Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Pc plötzlich sehr langsam

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 29.03.2015, 16:50   #1
lyncat89
 
Pc plötzlich sehr langsam - Standard

Pc plötzlich sehr langsam



Hallo,
ich habe seit gestern Probleme mit meinen 3 externen Festplatten (USB 2.0 und USB 3.0)bzw. auch mit anderen Geräten, die ich an meinen USB-Hub anschließe.
1. laptop erkennt den wechseldatenträger nicht obwohl er das immer getan hat,
2. er wirft díe externen festplatten einfach aus; das tut er immer wenn ich einen Kopiervorgang starte (von Laptop auf Festplatte) welche festplatte er auswirft ist zufall.
3. mein Laptop braucht meiner meinung nach schon seit längerer zeit, extrem lange zum hochfahren, seit gestern bis zu 15 minuten!
Daten von den Festplatten aufrufen, verwenden und auf den Laptop kopieren funktioniert.
Ich weiß nicht genau, wielange das Problem mit dem Kopieren schon besteht, da ich eine ganze Weile nichts mehr kopiert habe.

was nun?

Alt 29.03.2015, 16:54   #2
schrauber
/// the machine
/// TB-Ausbilder
 

Pc plötzlich sehr langsam - Standard

Pc plötzlich sehr langsam



hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________

__________________

Alt 29.03.2015, 18:09   #3
lyncat89
 
Pc plötzlich sehr langsam - Standard

FRST




FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Awender (administrator) on ACER on 29-03-2015 18:02:21
Running from C:\Users\Lilly\Desktop\trojanerboard\29.03
Loaded Profiles: Awender & Lilly (Available profiles: Awender & Lilly)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
(The Nielsen Company) C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenUpdate.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Wakoopa) C:\Users\Lilly\AppData\Local\EntscheiderClub Premium\EntscheiderClub Premium.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Ruiware LLC) C:\Program Files (x86)\Ruiware\WinPatrol\WinPatrol.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPNetworkCommunicatorCom.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(The Nielsen Company) C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenOnline.exe
(The Nielsen Company) C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenOnline.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(The Nielsen Company) C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\NielsenOnline64.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe
(CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winamp.exe
(Egis Technology Inc.) C:\Program Files\EgisTec IPS\PmmUpdate.exe
(Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe
() C:\Program Files (x86)\Paradiesbar\paradiesbar.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(The Nielsen Company) C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\NielsenNativeHost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(TODO: <Name des Unternehmens>) C:\Program Files (x86)\Digital Trends Club\Chrome Extension\askGfKChromeHost.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_134.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_17_0_0_134.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Farbar) C:\Users\Lilly\Desktop\trojanerboard\29.03\FRST64 (1).exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2531472 2014-12-13] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5511352 2015-03-18] (Avast Software s.r.o.)
HKLM-x32\...\Run: [Malwarebytes Anti-Exploit] => C:\Program Files (x86)\Malwarebytes Anti-Exploit\mbae.exe
HKLM-x32\...\Run: [NielsenOnline] => C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenOnline.exe [91872 2015-01-16] (The Nielsen Company)
HKLM-x32\...\RunOnce: [20150107] => C:\Program Files\AVAST Software\Avast\setup\emupdate\c21200c8-d987-4344-af46-b53239beb213.exe [183232 2015-03-29] (AVAST Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3596086338-499352715-315314885-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\System32\Acer.scr [450048 2011-09-13] ()
HKU\S-1-5-21-3596086338-499352715-315314885-1004\...\Run: [EntscheiderClub Premium] => C:\Users\Lilly\AppData\Local\EntscheiderClub Premium\EntscheiderClub Premium.exe [1121264 2015-01-29] (Wakoopa)
HKU\S-1-5-21-3596086338-499352715-315314885-1004\...\Run: [WinPatrol] => C:\Program Files (x86)\Ruiware\WinPatrol\winpatrol.exe [1160536 2015-02-23] (Ruiware LLC)
HKU\S-1-5-21-3596086338-499352715-315314885-1004\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd)
HKU\S-1-5-21-3596086338-499352715-315314885-1004\...\MountPoints2: {c7ceb42c-90d4-11e4-b9ab-dc0ea15b18ad} - E:\setup.exe -a
HKU\S-1-5-18\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}
AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [178512 2015-03-13] (NVIDIA Corporation)
AppInit_DLLs: ,C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [178512 2015-03-13] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [164568 2015-03-13] (NVIDIA Corporation)
Startup: C:\Users\Lilly\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tintenwarnungen überwachen - HP Deskjet 3050A J611 series (Netzwerk).lnk
ShortcutTarget: Tintenwarnungen überwachen - HP Deskjet 3050A J611 series (Netzwerk).lnk -> C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (Avast Software s.r.o.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3596086338-499352715-315314885-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3596086338-499352715-315314885-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer.msn.com
HKU\S-1-5-21-3596086338-499352715-315314885-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3596086338-499352715-315314885-1004\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-3596086338-499352715-315314885-1004 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-3596086338-499352715-315314885-1004 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll No File
BHO: Digital Trends Club -> {4BEEA052-726D-4A6E-B65D-A6BD07C263F3} -> C:\Program Files (x86)\Digital Trends Club\x64\Gacela2.dll [2014-09-18] (askGfK)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-02] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-03-04] (Avast Software s.r.o.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-02] (Oracle Corporation)
BHO-x32: Digital Trends Club -> {4BEEA052-726D-4A6E-B65D-A6BD07C263F3} -> C:\Program Files (x86)\Digital Trends Club\Gacela2.dll [2014-09-18] (askGfK)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-22] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-03-04] (Avast Software s.r.o.)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-22] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.2

FireFox:
========
FF ProfilePath: C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_134.dll [2015-03-22] ()
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-02-02] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-02] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-22] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1216156.dll [2015-01-09] (Adobe Systems, Inc.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2014-08-13] (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-22] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-14] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-14] (Microsoft Corporation)
FF Plugin-x32: @nielsen/FirefoxTracker -> C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\FirefoxAddOns\npfirefoxtracker.dll [2015-03-29] (Nielsen)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll [2010-12-08] (Nullsoft, Inc.)
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\iobitascsurfingprotection@iobit.com [2015-02-18]
FF Extension: YouTube Unblocker - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\youtubeunblocker@unblocker.yt [2015-01-16]
FF Extension: Flash and Video Download - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} [2015-02-28]
FF Extension: Adblock Plus Pop-up Addon - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\adblockpopups@jessehakanen.net.xpi [2015-01-16]
FF Extension: Facebook Ads Block - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\jid1-CGxMej0nDJTjwQ@jetpack.xpi [2015-01-16]
FF Extension: AdBlock Lite - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\jid1-dwtFBkQjb3SIQp@jetpack.xpi [2015-01-16]
FF Extension: SSL Version Control - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\jid1-ZM3BerwS6FsQAg@jetpack.xpi [2015-01-16]
FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\{B64D9B05-48E1-4CEB-BF58-E0643994E900}.xpi [2015-02-19]
FF Extension: YouTube Flash Video Player - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\{f3bd3dd2-2888-44c5-91a2-2caeb33fb898}.xpi [2015-01-16]
FF HKLM-x32\...\Firefox\Extensions: [gacela2@nurago.com] - C:\Program Files (x86)\Digital Trends Club\FirefoxAddon.xpi
FF Extension: No Name - C:\Program Files (x86)\Digital Trends Club\FirefoxAddon.xpi [2014-12-03]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-02-12]
FF HKLM-x32\...\Firefox\Extensions: [netsight@nielsen.com] - C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\FirefoxAddOns\netsight@nielsen.xpi
FF Extension: No Name - C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\FirefoxAddOns\netsight@nielsen.xpi [2015-03-29]

Chrome: 
=======
CHR Profile: C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-01]
CHR Extension: (Google Drive) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-01]
CHR Extension: (YouTube) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-01]
CHR Extension: (Google Search) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-01]
CHR Extension: (Google Sheets) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-01]
CHR Extension: (Avast Online Security) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-03-01]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-19]
CHR Extension: (Google Wallet) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-19]
CHR Extension: (Gmail) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-01]
CHR HKLM-x32\...\Chrome\Extension: [amebgbgmoldiehbbbjcaoceilcfnniop] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-04]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 askGfK-Reporting-Service; C:\Program Files (x86)\Digital Trends Club\askGfK-Reporting.exe [3292288 2014-09-18] ()
S3 askGfK-Update-Service; C:\Program Files (x86)\Digital Trends Club\askGfK-Updater.exe [1357952 2014-09-18] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-03-04] (Avast Software s.r.o.)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [107448 2015-03-22] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4030800 2015-03-04] (Avast Software)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2014-12-13] (NVIDIA Corporation)
S2 HPSLPSVC; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S2 HPSLPSVC; C:\Windows\SysWOW64\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-03-17] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-03-17] (Malwarebytes Corporation)
R2 NielsenUpdate; C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenUpdate.exe [2934496 2015-01-16] (The Nielsen Company)
S3 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832 2011-04-24] (NTI Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2014-12-13] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19823248 2014-12-13] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1930608 2015-03-09] (Electronic Arts)
S2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1363160 2014-11-28] (Secunia)
R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [765144 2014-11-28] (Secunia)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [29184 2014-07-07] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [36352 2014-07-07] (LG Electronics Inc.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R3 AppObserver; C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\appobserver64.sys [15584 2015-01-16] (The Nielsen Company)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-03-04] ()
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28144 2015-03-22] (Avast Software s.r.o.)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [88408 2015-03-04] (Avast Software s.r.o.)
R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [449896 2015-03-22] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-03-04] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-03-04] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-03-04] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [441728 2015-03-04] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [136752 2015-03-04] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [268640 2015-03-04] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-03-17] (Malwarebytes Corporation)
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [136408 2015-03-29] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-03-17] (Malwarebytes Corporation)
R1 nnfwdk; C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\nnfwdk64.sys [26848 2015-01-16] (The Nielsen Company)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2014-12-13] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2014-11-28] (Secunia)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21184 2014-06-04] (IObit)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-03-04] (Avast Software)
S3 andnetndis; system32\DRIVERS\lgandnetndis64.sys [X]
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
U3 DfSdkS; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-29 18:02 - 2015-03-29 18:02 - 00000000 ____D () C:\FRST
2015-03-29 16:17 - 2015-03-29 16:17 - 00001986 _____ () C:\Users\Public\Desktop\Avast SafeZone.lnk
2015-03-29 16:17 - 2015-03-29 16:17 - 00001926 _____ () C:\Users\Public\Desktop\Avast Internet Security.lnk
2015-03-29 16:14 - 2015-03-04 16:14 - 00364472 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
2015-03-29 15:46 - 2015-03-29 15:46 - 00003480 ____N () C:\bootsqm.dat
2015-03-29 15:45 - 2015-03-29 15:45 - 00000000 __SHD () C:\found.000
2015-03-29 11:48 - 2015-03-29 11:48 - 00002938 _____ () C:\Windows\System32\Tasks\{A29ADD1C-3329-4467-99E8-2AB1D016AB6B}
2015-03-29 11:47 - 2015-03-29 11:47 - 00002938 _____ () C:\Windows\System32\Tasks\{AEE84B01-2B0C-471C-B9A7-DB7F24DBC6C4}
2015-03-29 11:47 - 2015-03-29 11:47 - 00002938 _____ () C:\Windows\System32\Tasks\{1AC5CDA9-0B60-4467-8051-FC86187055A0}
2015-03-29 11:39 - 2015-03-29 11:50 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\Winamp
2015-03-29 11:39 - 2015-03-29 11:39 - 00000943 _____ () C:\Users\Public\Desktop\Winamp.lnk
2015-03-29 11:39 - 2015-03-29 11:39 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp Erkennungs-Plug-in
2015-03-29 11:39 - 2015-03-29 11:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp
2015-03-29 11:39 - 2015-03-29 11:39 - 00000000 ____D () C:\Program Files (x86)\Winamp Detect
2015-03-28 17:12 - 2015-03-28 17:12 - 00000000 ___SD () C:\Windows\SysWOW64\GWX
2015-03-28 17:12 - 2015-03-28 17:12 - 00000000 ___SD () C:\Windows\system32\GWX
2015-03-28 02:39 - 2015-03-28 02:39 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\dvdcss
2015-03-26 18:18 - 2015-03-26 18:18 - 00083516 _____ () C:\Users\Lilly\Downloads\ixquick-2.0.5.crx
2015-03-26 18:08 - 2015-03-26 18:08 - 00000000 ____D () C:\Users\Lilly\Desktop\Alte Firefox-Daten
2015-03-25 10:26 - 2015-03-25 10:26 - 00001066 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-03-22 09:41 - 2015-03-22 09:41 - 00000000 _____ () C:\Windows\system32\REN4C3C.tmp
2015-03-22 09:26 - 2015-03-22 09:26 - 00000000 _____ () C:\Windows\system32\RENF3FF.tmp
2015-03-22 09:21 - 2015-03-22 09:20 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-03-22 09:18 - 2015-03-22 09:18 - 00000000 _____ () C:\Windows\SysWOW64\RENEAEA.tmp
2015-03-22 09:12 - 2015-03-22 09:12 - 00000000 ____D () C:\Windows\system32\Sun
2015-03-22 07:38 - 2015-03-22 07:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-03-22 07:37 - 2015-03-22 07:36 - 00028144 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswKbd.sys
2015-03-22 07:36 - 2015-03-22 07:36 - 00449896 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswNdisFlt.sys
2015-03-22 07:13 - 2015-03-22 07:13 - 00002062 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2015-03-22 07:13 - 2015-03-22 07:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2015-03-22 06:54 - 2015-03-22 06:54 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\DesktopDPO-b590ce5c4fa12d0f57bf76ef54d1be94
2015-03-22 06:53 - 2015-03-22 06:53 - 28746736 _____ (Mozilla) C:\Users\Lilly\Downloads\Thunderbird Setup 31.5.0.exe
2015-03-22 06:51 - 2015-03-22 06:51 - 00001883 _____ () C:\Users\Public\Desktop\Design&Print.lnk
2015-03-22 06:51 - 2015-03-22 06:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avery Zweckform
2015-03-22 06:45 - 2015-03-22 06:51 - 00000000 ____D () C:\Program Files (x86)\Design&Print
2015-03-22 06:42 - 2015-03-22 06:44 - 361086384 _____ (Avery Zweckform) C:\Users\Lilly\Downloads\DesignPrintDE-1.0.5.exe
2015-03-22 04:08 - 2015-03-22 04:08 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_nnfwdk64_01009.Wdf
2015-03-22 04:00 - 2015-03-22 04:02 - 00000890 _____ () C:\nsinst.log
2015-03-22 04:00 - 2015-03-22 04:00 - 00000000 ____D () C:\Program Files (x86)\NetRatingsNetSight
2015-03-22 03:59 - 2015-03-22 03:59 - 02790600 _____ (The Nielsen Company) C:\Users\Lilly\Downloads\netsight_setup_6.2.0.22_MP_Production_mid51086821543_p.exe
2015-03-21 22:49 - 2015-03-29 10:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-03-19 21:47 - 2015-03-19 21:47 - 00000000 ____D () C:\Users\Awender\AppData\Local\Microsoft Corporation
2015-03-19 21:46 - 2015-03-19 21:46 - 00002091 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 7 Upgrade Advisor.lnk
2015-03-19 21:46 - 2015-03-19 21:46 - 00002079 _____ () C:\Users\Public\Desktop\Windows 7 Upgrade Advisor.lnk
2015-03-19 21:46 - 2015-03-19 21:46 - 00000000 ____D () C:\Program Files (x86)\Microsoft Windows 7 Upgrade Advisor
2015-03-19 21:43 - 2015-03-19 21:43 - 08676128 _____ (Microsoft Corporation) C:\Users\Lilly\Downloads\Windows7UpgradeAdvisorSetup.exe
2015-03-19 21:35 - 2015-03-19 21:35 - 02171392 _____ () C:\Users\Lilly\Downloads\AdwCleaner_4.112.exe
2015-03-19 20:32 - 2015-03-19 20:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva
2015-03-19 20:32 - 2015-03-19 20:32 - 00000000 ____D () C:\Program Files\Recuva
2015-03-18 10:10 - 2015-03-18 10:10 - 00000000 ____D () C:\Windows\SysWOW64\NV
2015-03-18 10:10 - 2015-03-18 10:10 - 00000000 ____D () C:\Windows\system32\NV
2015-03-18 10:04 - 2015-03-13 18:16 - 06861968 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-03-18 10:04 - 2015-03-13 18:16 - 03526856 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-03-18 10:04 - 2015-03-13 18:16 - 02559808 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-03-18 10:04 - 2015-03-13 18:16 - 01099408 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2015-03-18 10:04 - 2015-03-13 18:16 - 00935056 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-03-18 10:04 - 2015-03-13 18:16 - 00386248 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-03-18 10:04 - 2015-03-13 18:16 - 00075976 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2015-03-18 10:04 - 2015-03-13 18:16 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-03-18 10:04 - 2015-03-11 15:10 - 04246327 _____ () C:\Windows\system32\nvcoproc.bin
2015-03-18 10:03 - 2015-03-13 21:41 - 00073872 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-03-18 10:03 - 2015-03-13 21:41 - 00060560 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 32114888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 25460880 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 24775368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 20466376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 18580512 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 17258024 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 16022016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 14121624 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 13297144 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 13210080 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 10775080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 10715864 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 10262160 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-03-18 09:43 - 2015-03-13 21:41 - 03611792 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 03303448 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 03249352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 02906928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 01896136 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434788.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434788.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00997856 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00970384 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00944784 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00930448 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00909512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00878328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00354112 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00306208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00178512 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00164568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00032456 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2015-03-18 09:43 - 2015-03-13 21:41 - 00027441 _____ () C:\Windows\system32\nvinfo.pb
2015-03-15 22:08 - 2015-03-20 19:32 - 00000000 ____D () C:\Users\Lilly\Desktop\bilder
2015-03-15 10:01 - 2015-03-29 11:38 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-15 10:00 - 2015-03-25 10:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-03-15 10:00 - 2015-03-25 10:26 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2015-03-15 10:00 - 2015-03-17 07:15 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-15 10:00 - 2015-03-17 07:15 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-15 10:00 - 2015-03-17 07:15 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-03-15 06:52 - 2015-03-15 06:52 - 00000000 ____D () C:\Users\Lilly\AppData\Local\{AC48AE74-4297-4DCD-AD4D-1BA3F788EA99}
2015-03-14 22:25 - 2015-03-14 22:25 - 00057043 _____ () C:\Users\Lilly\Desktop\Playlist Intenso alt.m3u
2015-03-14 16:32 - 2015-03-14 16:32 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\Canneverbe Limited
2015-03-14 16:32 - 2015-03-14 16:32 - 00000000 ____D () C:\ProgramData\Canneverbe Limited
2015-03-14 12:17 - 2015-03-14 12:25 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\UseNeXT
2015-03-14 12:17 - 2015-03-14 12:17 - 00000000 ____D () C:\Users\Awender\Documents\UseNeXT
2015-03-14 11:01 - 2015-03-29 12:47 - 00000000 ____D () C:\Users\Lilly\Desktop\Usenext
2015-03-14 10:55 - 2015-03-29 12:41 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\UseNeXT
2015-03-14 10:55 - 2015-03-14 10:55 - 00001821 _____ () C:\Users\Awender\Desktop\UseNeXT by Tangysoft.lnk
2015-03-14 10:55 - 2015-03-14 10:55 - 00000000 ____D () C:\Users\Lilly\Documents\UseNeXT
2015-03-14 10:55 - 2015-03-14 10:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UseNeXT
2015-03-14 10:55 - 2015-03-14 10:55 - 00000000 ____D () C:\Program Files (x86)\UseNeXT
2015-03-13 20:09 - 2015-03-13 20:10 - 00000000 ____D () C:\Users\Lilly\AppData\Local\{EF6BA687-A752-4FC5-A579-EADA018C9ED8}
2015-03-11 11:22 - 2015-02-20 06:41 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-11 11:22 - 2015-02-20 06:40 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-11 11:22 - 2015-02-20 06:40 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-11 11:22 - 2015-02-20 06:40 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-11 11:22 - 2015-02-20 06:13 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-03-11 11:22 - 2015-02-20 06:13 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-03-11 11:22 - 2015-02-20 06:13 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-03-11 11:22 - 2015-02-20 06:12 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-03-11 11:22 - 2015-02-20 05:29 - 00372224 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-11 11:22 - 2015-02-20 05:09 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-03-11 11:22 - 2015-02-03 05:34 - 05554104 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-11 11:22 - 2015-02-03 05:31 - 14632960 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-03-11 11:22 - 2015-02-03 05:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-03-11 11:22 - 2015-02-03 05:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-03-11 11:22 - 2015-02-03 05:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-03-11 11:22 - 2015-02-03 05:12 - 11411968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-03-11 11:22 - 2015-02-03 05:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-03-11 11:22 - 2015-02-03 05:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-03-11 11:22 - 2015-02-03 05:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-03-11 11:22 - 2015-02-03 05:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-03-11 11:22 - 2015-01-17 04:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-11 11:22 - 2015-01-17 04:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-03-11 11:21 - 2015-02-03 05:34 - 00693176 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-03-11 11:21 - 2015-02-03 05:34 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-03-11 11:21 - 2015-02-03 05:33 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-03-11 11:21 - 2015-02-03 05:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-03-11 11:21 - 2015-02-03 05:31 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-03-11 11:21 - 2015-02-03 05:30 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-03-11 11:21 - 2015-02-03 05:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-03-11 11:21 - 2015-02-03 05:28 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-03-11 11:21 - 2015-02-03 05:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-03-11 11:21 - 2015-02-03 05:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-03-11 11:21 - 2015-02-03 05:16 - 03973048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-03-11 11:21 - 2015-02-03 05:16 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-03-11 11:21 - 2015-02-03 05:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2015-03-11 11:21 - 2015-02-03 05:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2015-03-11 11:21 - 2015-02-03 05:11 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2015-03-11 11:21 - 2015-02-03 05:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-03-11 11:21 - 2015-02-03 05:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-03-11 11:21 - 2015-02-03 05:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-03-11 11:21 - 2015-02-03 05:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-03-11 11:21 - 2015-02-03 04:32 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-03-11 11:21 - 2015-01-31 05:48 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-03-11 11:21 - 2015-01-31 05:48 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-03-11 11:21 - 2015-01-31 01:56 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-03-11 11:21 - 2014-11-01 00:24 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-03-11 11:21 - 2014-06-28 02:21 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-03-11 11:21 - 2014-06-28 02:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-03-11 11:20 - 2015-03-06 07:56 - 00155576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-03-11 11:20 - 2015-03-06 07:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-03-11 11:20 - 2015-03-06 07:42 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-03-11 11:20 - 2015-03-06 07:41 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-03-11 11:20 - 2015-03-06 07:41 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-03-11 11:20 - 2015-03-06 07:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-03-11 11:20 - 2015-03-06 07:38 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-03-11 11:20 - 2015-03-06 07:36 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-03-11 11:20 - 2015-03-06 07:09 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-03-11 11:20 - 2015-03-06 07:09 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-03-11 11:20 - 2015-03-06 07:07 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-03-11 11:20 - 2015-03-06 07:07 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-03-11 11:20 - 2015-03-06 07:06 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-03-11 11:20 - 2015-02-26 05:25 - 03204096 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-11 11:20 - 2015-02-24 05:15 - 00389800 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-11 11:20 - 2015-02-24 04:32 - 00342696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-03-11 11:20 - 2015-02-21 02:41 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-03-11 11:20 - 2015-02-21 02:27 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-03-11 11:20 - 2015-02-21 02:27 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-03-11 11:20 - 2015-02-21 02:25 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-03-11 11:20 - 2015-02-21 01:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-03-11 11:20 - 2015-02-20 05:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-11 11:20 - 2015-02-20 05:05 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-03-11 11:20 - 2015-02-20 04:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-03-11 11:20 - 2015-02-20 04:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-03-11 11:20 - 2015-02-20 04:35 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-03-11 11:20 - 2015-02-20 04:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-03-11 11:20 - 2015-02-20 04:22 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-03-11 11:20 - 2015-02-20 04:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-03-11 11:20 - 2015-02-20 04:08 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-03-11 11:20 - 2015-02-20 04:08 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-03-11 11:20 - 2015-02-20 04:06 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-03-11 11:20 - 2015-02-20 04:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-11 11:20 - 2015-02-20 04:03 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-03-11 11:20 - 2015-02-20 04:01 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-03-11 11:20 - 2015-02-20 04:00 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-03-11 11:20 - 2015-02-20 03:58 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-03-11 11:20 - 2015-02-20 03:56 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-03-11 11:20 - 2015-02-20 03:56 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-03-11 11:20 - 2015-02-20 03:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-11 11:20 - 2015-02-20 03:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-03-11 11:20 - 2015-02-20 03:41 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-03-11 11:20 - 2015-02-20 03:24 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-03-11 11:20 - 2015-02-20 03:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-03-11 11:20 - 2015-02-20 03:16 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-11 11:20 - 2015-02-20 02:57 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-03-11 11:20 - 2015-02-20 02:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-03-11 11:20 - 2015-02-13 07:26 - 12875264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-03-11 11:20 - 2015-02-13 07:22 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-11 11:20 - 2015-02-03 05:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-11 11:20 - 2015-02-03 05:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-11 11:20 - 2015-02-03 05:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-03-11 11:20 - 2015-02-03 05:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-03-11 11:20 - 2015-01-31 01:56 - 00459336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-03-11 11:19 - 2015-02-21 03:16 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-11 11:19 - 2015-02-21 01:58 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-11 11:19 - 2015-02-20 04:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-03-11 11:19 - 2015-02-20 04:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-11 11:19 - 2015-02-20 04:48 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-11 11:19 - 2015-02-20 04:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-03-11 11:19 - 2015-02-20 04:41 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-11 11:19 - 2015-02-20 04:36 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-11 11:19 - 2015-02-20 04:35 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-11 11:19 - 2015-02-20 04:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-03-11 11:19 - 2015-02-20 04:32 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-11 11:19 - 2015-02-20 04:22 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-11 11:19 - 2015-02-20 04:09 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-03-11 11:19 - 2015-02-20 04:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-03-11 11:19 - 2015-02-20 03:47 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-03-11 11:19 - 2015-02-20 03:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-11 11:19 - 2015-02-20 03:43 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-11 11:19 - 2015-02-20 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-03-11 11:19 - 2015-02-20 03:30 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-03-11 11:19 - 2015-02-20 03:28 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-11 11:19 - 2015-02-20 03:23 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-03-11 11:19 - 2015-02-20 03:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-03-11 11:19 - 2015-02-20 03:01 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-03-11 11:18 - 2015-02-04 05:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-11 11:18 - 2015-02-04 04:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-03-08 20:30 - 2015-03-08 20:30 - 00000000 ____D () C:\ProgramData\Emsisoft
2015-03-06 20:30 - 2015-03-22 07:03 - 00000000 ____D () C:\ProgramData\Malwarebytes Anti-Exploit
2015-03-06 20:24 - 2015-03-28 12:14 - 00000000 ____D () C:\Program Files (x86)\Emsisoft Anti-Malware
2015-03-06 20:08 - 2015-03-19 21:52 - 00000000 ____D () C:\AdwCleaner
2015-03-06 13:44 - 2015-03-06 23:44 - 00000000 ____D () C:\Users\Lilly\Desktop\goa
2015-03-06 13:38 - 2015-03-06 13:38 - 00000000 ____D () C:\Users\Lilly\AppData\Local\CDex
2015-03-05 10:44 - 2015-03-22 08:47 - 00003354 _____ () C:\Windows\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-3596086338-499352715-315314885-1004
2015-03-05 10:44 - 2015-03-22 08:47 - 00003220 _____ () C:\Windows\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-3596086338-499352715-315314885-1004
2015-03-04 16:35 - 2015-03-04 16:35 - 00000000 ____D () C:\Users\Awender\Documents\My Games
2015-03-04 16:14 - 2015-03-04 16:14 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr
2015-03-04 16:10 - 2015-03-04 16:11 - 00000197 _____ () C:\Windows\system32\2015-03-04-14-10-56.023-AvastVBoxSVC.exe-4348.log
2015-03-04 12:16 - 2015-03-04 12:16 - 00000197 _____ () C:\Windows\system32\2015-03-04-10-16-11.006-AvastVBoxSVC.exe-4372.log
2015-03-03 20:14 - 2015-03-03 20:14 - 00000197 _____ () C:\Windows\system32\2015-03-03-18-14-41.090-AvastVBoxSVC.exe-4804.log
2015-03-03 14:55 - 2015-03-03 14:56 - 00000197 _____ () C:\Windows\system32\2015-03-03-12-55-30.064-AvastVBoxSVC.exe-4024.log
2015-03-03 11:15 - 2015-03-03 11:16 - 00000197 _____ () C:\Windows\system32\2015-03-03-09-15-54.073-AvastVBoxSVC.exe-4020.log
2015-03-02 21:25 - 2015-03-02 21:26 - 00000197 _____ () C:\Windows\system32\2015-03-02-19-25-48.050-AvastVBoxSVC.exe-5312.log
2015-03-02 13:45 - 2015-03-02 13:45 - 00000197 _____ () C:\Windows\system32\2015-03-02-11-45-10.072-AvastVBoxSVC.exe-1724.log
2015-03-02 11:13 - 2015-03-02 11:14 - 00000197 _____ () C:\Windows\system32\2015-03-02-09-13-38.090-AvastVBoxSVC.exe-1688.log
2015-03-01 19:41 - 2015-03-01 19:41 - 00000000 ____D () C:\Users\Lilly\Documents\My Games
2015-03-01 19:41 - 2015-03-01 19:41 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\NVIDIA
2015-03-01 19:09 - 2015-03-01 19:09 - 00000280 _____ () C:\Windows\system32\2015-03-01-17-09-01.045-aswFe.exe-7864.log
2015-03-01 19:09 - 2015-03-01 19:09 - 00000000 ____D () C:\Users\Lilly\AppData\Local\Shimly.Net
2015-03-01 19:08 - 2015-03-01 19:08 - 00000280 _____ () C:\Windows\system32\2015-03-01-17-08-15.028-aswFe.exe-6068.log
2015-03-01 19:06 - 2015-02-28 22:38 - 00000000 ____D () C:\Users\Lilly\Downloads\ShimlySurfer_1.0.0.2_x64
2015-03-01 19:01 - 2015-03-01 19:01 - 00001133 _____ () C:\Users\Public\Desktop\Formatwandler 2014.lnk
2015-03-01 18:57 - 2015-03-01 19:01 - 34362833 _____ () C:\Users\Lilly\Downloads\ShimlySurfer_1.0.0.2_x64 (1).exe
2015-03-01 18:38 - 2015-03-01 18:38 - 00000197 _____ () C:\Windows\system32\2015-03-01-16-38-31.068-AvastVBoxSVC.exe-5420.log
2015-03-01 17:32 - 2015-03-01 17:39 - 00000000 ____D () C:\Users\Lilly\Documents\Aiseesoft Studio
2015-03-01 17:32 - 2015-03-01 17:32 - 00000000 ____D () C:\Users\Lilly\AppData\Local\Aiseesoft Studio
2015-03-01 17:17 - 2015-03-01 17:19 - 00028226 _____ () C:\Users\Lilly\Documents\cc_20150301_161739.reg
2015-03-01 16:28 - 2015-03-01 16:28 - 00000197 _____ () C:\Windows\system32\2015-03-01-14-28-09.033-AvastVBoxSVC.exe-5272.log
2015-03-01 16:18 - 2015-03-01 16:18 - 01081688 _____ (WinPatrol) C:\Users\Lilly\Downloads\wpsetup.exe
2015-03-01 16:15 - 2015-03-01 16:15 - 00002776 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2015-03-01 16:15 - 2015-03-01 16:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-03-01 16:15 - 2015-03-01 16:15 - 00000000 ____D () C:\Program Files\CCleaner
2015-03-01 16:10 - 2015-03-01 16:12 - 04197696 _____ (Piriform Ltd) C:\Users\Lilly\Downloads\ccsetup503_slim.exe
2015-03-01 15:14 - 2015-03-01 15:14 - 00000197 _____ () C:\Windows\system32\2015-03-01-13-14-08.003-AvastVBoxSVC.exe-2820.log
2015-02-28 20:16 - 2015-03-29 17:42 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-28 20:16 - 2015-03-29 17:22 - 00001112 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-28 20:16 - 2015-03-01 16:17 - 00004118 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-02-28 20:16 - 2015-03-01 16:17 - 00003866 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-02-28 20:16 - 2015-02-28 20:16 - 00880208 _____ (Google Inc.) C:\Users\Lilly\Downloads\ChromeSetup.exe
2015-02-28 20:16 - 2015-02-28 20:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-02-28 20:11 - 2015-03-01 16:36 - 00001228 _____ () C:\Users\Awender\Desktop\Revo Uninstaller.lnk
2015-02-28 20:11 - 2015-03-01 16:36 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2015-02-28 20:04 - 2015-02-28 20:04 - 00000197 _____ () C:\Windows\system32\2015-02-28-18-04-46.037-AvastVBoxSVC.exe-2072.log
2015-02-28 14:52 - 2015-02-28 14:53 - 00048479 _____ () C:\Users\Lilly\Downloads\Addition.txt
2015-02-28 14:51 - 2015-02-28 14:53 - 00073230 _____ () C:\Users\Lilly\Downloads\FRST.txt
2015-02-28 14:43 - 2015-02-28 14:43 - 02087936 _____ (Farbar) C:\Users\Lilly\Downloads\FRST64.exe
2015-02-28 09:45 - 2015-02-28 09:46 - 00000197 _____ () C:\Windows\system32\2015-02-28-07-45-58.073-AvastVBoxSVC.exe-5052.log
2015-02-28 07:57 - 2015-02-28 07:57 - 00880208 _____ (Google Inc.) C:\Users\Awender\Desktop\ChromeSetup.exe
2015-02-28 07:55 - 2015-02-28 07:55 - 00003114 _____ () C:\Windows\System32\Tasks\{7D9B88F5-6434-4E90-8262-F7835569BF75}
2015-02-28 07:53 - 2015-02-28 07:56 - 00000937 _____ () C:\Users\Awender\Desktop\Paradiesbar.lnk
2015-02-28 07:52 - 2015-02-28 07:52 - 01165987 _____ (Startparadies ) C:\Users\Awender\Desktop\setup.exe
2015-02-28 07:47 - 2015-02-28 07:47 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\AVAST Software
2015-02-28 07:15 - 2015-02-28 07:16 - 00000197 _____ () C:\Windows\system32\2015-02-28-05-15-50.015-AvastVBoxSVC.exe-2924.log
2015-02-27 10:56 - 2015-02-27 10:56 - 00000197 _____ () C:\Windows\system32\2015-02-27-08-56-04.095-AvastVBoxSVC.exe-3188.log

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-03-29 18:01 - 2015-02-12 16:10 - 00000000 ____D () C:\Users\Lilly\Desktop\trojanerboard
2015-03-29 17:27 - 2009-07-14 06:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-03-29 17:27 - 2009-07-14 06:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-03-29 17:19 - 2014-11-10 21:57 - 01689288 _____ () C:\Windows\WindowsUpdate.log
2015-03-29 17:18 - 2015-01-28 21:52 - 00026328 _____ () C:\Windows\setupact.log
2015-03-29 17:18 - 2014-12-02 09:41 - 00000431 _____ () C:\Windows\system32\Drivers\etc\hosts.ics
2015-03-29 17:17 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-03-29 17:06 - 2015-01-28 21:52 - 00448766 _____ () C:\Windows\PFRO.log
2015-03-29 16:14 - 2015-02-12 00:18 - 00003924 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-03-29 16:14 - 2014-11-11 06:50 - 00699370 _____ () C:\Windows\system32\perfh007.dat
2015-03-29 16:14 - 2014-11-11 06:50 - 00149220 _____ () C:\Windows\system32\perfc007.dat
2015-03-29 16:14 - 2009-07-14 07:13 - 01619896 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-29 15:36 - 2014-11-15 14:11 - 00243018 _____ () C:\Users\Lilly\Desktop\mucke.m3u
2015-03-29 14:37 - 2014-11-22 05:49 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\vlc
2015-03-29 13:10 - 2014-11-15 13:27 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\Winamp
2015-03-29 11:39 - 2014-12-04 14:01 - 00000000 ____D () C:\Program Files (x86)\Winamp
2015-03-29 11:37 - 2014-11-11 00:10 - 00000000 ____D () C:\ProgramData\clear.fi
2015-03-29 05:34 - 2014-11-16 14:41 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\SoftGrid Client
2015-03-28 17:12 - 2014-12-04 01:18 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-03-28 17:12 - 2012-01-19 14:18 - 00000000 ____D () C:\ProgramData\Skype
2015-03-23 15:04 - 2014-11-11 00:02 - 00000000 ____D () C:\Users\Awender
2015-03-22 21:01 - 2014-11-12 17:39 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-22 09:15 - 2015-01-31 17:43 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-03-22 09:15 - 2015-01-31 17:43 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-03-22 09:15 - 2014-11-12 17:39 - 00778928 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-03-22 09:15 - 2014-11-12 17:39 - 00003824 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-03-22 09:15 - 2014-11-11 00:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-03-22 09:15 - 2014-11-11 00:20 - 00000000 ____D () C:\Program Files\WinRAR
2015-03-22 09:15 - 2014-11-11 00:18 - 00000000 ____D () C:\Program Files (x86)\Java
2015-03-22 09:15 - 2012-01-19 14:47 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-03-22 09:12 - 2014-11-11 00:19 - 00000000 ____D () C:\Program Files\Java
2015-03-22 08:53 - 2014-11-11 00:15 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-03-22 08:50 - 2015-01-09 05:44 - 00000000 ____D () C:\Program Files (x86)\RealNetworks
2015-03-22 08:50 - 2015-01-09 05:43 - 00000000 ____D () C:\Program Files (x86)\Real
2015-03-22 08:50 - 2014-12-23 12:30 - 00000000 ____D () C:\ProgramData\Package Cache
2015-03-22 08:50 - 2014-11-29 12:08 - 00000000 ____D () C:\ProgramData\Real
2015-03-22 08:49 - 2015-01-09 05:42 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\Real
2015-03-22 08:03 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-03-18 15:42 - 2014-11-10 22:22 - 00000000 ____D () C:\ProgramData\Temp
2015-03-18 10:10 - 2014-11-10 22:09 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-18 10:04 - 2014-11-10 22:09 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-03-18 10:04 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help
2015-03-18 10:02 - 2014-11-12 14:59 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-03-18 10:02 - 2014-11-10 22:09 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-03-18 09:41 - 2015-02-16 12:42 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\WinPatrol
2015-03-15 22:58 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2015-03-15 10:43 - 2014-11-13 20:33 - 00000000 ____D () C:\Windows\pss
2015-03-15 04:27 - 2014-12-06 21:55 - 00000000 ____D () C:\Users\Lilly\Desktop\dokumente
2015-03-12 00:15 - 2009-07-14 06:45 - 00291688 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-11 23:46 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2015-03-11 23:46 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism
2015-03-11 23:22 - 2014-11-11 09:02 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-11 23:05 - 2014-11-11 09:02 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-11 00:11 - 2014-11-13 15:51 - 00000000 ____D () C:\ProgramData\Origin
2015-03-10 18:50 - 2014-11-13 16:05 - 00000000 ____D () C:\Users\Lilly\Desktop\youtube
2015-03-09 20:10 - 2014-12-24 21:46 - 00015134 _____ () C:\Users\Lilly\Desktop\CHILLY.m3u
2015-03-09 11:43 - 2014-11-13 15:51 - 00000000 ____D () C:\Program Files (x86)\Origin
2015-03-07 07:13 - 2014-11-13 16:05 - 00000000 ____D () C:\Users\Lilly\Documents\DVDVideoSoft
2015-03-06 16:07 - 2015-02-16 12:00 - 00002397 _____ () C:\DelFix.txt
2015-03-04 16:35 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-03-04 16:14 - 2015-02-12 00:18 - 00441728 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys
2015-03-04 16:14 - 2015-02-12 00:18 - 00268640 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-03-04 16:14 - 2015-02-12 00:18 - 00136752 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys
2015-03-04 16:14 - 2015-02-12 00:18 - 00093528 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys
2015-03-04 16:14 - 2015-02-12 00:18 - 00088408 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-03-04 16:14 - 2015-02-12 00:18 - 00065736 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-03-04 16:14 - 2015-02-12 00:18 - 00029168 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2015-03-04 16:13 - 2015-02-12 00:18 - 01047320 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
2015-03-04 12:22 - 2015-02-22 02:58 - 00000000 ____D () C:\Program Files (x86)\Paradiesbar
2015-03-01 20:14 - 2014-11-13 15:54 - 00000000 ____D () C:\Program Files (x86)\Origin Games
2015-03-01 19:40 - 2014-12-04 01:09 - 00000000 ____D () C:\Program Files (x86)\IObit
2015-03-01 19:39 - 2014-12-04 01:09 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\IObit
2015-03-01 19:01 - 2014-12-23 13:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Formatwandler 2014
2015-03-01 19:01 - 2014-12-23 12:53 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\Engelmann Media
2015-03-01 18:56 - 2014-12-06 23:19 - 00002858 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (Awender)
2015-03-01 18:37 - 2014-12-06 22:33 - 00002860 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (SYSTEM)
2015-03-01 18:19 - 2014-11-11 08:10 - 00000000 ___RD () C:\Users\Awender\Desktop\Acer Extras
2015-03-01 18:15 - 2014-12-23 12:55 - 00000000 ____D () C:\Windows\System32\Tasks\Abelssoft
2015-03-01 17:49 - 2014-12-23 12:31 - 00000000 ____D () C:\ProgramData\Engelmann Media
2015-03-01 17:49 - 2014-12-23 12:31 - 00000000 ____D () C:\Program Files (x86)\Engelmann Media
2015-03-01 17:02 - 2015-02-25 21:48 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\WinPatrol
2015-03-01 16:21 - 2015-02-16 12:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinPatrol
2015-03-01 16:21 - 2015-02-16 12:42 - 00000000 ____D () C:\ProgramData\InstallMate
2015-03-01 16:17 - 2015-02-04 16:21 - 00003164 _____ () C:\Windows\System32\Tasks\Game_Booster_AutoUpdate
2015-03-01 16:12 - 2014-11-11 00:16 - 00000000 ____D () C:\Users\Awender\AppData\Local\Google
2015-02-28 20:16 - 2014-11-11 00:16 - 00000000 ____D () C:\Program Files (x86)\Google
2015-02-28 10:06 - 2015-02-15 17:09 - 00000000 ____D () C:\Program Files (x86)\SpywareBlaster
2015-02-28 10:00 - 2012-01-19 13:38 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-02-28 09:59 - 2014-12-04 01:11 - 00002900 _____ () C:\Windows\System32\Tasks\Uninstaller_SkipUac_Lilly
2015-02-28 09:55 - 2015-02-26 10:50 - 00001924 _____ () C:\Windows\SecuniaPackage.log
2015-02-28 09:48 - 2014-11-11 00:02 - 00000000 ____D () C:\Users\Awender\AppData\Local\VirtualStore
2015-02-28 09:46 - 2014-11-11 00:15 - 00001051 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-02-28 07:56 - 2015-02-22 02:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paradiesbar
2015-02-27 00:56 - 2014-11-14 13:59 - 00000000 ____D () C:\Users\Lilly\Desktop\hintergrundbilder

==================== Files in the root of some directories =======

2014-11-12 19:59 - 2014-11-12 19:59 - 0000057 _____ () C:\ProgramData\Ament.ini
2014-11-10 22:22 - 2014-11-10 22:25 - 0015230 _____ () C:\ProgramData\ArcadeDeluxe5.log

Some content of TEMP:
====================
C:\Users\Awender\AppData\Local\temp\Quarantine.exe
C:\Users\Awender\AppData\Local\temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-28 09:38

==================== End Of Log ============================
         
--- --- ---
__________________

Alt 29.03.2015, 18:09   #4
lyncat89
 
Pc plötzlich sehr langsam - Standard

Addition



Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015
Ran by Awender at 2015-03-29 18:04:06
Running from C:\Users\Lilly\Desktop\trojanerboard\29.03
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
FW: avast! Antivirus (Enabled) {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acer Backup Manager (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.99 - NTI Corporation)
Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1904 - CyberLink Corp.)
Acer Crystal Eye Webcam (x32 Version: 1.0.1904 - CyberLink Corp.) Hidden
Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3008 - Acer Incorporated)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3504 - Acer Incorporated)
Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.04.3504 - Acer Incorporated)
Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0913.2011 - Acer Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 17.0.0.124 - Adobe Systems Incorporated)
Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.6.156 - Adobe Systems, Inc.)
Aiseesoft Video Downloader 6.0.22 (HKLM-x32\...\{4D568512-220B-4377-95CE-DCCF9235A612}_is1) (Version: 6.0.22 - Aiseesoft Studio)
Amazon Kindle (HKU\S-1-5-21-3596086338-499352715-315314885-1004\...\Amazon Kindle) (Version:  - Amazon)
Ashampoo WinOptimizer 11 (HKLM-x32\...\{4209F371-8D72-8119-66FA-897D2D41E27F}_is1) (Version: 11.00.60 - Ashampoo GmbH & Co. KG)
Avast Internet Security (HKLM-x32\...\Avast) (Version: 10.2.2214 - AVAST Software)
Backup Manager V3 (x32 Version: 3.0.0.99 - NTI Corporation) Hidden
Bejeweled® 3 (HKLM-x32\...\{E99C27B2-EB2E-4244-9F5C-A96F55100F0C}) (Version: 1.1.13.4753 - Electronic Arts, Inc.)
Broadcom Card Reader Driver Installer (HKLM\...\{4710662C-8204-4334-A977-B1AC9E547819}) (Version: 14.8.2.2 - Broadcom Corporation)
Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 14.8.4.1 - Broadcom Corporation)
calibre 64bit (HKLM\...\{EB3D23E3-91A7-46A0-9D7F-698151973A41}) (Version: 2.12.0 - Kovid Goyal)
CCleaner (HKLM\...\CCleaner) (Version: 5.03 - Piriform)
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.4.5143 - CDBurnerXP)
CDex - Open Source Digital Audio CD Extractor (HKLM-x32\...\CDex) (Version: 1.77.0.2015 - Georgy Berdyshev)
clear.fi (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 1.0.2024.00 - CyberLink Corp.)
clear.fi (x32 Version: 1.0.1517_36458 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 1.0.2024.00 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 9.0.8026 - CyberLink Corp.) Hidden
clear.fi Client (HKLM-x32\...\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}) (Version: 1.00.3500 - Acer Incorporated)
CPUID CPU-Z 1.71.1 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Design & Print (HKLM-x32\...\Design & Print 1.0.5) (Version: 1.0.5 - Avery Zweckform)
Digital Trends Club (HKLM-x32\...\39992AD7-103F-4308-8BB7-3F65F543604D) (Version: 14.1.104 - askGfK)
Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.7000.7 - Dolby Laboratories Inc)
EmRegSysSetup (x32 Version: 1.6.0.1306 - Engelmann GmbH) Hidden
EntscheiderClub Premium (HKU\S-1-5-21-3596086338-499352715-315314885-1004\...\EntscheiderClub Premium) (Version:  - Wakoopa B.V.)
ETDWare PS/2-X64 8.0.6.3_WHQL (HKLM\...\Elantech) (Version: 8.0.6.3 - ELAN Microelectronic Corp.)
Evernote v. 4.5.1 (HKLM-x32\...\{28921580-E4BB-11E0-9FD7-1CC1DEF07CBE}) (Version: 4.5.1.5451 - Evernote Corp.)
Formatwandler 2014 (HKLM-x32\...\{c27f2a3d-93d7-4112-b0ba-424b59be1ad2}) (Version: 6.0.5060.20182 - S.A.D.)
Formatwandler2014Setup (x32 Version: 6.0.0.1311 - Engelmann Media GmbH) Hidden
Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Free Studio version 6.4.3.128 (HKLM-x32\...\Free Studio_is1) (Version: 6.4.3.128 - DVDVideoSoft Ltd.)
freenet.de SMS (HKLM-x32\...\freenet.de SMS) (Version: 1.0.11 - freenet.de GmbH)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria fotogràfica del Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.101 - Google Inc.)
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
HDX4DirectShowFilter (x32 Version: 1.0.0.1305 - Engelmann GmbH) Hidden
HP Deskjet 3050A J611 series - Grundlegende Software für das Gerät (HKLM\...\{61ADDE9C-3AE6-46FC-9127-DFFF637AED03}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Deskjet 3050A J611 series Hilfe (HKLM-x32\...\{97DDCAB8-B770-4089-A10F-67568069D78A}) (Version: 140.0.2.2 - Hewlett Packard)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPDiagnosticAlert (x32 Version: 1.00.0001 - Microsoft) Hidden
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3501 - Acer Incorporated)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2418 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.5.0.1026 - Intel Corporation)
IVU.journey (HKLM-x32\...\IVU.journey) (Version:  - )
Java 8 Update 31 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418031F0}) (Version: 8.0.310 - Oracle Corporation)
Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation)
Java 8 Update 40 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218040F0}) (Version: 8.0.400 - Oracle Corporation)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
K-Lite Codec Pack 10.8.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.8.0 - )
Launch Manager (HKLM-x32\...\LManager) (Version: 5.1.7 - Acer Inc.)
LG PC Suite (HKLM-x32\...\LG PC Suite) (Version: 5.3.18.20140626 - LG Electronics)
LG United Mobile Driver (HKLM-x32\...\{2A3A4BD6-6CE0-4e2a-80D2-1D0FF6ACBFBA}) (Version: 3.12.3.0 - LG Electronics)
Malwarebytes Anti-Malware Version 2.1.4.1018 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.5128.5002 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.3.188.0 - Microsoft Corporation)
Mozilla Firefox 36.0.4 (x86 de) (HKLM-x32\...\Mozilla Firefox 36.0.4 (x86 de)) (Version: 36.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.5.0 - Mozilla)
Mozilla Thunderbird 31.5.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 31.5.0 (x86 de)) (Version: 31.5.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.6 - F.J. Wechselberger)
MyWinLocker (Version: 4.0.14.27 - Egis Technology Inc.) Hidden
MyWinLocker 4 (x32 Version: 4.0.14.27 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.19 - Egis Technology Inc.)
MyWinLocker Suite (x32 Version: 4.0.14.19 - Egis Technology Inc.) Hidden
newsXpresso (HKLM-x32\...\InstallShield_{613C0AC5-3A67-4B94-8B13-9176AD83F5BF}) (Version: 1.0.0.40 - esobi Inc.)
newsXpresso (x32 Version: 1.0.0.40 - esobi Inc.) Hidden
Nielsen (HKLM-x32\...\NetSight) (Version:  - )
NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.9002 - NTI Corporation)
NTI Media Maker 9 (x32 Version: 9.0.2.9002 - NTI Corporation) Hidden
NVIDIA GeForce Experience 2.1.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.5 - NVIDIA Corporation)
NVIDIA Grafiktreiber 347.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 347.88 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.14.0702 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.14.0702 - NVIDIA Corporation)
OpenOffice 4.1.1 (HKLM-x32\...\{ACD0FFF9-6B35-43C1-82DB-9FF6990E8602}) (Version: 4.11.9775 - Apache Software Foundation)
Origin (HKLM-x32\...\Origin) (Version: 9.5.1.571 - Electronic Arts, Inc.)
Paradiesbar 2.1 Release Candidate (HKLM-x32\...\Paradiesbar_is1) (Version:  - Startparadies)
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.3 - pdfforge)
Peggle (HKLM-x32\...\{715AD72D-887A-459E-988B-D4F3E87FA24B}) (Version: 1.04.0.0 - PopCap Games)
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation)
Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6438 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Secunia PSI (3.0.0.10004) (HKLM-x32\...\Secunia PSI) (Version: 3.0.0.10004 - Secunia)
SHIELD Streaming (Version: 3.1.3000 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 16.18.9 - NVIDIA Corporation) Hidden
Shredder (Version: 2.0.8.9 - Egis Technology Inc.) Hidden
Shredder (x32 Version: 2.0.8.9 - Egis Technology Inc.) Hidden
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Sony PC Companion 2.10.245 (HKLM-x32\...\{F09EF8F2-0976-42C1-8D9D-8DF78337C6E3}) (Version: 2.10.245 - Sony)
SpywareBlaster 5.0 (HKLM-x32\...\SpywareBlaster_is1) (Version: 5.0.0 - BrightFort LLC)
Studie zur Verbesserung von HP Deskjet 3050A J611 series Produkten (HKLM\...\{EF27865C-E636-47C4-8B35-CE8A88045681}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.32494 - TeamViewer)
Uplay (HKLM-x32\...\Uplay) (Version: 4.9 - Ubisoft)
UseNeXT by Tangysoft (HKLM-x32\...\UseNeXT by Tangysoft_is1) (Version:  - Tangysoft Ltd.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.0 - VideoLAN)
WEB.DE MailCheck für Mozilla Firefox (HKLM-x32\...\1&1 Mail & Media GmbH Toolbar FF) (Version: 3.0.1.1739 - 1&1 Mail & Media GmbH)
WebM Project Directshow Filters (HKU\S-1-5-21-3596086338-499352715-315314885-1001\...\webmdshow) (Version:  - )
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3504 - Acer Incorporated)
Winamp (HKLM-x32\...\Winamp) (Version: 5.601  - Nullsoft, Inc)
Winamp Erkennungs-Plug-in (HKU\S-1-5-21-3596086338-499352715-315314885-1001\...\Winamp Detect) (Version: 1.0.0.1 - Nullsoft, Inc)
Windows 7 Upgrade Advisor (HKLM-x32\...\{9A4D182C-35C7-4791-8484-4304EBC9101A}) (Version: 2.0.5000.0 - Microsoft Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation)
WinPatrol (HKLM\...\{6A206A04-6BC1-411B-AA04-4E52EDEEADF2}) (Version: 33.1.2015.0 - WinPatrol)
WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)
WinX HD Video Converter Deluxe 5.5.3 (HKLM-x32\...\WinX HD Video Converter Deluxe_is1) (Version:  - Digiarty Software, Inc.)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)
XMedia Recode Version 3.2.0.2 (HKLM-x32\...\{DDA3C325-47B2-4730-9672-BF3771C08799}_is1) (Version: 3.2.0.2 - XMedia Recode)
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden
Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3596086338-499352715-315314885-1004_Classes\CLSID\{F9E1BD9A-84B5-4D12-9195-0B3E7D86FD35}\InprocServer32 -> C:\ProgramData\{CA2FACF7-9029-4A21-892B-E7F60B39FF1A}\mf.dll No File

==================== Restore Points  =========================

06-03-2015 16:04:38 Ende der Bereinigung
08-03-2015 20:00:46 Windows-Sicherung
10-03-2015 11:16:21 Windows Update
11-03-2015 23:00:52 Windows Update
15-03-2015 20:00:27 Windows-Sicherung
17-03-2015 08:18:55 Windows Update
18-03-2015 10:15:52 Windows Update
19-03-2015 21:45:25 Windows 7 Upgrade Advisor wird installiert
22-03-2015 07:34:11 avast! antivirus system restore point
22-03-2015 07:37:53 Gerätetreiber-Paketinstallation: Avast Netzwerkdienst
22-03-2015 20:00:52 Windows-Sicherung
24-03-2015 17:16:49 Windows Update
28-03-2015 17:11:49 Windows Update
29-03-2015 16:10:53 avast! antivirus system restore point
29-03-2015 16:15:44 Gerätetreiber-Paketinstallation: Avast Netzwerkdienst

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2015-02-13 19:06 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0267BF41-0A3D-4A68-8AC7-C55CB3C4FE7D} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-3596086338-499352715-315314885-1004 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe
Task: {07C26B55-3409-4675-9F2E-E57DAD32CE76} - System32\Tasks\HPCustParticipation HP Deskjet 3050A J611 series => C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.)
Task: {0DB9670C-4A45-408D-9CDB-5B55676C3BFA} - System32\Tasks\{AEE84B01-2B0C-471C-B9A7-DB7F24DBC6C4} => C:\Program Files (x86)\Winamp\winamp.exe [2010-12-08] (Nullsoft, Inc.)
Task: {1290FA75-2A32-411F-B131-337C81209EEC} - System32\Tasks\Game_Booster_AutoUpdate => C:\Program Files (x86)\IObit\Game Booster 3\AutoUpdate.exe
Task: {18AC89F7-F5B9-407C-80F3-926B21284C1C} - System32\Tasks\Driver Booster SkipUAC (SYSTEM) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
Task: {21B89845-1091-436E-A43A-39932464B702} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxcontent => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {2D0AD1A3-30A5-44BD-A54C-4318A0BFD23D} - System32\Tasks\clear.fiAgent => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [2011-08-24] (CyberLink Corp.)
Task: {34418207-BB09-4E71-B2B7-F104B5ADD339} - System32\Tasks\clear.fi => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [2011-08-24] (Acer Incorporated)
Task: {39910127-6ECE-4B90-87E4-AB6509EAC58D} - System32\Tasks\{A29ADD1C-3329-4467-99E8-2AB1D016AB6B} => C:\Program Files (x86)\Winamp\winamp.exe [2010-12-08] (Nullsoft, Inc.)
Task: {3AC2FE5D-AF14-4774-A8DF-7C999D56848D} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {3AFF5917-3B0B-4601-91CD-8C29B6BE9CE7} - System32\Tasks\DMREngine => C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [2011-08-24] (CyberLink)
Task: {3F90F6C5-7B63-422E-83E1-7C76EEE01817} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2014-03-19] (Microsoft Corporation)
Task: {40A0B2DB-3C6F-472F-9CFF-8FC75EDC7CBC} - System32\Tasks\{7D9B88F5-6434-4E90-8262-F7835569BF75} => pcalua.exe -a C:\Users\Awender\Desktop\setup.exe -d C:\Users\Awender\Desktop
Task: {5978584E-BC21-4BDD-B1E9-E53F5C26C95B} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-3596086338-499352715-315314885-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe
Task: {5F62567C-514F-4F4A-B1CC-D480F0D36369} - System32\Tasks\{CA818450-6E3B-41CA-98E7-C71BF99FCA13} => C:\Program Files (x86)\Paradiesbar\paradiesbar.exe [2015-02-28] ()
Task: {61796EC9-CE1B-4520-A3D8-62B44F4D0E1E} - System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-3596086338-499352715-315314885-1004 => C:\Program Files (x86)\RealNetworks\RealDownloader\realupgrade.exe
Task: {664B8FB9-5AD7-4483-9CB2-EA0439F6E5D9} - System32\Tasks\Microsoft\Windows\Setup\gwx\refreshgwxconfig => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {6FD8E200-F837-4B46-8560-D87622339D25} - System32\Tasks\Uninstaller_SkipUac_Lilly => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe
Task: {7154429D-6F1A-4788-BA22-F16760B5BD0B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-28] (Google Inc.)
Task: {7928EC37-3917-4D2A-ACFE-A3C7CCC95CB9} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2011-03-29] (Egis Technology Inc.)
Task: {828CBF76-9CEB-486C-9FAC-83A81CFD8F2D} - System32\Tasks\{1AC5CDA9-0B60-4467-8051-FC86187055A0} => C:\Program Files (x86)\Winamp\winamp.exe [2010-12-08] (Nullsoft, Inc.)
Task: {869224C7-B13E-4DE9-95AE-4A4C8539DD71} - System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-3596086338-499352715-315314885-1001 => C:\Program Files (x86)\RealNetworks\RealDownloader\RealUpgrade.exe
Task: {878F6E6C-38A8-4115-A3B6-33379DC19BE3} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-03-04] (Avast Software s.r.o.)
Task: {8A51E852-CB26-49E4-BF6D-B547A0947A02} - System32\Tasks\{C81248EE-210B-46BA-B9EC-26B6696B6F57} => C:\Program Files (x86)\Paradiesbar\paradiesbar.exe [2015-02-28] ()
Task: {9FB3737F-0E27-4864-A6CE-9ED3A1503D09} - System32\Tasks\Microsoft\Windows\Setup\gwx\launchtrayprocess => C:\Windows\system32\GWX\GWX.exe [2015-03-25] (Microsoft Corporation)
Task: {A6A5020C-B942-4E9E-8A74-5D24DDF36D02} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {B6CAB89F-0CD4-4EA9-B3C7-96AAA92FEBE0} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2011-03-29] (Egis Technology Inc.)
Task: {B80F9E97-1B6C-47F6-8B49-63F5B19C53F2} - System32\Tasks\Microsoft\Windows\Setup\gwx\runappraiser => C:\Windows\system32\GWX\GWXConfigManager.exe [2015-03-25] (Microsoft Corporation)
Task: {BECE46B6-02D3-4E73-89B1-8D7EE39F50B9} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {C439976C-1256-4254-8B0A-1A2C62A48F4C} - System32\Tasks\{E274B9F3-468E-4C15-911D-14A29D050A6C} => C:\Program Files (x86)\Paradiesbar\paradiesbar.exe [2015-02-28] ()
Task: {C67C36BA-7A6B-41B9-AF0F-CB036DA75AE0} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2014-03-19] (Microsoft Corporation)
Task: {C93A2625-B060-45EC-BB18-AF320A54F16F} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2014-10-06] ()
Task: {CF779ABC-3FC7-444D-ADD9-9BBEC79CE2E5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2015-02-19] (Piriform Ltd)
Task: {D5334AFC-1595-403C-9411-8881D1D8C302} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-03-22] (Adobe Systems Incorporated)
Task: {DE647625-1516-4F3A-BE3A-1FB11E7B25DC} - System32\Tasks\{7C4CC472-4D28-4325-9085-0A248B0F3E4C} => C:\Program Files (x86)\Paradiesbar\paradiesbar.exe [2015-02-28] ()
Task: {E9CDFB1A-3F65-43F5-BF94-952581756B19} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2014-03-19] (Microsoft)
Task: {EEE38F6B-C88C-41D6-9DF4-93C03E99A64C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-28] (Google Inc.)
Task: {F1601146-91EF-44E1-816C-5AE3D07A859B} - System32\Tasks\avastBCLRestartS-1-5-21-3596086338-499352715-315314885-1001 => Chrome.exe 
Task: {FCA5883A-A764-4359-9A4D-81800FC90C27} - System32\Tasks\Driver Booster SkipUAC (Awender) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2015-03-18 10:04 - 2015-03-13 18:16 - 00118472 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2009-01-22 02:45 - 2009-01-22 02:45 - 01401856 _____ () C:\Program Files (x86)\EgisTec MyWinLocker\x64\LIBEAY32.dll
2015-02-19 23:40 - 2015-02-19 23:40 - 00057344 _____ () C:\Program Files\CCleaner\lang\lang-1031.dll
2004-08-04 23:38 - 2015-02-28 07:56 - 00449024 _____ () C:\Program Files (x86)\Paradiesbar\paradiesbar.exe
2015-03-04 16:14 - 2015-03-04 16:14 - 00104400 _____ () C:\Program Files\AVAST Software\Avast\log.dll
2015-03-04 16:14 - 2015-03-04 16:14 - 00081728 _____ () C:\Program Files\AVAST Software\Avast\JsonRpcServer.dll
2015-03-29 13:10 - 2015-03-29 13:10 - 02923520 _____ () C:\Program Files\AVAST Software\Avast\defs\15032900\algo.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00011920 _____ () C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
2015-03-04 16:14 - 2015-03-04 16:14 - 40540672 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2015-03-22 04:00 - 2015-01-16 10:40 - 00504832 _____ () C:\Program Files (x86)\NetRatingsNetSight\NetSight\nsmmc.dll
2015-03-22 04:07 - 2015-01-16 10:34 - 00505344 _____ () C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\communication.dll
2015-03-22 04:07 - 2015-01-16 10:35 - 00595968 _____ () C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\npchromeinstaller.dll
2015-03-22 04:07 - 2015-01-16 10:35 - 00851968 _____ () C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\npfirefoxprocessor.dll
2015-03-22 04:07 - 2015-01-16 10:37 - 00150528 _____ () C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\npsp1.dll
2015-03-22 04:07 - 2015-01-16 10:34 - 00228864 _____ () C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\npsurvey.dll
2015-03-22 04:07 - 2015-01-16 10:34 - 00224768 _____ () C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\npwmi.dll
2015-03-04 16:14 - 2015-03-04 16:14 - 01359872 _____ () C:\Program Files\AVAST Software\Avast\libglesv2.dll
2015-03-04 16:14 - 2015-03-04 16:14 - 00212992 _____ () C:\Program Files\AVAST Software\Avast\libegl.dll
2011-08-24 19:03 - 2011-08-24 19:03 - 00206216 _____ () C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLNetMediaDMA.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00053248 _____ () C:\Program Files (x86)\Winamp\nsutil.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00073728 _____ () C:\Program Files (x86)\Winamp\nde.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00047616 _____ () C:\Program Files (x86)\Winamp\zlib.dll
2015-03-29 17:43 - 2015-03-29 17:43 - 00010752 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\auth.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00069120 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\burnlib.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00013824 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\dsp_sps.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00009728 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\enc_aacplus.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00004096 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\enc_flac.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00005632 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\enc_lame.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00004096 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\enc_vorbis.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00004096 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\enc_wav.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00006144 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\enc_wma.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00023552 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\gen_classicart.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00007168 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\gen_crasher.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00023040 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\gen_ff.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00004096 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\gen_find_on_disk.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00011264 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\gen_hotkeys.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00041984 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\gen_jumpex.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00021504 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\gen_ml.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00009216 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\gen_nopro.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00007168 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\gen_orgler.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00011776 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\gen_skinmanager.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00010240 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\gen_timerestore.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00008192 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\gen_tray.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00010752 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\gen_undo.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00005120 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_avi.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00014336 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_cdda.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00006656 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_dshow.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00005632 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_flac.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00003584 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_flv.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00003584 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_linein.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00020480 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_midi.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00004608 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_mkv.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00018944 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_mod.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00023040 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_mp3.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00005120 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_mp4.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00011776 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_nsv.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00003584 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_swf.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00011264 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_vorbis.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00006656 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_wav.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00005632 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_wave.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00015360 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_wm.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00004608 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\in_wv.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00003584 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_addons.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00006656 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_autotag.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00005120 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_bookmarks.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00008192 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_devices.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00047616 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_disc.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00009728 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_downloads.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00004608 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_enqplay.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00008704 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_history.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00005120 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_impex.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00055808 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_local.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00003584 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_nowplaying.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00014336 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_online.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00004096 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_orb.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00012800 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_playlists.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00034304 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_plg.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00047104 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_pmp.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00005120 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_rg.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00008192 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_transcode.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00014848 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ml_wire.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00036352 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\ombrowser.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00006144 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\out_disk.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00016384 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\out_ds.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00007680 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\out_wave.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00003072 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\playlist.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00004608 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\pmp_activesync.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00020480 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\pmp_android.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00036864 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\pmp_ipod.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00003584 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\pmp_njb.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00004096 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\pmp_p4s.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00011776 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\pmp_usb.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00039424 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\pmp_wifi.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00006144 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\tagz.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00088064 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\vis_avs.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00155648 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\vis_milk2.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00007680 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\vis_nsfs.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00205312 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\winamp.lng
2015-03-29 17:43 - 2015-03-29 17:43 - 00004096 _____ () C:\Users\Lilly\AppData\Local\Temp\WLZD44F.tmp\winampa.lng
2010-12-08 22:43 - 2015-03-29 11:39 - 00023040 _____ () C:\Program Files (x86)\Winamp\System\albumart.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00174080 _____ () C:\Program Files (x86)\Winamp\System\auth.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00019456 _____ () C:\Program Files (x86)\Winamp\System\bmp.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00044544 _____ () C:\Program Files (x86)\Winamp\System\devices.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00016896 _____ () C:\Program Files (x86)\Winamp\System\dlmgr.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00014336 _____ () C:\Program Files (x86)\Winamp\System\filereader.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00019456 _____ () C:\Program Files (x86)\Winamp\System\gif.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00016384 _____ () C:\Program Files (x86)\Winamp\System\gracenote.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00623616 _____ () C:\Program Files (x86)\Winamp\System\jnetlib.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00154624 _____ () C:\Program Files (x86)\Winamp\System\jpeg.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00084480 _____ () C:\Program Files (x86)\Winamp\System\playlist.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00086528 _____ () C:\Program Files (x86)\Winamp\System\png.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00013824 _____ () C:\Program Files (x86)\Winamp\System\primo.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00021504 _____ () C:\Program Files (x86)\Winamp\System\tagz.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00035328 _____ () C:\Program Files (x86)\Winamp\System\timer.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00090112 _____ () C:\Program Files (x86)\Winamp\System\xml.w5s
2010-12-08 22:43 - 2015-03-29 11:39 - 00068608 _____ () C:\Program Files (x86)\Winamp\Plugins\in_avi.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00102400 _____ () C:\Program Files (x86)\Winamp\Plugins\in_cdda.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00072192 _____ () C:\Program Files (x86)\Winamp\Plugins\in_dshow.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00060416 _____ () C:\Program Files (x86)\Winamp\Plugins\in_flac.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00043008 _____ () C:\Program Files (x86)\Winamp\Plugins\in_flv.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00007168 _____ () C:\Program Files (x86)\Winamp\Plugins\in_linein.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00109568 _____ () C:\Program Files (x86)\Winamp\Plugins\in_midi.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00049152 _____ () C:\Program Files (x86)\Winamp\Plugins\in_mkv.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00165376 _____ () C:\Program Files (x86)\Winamp\Plugins\in_mod.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00288256 _____ () C:\Program Files (x86)\Winamp\Plugins\in_mp3.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00050688 _____ () C:\Program Files (x86)\Winamp\Plugins\in_mp4.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00074752 _____ () C:\Program Files (x86)\Winamp\Plugins\in_nsv.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00023552 _____ () C:\Program Files (x86)\Winamp\Plugins\in_swf.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00252416 _____ () C:\Program Files (x86)\Winamp\Plugins\in_vorbis.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00016896 _____ () C:\Program Files (x86)\Winamp\Plugins\in_wave.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00253440 _____ () C:\Program Files (x86)\Winamp\libsndfile.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00313344 _____ () C:\Program Files (x86)\Winamp\Plugins\in_wm.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00022528 _____ () C:\Program Files (x86)\Winamp\Plugins\out_disk.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00052224 _____ () C:\Program Files (x86)\Winamp\Plugins\out_ds.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00018432 _____ () C:\Program Files (x86)\Winamp\Plugins\out_wave.dll
2009-04-28 22:20 - 2015-03-29 11:39 - 00040448 _____ () C:\Program Files (x86)\Winamp\Plugins\dsp_sps.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 01737216 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_ff.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00083968 _____ () C:\Program Files (x86)\Winamp\tataki.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00340992 _____ () C:\Program Files (x86)\Winamp\Plugins\freeform\wacs\freetype\freetype.wac
2010-12-08 22:43 - 2015-03-29 11:39 - 00027648 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_hotkeys.dll
2010-11-10 19:29 - 2015-03-29 11:39 - 00183808 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_jumpex.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00307200 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_ml.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00291840 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_local.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00082944 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_playlists.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00125952 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_online.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00249856 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_devices.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00200704 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_disc.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00240128 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_pmp.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00060928 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_android.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00167936 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_ipod.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00020480 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_njb.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00118272 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_p4s.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00053760 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_usb.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00113152 _____ () C:\Program Files (x86)\Winamp\Plugins\pmp_wifi.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00027648 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_bookmarks.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00052224 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_history.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00028672 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_autotag.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00056320 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_impex.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00080384 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_plg.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00033792 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_rg.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00032256 _____ () C:\Program Files (x86)\Winamp\Plugins\ml_transcode.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00057344 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_orgler.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00025600 _____ () C:\Program Files (x86)\Winamp\Plugins\gen_tray.dll
2010-12-08 22:43 - 2015-03-29 11:39 - 00237056 _____ () C:\Program Files (x86)\Winamp\System\aacPlusDecoder.w5s
2015-03-22 07:13 - 2015-02-23 11:25 - 03348080 _____ () C:\Program Files (x86)\Mozilla Thunderbird\mozjs.dll
2015-03-22 07:13 - 2015-02-23 11:26 - 00158832 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAP32V60.dll
2015-03-22 07:13 - 2015-02-23 11:26 - 00023152 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAPPR32V60.dll
2015-03-21 06:26 - 2015-03-14 12:12 - 01174856 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\libglesv2.dll
2015-03-21 06:26 - 2015-03-14 12:12 - 00080200 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\libegl.dll
2015-03-21 06:26 - 2015-03-14 12:12 - 09278792 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\pdf.dll
2015-03-21 06:26 - 2015-03-14 12:12 - 14974280 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\PepperFlash\pepflashplayer.dll
2015-03-22 09:15 - 2015-03-22 09:15 - 16858288 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\Temp:5C321E34

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3596086338-499352715-315314885-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Awender\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
HKU\S-1-5-21-3596086338-499352715-315314885-1004\Control Panel\Desktop\\Wallpaper -> C:\Users\Lilly\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.0.1 - 192.168.0.2

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^O&O Defrag Tray.lnk => C:\Windows\pss\O&O Defrag Tray.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^RealPlayer Cloud Service UI.lnk => C:\Windows\pss\RealPlayer Cloud Service UI.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Secunia PSI Tray.lnk => C:\Windows\pss\Secunia PSI Tray.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Awender^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Trillian.lnk => C:\Windows\pss\Trillian.lnk.Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: CCleaner Monitoring => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: EADM => "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
MSCONFIG\startupreg: freenet.de eMail Benachrichtigung => C:\Program Files (x86)\freenet.de SMS\freenetEMailNotify.exe /NoHintMsg
MSCONFIG\startupreg: GoogleChromeAutoLaunch_D3CB1C5941AA26FCF908E7FB9B88D710 => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
MSCONFIG\startupreg: Logitech Download Assistant => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
MSCONFIG\startupreg: NUSB3MON => "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
MSCONFIG\startupreg: OODefragTray => C:\Program Files\OO Software\Defrag\oodtray.exe
MSCONFIG\startupreg: RealDownloader => C:\Program Files (x86)\RealNetworks\RealDownloader\downloader2.exe
MSCONFIG\startupreg: Sony PC Companion => "C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe" /Background
MSCONFIG\startupreg: TkBellExe => "C:\Program Files (x86)\Real\RealPlayer\Update\realsched.exe" -osboot
MSCONFIG\startupreg: WinampAgent => "C:\Program Files (x86)\Winamp\winampa.exe"
MSCONFIG\startupreg: WinPatrol => C:\Program Files (x86)\Ruiware\WinPatrol\winpatrol.exe -expressboot

==================== Accounts: =============================

Administrator (S-1-5-21-3596086338-499352715-315314885-500 - Administrator - Disabled)
Awender (S-1-5-21-3596086338-499352715-315314885-1001 - Administrator - Enabled) => C:\Users\Awender
Gast (S-1-5-21-3596086338-499352715-315314885-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3596086338-499352715-315314885-1008 - Limited - Enabled)
Lilly (S-1-5-21-3596086338-499352715-315314885-1004 - Limited - Enabled) => C:\Users\Lilly

==================== Faulty Device Manager Devices =============

Name: Deskjet 3050A J611 series
Description: Deskjet 3050A J611 series
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service: 
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: =========================

Application errors:
==================
Error: (03/29/2015 06:01:58 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (03/29/2015 05:22:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: PSIA.exe, Version: 3.0.0.10004, Zeitstempel: 0x54784a82
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x036d5c30
ID des fehlerhaften Prozesses: 0x8cc
Startzeit der fehlerhaften Anwendung: 0xPSIA.exe0
Pfad der fehlerhaften Anwendung: PSIA.exe1
Pfad des fehlerhaften Moduls: PSIA.exe2
Berichtskennung: PSIA.exe3

Error: (03/29/2015 05:18:36 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/29/2015 04:12:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: PSIA.exe, Version: 3.0.0.10004, Zeitstempel: 0x54784a82
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0077f8e8
ID des fehlerhaften Prozesses: 0xd50
Startzeit der fehlerhaften Anwendung: 0xPSIA.exe0
Pfad der fehlerhaften Anwendung: PSIA.exe1
Pfad des fehlerhaften Moduls: PSIA.exe2
Berichtskennung: PSIA.exe3

Error: (03/29/2015 04:08:39 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/29/2015 02:03:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: PSIA.exe, Version: 3.0.0.10004, Zeitstempel: 0x54784a82
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x03e2b370
ID des fehlerhaften Prozesses: 0xe44
Startzeit der fehlerhaften Anwendung: 0xPSIA.exe0
Pfad der fehlerhaften Anwendung: PSIA.exe1
Pfad des fehlerhaften Moduls: PSIA.exe2
Berichtskennung: PSIA.exe3

Error: (03/29/2015 01:59:39 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/29/2015 01:12:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: PSIA.exe, Version: 3.0.0.10004, Zeitstempel: 0x54784a82
Name des fehlerhaften Moduls: PSIA.exe, Version: 3.0.0.10004, Zeitstempel: 0x54784a82
Ausnahmecode: 0x40000015
Fehleroffset: 0x00093534
ID des fehlerhaften Prozesses: 0xb00
Startzeit der fehlerhaften Anwendung: 0xPSIA.exe0
Pfad der fehlerhaften Anwendung: PSIA.exe1
Pfad des fehlerhaften Moduls: PSIA.exe2
Berichtskennung: PSIA.exe3

Error: (03/29/2015 01:08:33 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/29/2015 01:06:55 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]


System errors:
=============
Error: (03/29/2015 05:42:18 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk2\DR2 gefunden.

Error: (03/29/2015 05:22:24 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Secunia PSI Agent" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (03/29/2015 05:20:46 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "HP Network Devices Support" wurde mit folgendem Fehler beendet: 
%%2

Error: (03/29/2015 05:18:43 PM) (Source: ipnathlp) (EventID: 30013) (User: )
Description: 192.168.0.13192.168.137.0255.255.255.0

Error: (03/29/2015 05:18:43 PM) (Source: ipnathlp) (EventID: 1233) (User: )
Description: 

Error: (03/29/2015 04:44:32 PM) (Source: ipnathlp) (EventID: 31004) (User: )
Description: 0

Error: (03/29/2015 04:13:01 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "Secunia PSI Agent" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (03/29/2015 04:10:48 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "HP Network Devices Support" wurde mit folgendem Fehler beendet: 
%%2

Error: (03/29/2015 04:08:57 PM) (Source: ipnathlp) (EventID: 30013) (User: )
Description: 192.168.0.13192.168.137.0255.255.255.0

Error: (03/29/2015 04:08:57 PM) (Source: ipnathlp) (EventID: 1233) (User: )
Description: 


Microsoft Office Sessions:
=========================
Error: (03/29/2015 06:01:58 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\Lilly\Desktop\trojanerboard\esetsmartinstaller_deu.exe

Error: (03/29/2015 05:22:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: PSIA.exe3.0.0.1000454784a82unknown0.0.0.000000000c0000005036d5c308cc01d06a338f60576aC:\Program Files (x86)\Secunia\PSI\PSIA.exeunknown6558a226-d627-11e4-9283-dc0ea15b18ad

Error: (03/29/2015 05:18:36 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/29/2015 04:12:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: PSIA.exe3.0.0.1000454784a82unknown0.0.0.000000000c00000050077f8e8d5001d06a29c407bd9aC:\Program Files (x86)\Secunia\PSI\PSIA.exeunknownb254eb65-d61d-11e4-9680-dc0ea15b18ad

Error: (03/29/2015 04:08:39 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/29/2015 02:03:26 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: PSIA.exe3.0.0.1000454784a82unknown0.0.0.000000000c000000503e2b370e4401d06a17ba5ba723C:\Program Files (x86)\Secunia\PSI\PSIA.exeunknown9a94db19-d60b-11e4-aa23-dc0ea15b18ad

Error: (03/29/2015 01:59:39 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/29/2015 01:12:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: PSIA.exe3.0.0.1000454784a82PSIA.exe3.0.0.1000454784a824000001500093534b0001d06a10749f077eC:\Program Files (x86)\Secunia\PSI\PSIA.exeC:\Program Files (x86)\Secunia\PSI\PSIA.exe754c6024-d604-11e4-9a62-dc0ea15b18ad

Error: (03/29/2015 01:08:33 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (03/29/2015 01:06:55 PM) (Source: NvStreamSvc) (EventID: 2001) (User: )
Description: NvStreamSvcNvVAD initialization failed [6]


CodeIntegrity Errors:
===================================
  Date: 2015-02-13 18:06:03.665
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2015-02-13 18:06:03.540
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i3-2350M CPU @ 2.30GHz
Percentage of memory in use: 57%
Total physical RAM: 8043.86 MB
Available physical RAM: 3419.81 MB
Total Pagefile: 16085.91 MB
Available Pagefile: 10565.76 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:279.99 GB) (Free:84.61 GB) NTFS
Drive e: (Kindle) (Removable) (Total:1.33 GB) (Free:1.16 GB) FAT32
Drive f: (INTENSO) (Fixed) (Total:1863.01 GB) (Free:1413.07 GB) NTFS
Drive g: (INTENSO NEU) (Fixed) (Total:1862.55 GB) (Free:293.77 GB) FAT32
Drive h: (PHILIPS) (Removable) (Total:1.75 GB) (Free:0.01 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: B7D1F6BF)
Partition 1: (Not Active) - (Size=18 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=280 GB) - (Type=07 NTFS)
Attempted reading MBR returned 0 bytes.
 Could not read MBR for disk 1.

========================================================
Disk: 3 (Size: 1.3 GB) (Disk ID: 00000003)
Partition 1: (Not Active) - (Size=1.3 GB) - (Type=0B)

========================================================
Disk: 4 (Size: 1863 GB) (Disk ID: 1322A89A)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

========================================================
Disk: 5 (Size: 1863 GB) (Disk ID: 4D49C8E7)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=0C)

==================== End Of Log ============================
         

Alt 30.03.2015, 06:17   #5
schrauber
/// the machine
/// TB-Ausbilder
 

Pc plötzlich sehr langsam - Standard

Pc plötzlich sehr langsam



hi,

Downloade dir bitte Malwarebytes Anti-Rootkit Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
  • Starte bitte die mbar.exe.
  • Folge den Anweisungen auf deinem Bildschirm gemäß Anleitung zu Malwarebytes Anti-Rootkit
  • Aktualisiere unbedingt die Datenbank und erlaube dem Tool, dein System zu scannen.
  • Klicke auf den CleanUp Button und erlaube den Neustart.
  • Während dem Neustart wird MBAR die gefundenen Objekte entfernen, also bleib geduldig.
  • Nach dem Neustart starte die mbar.exe erneut.
  • Sollte nochmal was gefunden werden, wiederhole den CleanUp Prozess.
Das Tool wird im erstellten Ordner eine Logfile ( mbar-log-<Jahr-Monat-Tag>.txt ) erzeugen. Bitte poste diese hier.

Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers

Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.

__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 30.03.2015, 13:14   #6
lyncat89
 
Pc plötzlich sehr langsam - Standard

mbar



es wurde bei beiden Programmen nichts gefunden

Code:
ATTFilter
Malwarebytes Anti-Rootkit BETA 1.09.1.1004
www.malwarebytes.org

Database version:
  main:    v2015.03.30.04
  rootkit: v2015.03.26.01

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.17691
Awender :: ACER [administrator]

30.03.2015 12:05:30
mbar-log-2015-03-30 (12-05-30).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled: 
Objects scanned: 434322
Time elapsed: 54 minute(s), 16 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)
         
Code:
ATTFilter
13:09:20.0928 0x1110  TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
13:09:25.0098 0x1110  ============================================================
13:09:25.0098 0x1110  Current date / time: 2015/03/30 13:09:25.0098
13:09:25.0098 0x1110  SystemInfo:
13:09:25.0098 0x1110  
13:09:25.0098 0x1110  OS Version: 6.1.7601 ServicePack: 1.0
13:09:25.0098 0x1110  Product type: Workstation
13:09:25.0098 0x1110  ComputerName: ACER
13:09:25.0099 0x1110  UserName: Awender
13:09:25.0099 0x1110  Windows directory: C:\Windows
13:09:25.0099 0x1110  System windows directory: C:\Windows
13:09:25.0099 0x1110  Running under WOW64
13:09:25.0099 0x1110  Processor architecture: Intel x64
13:09:25.0099 0x1110  Number of processors: 4
13:09:25.0099 0x1110  Page size: 0x1000
13:09:25.0099 0x1110  Boot type: Normal boot
13:09:25.0099 0x1110  ============================================================
13:09:25.0330 0x1110  KLMD registered as C:\Windows\system32\drivers\11511681.sys
13:09:25.0935 0x1110  System UUID: {17554792-30DE-5389-67A7-077430CAFA9E}
13:09:26.0632 0x1110  Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 ( 298.09 Gb ), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:09:26.0636 0x1110  Drive \Device\Harddisk1\DR1 - Size: 0x15D50D00000 ( 1397.26 Gb ), SectorSize: 0x200, Cylinders: 0x2C881, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
13:09:26.0637 0x1110  Drive \Device\Harddisk2\DR2 - Size: 0x1D1C1116000 ( 1863.02 Gb ), SectorSize: 0x200, Cylinders: 0x3B601, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
13:09:26.0638 0x1110  Drive \Device\Harddisk3\DR3 - Size: 0x73467E800 ( 28.82 Gb ), SectorSize: 0x200, Cylinders: 0xEB2, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'W'
13:09:26.0641 0x1110  ============================================================
13:09:26.0641 0x1110  \Device\Harddisk0\DR0:
13:09:26.0641 0x1110  MBR partitions:
13:09:26.0641 0x1110  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2400800, BlocksNum 0x32000
13:09:26.0641 0x1110  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x2432800, BlocksNum 0x22FFB800
13:09:26.0641 0x1110  \Device\Harddisk1\DR1:
13:09:26.0642 0x1110  MBR partitions:
13:09:26.0642 0x1110  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xAEA86000
13:09:26.0642 0x1110  \Device\Harddisk2\DR2:
13:09:26.0643 0x1110  MBR partitions:
13:09:26.0643 0x1110  \Device\Harddisk2\DR2\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xE8E06CC1
13:09:26.0643 0x1110  \Device\Harddisk3\DR3:
13:09:26.0643 0x1110  MBR partitions:
13:09:26.0643 0x1110  \Device\Harddisk3\DR3\Partition1: MBR, Type 0xB, StartLBA 0x3F, BlocksNum 0x39A2C81
13:09:26.0643 0x1110  ============================================================
13:09:26.0687 0x1110  C: <-> \Device\Harddisk0\DR0\Partition2
13:09:26.0695 0x1110  F: <-> \Device\Harddisk2\DR2\Partition1
13:09:26.0700 0x1110  J: <-> \Device\Harddisk1\DR1\Partition1
13:09:26.0700 0x1110  ============================================================
13:09:26.0700 0x1110  Initialize success
13:09:26.0700 0x1110  ============================================================
13:10:00.0170 0x1ea8  ============================================================
13:10:00.0170 0x1ea8  Scan started
13:10:00.0170 0x1ea8  Mode: Manual; SigCheck; TDLFS; 
13:10:00.0170 0x1ea8  ============================================================
13:10:00.0170 0x1ea8  KSN ping started
13:10:15.0033 0x1ea8  KSN ping finished: true
13:10:16.0120 0x1ea8  ================ Scan system memory ========================
13:10:16.0120 0x1ea8  System memory - ok
13:10:16.0122 0x1ea8  ================ Scan services =============================
13:10:16.0399 0x1ea8  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
13:10:16.0586 0x1ea8  1394ohci - ok
13:10:16.0668 0x1ea8  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
13:10:16.0697 0x1ea8  ACPI - ok
13:10:16.0773 0x1ea8  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
13:10:16.0925 0x1ea8  AcpiPmi - ok
13:10:17.0077 0x1ea8  [ 4C72FDD915D62EAEF149BD9C73AB9CF4, 8EA45A1B88DFD819F0ADA3AF36D464E1BF52574269592370E0CC8D0490680E1F ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
13:10:17.0093 0x1ea8  AdobeARMservice - ok
13:10:17.0331 0x1ea8  [ B0FE8D243A4EC6727D7EC5019C4B26B1, 6A319A77E19937208237BDBD2A545367EEC7B4B7ED732E0BAF616070C2FD88A3 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
13:10:17.0369 0x1ea8  AdobeFlashPlayerUpdateSvc - ok
13:10:17.0477 0x1ea8  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
13:10:17.0512 0x1ea8  adp94xx - ok
13:10:17.0607 0x1ea8  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\drivers\adpahci.sys
13:10:17.0626 0x1ea8  adpahci - ok
13:10:17.0646 0x1ea8  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
13:10:17.0661 0x1ea8  adpu320 - ok
13:10:17.0706 0x1ea8  [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
13:10:17.0938 0x1ea8  AeLookupSvc - ok
13:10:18.0068 0x1ea8  [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD             C:\Windows\system32\drivers\afd.sys
13:10:18.0229 0x1ea8  AFD - ok
13:10:18.0322 0x1ea8  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\drivers\agp440.sys
13:10:18.0350 0x1ea8  agp440 - ok
13:10:18.0432 0x1ea8  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
13:10:18.0564 0x1ea8  ALG - ok
13:10:18.0684 0x1ea8  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\drivers\aliide.sys
13:10:18.0714 0x1ea8  aliide - ok
13:10:18.0735 0x1ea8  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\drivers\amdide.sys
13:10:18.0752 0x1ea8  amdide - ok
13:10:18.0833 0x1ea8  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
13:10:18.0881 0x1ea8  AmdK8 - ok
13:10:18.0886 0x1ea8  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\drivers\amdppm.sys
13:10:18.0923 0x1ea8  AmdPPM - ok
13:10:18.0938 0x1ea8  [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
13:10:18.0952 0x1ea8  amdsata - ok
13:10:19.0000 0x1ea8  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
13:10:19.0017 0x1ea8  amdsbs - ok
13:10:19.0050 0x1ea8  [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata         C:\Windows\system32\drivers\amdxata.sys
13:10:19.0061 0x1ea8  amdxata - ok
13:10:19.0147 0x1ea8  [ B93329C4AD51FE1D763EFC9515CE468E, 929D940A4F6960C3C2505B75F840949E09B9EBC750B8F165E02C574FEF07FF3B ] AndNetDiag      C:\Windows\system32\DRIVERS\lgandnetdiag64.sys
13:10:19.0256 0x1ea8  AndNetDiag - ok
13:10:19.0287 0x1ea8  [ C57D3D5B1CF8171CEAA08A11C87C60E2, 8E6F420E511AD9057A5F078DA47D636D0BE505DE9FE7F8125304BD74D86DF80D ] ANDNetModem     C:\Windows\system32\DRIVERS\lgandnetmodem64.sys
13:10:19.0351 0x1ea8  ANDNetModem - ok
13:10:19.0394 0x1ea8  andnetndis - ok
13:10:19.0462 0x1ea8  [ 90C53BD47979FB8814F465A08B885102, 5EDFC1909FC1FF9133A534DFCC5408CF3A777AC41FB21FAD375436E3D86C02EC ] AppID           C:\Windows\system32\drivers\appid.sys
13:10:19.0572 0x1ea8  AppID - ok
13:10:19.0642 0x1ea8  [ 72D4757510FDA69D729169C00AFC211E, FB9686D0D94EE7C19A3994C29E8331A6EC3020B2980B2CC75F72F3AB25512C15 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
13:10:19.0746 0x1ea8  AppIDSvc - ok
13:10:19.0799 0x1ea8  [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo         C:\Windows\System32\appinfo.dll
13:10:19.0920 0x1ea8  Appinfo - ok
13:10:20.0211 0x1ea8  [ 1E7D11448FC31C01CB821AB927266100, 4C59EEDDC221DBC810ABD565DADA19CFC984AB7ACD685B85FC6E8E744FE4586D ] AppObserver     C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\appobserver64.sys
13:10:20.0315 0x1ea8  AppObserver - ok
13:10:20.0391 0x1ea8  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\drivers\arc.sys
13:10:20.0412 0x1ea8  arc - ok
13:10:20.0420 0x1ea8  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\drivers\arcsas.sys
13:10:20.0433 0x1ea8  arcsas - ok
13:10:20.0714 0x1ea8  [ 12D9090290409A996706BB60FAC7CF04, 94169205DAC49E4E6EEA0B1E04E7E44B059484EC275E45F3DFBC4CA203568DD9 ] askGfK-Reporting-Service C:\Program Files (x86)\Digital Trends Club\askGfK-Reporting.exe
13:10:20.0809 0x1ea8  askGfK-Reporting-Service - ok
13:10:20.0922 0x1ea8  [ 270BA3FDB53D1B8C4A1C0C25FA27CE0D, 3E295716A2C9BC5D4FF2763962B5F805E6573E7A7ACE9E0F900AC69DE2FC59B4 ] askGfK-Update-Service C:\Program Files (x86)\Digital Trends Club\askGfK-Updater.exe
13:10:20.0966 0x1ea8  askGfK-Update-Service - ok
13:10:21.0137 0x1ea8  [ F15AB80B867D3332D5DDFB0A05B9CE04, 5A16577106246AB5DCC04FE0A0B00B7C5702557B75F958721E4C00383AB99809 ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
13:10:21.0150 0x1ea8  aspnet_state - ok
13:10:21.0243 0x1ea8  [ BA4B999D245287608A79C92CDAE6F3C1, 799CC0FB185FDF3438687184944E6F6AB6EE73B3B542542D3C13C0FF1A8C0276 ] aswHwid         C:\Windows\system32\drivers\aswHwid.sys
13:10:21.0256 0x1ea8  aswHwid - ok
13:10:21.0332 0x1ea8  [ 543D8AD4621A685CECBBE44BD5B71FAE, 5E8A20B4848F2AEB7BE56BA8966B961FD135433A87EC36ACAB3B63646A1DDCA8 ] aswKbd          C:\Windows\system32\drivers\aswKbd.sys
13:10:21.0354 0x1ea8  aswKbd - ok
13:10:21.0432 0x1ea8  [ 245D3A0670491E1F88759EC45C9F7314, 1FFBDDDC6FCD29770B439933EEB8BE1ABA9149193932B2481720E8E9F265A797 ] aswMonFlt       C:\Windows\system32\drivers\aswMonFlt.sys
13:10:21.0469 0x1ea8  aswMonFlt - ok
13:10:21.0594 0x1ea8  [ 95AAB2D70A5B8F4BDB1FF131CD726232, 8C7267BAE92FB2F31BCA7818BAC43F7E542F0E8A7405422B730DF2805CCD7FB4 ] aswNdisFlt      C:\Windows\system32\DRIVERS\aswNdisFlt.sys
13:10:21.0624 0x1ea8  aswNdisFlt - ok
13:10:21.0749 0x1ea8  [ BC18D5B42B19564BA09156410E1FB9BE, 0DA9636632462208AE4D360BFE5A8187644B036A0D43E981665D888A5363B953 ] aswRdr          C:\Windows\system32\drivers\aswRdr2.sys
13:10:21.0780 0x1ea8  aswRdr - ok
13:10:21.0811 0x1ea8  [ 713AFFD4E38553AEF04617C985B4030B, A09FBE4D49390024E8CF93352EACEB5AC53BEE5A4E5A76F5BE0341F8A002C4DD ] aswRvrt         C:\Windows\system32\drivers\aswRvrt.sys
13:10:21.0827 0x1ea8  aswRvrt - ok
13:10:21.0987 0x1ea8  [ 669F6B37965756E407B447272B5EE39F, FE2C0A8F96415191650485AED637A45B26E7B9A25A4BFB5D809844BD24FD6BA9 ] aswSnx          C:\Windows\system32\drivers\aswSnx.sys
13:10:22.0025 0x1ea8  aswSnx - ok
13:10:22.0128 0x1ea8  [ 3A145C94A519E52FE7E99460DD0DF53C, 91E9544B1B72FCC32463BF34838DAA9F14DCABF3BE9FE9382087ACDB3B4FC598 ] aswSP           C:\Windows\system32\drivers\aswSP.sys
13:10:22.0151 0x1ea8  aswSP - ok
13:10:22.0238 0x1ea8  [ 8CDA894FA86D03FB43063D5FD85EFCAE, 20D110ACC84300514557AB6E565CFA0101DA749559B52877A41A509E79314AF6 ] aswStm          C:\Windows\system32\drivers\aswStm.sys
13:10:22.0266 0x1ea8  aswStm - ok
13:10:22.0352 0x1ea8  [ 11644D8399F4AC8BB12C2364DCB87CB4, 828C3A03AB9D5F0650C7B90B7479CCAAD586B22BB7AC6DB7C91E8D9D80427DFB ] aswVmm          C:\Windows\system32\drivers\aswVmm.sys
13:10:22.0381 0x1ea8  aswVmm - ok
13:10:22.0470 0x1ea8  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
13:10:22.0560 0x1ea8  AsyncMac - ok
13:10:22.0653 0x1ea8  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\drivers\atapi.sys
13:10:22.0678 0x1ea8  atapi - ok
13:10:22.0800 0x1ea8  [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:10:22.0859 0x1ea8  AudioEndpointBuilder - ok
13:10:22.0911 0x1ea8  [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv        C:\Windows\System32\Audiosrv.dll
13:10:22.0942 0x1ea8  AudioSrv - ok
13:10:23.0244 0x1ea8  [ 35714DC1ADD995681D890D4382C75721, C1D10F2D47D348DCEA363B676E35A363FE8FA0E24295C4AD90F7EA37826A822D ] avast! Antivirus C:\Program Files\AVAST Software\Avast\AvastSvc.exe
13:10:23.0284 0x1ea8  avast! Antivirus - ok
13:10:23.0368 0x1ea8  [ 9BCCEF665F197A5BBE86C679EFF608D0, 16D818E6642DD23B5915311C909E1131AA27592254ED8A6EAC59674AC80A01A0 ] avast! Firewall C:\Program Files\AVAST Software\Avast\afwServ.exe
13:10:23.0396 0x1ea8  avast! Firewall - ok
13:10:23.0676 0x1ea8  [ 986B03BCC7679B181EC540249956B080, 35FD1229DD016B0837A2879E685A830034DD36D5F52ECBAFA358299DCB126989 ] AvastVBoxSvc    C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
13:10:23.0793 0x1ea8  AvastVBoxSvc - ok
13:10:23.0870 0x1ea8  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\Windows\System32\AxInstSV.dll
13:10:24.0024 0x1ea8  AxInstSV - ok
13:10:24.0123 0x1ea8  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
13:10:24.0237 0x1ea8  b06bdrv - ok
13:10:24.0339 0x1ea8  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
13:10:24.0445 0x1ea8  b57nd60a - ok
13:10:24.0509 0x1ea8  [ 0630C8915B747E88E825CE7F73B66A5D, E9B465EE23487B59B1C906B04F9235B0BFBF254C1760E2462A7D1D7FE1655088 ] b57xdbd         C:\Windows\system32\DRIVERS\b57xdbd.sys
13:10:24.0536 0x1ea8  b57xdbd - ok
13:10:24.0542 0x1ea8  [ CA8457E528E13B38F8DC3B86B6BA4C6B, 532E48BBBA806608EBEFE10A94DCE2BFE8918D8DD6DEF6871F44FEEDA51238B8 ] b57xdmp         C:\Windows\system32\DRIVERS\b57xdmp.sys
13:10:24.0555 0x1ea8  b57xdmp - ok
13:10:24.0853 0x1ea8  [ 11F844B46B631337395651ABE9C4167B, 98771B4D9DABEE4C485D718E3BB7D4EF365CA1D7CF043BE12431BC08F6D16EFD ] BCM43XX         C:\Windows\system32\DRIVERS\bcmwl664.sys
13:10:24.0985 0x1ea8  BCM43XX - ok
13:10:25.0015 0x1ea8  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
13:10:25.0125 0x1ea8  BDESVC - ok
13:10:25.0191 0x1ea8  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
13:10:25.0272 0x1ea8  Beep - ok
13:10:25.0385 0x1ea8  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE             C:\Windows\System32\bfe.dll
13:10:25.0517 0x1ea8  BFE - ok
13:10:25.0582 0x1ea8  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\Windows\System32\qmgr.dll
13:10:25.0825 0x1ea8  BITS - ok
13:10:25.0904 0x1ea8  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\drivers\blbdrive.sys
13:10:25.0971 0x1ea8  blbdrive - ok
13:10:26.0047 0x1ea8  [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
13:10:26.0148 0x1ea8  bowser - ok
13:10:26.0205 0x1ea8  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
13:10:26.0254 0x1ea8  BrFiltLo - ok
13:10:26.0260 0x1ea8  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
13:10:26.0303 0x1ea8  BrFiltUp - ok
13:10:26.0359 0x1ea8  [ 5C2F352A4E961D72518261257AAE204B, 9EE1001E1D46A414A7A86FE1DBBE232203E26F54D9EF43ED31ED8EACD4D09853 ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
13:10:26.0407 0x1ea8  BridgeMP - ok
13:10:26.0476 0x1ea8  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser         C:\Windows\System32\browser.dll
13:10:26.0597 0x1ea8  Browser - ok
13:10:26.0615 0x1ea8  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
13:10:26.0743 0x1ea8  Brserid - ok
13:10:26.0771 0x1ea8  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
13:10:26.0788 0x1ea8  BrSerWdm - ok
13:10:26.0833 0x1ea8  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
13:10:26.0862 0x1ea8  BrUsbMdm - ok
13:10:26.0868 0x1ea8  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
13:10:26.0962 0x1ea8  BrUsbSer - ok
13:10:27.0046 0x1ea8  [ F4598EF1BE59937A578F3F68724552A7, 67F2B580462A925583F272BBF664BF2042D2E2B18B1CB21B994B12A9B6288779 ] bScsiMSa        C:\Windows\system32\DRIVERS\bScsiMSa.sys
13:10:27.0063 0x1ea8  bScsiMSa - ok
13:10:27.0169 0x1ea8  [ 0C1EEE5AF32402D306874B110DE237EC, B0FE0F3B6A1E2C003E6F4B6330601C43126881262B328D7DD93AC2C0B714DC86 ] bScsiSDa        C:\Windows\system32\DRIVERS\bScsiSDa.sys
13:10:27.0189 0x1ea8  bScsiSDa - ok
13:10:27.0199 0x1ea8  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
13:10:27.0238 0x1ea8  BTHMODEM - ok
13:10:27.0301 0x1ea8  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
13:10:27.0400 0x1ea8  bthserv - ok
13:10:27.0452 0x1ea8  catchme - ok
13:10:27.0501 0x1ea8  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
13:10:27.0563 0x1ea8  cdfs - ok
13:10:27.0651 0x1ea8  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
13:10:27.0703 0x1ea8  cdrom - ok
13:10:27.0750 0x1ea8  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc     C:\Windows\System32\certprop.dll
13:10:27.0812 0x1ea8  CertPropSvc - ok
13:10:27.0901 0x1ea8  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\drivers\circlass.sys
13:10:27.0964 0x1ea8  circlass - ok
13:10:28.0013 0x1ea8  [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS            C:\Windows\system32\CLFS.sys
13:10:28.0034 0x1ea8  CLFS - ok
13:10:28.0102 0x1ea8  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:10:28.0136 0x1ea8  clr_optimization_v2.0.50727_32 - ok
13:10:28.0215 0x1ea8  [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
13:10:28.0241 0x1ea8  clr_optimization_v2.0.50727_64 - ok
13:10:28.0372 0x1ea8  [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:10:28.0409 0x1ea8  clr_optimization_v4.0.30319_32 - ok
13:10:28.0437 0x1ea8  [ 9ACBE5EC13C2CC95833BFB7636CA8B1A, 6224DA9FB335D2A8374C60B8DEA539DD3A0E43230DB888B137B71A56EC57D6AF ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
13:10:28.0457 0x1ea8  clr_optimization_v4.0.30319_64 - ok
13:10:28.0549 0x1ea8  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\drivers\CmBatt.sys
13:10:28.0612 0x1ea8  CmBatt - ok
13:10:28.0661 0x1ea8  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
13:10:28.0679 0x1ea8  cmdide - ok
13:10:28.0743 0x1ea8  [ 27667A788130A7F7A5858DE27572E6D7, 5501D80BCCB7A811ECCED3828DFD0A5D948BBED8504E9BCC4A3BFB840DD41CBC ] CNG             C:\Windows\system32\Drivers\cng.sys
13:10:28.0778 0x1ea8  CNG - ok
13:10:28.0871 0x1ea8  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
13:10:28.0891 0x1ea8  Compbatt - ok
13:10:28.0966 0x1ea8  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
13:10:29.0032 0x1ea8  CompositeBus - ok
13:10:29.0083 0x1ea8  COMSysApp - ok
13:10:29.0117 0x1ea8  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
13:10:29.0143 0x1ea8  crcdisk - ok
13:10:29.0238 0x1ea8  [ 1CD76A83B9E8E9A5A3519B39E28354D9, F9931743B99820FFBFB13136DFFD92F86802D543F9D8478648CDC554FB38899D ] CryptSvc        C:\Windows\system32\cryptsvc.dll
13:10:29.0347 0x1ea8  CryptSvc - ok
13:10:29.0590 0x1ea8  [ FD557A50A65E44041CD2FCEF4BEB04DB, 746D5958F7198895D35A23566D3736D993D57726BF59D91421D8091C48926A26 ] cvhsvc          C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
13:10:29.0626 0x1ea8  cvhsvc - ok
13:10:29.0662 0x1ea8  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch      C:\Windows\system32\rpcss.dll
13:10:29.0742 0x1ea8  DcomLaunch - ok
13:10:29.0796 0x1ea8  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
13:10:29.0880 0x1ea8  defragsvc - ok
13:10:29.0914 0x1ea8  [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
13:10:29.0981 0x1ea8  DfsC - ok
13:10:30.0066 0x1ea8  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
13:10:30.0194 0x1ea8  Dhcp - ok
13:10:30.0262 0x1ea8  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
13:10:30.0371 0x1ea8  discache - ok
13:10:30.0451 0x1ea8  [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk            C:\Windows\system32\drivers\disk.sys
13:10:30.0479 0x1ea8  Disk - ok
13:10:30.0551 0x1ea8  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
13:10:30.0657 0x1ea8  Dnscache - ok
13:10:30.0683 0x1ea8  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc         C:\Windows\System32\dot3svc.dll
13:10:30.0791 0x1ea8  dot3svc - ok
13:10:30.0811 0x1ea8  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS             C:\Windows\system32\dps.dll
13:10:30.0897 0x1ea8  DPS - ok
13:10:31.0000 0x1ea8  [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
13:10:31.0131 0x1ea8  drmkaud - ok
13:10:31.0252 0x1ea8  [ 9DD3A22F804697606C2B7FF9E912FF6B, BBE2FC0D554030BA9E3A96CC4A360D61DBCCAA1D81BD7547809F29A3AF0B3A25 ] DsiWMIService   C:\Program Files (x86)\Launch Manager\dsiwmis.exe
13:10:31.0271 0x1ea8  DsiWMIService - ok
13:10:31.0353 0x1ea8  [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
13:10:31.0394 0x1ea8  DXGKrnl - ok
13:10:31.0521 0x1ea8  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
13:10:31.0625 0x1ea8  EapHost - ok
13:10:31.0779 0x1ea8  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
13:10:31.0905 0x1ea8  ebdrv - ok
13:10:31.0955 0x1ea8  [ B6C7729936AAF8E0697F0A7DCA82CED8, 9706E5234364488DD18527AAC82760E5ECB6EC9EBFDD4D04D2708D3C9C576FE6 ] EFS             C:\Windows\System32\lsass.exe
13:10:32.0080 0x1ea8  EFS - ok
13:10:32.0171 0x1ea8  [ 5332EC2BA1C112BD4BB1F38127848FEF, 156585CE4011546B20EDD20D04E639A0788B1DE6455B23B94E2CD31BA725FE3C ] EgisTec Ticket Service C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
13:10:32.0191 0x1ea8  EgisTec Ticket Service - ok
13:10:32.0283 0x1ea8  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
13:10:32.0409 0x1ea8  ehRecvr - ok
13:10:32.0476 0x1ea8  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
13:10:32.0545 0x1ea8  ehSched - ok
13:10:32.0654 0x1ea8  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
13:10:32.0682 0x1ea8  elxstor - ok
13:10:32.0819 0x1ea8  [ 48425C93B6F36529707206E4FA680CF3, 328BD59DEDFAD359EF79CCFBC2AD3E9C95657EC616AE0611F5EFEB34B810692A ] ePowerSvc       C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
13:10:32.0857 0x1ea8  ePowerSvc - ok
13:10:32.0861 0x1ea8  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
13:10:32.0907 0x1ea8  ErrDev - ok
13:10:32.0973 0x1ea8  [ DBAA0C650C9549DC5C599D1E81DEDAAD, C8DF68CDACEF27C91CFD1FE8032A8DAF830D9E77C573C25DE5D41FC3DB824ABA ] ETD             C:\Windows\system32\DRIVERS\ETD.sys
13:10:33.0001 0x1ea8  ETD - ok
13:10:33.0087 0x1ea8  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
13:10:33.0170 0x1ea8  EventSystem - ok
13:10:33.0210 0x1ea8  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
13:10:33.0274 0x1ea8  exfat - ok
13:10:33.0338 0x1ea8  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
13:10:33.0396 0x1ea8  fastfat - ok
13:10:33.0502 0x1ea8  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax             C:\Windows\system32\fxssvc.exe
13:10:33.0587 0x1ea8  Fax - ok
13:10:33.0622 0x1ea8  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\drivers\fdc.sys
13:10:33.0713 0x1ea8  fdc - ok
13:10:33.0803 0x1ea8  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
13:10:33.0899 0x1ea8  fdPHost - ok
13:10:33.0921 0x1ea8  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
13:10:33.0985 0x1ea8  FDResPub - ok
13:10:34.0087 0x1ea8  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
13:10:34.0115 0x1ea8  FileInfo - ok
13:10:34.0144 0x1ea8  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
13:10:34.0211 0x1ea8  Filetrace - ok
13:10:34.0347 0x1ea8  [ BB0667B0171B632B97EA759515476F07, 07A123B2182D5813D2898928C231638353CF086606E9D5A5AF4A2A73E17CEC27 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
13:10:34.0388 0x1ea8  FLEXnet Licensing Service - ok
13:10:34.0447 0x1ea8  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
13:10:34.0462 0x1ea8  flpydisk - ok
13:10:34.0520 0x1ea8  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
13:10:34.0546 0x1ea8  FltMgr - ok
13:10:34.0691 0x1ea8  [ C4C183E6551084039EC862DA1C945E3D, 0874A2ACDD24D64965AA9A76E9C818E216880AE4C9A2E07ED932EE404585CEE6 ] FontCache       C:\Windows\system32\FntCache.dll
13:10:34.0764 0x1ea8  FontCache - ok
13:10:34.0812 0x1ea8  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
13:10:34.0823 0x1ea8  FontCache3.0.0.0 - ok
13:10:34.0833 0x1ea8  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
13:10:34.0845 0x1ea8  FsDepends - ok
13:10:34.0865 0x1ea8  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
13:10:34.0877 0x1ea8  Fs_Rec - ok
13:10:34.0971 0x1ea8  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
13:10:35.0014 0x1ea8  fvevol - ok
13:10:35.0093 0x1ea8  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
13:10:35.0126 0x1ea8  gagp30kx - ok
13:10:35.0257 0x1ea8  [ 0C52567F023D0F05F4EFC26F607D415B, 168D2AAB2F9CF8DE4A894DE3B2A5C67F1DAD758DBEC95FCFF4D752645BB37C38 ] GfExperienceService C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
13:10:35.0297 0x1ea8  GfExperienceService - ok
13:10:35.0384 0x1ea8  [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc           C:\Windows\System32\gpsvc.dll
13:10:35.0504 0x1ea8  gpsvc - ok
13:10:35.0636 0x1ea8  [ C9B2D1D3F86FD3673EF847DEF73B6F9E, 9D3822A6464F685F770F8D02A8AE623A676888F135E8425C3BAF1CC077429A7F ] GREGService     C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
13:10:35.0663 0x1ea8  GREGService - ok
13:10:35.0809 0x1ea8  [ E1B44A75947137F4143308D566889837, EC7E883E7AF38BF3AC0AC513CFDE0186038443E9ACC7AD616EE6BD0EC09AACB9 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:10:35.0841 0x1ea8  gupdate - ok
13:10:35.0906 0x1ea8  [ E1B44A75947137F4143308D566889837, EC7E883E7AF38BF3AC0AC513CFDE0186038443E9ACC7AD616EE6BD0EC09AACB9 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:10:35.0933 0x1ea8  gupdatem - ok
13:10:35.0987 0x1ea8  [ C1B577B2169900F4CF7190C39F085794, 73E104B96A48F4C80D8C37254ECB0891D15C0D2F0C251B57C168F90D60316447 ] gusvc           C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
13:10:36.0000 0x1ea8  gusvc - ok
13:10:36.0068 0x1ea8  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
13:10:36.0176 0x1ea8  hcw85cir - ok
13:10:36.0197 0x1ea8  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:10:36.0259 0x1ea8  HdAudAddService - ok
13:10:36.0302 0x1ea8  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\Windows\system32\DRIVERS\HDAudBus.sys
13:10:36.0349 0x1ea8  HDAudBus - ok
13:10:36.0353 0x1ea8  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
13:10:36.0456 0x1ea8  HidBatt - ok
13:10:36.0507 0x1ea8  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\drivers\hidbth.sys
13:10:36.0540 0x1ea8  HidBth - ok
13:10:36.0587 0x1ea8  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\drivers\hidir.sys
13:10:36.0633 0x1ea8  HidIr - ok
13:10:36.0695 0x1ea8  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\System32\hidserv.dll
13:10:36.0779 0x1ea8  hidserv - ok
13:10:36.0856 0x1ea8  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
13:10:36.0916 0x1ea8  HidUsb - ok
13:10:36.0975 0x1ea8  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\Windows\system32\kmsvc.dll
13:10:37.0047 0x1ea8  hkmsvc - ok
13:10:37.0084 0x1ea8  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:10:37.0198 0x1ea8  HomeGroupListener - ok
13:10:37.0235 0x1ea8  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:10:37.0283 0x1ea8  HomeGroupProvider - ok
13:10:37.0345 0x1ea8  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
13:10:37.0375 0x1ea8  HpSAMD - ok
13:10:37.0561 0x1ea8  [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
13:10:37.0619 0x1ea8  HTTP - ok
13:10:37.0634 0x1ea8  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
13:10:37.0645 0x1ea8  hwpolicy - ok
13:10:37.0650 0x1ea8  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
13:10:37.0666 0x1ea8  i8042prt - ok
13:10:37.0763 0x1ea8  [ 26CF4275034214ECEDD8EC17B0A18A99, 95A08C63971C28F1BC97040C0ADA247E3B43DE7D937B14E33A394B955D0AC8B7 ] iaStor          C:\Windows\system32\drivers\iaStor.sys
13:10:37.0786 0x1ea8  iaStor - ok
13:10:37.0914 0x1ea8  [ E79A8E33BD136D14BAE1FA20EB2EF124, 54AD784570282FEF21021BE76C57EE878EC6FF6423CE2FFC3A4372AF6C3112D4 ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
13:10:37.0943 0x1ea8  IAStorDataMgrSvc - ok
13:10:38.0031 0x1ea8  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
13:10:38.0062 0x1ea8  iaStorV - ok
13:10:38.0154 0x1ea8  [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
13:10:38.0190 0x1ea8  idsvc - ok
13:10:38.0252 0x1ea8  IEEtwCollectorService - ok
13:10:38.0707 0x1ea8  [ 9937600A1584FF00565D5379EB4C9EDB, CF03333E9E7BD940B27194A9CF21ED8A6A10B698B545A898291976F650FC2675 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
13:10:39.0140 0x1ea8  igfx - ok
13:10:39.0177 0x1ea8  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
13:10:39.0189 0x1ea8  iirsp - ok
13:10:39.0246 0x1ea8  [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT          C:\Windows\System32\ikeext.dll
13:10:39.0283 0x1ea8  IKEEXT - ok
13:10:39.0517 0x1ea8  [ CB7DADEF3D83FE2C12655A0BDCBA99F2, AD55A578986F008ED01635D3BB26414D71F418640099BFA92D9CABAB6A88E01D ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
13:10:39.0605 0x1ea8  IntcAzAudAddService - ok
13:10:39.0702 0x1ea8  [ FC727061C0F47C8059E88E05D5C8E381, C7A3782F5D86C7FDE57AA1F2EE81638C5FC3072ACC6E572BA2EC7B3CFF389800 ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
13:10:39.0803 0x1ea8  IntcDAud - ok
13:10:39.0817 0x1ea8  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\drivers\intelide.sys
13:10:39.0831 0x1ea8  intelide - ok
13:10:39.0907 0x1ea8  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
13:10:39.0983 0x1ea8  intelppm - ok
13:10:40.0051 0x1ea8  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
13:10:40.0111 0x1ea8  IPBusEnum - ok
13:10:40.0168 0x1ea8  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:10:40.0204 0x1ea8  IpFilterDriver - ok
13:10:40.0246 0x1ea8  [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
13:10:40.0382 0x1ea8  iphlpsvc - ok
13:10:40.0394 0x1ea8  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
13:10:40.0414 0x1ea8  IPMIDRV - ok
13:10:40.0445 0x1ea8  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
13:10:40.0509 0x1ea8  IPNAT - ok
13:10:40.0594 0x1ea8  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
13:10:40.0676 0x1ea8  IRENUM - ok
13:10:40.0680 0x1ea8  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
13:10:40.0695 0x1ea8  isapnp - ok
13:10:40.0765 0x1ea8  [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
13:10:40.0804 0x1ea8  iScsiPrt - ok
13:10:40.0915 0x1ea8  [ 455B75C19BF3F1F2EE3AC10E1169826C, C8CE6DE48E0B4621F2851A994261FA787556A27F9868A8859E5E8A8354028257 ] k57nd60a        C:\Windows\system32\DRIVERS\k57nd60a.sys
13:10:40.0954 0x1ea8  k57nd60a - ok
13:10:41.0031 0x1ea8  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
13:10:41.0063 0x1ea8  kbdclass - ok
13:10:41.0114 0x1ea8  [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
13:10:41.0132 0x1ea8  kbdhid - ok
13:10:41.0166 0x1ea8  [ B6C7729936AAF8E0697F0A7DCA82CED8, 9706E5234364488DD18527AAC82760E5ECB6EC9EBFDD4D04D2708D3C9C576FE6 ] KeyIso          C:\Windows\system32\lsass.exe
13:10:41.0185 0x1ea8  KeyIso - ok
13:10:41.0244 0x1ea8  [ 56ED3EE5FED6BF2FC1305CF872042868, 44F77AE3CD83284800FF106156ABCB63047327855E2535EE278289AF6F05579C ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
13:10:41.0261 0x1ea8  KSecDD - ok
13:10:41.0335 0x1ea8  [ 8BA90F480705D7153AD0060CCA62222A, B3E610DFAB382368114D026947084A72AFC4F5BF9C28317F411D4ED91E0B3192 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
13:10:41.0358 0x1ea8  KSecPkg - ok
13:10:41.0428 0x1ea8  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
13:10:41.0525 0x1ea8  ksthunk - ok
13:10:41.0568 0x1ea8  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
13:10:41.0613 0x1ea8  KtmRm - ok
13:10:41.0649 0x1ea8  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\Windows\System32\srvsvc.dll
13:10:41.0740 0x1ea8  LanmanServer - ok
13:10:41.0768 0x1ea8  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:10:41.0835 0x1ea8  LanmanWorkstation - ok
13:10:41.0923 0x1ea8  [ B705C7097F9A0EC941D02DCE7C7D426C, 1A137BEA25BF7BA1EF190212CD6E556B53293D6388E9F7E790BF53F641F3CF89 ] Live Updater Service C:\Program Files\Acer\Acer Updater\UpdaterService.exe
13:10:41.0963 0x1ea8  Live Updater Service - ok
13:10:42.0036 0x1ea8  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
13:10:42.0118 0x1ea8  lltdio - ok
13:10:42.0184 0x1ea8  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
13:10:42.0239 0x1ea8  lltdsvc - ok
13:10:42.0293 0x1ea8  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
13:10:42.0359 0x1ea8  lmhosts - ok
13:10:42.0468 0x1ea8  [ 50C7CE53EF461870410355F1F2E7D515, D6E84C63D74E4603D37FD7CC88BF51DE23CD17DB1D1AD4ADBED62F949F3C470C ] LMS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
13:10:42.0510 0x1ea8  LMS - ok
13:10:42.0580 0x1ea8  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
13:10:42.0598 0x1ea8  LSI_FC - ok
13:10:42.0605 0x1ea8  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
13:10:42.0622 0x1ea8  LSI_SAS - ok
13:10:42.0628 0x1ea8  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
13:10:42.0640 0x1ea8  LSI_SAS2 - ok
13:10:42.0646 0x1ea8  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
13:10:42.0660 0x1ea8  LSI_SCSI - ok
13:10:42.0692 0x1ea8  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
13:10:42.0754 0x1ea8  luafv - ok
13:10:42.0887 0x1ea8  [ CF12E148C6FC151335B7D7FE03F1C7A2, 7087DF6D884AF0A57AC22D7AE9C2903913AAB4CE52D19666B6513C3D5706E43C ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
13:10:42.0906 0x1ea8  MBAMProtector - ok
13:10:43.0049 0x1ea8  [ 86701B8E4C53280AA8642AC85F8500F4, 6839F2B840410857AE7DA215A17922A7499A9B99D96032756525878E98175103 ] MBAMScheduler   C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
13:10:43.0106 0x1ea8  MBAMScheduler - ok
13:10:43.0238 0x1ea8  [ E27891A49DF92004041FEC5C3A2D4230, A4679A1F10F84935875E35A83FC7075499B8F4CBB543209A38C0D946347CD264 ] MBAMService     C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
13:10:43.0284 0x1ea8  MBAMService - ok
13:10:43.0365 0x1ea8  [ 0CE2F3E26C770CBAEB50787A2C1FD09E, 2DDB1827027D2CC8E78FE737B5DA21783EFCD13430DBB140C34DAACACD6EF492 ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
13:10:43.0378 0x1ea8  MBAMWebAccessControl - ok
13:10:43.0419 0x1ea8  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
13:10:43.0436 0x1ea8  Mcx2Svc - ok
13:10:43.0466 0x1ea8  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\drivers\megasas.sys
13:10:43.0479 0x1ea8  megasas - ok
13:10:43.0516 0x1ea8  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
13:10:43.0534 0x1ea8  MegaSR - ok
13:10:43.0678 0x1ea8  [ A6518DCC42F7A6E999BB3BEA8FD87567, 8A9AE992F93F37E0723761EA271A7E1AA8172702C471041A17324474FC96B9BC ] MEIx64          C:\Windows\system32\DRIVERS\HECIx64.sys
13:10:43.0705 0x1ea8  MEIx64 - ok
13:10:43.0767 0x1ea8  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
13:10:43.0877 0x1ea8  MMCSS - ok
13:10:43.0882 0x1ea8  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
13:10:43.0945 0x1ea8  Modem - ok
13:10:44.0058 0x1ea8  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
13:10:44.0097 0x1ea8  monitor - ok
13:10:44.0139 0x1ea8  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
13:10:44.0156 0x1ea8  mouclass - ok
13:10:44.0230 0x1ea8  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
13:10:44.0362 0x1ea8  mouhid - ok
13:10:44.0470 0x1ea8  [ 87BCD1034CBF33537D4D4C251D39BA26, CB9DD235B62B79383F99873D75E26EEA5EE7914CA89E4B75992207F83420437F ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
13:10:44.0492 0x1ea8  mountmgr - ok
13:10:44.0686 0x1ea8  [ 0A68B3E37961CEC327EED518F6D62530, EDEB16545ECDDEA2ADFF73E4DF3E9FD87E4B7126C8CFB037ABAF883D157103DE ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
13:10:44.0719 0x1ea8  MozillaMaintenance - ok
13:10:44.0751 0x1ea8  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\Windows\system32\drivers\mpio.sys
13:10:44.0768 0x1ea8  mpio - ok
13:10:44.0859 0x1ea8  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
13:10:44.0897 0x1ea8  mpsdrv - ok
13:10:45.0004 0x1ea8  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\Windows\system32\mpssvc.dll
13:10:45.0141 0x1ea8  MpsSvc - ok
13:10:45.0179 0x1ea8  [ AE3334958D8F631FF14A0AEB3D7EFB3A, F5FD6B61F896104C20DFC43FEE2FCE6930B73F78DF876BD19A333EABB9139C6D ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
13:10:45.0282 0x1ea8  MRxDAV - ok
13:10:45.0295 0x1ea8  [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
13:10:45.0411 0x1ea8  mrxsmb - ok
13:10:45.0426 0x1ea8  [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:10:45.0450 0x1ea8  mrxsmb10 - ok
13:10:45.0457 0x1ea8  [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:10:45.0519 0x1ea8  mrxsmb20 - ok
13:10:45.0575 0x1ea8  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\Windows\system32\drivers\msahci.sys
13:10:45.0601 0x1ea8  msahci - ok
13:10:45.0645 0x1ea8  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
13:10:45.0668 0x1ea8  msdsm - ok
13:10:45.0691 0x1ea8  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
13:10:45.0711 0x1ea8  MSDTC - ok
13:10:45.0718 0x1ea8  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
13:10:45.0794 0x1ea8  Msfs - ok
13:10:45.0835 0x1ea8  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
13:10:45.0897 0x1ea8  mshidkmdf - ok
13:10:45.0927 0x1ea8  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
13:10:45.0938 0x1ea8  msisadrv - ok
13:10:45.0966 0x1ea8  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
13:10:46.0006 0x1ea8  MSiSCSI - ok
13:10:46.0010 0x1ea8  msiserver - ok
13:10:46.0082 0x1ea8  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
13:10:46.0132 0x1ea8  MSKSSRV - ok
13:10:46.0135 0x1ea8  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
13:10:46.0171 0x1ea8  MSPCLOCK - ok
13:10:46.0174 0x1ea8  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
13:10:46.0245 0x1ea8  MSPQM - ok
13:10:46.0258 0x1ea8  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
13:10:46.0279 0x1ea8  MsRPC - ok
13:10:46.0285 0x1ea8  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
13:10:46.0297 0x1ea8  mssmbios - ok
13:10:46.0302 0x1ea8  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
13:10:46.0337 0x1ea8  MSTEE - ok
13:10:46.0341 0x1ea8  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\drivers\MTConfig.sys
13:10:46.0383 0x1ea8  MTConfig - ok
13:10:46.0388 0x1ea8  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
13:10:46.0401 0x1ea8  Mup - ok
13:10:46.0431 0x1ea8  [ C009123B206C56854F4E88596035231D, 670403A40B425F77C90ECB048A0C8BC11FB19E40A8CECC2C3DCF79175B745863 ] mwlPSDFilter    C:\Windows\system32\DRIVERS\mwlPSDFilter.sys
13:10:46.0441 0x1ea8  mwlPSDFilter - ok
13:10:46.0445 0x1ea8  [ BF3739EEB9F008B1DEBAC115089A53F8, 8546AB69087656259BBE17D6F80F4AB164B04171673CE2BF9FFD1B5C9584E9A4 ] mwlPSDNServ     C:\Windows\system32\DRIVERS\mwlPSDNServ.sys
13:10:46.0455 0x1ea8  mwlPSDNServ - ok
13:10:46.0462 0x1ea8  [ 38DD143D95E7A01B86F219DDA9C28779, 5FA8C0595CCF835DBCE1CC5322E8FD4BFB6DFB6CF869BB7CB73F919445D469AA ] mwlPSDVDisk     C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys
13:10:46.0474 0x1ea8  mwlPSDVDisk - ok
13:10:46.0517 0x1ea8  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\Windows\system32\qagentRT.dll
13:10:46.0611 0x1ea8  napagent - ok
13:10:46.0722 0x1ea8  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
13:10:46.0788 0x1ea8  NativeWifiP - ok
13:10:46.0882 0x1ea8  [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS            C:\Windows\system32\drivers\ndis.sys
13:10:46.0916 0x1ea8  NDIS - ok
13:10:46.0972 0x1ea8  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
13:10:47.0009 0x1ea8  NdisCap - ok
13:10:47.0082 0x1ea8  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
13:10:47.0148 0x1ea8  NdisTapi - ok
13:10:47.0209 0x1ea8  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
13:10:47.0282 0x1ea8  Ndisuio - ok
13:10:47.0293 0x1ea8  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
13:10:47.0333 0x1ea8  NdisWan - ok
13:10:47.0371 0x1ea8  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
13:10:47.0499 0x1ea8  NDProxy - ok
13:10:47.0537 0x1ea8  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
13:10:47.0635 0x1ea8  NetBIOS - ok
13:10:47.0645 0x1ea8  [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
13:10:47.0685 0x1ea8  NetBT - ok
13:10:47.0698 0x1ea8  [ B6C7729936AAF8E0697F0A7DCA82CED8, 9706E5234364488DD18527AAC82760E5ECB6EC9EBFDD4D04D2708D3C9C576FE6 ] Netlogon        C:\Windows\system32\lsass.exe
13:10:47.0713 0x1ea8  Netlogon - ok
13:10:47.0782 0x1ea8  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
13:10:47.0871 0x1ea8  Netman - ok
13:10:47.0922 0x1ea8  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:10:47.0959 0x1ea8  NetMsmqActivator - ok
13:10:47.0996 0x1ea8  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:10:48.0012 0x1ea8  NetPipeActivator - ok
13:10:48.0029 0x1ea8  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
13:10:48.0128 0x1ea8  netprofm - ok
13:10:48.0137 0x1ea8  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:10:48.0153 0x1ea8  NetTcpActivator - ok
13:10:48.0159 0x1ea8  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:10:48.0175 0x1ea8  NetTcpPortSharing - ok
13:10:48.0251 0x1ea8  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
13:10:48.0285 0x1ea8  nfrd960 - ok
13:10:48.0523 0x1ea8  [ 2E8524DCBDE304B008047FB8DDEB4DBE, 471945E312B40CC50CCEF5C8977040247689BBB7BCFA6522F0932705A6F5AD49 ] NielsenUpdate   C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenUpdate.exe
13:10:48.0606 0x1ea8  NielsenUpdate - ok
13:10:48.0642 0x1ea8  [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc          C:\Windows\System32\nlasvc.dll
13:10:48.0737 0x1ea8  NlaSvc - ok
13:10:48.0937 0x1ea8  [ 8E2FAA43A235FDCFE17D7915682E0E86, 10F28E40BD50E37071C497E0B6680EE5D6E35B32FD288903BFD700452E736B00 ] nnfwdk          C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\nnfwdk64.sys
13:10:48.0962 0x1ea8  nnfwdk - ok
13:10:49.0002 0x1ea8  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
13:10:49.0056 0x1ea8  Npfs - ok
13:10:49.0103 0x1ea8  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
13:10:49.0236 0x1ea8  nsi - ok
13:10:49.0241 0x1ea8  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
13:10:49.0305 0x1ea8  nsiproxy - ok
13:10:49.0432 0x1ea8  [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
13:10:49.0486 0x1ea8  Ntfs - ok
13:10:49.0551 0x1ea8  [ 1873214666F6F0A883742DF91FBC48C9, DCF5382CE338D4B5B0C3A3B722A19B6C7BAB59EB7B266FEF04698B79070E2C4B ] NTI IScheduleSvc C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
13:10:49.0567 0x1ea8  NTI IScheduleSvc - ok
13:10:49.0611 0x1ea8  [ EE3BA1024594D5D09E314F206B94069E, 34C8EC3DF1C3088D8A0442CAA4F5506665AFB2DF016709457ED2AB7DA45F53A6 ] NTIDrvr         C:\Windows\system32\drivers\NTIDrvr.sys
13:10:49.0640 0x1ea8  NTIDrvr - ok
13:10:49.0674 0x1ea8  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
13:10:49.0716 0x1ea8  Null - ok
13:10:50.0198 0x1ea8  [ ECC732D5185408FCC323E56D30170848, 7A7A6C410B65DBB1D59653598D7E5414054588BB88505BE68BFFF0378FD555F3 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
13:10:50.0469 0x1ea8  nvlddmkm - ok
13:10:50.0673 0x1ea8  [ DDF6920EBE96B0304279834F2EE2193E, F631974EE3659EC01863C2502FD26A45A237A59B9B005E5B1F9F78357CCBB974 ] NvNetworkService C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
13:10:50.0726 0x1ea8  NvNetworkService - ok
13:10:50.0813 0x1ea8  [ F54C556FB7BE00CA0CC2E5C11194D2C5, 9956F5B3F37C545A20C005282F774D264CDBA3546AFFB942E69BDB24EDA1F6CD ] nvpciflt        C:\Windows\system32\DRIVERS\nvpciflt.sys
13:10:50.0843 0x1ea8  nvpciflt - ok
13:10:50.0920 0x1ea8  [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
13:10:50.0949 0x1ea8  nvraid - ok
13:10:50.0963 0x1ea8  [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
13:10:50.0978 0x1ea8  nvstor - ok
13:10:51.0142 0x1ea8  [ 0C4A0D577A6EF1B9D353851668779944, 70E866AD50809CC80F167796C516190918A542F7767A8841948E656F36877AFE ] NvStreamKms     C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys
13:10:51.0171 0x1ea8  NvStreamKms - ok
13:10:52.0160 0x1ea8  [ BC00A5B3A9F759F7B1DD0A5868C4492F, 23058E56016B836339AACDB0D42E074FB4EF560C27831F6228A455D70585D1EE ] NvStreamSvc     C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
13:10:52.0687 0x1ea8  NvStreamSvc - ok
13:10:52.0904 0x1ea8  [ 2AF7D8BCD8912FC16AA15268CDCF2454, 3A2E5ADFC6213A6EA83F78026518EC7EE0DD4BBA7C210CB7A41007BB57DC0636 ] nvsvc           C:\Windows\system32\nvvsvc.exe
13:10:52.0944 0x1ea8  nvsvc - ok
13:10:53.0022 0x1ea8  [ DBFE7B2DF103F74AE51840B3C5F25FE9, 436CAA417FD24BA870F117FA4BABA2AB694825795508BCFCC8C927CC2D5BBC5E ] nvvad_WaveExtensible C:\Windows\system32\drivers\nvvad64v.sys
13:10:53.0045 0x1ea8  nvvad_WaveExtensible - ok
13:10:53.0110 0x1ea8  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
13:10:53.0124 0x1ea8  nv_agp - ok
13:10:53.0167 0x1ea8  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
13:10:53.0183 0x1ea8  ohci1394 - ok
13:10:53.0397 0x1ea8  [ CC1D7C703650C3CB8FACD831EABA368E, F83B58067D671AB809C8224F2BA177BE5E5AE748952950D8A29FCCFFB0D90F95 ] Origin Client Service C:\Program Files (x86)\Origin\OriginClientService.exe
13:10:53.0455 0x1ea8  Origin Client Service - ok
13:10:53.0532 0x1ea8  [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:10:53.0546 0x1ea8  ose - ok
13:10:53.0756 0x1ea8  [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
13:10:53.0891 0x1ea8  osppsvc - ok
13:10:53.0945 0x1ea8  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
13:10:54.0066 0x1ea8  p2pimsvc - ok
13:10:54.0108 0x1ea8  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
13:10:54.0168 0x1ea8  p2psvc - ok
13:10:54.0209 0x1ea8  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\drivers\parport.sys
13:10:54.0256 0x1ea8  Parport - ok
13:10:54.0312 0x1ea8  [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
13:10:54.0348 0x1ea8  partmgr - ok
13:10:54.0408 0x1ea8  [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc          C:\Windows\System32\pcasvc.dll
13:10:54.0535 0x1ea8  PcaSvc - ok
13:10:54.0555 0x1ea8  [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci             C:\Windows\system32\drivers\pci.sys
13:10:54.0572 0x1ea8  pci - ok
13:10:54.0616 0x1ea8  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\drivers\pciide.sys
13:10:54.0640 0x1ea8  pciide - ok
13:10:54.0721 0x1ea8  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
13:10:54.0749 0x1ea8  pcmcia - ok
13:10:54.0755 0x1ea8  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
13:10:54.0768 0x1ea8  pcw - ok
13:10:54.0842 0x1ea8  [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
13:10:54.0880 0x1ea8  PEAUTH - ok
13:10:55.0114 0x1ea8  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
13:10:55.0191 0x1ea8  PerfHost - ok
13:10:55.0292 0x1ea8  [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla             C:\Windows\system32\pla.dll
13:10:55.0393 0x1ea8  pla - ok
13:10:55.0520 0x1ea8  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
13:10:55.0603 0x1ea8  PlugPlay - ok
13:10:55.0617 0x1ea8  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
13:10:55.0640 0x1ea8  PNRPAutoReg - ok
13:10:55.0682 0x1ea8  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
13:10:55.0711 0x1ea8  PNRPsvc - ok
13:10:55.0807 0x1ea8  [ E4799B87675C59AA1F620DE5C6F113BB, 094EE16D4CEC68DB316002994482344A6BFCFDE399131F7FA11BB46C2DCBF218 ] Point64         C:\Windows\system32\DRIVERS\point64.sys
13:10:55.0827 0x1ea8  Point64 - ok
13:10:55.0872 0x1ea8  [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
13:10:55.0921 0x1ea8  PolicyAgent - ok
13:10:56.0030 0x1ea8  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
13:10:56.0133 0x1ea8  Power - ok
13:10:56.0236 0x1ea8  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
13:10:56.0355 0x1ea8  PptpMiniport - ok
13:10:56.0426 0x1ea8  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\drivers\processr.sys
13:10:56.0459 0x1ea8  Processor - ok
13:10:56.0552 0x1ea8  [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc         C:\Windows\system32\profsvc.dll
13:10:56.0689 0x1ea8  ProfSvc - ok
13:10:56.0742 0x1ea8  [ B6C7729936AAF8E0697F0A7DCA82CED8, 9706E5234364488DD18527AAC82760E5ECB6EC9EBFDD4D04D2708D3C9C576FE6 ] ProtectedStorage C:\Windows\system32\lsass.exe
13:10:56.0768 0x1ea8  ProtectedStorage - ok
13:10:56.0856 0x1ea8  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
13:10:56.0971 0x1ea8  Psched - ok
13:10:57.0055 0x1ea8  [ DD3FD48D69F5FBBB21D46D1514C1C2DB, 2B188E3AC4BD9B608D375DD550507717852C2AF7C0F99FFED90098999B9D4F01 ] PSI             C:\Windows\system32\DRIVERS\psi_mf_amd64.sys
13:10:57.0066 0x1ea8  PSI - ok
13:10:57.0140 0x1ea8  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
13:10:57.0191 0x1ea8  ql2300 - ok
13:10:57.0200 0x1ea8  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
13:10:57.0215 0x1ea8  ql40xx - ok
13:10:57.0251 0x1ea8  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
13:10:57.0277 0x1ea8  QWAVE - ok
13:10:57.0283 0x1ea8  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
13:10:57.0302 0x1ea8  QWAVEdrv - ok
13:10:57.0307 0x1ea8  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
13:10:57.0348 0x1ea8  RasAcd - ok
13:10:57.0426 0x1ea8  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
13:10:57.0488 0x1ea8  RasAgileVpn - ok
13:10:57.0572 0x1ea8  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
13:10:57.0649 0x1ea8  RasAuto - ok
13:10:57.0657 0x1ea8  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
13:10:57.0735 0x1ea8  Rasl2tp - ok
13:10:57.0811 0x1ea8  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\Windows\System32\rasmans.dll
13:10:57.0903 0x1ea8  RasMan - ok
13:10:57.0953 0x1ea8  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
13:10:58.0020 0x1ea8  RasPppoe - ok
13:10:58.0102 0x1ea8  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
13:10:58.0165 0x1ea8  RasSstp - ok
13:10:58.0177 0x1ea8  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
13:10:58.0218 0x1ea8  rdbss - ok
13:10:58.0234 0x1ea8  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\drivers\rdpbus.sys
13:10:58.0282 0x1ea8  rdpbus - ok
13:10:58.0321 0x1ea8  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
13:10:58.0381 0x1ea8  RDPCDD - ok
13:10:58.0388 0x1ea8  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
13:10:58.0464 0x1ea8  RDPENCDD - ok
13:10:58.0501 0x1ea8  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
13:10:58.0541 0x1ea8  RDPREFMP - ok
13:10:58.0636 0x1ea8  [ 313F68E1A3E6345A4F47A36B07062F34, B8318A0AE06BDE278931CA52F960B9FE226FD9894B076858DDB755AE26E1E66F ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
13:10:58.0695 0x1ea8  RdpVideoMiniport - ok
13:10:58.0729 0x1ea8  [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
13:10:58.0764 0x1ea8  RDPWD - ok
13:10:58.0849 0x1ea8  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
13:10:58.0886 0x1ea8  rdyboost - ok
13:10:58.0946 0x1ea8  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
13:10:59.0077 0x1ea8  RemoteAccess - ok
13:10:59.0112 0x1ea8  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
13:10:59.0153 0x1ea8  RemoteRegistry - ok
13:10:59.0225 0x1ea8  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
13:10:59.0276 0x1ea8  RpcEptMapper - ok
13:10:59.0302 0x1ea8  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
13:10:59.0318 0x1ea8  RpcLocator - ok
13:10:59.0360 0x1ea8  [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs           C:\Windows\system32\rpcss.dll
13:10:59.0410 0x1ea8  RpcSs - ok
13:10:59.0498 0x1ea8  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
13:10:59.0571 0x1ea8  rspndr - ok
13:10:59.0587 0x1ea8  [ B6C7729936AAF8E0697F0A7DCA82CED8, 9706E5234364488DD18527AAC82760E5ECB6EC9EBFDD4D04D2708D3C9C576FE6 ] SamSs           C:\Windows\system32\lsass.exe
13:10:59.0601 0x1ea8  SamSs - ok
13:10:59.0637 0x1ea8  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
13:10:59.0651 0x1ea8  sbp2port - ok
13:10:59.0692 0x1ea8  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
13:10:59.0775 0x1ea8  SCardSvr - ok
13:10:59.0780 0x1ea8  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
13:10:59.0859 0x1ea8  scfilter - ok
13:10:59.0929 0x1ea8  [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule        C:\Windows\system32\schedsvc.dll
13:11:00.0003 0x1ea8  Schedule - ok
13:11:00.0026 0x1ea8  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc     C:\Windows\System32\certprop.dll
13:11:00.0065 0x1ea8  SCPolicySvc - ok
13:11:00.0087 0x1ea8  [ 111E0EBC0AD79CB0FA014B907B231CF0, B7D43D156C2524938503CF8E99C4D1F7A5C55E16C0368F57F4CD23C6D833B38F ] sdbus           C:\Windows\system32\DRIVERS\sdbus.sys
13:11:00.0134 0x1ea8  sdbus - ok
13:11:00.0197 0x1ea8  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
13:11:00.0287 0x1ea8  SDRSVC - ok
13:11:00.0308 0x1ea8  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
13:11:00.0386 0x1ea8  secdrv - ok
13:11:00.0407 0x1ea8  [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon        C:\Windows\system32\seclogon.dll
13:11:00.0448 0x1ea8  seclogon - ok
13:11:00.0670 0x1ea8  [ 5E0E975998BF1612E18B898E5D17838B, 76C11C62DB8055F03F868685E8E2016D99D3FC48313CB51C69E7CEA589D80890 ] Secunia PSI Agent C:\Program Files (x86)\Secunia\PSI\PSIA.exe
13:11:00.0714 0x1ea8  Secunia PSI Agent - ok
13:11:00.0911 0x1ea8  [ 508DD2E1D5F272B2D3196335DEA2BC26, 2BDC828DB9D9766445C345E82751FA7EF94A089EC84565675EDADE3EC7EB5748 ] Secunia Update Agent C:\Program Files (x86)\Secunia\PSI\sua.exe
13:11:00.0952 0x1ea8  Secunia Update Agent - ok
13:11:00.0972 0x1ea8  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\system32\sens.dll
13:11:01.0036 0x1ea8  SENS - ok
13:11:01.0123 0x1ea8  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
13:11:01.0248 0x1ea8  SensrSvc - ok
13:11:01.0320 0x1ea8  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\drivers\serenum.sys
13:11:01.0339 0x1ea8  Serenum - ok
13:11:01.0413 0x1ea8  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\drivers\serial.sys
13:11:01.0459 0x1ea8  Serial - ok
13:11:01.0463 0x1ea8  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\drivers\sermouse.sys
13:11:01.0477 0x1ea8  sermouse - ok
13:11:01.0530 0x1ea8  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\Windows\system32\sessenv.dll
13:11:01.0593 0x1ea8  SessionEnv - ok
13:11:01.0598 0x1ea8  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
13:11:01.0614 0x1ea8  sffdisk - ok
13:11:01.0619 0x1ea8  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
13:11:01.0673 0x1ea8  sffp_mmc - ok
13:11:01.0677 0x1ea8  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
13:11:01.0692 0x1ea8  sffp_sd - ok
13:11:01.0749 0x1ea8  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
13:11:01.0780 0x1ea8  sfloppy - ok
13:11:01.0913 0x1ea8  [ 2046AA7491DE7EFA4D70E615D9BC9D09, A8763D059AD68D5842C407FA9644E0B129BEF0F63CD87E62B80B05441EDC3489 ] Sftfs           C:\Windows\system32\DRIVERS\Sftfslh.sys
13:11:01.0943 0x1ea8  Sftfs - ok
13:11:02.0107 0x1ea8  [ 77C5A741A7452812F278EF2C18478862, 0B763679EB7EFB8ED9DCE7B429706E939BB65BA6BCF1BAE0E0426D4E87074B8C ] sftlist         C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
13:11:02.0140 0x1ea8  sftlist - ok
13:11:02.0207 0x1ea8  [ 0E0446BC4D51BE4263ACB7E33491191C, 2AD039FB440560658C4E06F67CC192EF71577EF3FF789A43C08430CE5EAE5A70 ] Sftplay         C:\Windows\system32\DRIVERS\Sftplaylh.sys
13:11:02.0244 0x1ea8  Sftplay - ok
13:11:02.0328 0x1ea8  [ C5FB982CD266E604ED3142102C26D62C, A6BC0D72E98F924274ECAD49C85F0775D1CD45B97CD43F53DF3992B560835FC5 ] Sftredir        C:\Windows\system32\DRIVERS\Sftredirlh.sys
13:11:02.0346 0x1ea8  Sftredir - ok
13:11:02.0372 0x1ea8  [ 2575511AF67AA1FA068CCC4918E2C2A3, 3152FF5AC2CF6FE966DA59B1B33E22F9BD9B6BB4310441870528364BA9501A4D ] Sftvol          C:\Windows\system32\DRIVERS\Sftvollh.sys
13:11:02.0391 0x1ea8  Sftvol - ok
13:11:02.0460 0x1ea8  [ 39B1D0A636A400304565D4521FAD6D77, 1F01DB35B5A477AA7A77585C9304E6B5F3E67807531305BCA93A7F494CED8F59 ] sftvsa          C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
13:11:02.0490 0x1ea8  sftvsa - ok
13:11:02.0601 0x1ea8  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
13:11:02.0717 0x1ea8  SharedAccess - ok
13:11:02.0784 0x1ea8  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:11:02.0910 0x1ea8  ShellHWDetection - ok
13:11:03.0005 0x1ea8  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
13:11:03.0032 0x1ea8  SiSRaid2 - ok
13:11:03.0044 0x1ea8  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
13:11:03.0062 0x1ea8  SiSRaid4 - ok
13:11:03.0199 0x1ea8  [ F6EF225A23D336CA30001E5007644C24, B0A4B1256C1074F1B4F73E3BBA16FD4683D6EEA583DEEF8E11EFD29BA7541F2A ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
13:11:03.0240 0x1ea8  SkypeUpdate - ok
13:11:03.0371 0x1ea8  [ E77CB3736A702D46A6FB15FB4A9894E3, A341AD51825D4DB8A68ADDABE0FD17693DE387B0DA11800D427B8EA31577626C ] SmartDefragDriver C:\Windows\system32\Drivers\SmartDefragDriver.sys
13:11:03.0398 0x1ea8  SmartDefragDriver - ok
13:11:03.0449 0x1ea8  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
13:11:03.0485 0x1ea8  Smb - ok
13:11:03.0503 0x1ea8  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
13:11:03.0549 0x1ea8  SNMPTRAP - ok
13:11:03.0711 0x1ea8  [ 3A4F2C0BB87A0895ABEBA341AA1E341B, 4DADEEF3C5D181502D6F4A00FBBF3B001FA626E49569FB330D7AE2955CC7DE08 ] Sony PC Companion C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe
13:11:03.0730 0x1ea8  Sony PC Companion - ok
13:11:03.0763 0x1ea8  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
13:11:03.0775 0x1ea8  spldr - ok
13:11:03.0819 0x1ea8  [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler         C:\Windows\System32\spoolsv.exe
13:11:03.0937 0x1ea8  Spooler - ok
13:11:04.0115 0x1ea8  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\Windows\system32\sppsvc.exe
13:11:04.0242 0x1ea8  sppsvc - ok
13:11:04.0266 0x1ea8  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
13:11:04.0363 0x1ea8  sppuinotify - ok
13:11:04.0380 0x1ea8  [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv             C:\Windows\system32\DRIVERS\srv.sys
13:11:04.0417 0x1ea8  srv - ok
13:11:04.0440 0x1ea8  [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
13:11:04.0516 0x1ea8  srv2 - ok
13:11:04.0548 0x1ea8  [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
13:11:04.0575 0x1ea8  srvnet - ok
13:11:04.0616 0x1ea8  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
13:11:04.0691 0x1ea8  SSDPSRV - ok
13:11:04.0734 0x1ea8  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
13:11:04.0773 0x1ea8  SstpSvc - ok
13:11:04.0796 0x1ea8  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
13:11:04.0808 0x1ea8  stexstor - ok
13:11:04.0827 0x1ea8  [ DECACB6921DED1A38642642685D77DAC, 1633711CE973F818EBCCCA28538772431167C33ECDD44D1E846A9436598B52DC ] StillCam        C:\Windows\system32\DRIVERS\serscan.sys
13:11:04.0854 0x1ea8  StillCam - ok
13:11:04.0947 0x1ea8  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\Windows\System32\wiaservc.dll
13:11:04.0994 0x1ea8  stisvc - ok
13:11:05.0034 0x1ea8  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\drivers\swenum.sys
13:11:05.0063 0x1ea8  swenum - ok
13:11:05.0093 0x1ea8  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
13:11:05.0225 0x1ea8  swprv - ok
13:11:05.0361 0x1ea8  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain         C:\Windows\system32\sysmain.dll
13:11:05.0459 0x1ea8  SysMain - ok
13:11:05.0494 0x1ea8  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:11:05.0517 0x1ea8  TabletInputService - ok
13:11:05.0561 0x1ea8  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv         C:\Windows\System32\tapisrv.dll
13:11:05.0606 0x1ea8  TapiSrv - ok
13:11:05.0635 0x1ea8  [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS             C:\Windows\System32\tbssvc.dll
13:11:05.0698 0x1ea8  TBS - ok
13:11:05.0863 0x1ea8  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
13:11:05.0922 0x1ea8  Tcpip - ok
13:11:06.0080 0x1ea8  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
13:11:06.0139 0x1ea8  TCPIP6 - ok
13:11:06.0168 0x1ea8  [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
13:11:06.0181 0x1ea8  tcpipreg - ok
13:11:06.0232 0x1ea8  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
13:11:06.0326 0x1ea8  TDPIPE - ok
13:11:06.0361 0x1ea8  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
13:11:06.0382 0x1ea8  TDTCP - ok
13:11:06.0473 0x1ea8  [ 70988118145F5F10EF24720B97F35F65, F80C806417A68047FFB3D63214BC4AE5445315219AC594E043293006B704A63D ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
13:11:06.0572 0x1ea8  tdx - ok
13:11:06.0784 0x1ea8  [ 4ACFC5853A3F0C6C2F54E537C23EE90F, 47D81F471A250696A1A0D19294FC553EB88D813612A8351C89F65D7BF99C8532 ] TeamViewer9     C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
13:11:06.0916 0x1ea8  TeamViewer9 - ok
13:11:06.0936 0x1ea8  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\Windows\system32\drivers\termdd.sys
13:11:06.0949 0x1ea8  TermDD - ok
13:11:06.0987 0x1ea8  [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService     C:\Windows\System32\termsrv.dll
13:11:07.0069 0x1ea8  TermService - ok
13:11:07.0113 0x1ea8  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
13:11:07.0141 0x1ea8  Themes - ok
13:11:07.0176 0x1ea8  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
13:11:07.0214 0x1ea8  THREADORDER - ok
13:11:07.0246 0x1ea8  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
13:11:07.0319 0x1ea8  TrkWks - ok
13:11:07.0406 0x1ea8  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:11:07.0498 0x1ea8  TrustedInstaller - ok
13:11:07.0544 0x1ea8  [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
13:11:07.0582 0x1ea8  tssecsrv - ok
13:11:07.0645 0x1ea8  [ E9981ECE8D894CEF7038FD1D040EB426, DCDDCE933CAECE8180A3447199B07F2F0413704EEC1A09606EE357901A84A7CF ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
13:11:07.0708 0x1ea8  TsUsbFlt - ok
13:11:07.0740 0x1ea8  [ AD64450A4ABE076F5CB34CC08EEACB07, B5C386635441A19178E7FEEE299BA430C8D72F9110866C13A216B12A1080AD12 ] TsUsbGD         C:\Windows\system32\drivers\TsUsbGD.sys
13:11:07.0778 0x1ea8  TsUsbGD - ok
13:11:07.0863 0x1ea8  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
13:11:07.0907 0x1ea8  tunnel - ok
13:11:07.0945 0x1ea8  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
13:11:07.0972 0x1ea8  uagp35 - ok
13:11:07.0976 0x1ea8  [ A17D5E1A6DF4EAB0A480F2C490DE4C9D, 1EA835F172B6BF3D7F496E079DF1CDF00122B2110C08D61427582BC9405D2B7B ] UBHelper        C:\Windows\system32\drivers\UBHelper.sys
13:11:07.0985 0x1ea8  UBHelper - ok
13:11:07.0997 0x1ea8  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
13:11:08.0039 0x1ea8  udfs - ok
13:11:08.0062 0x1ea8  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
13:11:08.0079 0x1ea8  UI0Detect - ok
13:11:08.0134 0x1ea8  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
13:11:08.0160 0x1ea8  uliagpkx - ok
13:11:08.0267 0x1ea8  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
13:11:08.0356 0x1ea8  umbus - ok
13:11:08.0422 0x1ea8  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\drivers\umpass.sys
13:11:08.0453 0x1ea8  UmPass - ok
13:11:08.0615 0x1ea8  [ 374EBDA379A8F38E0CFC2211611E7167, 0D6C3002B28E27C052227488CEE69FA99399421FF777EB48031E6080A759F532 ] UNS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
13:11:08.0691 0x1ea8  UNS - ok
13:11:08.0736 0x1ea8  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
13:11:08.0851 0x1ea8  upnphost - ok
13:11:08.0900 0x1ea8  [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
13:11:08.0940 0x1ea8  usbccgp - ok
13:11:08.0974 0x1ea8  [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir          C:\Windows\system32\drivers\usbcir.sys
13:11:09.0056 0x1ea8  usbcir - ok
13:11:09.0092 0x1ea8  [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
13:11:09.0115 0x1ea8  usbehci - ok
13:11:09.0207 0x1ea8  [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
13:11:09.0285 0x1ea8  usbhub - ok
13:11:09.0351 0x1ea8  [ 9840FC418B4CBD632D3D0A667A725C31, 776D86A032DCA2842EF7AADB35473193CA80547223EFAA7F110F296C377077B0 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
13:11:09.0452 0x1ea8  usbohci - ok
13:11:09.0483 0x1ea8  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
13:11:09.0500 0x1ea8  usbprint - ok
13:11:09.0579 0x1ea8  [ 9661DA76B4531B2DA272ECCE25A8AF24, FEA93254A21E71A7EB8AD35FCCAD2C1E41F7329EC33B1734F5B41307A34D8637 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
13:11:09.0631 0x1ea8  usbscan - ok
13:11:09.0725 0x1ea8  [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:11:09.0854 0x1ea8  USBSTOR - ok
13:11:09.0864 0x1ea8  [ 62069A34518BCF9C1FD9E74B3F6DB7CD, C58E21424718729324B285BEE1C96551540FCC3FD650B2D10895EBA48D981E25 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
13:11:09.0884 0x1ea8  usbuhci - ok
13:11:09.0973 0x1ea8  [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
13:11:10.0070 0x1ea8  usbvideo - ok
13:11:10.0110 0x1ea8  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
13:11:10.0197 0x1ea8  UxSms - ok
13:11:10.0265 0x1ea8  [ B6C7729936AAF8E0697F0A7DCA82CED8, 9706E5234364488DD18527AAC82760E5ECB6EC9EBFDD4D04D2708D3C9C576FE6 ] VaultSvc        C:\Windows\system32\lsass.exe
13:11:10.0290 0x1ea8  VaultSvc - ok
13:11:10.0678 0x1ea8  [ CD74DB141650A8E131F30250381E5A77, C3F6CC4FA70D73A0453126AD6FB1A8A285A6B66EC2C661D9B4F798F8D9CB3976 ] VBoxAswDrv      C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys
13:11:10.0714 0x1ea8  VBoxAswDrv - ok
13:11:10.0799 0x1ea8  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
13:11:10.0828 0x1ea8  vdrvroot - ok
13:11:10.0876 0x1ea8  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds             C:\Windows\System32\vds.exe
13:11:10.0935 0x1ea8  vds - ok
13:11:10.0989 0x1ea8  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
13:11:11.0006 0x1ea8  vga - ok
13:11:11.0009 0x1ea8  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
13:11:11.0045 0x1ea8  VgaSave - ok
13:11:11.0054 0x1ea8  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
13:11:11.0071 0x1ea8  vhdmp - ok
13:11:11.0116 0x1ea8  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\drivers\viaide.sys
13:11:11.0127 0x1ea8  viaide - ok
13:11:11.0133 0x1ea8  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
13:11:11.0146 0x1ea8  volmgr - ok
13:11:11.0159 0x1ea8  [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
13:11:11.0180 0x1ea8  volmgrx - ok
13:11:11.0210 0x1ea8  [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap         C:\Windows\system32\drivers\volsnap.sys
13:11:11.0229 0x1ea8  volsnap - ok
13:11:11.0315 0x1ea8  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
13:11:11.0345 0x1ea8  vsmraid - ok
13:11:11.0447 0x1ea8  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS             C:\Windows\system32\vssvc.exe
13:11:11.0546 0x1ea8  VSS - ok
13:11:11.0553 0x1ea8  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
13:11:11.0571 0x1ea8  vwifibus - ok
13:11:11.0633 0x1ea8  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
13:11:11.0670 0x1ea8  vwififlt - ok
13:11:11.0732 0x1ea8  [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
13:11:11.0823 0x1ea8  vwifimp - ok
13:11:11.0870 0x1ea8  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
13:11:11.0935 0x1ea8  W32Time - ok
13:11:11.0942 0x1ea8  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
13:11:11.0956 0x1ea8  WacomPen - ok
13:11:12.0001 0x1ea8  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
13:11:12.0037 0x1ea8  WANARP - ok
13:11:12.0080 0x1ea8  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
13:11:12.0120 0x1ea8  Wanarpv6 - ok
13:11:12.0290 0x1ea8  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
13:11:12.0332 0x1ea8  WatAdminSvc - ok
13:11:12.0391 0x1ea8  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\Windows\system32\wbengine.exe
13:11:12.0449 0x1ea8  wbengine - ok
13:11:12.0469 0x1ea8  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
13:11:12.0523 0x1ea8  WbioSrvc - ok
13:11:12.0581 0x1ea8  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
13:11:12.0624 0x1ea8  wcncsvc - ok
13:11:12.0666 0x1ea8  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:11:12.0774 0x1ea8  WcsPlugInService - ok
13:11:12.0823 0x1ea8  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\drivers\wd.sys
13:11:12.0842 0x1ea8  Wd - ok
13:11:12.0921 0x1ea8  [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
13:11:12.0953 0x1ea8  Wdf01000 - ok
13:11:13.0036 0x1ea8  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost  C:\Windows\system32\wdi.dll
13:11:13.0114 0x1ea8  WdiServiceHost - ok
13:11:13.0121 0x1ea8  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost   C:\Windows\system32\wdi.dll
13:11:13.0143 0x1ea8  WdiSystemHost - ok
13:11:13.0188 0x1ea8  [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient       C:\Windows\System32\webclnt.dll
13:11:13.0296 0x1ea8  WebClient - ok
13:11:13.0351 0x1ea8  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
13:11:13.0462 0x1ea8  Wecsvc - ok
13:11:13.0505 0x1ea8  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
13:11:13.0545 0x1ea8  wercplsupport - ok
13:11:13.0551 0x1ea8  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
13:11:13.0625 0x1ea8  WerSvc - ok
13:11:13.0759 0x1ea8  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
13:11:13.0811 0x1ea8  WfpLwf - ok
13:11:13.0830 0x1ea8  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
13:11:13.0841 0x1ea8  WIMMount - ok
13:11:13.0871 0x1ea8  WinDefend - ok
13:11:13.0878 0x1ea8  WinHttpAutoProxySvc - ok
13:11:13.0992 0x1ea8  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
13:11:14.0090 0x1ea8  Winmgmt - ok
13:11:14.0210 0x1ea8  [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM           C:\Windows\system32\WsmSvc.dll
13:11:14.0298 0x1ea8  WinRM - ok
13:11:14.0567 0x1ea8  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb          C:\Windows\system32\DRIVERS\WinUsb.sys
13:11:14.0609 0x1ea8  WinUsb - ok
13:11:14.0672 0x1ea8  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
13:11:14.0717 0x1ea8  Wlansvc - ok
13:11:14.0771 0x1ea8  [ 06C8FA1CF39DE6A735B54D906BA791C6, D8FEC7DE227781CDA876904701B2AA995268F74DCD6CB34AA0296C557FC283B6 ] wlcrasvc        C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
13:11:14.0787 0x1ea8  wlcrasvc - ok
13:11:14.0922 0x1ea8  [ 2BACD71123F42CEA603F4E205E1AE337, 1FEF20554110371D738F462ECFFA999158EFEED02062414C58C1B61C422BF0B9 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:11:14.0994 0x1ea8  wlidsvc - ok
13:11:15.0052 0x1ea8  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\DRIVERS\wmiacpi.sys
13:11:15.0095 0x1ea8  WmiAcpi - ok
13:11:15.0149 0x1ea8  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
13:11:15.0173 0x1ea8  wmiApSrv - ok
13:11:15.0256 0x1ea8  WMPNetworkSvc - ok
13:11:15.0320 0x1ea8  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
13:11:15.0441 0x1ea8  WPCSvc - ok
13:11:15.0472 0x1ea8  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
13:11:15.0540 0x1ea8  WPDBusEnum - ok
13:11:15.0555 0x1ea8  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
13:11:15.0624 0x1ea8  ws2ifsl - ok
13:11:15.0718 0x1ea8  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\system32\wscsvc.dll
13:11:15.0792 0x1ea8  wscsvc - ok
13:11:15.0795 0x1ea8  WSearch - ok
13:11:15.0953 0x1ea8  [ 61FF576450CCC80564B850BC3FB6713A, B2843BC9E2F62D27DCF6787D063378926748CE75002BADA1873DCB5039883705 ] wuauserv        C:\Windows\system32\wuaueng.dll
13:11:16.0030 0x1ea8  wuauserv - ok
13:11:16.0064 0x1ea8  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
13:11:16.0101 0x1ea8  WudfPf - ok
13:11:16.0178 0x1ea8  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
13:11:16.0204 0x1ea8  WUDFRd - ok
13:11:16.0232 0x1ea8  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
13:11:16.0278 0x1ea8  wudfsvc - ok
13:11:16.0330 0x1ea8  [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc         C:\Windows\System32\wwansvc.dll
13:11:16.0408 0x1ea8  WwanSvc - ok
13:11:16.0417 0x1ea8  ================ Scan global ===============================
13:11:16.0451 0x1ea8  [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll
13:11:16.0475 0x1ea8  [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll
13:11:16.0498 0x1ea8  [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll
13:11:16.0536 0x1ea8  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
13:11:16.0568 0x1ea8  [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe
13:11:16.0580 0x1ea8  [ Global ] - ok
13:11:16.0581 0x1ea8  ================ Scan MBR ==================================
13:11:16.0617 0x1ea8  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
13:11:17.0138 0x1ea8  \Device\Harddisk0\DR0 - ok
13:11:17.0147 0x1ea8  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk1\DR1
13:11:17.0288 0x1ea8  \Device\Harddisk1\DR1 - ok
13:11:17.0295 0x1ea8  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk2\DR2
13:11:18.0383 0x1ea8  \Device\Harddisk2\DR2 - ok
13:11:18.0390 0x1ea8  [ DDAE9D649DB12F6AFF24483F2C298989 ] \Device\Harddisk3\DR3
13:11:18.0542 0x1ea8  \Device\Harddisk3\DR3 - ok
13:11:18.0543 0x1ea8  ================ Scan VBR ==================================
13:11:18.0547 0x1ea8  [ 49320648CA9BCD227431513D51E0DB94 ] \Device\Harddisk0\DR0\Partition1
13:11:18.0592 0x1ea8  \Device\Harddisk0\DR0\Partition1 - ok
13:11:18.0601 0x1ea8  [ 6FBDACD8019EE2AD8A1C41F6E7E98745 ] \Device\Harddisk0\DR0\Partition2
13:11:18.0604 0x1ea8  \Device\Harddisk0\DR0\Partition2 - ok
13:11:18.0613 0x1ea8  [ 6367CDA60B32E169A164CD4CDD52C73E ] \Device\Harddisk1\DR1\Partition1
13:11:18.0622 0x1ea8  \Device\Harddisk1\DR1\Partition1 - ok
13:11:18.0627 0x1ea8  [ BCA0353805478926BA51BFC7D4484F23 ] \Device\Harddisk2\DR2\Partition1
13:11:18.0632 0x1ea8  \Device\Harddisk2\DR2\Partition1 - ok
13:11:18.0635 0x1ea8  [ DA5251F71A9D8C0BA1E28FFD9BFBB4E3 ] \Device\Harddisk3\DR3\Partition1
13:11:18.0637 0x1ea8  \Device\Harddisk3\DR3\Partition1 - ok
13:11:18.0639 0x1ea8  ================ Scan generic autorun ======================
13:11:18.0820 0x1ea8  [ 7304E21B92E538E2CC793EDF478AC034, 39992D4541E100E5D8199B2FB5B7C7DD7213F8BC84AEA1924C6EC46E8711BF28 ] C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
13:11:18.0893 0x1ea8  NvBackend - ok
13:11:18.0915 0x1ea8  [ DD81D91FF3B0763C392422865C9AC12E, F5691B8F200E3196E6808E932630E862F8F26F31CD949981373F23C9D87DB8B9 ] C:\Windows\system32\rundll32.exe
13:11:18.0982 0x1ea8  ShadowPlay - ok
13:11:19.0156 0x1ea8  [ 9DECF401AE4CB834D89957BDBF484068, 084056EAA068F88B6168566F14D315F2AD35F2202B18CFC5F88A466C154210A3 ] C:\Program Files\AVAST Software\Avast\setup\emupdate\31de7fec-6f50-4e55-81a8-c3d34915bd4c.exe
13:11:19.0172 0x1ea8  20150107 - ok
13:11:19.0275 0x1ea8  [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe
13:11:19.0341 0x1ea8  Sidebar - ok
13:11:19.0584 0x1ea8  [ 4B7E9CEC54BFFB14370DA4314FF8F2F9, 4E1A1BB2E1E1DE68A73029FE1370123AB58BDA7DEEDD0D711B6F878674232AC5 ] C:\Users\Lilly\AppData\Local\EntscheiderClub Premium\EntscheiderClub Premium.exe
13:11:19.0621 0x1ea8  EntscheiderClub Premium - ok
13:11:19.0863 0x1ea8  [ C67D8DD9BB76F76981D6F987B785F882, 968556CC10245847BB3312A6F9E0AF915DA3EE23DE6D9C64620BDC0246E08946 ] C:\Program Files (x86)\Ruiware\WinPatrol\winpatrol.exe
13:11:19.0901 0x1ea8  WinPatrol - ok
13:11:20.0492 0x1ea8  [ 845799C9874B68BEAE3B64059653C7E3, 2E0B9DD46569A6449989E2D7C60B88B46352A178019B4BD840C166674E798CFD ] C:\Program Files\CCleaner\CCleaner64.exe
13:11:20.0686 0x1ea8  CCleaner Monitoring - ok
13:11:20.0692 0x1ea8  Waiting for KSN requests completion. In queue: 131
13:11:21.0692 0x1ea8  Waiting for KSN requests completion. In queue: 131
13:11:22.0692 0x1ea8  Waiting for KSN requests completion. In queue: 131
13:11:23.0692 0x1ea8  Waiting for KSN requests completion. In queue: 131
13:11:24.0692 0x1ea8  Waiting for KSN requests completion. In queue: 131
13:11:25.0692 0x1ea8  Waiting for KSN requests completion. In queue: 131
13:11:26.0692 0x1ea8  Waiting for KSN requests completion. In queue: 131
13:11:27.0692 0x1ea8  Waiting for KSN requests completion. In queue: 131
13:11:28.0692 0x1ea8  Waiting for KSN requests completion. In queue: 131
13:11:29.0692 0x1ea8  Waiting for KSN requests completion. In queue: 131
13:11:30.0692 0x1ea8  Waiting for KSN requests completion. In queue: 131
13:11:31.0692 0x1ea8  Waiting for KSN requests completion. In queue: 131
13:11:32.0693 0x1ea8  Waiting for KSN requests completion. In queue: 131
13:11:33.0693 0x1ea8  Waiting for KSN requests completion. In queue: 124
13:11:34.0693 0x1ea8  Waiting for KSN requests completion. In queue: 124
13:11:35.0746 0x1ea8  AV detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 10.2.2214.845 ), 0x41000 ( enabled : updated )
13:11:35.0748 0x1ea8  FW detected via SS2: avast! Antivirus, C:\Program Files\AVAST Software\Avast\VisthAux.exe ( 10.2.2214.845 ), 0x41010 ( enabled )
13:11:38.0493 0x1ea8  ============================================================
13:11:38.0493 0x1ea8  Scan finished
13:11:38.0493 0x1ea8  ============================================================
13:11:38.0510 0x1afc  Detected object count: 0
13:11:38.0510 0x1afc  Actual detected object count: 0
         

Alt 30.03.2015, 18:30   #7
schrauber
/// the machine
/// TB-Ausbilder
 

Pc plötzlich sehr langsam - Standard

Pc plötzlich sehr langsam



  • Lade Dir bitte Windows Repair - All in one von tweaking.com hier herunter und installiere es.
  • Deaktiviere bitte (wenn möglich) Dein Antivirusprogramm.
  • Bedenke, dass die einzelnen Reparaturen einige Zeit benötigen. Starte keine anderen Anwendungen in dieser Zeit.
  • Starte das Programm und führe die Punkte 1-5 durch. (Siehe Bildanleitung)
  • Achte darauf, dass bei Dir die Häkchen so gesetzt sind wie unter Punkt 4.
  • Setze auch ein Häkchen bei "Restart/Shutdown System" und klicke "Restart System" an bevor Du Punkt 5 durchführst.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 31.03.2015, 17:32   #8
lyncat89
 
Pc plötzlich sehr langsam - Standard

Pc plötzlich sehr langsam



Ich habe alles nach Anleitung durchgeführt,
das Problem besteht weiterhin...
Ich habe gesehen, dass mir der Fehlercode 43 angezeigt wird, falls das weiterhilft?

Alt 01.04.2015, 06:21   #9
schrauber
/// the machine
/// TB-Ausbilder
 

Pc plötzlich sehr langsam - Standard

Pc plötzlich sehr langsam



hi,

Scan mit Combofix
WARNUNG an die MITLESER:
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!

Downloade dir bitte Combofix vom folgenden Downloadspiegel: Link
  • WICHTIG: Speichere Combofix auf deinem Desktop.
  • Deaktiviere bitte alle deine Antivirensoftware sowie Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören. Combofix meckert auch manchmal trotzdem noch, das kannst du dann ignorieren, mir aber bitte mitteilen.
  • Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.
  • Während Combofix läuft bitte nicht am Computer arbeiten, die Maus bewegen oder ins Combofixfenster klicken!
  • Wenn Combofix fertig ist, wird es ein Logfile erstellen.
  • Bitte poste die C:\Combofix.txt in deiner nächsten Antwort (möglichst in CODE-Tags).
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.

__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 01.04.2015, 11:47   #10
lyncat89
 
Pc plötzlich sehr langsam - Standard

combofix



Code:
ATTFilter
ComboFix 15-04-01.01 - Awender 01.04.2015  11:24:15.1.4 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.49.1031.18.8044.6062 [GMT 2:00]
ausgeführt von:: c:\users\Lilly\Desktop\trojanerboard\29.03\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
FW: avast! Antivirus *Disabled* {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((   Dateien erstellt von 2015-03-01 bis 2015-04-01  ))))))))))))))))))))))))))))))
.
.
2015-04-01 09:35 . 2015-04-01 09:35	--------	d-----w-	c:\users\Public\AppData\Local\temp
2015-04-01 09:35 . 2015-04-01 09:35	--------	d-----w-	c:\users\Default\AppData\Local\temp
2015-04-01 09:35 . 2015-04-01 09:35	--------	d-----w-	c:\users\Awender\AppData\Local\temp
2015-04-01 08:43 . 2015-04-01 08:43	--------	d-----w-	c:\users\Lilly\AppData\Local\YouGovPulse
2015-03-31 10:51 . 2015-03-14 10:02	12002392	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{A0CA42AD-3C2B-44CE-A214-511191B6CE17}\mpengine.dll
2015-03-31 10:35 . 2015-03-31 10:39	--------	d-----w-	c:\windows\system32\catroot2
2015-03-31 10:21 . 2015-03-31 10:21	--------	d-----w-	c:\windows\SysWow64\wbem\Performance
2015-03-31 10:08 . 2015-03-31 10:08	--------	d-----w-	C:\RegBackup
2015-03-31 09:42 . 2015-03-31 09:42	--------	d-----w-	c:\program files (x86)\Tweaking.com
2015-03-30 08:54 . 2015-03-30 11:00	--------	d-----w-	c:\programdata\Malwarebytes' Anti-Malware (portable)
2015-03-29 20:17 . 2015-03-04 14:14	364472	----a-w-	c:\windows\system32\aswBoot.exe
2015-03-29 16:02 . 2015-03-29 16:06	--------	d-----w-	C:\FRST
2015-03-29 13:45 . 2015-03-29 13:45	--------	d-----w-	C:\found.000
2015-03-29 09:39 . 2015-03-29 09:39	--------	d-----w-	c:\program files (x86)\Winamp Detect
2015-03-29 09:39 . 2015-03-29 09:50	--------	d-----w-	c:\users\Awender\AppData\Roaming\Winamp
2015-03-28 15:12 . 2015-03-30 06:08	--------	d-s---w-	c:\windows\system32\GWX
2015-03-28 15:12 . 2015-03-28 15:12	--------	d-s---w-	c:\windows\SysWow64\GWX
2015-03-28 00:39 . 2015-03-28 00:39	--------	d-----w-	c:\users\Lilly\AppData\Roaming\dvdcss
2015-03-22 07:41 . 2015-03-22 07:41	0	----a-w-	c:\windows\system32\REN4C3C.tmp
2015-03-22 07:26 . 2015-03-22 07:26	0	----a-w-	c:\windows\system32\RENF3FF.tmp
2015-03-22 07:21 . 2015-03-22 07:21	--------	d-----w-	c:\program files (x86)\Common Files\Java
2015-03-22 07:21 . 2015-03-22 07:20	98216	----a-w-	c:\windows\SysWow64\WindowsAccessBridge-32.dll
2015-03-22 07:18 . 2015-03-22 07:18	0	----a-w-	c:\windows\SysWow64\RENEAEA.tmp
2015-03-22 07:12 . 2015-03-22 07:12	--------	d-----w-	c:\windows\system32\Sun
2015-03-22 05:37 . 2015-03-22 05:36	28144	----a-w-	c:\windows\system32\drivers\aswKbd.sys
2015-03-22 05:36 . 2015-03-22 05:36	449896	----a-w-	c:\windows\system32\drivers\aswNdisFlt.sys
2015-03-22 05:13 . 2015-03-22 05:13	--------	d-----w-	c:\program files (x86)\Mozilla Thunderbird
2015-03-22 04:54 . 2015-03-22 04:54	--------	d-----w-	c:\users\Awender\AppData\Roaming\DesktopDPO-b590ce5c4fa12d0f57bf76ef54d1be94
2015-03-22 04:45 . 2015-03-22 04:51	--------	d-----w-	c:\program files (x86)\Design&Print
2015-03-22 02:00 . 2015-03-22 02:00	--------	d-----w-	c:\program files (x86)\NetRatingsNetSight
2015-03-19 19:47 . 2015-03-19 19:47	--------	d-----w-	c:\users\Awender\AppData\Local\Microsoft Corporation
2015-03-19 19:46 . 2015-03-19 19:46	--------	d-----w-	c:\program files (x86)\Microsoft Windows 7 Upgrade Advisor
2015-03-19 18:32 . 2015-03-19 18:32	--------	d-----w-	c:\program files\Recuva
2015-03-18 08:10 . 2015-03-18 08:10	--------	d-----w-	c:\windows\SysWow64\NV
2015-03-18 08:10 . 2015-03-18 08:10	--------	d-----w-	c:\windows\system32\NV
2015-03-18 08:04 . 2015-03-13 16:16	6861968	----a-w-	c:\windows\system32\nvcpl.dll
2015-03-18 08:04 . 2015-03-13 16:16	3526856	----a-w-	c:\windows\system32\nvsvc64.dll
2015-03-18 08:04 . 2015-03-13 16:16	935056	----a-w-	c:\windows\system32\nvvsvc.exe
2015-03-18 08:04 . 2015-03-13 16:16	75976	----a-w-	c:\windows\system32\nv3dappshextr.dll
2015-03-18 08:04 . 2015-03-13 16:16	62608	----a-w-	c:\windows\system32\nvshext.dll
2015-03-18 08:04 . 2015-03-13 16:16	386248	----a-w-	c:\windows\system32\nvmctray.dll
2015-03-18 08:04 . 2015-03-13 16:16	2559808	----a-w-	c:\windows\system32\nvsvcr.dll
2015-03-18 08:04 . 2015-03-13 16:16	1099408	----a-w-	c:\windows\system32\nv3dappshext.dll
2015-03-18 08:04 . 2015-03-11 13:10	4246327	----a-w-	c:\windows\system32\nvcoproc.bin
2015-03-18 08:03 . 2015-03-13 19:41	73872	----a-w-	c:\windows\system32\OpenCL.dll
2015-03-18 08:03 . 2015-03-13 19:41	60560	----a-w-	c:\windows\SysWow64\OpenCL.dll
2015-03-15 08:01 . 2015-03-30 10:05	136408	----a-w-	c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-03-15 08:00 . 2015-03-30 10:04	107736	----a-w-	c:\windows\system32\drivers\mbamchameleon.sys
2015-03-15 08:00 . 2015-03-25 08:26	--------	d-----w-	c:\program files (x86)\ Malwarebytes Anti-Malware 
2015-03-15 08:00 . 2015-03-17 05:15	63704	----a-w-	c:\windows\system32\drivers\mwac.sys
2015-03-15 08:00 . 2015-03-17 05:15	25816	----a-w-	c:\windows\system32\drivers\mbam.sys
2015-03-14 14:32 . 2015-03-14 14:32	--------	d-----w-	c:\users\Lilly\AppData\Roaming\Canneverbe Limited
2015-03-14 14:32 . 2015-03-14 14:32	--------	d-----w-	c:\programdata\Canneverbe Limited
2015-03-14 10:17 . 2015-03-14 10:25	--------	d-----w-	c:\users\Awender\AppData\Roaming\UseNeXT
2015-03-14 08:55 . 2015-04-01 08:04	--------	d-----w-	c:\users\Lilly\AppData\Roaming\UseNeXT
2015-03-14 08:55 . 2015-03-14 08:55	--------	d-----w-	c:\program files (x86)\UseNeXT
2015-03-11 09:21 . 2015-02-03 03:30	497664	----a-w-	c:\windows\system32\drmmgrtn.dll
2015-03-11 09:20 . 2015-02-03 03:31	215552	----a-w-	c:\windows\system32\ubpm.dll
2015-03-11 09:19 . 2015-02-20 02:50	66560	----a-w-	c:\windows\system32\iesetup.dll
2015-03-11 09:18 . 2015-02-04 03:16	465920	----a-w-	c:\windows\system32\WMPhoto.dll
2015-03-11 09:18 . 2015-02-04 02:54	417792	----a-w-	c:\windows\SysWow64\WMPhoto.dll
2015-03-08 18:30 . 2015-03-08 18:30	--------	d-----w-	c:\programdata\Emsisoft
2015-03-06 18:30 . 2015-03-22 05:03	--------	d-----w-	c:\programdata\Malwarebytes Anti-Exploit
2015-03-06 18:24 . 2015-03-28 10:14	--------	d-----w-	c:\program files (x86)\Emsisoft Anti-Malware
2015-03-06 18:08 . 2015-03-19 19:52	--------	d-----w-	C:\AdwCleaner
2015-03-06 11:38 . 2015-03-06 11:38	--------	d-----w-	c:\users\Lilly\AppData\Local\CDex
2015-03-04 14:14 . 2015-03-04 14:14	43112	----a-w-	c:\windows\avastSS.scr
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-03-22 07:15 . 2014-11-12 15:39	778928	----a-w-	c:\windows\SysWow64\FlashPlayerApp.exe
2015-03-22 07:15 . 2012-01-19 12:47	142512	----a-w-	c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-03-18 19:15 . 2014-11-18 21:15	893552	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\markup.dll
2015-03-18 19:15 . 2014-11-18 21:15	42168	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM-2\StartResources.dll
2015-03-18 19:15 . 2014-11-22 19:15	1236816	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2015-03-11 21:05 . 2014-11-11 07:02	122905848	----a-w-	c:\windows\system32\MRT.exe
2015-03-04 14:14 . 2015-02-11 22:18	65736	----a-w-	c:\windows\system32\drivers\aswRvrt.sys
2015-03-04 14:14 . 2015-02-11 22:18	441728	----a-w-	c:\windows\system32\drivers\aswSP.sys
2015-03-04 14:14 . 2015-02-11 22:18	268640	----a-w-	c:\windows\system32\drivers\aswVmm.sys
2015-03-04 14:14 . 2015-02-11 22:18	136752	----a-w-	c:\windows\system32\drivers\aswStm.sys
2015-03-04 14:14 . 2015-02-11 22:18	88408	----a-w-	c:\windows\system32\drivers\aswMonFlt.sys
2015-03-04 14:14 . 2015-02-11 22:18	93528	----a-w-	c:\windows\system32\drivers\aswRdr2.sys
2015-03-04 14:14 . 2015-02-11 22:18	29168	----a-w-	c:\windows\system32\drivers\aswHwid.sys
2015-03-04 14:13 . 2015-02-11 22:18	1047320	----a-w-	c:\windows\system32\drivers\aswSnx.sys
2015-03-03 19:36 . 2014-11-17 18:48	893552	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2015-03-03 19:35 . 2014-11-17 18:48	42168	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2015-02-25 19:50 . 2014-11-16 13:06	1236816	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2015-02-24 03:17 . 2010-11-21 03:27	295552	------w-	c:\windows\system32\MpSigStub.exe
2015-01-09 03:14 . 2015-02-16 10:15	91136	----a-w-	c:\windows\system32\wdi.dll
2015-01-09 03:14 . 2015-02-16 10:15	950272	----a-w-	c:\windows\system32\perftrack.dll
2015-01-09 03:14 . 2015-02-16 10:15	29696	----a-w-	c:\windows\system32\powertracker.dll
2015-01-09 02:48 . 2015-02-16 10:15	76800	----a-w-	c:\windows\SysWow64\wdi.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-03-18 5511352]
"NielsenOnline"="c:\program files (x86)\NetRatingsNetSight\NetSight\NielsenOnline.exe" [2015-01-16 91872]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"20150107"="c:\program files\AVAST Software\Avast\setup\emupdate\31de7fec-6f50-4e55-81a8-c3d34915bd4c.exe" [2015-03-29 183232]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe" [2010-11-21 73216]
.
c:\users\Lilly\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Tintenwarnungen überwachen - HP Deskjet 3050A J611 series (Netzwerk).lnk - c:\windows\system32\RunDll32.exe "c:\program files\HP\HP Deskjet 3050A J611 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN29F1FM9R05WK;CONNECTION=NW;MONITOR=1; [2009-7-14 45568]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
"EnableSecureUIAPath"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute	REG_MULTI_SZ   	autocheck autochk /p \??\j:\0autocheck autochk /p \??\g:\0autocheck autochk /p \??\F:\0autocheck autochk *
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
R2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 Secunia PSI Agent;Secunia PSI Agent;c:\program files (x86)\Secunia\PSI\PSIA.exe;c:\program files (x86)\Secunia\PSI\PSIA.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 AndNetDiag;LGE AndroidNet USB Serial Port;c:\windows\system32\DRIVERS\lgandnetdiag64.sys;c:\windows\SYSNATIVE\DRIVERS\lgandnetdiag64.sys [x]
R3 ANDNetModem;LGE AndroidNet USB Modem;c:\windows\system32\DRIVERS\lgandnetmodem64.sys;c:\windows\SYSNATIVE\DRIVERS\lgandnetmodem64.sys [x]
R3 andnetndis;LGE AndroidNet NDIS Ethernet Adapter;c:\windows\system32\DRIVERS\lgandnetndis64.sys;c:\windows\SYSNATIVE\DRIVERS\lgandnetndis64.sys [x]
R3 askGfK-Reporting-Service;askGfK-Reporting-Service;c:\program files (x86)\Digital Trends Club\askGfK-Reporting.exe;c:\program files (x86)\Digital Trends Club\askGfK-Reporting.exe [x]
R3 askGfK-Update-Service;askGfK-Update-Service;c:\program files (x86)\Digital Trends Club\askGfK-Updater.exe;c:\program files (x86)\Digital Trends Club\askGfK-Updater.exe [x]
R3 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe;c:\program files (x86)\Launch Manager\dsiwmis.exe [x]
R3 EgisTec Ticket Service;EgisTec Ticket Service;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [x]
R3 ePowerSvc;ePower Service;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe [x]
R3 GREGService;GREGService;c:\program files (x86)\Acer\Registration\GREGsvc.exe;c:\program files (x86)\Acer\Registration\GREGsvc.exe [x]
R3 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 Live Updater Service;Live Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe;c:\program files\Acer\Acer Updater\UpdaterService.exe [x]
R3 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [x]
R3 Origin Client Service;Origin Client Service;c:\program files (x86)\Origin\OriginClientService.exe;c:\program files (x86)\Origin\OriginClientService.exe [x]
R3 Point64;Microsoft Mouse and Keyboard Center Filter Driver;c:\windows\system32\DRIVERS\point64.sys;c:\windows\SYSNATIVE\DRIVERS\point64.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 Sony PC Companion;Sony PC Companion;c:\program files (x86)\Sony\Sony PC Companion\PCCService.exe;c:\program files (x86)\Sony\Sony PC Companion\PCCService.exe [x]
R3 TeamViewer9;TeamViewer 9;c:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x]
S0 aswNdisFlt;Avast! Firewall Driver;c:\windows\system32\DRIVERS\aswNdisFlt.sys;c:\windows\SYSNATIVE\DRIVERS\aswNdisFlt.sys [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x]
S0 SmartDefragDriver;SmartDefragDriver;c:\windows\System32\Drivers\SmartDefragDriver.sys;c:\windows\SYSNATIVE\Drivers\SmartDefragDriver.sys [x]
S1 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys;c:\windows\SYSNATIVE\drivers\aswKbd.sys [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDFilter.sys [x]
S1 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDNServ.sys [x]
S1 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDVDisk.sys [x]
S1 nnfwdk;Nielsen WFP Driver;c:\program files (x86)\NetRatingsNetSight\NetSight\meter1\nnfwdk64.sys;c:\program files (x86)\NetRatingsNetSight\NetSight\meter1\nnfwdk64.sys [x]
S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 avast! Firewall;Avast Firewall;c:\program files\AVAST Software\Avast\afwServ.exe;c:\program files\AVAST Software\Avast\afwServ.exe [x]
S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [x]
S2 GfExperienceService;NVIDIA GeForce Experience Service;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [x]
S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [x]
S2 MBAMService;MBAMService;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [x]
S2 NielsenUpdate;Nielsen Update;c:\program files (x86)\NetRatingsNetSight\NetSight\NielsenUpdate.exe;c:\program files (x86)\NetRatingsNetSight\NetSight\NielsenUpdate.exe [x]
S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x]
S2 Secunia Update Agent;Secunia Update Agent;c:\program files (x86)\Secunia\PSI\sua.exe;c:\program files (x86)\Secunia\PSI\sua.exe [x]
S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [x]
S2 VBoxAswDrv;VBoxAsw Support Driver;c:\program files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys;c:\program files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [x]
S3 AppObserver;Application creation observer;c:\program files (x86)\NetRatingsNetSight\NetSight\meter1\appobserver64.sys;c:\program files (x86)\NetRatingsNetSight\NetSight\meter1\appobserver64.sys [x]
S3 AvastVBoxSvc;AvastVBox COM Service;c:\program files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe;c:\program files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [x]
S3 b57xdbd;Broadcom xD Picture Bus Driver Service;c:\windows\system32\DRIVERS\b57xdbd.sys;c:\windows\SYSNATIVE\DRIVERS\b57xdbd.sys [x]
S3 b57xdmp;Broadcom xD Picture vstorp client drv;c:\windows\system32\DRIVERS\b57xdmp.sys;c:\windows\SYSNATIVE\DRIVERS\b57xdmp.sys [x]
S3 bScsiMSa;bScsiMSa;c:\windows\system32\DRIVERS\bScsiMSa.sys;c:\windows\SYSNATIVE\DRIVERS\bScsiMSa.sys [x]
S3 bScsiSDa;bScsiSDa;c:\windows\system32\DRIVERS\bScsiSDa.sys;c:\windows\SYSNATIVE\DRIVERS\bScsiSDa.sys [x]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys;c:\windows\SYSNATIVE\DRIVERS\ETD.sys [x]
S3 IntcDAud;Intel(R) Display-Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys;c:\windows\SYSNATIVE\DRIVERS\k57nd60a.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
S3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf_amd64.sys;c:\windows\SYSNATIVE\DRIVERS\psi_mf_amd64.sys [x]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftfslh.sys [x]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftplaylh.sys [x]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftredirlh.sys [x]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftvollh.sys [x]
S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [x]
.
.
--- Andere Dienste/Treiber im Speicher ---
.
*NewlyCreated* - APPOBSERVER
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-03-21 04:25	1061704	----a-w-	c:\program files (x86)\Google\Chrome\Application\41.0.2272.101\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2015-03-22 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-12 07:15]
.
2015-04-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2015-02-28 18:16]
.
2015-04-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2015-02-28 18:16]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-03-04 14:14	722400	----a-w-	c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-12-13 2531472]
"ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2014-12-13 2824504]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://acer.msn.com
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Free YouTube Download - c:\program files (x86)\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm
TCP: DhcpNameServer = 192.168.0.1 192.168.0.2
FF - ProfilePath - c:\users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
Toolbar-Locked - (no file)
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
Wow6432Node-HKLM-Run-Malwarebytes Anti-Exploit - c:\program files (x86)\Malwarebytes Anti-Exploit\mbae.exe
BHO-{10921475-03CE-4E04-90CE-E2E7EF20C814} - c:\program files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
   d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,e3,48,3c,33,15,4b,89,45,a1,63,7c,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
   d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,e3,48,3c,33,15,4b,89,45,a1,63,7c,\
.
[HKEY_LOCAL_MACHINE\software\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
   00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\System*]
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
.
[HKEY_LOCAL_MACHINE\software\NetRatingsNetSight]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
   00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,6f,00,66,00,\
.
Zeit der Fertigstellung: 2015-04-01  11:39:03
ComboFix-quarantined-files.txt  2015-04-01 09:39
.
Vor Suchlauf: 19 Verzeichnis(se), 46.950.903.808 Bytes frei
Nach Suchlauf: 22 Verzeichnis(se), 47.417.024.512 Bytes frei
.
- - End Of File - - 09B80AAB0DF612E24AAF60A9732E6B8F
         

Alt 01.04.2015, 14:51   #11
schrauber
/// the machine
/// TB-Ausbilder
 

Pc plötzlich sehr langsam - Standard

Pc plötzlich sehr langsam



Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 01.04.2015, 16:51   #12
lyncat89
 
Pc plötzlich sehr langsam - Standard

mbam und adwcleaner



Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlauf Datum: 01.04.2015
Suchlauf-Zeit: 15:01:55
Logdatei: mbab.txt
Administrator: Ja

Version: 2.01.4.1018
Malware Datenbank: v2015.04.01.07
Rootkit Datenbank: v2015.03.31.01
Lizenz: Premium
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Lilly

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 304769
Verstrichene Zeit: 12 Min, 57 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(Keine schädliche Elemente gefunden)

Module: 0
(Keine schädliche Elemente gefunden)

Registrierungsschlüssel: 0
(Keine schädliche Elemente gefunden)

Registrierungswerte: 0
(Keine schädliche Elemente gefunden)

Registrierungsdaten: 0
(Keine schädliche Elemente gefunden)

Ordner: 0
(Keine schädliche Elemente gefunden)

Dateien: 0
(Keine schädliche Elemente gefunden)

Physische Sektoren: 0
(Keine schädliche Elemente gefunden)


(end)
         
Code:
ATTFilter
# AdwCleaner v4.200 - Bericht erstellt 01/04/2015 um 16:05:26
# Aktualisiert 29/03/2015 von Xplode
# Datenbank : 2015-03-29.1 [Server]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (x64)
# Benutzername : Awender - ACER
# Gestarted von : C:\Users\Lilly\Desktop\trojanerboard\29.03\AdwCleaner_4.200.exe
# Option : Suchlauf

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Datei Gefunden : C:\Users\Lilly\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.cashcrawler.de_0.localstorage
Datei Gefunden : C:\Users\Lilly\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.cashcrawler.de_0.localstorage-journal

***** [ Geplante Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****


***** [ Internetbrowser ] *****

-\\ Internet Explorer v11.0.9600.17689


-\\ Mozilla Firefox v36.0.4 (x86 de)


-\\ Google Chrome v41.0.2272.101

[C:\Users\Lilly\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - Gefunden [Startup_URLs] : hxxp://www.cashcrawler.de/#!home/overview/news

*************************

AdwCleaner[R0].txt - [1993 Bytes] - [06/03/2015 20:08:20]
AdwCleaner[R1].txt - [2257 Bytes] - [19/03/2015 21:36:04]
AdwCleaner[R2].txt - [1260 Bytes] - [01/04/2015 16:05:26]
AdwCleaner[S0].txt - [2272 Bytes] - [19/03/2015 21:52:31]

########## EOF - \AdwCleaner\AdwCleaner[R2].txt - [1378 Bytes] ##########
         
Code:
ATTFilter
ComboFix 15-04-01.01 - Awender 01.04.2015  11:24:15.1.4 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.49.1031.18.8044.6062 [GMT 2:00]
ausgeführt von:: c:\users\Lilly\Desktop\trojanerboard\29.03\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B}
FW: avast! Antivirus *Disabled* {2F96FC65-F07D-9D1E-5A6E-3DA5C487EAF0}
SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((   Dateien erstellt von 2015-03-01 bis 2015-04-01  ))))))))))))))))))))))))))))))
.
.
2015-04-01 09:35 . 2015-04-01 09:35	--------	d-----w-	c:\users\Public\AppData\Local\temp
2015-04-01 09:35 . 2015-04-01 09:35	--------	d-----w-	c:\users\Default\AppData\Local\temp
2015-04-01 09:35 . 2015-04-01 09:35	--------	d-----w-	c:\users\Awender\AppData\Local\temp
2015-04-01 08:43 . 2015-04-01 08:43	--------	d-----w-	c:\users\Lilly\AppData\Local\YouGovPulse
2015-03-31 10:51 . 2015-03-14 10:02	12002392	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{A0CA42AD-3C2B-44CE-A214-511191B6CE17}\mpengine.dll
2015-03-31 10:35 . 2015-03-31 10:39	--------	d-----w-	c:\windows\system32\catroot2
2015-03-31 10:21 . 2015-03-31 10:21	--------	d-----w-	c:\windows\SysWow64\wbem\Performance
2015-03-31 10:08 . 2015-03-31 10:08	--------	d-----w-	C:\RegBackup
2015-03-31 09:42 . 2015-03-31 09:42	--------	d-----w-	c:\program files (x86)\Tweaking.com
2015-03-30 08:54 . 2015-03-30 11:00	--------	d-----w-	c:\programdata\Malwarebytes' Anti-Malware (portable)
2015-03-29 20:17 . 2015-03-04 14:14	364472	----a-w-	c:\windows\system32\aswBoot.exe
2015-03-29 16:02 . 2015-03-29 16:06	--------	d-----w-	C:\FRST
2015-03-29 13:45 . 2015-03-29 13:45	--------	d-----w-	C:\found.000
2015-03-29 09:39 . 2015-03-29 09:39	--------	d-----w-	c:\program files (x86)\Winamp Detect
2015-03-29 09:39 . 2015-03-29 09:50	--------	d-----w-	c:\users\Awender\AppData\Roaming\Winamp
2015-03-28 15:12 . 2015-03-30 06:08	--------	d-s---w-	c:\windows\system32\GWX
2015-03-28 15:12 . 2015-03-28 15:12	--------	d-s---w-	c:\windows\SysWow64\GWX
2015-03-28 00:39 . 2015-03-28 00:39	--------	d-----w-	c:\users\Lilly\AppData\Roaming\dvdcss
2015-03-22 07:41 . 2015-03-22 07:41	0	----a-w-	c:\windows\system32\REN4C3C.tmp
2015-03-22 07:26 . 2015-03-22 07:26	0	----a-w-	c:\windows\system32\RENF3FF.tmp
2015-03-22 07:21 . 2015-03-22 07:21	--------	d-----w-	c:\program files (x86)\Common Files\Java
2015-03-22 07:21 . 2015-03-22 07:20	98216	----a-w-	c:\windows\SysWow64\WindowsAccessBridge-32.dll
2015-03-22 07:18 . 2015-03-22 07:18	0	----a-w-	c:\windows\SysWow64\RENEAEA.tmp
2015-03-22 07:12 . 2015-03-22 07:12	--------	d-----w-	c:\windows\system32\Sun
2015-03-22 05:37 . 2015-03-22 05:36	28144	----a-w-	c:\windows\system32\drivers\aswKbd.sys
2015-03-22 05:36 . 2015-03-22 05:36	449896	----a-w-	c:\windows\system32\drivers\aswNdisFlt.sys
2015-03-22 05:13 . 2015-03-22 05:13	--------	d-----w-	c:\program files (x86)\Mozilla Thunderbird
2015-03-22 04:54 . 2015-03-22 04:54	--------	d-----w-	c:\users\Awender\AppData\Roaming\DesktopDPO-b590ce5c4fa12d0f57bf76ef54d1be94
2015-03-22 04:45 . 2015-03-22 04:51	--------	d-----w-	c:\program files (x86)\Design&Print
2015-03-22 02:00 . 2015-03-22 02:00	--------	d-----w-	c:\program files (x86)\NetRatingsNetSight
2015-03-19 19:47 . 2015-03-19 19:47	--------	d-----w-	c:\users\Awender\AppData\Local\Microsoft Corporation
2015-03-19 19:46 . 2015-03-19 19:46	--------	d-----w-	c:\program files (x86)\Microsoft Windows 7 Upgrade Advisor
2015-03-19 18:32 . 2015-03-19 18:32	--------	d-----w-	c:\program files\Recuva
2015-03-18 08:10 . 2015-03-18 08:10	--------	d-----w-	c:\windows\SysWow64\NV
2015-03-18 08:10 . 2015-03-18 08:10	--------	d-----w-	c:\windows\system32\NV
2015-03-18 08:04 . 2015-03-13 16:16	6861968	----a-w-	c:\windows\system32\nvcpl.dll
2015-03-18 08:04 . 2015-03-13 16:16	3526856	----a-w-	c:\windows\system32\nvsvc64.dll
2015-03-18 08:04 . 2015-03-13 16:16	935056	----a-w-	c:\windows\system32\nvvsvc.exe
2015-03-18 08:04 . 2015-03-13 16:16	75976	----a-w-	c:\windows\system32\nv3dappshextr.dll
2015-03-18 08:04 . 2015-03-13 16:16	62608	----a-w-	c:\windows\system32\nvshext.dll
2015-03-18 08:04 . 2015-03-13 16:16	386248	----a-w-	c:\windows\system32\nvmctray.dll
2015-03-18 08:04 . 2015-03-13 16:16	2559808	----a-w-	c:\windows\system32\nvsvcr.dll
2015-03-18 08:04 . 2015-03-13 16:16	1099408	----a-w-	c:\windows\system32\nv3dappshext.dll
2015-03-18 08:04 . 2015-03-11 13:10	4246327	----a-w-	c:\windows\system32\nvcoproc.bin
2015-03-18 08:03 . 2015-03-13 19:41	73872	----a-w-	c:\windows\system32\OpenCL.dll
2015-03-18 08:03 . 2015-03-13 19:41	60560	----a-w-	c:\windows\SysWow64\OpenCL.dll
2015-03-15 08:01 . 2015-03-30 10:05	136408	----a-w-	c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-03-15 08:00 . 2015-03-30 10:04	107736	----a-w-	c:\windows\system32\drivers\mbamchameleon.sys
2015-03-15 08:00 . 2015-03-25 08:26	--------	d-----w-	c:\program files (x86)\ Malwarebytes Anti-Malware 
2015-03-15 08:00 . 2015-03-17 05:15	63704	----a-w-	c:\windows\system32\drivers\mwac.sys
2015-03-15 08:00 . 2015-03-17 05:15	25816	----a-w-	c:\windows\system32\drivers\mbam.sys
2015-03-14 14:32 . 2015-03-14 14:32	--------	d-----w-	c:\users\Lilly\AppData\Roaming\Canneverbe Limited
2015-03-14 14:32 . 2015-03-14 14:32	--------	d-----w-	c:\programdata\Canneverbe Limited
2015-03-14 10:17 . 2015-03-14 10:25	--------	d-----w-	c:\users\Awender\AppData\Roaming\UseNeXT
2015-03-14 08:55 . 2015-04-01 08:04	--------	d-----w-	c:\users\Lilly\AppData\Roaming\UseNeXT
2015-03-14 08:55 . 2015-03-14 08:55	--------	d-----w-	c:\program files (x86)\UseNeXT
2015-03-11 09:21 . 2015-02-03 03:30	497664	----a-w-	c:\windows\system32\drmmgrtn.dll
2015-03-11 09:20 . 2015-02-03 03:31	215552	----a-w-	c:\windows\system32\ubpm.dll
2015-03-11 09:19 . 2015-02-20 02:50	66560	----a-w-	c:\windows\system32\iesetup.dll
2015-03-11 09:18 . 2015-02-04 03:16	465920	----a-w-	c:\windows\system32\WMPhoto.dll
2015-03-11 09:18 . 2015-02-04 02:54	417792	----a-w-	c:\windows\SysWow64\WMPhoto.dll
2015-03-08 18:30 . 2015-03-08 18:30	--------	d-----w-	c:\programdata\Emsisoft
2015-03-06 18:30 . 2015-03-22 05:03	--------	d-----w-	c:\programdata\Malwarebytes Anti-Exploit
2015-03-06 18:24 . 2015-03-28 10:14	--------	d-----w-	c:\program files (x86)\Emsisoft Anti-Malware
2015-03-06 18:08 . 2015-03-19 19:52	--------	d-----w-	C:\AdwCleaner
2015-03-06 11:38 . 2015-03-06 11:38	--------	d-----w-	c:\users\Lilly\AppData\Local\CDex
2015-03-04 14:14 . 2015-03-04 14:14	43112	----a-w-	c:\windows\avastSS.scr
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-03-22 07:15 . 2014-11-12 15:39	778928	----a-w-	c:\windows\SysWow64\FlashPlayerApp.exe
2015-03-22 07:15 . 2012-01-19 12:47	142512	----a-w-	c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-03-18 19:15 . 2014-11-18 21:15	893552	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\markup.dll
2015-03-18 19:15 . 2014-11-18 21:15	42168	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM-2\StartResources.dll
2015-03-18 19:15 . 2014-11-22 19:15	1236816	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2015-03-11 21:05 . 2014-11-11 07:02	122905848	----a-w-	c:\windows\system32\MRT.exe
2015-03-04 14:14 . 2015-02-11 22:18	65736	----a-w-	c:\windows\system32\drivers\aswRvrt.sys
2015-03-04 14:14 . 2015-02-11 22:18	441728	----a-w-	c:\windows\system32\drivers\aswSP.sys
2015-03-04 14:14 . 2015-02-11 22:18	268640	----a-w-	c:\windows\system32\drivers\aswVmm.sys
2015-03-04 14:14 . 2015-02-11 22:18	136752	----a-w-	c:\windows\system32\drivers\aswStm.sys
2015-03-04 14:14 . 2015-02-11 22:18	88408	----a-w-	c:\windows\system32\drivers\aswMonFlt.sys
2015-03-04 14:14 . 2015-02-11 22:18	93528	----a-w-	c:\windows\system32\drivers\aswRdr2.sys
2015-03-04 14:14 . 2015-02-11 22:18	29168	----a-w-	c:\windows\system32\drivers\aswHwid.sys
2015-03-04 14:13 . 2015-02-11 22:18	1047320	----a-w-	c:\windows\system32\drivers\aswSnx.sys
2015-03-03 19:36 . 2014-11-17 18:48	893552	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2015-03-03 19:35 . 2014-11-17 18:48	42168	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2015-02-25 19:50 . 2014-11-16 13:06	1236816	----a-w-	c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2015-02-24 03:17 . 2010-11-21 03:27	295552	------w-	c:\windows\system32\MpSigStub.exe
2015-01-09 03:14 . 2015-02-16 10:15	91136	----a-w-	c:\windows\system32\wdi.dll
2015-01-09 03:14 . 2015-02-16 10:15	950272	----a-w-	c:\windows\system32\perftrack.dll
2015-01-09 03:14 . 2015-02-16 10:15	29696	----a-w-	c:\windows\system32\powertracker.dll
2015-01-09 02:48 . 2015-02-16 10:15	76800	----a-w-	c:\windows\SysWow64\wdi.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-03-18 5511352]
"NielsenOnline"="c:\program files (x86)\NetRatingsNetSight\NetSight\NielsenOnline.exe" [2015-01-16 91872]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\RunOnce]
"20150107"="c:\program files\AVAST Software\Avast\setup\emupdate\31de7fec-6f50-4e55-81a8-c3d34915bd4c.exe" [2015-03-29 183232]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"IsMyWinLockerReboot"="msiexec.exe" [2010-11-21 73216]
.
c:\users\Lilly\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Tintenwarnungen überwachen - HP Deskjet 3050A J611 series (Netzwerk).lnk - c:\windows\system32\RunDll32.exe "c:\program files\HP\HP Deskjet 3050A J611 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN29F1FM9R05WK;CONNECTION=NW;MONITOR=1; [2009-7-14 45568]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"SoftwareSASGeneration"= 1 (0x1)
"EnableSecureUIAPath"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute	REG_MULTI_SZ   	autocheck autochk /p \??\j:\0autocheck autochk /p \??\g:\0autocheck autochk /p \??\F:\0autocheck autochk *
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
R2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 Secunia PSI Agent;Secunia PSI Agent;c:\program files (x86)\Secunia\PSI\PSIA.exe;c:\program files (x86)\Secunia\PSI\PSIA.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 AndNetDiag;LGE AndroidNet USB Serial Port;c:\windows\system32\DRIVERS\lgandnetdiag64.sys;c:\windows\SYSNATIVE\DRIVERS\lgandnetdiag64.sys [x]
R3 ANDNetModem;LGE AndroidNet USB Modem;c:\windows\system32\DRIVERS\lgandnetmodem64.sys;c:\windows\SYSNATIVE\DRIVERS\lgandnetmodem64.sys [x]
R3 andnetndis;LGE AndroidNet NDIS Ethernet Adapter;c:\windows\system32\DRIVERS\lgandnetndis64.sys;c:\windows\SYSNATIVE\DRIVERS\lgandnetndis64.sys [x]
R3 askGfK-Reporting-Service;askGfK-Reporting-Service;c:\program files (x86)\Digital Trends Club\askGfK-Reporting.exe;c:\program files (x86)\Digital Trends Club\askGfK-Reporting.exe [x]
R3 askGfK-Update-Service;askGfK-Update-Service;c:\program files (x86)\Digital Trends Club\askGfK-Updater.exe;c:\program files (x86)\Digital Trends Club\askGfK-Updater.exe [x]
R3 DsiWMIService;Dritek WMI Service;c:\program files (x86)\Launch Manager\dsiwmis.exe;c:\program files (x86)\Launch Manager\dsiwmis.exe [x]
R3 EgisTec Ticket Service;EgisTec Ticket Service;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe;c:\program files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe [x]
R3 ePowerSvc;ePower Service;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe;c:\program files\Acer\Acer ePower Management\ePowerSvc.exe [x]
R3 GREGService;GREGService;c:\program files (x86)\Acer\Registration\GREGsvc.exe;c:\program files (x86)\Acer\Registration\GREGsvc.exe [x]
R3 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 Live Updater Service;Live Updater Service;c:\program files\Acer\Acer Updater\UpdaterService.exe;c:\program files\Acer\Acer Updater\UpdaterService.exe [x]
R3 NTI IScheduleSvc;NTI IScheduleSvc;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe;c:\program files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [x]
R3 Origin Client Service;Origin Client Service;c:\program files (x86)\Origin\OriginClientService.exe;c:\program files (x86)\Origin\OriginClientService.exe [x]
R3 Point64;Microsoft Mouse and Keyboard Center Filter Driver;c:\windows\system32\DRIVERS\point64.sys;c:\windows\SYSNATIVE\DRIVERS\point64.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 Sony PC Companion;Sony PC Companion;c:\program files (x86)\Sony\Sony PC Companion\PCCService.exe;c:\program files (x86)\Sony\Sony PC Companion\PCCService.exe [x]
R3 TeamViewer9;TeamViewer 9;c:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x]
S0 aswNdisFlt;Avast! Firewall Driver;c:\windows\system32\DRIVERS\aswNdisFlt.sys;c:\windows\SYSNATIVE\DRIVERS\aswNdisFlt.sys [x]
S0 aswRvrt;avast! Revert; [x]
S0 aswVmm;avast! VM Monitor; [x]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x]
S0 SmartDefragDriver;SmartDefragDriver;c:\windows\System32\Drivers\SmartDefragDriver.sys;c:\windows\SYSNATIVE\Drivers\SmartDefragDriver.sys [x]
S1 aswKbd;aswKbd;c:\windows\system32\drivers\aswKbd.sys;c:\windows\SYSNATIVE\drivers\aswKbd.sys [x]
S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x]
S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x]
S1 mwlPSDFilter;mwlPSDFilter;c:\windows\system32\DRIVERS\mwlPSDFilter.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDFilter.sys [x]
S1 mwlPSDNServ;mwlPSDNServ;c:\windows\system32\DRIVERS\mwlPSDNServ.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDNServ.sys [x]
S1 mwlPSDVDisk;mwlPSDVDisk;c:\windows\system32\DRIVERS\mwlPSDVDisk.sys;c:\windows\SYSNATIVE\DRIVERS\mwlPSDVDisk.sys [x]
S1 nnfwdk;Nielsen WFP Driver;c:\program files (x86)\NetRatingsNetSight\NetSight\meter1\nnfwdk64.sys;c:\program files (x86)\NetRatingsNetSight\NetSight\meter1\nnfwdk64.sys [x]
S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 avast! Firewall;Avast Firewall;c:\program files\AVAST Software\Avast\afwServ.exe;c:\program files\AVAST Software\Avast\afwServ.exe [x]
S2 cvhsvc;Client Virtualization Handler;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE;c:\program files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE [x]
S2 GfExperienceService;NVIDIA GeForce Experience Service;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [x]
S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [x]
S2 MBAMService;MBAMService;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [x]
S2 NielsenUpdate;Nielsen Update;c:\program files (x86)\NetRatingsNetSight\NetSight\NielsenUpdate.exe;c:\program files (x86)\NetRatingsNetSight\NetSight\NielsenUpdate.exe [x]
S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [x]
S2 Secunia Update Agent;Secunia Update Agent;c:\program files (x86)\Secunia\PSI\sua.exe;c:\program files (x86)\Secunia\PSI\sua.exe [x]
S2 sftlist;Application Virtualization Client;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftlist.exe [x]
S2 VBoxAswDrv;VBoxAsw Support Driver;c:\program files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys;c:\program files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [x]
S3 AppObserver;Application creation observer;c:\program files (x86)\NetRatingsNetSight\NetSight\meter1\appobserver64.sys;c:\program files (x86)\NetRatingsNetSight\NetSight\meter1\appobserver64.sys [x]
S3 AvastVBoxSvc;AvastVBox COM Service;c:\program files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe;c:\program files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [x]
S3 b57xdbd;Broadcom xD Picture Bus Driver Service;c:\windows\system32\DRIVERS\b57xdbd.sys;c:\windows\SYSNATIVE\DRIVERS\b57xdbd.sys [x]
S3 b57xdmp;Broadcom xD Picture vstorp client drv;c:\windows\system32\DRIVERS\b57xdmp.sys;c:\windows\SYSNATIVE\DRIVERS\b57xdmp.sys [x]
S3 bScsiMSa;bScsiMSa;c:\windows\system32\DRIVERS\bScsiMSa.sys;c:\windows\SYSNATIVE\DRIVERS\bScsiMSa.sys [x]
S3 bScsiSDa;bScsiSDa;c:\windows\system32\DRIVERS\bScsiSDa.sys;c:\windows\SYSNATIVE\DRIVERS\bScsiSDa.sys [x]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys;c:\windows\SYSNATIVE\DRIVERS\ETD.sys [x]
S3 IntcDAud;Intel(R) Display-Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 k57nd60a;Broadcom NetLink (TM) Gigabit Ethernet - NDIS 6.0;c:\windows\system32\DRIVERS\k57nd60a.sys;c:\windows\SYSNATIVE\DRIVERS\k57nd60a.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
S3 PSI;PSI;c:\windows\system32\DRIVERS\psi_mf_amd64.sys;c:\windows\SYSNATIVE\DRIVERS\psi_mf_amd64.sys [x]
S3 Sftfs;Sftfs;c:\windows\system32\DRIVERS\Sftfslh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftfslh.sys [x]
S3 Sftplay;Sftplay;c:\windows\system32\DRIVERS\Sftplaylh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftplaylh.sys [x]
S3 Sftredir;Sftredir;c:\windows\system32\DRIVERS\Sftredirlh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftredirlh.sys [x]
S3 Sftvol;Sftvol;c:\windows\system32\DRIVERS\Sftvollh.sys;c:\windows\SYSNATIVE\DRIVERS\Sftvollh.sys [x]
S3 sftvsa;Application Virtualization Service Agent;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe;c:\program files (x86)\Microsoft Application Virtualization Client\sftvsa.exe [x]
.
.
--- Andere Dienste/Treiber im Speicher ---
.
*NewlyCreated* - APPOBSERVER
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-03-21 04:25	1061704	----a-w-	c:\program files (x86)\Google\Chrome\Application\41.0.2272.101\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2015-03-22 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-12 07:15]
.
2015-04-01 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2015-02-28 18:16]
.
2015-04-01 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2015-02-28 18:16]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2015-03-04 14:14	722400	----a-w-	c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-12-13 2531472]
"ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2014-12-13 2824504]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://acer.msn.com
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: Free YouTube Download - c:\program files (x86)\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm
TCP: DhcpNameServer = 192.168.0.1 192.168.0.2
FF - ProfilePath - c:\users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
Toolbar-Locked - (no file)
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
Wow6432Node-HKLM-Run-Malwarebytes Anti-Exploit - c:\program files (x86)\Malwarebytes Anti-Exploit\mbae.exe
BHO-{10921475-03CE-4E04-90CE-E2E7EF20C814} - c:\program files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (LocalSystem)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
   d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,e3,48,3c,33,15,4b,89,45,a1,63,7c,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
   d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,e3,48,3c,33,15,4b,89,45,a1,63,7c,\
.
[HKEY_LOCAL_MACHINE\software\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
   00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows\CurrentVersion\System*]
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
.
[HKEY_LOCAL_MACHINE\software\NetRatingsNetSight]
"SymbolicLinkValue"=hex(6):5c,00,52,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
   00,5c,00,4d,00,41,00,43,00,48,00,49,00,4e,00,45,00,5c,00,53,00,6f,00,66,00,\
.
Zeit der Fertigstellung: 2015-04-01  11:39:03
ComboFix-quarantined-files.txt  2015-04-01 09:39
.
Vor Suchlauf: 19 Verzeichnis(se), 46.950.903.808 Bytes frei
Nach Suchlauf: 22 Verzeichnis(se), 47.417.024.512 Bytes frei
.
- - End Of File - - 09B80AAB0DF612E24AAF60A9732E6B8F
         

FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-03-2015
Ran by Awender (administrator) on ACER on 01-04-2015 16:40:08
Running from C:\Users\Lilly\Desktop\trojanerboard\29.03
Loaded Profiles: Awender & Lilly (Available profiles: Awender & Lilly)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\afwServ.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Wakoopa) C:\Users\Lilly\AppData\Local\EntscheiderClub Premium\EntscheiderClub Premium.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe
(CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
(The Nielsen Company) C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenUpdate.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Ruiware LLC) C:\Program Files (x86)\Ruiware\WinPatrol\WinPatrol.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Wakoopa) C:\Users\Lilly\AppData\Local\YouGovPulse\YouGovPulse.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(The Nielsen Company) C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenOnline.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(The Nielsen Company) C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenOnline.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPNetworkCommunicatorCom.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(The Nielsen Company) C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\NielsenOnline64.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Farbar) C:\Users\Lilly\Desktop\trojanerboard\29.03\FRST64 (1).exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Egis Technology Inc.) C:\Program Files\EgisTec IPS\PmmUpdate.exe
(Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2531472 2014-12-13] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5511352 2015-03-18] (Avast Software s.r.o.)
HKLM-x32\...\Run: [NielsenOnline] => C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenOnline.exe [91872 2015-01-16] (The Nielsen Company)
HKLM-x32\...\RunOnce: [20150107] => C:\Program Files\AVAST Software\Avast\setup\emupdate\31de7fec-6f50-4e55-81a8-c3d34915bd4c.exe [183232 2015-03-29] (AVAST Software)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3596086338-499352715-315314885-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\System32\Acer.scr [450048 2011-09-13] ()
HKU\S-1-5-21-3596086338-499352715-315314885-1004\...\Run: [EntscheiderClub Premium] => C:\Users\Lilly\AppData\Local\EntscheiderClub Premium\EntscheiderClub Premium.exe [1121264 2015-01-29] (Wakoopa)
HKU\S-1-5-21-3596086338-499352715-315314885-1004\...\Run: [WinPatrol] => C:\Program Files (x86)\Ruiware\WinPatrol\winpatrol.exe [1160536 2015-02-23] (Ruiware LLC)
HKU\S-1-5-21-3596086338-499352715-315314885-1004\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd)
HKU\S-1-5-21-3596086338-499352715-315314885-1004\...\Run: [YouGovPulse] => C:\Users\Lilly\AppData\Local\YouGovPulse\YouGovPulse.exe [1092592 2015-01-20] (Wakoopa)
HKU\S-1-5-21-3596086338-499352715-315314885-1004\...\MountPoints2: {c7ceb42c-90d4-11e4-b9ab-dc0ea15b18ad} - E:\setup.exe -a
HKU\S-1-5-18\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}
AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [178512 2015-03-13] (NVIDIA Corporation)
AppInit_DLLs: ,C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [178512 2015-03-13] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [164568 2015-03-13] (NVIDIA Corporation)
Startup: C:\Users\Lilly\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tintenwarnungen überwachen - HP Deskjet 3050A J611 series (Netzwerk).lnk
ShortcutTarget: Tintenwarnungen überwachen - HP Deskjet 3050A J611 series (Netzwerk).lnk -> C:\Program Files\HP\HP Deskjet 3050A J611 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (Avast Software s.r.o.)
BootExecute: autocheck autochk /p \??\J:autocheck autochk /p \??\G:autocheck autochk /p \??\F:autocheck autochk * 

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3596086338-499352715-315314885-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-3596086338-499352715-315314885-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer.msn.com
HKU\S-1-5-21-3596086338-499352715-315314885-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-3596086338-499352715-315314885-1004\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/de-de/?ocid=iehp
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-3596086338-499352715-315314885-1004 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-3596086338-499352715-315314885-1004 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll No File
BHO: Digital Trends Club -> {4BEEA052-726D-4A6E-B65D-A6BD07C263F3} -> C:\Program Files (x86)\Digital Trends Club\x64\Gacela2.dll [2014-09-18] (askGfK)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll [2015-02-02] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-03-04] (Avast Software s.r.o.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-02] (Oracle Corporation)
BHO-x32: Digital Trends Club -> {4BEEA052-726D-4A6E-B65D-A6BD07C263F3} -> C:\Program Files (x86)\Digital Trends Club\Gacela2.dll [2014-09-18] (askGfK)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\ssv.dll [2015-03-22] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-03-04] (Avast Software s.r.o.)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-03-22] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.2

FireFox:
========
FF ProfilePath: C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_134.dll [2015-03-22] ()
FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-02-02] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-02] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-22] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1216156.dll [2015-01-09] (Adobe Systems, Inc.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2014-08-13] (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-03-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files (x86)\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-03-22] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-14] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-14] (Microsoft Corporation)
FF Plugin-x32: @nielsen/FirefoxTracker -> C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\FirefoxAddOns\npfirefoxtracker.dll [2015-04-01] (Nielsen)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npwachk.dll [2010-12-08] (Nullsoft, Inc.)
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\iobitascsurfingprotection@iobit.com [2015-02-18]
FF Extension: YouTube Unblocker - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\youtubeunblocker@unblocker.yt [2015-01-16]
FF Extension: Flash and Video Download - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a} [2015-02-28]
FF Extension: Adblock Plus Pop-up Addon - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\adblockpopups@jessehakanen.net.xpi [2015-01-16]
FF Extension: Facebook Ads Block - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\jid1-CGxMej0nDJTjwQ@jetpack.xpi [2015-01-16]
FF Extension: AdBlock Lite - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\jid1-dwtFBkQjb3SIQp@jetpack.xpi [2015-01-16]
FF Extension: SSL Version Control - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\jid1-ZM3BerwS6FsQAg@jetpack.xpi [2015-01-16]
FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\{B64D9B05-48E1-4CEB-BF58-E0643994E900}.xpi [2015-02-19]
FF Extension: YouTube Flash Video Player - C:\Users\Awender\AppData\Roaming\Mozilla\Firefox\Profiles\mswvned3.default\Extensions\{f3bd3dd2-2888-44c5-91a2-2caeb33fb898}.xpi [2015-01-16]
FF HKLM-x32\...\Firefox\Extensions: [gacela2@nurago.com] - C:\Program Files (x86)\Digital Trends Club\FirefoxAddon.xpi
FF Extension: No Name - C:\Program Files (x86)\Digital Trends Club\FirefoxAddon.xpi [2014-12-03]
FF HKLM-x32\...\Firefox\Extensions: [{ABDE892B-13A8-4d1b-88E6-365A6E755758}] - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-02-12]
FF HKLM-x32\...\Firefox\Extensions: [netsight@nielsen.com] - C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\FirefoxAddOns\netsight@nielsen.xpi
FF Extension: No Name - C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\FirefoxAddOns\netsight@nielsen.xpi [2015-04-01]

Chrome: 
=======
CHR Profile: C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Nielsen) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\amebgbgmoldiehbbbjcaoceilcfnniop [2015-03-31]
CHR Extension: (Google Docs) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-01]
CHR Extension: (Google Drive) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-01]
CHR Extension: (YouTube) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-01]
CHR Extension: (Google Search) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-01]
CHR Extension: (Google Sheets) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-01]
CHR Extension: (Avast Online Security) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-03-01]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-19]
CHR Extension: (Google Wallet) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-19]
CHR Extension: (Gmail) - C:\Users\Awender\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-01]
CHR HKLM-x32\...\Chrome\Extension: [amebgbgmoldiehbbbjcaoceilcfnniop] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-03-04]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 askGfK-Reporting-Service; C:\Program Files (x86)\Digital Trends Club\askGfK-Reporting.exe [3292288 2014-09-18] ()
S3 askGfK-Update-Service; C:\Program Files (x86)\Digital Trends Club\askGfK-Updater.exe [1357952 2014-09-18] ()
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-03-04] (Avast Software s.r.o.)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [107448 2015-03-22] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4030800 2015-03-04] (Avast Software)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148560 2014-12-13] (NVIDIA Corporation)
S2 HPSLPSVC; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S2 HPSLPSVC; C:\Windows\SysWOW64\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-03-17] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-03-17] (Malwarebytes Corporation)
R2 NielsenUpdate; C:\Program Files (x86)\NetRatingsNetSight\NetSight\NielsenUpdate.exe [2934496 2015-01-16] (The Nielsen Company)
S3 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832 2011-04-24] (NTI Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1701520 2014-12-13] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19823248 2014-12-13] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1930608 2015-03-09] (Electronic Arts)
S2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1363160 2014-11-28] (Secunia)
R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [765144 2014-11-28] (Secunia)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AndNetDiag; C:\Windows\System32\DRIVERS\lgandnetdiag64.sys [29184 2014-07-07] (LG Electronics Inc.)
S3 ANDNetModem; C:\Windows\System32\DRIVERS\lgandnetmodem64.sys [36352 2014-07-07] (LG Electronics Inc.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R3 AppObserver; C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\appobserver64.sys [15584 2015-01-16] (The Nielsen Company)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-03-04] ()
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28144 2015-03-22] (Avast Software s.r.o.)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [88408 2015-03-04] (Avast Software s.r.o.)
R0 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [449896 2015-03-22] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-03-04] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-03-04] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-03-04] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [441728 2015-03-04] (Avast Software s.r.o.)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [136752 2015-03-04] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [268640 2015-03-04] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-03-17] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-03-17] (Malwarebytes Corporation)
R1 nnfwdk; C:\Program Files (x86)\NetRatingsNetSight\NetSight\meter1\nnfwdk64.sys [26848 2015-01-16] (The Nielsen Company)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2014-12-13] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2014-11-28] (Secunia)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21184 2014-06-04] (IObit)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-03-04] (Avast Software)
S3 andnetndis; system32\DRIVERS\lgandnetndis64.sys [X]
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
U3 DfSdkS; No ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-01 16:25 - 2015-04-01 16:25 - 00001096 _____ () C:\Users\Awender\Desktop\JRT.txt
2015-04-01 11:39 - 2015-04-01 11:39 - 00027054 _____ () C:\ComboFix.txt
2015-04-01 11:20 - 2015-04-01 11:39 - 00000000 ____D () C:\Qoobox
2015-04-01 11:20 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-04-01 11:20 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-04-01 11:20 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-04-01 11:20 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-04-01 11:20 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-04-01 11:20 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2015-04-01 11:20 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2015-04-01 11:20 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2015-04-01 10:43 - 2015-04-01 10:43 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\YouGovPulse
2015-04-01 10:43 - 2015-04-01 10:43 - 00000000 ____D () C:\Users\Lilly\AppData\Local\YouGovPulse
2015-03-31 12:08 - 2015-03-31 12:08 - 00000207 _____ () C:\Windows\tweaking.com-regbackup-ACER-Windows-7-Home-Premium-(64-bit).dat
2015-03-31 12:08 - 2015-03-31 12:08 - 00000000 ____D () C:\RegBackup
2015-03-31 11:42 - 2015-03-31 11:42 - 00002123 _____ () C:\Users\Awender\Desktop\Tweaking.com - Windows Repair (All in One).lnk
2015-03-31 11:42 - 2015-03-31 11:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com
2015-03-31 11:42 - 2015-03-31 11:42 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com
2015-03-30 10:54 - 2015-03-30 13:00 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-03-30 10:50 - 2015-03-30 13:00 - 00000000 ____D () C:\Users\Awender\Desktop\mbar
2015-03-29 22:17 - 2015-03-04 16:14 - 00364472 _____ (Avast Software s.r.o.) C:\Windows\system32\aswBoot.exe
2015-03-29 21:29 - 2015-03-29 21:29 - 00038749 _____ () C:\Users\Lilly\Desktop\HipHop 04-15.m3u
2015-03-29 20:58 - 2015-03-29 21:28 - 00384064 _____ () C:\Users\Lilly\Desktop\Gothic 04-15.m3u
2015-03-29 18:02 - 2015-04-01 16:40 - 00000000 ____D () C:\FRST
2015-03-29 16:17 - 2015-03-29 16:17 - 00001986 _____ () C:\Users\Public\Desktop\Avast SafeZone.lnk
2015-03-29 16:17 - 2015-03-29 16:17 - 00001926 _____ () C:\Users\Public\Desktop\Avast Internet Security.lnk
2015-03-29 15:45 - 2015-03-29 15:45 - 00000000 ____D () C:\found.000
2015-03-29 11:48 - 2015-03-29 11:48 - 00002938 _____ () C:\Windows\System32\Tasks\{A29ADD1C-3329-4467-99E8-2AB1D016AB6B}
2015-03-29 11:47 - 2015-03-29 11:47 - 00002938 _____ () C:\Windows\System32\Tasks\{AEE84B01-2B0C-471C-B9A7-DB7F24DBC6C4}
2015-03-29 11:47 - 2015-03-29 11:47 - 00002938 _____ () C:\Windows\System32\Tasks\{1AC5CDA9-0B60-4467-8051-FC86187055A0}
2015-03-29 11:39 - 2015-03-29 11:50 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\Winamp
2015-03-29 11:39 - 2015-03-29 11:39 - 00000943 _____ () C:\Users\Public\Desktop\Winamp.lnk
2015-03-29 11:39 - 2015-03-29 11:39 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp Erkennungs-Plug-in
2015-03-29 11:39 - 2015-03-29 11:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp
2015-03-29 11:39 - 2015-03-29 11:39 - 00000000 ____D () C:\Program Files (x86)\Winamp Detect
2015-03-28 17:12 - 2015-03-30 08:08 - 00000000 ___SD () C:\Windows\system32\GWX
2015-03-28 17:12 - 2015-03-28 17:12 - 00000000 ___SD () C:\Windows\SysWOW64\GWX
2015-03-28 02:39 - 2015-03-28 02:39 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\dvdcss
2015-03-26 18:18 - 2015-03-26 18:18 - 00083516 _____ () C:\Users\Lilly\Downloads\ixquick-2.0.5.crx
2015-03-26 18:08 - 2015-03-26 18:08 - 00000000 ____D () C:\Users\Lilly\Desktop\Alte Firefox-Daten
2015-03-25 10:26 - 2015-03-25 10:26 - 00001066 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-03-22 09:41 - 2015-03-22 09:41 - 00000000 _____ () C:\Windows\system32\REN4C3C.tmp
2015-03-22 09:26 - 2015-03-22 09:26 - 00000000 _____ () C:\Windows\system32\RENF3FF.tmp
2015-03-22 09:21 - 2015-03-22 09:20 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-03-22 09:18 - 2015-03-22 09:18 - 00000000 _____ () C:\Windows\SysWOW64\RENEAEA.tmp
2015-03-22 09:12 - 2015-03-22 09:12 - 00000000 ____D () C:\Windows\system32\Sun
2015-03-22 07:38 - 2015-03-22 07:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-03-22 07:37 - 2015-03-22 07:36 - 00028144 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswKbd.sys
2015-03-22 07:36 - 2015-03-22 07:36 - 00449896 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswNdisFlt.sys
2015-03-22 07:13 - 2015-03-22 07:13 - 00002062 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2015-03-22 07:13 - 2015-03-22 07:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2015-03-22 06:54 - 2015-03-22 06:54 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\DesktopDPO-b590ce5c4fa12d0f57bf76ef54d1be94
2015-03-22 06:53 - 2015-03-22 06:53 - 28746736 _____ (Mozilla) C:\Users\Lilly\Downloads\Thunderbird Setup 31.5.0.exe
2015-03-22 06:51 - 2015-03-22 06:51 - 00001883 _____ () C:\Users\Public\Desktop\Design&Print.lnk
2015-03-22 06:51 - 2015-03-22 06:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avery Zweckform
2015-03-22 06:45 - 2015-03-22 06:51 - 00000000 ____D () C:\Program Files (x86)\Design&Print
2015-03-22 06:42 - 2015-03-22 06:44 - 361086384 _____ (Avery Zweckform) C:\Users\Lilly\Downloads\DesignPrintDE-1.0.5.exe
2015-03-22 04:08 - 2015-03-22 04:08 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_nnfwdk64_01009.Wdf
2015-03-22 04:00 - 2015-03-22 04:02 - 00000890 _____ () C:\nsinst.log
2015-03-22 04:00 - 2015-03-22 04:00 - 00000000 ____D () C:\Program Files (x86)\NetRatingsNetSight
2015-03-22 03:59 - 2015-03-22 03:59 - 02790600 _____ (The Nielsen Company) C:\Users\Lilly\Downloads\netsight_setup_6.2.0.22_MP_Production_mid51086821543_p.exe
2015-03-21 22:49 - 2015-03-29 10:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-03-19 21:47 - 2015-03-19 21:47 - 00000000 ____D () C:\Users\Awender\AppData\Local\Microsoft Corporation
2015-03-19 21:46 - 2015-03-19 21:46 - 00002091 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows 7 Upgrade Advisor.lnk
2015-03-19 21:46 - 2015-03-19 21:46 - 00002079 _____ () C:\Users\Public\Desktop\Windows 7 Upgrade Advisor.lnk
2015-03-19 21:46 - 2015-03-19 21:46 - 00000000 ____D () C:\Program Files (x86)\Microsoft Windows 7 Upgrade Advisor
2015-03-19 21:43 - 2015-03-19 21:43 - 08676128 _____ (Microsoft Corporation) C:\Users\Lilly\Downloads\Windows7UpgradeAdvisorSetup.exe
2015-03-19 21:35 - 2015-03-19 21:35 - 02171392 _____ () C:\Users\Lilly\Downloads\AdwCleaner_4.112.exe
2015-03-19 20:32 - 2015-03-19 20:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva
2015-03-19 20:32 - 2015-03-19 20:32 - 00000000 ____D () C:\Program Files\Recuva
2015-03-18 10:10 - 2015-03-18 10:10 - 00000000 ____D () C:\Windows\SysWOW64\NV
2015-03-18 10:10 - 2015-03-18 10:10 - 00000000 ____D () C:\Windows\system32\NV
2015-03-18 10:04 - 2015-03-13 18:16 - 06861968 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-03-18 10:04 - 2015-03-13 18:16 - 03526856 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-03-18 10:04 - 2015-03-13 18:16 - 02559808 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-03-18 10:04 - 2015-03-13 18:16 - 01099408 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2015-03-18 10:04 - 2015-03-13 18:16 - 00935056 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-03-18 10:04 - 2015-03-13 18:16 - 00386248 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-03-18 10:04 - 2015-03-13 18:16 - 00075976 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2015-03-18 10:04 - 2015-03-13 18:16 - 00062608 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-03-18 10:04 - 2015-03-11 15:10 - 04246327 _____ () C:\Windows\system32\nvcoproc.bin
2015-03-18 10:03 - 2015-03-13 21:41 - 00073872 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-03-18 10:03 - 2015-03-13 21:41 - 00060560 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 32114888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 25460880 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 24775368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 20466376 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 18580512 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 17258024 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 16022016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 14121624 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 13297144 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 13210080 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 10775080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 10715864 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 10262160 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-03-18 09:43 - 2015-03-13 21:41 - 03611792 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 03303448 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 03249352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 02906928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 01896136 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434788.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 01557648 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434788.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00997856 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00970384 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00944784 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00930448 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00909512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00878328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00354112 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00306208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00178512 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00164568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-03-18 09:43 - 2015-03-13 21:41 - 00032456 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys
2015-03-18 09:43 - 2015-03-13 21:41 - 00027441 _____ () C:\Windows\system32\nvinfo.pb
2015-03-15 22:08 - 2015-03-20 19:32 - 00000000 ____D () C:\Users\Lilly\Desktop\bilder
2015-03-15 10:01 - 2015-03-30 12:05 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-03-15 10:00 - 2015-03-30 12:04 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-03-15 10:00 - 2015-03-25 10:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-03-15 10:00 - 2015-03-25 10:26 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2015-03-15 10:00 - 2015-03-17 07:15 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-03-15 10:00 - 2015-03-17 07:15 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-03-15 06:52 - 2015-03-15 06:52 - 00000000 ____D () C:\Users\Lilly\AppData\Local\{AC48AE74-4297-4DCD-AD4D-1BA3F788EA99}
2015-03-14 22:25 - 2015-03-14 22:25 - 00057043 _____ () C:\Users\Lilly\Desktop\Playlist Intenso alt.m3u
2015-03-14 16:32 - 2015-03-14 16:32 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\Canneverbe Limited
2015-03-14 16:32 - 2015-03-14 16:32 - 00000000 ____D () C:\ProgramData\Canneverbe Limited
2015-03-14 12:17 - 2015-03-14 12:25 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\UseNeXT
2015-03-14 12:17 - 2015-03-14 12:17 - 00000000 ____D () C:\Users\Awender\Documents\UseNeXT
2015-03-14 11:01 - 2015-04-01 09:59 - 00000000 ____D () C:\Users\Lilly\Desktop\Usenext
2015-03-14 10:55 - 2015-04-01 10:04 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\UseNeXT
2015-03-14 10:55 - 2015-03-14 10:55 - 00001821 _____ () C:\Users\Awender\Desktop\UseNeXT by Tangysoft.lnk
2015-03-14 10:55 - 2015-03-14 10:55 - 00000000 ____D () C:\Users\Lilly\Documents\UseNeXT
2015-03-14 10:55 - 2015-03-14 10:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UseNeXT
2015-03-14 10:55 - 2015-03-14 10:55 - 00000000 ____D () C:\Program Files (x86)\UseNeXT
2015-03-13 20:09 - 2015-03-13 20:10 - 00000000 ____D () C:\Users\Lilly\AppData\Local\{EF6BA687-A752-4FC5-A579-EADA018C9ED8}
2015-03-11 11:22 - 2015-02-20 06:41 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-03-11 11:22 - 2015-02-20 06:40 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-03-11 11:22 - 2015-02-20 06:40 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-03-11 11:22 - 2015-02-20 06:40 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-03-11 11:22 - 2015-02-20 06:13 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-03-11 11:22 - 2015-02-20 06:13 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-03-11 11:22 - 2015-02-20 06:13 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-03-11 11:22 - 2015-02-20 06:12 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-03-11 11:22 - 2015-02-20 05:29 - 00372224 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-03-11 11:22 - 2015-02-20 05:09 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-03-11 11:22 - 2015-02-03 05:34 - 05554104 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-03-11 11:22 - 2015-02-03 05:31 - 14632960 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-03-11 11:22 - 2015-02-03 05:31 - 00782848 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-03-11 11:22 - 2015-02-03 05:30 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\drmv2clt.dll
2015-03-11 11:22 - 2015-02-03 05:30 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-03-11 11:22 - 2015-02-03 05:12 - 11411968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2015-03-11 11:22 - 2015-02-03 05:12 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll
2015-03-11 11:22 - 2015-02-03 05:12 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmv2clt.dll
2015-03-11 11:22 - 2015-02-03 05:12 - 00744960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll
2015-03-11 11:22 - 2015-02-03 05:12 - 00617984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll
2015-03-11 11:22 - 2015-01-17 04:48 - 01067520 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-03-11 11:22 - 2015-01-17 04:30 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-03-11 11:21 - 2015-02-03 05:34 - 00693176 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2015-03-11 11:21 - 2015-02-03 05:34 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-03-11 11:21 - 2015-02-03 05:33 - 00616360 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2015-03-11 11:21 - 2015-02-03 05:31 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00432128 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\pcadm.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-03-11 11:21 - 2015-02-03 05:31 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-03-11 11:21 - 2015-02-03 05:31 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-03-11 11:21 - 2015-02-03 05:30 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 01069056 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\cryptsp.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2015-03-11 11:21 - 2015-02-03 05:30 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\pcawrk.exe
2015-03-11 11:21 - 2015-02-03 05:30 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\pcalua.exe
2015-03-11 11:21 - 2015-02-03 05:29 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\pcaevts.dll
2015-03-11 11:21 - 2015-02-03 05:28 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-03-11 11:21 - 2015-02-03 05:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-03-11 11:21 - 2015-02-03 05:19 - 00663552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-03-11 11:21 - 2015-02-03 05:16 - 03973048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-03-11 11:21 - 2015-02-03 05:16 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-03-11 11:21 - 2015-02-03 05:12 - 01329664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 01005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00489984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00406016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00354816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsp.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2015-03-11 11:21 - 2015-02-03 05:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2015-03-11 11:21 - 2015-02-03 05:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2015-03-11 11:21 - 2015-02-03 05:11 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2015-03-11 11:21 - 2015-02-03 05:11 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe
2015-03-11 11:21 - 2015-02-03 05:11 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe
2015-03-11 11:21 - 2015-02-03 05:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll
2015-03-11 11:21 - 2015-02-03 05:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-03-11 11:21 - 2015-02-03 04:32 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-03-11 11:21 - 2015-01-31 05:48 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-03-11 11:21 - 2015-01-31 05:48 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-03-11 11:21 - 2015-01-31 01:56 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-03-11 11:21 - 2014-11-01 00:24 - 00619056 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-03-11 11:21 - 2014-06-28 02:21 - 00532176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-03-11 11:21 - 2014-06-28 02:21 - 00457400 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-03-11 11:20 - 2015-03-06 07:56 - 00155576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-03-11 11:20 - 2015-03-06 07:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-03-11 11:20 - 2015-03-06 07:42 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-03-11 11:20 - 2015-03-06 07:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-03-11 11:20 - 2015-03-06 07:41 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-03-11 11:20 - 2015-03-06 07:41 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-03-11 11:20 - 2015-03-06 07:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-03-11 11:20 - 2015-03-06 07:38 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-03-11 11:20 - 2015-03-06 07:36 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-03-11 11:20 - 2015-03-06 07:10 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-03-11 11:20 - 2015-03-06 07:09 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-03-11 11:20 - 2015-03-06 07:09 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-03-11 11:20 - 2015-03-06 07:07 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-03-11 11:20 - 2015-03-06 07:07 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-03-11 11:20 - 2015-03-06 07:06 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-03-11 11:20 - 2015-02-26 05:25 - 03204096 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-03-11 11:20 - 2015-02-24 05:15 - 00389800 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-03-11 11:20 - 2015-02-24 04:32 - 00342696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-03-11 11:20 - 2015-02-21 02:41 - 12827648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-03-11 11:20 - 2015-02-21 02:27 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-03-11 11:20 - 2015-02-21 02:27 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-03-11 11:20 - 2015-02-21 02:25 - 19720192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-03-11 11:20 - 2015-02-21 01:32 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-03-11 11:20 - 2015-02-20 05:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-03-11 11:20 - 2015-02-20 05:05 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-03-11 11:20 - 2015-02-20 04:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-03-11 11:20 - 2015-02-20 04:40 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-03-11 11:20 - 2015-02-20 04:35 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-03-11 11:20 - 2015-02-20 04:26 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-03-11 11:20 - 2015-02-20 04:22 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-03-11 11:20 - 2015-02-20 04:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-03-11 11:20 - 2015-02-20 04:08 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-03-11 11:20 - 2015-02-20 04:08 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-03-11 11:20 - 2015-02-20 04:06 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-03-11 11:20 - 2015-02-20 04:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-03-11 11:20 - 2015-02-20 04:03 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-03-11 11:20 - 2015-02-20 04:01 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-03-11 11:20 - 2015-02-20 04:00 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-03-11 11:20 - 2015-02-20 03:58 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-03-11 11:20 - 2015-02-20 03:56 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-03-11 11:20 - 2015-02-20 03:56 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-03-11 11:20 - 2015-02-20 03:49 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-03-11 11:20 - 2015-02-20 03:49 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-03-11 11:20 - 2015-02-20 03:41 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-03-11 11:20 - 2015-02-20 03:24 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-03-11 11:20 - 2015-02-20 03:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-03-11 11:20 - 2015-02-20 03:16 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-03-11 11:20 - 2015-02-20 02:57 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-03-11 11:20 - 2015-02-20 02:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-03-11 11:20 - 2015-02-13 07:26 - 12875264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-03-11 11:20 - 2015-02-13 07:22 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-03-11 11:20 - 2015-02-03 05:31 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-03-11 11:20 - 2015-02-03 05:31 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2015-03-11 11:20 - 2015-02-03 05:12 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2015-03-11 11:20 - 2015-02-03 05:12 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ubpm.dll
2015-03-11 11:20 - 2015-01-31 01:56 - 00459336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-03-11 11:19 - 2015-02-21 03:16 - 25021440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-03-11 11:19 - 2015-02-21 01:58 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-03-11 11:19 - 2015-02-20 04:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-03-11 11:19 - 2015-02-20 04:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-03-11 11:19 - 2015-02-20 04:48 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-03-11 11:19 - 2015-02-20 04:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-03-11 11:19 - 2015-02-20 04:41 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-03-11 11:19 - 2015-02-20 04:36 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-03-11 11:19 - 2015-02-20 04:35 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-03-11 11:19 - 2015-02-20 04:34 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-03-11 11:19 - 2015-02-20 04:32 - 06035456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-03-11 11:19 - 2015-02-20 04:22 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-03-11 11:19 - 2015-02-20 04:09 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-03-11 11:19 - 2015-02-20 04:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-03-11 11:19 - 2015-02-20 03:47 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-03-11 11:19 - 2015-02-20 03:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-03-11 11:19 - 2015-02-20 03:43 - 14398976 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-03-11 11:19 - 2015-02-20 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-03-11 11:19 - 2015-02-20 03:30 - 04300288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-03-11 11:19 - 2015-02-20 03:28 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-03-11 11:19 - 2015-02-20 03:23 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-03-11 11:19 - 2015-02-20 03:03 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-03-11 11:19 - 2015-02-20 03:01 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-03-11 11:18 - 2015-02-04 05:16 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-03-11 11:18 - 2015-02-04 04:54 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2015-03-08 20:30 - 2015-03-08 20:30 - 00000000 ____D () C:\ProgramData\Emsisoft
2015-03-06 20:30 - 2015-03-22 07:03 - 00000000 ____D () C:\ProgramData\Malwarebytes Anti-Exploit
2015-03-06 20:24 - 2015-03-28 12:14 - 00000000 ____D () C:\Program Files (x86)\Emsisoft Anti-Malware
2015-03-06 20:08 - 2015-04-01 16:07 - 00000000 ____D () C:\AdwCleaner
2015-03-06 13:44 - 2015-03-06 23:44 - 00000000 ____D () C:\Users\Lilly\Desktop\goa
2015-03-06 13:38 - 2015-03-06 13:38 - 00000000 ____D () C:\Users\Lilly\AppData\Local\CDex
2015-03-05 10:44 - 2015-03-22 08:47 - 00003354 _____ () C:\Windows\System32\Tasks\RealDownloaderRealUpgradeScheduledTaskS-1-5-21-3596086338-499352715-315314885-1004
2015-03-05 10:44 - 2015-03-22 08:47 - 00003220 _____ () C:\Windows\System32\Tasks\RealDownloaderRealUpgradeLogonTaskS-1-5-21-3596086338-499352715-315314885-1004
2015-03-04 16:35 - 2015-03-04 16:35 - 00000000 ____D () C:\Users\Awender\Documents\My Games
2015-03-04 16:14 - 2015-03-04 16:14 - 00043112 _____ (Avast Software s.r.o.) C:\Windows\avastSS.scr
2015-03-04 16:10 - 2015-03-04 16:11 - 00000197 _____ () C:\Windows\system32\2015-03-04-14-10-56.023-AvastVBoxSVC.exe-4348.log
2015-03-04 12:16 - 2015-03-04 12:16 - 00000197 _____ () C:\Windows\system32\2015-03-04-10-16-11.006-AvastVBoxSVC.exe-4372.log
2015-03-03 20:14 - 2015-03-03 20:14 - 00000197 _____ () C:\Windows\system32\2015-03-03-18-14-41.090-AvastVBoxSVC.exe-4804.log
2015-03-03 14:55 - 2015-03-03 14:56 - 00000197 _____ () C:\Windows\system32\2015-03-03-12-55-30.064-AvastVBoxSVC.exe-4024.log
2015-03-03 11:15 - 2015-03-03 11:16 - 00000197 _____ () C:\Windows\system32\2015-03-03-09-15-54.073-AvastVBoxSVC.exe-4020.log
2015-03-02 21:25 - 2015-03-02 21:26 - 00000197 _____ () C:\Windows\system32\2015-03-02-19-25-48.050-AvastVBoxSVC.exe-5312.log
2015-03-02 13:45 - 2015-03-02 13:45 - 00000197 _____ () C:\Windows\system32\2015-03-02-11-45-10.072-AvastVBoxSVC.exe-1724.log
2015-03-02 11:13 - 2015-03-02 11:14 - 00000197 _____ () C:\Windows\system32\2015-03-02-09-13-38.090-AvastVBoxSVC.exe-1688.log

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-01 16:39 - 2009-07-14 06:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-01 16:39 - 2009-07-14 06:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-01 16:35 - 2014-11-10 21:57 - 02075279 _____ () C:\Windows\WindowsUpdate.log
2015-04-01 16:30 - 2015-02-28 20:16 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-01 16:30 - 2015-01-28 21:52 - 00028008 _____ () C:\Windows\setupact.log
2015-04-01 16:29 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-01 16:21 - 2015-02-28 20:16 - 00001112 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-01 11:41 - 2015-01-28 21:52 - 00450000 _____ () C:\Windows\PFRO.log
2015-04-01 11:35 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini
2015-04-01 11:31 - 2014-11-10 22:22 - 00000000 ____D () C:\ProgramData\Temp
2015-04-01 11:19 - 2015-02-13 18:49 - 00000000 ____D () C:\Windows\erdnt
2015-03-31 22:14 - 2014-11-12 15:30 - 00066824 _____ () C:\Users\Lilly\AppData\Local\GDIPFONTCACHEV1.DAT
2015-03-31 17:31 - 2014-11-22 05:49 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\vlc
2015-03-31 17:17 - 2014-11-11 06:50 - 00650816 _____ () C:\Windows\system32\perfh007.dat
2015-03-31 17:17 - 2014-11-11 06:50 - 00131968 _____ () C:\Windows\system32\perfc007.dat
2015-03-31 17:17 - 2009-07-14 07:13 - 01529032 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-03-31 12:42 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2015-03-31 12:33 - 2009-07-14 06:45 - 00291688 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-31 12:26 - 2009-07-14 04:34 - 00000471 _____ () C:\Windows\win.ini
2015-03-31 12:20 - 2014-12-02 09:41 - 00000433 _____ () C:\Windows\system32\Drivers\etc\hosts.ics
2015-03-31 11:30 - 2014-11-16 14:41 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\SoftGrid Client
2015-03-30 08:08 - 2014-11-15 13:27 - 00000000 ____D () C:\Users\Lilly\AppData\Roaming\Winamp
2015-03-30 08:08 - 2014-11-12 15:30 - 00000000 ____D () C:\Users\Lilly\AppData\Local\PowerCinema
2015-03-30 08:08 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration
2015-03-30 04:56 - 2014-11-11 00:02 - 00000000 ____D () C:\Users\Awender
2015-03-29 22:17 - 2015-02-12 00:18 - 00003924 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2015-03-29 22:10 - 2014-11-12 15:30 - 00000000 ____D () C:\Users\Lilly
2015-03-29 21:30 - 2014-11-13 16:05 - 00000000 ____D () C:\Users\Lilly\Desktop\youtube
2015-03-29 18:01 - 2015-02-12 16:10 - 00000000 ____D () C:\Users\Lilly\Desktop\trojanerboard
2015-03-29 15:36 - 2014-11-15 14:11 - 00243018 _____ () C:\Users\Lilly\Desktop\mucke.m3u
2015-03-29 11:39 - 2014-12-04 14:01 - 00000000 ____D () C:\Program Files (x86)\Winamp
2015-03-29 11:37 - 2014-11-11 00:10 - 00000000 ____D () C:\ProgramData\clear.fi
2015-03-28 17:12 - 2014-12-04 01:18 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-03-28 17:12 - 2012-01-19 14:18 - 00000000 ____D () C:\ProgramData\Skype
2015-03-22 21:01 - 2014-11-12 17:39 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-03-22 09:15 - 2015-01-31 17:43 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-03-22 09:15 - 2015-01-31 17:43 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-03-22 09:15 - 2014-11-12 17:39 - 00778928 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-03-22 09:15 - 2014-11-12 17:39 - 00003824 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-03-22 09:15 - 2014-11-11 00:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-03-22 09:15 - 2014-11-11 00:20 - 00000000 ____D () C:\Program Files\WinRAR
2015-03-22 09:15 - 2014-11-11 00:18 - 00000000 ____D () C:\Program Files (x86)\Java
2015-03-22 09:15 - 2012-01-19 14:47 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-03-22 09:12 - 2014-11-11 00:19 - 00000000 ____D () C:\Program Files\Java
2015-03-22 08:53 - 2014-11-11 00:15 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-03-22 08:50 - 2015-01-09 05:44 - 00000000 ____D () C:\Program Files (x86)\RealNetworks
2015-03-22 08:50 - 2015-01-09 05:43 - 00000000 ____D () C:\Program Files (x86)\Real
2015-03-22 08:50 - 2014-12-23 12:30 - 00000000 ____D () C:\ProgramData\Package Cache
2015-03-22 08:50 - 2014-11-29 12:08 - 00000000 ____D () C:\ProgramData\Real
2015-03-22 08:49 - 2015-01-09 05:42 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\Real
2015-03-22 08:03 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-03-18 10:10 - 2014-11-10 22:09 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-03-18 10:04 - 2014-11-10 22:09 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-03-18 10:04 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help
2015-03-18 10:02 - 2014-11-12 14:59 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-03-18 10:02 - 2014-11-10 22:09 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2015-03-18 09:41 - 2015-02-16 12:42 - 00000000 ____D () C:\Users\Awender\AppData\Roaming\WinPatrol
2015-03-15 22:58 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2015-03-15 10:43 - 2014-11-13 20:33 - 00000000 ____D () C:\Windows\pss
2015-03-15 04:27 - 2014-12-06 21:55 - 00000000 ____D () C:\Users\Lilly\Desktop\dokumente
2015-03-11 23:46 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2015-03-11 23:46 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism
2015-03-11 23:22 - 2014-11-11 09:02 - 00000000 ____D () C:\Windows\system32\MRT
2015-03-11 23:05 - 2014-11-11 09:02 - 122905848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-03-11 00:11 - 2014-11-13 15:51 - 00000000 ____D () C:\ProgramData\Origin
2015-03-09 20:10 - 2014-12-24 21:46 - 00015134 _____ () C:\Users\Lilly\Desktop\CHILLY.m3u
2015-03-09 11:43 - 2014-11-13 15:51 - 00000000 ____D () C:\Program Files (x86)\Origin
2015-03-07 07:13 - 2014-11-13 16:05 - 00000000 ____D () C:\Users\Lilly\Documents\DVDVideoSoft
2015-03-06 16:07 - 2015-02-16 12:00 - 00002397 _____ () C:\DelFix.txt
2015-03-04 16:35 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-03-04 16:14 - 2015-02-12 00:18 - 00441728 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSP.sys
2015-03-04 16:14 - 2015-02-12 00:18 - 00268640 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2015-03-04 16:14 - 2015-02-12 00:18 - 00136752 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswStm.sys
2015-03-04 16:14 - 2015-02-12 00:18 - 00093528 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswRdr2.sys
2015-03-04 16:14 - 2015-02-12 00:18 - 00088408 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswMonFlt.sys
2015-03-04 16:14 - 2015-02-12 00:18 - 00065736 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2015-03-04 16:14 - 2015-02-12 00:18 - 00029168 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2015-03-04 16:13 - 2015-02-12 00:18 - 01047320 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswSnx.sys
2015-03-04 12:22 - 2015-02-22 02:58 - 00000000 ____D () C:\Program Files (x86)\Paradiesbar

==================== Files in the root of some directories =======

2014-11-12 19:59 - 2014-11-12 19:59 - 0000057 _____ () C:\ProgramData\Ament.ini
2014-11-10 22:22 - 2014-11-10 22:25 - 0015230 _____ () C:\ProgramData\ArcadeDeluxe5.log

Some content of TEMP:
====================
C:\Users\Awender\AppData\Local\temp\Quarantine.exe
C:\Users\Awender\AppData\Local\temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-03-28 09:38

==================== End Of Log ============================
         
--- --- ---

--- --- ---

Alt 01.04.2015, 21:39   #13
schrauber
/// the machine
/// TB-Ausbilder
 

Pc plötzlich sehr langsam - Standard

Pc plötzlich sehr langsam




ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme?
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 10.04.2015, 03:24   #14
lyncat89
 
Pc plötzlich sehr langsam - Standard

Pc plötzlich sehr langsam



hy,
entschuldigung, dass ich nicht mehr genatwoertet habe. Ich lag komplett flach mit Grippe... Ich werde mich in der nächsten Woche um die Aufträge kümmern und mich melden.

Alt 10.04.2015, 16:34   #15
schrauber
/// the machine
/// TB-Ausbilder
 

Pc plötzlich sehr langsam - Standard

Pc plötzlich sehr langsam



ok
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu Pc plötzlich sehr langsam
andere, anderen, aufrufen, brauch, einfach, erkennt, externe, festplatte, festplatten, hochfahren, kopieren, lange, langsam, laptop, meinung, minute, minuten, nichts, pc langsam, platte, platten, plötzlich, probleme, starte, usb, wechseldatenträger



Ähnliche Themen: Pc plötzlich sehr langsam


  1. Computer plötzlich sehr langsam
    Plagegeister aller Art und deren Bekämpfung - 28.10.2015 (10)
  2. Win 8.1 : Internet plötzlich sehr langsam
    Log-Analyse und Auswertung - 09.01.2015 (12)
  3. Internet und PC plötzlich sehr langsam
    Plagegeister aller Art und deren Bekämpfung - 19.05.2013 (11)
  4. Computer plötzlich sehr langsam
    Alles rund um Windows - 15.11.2012 (1)
  5. Computer plötzlich sehr langsam
    Log-Analyse und Auswertung - 05.02.2012 (1)
  6. PC plötzlich sehr, sehr langsam - evtl. neues update Adobe Flashplayer? kein Virus gefunden...
    Log-Analyse und Auswertung - 05.10.2011 (15)
  7. Internet plötzlich sehr langsam
    Log-Analyse und Auswertung - 19.09.2011 (7)
  8. Internet plötzlich sehr langsam
    Plagegeister aller Art und deren Bekämpfung - 27.06.2011 (7)
  9. Laptop plötzlich sehr langsam
    Plagegeister aller Art und deren Bekämpfung - 06.07.2010 (1)
  10. computer ist plötzlich sehr langsam
    Log-Analyse und Auswertung - 19.03.2010 (1)
  11. WLAN plötzlich sehr langsam
    Netzwerk und Hardware - 10.11.2009 (3)
  12. Internet plötzlich sehr langsam
    Log-Analyse und Auswertung - 16.06.2009 (0)
  13. Laptop plötzlich sehr sehr langsam
    Log-Analyse und Auswertung - 24.09.2008 (1)
  14. Internet plötzlich sehr langsam
    Log-Analyse und Auswertung - 28.08.2008 (0)
  15. Internet ist plötzlich sehr langsam
    Plagegeister aller Art und deren Bekämpfung - 20.07.2008 (2)
  16. Internet plötzlich sehr langsam
    Log-Analyse und Auswertung - 18.06.2008 (5)
  17. DSL Geschwindigkeit plötzlich sehr langsam
    Log-Analyse und Auswertung - 04.12.2006 (1)

Zum Thema Pc plötzlich sehr langsam - Hallo, ich habe seit gestern Probleme mit meinen 3 externen Festplatten (USB 2.0 und USB 3.0)bzw. auch mit anderen Geräten, die ich an meinen USB-Hub anschließe. 1. laptop erkennt den - Pc plötzlich sehr langsam...
Archiv
Du betrachtest: Pc plötzlich sehr langsam auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.