP - ok
21:12:42.0503 0x1390  [ DDAD5A7AB24D8B65F8D724F5C20FD806, B71F2967A4EE7395E4416C1526CB85368AEA988BDD1F2C9719C48B08FAFA9661 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
21:12:42.0581 0x1390  tdx - ok
21:12:42.0644 0x1390  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\Windows\system32\DRIVERS\termdd.sys
21:12:42.0675 0x1390  TermDD - ok
21:12:42.0753 0x1390  [ 4FC4C50985E5B840F4D72E57286887B8, 0BCBB4A938803AE3A3532B6D8FFC85594AA9AEF5D8F9792684841BEA8780AE9E ] TermService     C:\Windows\System32\termsrv.dll
21:12:42.0940 0x1390  TermService - ok
21:12:42.0987 0x1390  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
21:12:43.0049 0x1390  Themes - ok
21:12:43.0081 0x1390  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
21:12:43.0237 0x1390  THREADORDER - ok
21:12:43.0424 0x1390  [ 69D76CE06BB629B69165C81D83A4B03E, 0B0C4BD405E4234501B1331F30BA68B839D1E6B2D83A5DE8693C45110981E863 ] TiMiniService   C:\Program Files\Trend Micro\Titanium\TiMiniService.exe
21:12:43.0471 0x1390  TiMiniService - ok
21:12:43.0517 0x1390  [ 73AAFFDD2AC3C8814B26C440E5DD9DD4, 9A4F6C31C36752ADCEEFBB54F685CA8029391C4F2BEB6569ABB4A1E4823C0DF0 ] tmactmon        C:\Windows\system32\DRIVERS\tmactmon.sys
21:12:43.0564 0x1390  tmactmon - ok
21:12:43.0611 0x1390  [ 360E61217D4E1E333583D0C721057F70, 7B4CFB53DB8CF4D65F14F28D9951B5D0E957566ABA340B11BBDBB29FC224244D ] tmcomm          C:\Windows\system32\DRIVERS\tmcomm.sys
21:12:43.0642 0x1390  tmcomm - ok
21:12:43.0673 0x1390  [ 699D34EB7C670139CA23A65372BD5743, B09A20AC120FBBE1FEFFF750B75FBB2FC0C9D449F435A2E9D7016377FF36EEDA ] tmevtmgr        C:\Windows\system32\DRIVERS\tmevtmgr.sys
21:12:43.0705 0x1390  tmevtmgr - ok
21:12:43.0767 0x1390  [ 262198EFB734012BFCD17E7479AE4A09, 862316B66590D7DD07C57576642E582D7B7E6D041962D6367BEDD2810F814341 ] tmtdi           C:\Windows\system32\DRIVERS\tmtdi.sys
21:12:43.0798 0x1390  tmtdi - ok
21:12:43.0861 0x1390  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
21:12:44.0001 0x1390  TrkWks - ok
21:12:44.0095 0x1390  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
21:12:44.0188 0x1390  TrustedInstaller - ok
21:12:44.0266 0x1390  [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
21:12:44.0313 0x1390  tssecsrv - ok
21:12:44.0438 0x1390  [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
21:12:44.0516 0x1390  TsUsbFlt - ok
21:12:44.0547 0x1390  [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD         C:\Windows\system32\drivers\TsUsbGD.sys
21:12:44.0625 0x1390  TsUsbGD - ok
21:12:44.0687 0x1390  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
21:12:44.0781 0x1390  tunnel - ok
21:12:44.0812 0x1390  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
21:12:44.0843 0x1390  uagp35 - ok
21:12:44.0875 0x1390  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
21:12:45.0046 0x1390  udfs - ok
21:12:45.0109 0x1390  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
21:12:45.0155 0x1390  UI0Detect - ok
21:12:45.0202 0x1390  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
21:12:45.0233 0x1390  uliagpkx - ok
21:12:45.0280 0x1390  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
21:12:45.0327 0x1390  umbus - ok
21:12:45.0343 0x1390  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\drivers\umpass.sys
21:12:45.0389 0x1390  UmPass - ok
21:12:45.0467 0x1390  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
21:12:45.0577 0x1390  upnphost - ok
21:12:45.0608 0x1390  [ 481DFF26B4DCA8F4CBAC1F7DCE1D6829, 5D6E404FE0AB875202CA1A3E8E9D2F4368DF6ACCFA1C872ECFAF8399CBA3A485 ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
21:12:45.0655 0x1390  usbccgp - ok
21:12:45.0686 0x1390  [ AF0892A803FDDA7492F595368E3B68E7, F263346DEB4D742EB436CF578F187AC8521D84CED52E98475E6198EC52244F07 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
21:12:45.0733 0x1390  usbcir - ok
21:12:45.0748 0x1390  [ 74EE782B1D9C241EFE425565854C661C, E8258EA65B0FCAD4E077B176E9D9324646B652D6E651241E397346A39770D065 ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
21:12:45.0795 0x1390  usbehci - ok
21:12:45.0842 0x1390  [ 76E2FFAD301490BA27B947C6507752FB, A4C6FC5C3BF428C624D0792873CB01C8F16F49B0E8B36422025A1094F0AAE231 ] usbfilter       C:\Windows\system32\DRIVERS\usbfilter.sys
21:12:45.0873 0x1390  usbfilter - ok
21:12:45.0951 0x1390  [ DC96BD9CCB8403251BCF25047573558E, 66EBF8A6B3BC0634F32DDCC8BA31F1EB5987E8C6853E1DC26005E3EED0945565 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
21:12:46.0029 0x1390  usbhub - ok
21:12:46.0045 0x1390  [ 58E546BBAF87664FC57E0F6081E4F609, 1DD99D57369A0069654432AB5325AFD8F7D422D531E053EA05FF664BA6BDAEF9 ] usbohci         C:\Windows\system32\DRIVERS\usbohci.sys
21:12:46.0091 0x1390  usbohci - ok
21:12:46.0138 0x1390  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\drivers\usbprint.sys
21:12:46.0185 0x1390  usbprint - ok
21:12:46.0216 0x1390  [ D76510CFA0FC09023077F22C2F979D86, 5662281C6D515423255D3C262EA368DBAFC250235E535FBFA3E59D3487695439 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
21:12:46.0263 0x1390  USBSTOR - ok
21:12:46.0279 0x1390  [ 81FB2216D3A60D1284455D511797DB3D, 121E52B18A1832E775EA0AE2E053BAA53E5A70E9754724B1449AE5992D63B13E ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
21:12:46.0310 0x1390  usbuhci - ok
21:12:46.0467 0x1390  [ 454800C2BC7F3927CE030141EE4F4C50, 10901E62DAA70657C499AD590DECCCA6E46FDDF4A193B2F19279E1B8ED7B1E44 ] usbvideo        C:\Windows\system32\Drivers\usbvideo.sys
21:12:46.0529 0x1390  usbvideo - ok
21:12:46.0576 0x1390  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
21:12:46.0685 0x1390  UxSms - ok
21:12:46.0716 0x1390  [ 54C0E3156872881F6AB017210278E27E, 8C3C71535FAC3897E1AE5505302387D7EC7C93D9DB6CA8AD6C1E1B26FE33D367 ] VaultSvc        C:\Windows\system32\lsass.exe
21:12:46.0763 0x1390  VaultSvc - ok
21:12:46.0841 0x1390  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
21:12:46.0888 0x1390  vdrvroot - ok
21:12:46.0950 0x1390  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds             C:\Windows\System32\vds.exe
21:12:47.0075 0x1390  vds - ok
21:12:47.0138 0x1390  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
21:12:47.0184 0x1390  vga - ok
21:12:47.0231 0x1390  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
21:12:47.0309 0x1390  VgaSave - ok
21:12:47.0340 0x1390  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
21:12:47.0387 0x1390  vhdmp - ok
21:12:47.0418 0x1390  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\drivers\viaide.sys
21:12:47.0450 0x1390  viaide - ok
21:12:47.0465 0x1390  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
21:12:47.0512 0x1390  volmgr - ok
21:12:47.0559 0x1390  [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
21:12:47.0606 0x1390  volmgrx - ok
21:12:47.0652 0x1390  [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap         C:\Windows\system32\drivers\volsnap.sys
21:12:47.0699 0x1390  volsnap - ok
21:12:47.0746 0x1390  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
21:12:47.0777 0x1390  vsmraid - ok
21:12:48.0042 0x1390  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS             C:\Windows\system32\vssvc.exe
21:12:48.0245 0x1390  VSS - ok
21:12:48.0276 0x1390  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
21:12:48.0309 0x1390  vwifibus - ok
21:12:48.0355 0x1390  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
21:12:48.0496 0x1390  vwififlt - ok
21:12:48.0589 0x1390  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
21:12:48.0808 0x1390  W32Time - ok
21:12:48.0917 0x1390  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
21:12:48.0948 0x1390  WacomPen - ok
21:12:49.0026 0x1390  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
21:12:49.0104 0x1390  WANARP - ok
21:12:49.0151 0x1390  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
21:12:49.0276 0x1390  Wanarpv6 - ok
21:12:49.0401 0x1390  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\Windows\system32\wbengine.exe
21:12:49.0557 0x1390  wbengine - ok
21:12:49.0588 0x1390  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
21:12:49.0650 0x1390  WbioSrvc - ok
21:12:49.0697 0x1390  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
21:12:49.0775 0x1390  wcncsvc - ok
21:12:49.0822 0x1390  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
21:12:49.0853 0x1390  WcsPlugInService - ok
21:12:49.0915 0x1390  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\drivers\wd.sys
21:12:49.0931 0x1390  Wd - ok
21:12:49.0993 0x1390  [ 441BD2D7B4F98134C3A4F9FA570FD250, FF20815273014C5A27C2B75E2C70FE674809293627056199F502DFDF4CECFCA1 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
21:12:50.0056 0x1390  Wdf01000 - ok
21:12:50.0103 0x1390  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost  C:\Windows\system32\wdi.dll
21:12:50.0165 0x1390  WdiServiceHost - ok
21:12:50.0196 0x1390  [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost   C:\Windows\system32\wdi.dll
21:12:50.0243 0x1390  WdiSystemHost - ok
21:12:50.0352 0x1390  [ 3DB6D04E1C64272F8B14EB8BC4616280, 9138642B1C19F895D4ECFD930160C80FBF15813CE63BBF4C899842C300FD3026 ] WebClient       C:\Windows\System32\webclnt.dll
21:12:50.0415 0x1390  WebClient - ok
21:12:50.0461 0x1390  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
21:12:50.0555 0x1390  Wecsvc - ok
21:12:50.0602 0x1390  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
21:12:50.0695 0x1390  wercplsupport - ok
21:12:50.0727 0x1390  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
21:12:50.0836 0x1390  WerSvc - ok
21:12:50.0898 0x1390  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
21:12:50.0976 0x1390  WfpLwf - ok
21:12:51.0085 0x1390  [ 52DED146E4797E6CCF94799E8E22BB2A, 57A29260D81AA3AD3F8C29E9CFA7CE3970D7A8BF673ADD9B256EE76C7DEC080E ] WimFltr         C:\Windows\system32\DRIVERS\wimfltr.sys
21:12:51.0132 0x1390  WimFltr - ok
21:12:51.0163 0x1390  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
21:12:51.0195 0x1390  WIMMount - ok
21:12:51.0257 0x1390  WinDefend - ok
21:12:51.0335 0x1390  WinHttpAutoProxySvc - ok
21:12:51.0522 0x1390  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
21:12:51.0647 0x1390  Winmgmt - ok
21:12:51.0834 0x1390  [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM           C:\Windows\system32\WsmSvc.dll
21:12:52.0053 0x1390  WinRM - ok
21:12:52.0224 0x1390  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
21:12:52.0318 0x1390  Wlansvc - ok
21:12:52.0427 0x1390  [ 06C8FA1CF39DE6A735B54D906BA791C6, D8FEC7DE227781CDA876904701B2AA995268F74DCD6CB34AA0296C557FC283B6 ] wlcrasvc        C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
21:12:52.0458 0x1390  wlcrasvc - ok
21:12:52.0723 0x1390  [ 7E47C328FC4768CB8BEAFBCFAFA70362, C98BD6A0C2F70E069D5FD3BAB31BD028DFEAC0490D180BBC28A14BE375897D8C ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
21:12:52.0869 0x1390  wlidsvc - ok
21:12:52.0931 0x1390  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\DRIVERS\wmiacpi.sys
21:12:52.0978 0x1390  WmiAcpi - ok
21:12:53.0040 0x1390  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
21:12:53.0087 0x1390  wmiApSrv - ok
21:12:53.0134 0x1390  WMPNetworkSvc - ok
21:12:53.0196 0x1390  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
21:12:53.0274 0x1390  WPCSvc - ok
21:12:53.0306 0x1390  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
21:12:53.0384 0x1390  WPDBusEnum - ok
21:12:53.0446 0x1390  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
21:12:53.0540 0x1390  ws2ifsl - ok
21:12:53.0586 0x1390  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\system32\wscsvc.dll
21:12:53.0649 0x1390  wscsvc - ok
21:12:53.0664 0x1390  WSearch - ok
21:12:53.0867 0x1390  [ 61FF576450CCC80564B850BC3FB6713A, B2843BC9E2F62D27DCF6787D063378926748CE75002BADA1873DCB5039883705 ] wuauserv        C:\Windows\system32\wuaueng.dll
21:12:54.0070 0x1390  wuauserv - ok
21:12:54.0132 0x1390  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
21:12:54.0226 0x1390  WudfPf - ok
21:12:54.0304 0x1390  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
21:12:54.0382 0x1390  WUDFRd - ok
21:12:54.0444 0x1390  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
21:12:54.0491 0x1390  wudfsvc - ok
21:12:54.0554 0x1390  [ 9A3452B3C2A46C073166C5CF49FAD1AE, D6F95F51D8E37BA4CF403965EC08CCFEEA9EEFDBFC7752432EAEC19925BDA115 ] WwanSvc         C:\Windows\System32\wwansvc.dll
21:12:54.0678 0x1390  WwanSvc - ok
21:12:54.0819 0x1390  ================ Scan global ===============================
21:12:54.0881 0x1390  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
21:12:54.0944 0x1390  [ E0E4D286839FC27F56A85B4710E16B6B, 6BBBADB8904D6159E6171A339E0BF30A41D14E885D560BFB8BB73B1FF7239E1A ] C:\Windows\system32\winsrv.dll
21:12:54.0975 0x1390  [ E0E4D286839FC27F56A85B4710E16B6B, 6BBBADB8904D6159E6171A339E0BF30A41D14E885D560BFB8BB73B1FF7239E1A ] C:\Windows\system32\winsrv.dll
21:12:55.0068 0x1390  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
21:12:55.0178 0x1390  [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe
21:12:55.0193 0x1390  [ Global ] - ok
21:12:55.0193 0x1390  ================ Scan MBR ==================================
21:12:55.0240 0x1390  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
21:12:56.0285 0x1390  \Device\Harddisk0\DR0 - ok
21:12:56.0285 0x1390  ================ Scan VBR ==================================
21:12:56.0301 0x1390  [ 9A09496633467EB9AC24A4A7C66AFE48 ] \Device\Harddisk0\DR0\Partition1
21:12:56.0301 0x1390  \Device\Harddisk0\DR0\Partition1 - ok
21:12:56.0348 0x1390  [ 4CD3DEEEDF4E7E8BDF8AD96F2B4579A0 ] \Device\Harddisk0\DR0\Partition2
21:12:56.0348 0x1390  \Device\Harddisk0\DR0\Partition2 - ok
21:12:56.0363 0x1390  ================ Scan generic autorun ======================
21:12:56.0488 0x1390  [ 58BC9B644E6B252C8337AD501B04692A, D78B436C86ACE190E275758A150D0296F55BC1407A90918916A7E085DF6C822D ] C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe
21:12:56.0519 0x1390  Trend Micro Client Framework - ok
21:12:57.0159 0x1390  [ 36F4C7EF5BFB395CE24F57507F66CE09, D56160E1831BAB58F790D927DED3C3E1651BA28C0C58CDAE1AE06C4B516BBDA2 ] C:\Program Files\AVAST Software\Avast\AvastUI.exe
21:12:57.0611 0x1390  AvastUI.exe - ok
21:12:57.0642 0x1390  Waiting for KSN requests completion. In queue: 389
21:12:58.0656 0x1390  Waiting for KSN requests completion. In queue: 79
21:12:59.0670 0x1390  Waiting for KSN requests completion. In queue: 79
21:13:00.0911 0x1390  AV detected via SS2: Trend Micro Titanium Internet Security, C:\Program Files\Trend Micro\Titanium\wschandler.exe ( 3.0.0.1345 ), 0x40000 ( disabled : updated )
21:13:01.0114 0x1390  AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 11.2.2738.0 ), 0x40000 ( disabled : updated )
21:13:01.0285 0x1390  Win FW state via NFP2: enabled ( trusted )
21:13:06.0355 0x1390  ============================================================
21:13:06.0355 0x1390  Scan finished
21:13:06.0355 0x1390  ============================================================
21:13:06.0371 0x0aa4  Detected object count: 0
21:13:06.0371 0x0aa4  Actual detected object count: 0
         


Alt 12.05.2016, 20:32   #6
M-K-D-B
/// TB-Ausbilder
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



Servus,




Schritt 1
Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).





Schritt 2
Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.







Schritt 3

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.







Schritt 4
  • Starte die FRST.exe erneut. Setze einen Haken vor Addition.txt und drücke auf Scan.
  • FRST erstellt nun zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.






Bitte poste mit deiner nächsten Antwort
  • die Logdatei von AdwCleaner,
  • die Logdatei von MBAM,
  • die Logdatei von JRT,
  • die beiden neuen Logdateien von FRST.

Alt 12.05.2016, 21:00   #7
SaSa591xx
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



kannst du mir WENN ich etwas habe, sagen was es ist, ... bin ein wenig neugierig und möchte wissen was ich tue und warum ich es tue, DANKE! ich weiß, es ist nicht deine aufgabe, aber so ein bisschen wissen, würde ich mir SEHR GERNE aneignen (:

Code:
ATTFilter
# AdwCleaner v5.116 - Bericht erstellt am 12/05/2016 um 21:41:25
# Aktualisiert am 09/05/2016 von Xplode
# Datenbank : 2016-05-09.1 [Server]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (X64)
# Benutzername : 59192 - 59192-PC
# Gestartet von : C:\Users\59192\Desktop\AdwCleaner_5.116.exe
# Option : Löschen
# Unterstützung : hxxp://toolslib.net/forum

***** [ Dienste ] *****


***** [ Ordner ] *****


***** [ Dateien ] *****


***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Verknüpfungen ] *****


***** [ Aufgabenplanung ] *****


***** [ Registrierungsdatenbank ] *****

[-] Schlüssel gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83FF80F4-8C74-4B80-B5BA-C8DDD434E5C4}
[-] Schlüssel gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10921475-03CE-4E04-90CE-E2E7EF20C814}

***** [ Internetbrowser ] *****


*************************

:: "Tracing" Schlüssel gelöscht
:: Proxy Einstellungen zurückgesetzt
:: Winsock Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [3376 Bytes] - [11/05/2016 16:54:19]
C:\AdwCleaner\AdwCleaner[C2].txt - [1613 Bytes] - [11/05/2016 23:23:45]
C:\AdwCleaner\AdwCleaner[C3].txt - [1313 Bytes] - [12/05/2016 21:41:25]
C:\AdwCleaner\AdwCleaner[S1].txt - [3044 Bytes] - [11/05/2016 16:29:38]
C:\AdwCleaner\AdwCleaner[S2].txt - [1305 Bytes] - [11/05/2016 22:58:38]
C:\AdwCleaner\AdwCleaner[S3].txt - [1306 Bytes] - [11/05/2016 23:00:45]
C:\AdwCleaner\AdwCleaner[S4].txt - [1452 Bytes] - [12/05/2016 15:36:52]
C:\AdwCleaner\AdwCleaner[S5].txt - [1523 Bytes] - [12/05/2016 21:35:42]

########## EOF - C:\AdwCleaner\AdwCleaner[C3].txt - [1751 Bytes] ##########
         
mbam kommt gleich

Alt 12.05.2016, 21:01   #8
M-K-D-B
/// TB-Ausbilder
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



Servus,


ok.

Alt 12.05.2016, 22:14   #9
SaSa591xx
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



bitte um entschuldigung, aber mbam musste neugestartet werde, ... brach einfach ab, dauert also noch etwas

Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlaufdatum: 12.05.2016
Suchlaufzeit: 22:13
Protokolldatei: mbam.txt
Administrator: Ja

Version: 2.2.1.1043
Malware-Datenbank: v2016.05.12.07
Rootkit-Datenbank: v2016.05.06.01
Lizenz: Testversion
Malware-Schutz: Aktiviert
Schutz vor bösartigen Websites: Aktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: 59192

Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 294157
Abgelaufene Zeit: 31 Min., 14 Sek.

Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(keine bösartigen Elemente erkannt)

Module: 0
(keine bösartigen Elemente erkannt)

Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)

Registrierungswerte: 0
(keine bösartigen Elemente erkannt)

Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)

Ordner: 0
(keine bösartigen Elemente erkannt)

Dateien: 0
(keine bösartigen Elemente erkannt)

Physische Sektoren: 0
(keine bösartigen Elemente erkannt)


(end)
         
Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.0.6 (04.25.2016)
Operating System: Windows 7 Home Premium x64 
Ran by 59192 (Administrator) on 12.05.2016 at 22:51:24,31
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 35 

Successfully deleted: C:\ProgramData\iobit\driver booster (Folder) 
Successfully deleted: C:\ProgramData\productdata (Folder) 
Successfully deleted: C:\Users\59192\AppData\Roaming\iobit\driver booster (Folder) 
Successfully deleted: C:\Users\59192\AppData\Roaming\productdata (Folder) 
Successfully deleted: C:\Windows\system32\Tasks\Driver Booster Scheduler (Task)
Successfully deleted: C:\Windows\system32\Tasks\Driver Booster SkipUAC (59192) (Task)
Successfully deleted: C:\Windows\system32\Tasks\Uninstaller_SkipUac_59192 (Task)
Successfully deleted: C:\Program Files (x86)\iobit\driver booster (Folder) 
Successfully deleted: C:\Users\59192\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\59192\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\14M912AF (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\59192\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5R9I7XXZ (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\59192\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\59192\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6BID8ZIY (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\59192\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7HYKE3V7 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\59192\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8KB3IX7O (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\59192\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E0RZ04HV (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\59192\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\59192\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KLRQO2D6 (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\59192\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) 
Successfully deleted: C:\Users\59192\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZFOQORBZ (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\prefetch\DRIVER BOOSTER FREE - CHIP-IN-05885F56.pf (File) 
Successfully deleted: C:\Windows\prefetch\GOOGLETOOLBARNOTIFIER.EXE-7AE0A20E.pf (File) 
Successfully deleted: C:\Windows\prefetch\GOOGLETOOLBARUSER_32.EXE-34B1B1C5.pf (File) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\0PS72R2M (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\14M912AF (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\5R9I7XXZ (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\62AXOPQ5 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\6BID8ZIY (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7HYKE3V7 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8KB3IX7O (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\E0RZ04HV (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\FZG8CKJ5 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\KLRQO2D6 (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\LIXMVQOA (Temporary Internet Files Folder) 
Successfully deleted: C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZFOQORBZ (Temporary Internet Files Folder) 



Registry: 3 

Successfully deleted: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} (Registry Key)
Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} (Registry Key)




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 12.05.2016 at 23:06:45,09
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:09-05-2016
durchgeführt von 59192 (Administrator) auf 59192-PC (12-05-2016 23:10:34)
Gestartet von C:\Users\59192\Desktop
Geladene Profile: 59192 (Verfügbare Profile: 59192)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: IE)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\TiMiniService.exe
(Trend Micro Inc.) C:\Program Files\Trend Micro\Titanium\TiResumeSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [Trend Micro Client Framework] => C:\Program Files\Trend Micro\UniClient\UiFrmWrk\UIWatchDog.exe [192520 2010-10-12] (Trend Micro Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7400576 2016-05-12] (AVAST Software)
HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-05-11] (AVAST Software)
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\ASUSWSShellExt64.dll [2010-09-02] (eCareme Technologies, Inc.)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 80.69.100.212 80.69.100.205
Tcpip\..\Interfaces\{BF1A99F9-E950-48BE-A3E6-6642B7529BAF}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{F25CE885-A832-4338-8D09-0C20AD424728}: [DhcpNameServer] 80.69.100.212 80.69.100.205

Internet Explorer:
==================
HKU\S-1-5-21-508882545-2078725825-758961529-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-508882545-2078725825-758961529-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-508882545-2078725825-758961529-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus.msn.com
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ASUT
SearchScopes: HKU\S-1-5-21-508882545-2078725825-758961529-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2015-11-12] (IObit)
BHO: TmIEPlugInBHO Class -> {1CA1377B-DC1D-4A52-9585-6E06050FAC53} -> C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg.dll [2010-09-17] (Trend Micro Inc.)
BHO: Partner BHO Class -> {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} -> C:\ProgramData\Partner\Partner64.dll => Keine Datei
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2016-05-11] (AVAST Software)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2011-04-13] (Google Inc.)
BHO: Google Toolbar Notifier BHO -> {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -> C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll [2011-04-13] (Google Inc.)
BHO: TmBpIeBHO Class -> {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} -> C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe64.dll [2010-09-17] (Trend Micro Inc.)
BHO-x32: TmIEPlugInBHO Class -> {1CA1377B-DC1D-4A52-9585-6E06050FAC53} -> C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll [2010-09-17] (Trend Micro Inc.)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-03-13] (Atheros Commnucations)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-05-11] (AVAST Software)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2010-09-21] (Microsoft Corp.)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2011-04-13] (Google Inc.)
BHO-x32: TmBpIeBHO Class -> {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} -> C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe32.dll [2010-09-17] (Trend Micro Inc.)
BHO-x32: Google Dictionary Compression sdch -> {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} -> C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll [2011-04-13] (Google Inc.)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-02] (Microsoft Corporation.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2011-04-13] (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2011-04-13] (Google Inc.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-03-02] (Microsoft Corporation.)
Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe64.dll [2010-09-17] (Trend Micro Inc.)
Handler-x32: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - C:\Program Files\Trend Micro\AMSP\Module\20002\6.5.1234\6.5.1234\TmBpIe32.dll [2010-09-17] (Trend Micro Inc.)
Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg.dll [2010-09-17] (Trend Micro Inc.)
Handler-x32: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\TmIEPlg32.dll [2010-09-17] (Trend Micro Inc.)

FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_21_0_0_213.dll [2016-05-11] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_21_0_0_213.dll [2016-05-11] ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll [2010-04-01] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.30.3\npGoogleUpdate3.dll [2016-05-11] (Google Inc.)
FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll [2010-01-23] (Zeon Corporation)
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-05-11]
FF HKLM-x32\...\Firefox\Extensions: [{22C7F6C6-8D67-4534-92B5-529A0EC09405}] - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension
FF Extension: Trend Micro NSC Firefox Extension - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension [2011-04-13] [ist nicht signiert]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF

Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com/ig/redirectdomain?brand=ASUT&bmod=ASUT
CHR Profile: C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-05-11]
CHR Extension: (Google Drive) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-05-11]
CHR Extension: (YouTube) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-11]
CHR Extension: (Google Docs Offline) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-11]
CHR Extension: (Avast Online Security) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-05-11]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-11]
CHR Extension: (Google Mail) - C:\Users\59192\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-11]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2016-05-11]

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AdvancedSystemCareService9; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [446240 2016-01-05] (IObit)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2011-07-14] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [Datei ist nicht signiert]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [Datei ist nicht signiert]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [243296 2016-05-11] (AVAST Software)
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2960672 2016-04-21] (IObit)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1136608 2016-03-10] (Malwarebytes)
R2 TiMiniService; C:\Program Files\Trend Micro\Titanium\TiMiniService.exe [241488 2010-09-17] (Trend Micro Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation)
S3 Amsp; "C:\Program Files\Trend Micro\AMSP\coreServiceShell.exe" coreFrameworkHost.exe -m=rb -dt=60000 [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R0 amdide64; C:\Windows\System32\DRIVERS\amdide64.sys [11944 2016-05-11] (Advanced Micro Devices Inc.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2016-05-11] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2016-05-11] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [107792 2016-05-11] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2016-05-11] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2016-05-11] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1070904 2016-05-11] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [465792 2016-05-11] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [166432 2016-05-11] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [287528 2016-05-11] (AVAST Software)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-05-11] (REALiX(tm))
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2016-05-12] (Malwarebytes)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64896 2016-03-10] (Malwarebytes Corporation)
R3 RTSUER; C:\Windows\System32\Drivers\RtsUer.sys [413912 2016-05-11] (Realsil Semiconductor Corporation)
R2 tmactmon; C:\Windows\System32\DRIVERS\tmactmon.sys [90704 2010-09-17] (Trend Micro Inc.)
R2 tmcomm; C:\Windows\System32\DRIVERS\tmcomm.sys [144464 2010-09-17] (Trend Micro Inc.)
R2 tmevtmgr; C:\Windows\System32\DRIVERS\tmevtmgr.sys [67664 2010-09-17] (Trend Micro Inc.)
R1 tmtdi; C:\Windows\System32\DRIVERS\tmtdi.sys [105552 2010-09-17] (Trend Micro Inc.)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-05-12 23:06 - 2016-05-12 23:06 - 00005834 _____ C:\Users\59192\Desktop\JRT.txt
2016-05-12 22:49 - 2016-05-12 22:49 - 00001199 _____ C:\Users\59192\Desktop\mbam.txt
2016-05-12 21:38 - 2016-05-12 21:39 - 01610816 _____ (Malwarebytes) C:\Users\59192\Desktop\JRT.exe
2016-05-12 21:38 - 2016-05-12 21:38 - 22851472 _____ (Malwarebytes ) C:\Users\59192\Desktop\mbam-setup-2.2.1.1043.exe
2016-05-12 21:37 - 2016-05-12 21:37 - 22851472 _____ (Malwarebytes ) C:\Users\59192\Downloads\mbam-setup-2.2.1.1043 (1).exe
2016-05-12 21:34 - 2016-05-12 21:34 - 03640384 _____ C:\Users\59192\Desktop\AdwCleaner_5.116.exe
2016-05-12 21:00 - 2016-05-12 21:04 - 00037983 _____ C:\Users\59192\Desktop\Addition.txt
2016-05-12 20:59 - 2016-05-12 21:26 - 00203216 _____ C:\TDSSKiller.3.1.0.9_12.05.2016_20.59.35_log.txt
2016-05-12 20:58 - 2016-05-12 20:58 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\59192\Downloads\tdsskiller (1).exe
2016-05-12 20:55 - 2016-05-12 23:10 - 00017293 _____ C:\Users\59192\Desktop\FRST.txt
2016-05-12 20:55 - 2016-05-12 23:10 - 00000000 ____D C:\FRST
2016-05-12 20:53 - 2016-05-12 20:53 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\59192\Desktop\tdsskiller.exe
2016-05-12 20:52 - 2016-05-12 20:52 - 04727984 _____ (Kaspersky Lab ZAO) C:\Users\59192\Downloads\tdsskiller.exe
2016-05-12 20:51 - 2016-05-12 20:52 - 02381312 _____ (Farbar) C:\Users\59192\Desktop\FRST64.exe
2016-05-12 20:22 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2016-05-12 20:22 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2016-05-12 20:22 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2016-05-12 20:22 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2016-05-12 20:22 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2016-05-12 20:22 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2016-05-12 20:22 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2016-05-12 20:22 - 2012-06-02 16:57 - 00000003 _____ C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2016-05-12 17:59 - 2016-04-09 08:57 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-05-12 17:59 - 2016-04-09 08:54 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-05-12 17:59 - 2015-01-17 04:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2016-05-12 17:59 - 2015-01-17 04:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2016-05-12 17:59 - 2014-09-04 07:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2016-05-12 17:59 - 2014-09-04 07:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2016-05-12 17:58 - 2016-01-22 08:18 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2016-05-12 17:58 - 2016-01-22 08:18 - 00723968 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2016-05-12 17:58 - 2016-01-22 08:17 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\mtxoci.dll
2016-05-12 17:58 - 2016-01-22 08:04 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll
2016-05-12 17:58 - 2016-01-22 08:04 - 00535040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll
2016-05-12 17:58 - 2016-01-22 08:02 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll
2016-05-12 17:58 - 2016-01-22 08:02 - 00114176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxoci.dll
2016-05-12 17:57 - 2016-01-22 08:19 - 14179840 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-05-12 17:57 - 2016-01-22 08:15 - 01866752 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-05-12 17:57 - 2016-01-22 08:12 - 01940992 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-05-12 17:57 - 2016-01-22 08:05 - 12877824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2016-05-12 17:57 - 2016-01-22 08:00 - 01498624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2016-05-12 17:57 - 2016-01-22 07:59 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-05-12 17:57 - 2016-01-22 07:19 - 03231232 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-05-12 17:57 - 2016-01-22 07:12 - 02973184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-05-12 17:57 - 2014-10-03 04:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2016-05-12 17:57 - 2014-10-03 04:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2016-05-12 17:57 - 2014-10-03 04:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2016-05-12 17:57 - 2014-10-03 04:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2016-05-12 17:57 - 2014-10-03 04:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2016-05-12 17:57 - 2014-10-03 03:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll
2016-05-12 17:57 - 2014-10-03 03:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll
2016-05-12 17:57 - 2014-10-03 03:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll
2016-05-12 17:57 - 2014-10-03 03:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll
2016-05-12 17:57 - 2014-10-03 03:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe
2016-05-12 17:56 - 2016-02-09 11:57 - 14634496 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2016-05-12 17:56 - 2016-02-09 11:57 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2016-05-12 17:56 - 2016-02-09 11:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2016-05-12 17:56 - 2016-02-09 11:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2016-05-12 17:56 - 2016-02-09 11:54 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2016-05-12 17:56 - 2016-02-09 11:51 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2016-05-12 17:56 - 2016-02-09 11:51 - 11411456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2016-05-12 17:56 - 2016-02-09 11:13 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2016-05-12 17:56 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2016-05-12 17:56 - 2016-02-09 11:13 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2016-05-12 17:56 - 2015-02-03 05:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-05-12 17:56 - 2015-02-03 05:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2016-05-12 17:56 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2016-05-12 17:56 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2016-05-12 17:55 - 2015-10-13 06:57 - 00950720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2016-05-12 17:55 - 2011-05-24 13:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2016-05-12 17:55 - 2011-05-24 12:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll
2016-05-12 17:55 - 2011-05-24 12:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll
2016-05-12 17:55 - 2011-05-24 12:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll
2016-05-12 17:55 - 2011-05-24 12:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe
2016-05-12 17:54 - 2016-04-06 17:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2016-05-12 17:54 - 2014-10-25 03:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2016-05-12 17:54 - 2014-10-25 03:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2016-05-12 17:53 - 2016-03-09 20:54 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2016-05-12 17:53 - 2016-03-09 20:34 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
2016-05-12 17:53 - 2014-07-17 04:07 - 03722240 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2016-05-12 17:53 - 2014-07-17 04:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2016-05-12 17:53 - 2014-07-17 04:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2016-05-12 17:53 - 2014-07-17 04:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2016-05-12 17:53 - 2014-07-17 04:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2016-05-12 17:53 - 2014-07-17 04:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2016-05-12 17:53 - 2014-07-17 03:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2016-05-12 17:53 - 2014-07-17 03:39 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2016-05-12 17:53 - 2014-07-17 03:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2016-05-12 17:53 - 2014-07-17 03:39 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2016-05-12 17:53 - 2014-07-17 03:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2016-05-12 17:53 - 2014-07-17 03:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2016-05-12 17:53 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2016-05-12 17:53 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2016-05-12 17:53 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2016-05-12 17:53 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2016-05-12 17:53 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2016-05-12 17:53 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2016-05-12 17:53 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2016-05-12 17:53 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll
2016-05-12 17:53 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll
2016-05-12 17:53 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2016-05-12 17:53 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2016-05-12 17:53 - 2011-12-16 10:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2016-05-12 17:53 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll
2016-05-12 17:53 - 2011-05-03 07:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2016-05-12 17:53 - 2011-05-03 06:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2016-05-12 17:53 - 2011-02-18 12:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2016-05-12 17:53 - 2011-02-18 07:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe
2016-05-12 17:52 - 2015-11-03 21:04 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\els.dll
2016-05-12 17:52 - 2015-11-03 20:55 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\els.dll
2016-05-12 17:52 - 2014-12-08 05:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2016-05-12 17:52 - 2014-12-08 04:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2016-05-12 17:52 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2016-05-12 17:52 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2016-05-12 17:52 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2016-05-12 17:52 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2016-05-12 17:52 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2016-05-12 17:52 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2016-05-12 17:52 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2016-05-12 17:52 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2016-05-12 17:52 - 2013-05-13 07:51 - 01464320 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2016-05-12 17:52 - 2013-05-13 07:51 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2016-05-12 17:52 - 2013-05-13 07:51 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2016-05-12 17:52 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2016-05-12 17:52 - 2013-05-13 06:45 - 01160192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2016-05-12 17:52 - 2013-05-13 06:45 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2016-05-12 17:52 - 2013-05-13 06:45 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2016-05-12 17:52 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2016-05-12 17:52 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2016-05-12 17:52 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2016-05-12 17:51 - 2016-04-09 09:02 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-05-12 17:51 - 2016-04-09 09:01 - 05546216 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-05-12 17:51 - 2016-04-09 09:01 - 00706280 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-05-12 17:51 - 2016-04-09 09:01 - 00154344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-05-12 17:51 - 2016-04-09 09:01 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-05-12 17:51 - 2016-04-09 08:59 - 03998952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2016-05-12 17:51 - 2016-04-09 08:59 - 03943144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2016-05-12 17:51 - 2016-04-09 08:59 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-05-12 17:51 - 2016-04-09 08:58 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 01464320 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00260608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 08:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 07:52 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2016-05-12 17:51 - 2016-04-09 07:52 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2016-05-12 17:51 - 2016-04-09 07:52 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2016-05-12 17:51 - 2016-04-09 07:51 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-05-12 17:51 - 2016-04-09 07:48 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2016-05-12 17:51 - 2016-04-09 07:47 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-05-12 17:51 - 2016-04-09 07:44 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-05-12 17:51 - 2016-04-09 07:44 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-05-12 17:51 - 2016-04-09 07:44 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-05-12 17:51 - 2016-04-09 07:43 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2016-05-12 17:51 - 2016-04-09 07:43 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-05-12 17:51 - 2016-04-09 07:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2016-05-12 17:51 - 2016-04-09 07:38 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2016-05-12 17:51 - 2016-04-09 07:38 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2016-05-12 17:51 - 2016-04-09 07:38 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2016-05-12 17:51 - 2016-04-09 07:38 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2016-05-12 17:51 - 2016-04-09 07:37 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2016-05-12 17:51 - 2016-04-09 07:37 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 07:37 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 07:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-05-12 17:51 - 2016-04-09 07:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2016-05-12 17:51 - 2016-03-24 00:43 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2016-05-12 17:51 - 2016-03-24 00:40 - 00634432 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2016-05-12 17:51 - 2016-03-24 00:40 - 00546656 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2016-05-12 17:51 - 2016-03-24 00:40 - 00459344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-05-12 17:51 - 2016-03-24 00:40 - 00298192 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2016-05-12 17:51 - 2016-03-24 00:39 - 00251000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2016-05-12 17:50 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-05-12 17:49 - 2015-03-04 06:55 - 00367552 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2016-05-12 17:49 - 2015-03-04 06:41 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2016-05-12 17:49 - 2015-03-04 06:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2016-05-12 17:49 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2016-05-12 17:49 - 2011-08-27 07:37 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2016-05-12 17:49 - 2011-08-27 07:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2016-05-12 17:49 - 2011-08-27 06:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2016-05-12 17:49 - 2011-08-27 06:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll
2016-05-12 17:48 - 2015-09-02 05:04 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-05-12 17:48 - 2015-09-02 05:04 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-05-12 17:48 - 2015-09-02 05:04 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2016-05-12 17:48 - 2015-09-02 05:04 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2016-05-12 17:48 - 2015-09-02 04:48 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2016-05-12 17:48 - 2015-09-02 04:48 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-05-12 17:48 - 2015-09-02 04:48 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2016-05-12 17:48 - 2015-09-02 04:47 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2016-05-12 17:48 - 2015-09-02 03:51 - 03209216 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-05-12 17:48 - 2015-09-02 03:47 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-05-12 17:48 - 2015-09-02 03:33 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-05-12 17:47 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2016-05-12 17:47 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2016-05-12 17:45 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2016-05-12 17:45 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2016-05-12 17:45 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2016-05-12 17:45 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2016-05-12 17:45 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2016-05-12 17:31 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2016-05-12 17:31 - 2012-03-01 08:38 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2016-05-12 17:31 - 2012-03-01 08:33 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2016-05-12 17:31 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2016-05-12 17:31 - 2012-03-01 07:37 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2016-05-12 17:31 - 2012-03-01 07:33 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2016-05-12 17:31 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll
2016-05-12 17:24 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2016-05-12 17:24 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2016-05-12 17:24 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2016-05-12 17:24 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2016-05-12 17:24 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2016-05-12 17:24 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2016-05-12 17:24 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2016-05-12 17:24 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2016-05-12 16:30 - 2015-02-04 05:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2016-05-12 16:30 - 2015-02-04 04:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2016-05-12 16:11 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2016-05-12 16:11 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2016-05-12 16:11 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2016-05-12 14:26 - 2016-05-12 14:29 - 00038119 _____ C:\Users\59192\Downloads\Addition.txt
2016-05-11 22:48 - 2016-05-12 17:14 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-05-11 22:47 - 2016-05-12 17:14 - 00000000 ____D C:\Users\59192\Desktop\mbar
2016-05-11 22:45 - 2016-05-11 22:45 - 16563352 _____ (Malwarebytes Corp.) C:\Users\59192\Downloads\mbar-1.09.3.1001.exe
2016-05-11 18:14 - 2016-05-11 22:04 - 00000000 ____D C:\Windows\erdnt
2016-05-11 16:23 - 2016-05-12 21:41 - 00000000 ____D C:\AdwCleaner
2016-05-11 16:21 - 2016-05-11 16:21 - 03640384 _____ C:\Users\59192\Downloads\AdwCleaner_5.116.exe
2016-05-11 16:17 - 2016-05-12 22:12 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2016-05-11 16:14 - 2016-05-12 21:55 - 00001104 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2016-05-11 16:14 - 2016-05-12 21:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2016-05-11 16:14 - 2016-05-12 21:55 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2016-05-11 16:14 - 2016-05-11 16:14 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-05-11 16:14 - 2016-03-10 14:09 - 00064896 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2016-05-11 16:14 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2016-05-11 16:14 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2016-05-11 16:11 - 2016-05-11 16:12 - 22851472 _____ (Malwarebytes ) C:\Users\59192\Downloads\mbam-setup-2.2.1.1043.exe
2016-05-11 15:17 - 2016-05-11 15:17 - 00000000 ____D C:\ProgramData\BDLogging
2016-05-11 15:17 - 2016-03-31 17:54 - 00452040 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys
2016-05-11 14:54 - 2016-05-11 14:54 - 71184384 _____ C:\Windows\system32\config\SOFTWARE.iobit
2016-05-11 14:54 - 2016-05-11 14:54 - 126414848 _____ C:\Windows\system32\config\COMPONENTS.iobit
2016-05-11 14:54 - 2016-05-11 14:54 - 00278528 _____ C:\Windows\system32\config\DEFAULT.iobit
2016-05-11 14:54 - 2016-05-11 14:54 - 00024576 _____ C:\Windows\system32\config\SECURITY.iobit
2016-05-11 14:54 - 2016-05-11 14:54 - 00024576 _____ C:\Windows\system32\config\SAM.iobit
2016-05-11 14:47 - 2016-05-11 14:47 - 00000000 ___SD C:\Users\59192\AppData\LocalLow\Temp
2016-05-11 14:44 - 2016-05-11 14:44 - 00000000 ____D C:\Users\59192\AppData\Roaming\AVAST Software
2016-05-11 14:43 - 2016-05-11 14:43 - 00003902 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1462970565
2016-05-11 14:43 - 2016-05-11 14:43 - 00001924 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2016-05-11 14:43 - 2016-05-11 14:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2016-05-11 14:43 - 2016-05-11 14:42 - 00001039 _____ C:\Users\Public\Desktop\Avast SafeZone Browser.lnk
2016-05-11 14:43 - 2016-05-11 14:42 - 00001039 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk
2016-05-11 14:40 - 2016-05-12 07:48 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2016-05-11 14:40 - 2016-05-11 14:40 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software
2016-05-11 14:40 - 2016-05-11 14:40 - 00000000 ____D C:\Program Files\Common Files\AV
2016-05-11 14:40 - 2016-05-11 14:38 - 00465792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2016-05-11 14:40 - 2016-05-11 14:38 - 00287528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2016-05-11 14:40 - 2016-05-11 14:38 - 00166432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2016-05-11 14:40 - 2016-05-11 14:38 - 00107792 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2016-05-11 14:40 - 2016-05-11 14:38 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2016-05-11 14:40 - 2016-05-11 14:38 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2016-05-11 14:40 - 2016-05-11 14:38 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2016-05-11 14:40 - 2016-05-11 14:37 - 01070904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2016-05-11 14:40 - 2016-05-11 14:37 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2016-05-11 14:38 - 2016-05-11 14:38 - 00398152 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2016-05-11 14:38 - 2016-05-11 14:38 - 00052184 _____ (AVAST Software) C:\Windows\avastSS.scr
2016-05-11 14:37 - 2016-05-11 14:37 - 00000000 ____D C:\Program Files\AVAST Software
2016-05-11 14:36 - 2016-05-11 14:38 - 00000000 ____D C:\ProgramData\AVAST Software
2016-05-11 13:50 - 2016-05-11 14:07 - 00000946 _____ C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-05-11 13:50 - 2016-05-11 13:50 - 00003940 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-05-11 13:35 - 2016-05-11 13:35 - 72203792 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2016-05-11 13:35 - 2016-05-11 13:35 - 05576400 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2016-05-11 13:35 - 2016-05-11 13:35 - 04803840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2016-05-11 13:35 - 2016-05-11 13:35 - 03283248 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 03282032 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 03198720 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 03081808 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 02894976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2016-05-11 13:35 - 2016-05-11 13:35 - 02050184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 02049664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 01780624 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 01591064 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 01508936 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 01356512 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00743968 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00708320 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00689888 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00678192 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00677680 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00574760 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00532384 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00504312 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00445408 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00441272 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00387320 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00343712 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00330568 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00321720 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00253904 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00253872 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00231920 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00221976 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00214840 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00209536 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00192992 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00190552 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFProc64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00166208 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00122328 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00118600 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00110984 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00096064 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFComm64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00093504 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFSAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00092480 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFHAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00092480 _____ (Sonic Focus, Inc.) C:\Windows\system32\SFDAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00090920 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00088352 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00088328 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00083632 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2016-05-11 13:35 - 2016-05-11 13:35 - 00023704 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2016-05-11 13:32 - 2016-05-11 13:32 - 00113392 _____ (Advanced Micro Devices) C:\Windows\system32\DelayAPO.dll
2016-05-11 13:32 - 2016-05-11 13:32 - 00104984 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\AtihdW76.sys
2016-05-11 13:29 - 2016-05-11 13:29 - 09890008 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RsCRIcon.dll
2016-05-11 13:29 - 2016-05-11 13:29 - 04330200 _____ (TODO: <Company name>) C:\Windows\RtCRU64.exe
2016-05-11 13:29 - 2016-05-11 13:29 - 01027840 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2016-05-11 13:29 - 2016-05-11 13:29 - 00413912 _____ (Realsil Semiconductor Corporation) C:\Windows\system32\Drivers\RtsUer.sys
2016-05-11 13:29 - 2016-05-11 13:29 - 00083160 _____ (Realtek Semiconductor.) C:\Windows\system32\RtCRX64.dll
2016-05-11 13:29 - 2016-05-11 13:29 - 00082544 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2016-05-11 13:26 - 2016-05-11 13:26 - 04162560 _____ (Qualcomm Atheros Communications, Inc.) C:\Windows\system32\Drivers\athrx.sys
2016-05-11 13:25 - 2016-05-11 13:25 - 00600776 _____ (Qualcomm Atheros) C:\Windows\system32\Drivers\btfilter.sys
2016-05-11 13:25 - 2016-05-11 13:25 - 00011944 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\Drivers\amdide64.sys
2016-05-11 13:20 - 2016-05-11 13:20 - 26029568 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 19606528 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 15713280 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 13288960 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 10242560 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2016-05-11 13:20 - 2016-05-11 13:20 - 06606848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 06322688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 05481984 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 03478016 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 03048448 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00919040 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00618823 _____ C:\Windows\system32\atiicdxx.dat
2016-05-11 13:20 - 2016-05-11 13:20 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGX.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00364544 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00360960 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys
2016-05-11 13:20 - 2016-05-11 13:20 - 00204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2016-05-11 13:20 - 2016-05-11 13:20 - 00204952 _____ C:\Windows\system32\ativvsvl.dat
2016-05-11 13:20 - 2016-05-11 13:20 - 00159744 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe
2016-05-11 13:20 - 2016-05-11 13:20 - 00157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2016-05-11 13:20 - 2016-05-11 13:20 - 00157144 _____ C:\Windows\system32\ativvsva.dat
2016-05-11 13:20 - 2016-05-11 13:20 - 00120320 _____ (AMD) C:\Windows\system32\atitmm64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00069632 _____ (AMD) C:\Windows\system32\coinst_8.973.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00059392 _____ (ATI Technologies, Inc.) C:\Windows\system32\atiedu64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00056832 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00056832 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00056320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00056320 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00053248 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00051200 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00046080 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00045056 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00044544 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00044032 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\ati2edxx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00042496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00041984 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00033280 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00021504 _____ (AMD) C:\Windows\system32\atimuixx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00017920 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00014848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00014848 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll
2016-05-11 13:20 - 2016-05-11 13:20 - 00003917 _____ C:\Windows\SysWOW64\atipblag.dat
2016-05-11 13:20 - 2016-05-11 13:20 - 00003917 _____ C:\Windows\system32\atipblag.dat
2016-05-11 13:19 - 2016-05-11 13:20 - 02852480 _____ C:\Windows\SysWOW64\atiumdva.cap
2016-05-11 13:19 - 2016-05-11 13:19 - 02818784 _____ C:\Windows\system32\atiumd6a.cap
2016-05-11 13:19 - 2016-05-11 13:19 - 00250344 _____ C:\Windows\SysWOW64\atiapfxx.blb
2016-05-11 13:19 - 2016-05-11 13:19 - 00250344 _____ C:\Windows\system32\atiapfxx.blb
2016-05-11 13:19 - 2016-05-11 13:19 - 00038177 _____ C:\Windows\atiogl.xml
2016-05-11 12:58 - 2016-05-11 12:58 - 24917504 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 19607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 14404096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 12829696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 06026240 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 04305920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-05-11 12:58 - 2016-05-11 12:58 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-05-11 12:58 - 2016-05-11 12:58 - 02426880 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 02278912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-05-11 12:58 - 2016-05-11 12:58 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-05-11 12:58 - 2016-05-11 12:58 - 01950720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2016-05-11 12:58 - 2016-05-11 12:58 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2016-05-11 12:58 - 2016-05-11 12:58 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-05-11 12:58 - 2016-05-11 12:58 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00342728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-05-11 12:58 - 2016-05-11 12:58 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2016-05-11 12:58 - 2016-05-11 12:58 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2016-05-11 12:58 - 2016-05-11 12:58 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2016-05-11 12:58 - 2016-05-11 12:58 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2016-05-11 12:58 - 2016-05-11 12:58 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-05-11 12:56 - 2016-05-11 12:56 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2016-05-11 12:56 - 2016-05-11 12:56 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2016-05-11 12:55 - 2016-05-11 12:55 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2016-05-11 12:55 - 2016-05-11 12:55 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2016-05-11 12:55 - 2016-05-11 12:55 - 00376688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2016-05-11 12:55 - 2016-05-11 12:55 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-05-11 12:55 - 2016-05-11 12:55 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2016-05-11 12:55 - 2016-05-11 12:55 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2016-05-11 12:54 - 2016-05-11 12:54 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2016-05-11 12:48 - 2016-05-11 12:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-05-11 12:48 - 2016-05-11 12:48 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2016-05-11 12:45 - 2016-05-11 12:45 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2016-05-11 12:45 - 2016-05-11 12:45 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2016-05-11 12:43 - 2016-05-11 12:43 - 00000000 ____D C:\Windows\IObit
2016-05-11 12:42 - 2016-05-11 13:40 - 00002166 _____ C:\Users\Public\Desktop\Driver Booster 3.lnk
2016-05-11 12:42 - 2016-05-11 12:42 - 00027552 _____ (REALiX(tm)) C:\Windows\SysWOW64\Drivers\HWiNFO64A.SYS
2016-05-11 12:42 - 2016-05-11 12:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 3
2016-05-11 12:36 - 2016-05-12 22:22 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-05-11 12:36 - 2016-05-11 13:50 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-05-11 12:36 - 2016-05-11 13:50 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-05-11 12:36 - 2016-05-11 13:50 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-05-11 12:36 - 2016-05-11 12:36 - 00000000 ____D C:\Windows\system32\Macromed
2016-05-11 12:35 - 2016-05-11 13:51 - 00000000 ____D C:\Users\59192\AppData\Local\Adobe
2016-05-11 12:31 - 2016-05-11 12:31 - 00000000 ____D C:\Users\59192\AppData\Roaming\Apple Computer
2016-05-11 12:13 - 2016-05-11 12:13 - 00000000 ____D C:\ProgramData\{BE2ACE5C-32B7-4777-9BDF-ECF87CDAB705}
2016-05-11 12:07 - 2016-05-11 12:31 - 00000000 ____D C:\Users\59192\AppData\LocalLow\IObit
2016-05-11 12:07 - 2016-05-11 12:07 - 00001368 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk
2016-05-11 12:07 - 2016-05-11 12:07 - 00001356 _____ C:\Users\Public\Desktop\IObit Uninstaller.lnk
2016-05-11 12:07 - 2016-05-11 12:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller
2016-05-11 12:07 - 2016-05-11 12:07 - 00000000 ____D C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
2016-05-11 12:06 - 2016-05-12 22:55 - 00000000 ____D C:\Users\59192\AppData\Roaming\IObit
2016-05-11 12:06 - 2016-05-12 22:55 - 00000000 ____D C:\ProgramData\IObit
2016-05-11 12:06 - 2016-05-12 22:54 - 00000000 ____D C:\Program Files (x86)\IObit
2016-05-11 12:06 - 2016-05-11 15:01 - 00002258 _____ C:\Users\Public\Desktop\Advanced SystemCare 9.lnk
2016-05-11 12:06 - 2016-05-11 12:07 - 00003180 _____ C:\Windows\System32\Tasks\ASC9_PerformanceMonitor
2016-05-11 12:06 - 2016-05-11 12:06 - 00002868 _____ C:\Windows\System32\Tasks\ASC9_SkipUac_59192
2016-05-11 12:06 - 2016-05-11 12:06 - 00000000 ____D C:\Windows\Tasks\ImCleanDisabled
2016-05-11 12:06 - 2016-05-11 12:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare
2016-05-11 12:04 - 2016-05-11 12:04 - 00000000 ____D C:\Users\59192\AppData\Roaming\Macromedia
2016-05-11 09:27 - 2016-05-11 09:27 - 00002177 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-05-11 08:12 - 2016-05-11 08:12 - 00000000 _____ C:\Windows\AsRunBar.txt
2016-05-11 08:12 - 2012-12-11 20:06 - 00000007 _____ C:\Pass.txt
2016-05-11 08:12 - 2011-11-11 03:46 - 00000031 _____ C:\Windows\AsToolCDVer.txt
2016-05-11 08:11 - 2016-05-11 07:37 - 00000000 ____D C:\eSupport
2016-05-11 07:57 - 2016-05-11 07:57 - 00017285 _____ C:\devlist.txt
2016-05-11 07:41 - 2016-05-11 07:43 - 00000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite
2016-05-11 07:41 - 2016-05-11 07:43 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite
2016-05-11 07:40 - 2016-05-11 07:43 - 00000000 ____D C:\Program Files (x86)\CyberLink
2016-05-11 07:39 - 2016-05-11 07:43 - 00000000 ____D C:\ProgramData\CyberLink
2016-05-11 07:39 - 2016-05-11 07:41 - 00000000 ____D C:\ProgramData\Temp
2016-05-11 07:39 - 2016-05-11 07:39 - 00074192 _____ C:\Windows\AsChkDev.txt
2016-05-11 07:39 - 2016-05-11 07:39 - 00000000 _____ C:\Windows\SysWOW64\Drivers\1043_ASUSTEK_K43BR_K53BR_K73BR_V20_WIN7.MRK
2016-05-11 07:37 - 2016-05-11 16:57 - 00001934 _____ C:\Windows\system32\AutoRunFilter.ini
2016-05-11 07:37 - 2016-05-11 16:57 - 00001359 _____ C:\Windows\system32\ServiceFilter.ini
2016-05-11 07:37 - 2016-05-11 11:18 - 00000080 _____ C:\Windows\system32\Defrag.ini
2016-05-11 07:37 - 2016-05-11 07:37 - 03058304 _____ (ASUS) C:\Windows\AsScrPro.exe
2016-05-11 07:37 - 2016-05-11 07:37 - 00520192 _____ (ScreenTime Media) C:\Windows\SysWOW64\ASUS_Screensaver.scr
2016-05-11 07:37 - 2016-05-11 07:37 - 00000716 _____ C:\Users\Public\Desktop\eManual.Lnk
2016-05-11 07:37 - 2016-05-11 07:37 - 00000000 ____D C:\Windows\SysWOW64\ASUS_Screensaver dir
2016-05-11 07:37 - 2016-05-11 07:37 - 00000000 ____D C:\Program Files\ASUS
2016-05-11 07:37 - 2011-01-25 23:11 - 00379520 _____ (ASUSTeK Computer Inc.) C:\Windows\system32\FBAgent.exe
2016-05-11 07:37 - 2009-06-13 02:55 - 00000105 _____ C:\Windows\system32\FastBoot.ini
2016-05-11 07:37 - 2009-06-05 22:35 - 00000052 _____ C:\Windows\system32\RemoveFont.ini
2016-05-11 07:37 - 2009-06-05 22:35 - 00000015 _____ C:\Windows\system32\BootTime.ini
2016-05-11 07:36 - 2016-05-11 07:36 - 00002984 _____ C:\Windows\System32\Tasks\ASUS SmartLogon Console Sensor
2016-05-11 07:35 - 2016-05-11 07:38 - 00000000 ____D C:\Program Files\P4G
2016-05-11 07:35 - 2016-05-11 07:35 - 00003066 _____ C:\Windows\System32\Tasks\ACMON
2016-05-11 07:35 - 2016-05-11 07:35 - 00003044 _____ C:\Windows\System32\Tasks\ASUS P4G
2016-05-11 07:35 - 2016-05-11 07:35 - 00002984 _____ C:\Windows\System32\Tasks\ATKOSD2
2016-05-11 07:35 - 2016-05-11 07:35 - 00000000 ____D C:\ProgramData\P4G
2016-05-11 07:35 - 2011-10-04 21:14 - 00155648 _____ (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
2016-05-11 07:34 - 2016-05-11 07:34 - 00000000 ____D C:\Program Files\Elantech
2016-05-11 07:33 - 2016-05-11 07:33 - 00000000 _____ C:\Windows\ativpsrm.bin
2016-05-11 07:31 - 2016-05-11 07:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
2016-05-11 07:31 - 2016-05-11 07:31 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2016-05-11 07:31 - 2016-05-11 07:31 - 00000000 ____D C:\Program Files (x86)\AMD APP
2016-05-11 07:31 - 2010-11-29 10:50 - 00044672 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys
2016-05-11 07:30 - 2016-05-11 07:31 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2016-05-11 07:30 - 2016-05-11 07:30 - 00000000 ____D C:\ProgramData\AMD
2016-05-11 07:30 - 2016-05-11 07:30 - 00000000 ____D C:\Program Files\ATI Technologies
2016-05-11 07:30 - 2016-05-11 07:30 - 00000000 ____D C:\Program Files\ATI
2016-05-11 07:30 - 2010-02-18 18:18 - 00046136 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdiox64.sys
2016-05-11 07:29 - 2016-05-11 13:20 - 06936064 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll
2016-05-11 07:29 - 2016-05-11 13:20 - 01083392 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2016-05-11 07:29 - 2016-05-11 13:20 - 00535552 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2016-05-11 07:29 - 2016-05-11 13:20 - 00513536 _____ (AMD) C:\Windows\system32\atieclxx.exe
2016-05-11 07:29 - 2016-05-11 13:20 - 00238080 _____ (AMD) C:\Windows\system32\atiesrxx.exe
2016-05-11 07:29 - 2016-05-11 13:20 - 00054784 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll
2016-05-11 07:29 - 2016-05-11 13:20 - 00032768 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll
2016-05-11 07:29 - 2016-05-11 07:29 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_btath_hcrp_01009.Wdf
2016-05-11 07:29 - 2011-07-14 00:14 - 00423424 _____ (ATI Technologies, Inc.) C:\Windows\system32\atipdl64.dll
2016-05-11 07:29 - 2011-07-14 00:13 - 00356352 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\atipdlxx.dll
2016-05-11 07:29 - 2011-07-14 00:13 - 00278528 _____ (ATI Technologies, Inc.) C:\Windows\SysWOW64\Oemdspif.dll
2016-05-11 07:29 - 2011-07-13 23:58 - 01113088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6v.dll
2016-05-11 07:29 - 2011-07-13 23:57 - 01828864 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdmv.dll
2016-05-11 07:29 - 2010-08-27 20:33 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODE.exe
2016-05-11 07:29 - 2009-06-22 17:34 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIODCLI.exe
2016-05-11 07:29 - 2009-05-11 23:35 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atibtmon.exe
2016-05-11 07:28 - 2016-05-11 07:28 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BT Program
2016-05-11 07:27 - 2016-05-11 07:28 - 00000000 ____D C:\Program Files (x86)\Bluetooth Suite
2016-05-11 07:27 - 2016-05-11 07:27 - 00000000 ____D C:\Windows\Options
2016-05-11 07:27 - 2016-05-11 07:27 - 00000000 ____D C:\Program Files (x86)\Atheros
2016-05-11 07:27 - 2011-03-10 23:43 - 00056654 _____ C:\Windows\system32\athrextx.cat
2016-05-11 07:27 - 2011-03-07 20:22 - 02228736 _____ (Atheros Communications, Inc.) C:\Windows\system32\athrx.sys
2016-05-11 07:26 - 2016-05-11 15:15 - 00000000 ____D C:\Windows\SysWOW64\sda
2016-05-11 07:26 - 2016-05-10 23:19 - 00000000 ____D C:\ProgramData\Atheros
2016-05-11 07:26 - 2011-01-18 11:16 - 09888360 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtsUStoricon.dll
2016-05-11 07:26 - 2011-01-18 11:16 - 00422504 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtsUStor.dll
2016-05-11 07:26 - 2011-01-18 11:16 - 00250984 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RtsUStor.sys
2016-05-11 07:24 - 2016-05-11 13:29 - 00116304 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2016-05-11 07:24 - 2016-05-11 07:24 - 00002755 _____ C:\Users\Public\Desktop\ASUS Sonic Focus.lnk
2016-05-11 07:23 - 2016-05-11 13:37 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2016-05-11 07:23 - 2016-05-11 07:43 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-05-11 07:23 - 2016-05-11 07:26 - 00000000 ____D C:\Program Files (x86)\Realtek
2016-05-11 07:23 - 2016-05-11 07:24 - 00000000 ___HD C:\Program Files (x86)\Temp
2016-05-11 07:23 - 2016-05-11 07:23 - 00000000 ____D C:\ProgramData\SonicFocus
2016-05-11 07:23 - 2016-05-11 07:23 - 00000000 ____D C:\Program Files\Realtek
2016-05-11 07:23 - 2011-10-18 12:10 - 00099432 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInst64.dll
2016-05-11 07:23 - 2011-10-17 11:30 - 03213928 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2016-05-11 07:23 - 2011-08-31 13:12 - 01698408 ____N (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2016-05-11 07:23 - 2011-07-27 18:55 - 02604376 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib.dll
2016-05-11 07:23 - 2011-07-27 18:55 - 02132824 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ.dll
2016-05-11 07:22 - 2011-01-28 21:03 - 00180736 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll
2016-05-11 07:22 - 2011-01-28 07:46 - 00148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifsutil.dll
2016-05-11 07:21 - 2016-05-11 00:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS Utility
2016-05-10 23:53 - 2016-05-11 16:40 - 00000000 ____D C:\Users\59192\AppData\Local\Google
2016-05-10 23:53 - 2016-05-10 23:53 - 00000000 ____D C:\Users\59192\AppData\Roaming\Adobe
2016-05-10 23:53 - 2016-05-10 23:53 - 00000000 ____D C:\Users\59192\AppData\LocalLow\Google
2016-05-10 23:52 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2016-05-10 23:52 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2016-05-10 23:52 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2016-05-10 23:52 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2016-05-10 23:52 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2016-05-10 23:52 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2016-05-10 23:52 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2016-05-10 23:52 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2016-05-10 23:52 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2016-05-10 23:52 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2016-05-10 23:52 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2016-05-10 23:52 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2016-05-10 23:52 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2016-05-10 23:52 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2016-05-10 23:49 - 2016-05-10 23:49 - 00000000 ____D C:\Users\59192\AppData\Roaming\ASUS WebStorage
2016-05-10 23:19 - 2016-05-11 15:10 - 00000000 ____D C:\Users\59192\Documents\Bluetooth Folder
2016-05-10 23:19 - 2016-05-10 23:19 - 00000000 ____D C:\Users\59192\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Trend Micro Titanium Internet Security
2016-05-10 23:19 - 2016-05-10 23:19 - 00000000 ____D C:\Users\59192\AppData\Local\BMExplorer
2016-05-10 23:17 - 2016-05-11 14:09 - 00001411 _____ C:\Users\59192\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-05-10 23:16 - 2016-05-12 20:06 - 00058520 _____ C:\Users\59192\AppData\Local\GDIPFONTCACHEV1.DAT
2016-05-10 23:16 - 2016-05-11 12:33 - 00045056 _____ C:\Windows\SysWOW64\acovcnt.exe
2016-05-10 23:16 - 2016-05-10 23:16 - 00000000 __RSD C:\Users\Public\Desktop\AsusTools
2016-05-10 23:16 - 2016-05-10 23:16 - 00000000 ____D C:\Users\59192\AppData\Local\VirtualStore
2016-05-10 23:16 - 2016-05-10 23:16 - 00000000 ____D C:\Users\59192\AppData\Local\Power2Go
2016-05-10 23:16 - 2016-05-10 23:16 - 00000000 ____D C:\ProgramData\FolderView
2016-05-10 23:15 - 2016-05-11 07:43 - 00000000 ____D C:\Users\59192\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink Blu-ray Disc Suite
2016-05-10 23:15 - 2016-05-10 23:17 - 00000000 ____D C:\Users\59192
2016-05-10 23:15 - 2016-05-10 23:15 - 00000020 ___SH C:\Users\59192\ntuser.ini
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Vorlagen
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Startmenü
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Netzwerkumgebung
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Lokale Einstellungen
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Eigene Dateien
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Druckumgebung
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Documents\Eigene Videos
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Documents\Eigene Musik
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Documents\Eigene Bilder
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\AppData\Local\Verlauf
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\AppData\Local\Anwendungsdaten
2016-05-10 23:15 - 2016-05-10 23:15 - 00000000 _SHDL C:\Users\59192\Anwendungsdaten
2016-05-10 23:15 - 2009-07-14 09:44 - 00000000 ____D C:\Users\59192\AppData\Roaming\Media Center Programs

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-05-12 22:26 - 2011-04-13 04:33 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-05-12 21:54 - 2009-07-14 06:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-05-12 21:54 - 2009-07-14 06:45 - 00009696 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-05-12 21:53 - 2011-04-11 14:05 - 00438430 _____ C:\Windows\system32\perfh001.dat
2016-05-12 21:53 - 2011-04-11 14:05 - 00079916 _____ C:\Windows\system32\perfc001.dat
2016-05-12 21:53 - 2011-03-17 13:52 - 00678144 _____ C:\Windows\system32\perfh019.dat
2016-05-12 21:53 - 2011-03-17 13:52 - 00132644 _____ C:\Windows\system32\perfc019.dat
2016-05-12 21:53 - 2011-02-19 07:02 - 00358086 _____ C:\Windows\system32\perfh00D.dat
2016-05-12 21:53 - 2011-02-19 07:02 - 00070026 _____ C:\Windows\system32\perfc00D.dat
2016-05-12 21:53 - 2011-02-19 06:56 - 00552564 _____ C:\Windows\system32\perfh008.dat
2016-05-12 21:53 - 2011-02-19 06:56 - 00089672 _____ C:\Windows\system32\perfc008.dat
2016-05-12 21:53 - 2011-02-19 06:51 - 00390160 _____ C:\Windows\system32\prfh0404.dat
2016-05-12 21:53 - 2011-02-19 06:51 - 00107320 _____ C:\Windows\system32\prfc0404.dat
2016-05-12 21:53 - 2011-02-19 06:45 - 00681496 _____ C:\Windows\system32\prfh0816.dat
2016-05-12 21:53 - 2011-02-19 06:45 - 00134338 _____ C:\Windows\system32\prfc0816.dat
2016-05-12 21:53 - 2011-02-19 06:40 - 00692768 _____ C:\Windows\system32\perfh013.dat
2016-05-12 21:53 - 2011-02-19 06:40 - 00133360 _____ C:\Windows\system32\perfc013.dat
2016-05-12 21:53 - 2011-02-19 06:35 - 00691422 _____ C:\Windows\system32\perfh010.dat
2016-05-12 21:53 - 2011-02-19 06:35 - 00127758 _____ C:\Windows\system32\perfc010.dat
2016-05-12 21:53 - 2011-02-19 06:29 - 00696366 _____ C:\Windows\system32\perfh00C.dat
2016-05-12 21:53 - 2011-02-19 06:29 - 00130822 _____ C:\Windows\system32\perfc00C.dat
2016-05-12 21:53 - 2011-02-19 06:24 - 00655278 _____ C:\Windows\system32\perfh007.dat
2016-05-12 21:53 - 2011-02-19 06:24 - 00130146 _____ C:\Windows\system32\perfc007.dat
2016-05-12 21:53 - 2011-02-19 06:19 - 00695412 _____ C:\Windows\system32\perfh00A.dat
2016-05-12 21:53 - 2011-02-19 06:19 - 00137456 _____ C:\Windows\system32\perfc00A.dat
2016-05-12 21:53 - 2009-07-14 07:13 - 08503202 _____ C:\Windows\system32\PerfStringBackup.INI
2016-05-12 21:53 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-05-12 21:46 - 2011-04-13 04:33 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-05-12 21:46 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-05-12 20:03 - 2009-07-14 06:45 - 00268536 _____ C:\Windows\system32\FNTCACHE.DAT
2016-05-12 19:59 - 2009-07-14 09:45 - 00000000 ____D C:\Program Files\Windows Journal
2016-05-12 00:41 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2016-05-11 15:01 - 2009-07-29 08:03 - 00000000 ____D C:\Windows\Panther
2016-05-11 14:02 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2016-05-11 11:32 - 2011-04-13 04:51 - 00000000 ____D C:\ProgramData\Trend Micro
2016-05-11 11:05 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Public\Libraries
2016-05-11 09:27 - 2011-04-13 04:33 - 00002189 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-05-11 09:27 - 2011-04-13 04:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2016-05-11 09:21 - 2011-04-13 04:33 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2016-05-11 09:21 - 2011-04-13 04:33 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2016-05-11 08:11 - 2009-07-29 07:20 - 00000000 ____D C:\Windows\ASUS
2016-05-11 07:58 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sysprep
2016-05-11 07:57 - 2009-07-29 07:20 - 00000000 ____D C:\Windows\Log
2016-05-11 07:36 - 2011-04-13 04:47 - 00000000 ____D C:\Program Files (x86)\ASUS
2016-05-11 07:35 - 2011-04-13 04:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2016-05-11 07:29 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2016-05-11 07:28 - 2011-03-13 19:53 - 00246804 _____ C:\Windows\system32\Drivers\AtherosBt.bin
2016-05-10 23:16 - 2011-04-13 04:49 - 00000000 ____D C:\ProgramData\ChangeFolderView
2016-05-10 23:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2011-04-13 04:48 - 2010-07-07 01:10 - 0131472 _____ () C:\ProgramData\FullRemove.exe
2016-05-11 07:41 - 2016-05-11 07:43 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
2016-05-11 07:40 - 2016-05-11 07:41 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log

Einige Dateien in TEMP:
====================
C:\Users\59192\AppData\Local\Temp\libeay32.dll
C:\Users\59192\AppData\Local\Temp\msvcr120.dll
C:\Users\59192\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2009-07-29 07:04

==================== Ende von FRST.txt ============================
         

Alt 13.05.2016, 17:52   #10
SaSa591xx
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:09-05-2016
durchgeführt von 59192 (2016-05-12 23:12:34)
Gestartet von C:\Users\59192\Desktop
Windows 7 Home Premium Service Pack 1 (X64) (2016-05-10 21:15:43)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

59192 (S-1-5-21-508882545-2078725825-758961529-1001 - Administrator - Enabled) => C:\Users\59192
Administrator (S-1-5-21-508882545-2078725825-758961529-500 - Administrator - Disabled)
Gast (S-1-5-21-508882545-2078725825-758961529-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-508882545-2078725825-758961529-1003 - Limited - Enabled)

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Trend Micro Titanium Internet Security (Disabled - Up to date) {68F968AC-2AA0-091D-848C-803E83E35902}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Trend Micro Titanium Internet Security (Disabled - Up to date) {D3988948-0C9A-0693-BE3C-BB4CF86413BF}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Adobe Flash Player 21 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 21.0.0.213 - Adobe Systems Incorporated)
Adobe Flash Player 21 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 21.0.0.213 - Adobe Systems Incorporated)
Adobe Flash Player 21 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 21.0.0.213 - Adobe Systems Incorporated)
Advanced SystemCare 9 (HKLM-x32\...\Advanced SystemCare_is1) (Version: 9.3.0 - IObit)
AMD Catalyst Install Manager (HKLM\...\{EC591B58-07C2-1BF3-C2DB-7CBA363B7A08}) (Version: 3.0.838.0 - Advanced Micro Devices, Inc.)
ASUS AI Recovery (HKLM-x32\...\{D39F0676-163E-4595-A917-E28F99BBD4D2}) (Version: 1.0.16 - ASUS)
ASUS FaceLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0012 - ASUS)
ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.25 - ASUS)
ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 1.1.48 - ASUS)
ASUS Sonic Focus (HKLM-x32\...\{B0002707-4F7E-4745-88A7-852DA8A88635}) (Version: 1.0.0.5 - Synopsys )
ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0034 - ASUS)
ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.23 - asus)
ASUS WebStorage (HKLM-x32\...\ASUS WebStorage) (Version: 3.0.84.161 - eCareme Technologies, Inc.)
ASUS_Screensaver (HKLM-x32\...\ASUS_Screensaver) (Version:  - )
AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.4.617 - ASUSTEK)
Atheros Client Installation Program (HKLM-x32\...\{D3694B69-6F8C-42D3-8A0A-EB2AB528C02C}) (Version: 7.0 - Atheros)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0014 - ASUS)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 11.2.2262 - AVAST Software)
Bing Bar (HKLM-x32\...\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}) (Version: 7.0.610.0 - Microsoft Corporation)
Bluetooth Win7 Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.2.0.65 - Atheros Communications)
Bookworm Deluxe (HKLM-x32\...\Bookworm Deluxe) (Version:  - Oberon Media Inc.)
Control ActiveX de Windows Live Mesh para conexiones remotas (HKLM-x32\...\{04668DF2-D32F-4555-9C7E-35523DCD6544}) (Version: 15.4.5722.2 - Microsoft Corporation)
Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation)
Controlo ActiveX do Windows Live Mesh para Ligações Remotas (HKLM-x32\...\{E54EEB5D-41ED-40FE-B4A8-8565DB81469B}) (Version: 15.4.5722.2 - Microsoft Corporation)
Cooking Dash (HKLM-x32\...\Cooking Dash) (Version:  - Oberon Media Inc.)
CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1908 - CyberLink Corp.)
CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3602c - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Driver Booster 3.3 (HKLM-x32\...\Driver Booster_is1) (Version: 3.3 - IObit)
ETDWare PS/2-X64 8.0.5.1_WHQL (HKLM\...\Elantech) (Version: 8.0.5.1 - ELAN Microelectronic Corp.)
Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.9 - ASUS)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Game Park Console (HKLM-x32\...\{E71E60C1-533E-45A5-8D80-E475E88D2B17}_is1) (Version: 6.2.1.1 - Oberon Media, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 50.0.2661.94 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version:  - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.2.183.13 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.30.3 - Google Inc.) Hidden
Governor of Poker (HKLM-x32\...\Governor of Poker) (Version:  - Oberon Media Inc.)
Hotel Dash Suite Success (HKLM-x32\...\Hotel Dash Suite Success) (Version:  - Oberon Media Inc.)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 5.3.0.142 - IObit)
Jewel Quest 3 (HKLM-x32\...\Jewel Quest 3) (Version:  - Oberon Media Inc.)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Luxor 3 (HKLM-x32\...\Luxor 3) (Version:  - Oberon Media Inc.)
Mahjongg dimensions (HKLM-x32\...\Mahjongg dimensions) (Version:  - Oberon Media Inc.)
Malwarebytes Anti-Malware Version 2.2.1.1043 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.2.1.1043 - Malwarebytes)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.50401.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Nuance PDF Reader (HKLM-x32\...\{B480904D-F73F-4673-B034-8A5F492C9184}) (Version: 6.00.0041 - Nuance Communications, Inc.)
Plants vs Zombies (HKLM-x32\...\Plants vs Zombies) (Version:  - Oberon Media Inc.)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31222 - Realtek Semiconduct Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.42.304.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7746 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7600.30127 - Realtek Semiconductor Corp.)
SafeZone Stable 1.48.2066.101 (x32 Version: 1.48.2066.101 - Avast Software) Hidden
Surfing Protection (HKLM-x32\...\IObit Surfing Protection_is1) (Version: 1.3 - IObit)
syncables desktop SE (HKLM-x32\...\{341697D8-9923-445E-B42A-529E5A99CB7A}) (Version: 5.5.746.11492 - syncables)
Trend Micro Titanium Internet Security (HKLM\...\{ABBD4BA8-6703-40D2-AB1E-5BB1F7DB49A4}) (Version: 3.0 - Trend Micro Inc.)
Trend Micro Titanium Internet Security (Version: 3.00 - Trend Micro Inc.) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}) (Version: 15.4.5722.2 - Microsoft Corporation)
WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.32.0 - ASUS)
Wireless Console 3 (HKLM-x32\...\{C4BC5A5F-4A97-47CC-99C3-AB8E10572AFE}) (Version: 3.0.24 - ASUS)
World of Goo (HKLM-x32\...\World of Goo) (Version:  - Oberon Media Inc.)
Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (HKLM-x32\...\{F665F3B8-01B4-46A9-8E47-FF8DC2208C9F}) (Version: 15.4.5722.2 - Microsoft Corporation)
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden
Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Элемент управления Windows Live Mesh ActiveX для удаленных подключений (HKLM-x32\...\{BCB0D6F7-7EAB-4009-A6F2-8E0E7F317773}) (Version: 15.4.5722.2 - Microsoft Corporation)
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (HKLM-x32\...\{9D4C7DFA-CBBB-4F06-BDAC-94D831406DF0}) (Version: 15.4.5722.2 - Microsoft Corporation)
بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة (HKLM-x32\...\{E18B30AA-6E2D-480C-B918-AF61009F4010}) (Version: 15.4.5722.2 - Microsoft Corporation)
معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
適用遠端連線的 Windows Live Mesh ActiveX 控制項 (HKLM-x32\...\{622DE1BE-9EDE-49D3-B349-29D64760342A}) (Version: 15.4.5722.2 - Microsoft Corporation)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {0D41A30D-2B0B-414A-89D1-E99399C8E5CE} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2011-07-22] (ASUS)
Task: {22D94CE5-5E2A-44CF-B677-AE34C4A9CFEA} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2016-05-11] (AVAST Software)
Task: {29A26B23-2F35-42BE-A58D-71928DB610DA} - System32\Tasks\ASC9_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare\Monitor.exe [2016-05-06] (IObit)
Task: {35834D62-929B-4592-B177-9EC0D16FC717} - System32\Tasks\SafeZone scheduled Autoupdate 1462970565 => C:\Program Files\AVAST Software\SZBrowser\launcher.exe [2016-04-15] (Avast Software)
Task: {3FE30182-3D7A-4462-88A3-D3B232E8B8B7} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_213_pepper.exe [2016-05-11] (Adobe Systems Incorporated)
Task: {60F398C6-F009-4FEB-B4EF-955537F134F2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-11] (Google Inc.)
Task: {84A77F86-B445-48DE-B57F-B89B693CD5C2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-05-11] (Google Inc.)
Task: {A511D133-DEAD-440F-9406-91D38FAB6541} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe [2011-10-03] (ASUS)
Task: {AB9EDB8B-964C-459F-BBD3-99F4A664E3FD} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-05-11] (Adobe Systems Incorporated)
Task: {B253258F-E635-4E07-B046-7432CA573660} - System32\Tasks\ASC9_SkipUac_59192 => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [2016-05-10] (IObit)
Task: {BE38F6AE-FBD9-4DB0-9EF8-F6CC117D92FB} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2011-10-04] (ASUS)
Task: {EB8BE82F-417A-4A70-BACB-C1541ADC3138} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2011-10-14] (ASUS)
Task: {FB97A698-3353-46DB-B523-7AE95D8BEAC3} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2016-05-11] (AVAST Software)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_213_pepper.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2011-04-13 04:51 - 2010-09-17 10:52 - 00047104 _____ () C:\Program Files\Trend Micro\AMSP\boost_thread-vc80-mt-1_36.dll
2011-04-13 04:51 - 2010-09-17 10:52 - 00042496 _____ () C:\Program Files\Trend Micro\AMSP\boost_date_time-vc80-mt-1_36.dll
2016-05-11 14:38 - 2016-05-11 14:38 - 00123344 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2016-05-11 14:38 - 2016-05-11 14:38 - 00135816 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2016-05-12 20:15 - 2016-05-12 20:15 - 02905088 _____ () C:\Program Files\AVAST Software\Avast\defs\16051201\algo.dll
2016-05-11 14:38 - 2016-05-11 14:38 - 00309912 _____ () C:\Program Files\AVAST Software\Avast\browser_pass.dll
2016-05-11 14:38 - 2016-05-11 14:38 - 00479680 _____ () C:\Program Files\AVAST Software\Avast\ffl2.dll
2016-05-11 14:38 - 2016-05-11 14:38 - 40539648 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2016-05-11 09:27 - 2016-04-28 01:25 - 01738904 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.94\libglesv2.dll
2016-05-11 09:27 - 2016-04-28 01:25 - 00086168 _____ () C:\Program Files (x86)\Google\Chrome\Application\50.0.2661.94\libegl.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)

IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-508882545-2078725825-758961529-1001\...\100sexlinks.com -> 100sexlinks.com

Da befinden sich 4788 mehr Seiten.


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2009-07-14 04:34 - 2016-05-11 21:59 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts

127.0.0.1       localhost

==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-508882545-2078725825-758961529-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\59192\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 80.69.100.212 - 80.69.100.205
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

MSCONFIG\startupreg: Advanced SystemCare 9 => "C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe" /Auto
MSCONFIG\startupreg: ASUS Screen Saver Protector => C:\Windows\AsScrPro.exe
MSCONFIG\startupreg: ASUSPRP => "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
MSCONFIG\startupreg: ASUSWebStorage => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe /S
MSCONFIG\startupreg: AthBtTray => "C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
MSCONFIG\startupreg: AtherosBtStack => "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
MSCONFIG\startupreg: ATKMEDIA => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
MSCONFIG\startupreg: ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
MSCONFIG\startupreg: ETDCtrl => %ProgramFiles%\Elantech\ETDCtrl.exe
MSCONFIG\startupreg: HControlUser => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
MSCONFIG\startupreg: IObit Malware Fighter => "C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe" /autostart
MSCONFIG\startupreg: RtHDVBg => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /SF3 
MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
MSCONFIG\startupreg: Sidebar => C:\Program Files\Windows Sidebar\sidebar.exe /autoRun
MSCONFIG\startupreg: SonicMasterTray => C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe
MSCONFIG\startupreg: Trend Micro Titanium => C:\Program Files\Trend Micro\Titanium\VizorShortCut.exe -ReFlush "none" "none"
MSCONFIG\startupreg: UpdateLBPShortCut => "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5"
MSCONFIG\startupreg: UpdateP2GoShortCut => "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
MSCONFIG\startupreg: VizorHtmlDialog.exe => "C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe" "DEF" "EULA" "C:\Program Files\Trend Micro\Titanium\UI\Installer.cmpt\resources\preinstall_01_welcome_trial.html" "DEF" "DEF" "DEF"
MSCONFIG\startupreg: Wireless Console 3 => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [{50D76052-134E-46DB-AF8E-63827F883C0F}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{6D86BBA6-660B-4EA4-9C85-ADBCBF533D55}] => (Allow) LPort=2869
FirewallRules: [{B827E1C7-5A7A-484C-9653-2FE388A8B888}] => (Allow) LPort=1900
FirewallRules: [{25BDD843-A815-48A8-A216-66D065687049}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{8EF01BA1-D1F6-4D73-AADB-AB5E81F83EF1}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe
FirewallRules: [{A72233AF-337A-40D3-BCE9-4CBCFF8C6B0B}] => (Allow) LPort=5353
FirewallRules: [{506984D9-DE61-4E40-9679-2D3BDE5A3CB8}] => (Allow) LPort=8182
FirewallRules: [{D309E191-9706-4651-83D7-01113C40CDF3}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{1BB0BD14-B6F3-49A4-97EB-E2F34850FEFB}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{517AC5EB-FF49-46C1-9BD9-92044B0A6877}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
FirewallRules: [{F4A711DC-97E5-47C4-9B15-AFA623A26CBC}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{907818C0-AF5B-4210-A5D8-C84CA36E07AE}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\DBDownloader.exe
FirewallRules: [{2E14A695-277F-4E24-B5F5-F698316EFB39}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe
FirewallRules: [{A52C2940-0372-415E-8F99-59F9F427DC4B}] => (Allow) C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe

==================== Wiederherstellungspunkte =========================

10-05-2016 23:50:30 Windows Update
11-05-2016 12:43:02 Windows Modules Installer
11-05-2016 13:13:34 Driver Booster : AMD High Definition Audio Device
12-05-2016 17:18:10 Windows Update
12-05-2016 18:14:08 Windows Update
12-05-2016 20:16:41 Windows Update
12-05-2016 22:51:29 JRT Pre-Junkware Removal

==================== Fehlerhafte Geräte im Gerätemanager =============

Name: Qualcomm Atheros AR9002WB-1NG Wireless Network Adapter
Description: Qualcomm Atheros AR9002WB-1NG Wireless Network Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications Inc.
Service: athr
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Bluetooth Module
Description: Bluetooth Module
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Qualcomm Atheros Communications
Service: BTHUSB
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. 


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (05/11/2016 04:57:30 PM) (Source: ESENT) (EventID: 455) (User: )
Description: taskhost (2620) WebCacheLocal: Fehler -1811 (0xfffff8ed) beim Öffnen von Protokolldatei C:\Users\59192\AppData\Local\Microsoft\Windows\WebCache\V01.log.

Error: (05/10/2016 11:38:05 PM) (Source: Google Update) (EventID: 20) (User: NT-AUTORITÄT)
Description: Network Request Error.
Error: 0x80072ee7. Http status code: 0.
Url=https://tools.google.com/service/update2
Trying config: source=IE, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.
Trying config: source=IE, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.

Error: (05/10/2016 11:24:51 PM) (Source: Google Update) (EventID: 20) (User: NT-AUTORITÄT)
Description: Network Request Error.
Error: 0x80072ee7. Http status code: 0.
Url=https://tools.google.com/service/update2
Trying config: source=IE, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.
Trying config: source=IE, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.

Error: (05/10/2016 11:15:38 PM) (Source: Google Update) (EventID: 20) (User: NT-AUTORITÄT)
Description: Network Request Error.
Error: 0x80072ee7. Http status code: 0.
Url=https://tools.google.com/service/update2
Trying config: source=auto, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.
Trying config: source=auto, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.


Systemfehler:
=============
Error: (05/12/2016 09:46:11 PM) (Source: BTHUSB) (EventID: 17) (User: )
Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen.

Error: (05/12/2016 09:43:47 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Der Dienst Windows Update konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden.

Error: (05/12/2016 09:43:19 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Der Versuch des Dienststeuerungs-Managers, nach dem unerwarteten Beenden des Dienstes "Windows Modules Installer" Korrekturmaßnahmen (Neustart des Diensts) durchzuführen, ist fehlgeschlagen. Fehler: 
%%1056

Error: (05/12/2016 09:41:24 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Media Player-Netzwerkfreigabedienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (05/12/2016 09:41:23 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (05/12/2016 09:41:20 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Microsoft .NET Framework NGEN v2.0.50727_X64" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (05/12/2016 09:41:20 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Microsoft .NET Framework NGEN v2.0.50727_X86" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (05/12/2016 09:41:20 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Der Dienst "Windows Live ID Sign-in Assistant" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (05/12/2016 09:41:20 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "TiMiniService" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (05/12/2016 09:41:20 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "SeaPort" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.


CodeIntegrity:
===================================
  Date: 2016-05-12 19:57:49.220
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-12 19:57:49.220
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-12 17:35:43.014
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-12 17:35:42.998
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-12 16:15:02.657
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-12 16:15:02.657
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-11 23:30:42.654
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-11 23:30:42.639
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-11 23:25:28.062
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2016-05-11 23:25:28.046
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\AtihdW76.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.


==================== Speicherinformationen =========================== 

Prozessor: AMD E-450 APU with Radeon(tm) HD Graphics
Prozentuale Nutzung des RAM: 27%
Installierter physikalischer RAM: 8171.71 MB
Verfügbarer physikalischer RAM: 5936.89 MB
Summe virtueller Speicher: 16341.61 MB
Verfügbarer virtueller Speicher: 14044.28 MB

==================== Laufwerke ================================

Drive c: (OS) (Fixed) (Total:128 GB) (Free:71.11 GB) NTFS ==>[Laufwerk mit Startkomponenten (eingeholt von BCD)]
Drive d: (DATA) (Fixed) (Total:145.09 GB) (Free:22.04 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 45AB51FA)
Partition 1: (Not Active) - (Size=25 GB) - (Type=1C)
Partition 2: (Active) - (Size=128 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=145.1 GB) - (Type=07 NTFS)

==================== Ende von Addition.txt ============================
         
guten morgen!

hoffe ich habe alles richtig gemacht (:

alles ok?
würde mich über eine antwort freuen, danke

Alt 13.05.2016, 21:38   #11
M-K-D-B
/// TB-Ausbilder
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



Servus,


Es wurden nur ein paar Reste entfernt, nichts schlimmes, nur teilweise unerwünschte Software.


wir entfernen die letzten Reste und kontrollieren nochmal alles.



Hinweis: Der Suchlauf mit ESET kann länger dauern.



Schritt 1
Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument


Code:
ATTFilter
start
CloseProcesses:
HKU\S-1-5-21-508882545-2078725825-758961529-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG
BHO: Partner BHO Class -> {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} -> C:\ProgramData\Partner\Partner64.dll => Keine Datei
RemoveProxy:
CMD: ipconfig /flushdns
CMD: netsh winsock reset
EmptyTemp:
end
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.







Schritt 2

ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset







Schritt 3
Downloade dir die passende Version von HitmanPro auf deinen Desktop: HitmanPro - 32 Bit | HitmanPro - 64 Bit.
  • Starte die HitmanPro.exe
  • Klicke auf
  • Entferne den Haken bei
  • Klicke auf
    und
  • Akzeptiere die Lizenzbedingungen und klicke auf
  • Klicke auf

    und auf
  • Wenn der Scan beendet wurde, nichts löschen lassen etc. sondern wähle unten links auf der Button-Leiste
    und speichere die Logdatei auf Deinem Desktop.
  • Schließe HitmanPro und poste mir das Log.

 







Schritt 4
  • Starte die FRST.exe erneut. Setze einen Haken vor Addition.txt und drücke auf Untersuchen.
  • FRST erstellt wieder zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.





Gibt es jetzt noch Probleme mit dem PC? Wenn ja, welche?







Bitte poste mit deiner nächsten Antwort
  • die Logdatei des FRST-Fix,
  • die Logdatei von ESET,
  • die Logdatei von HitmanPro,
  • die beiden neuen Logdateien von FRST,
  • die Beantwortung der gestellten Fragen.

Alt 13.05.2016, 22:13   #12
SaSa591xx
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



Code:
ATTFilter
Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:09-05-2016
durchgeführt von 59192 (2016-05-13 23:02:14) Run:1
Gestartet von C:\Users\59192\Desktop
Geladene Profile: 59192 (Verfügbare Profile: 59192)
Start-Modus: Normal
==============================================

fixlist Inhalt:
*****************
start
CloseProcesses:
HKU\S-1-5-21-508882545-2078725825-758961529-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG
BHO: Partner BHO Class -> {83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4} -> C:\ProgramData\Partner\Partner64.dll => Keine Datei
RemoveProxy:
CMD: ipconfig /flushdns
CMD: netsh winsock reset
EmptyTemp:
end
*****************

Prozess erfolgreich geschlossen.
"HKU\S-1-5-21-508882545-2078725825-758961529-1001\SOFTWARE\Policies\Microsoft\Internet Explorer" => Schlüssel erfolgreich entfernt
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}" => Schlüssel erfolgreich entfernt
"HKCR\CLSID\{83FF80F4-8C74-4b80-B5BA-C8DDD434E5C4}" => Schlüssel erfolgreich entfernt

========= RemoveProxy: =========

HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wert erfolgreich entfernt
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wert erfolgreich entfernt
HKU\S-1-5-21-508882545-2078725825-758961529-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => Wert erfolgreich entfernt
HKU\S-1-5-21-508882545-2078725825-758961529-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => Wert erfolgreich entfernt


========= Ende von RemoveProxy: =========


=========  ipconfig /flushdns =========


Windows-IP-Konfiguration

Der DNS-Aufl�sungscache wurde geleert.

========= Ende von CMD: =========


=========  netsh winsock reset =========


Der Winsock-Katalog wurde zur�ckgesetzt.
Sie m�ssen den Computer neu starten, um den Vorgang abzuschlie�en.


========= Ende von CMD: =========

EmptyTemp: => 270.8 MB temporäre Dateien entfernt.


Das System musste neu gestartet werden.

==== Ende von Fixlog 23:03:19 ====
         

Alt 13.05.2016, 22:26   #13
M-K-D-B
/// TB-Ausbilder
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



Gut gemacht. Fehlen nur noch die anderen Schritte.

Alt 14.05.2016, 09:19   #14
SaSa591xx
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



eset, wie ja schon gesagt, daaaaaauert ^^ werde das wohl über nacht laufen lassen müssen. morgen bei der arbeit, werde ich den rest machen, AUSSER iein wunder passiert jetzt noch und eset ist zack fertig.

Code:
ATTFilter
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=0162d760293d0749919396bb97fe5591
# end=init
# utc_time=2016-05-13 09:15:25
# local_time=2016-05-13 11:15:25 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.1.7601 NT Service Pack 1
Update Init
Update Download
esets_scanner_update returned -1 esets_gle=37126
Update Finalize
Updated modules version: 0
Old modules - leave modules
Update Init
Update Download
Update Init
Update Download
Update Finalize
Updated modules version: 29467
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=0162d760293d0749919396bb97fe5591
# end=updated
# utc_time=2016-05-13 09:51:24
# local_time=2016-05-13 11:51:24 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.1.7601 NT Service Pack 1
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7777
# api_version=3.1.1
# EOSSerial=0162d760293d0749919396bb97fe5591
# engine=29467
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2016-05-14 12:16:50
# local_time=2016-05-14 02:16:50 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1031
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode_1='avast! Antivirus'
# compatibility_mode=788 16777213 83 97 117679 214825 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 20248 214814860 0 0
# scanned=408437
# found=0
# cleaned=0
# scan_time=8725
         

Alt 14.05.2016, 10:03   #15
M-K-D-B
/// TB-Ausbilder
 
asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - Standard

asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%



Gut gemacht.


Fehlen noch 2 Schritte....

Antwort

Themen zu asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%
100%, alten, asus, avast, cpu-auslastung, danke, fragt, immerwieder, iobit, laptop, laufe, laufen, leute, mutter, nicht, problem, programme, runtergeladen, schei, verlangt




Ähnliche Themen: asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%


  1. Laptop hat ständig hohe Auslastung und friert ein
    Plagegeister aller Art und deren Bekämpfung - 14.02.2016 (14)
  2. Windows 10:CPU steigt 30% bei Mausbewegung
    Alles rund um Windows - 30.01.2016 (0)
  3. Windows 10: Asus Laptop fährt nicht hoch - keine Geräusche/nur schwarzer Bildschirm
    Netzwerk und Hardware - 06.01.2016 (2)
  4. Windows 8.1: Fenster blinken und bei Videos erscheint immer wieder die Playleiste trotz keiner Mausbewegung
    Log-Analyse und Auswertung - 03.05.2015 (6)
  5. Win7-Laptop von ASUS reagiert stark verzögert und hängt immer wieder
    Plagegeister aller Art und deren Bekämpfung - 14.04.2015 (11)
  6. Nach Asus live update startet laptop nicht mehr
    Netzwerk und Hardware - 24.11.2014 (1)
  7. Touchpad und Tastatur vom Asus Laptop funktionieren nicht mehr
    Log-Analyse und Auswertung - 05.08.2014 (2)
  8. Firefox: Es kommen ständig die gleichen Werbe-Fenster zwischendurch
    Plagegeister aller Art und deren Bekämpfung - 26.04.2014 (9)
  9. Asus-Laptop, Tastatur spinnt, Programme auf Desktop flackern und blinken
    Antiviren-, Firewall- und andere Schutzprogramme - 17.09.2013 (7)
  10. Eventuell Tastatur von Asus Laptop geschädigt?
    Netzwerk und Hardware - 08.09.2013 (1)
  11. nach GVU-Trojana fuktioniert laptop Asus gar nicht mehr : The computer restarted unexpesdly or encoutered an unexpected error
    Log-Analyse und Auswertung - 27.08.2013 (1)
  12. verschlüsselungstrojaner hat laptop asus lahm gelegt
    Log-Analyse und Auswertung - 01.03.2013 (9)
  13. hohe CPU Auslastung (ASUS EE PC)
    Log-Analyse und Auswertung - 24.11.2010 (1)
  14. Laptop (Asus) fährt sich ohne Vorwarnung in Standby -Was tun?
    Netzwerk und Hardware - 09.08.2010 (3)
  15. Asus Laptop fährt nicht mehr hoch (checking NVRAM..)
    Netzwerk und Hardware - 18.05.2010 (8)
  16. Zwischendurch sehr hohe CPU Auslastung
    Log-Analyse und Auswertung - 31.08.2009 (1)
  17. Welchen Laptop Arbeitsspeicher ASUS
    Netzwerk und Hardware - 09.12.2008 (0)

Zum Thema asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% - hey leute! habe nen alten laptop von meiner mutter bekommen. dieser läuft ständig auf 100% cpu. hab mich ihrem problem angenommen, aber komme nicht weiter. scheint sich wohl zu tief - asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100%...
Archiv
Du betrachtest: asus x73b laptop, CPU-AUSLASTUNG bei MAUSBEWEGUNG und Zwischendurch ständig 100% auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.