Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Windows 8.1 Laptop auf einmal sehr langsam

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 21.09.2015, 14:02   #1
X3nion
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Ein herzliches Hallo an euch, liebe Community!

Ich verfasse diesen Beitrag, da mein Laptop auf einen Schlag langsam geworden ist. Selbst die Untersuchung mit Kaspersky 2016 benötigt sehr lange. Im Vergleich: vor 2 Wochen ging alles noch ratz-fatz, sogar die Untersuchung.
Kann mir einer von euch Experten helfen, schädliche Programme, versteckte Viren oder sonstige Bedrohungen aufzuspüren und den Laptop wieder clean zu bekommen?

Ich wäre für eine Unterstützung wirklich überaus dankbar!


Freundliche Grüße,

X3nion aka Chris

Alt 21.09.2015, 14:07   #2
Deathkid535
/// Malwareteam
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam





Ich habe dein Thema in Arbeit und melde mich so schnell als möglich mit weiteren Anweisungen.

Bitte beachte, dass alle meine Antworten zuerst von einem Ausbilder freigegeben werden müssen, bevor ich diese hier posten darf. Dies garantiert, dass Du Hilfe von einem ausgebildeten Helfer bekommst.

Ich bedanke mich für deine Geduld

Schritt # 1: FRST

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)



Schritt # 2: Bitte Posten
  • Die FRST.txt
  • Die Addition.txt
__________________

__________________

Alt 21.09.2015, 18:33   #3
X3nion
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Hallo Deathkid535,

vielen Dank für deine Hilfsbereitschaft!
Dies sehe ich selbstverständlich nach, schließlich soll jedermann die Möglichkeit haben, auch während einer Ausbildung alle Tätigkeiten in vollem Umfang auszuüben, solange diese auf Richtigkeit überprüft werden. Dies ist ja aber, wie du schreibst, durch das Hinüberschauen durch einem Ausbilder gewährleistet. Somit vertraue ich dir und bringe natürlich auch Geduld mit

Sobald ich zuhause bin, werde ich den Check posten und hier durchführen!

Viele Grüße,
X3nion

So, dies ist der Inhalt der FRST.txt:

Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:15-09-2015
durchgeführt von Christian (Administrator) auf CHRIS-PC (21-09-2015 19:27:19)
Gestartet von C:\Users\Christian\Desktop
Geladene Profile: Christian (Verfügbare Profile: UpdatusUser & Christian)
Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe
(Broadcom Corp.) C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(Dritek System INC.) C:\Windows\RfBtnSvc64.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avpui.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
() C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet 6700\Bin\ScanToPCActivationApp.exe
(Dritek System Inc.) C:\Program Files (x86)\RadioController\RfBtnHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet 6700\Bin\HPNetworkCommunicator.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe


==================== Registry (Nicht auf der Ausnahmeliste) ===========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2873744 2012-11-20] (ELAN Microelectronics Corp.)
HKLM\...\Run: [HotKeysCmds] => C:\Windows\system32\hkcmd.exe
HKLM\...\Run: [Persistence] => C:\Windows\system32\igfxpers.exe
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [164080 2015-06-27] (IvoSoft)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12343400 2015-09-05] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1156712 2015-09-05] (Realtek Semiconductor)
HKLM-x32\...\Run: [LManager] => [X]
HKLM-x32\...\Run: [RadioController] => C:\Program Files (x86)\RadioController\RfBtnHelper.exe [111216 2013-09-24] (Dritek System Inc.)
HKLM-x32\...\Run: [Norton Online Backup] => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2994880 2012-08-15] (Symantec Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Dolby PCEE4\pcee4.exe [506712 2011-06-01] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [131712 2013-01-25] (Atheros Communications)
HKU\S-1-5-21-1713392027-413273371-3575476453-1002\...\Run: [HP Officejet 6700 (NET)] => C:\Program Files\HP\HP Officejet 6700\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-06-27] (IvoSoft)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-06-27] (IvoSoft)
Startup: C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\UDPixel.lnk [2015-08-29]
ShortcutTarget: UDPixel.lnk -> C:\Program Files (x86)\UDPixel\UDPixel.exe (hxxp://sam100.free.fr/UDPixel)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.2 192.168.1.2
Tcpip\..\Interfaces\{15F9B141-F254-4B1F-89D7-54D13CE7D957}: [DhcpNameServer] 192.168.1.2 192.168.1.2
Tcpip\..\Interfaces\{9C0DBA51-E9A9-4A76-9E9C-E958350DE50D}: [DhcpNameServer] 192.168.1.2 192.168.1.2

Internet Explorer:
==================
HKU\S-1-5-21-1713392027-413273371-3575476453-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer13.msn.com
HKU\S-1-5-21-1713392027-413273371-3575476453-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com
SearchScopes: HKLM -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKLM-x32 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKU\S-1-5-21-1713392027-413273371-3575476453-1002 -> DefaultScope {F4B52201-0F7C-4889-B4AB-C1122B988B97} URL = 
SearchScopes: HKU\S-1-5-21-1713392027-413273371-3575476453-1002 -> {AA9A4890-4262-4441-8977-E2FFCBFB706C} URL = hxxp://de.yhs4.search.yahoo.com/yhs/search?hspart=acer&hsimp=yhs-acer_001&p={searchTerms}
SearchScopes: HKU\S-1-5-21-1713392027-413273371-3575476453-1002 -> {F4B52201-0F7C-4889-B4AB-C1122B988B97} URL = 
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-06-27] (IvoSoft)
BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2013-01-25] (Qualcomm Atheros Commnucations)
BHO: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2015-06-27] (IvoSoft)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-06-27] (IvoSoft)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\ssv.dll [2015-08-09] (Oracle Corporation)
BHO-x32: Kaspersky Protection plugin -> {C66D064F-82FE-4E1A-B06A-B2490BA48B18} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-09] (Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2015-06-27] (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2015-06-27] (IvoSoft)
Toolbar: HKLM - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2015-06-27] (IvoSoft)
Toolbar: HKLM-x32 - Kaspersky Protection toolbar - {3507FA00-ADA2-4A02-99B9-51AD26CA9120} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\IEExt\ie_plugin.dll [2015-07-08] (AO Kaspersky Lab)

FireFox:
========
FF ProfilePath: C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\f4eivfc4.default
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-09] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files (x86)\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-09] (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2012-10-12] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.)
FF user.js: detected! => C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\f4eivfc4.default\user.js [2015-08-08]
FF Extension: TrashMail.com - C:\Users\Christian\AppData\Roaming\Mozilla\Firefox\Profiles\f4eivfc4.default\Extensions\spam@trashmail.net.xpi [2015-08-31]
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_D772DC8D6FAF43A29B25C4EBAA5AD1DE@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox
FF Extension: Kaspersky Protection - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\FFExt\light_plugin_firefox [2015-09-19]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: Kein Name - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\content_blocker@kaspersky.com [nicht gefunden]
FF Extension: Kein Name - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\virtual_keyboard@kaspersky.com [nicht gefunden]
FF Extension: Kein Name - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.2\FFExt\online_banking@kaspersky.com [nicht gefunden]

Chrome: 
=======
CHR Profile: C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-09-10]
CHR Extension: (Google Drive) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-09-10]
CHR Extension: (YouTube) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-10]
CHR Extension: (Google-Suche) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-09-10]
CHR Extension: (All Downloader Professional) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\dcpkncimndkdodcgcogfdddimoglkpkp [2015-09-10]
CHR Extension: (Kaspersky Protection) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\eahebamiopdhefndnmappcihfajigkka [2015-09-20]
CHR Extension: (Google Tabellen) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-09-10]
CHR Extension: (Google Text & Tabellen Offline) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-10]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-09-10]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-09-10]
CHR Extension: (Google Mail) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-09-10]
CHR HKLM\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - https://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka
CHR HKLM-x32\...\Chrome\Extension: [eahebamiopdhefndnmappcihfajigkka] - https://chrome.google.com/webstore/detail/eahebamiopdhefndnmappcihfajigkka

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [227456 2013-01-25] (Qualcomm Atheros Commnucations) [Datei ist nicht signiert]
R2 AVP16.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe [194000 2015-09-19] (Kaspersky Lab ZAO)
R2 BrcmCardReader; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [176640 2012-08-20] (Broadcom Corp.) [Datei ist nicht signiert]
R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2615368 2013-02-19] (Acer Incorporated)
S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [469648 2012-11-16] (Acer Incorporated)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [662088 2013-03-15] (Acer Incorporated)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319376 2014-10-01] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3943104 2012-08-15] (Symantec Corporation)
R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [96880 2013-09-24] (Dritek System INC.)
S3 vssbrigde64; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe [144640 2015-07-09] (AO Kaspersky Lab)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-01-24] (Qualcomm Atheros)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-11-21] (Microsoft Corporation)
R1 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [389816 2015-07-06] (Kaspersky Lab ZAO)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [478392 2015-06-22] (Kaspersky Lab ZAO)
R0 klbackupdisk; C:\Windows\System32\DRIVERS\klbackupdisk.sys [53432 2015-06-06] (Kaspersky Lab ZAO)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [70512 2015-06-27] (Kaspersky Lab ZAO)
R2 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [68280 2015-06-06] (Kaspersky Lab ZAO)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [30328 2015-06-24] (Kaspersky Lab)
R3 klflt; C:\Windows\system32\DRIVERS\klflt.sys [171192 2015-06-30] (Kaspersky Lab ZAO)
R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [227000 2015-07-04] (AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [937656 2015-06-30] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [39608 2015-06-11] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [41656 2015-06-06] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [41656 2015-06-07] (Kaspersky Lab ZAO)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [30392 2015-06-08] (Kaspersky Lab ZAO)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [78008 2015-06-26] (Kaspersky Lab ZAO)
R1 Klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [102584 2015-06-16] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [187056 2015-06-23] (Kaspersky Lab ZAO)
R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2013-09-24] (Dritek System Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
R3 WinDriver6; C:\Windows\system32\drivers\windrvr6.sys [268800 2014-01-28] (Jungo Connectivity)

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-09-21 19:27 - 2015-09-21 19:27 - 00020657 _____ C:\Users\Christian\Desktop\FRST.txt
2015-09-21 19:24 - 2015-09-21 19:27 - 00000000 ____D C:\FRST
2015-09-21 19:23 - 2015-09-21 19:23 - 02191360 _____ (Farbar) C:\Users\Christian\Desktop\FRST64.exe
2015-09-21 09:52 - 2015-09-21 10:19 - 113468531 _____ C:\Users\Christian\Downloads\290004_480x320_400kmp4.mp4
2015-09-20 20:37 - 2015-09-20 20:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ChamSys MagicQ
2015-09-20 20:37 - 2015-09-20 20:37 - 00000000 ____D C:\Program Files (x86)\ChamSys Ltd
2015-09-20 20:36 - 2015-09-20 20:37 - 125389547 _____ C:\Users\Christian\Downloads\magicq_windows_v1_6_6_8.exe
2015-09-20 10:32 - 2015-09-20 10:58 - 186820041 _____ C:\Users\Christian\Downloads\webflv.flv
2015-09-20 10:11 - 2015-09-20 10:28 - 88954210 _____ C:\Users\Christian\Downloads\Video1.flv
2015-09-19 13:02 - 2015-09-19 13:02 - 00002466 _____ C:\Users\Christian\Desktop\Sicherer Zahlungsverkehr.lnk
2015-09-19 12:59 - 2015-09-19 12:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
2015-09-19 12:59 - 2015-09-19 12:58 - 00002160 _____ C:\Users\Public\Desktop\Kaspersky Internet Security.lnk
2015-09-19 12:56 - 2015-07-04 02:18 - 00227000 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klhk.sys
2015-09-19 12:56 - 2015-06-30 01:05 - 00937656 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klif.sys
2015-09-19 12:56 - 2015-06-30 01:05 - 00171192 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klflt.sys
2015-09-16 22:11 - 2015-09-16 22:11 - 00002176 _____ C:\Users\Public\Desktop\HP Officejet 6700.lnk
2015-09-16 22:11 - 2015-09-16 22:11 - 00001148 _____ C:\Users\Public\Desktop\Shop für Zubehör - HP Officejet 6700.lnk
2015-09-16 22:11 - 2015-09-16 22:11 - 00000984 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I.R.I.S. OCR-Registrierung.lnk
2015-09-16 22:11 - 2015-09-16 22:11 - 00000000 ____D C:\Users\Christian\AppData\Roaming\HpUpdate
2015-09-16 22:11 - 2015-09-16 22:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2015-09-16 22:11 - 2015-09-16 22:11 - 00000000 ____D C:\ProgramData\HP
2015-09-16 22:11 - 2015-09-16 22:11 - 00000000 ____D C:\Program Files\HP
2015-09-16 22:11 - 2015-09-16 22:11 - 00000000 ____D C:\Program Files (x86)\HP
2015-09-16 22:11 - 2012-10-17 04:31 - 00741480 ____N (Hewlett-Packard Co.) C:\WINDOWS\system32\HPDiscoPM5C12.dll
2015-09-16 22:10 - 2015-09-16 22:29 - 00000000 ____D C:\Users\Christian\AppData\Local\HP
2015-09-16 22:10 - 2015-09-16 22:10 - 00000057 _____ C:\ProgramData\Ament.ini
2015-09-16 22:08 - 2015-09-16 22:09 - 119621992 _____ C:\Users\Christian\Downloads\OJ6700_1315-1.exe
2015-09-16 22:06 - 2015-09-16 22:06 - 03774136 _____ (Oleg N. Scherbakov) C:\Users\Christian\Downloads\HPSupportSolutionsFramework-12.0.30.81.exe
2015-09-14 01:13 - 2015-09-14 01:13 - 00257880 _____ C:\Users\Christian\Documents\NetBeansProjects.rar
2015-09-13 16:47 - 2015-09-13 16:56 - 00009566 _____ C:\Users\Christian\Desktop\Neues Textdokument.txt
2015-09-11 13:11 - 2015-09-11 13:12 - 166965248 _____ C:\Users\Christian\Downloads\as-asf-msi-6.2.1325-win32.win32.x86.msi
2015-09-11 01:38 - 2015-09-11 21:20 - 00000000 ____D C:\Users\Christian\AppData\Roaming\VisualAssistAtmel
2015-09-11 01:38 - 2015-09-11 21:20 - 00000000 ____D C:\Users\Christian\AppData\Local\VisualAssistAtmel
2015-09-11 01:38 - 2015-09-11 01:38 - 00000000 ____D C:\Users\Christian\AppData\Local\IsolatedStorage
2015-09-11 01:36 - 2015-09-11 01:36 - 00002138 _____ C:\Users\Public\Desktop\Atmel Studio 6.2.lnk
2015-09-11 01:31 - 2015-09-11 01:40 - 00000000 ____D C:\Users\Christian\Documents\Atmel Studio
2015-09-11 01:31 - 2015-09-11 01:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atmel
2015-09-11 01:31 - 2015-09-11 01:31 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Atmel
2015-09-11 01:31 - 2015-09-11 01:31 - 00000000 ____D C:\Users\Christian\AppData\Local\Atmel
2015-09-11 01:30 - 2014-02-06 09:01 - 00067680 _____ (hxxp://libusb-win32.sourceforge.net) C:\WINDOWS\SysWOW64\libusb0.dll
2015-09-11 01:30 - 2014-02-06 09:01 - 00042592 _____ (hxxp://libusb-win32.sourceforge.net) C:\WINDOWS\SysWOW64\Drivers\libusb0.sys
2015-09-11 01:29 - 2015-09-11 01:37 - 00000000 ____D C:\ProgramData\Package Cache
2015-09-11 01:29 - 2014-01-28 08:59 - 00151552 _____ (Jungo Connectivity) C:\WINDOWS\SysWOW64\wdapi1150.dll
2015-09-11 01:29 - 2013-11-11 09:42 - 00151552 _____ (Jungo Connectivity) C:\WINDOWS\SysWOW64\wdapi1140.dll
2015-09-11 01:29 - 2013-11-11 09:42 - 00147456 _____ (Jungo) C:\WINDOWS\SysWOW64\wdapi1021.dll
2015-09-11 01:29 - 2013-11-11 09:42 - 00110592 _____ (Jungo) C:\WINDOWS\SysWOW64\wdapi1100.dll
2015-09-11 01:29 - 2013-11-11 09:42 - 00110592 _____ (Jungo) C:\WINDOWS\SysWOW64\wdapi102.dll
2015-09-11 01:28 - 2015-09-11 01:28 - 00000000 ____D C:\Program Files\Microsoft Help Viewer
2015-09-11 01:28 - 2015-09-11 01:28 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2015-09-11 01:27 - 2015-09-11 01:27 - 00000000 ____D C:\WINDOWS\SysWOW64\1033
2015-09-11 01:27 - 2015-09-11 01:27 - 00000000 ____D C:\Users\Christian\Documents\Visual Studio 2010
2015-09-11 01:27 - 2015-09-11 01:27 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 10.0
2015-09-11 01:27 - 2015-09-11 01:27 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs
2015-09-11 01:26 - 2015-09-11 01:26 - 00000000 ____D C:\WINDOWS\PCHEALTH
2015-09-11 01:18 - 2015-09-11 01:24 - 812660816 _____ (Atmel) C:\Users\Christian\Downloads\AStudio6_2sp2_1563net.exe
2015-09-11 01:18 - 2015-09-11 01:18 - 18246624 _____ (Atmel) C:\Users\Christian\Downloads\driver-atmel-bundle-7.0.888.exe
2015-09-11 01:17 - 2015-09-11 01:22 - 587327768 _____ (Atmel) C:\Users\Christian\Downloads\AStudio6_2sp2_1563.exe
2015-09-10 16:24 - 2015-09-10 16:24 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2015-09-10 16:21 - 2015-09-10 16:22 - 174968108 _____ C:\Users\Christian\Downloads\4188mp4mp4.rar
2015-09-10 16:20 - 2015-09-10 16:20 - 02060664 _____ C:\Users\Christian\Downloads\winrar-x64-521d.exe
2015-09-10 16:20 - 2015-09-10 16:20 - 00000000 ____D C:\Users\Christian\AppData\Roaming\WinRAR
2015-09-10 16:20 - 2015-09-10 16:20 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-09-10 16:20 - 2015-09-10 16:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-09-10 16:20 - 2015-09-10 16:20 - 00000000 ____D C:\Program Files\WinRAR
2015-09-10 16:19 - 2015-09-10 16:19 - 175868424 _____ C:\Users\Christian\Downloads\4188mp4mp4 - Kopie.zip
2015-09-10 16:19 - 2015-09-10 16:18 - 177007625 _____ C:\Users\Christian\Downloads\4188mp4mp4 - Kopie.mp4
2015-09-10 16:12 - 2015-09-10 16:18 - 177007625 _____ C:\Users\Christian\Downloads\4188mp4mp4.mp4
2015-09-10 16:11 - 2015-09-21 19:22 - 00001136 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-09-10 16:11 - 2015-09-21 19:20 - 00001132 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-09-10 16:11 - 2015-09-18 00:17 - 00004108 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2015-09-10 16:11 - 2015-09-18 00:17 - 00003872 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2015-09-10 16:11 - 2015-09-16 20:20 - 00002199 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-09-10 16:11 - 2015-09-10 16:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-09-10 16:11 - 2015-09-10 16:11 - 00000000 ____D C:\Program Files (x86)\Google
2015-09-10 16:10 - 2015-09-10 16:49 - 00000000 ____D C:\Users\Christian\AppData\Local\Google
2015-09-10 16:10 - 2015-09-10 16:10 - 00929360 _____ (Google Inc.) C:\Users\Christian\Downloads\ChromeSetup.exe
2015-09-10 16:09 - 2015-09-10 16:09 - 00003850 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1441894134
2015-09-10 16:09 - 2015-09-10 16:09 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Opera Software
2015-09-10 16:09 - 2015-09-10 16:09 - 00000000 ____D C:\Users\Christian\AppData\Local\Opera Software
2015-09-10 16:08 - 2015-09-10 16:09 - 00000000 ____D C:\Program Files (x86)\Opera
2015-09-10 16:08 - 2015-09-10 16:08 - 00703392 _____ (Opera Software) C:\Users\Christian\Downloads\Opera_NI_stable.exe
2015-09-10 16:08 - 2015-09-10 16:08 - 00001151 _____ C:\Users\Public\Desktop\Opera.lnk
2015-09-10 16:08 - 2015-09-10 16:08 - 00001151 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-09-08 22:42 - 2015-08-27 04:48 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-09-08 22:42 - 2015-08-26 20:00 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-09-08 22:42 - 2015-08-26 20:00 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-09-08 22:42 - 2015-08-26 20:00 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-09-08 22:42 - 2015-08-26 20:00 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-09-08 22:42 - 2015-08-26 16:46 - 03705344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-09-08 22:42 - 2015-08-26 16:29 - 02240512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-09-08 22:42 - 2015-08-26 16:27 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-09-08 22:42 - 2015-08-26 16:27 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-09-08 22:42 - 2015-08-26 16:26 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-09-08 22:42 - 2015-08-26 16:26 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-09-08 22:42 - 2015-08-26 16:26 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-09-08 22:41 - 2015-09-03 04:18 - 02531400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-09-08 22:41 - 2015-09-03 04:17 - 01903848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2015-09-08 22:41 - 2015-09-02 20:48 - 02345472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-09-08 22:41 - 2015-09-02 19:09 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-09-08 22:41 - 2015-09-02 04:56 - 04175872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-09-08 22:41 - 2015-09-02 04:55 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-09-08 22:41 - 2015-09-02 04:50 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-09-08 22:41 - 2015-09-02 04:17 - 00301568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-09-08 22:41 - 2015-09-02 04:13 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2015-09-08 22:41 - 2015-08-22 20:19 - 25188352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-09-08 22:41 - 2015-08-22 19:35 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-09-08 22:41 - 2015-08-22 19:34 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-09-08 22:41 - 2015-08-22 19:22 - 19856384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-09-08 22:41 - 2015-08-22 19:21 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-09-08 22:41 - 2015-08-22 19:20 - 05923840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-09-08 22:41 - 2015-08-22 18:55 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-09-08 22:41 - 2015-08-22 18:50 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-09-08 22:41 - 2015-08-22 18:50 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-09-08 22:41 - 2015-08-22 18:45 - 00665600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-09-08 22:41 - 2015-08-22 18:44 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-09-08 22:41 - 2015-08-22 18:41 - 14451712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-09-08 22:41 - 2015-08-22 18:41 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-09-08 22:41 - 2015-08-22 18:41 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-09-08 22:41 - 2015-08-22 18:41 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-09-08 22:41 - 2015-08-22 18:39 - 02126336 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-09-08 22:41 - 2015-08-22 18:28 - 04520448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-09-08 22:41 - 2015-08-22 18:26 - 02427392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-09-08 22:41 - 2015-08-22 18:23 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-09-08 22:41 - 2015-08-22 18:22 - 12857344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-09-08 22:41 - 2015-08-22 18:20 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2015-09-08 22:41 - 2015-08-22 18:18 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-09-08 22:41 - 2015-08-22 18:18 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-09-08 22:41 - 2015-08-22 18:18 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-09-08 22:41 - 2015-08-22 18:14 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-09-08 22:41 - 2015-08-22 18:01 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-09-08 22:41 - 2015-08-22 18:00 - 01951232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-09-08 22:41 - 2015-08-22 17:56 - 01310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-09-08 22:41 - 2015-08-22 17:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-09-08 22:41 - 2015-08-03 23:15 - 00074928 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll
2015-09-08 22:41 - 2015-08-03 23:15 - 00065600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll
2015-09-08 22:41 - 2015-08-01 16:22 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll
2015-09-08 22:41 - 2015-08-01 05:47 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schtasks.exe
2015-09-08 22:41 - 2015-08-01 05:45 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schtasks.exe
2015-09-08 22:41 - 2015-08-01 05:38 - 01265152 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-09-08 22:41 - 2015-08-01 05:37 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe
2015-09-08 22:41 - 2015-08-01 05:37 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskeng.exe
2015-09-08 22:41 - 2015-07-30 19:18 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkEd.dll
2015-09-08 22:41 - 2015-07-30 18:22 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkEd.dll
2015-09-08 22:41 - 2015-07-22 16:34 - 02775552 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2015-09-08 22:41 - 2015-07-22 16:33 - 01728000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-09-08 22:41 - 2015-07-22 16:25 - 02461184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2015-09-08 22:41 - 2015-07-22 16:25 - 01546752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2015-09-08 22:41 - 2015-07-22 16:19 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll
2015-09-08 22:41 - 2015-07-22 15:52 - 01633792 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-09-08 22:41 - 2015-07-18 20:31 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2015-09-08 22:41 - 2015-07-18 20:29 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2015-09-08 22:41 - 2015-07-18 20:29 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2015-09-08 22:41 - 2015-07-18 20:27 - 00520192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2015-09-08 22:41 - 2015-07-17 16:15 - 00951296 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll
2015-09-08 22:41 - 2015-07-17 16:10 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll
2015-09-08 22:41 - 2015-07-14 05:27 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzsync.exe
2015-09-08 22:41 - 2015-07-13 21:10 - 00411455 _____ C:\WINDOWS\system32\ApnDatabase.xml
2015-09-08 22:41 - 2015-07-10 21:06 - 00118272 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys
2015-09-08 22:41 - 2015-07-09 18:14 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-09-08 22:41 - 2015-07-03 23:51 - 01380056 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-09-08 22:41 - 2015-07-03 16:00 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2015-09-08 22:41 - 2015-06-27 13:47 - 00118616 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2015-09-08 22:41 - 2015-06-19 19:07 - 02819072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2015-09-07 02:38 - 2015-09-07 02:38 - 00000000 ____D C:\CodeLite
2015-09-07 02:37 - 2015-09-07 02:37 - 00000000 ____D C:\ProgramData\TDM-GCC
2015-09-07 02:37 - 2015-09-07 02:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TDM-GCC-64
2015-09-07 02:36 - 2015-09-07 02:37 - 00000000 ____D C:\TDM-GCC-64
2015-09-07 02:34 - 2015-09-07 02:34 - 48071122 _____ C:\Users\Christian\Downloads\tdm64-gcc-5.1.0-2(1).exe
2015-09-07 02:33 - 2015-09-07 02:38 - 00000000 ____D C:\Users\Christian\AppData\Roaming\codelite
2015-09-07 02:33 - 2015-09-07 02:33 - 48071122 _____ C:\Users\Christian\Downloads\tdm64-gcc-5.1.0-2.exe
2015-09-07 02:33 - 2015-09-07 02:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeLite
2015-09-07 02:32 - 2015-09-07 02:33 - 00000000 ____D C:\Program Files\CodeLite
2015-09-07 02:32 - 2015-09-07 02:32 - 28246793 _____ (Eran Ifrah ) C:\Users\Christian\Downloads\codelite-x86-8.2.3.exe
2015-09-07 02:31 - 2015-09-07 02:32 - 31911992 _____ (Eran Ifrah ) C:\Users\Christian\Downloads\codelite-amd64-8.2.3.exe
2015-09-06 16:51 - 2015-09-06 16:51 - 00009695 _____ C:\Users\Christian\Documents\Unbenannt 1.odt
2015-09-05 21:34 - 2015-09-05 21:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby
2015-09-05 21:33 - 2015-09-05 21:27 - 02603864 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib.dll
2015-09-05 21:33 - 2015-09-05 21:27 - 00518896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2015-09-05 21:33 - 2015-09-05 21:27 - 00220776 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2015-09-05 21:33 - 2015-09-05 21:27 - 00211184 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2015-09-05 21:33 - 2015-09-05 21:27 - 00198896 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2015-09-05 21:33 - 2015-09-05 21:27 - 00155888 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 04730344 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2015-09-05 21:32 - 2015-09-05 21:27 - 03747944 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkAPO64.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 02765312 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2015-09-05 21:32 - 2015-09-05 21:27 - 02615400 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 01560168 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2015-09-05 21:32 - 2015-09-05 21:27 - 01247848 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 01247576 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek264.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00823912 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00376936 _____ (Realtek Semiconductor) C:\WINDOWS\system32\RtkGuiCompLib.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00375128 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00334680 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00331880 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00310104 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00221024 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00206088 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2015-09-05 21:32 - 2015-09-05 21:27 - 00204120 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00149608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00101208 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00100968 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00081248 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00078688 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00078680 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2015-09-05 21:32 - 2015-09-05 21:27 - 00014952 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 05996376 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 02528832 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 02131288 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 01756264 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 01568360 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 01486952 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00955736 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00728680 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00712296 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00693352 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00491112 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00432744 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00428648 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00341336 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00318808 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO20.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00242792 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00241768 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00200800 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2015-09-05 21:32 - 2015-09-05 21:26 - 00108960 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAR64.dll
2015-09-05 21:32 - 2011-05-02 14:27 - 03308376 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2015-09-05 21:32 - 2011-05-02 14:27 - 00426328 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2015-09-05 21:32 - 2011-05-02 14:27 - 00136024 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2015-09-05 21:32 - 2011-05-02 14:27 - 00118104 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2015-09-05 21:32 - 2011-05-02 14:27 - 00074072 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2015-09-05 21:26 - 2015-09-05 21:26 - 00000000 ____D C:\Users\Christian\Downloads\Audio_Realtek_6.0.1.6543_W7x64_A
2015-09-05 21:25 - 2015-09-05 21:26 - 198417512 _____ C:\Users\Christian\Downloads\Audio_Realtek_6.0.1.6543_W7x64_A.zip
2015-09-03 15:18 - 2015-09-03 15:18 - 00000501 _____ C:\Users\Christian\Desktop\Geräte und Drucker - Verknüpfung (2).lnk
2015-09-03 15:11 - 2015-09-03 15:11 - 00000000 ____D C:\Users\Christian\AppData\Local\CEF
2015-09-03 15:10 - 2015-09-05 21:49 - 00003886 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2015-09-03 15:10 - 2015-09-03 15:10 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2015-09-03 15:10 - 2015-09-03 15:10 - 00002071 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2015-09-03 15:10 - 2015-09-03 15:10 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-09-03 15:09 - 2015-09-03 15:12 - 00000000 ____D C:\ProgramData\Adobe
2015-09-03 15:08 - 2015-09-03 15:11 - 00000000 ____D C:\Users\Christian\AppData\Local\Adobe
2015-09-01 15:11 - 2015-09-01 15:11 - 06814101 _____ C:\Users\Christian\Downloads\VID-20150901-WA0005.mp4
2015-08-30 21:44 - 2015-08-30 21:44 - 00000501 _____ C:\Users\Christian\Desktop\Geräte und Drucker - Verknüpfung.lnk
2015-08-30 19:10 - 2015-08-30 19:10 - 00322146 _____ C:\Users\Christian\Downloads\msys-1.0-vista64.zip
2015-08-30 18:56 - 2014-11-03 08:01 - 00000000 ____D C:\Users\Christian\Downloads\avr8-gnu-toolchain
2015-08-30 18:55 - 2015-08-30 18:55 - 90814496 _____ (Acresso Software Inc. ) C:\Users\Christian\Downloads\avr-toolchain-installer-3.4.2.1573-win32.win32.x86.exe
2015-08-30 18:54 - 2015-08-30 18:54 - 16355319 _____ (Igor Pavlov) C:\Users\Christian\Downloads\avr8-gnu-toolchain-installer-3.4.5.30-win32.any.x86.exe
2015-08-30 18:50 - 2015-09-11 01:13 - 00000000 ____D C:\Users\Christian\Documents\Projekt
2015-08-30 18:49 - 2015-08-30 18:49 - 00000219 _____ C:\Users\Christian\Documents\ledmatrix.aws
2015-08-30 18:48 - 2015-08-30 18:48 - 00000000 ____D C:\Users\Christian\Documents\default
2015-08-30 18:47 - 2015-08-30 18:48 - 00001821 _____ C:\Users\Christian\Documents\LEDMatrix.c
2015-08-30 18:47 - 2015-08-30 18:47 - 00002738 _____ C:\Users\Christian\Documents\LEDMatrix.aps
2015-08-30 18:47 - 2015-08-30 18:47 - 00000000 ____D C:\ProgramData\Atmel
2015-08-30 18:46 - 2015-08-30 18:46 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 9.0
2015-08-30 18:46 - 2013-11-11 09:42 - 00110592 _____ (Jungo) C:\WINDOWS\SysWOW64\wdapi1011.dll
2015-08-30 18:46 - 2008-07-04 08:51 - 00110592 _____ (Jungo) C:\WINDOWS\SysWOW64\wdapi921.dll
2015-08-30 18:41 - 2009-05-14 12:21 - 00157184 _____ (Jungo) C:\WINDOWS\SysWOW64\wdapi1001.dll
2015-08-30 18:41 - 2006-10-18 14:39 - 00141824 _____ (Jungo) C:\WINDOWS\SysWOW64\wdapi811.dll
2015-08-30 18:40 - 2015-09-11 01:35 - 00000000 ____D C:\Program Files (x86)\Atmel
2015-08-30 18:40 - 2015-08-30 18:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atmel AVR Tools
2015-08-30 18:40 - 2013-11-11 09:42 - 00143360 _____ (Jungo) C:\WINDOWS\SysWOW64\wdapi1010.dll
2015-08-30 18:40 - 2009-07-14 09:07 - 00143360 _____ (Jungo) C:\WINDOWS\SysWOW64\wdapi1002.dll
2015-08-30 18:40 - 2009-07-07 07:31 - 00290904 _____ C:\WINDOWS\SysWOW64\vc6-re200l.dll
2015-08-30 18:40 - 2009-07-07 07:31 - 00073728 _____ (Rogue Wave Software Inc) C:\WINDOWS\SysWOW64\RWUXThemeS.dll
2015-08-30 18:40 - 2009-05-20 11:46 - 05752320 _____ (BCGSoft Ltd) C:\WINDOWS\SysWOW64\BCGCBPRO103090.dll
2015-08-30 18:40 - 2009-01-29 16:25 - 04419584 _____ (BCGSoft Ltd) C:\WINDOWS\SysWOW64\BCGCBPRO10180.dll
2015-08-30 18:40 - 2002-01-05 02:37 - 00344064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr70.dll
2015-08-30 18:39 - 2015-08-30 18:39 - 34127176 _____ (Acresso Software Inc.) C:\Users\Christian\Downloads\AVRStudio4.18SP3.exe
2015-08-30 18:38 - 2015-08-30 18:39 - 29454952 _____ (Acresso Software Inc.) C:\Users\Christian\Downloads\AVRStudio4.18SP2.exe
2015-08-30 18:38 - 2015-08-30 18:39 - 122169248 _____ (Acresso Software Inc.) C:\Users\Christian\Downloads\AVRStudio4.18Setup.exe
2015-08-30 18:38 - 2015-08-30 18:38 - 29611744 _____ (Acresso Software Inc.) C:\Users\Christian\Downloads\AVRStudio4.18SP1.exe
2015-08-30 17:09 - 2015-09-18 17:57 - 00000000 ____D C:\Users\Christian\Desktop\Matrix
2015-08-30 16:56 - 2015-09-18 15:44 - 00000000 ____D C:\Users\Christian\Documents\NetBeansProjects
2015-08-30 16:53 - 2015-08-30 16:53 - 00000000 ____D C:\WinAVR-20100110
2015-08-30 16:53 - 2015-08-30 16:53 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinAVR-20100110
2015-08-30 16:52 - 2015-08-30 16:52 - 28840282 _____ C:\Users\Christian\Downloads\WinAVR-20100110-install(1).exe
2015-08-29 19:00 - 2015-08-29 19:00 - 01199856 _____ ( ) C:\Users\Christian\Downloads\hwmonitor_1.28.exe
2015-08-29 19:00 - 2015-08-29 19:00 - 00000950 _____ C:\Users\Public\Desktop\CPUID HWMonitor.lnk
2015-08-29 17:14 - 2015-08-29 19:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2015-08-29 17:14 - 2015-08-29 19:00 - 00000000 ____D C:\Program Files\CPUID
2015-08-29 17:14 - 2015-08-29 17:14 - 01629552 _____ ( ) C:\Users\Christian\Downloads\cpu-z_1.73-en.exe
2015-08-29 17:14 - 2015-08-29 17:14 - 00000889 _____ C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2015-08-29 17:02 - 2015-08-29 17:02 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UDPixel
2015-08-29 17:02 - 2015-08-29 17:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UDPixel
2015-08-29 17:02 - 2015-08-29 17:02 - 00000000 ____D C:\Program Files (x86)\UDPixel
2015-08-28 22:13 - 2015-08-29 15:44 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-08-28 21:57 - 2015-08-28 21:57 - 28840282 _____ C:\Users\Christian\Downloads\WinAVR-20100110-install.exe
2015-08-28 21:49 - 2015-08-28 21:49 - 00002099 _____ C:\Users\Public\Desktop\NetBeans IDE 8.0.2.lnk
2015-08-28 21:49 - 2015-08-28 21:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NetBeans
2015-08-28 21:46 - 2015-08-28 21:52 - 00000000 ____D C:\Program Files (x86)\NetBeans 8.0.2
2015-08-28 21:45 - 2015-08-30 17:00 - 00000000 ____D C:\Users\Christian\Documents\Matrix
2015-08-28 21:44 - 2015-08-28 21:45 - 00000000 ____D C:\Users\Christian\AppData\Roaming\NetBeans
2015-08-28 21:44 - 2015-08-28 21:44 - 00000000 ____D C:\Users\Christian\AppData\Local\NetBeans
2015-08-28 21:26 - 2015-08-28 21:27 - 00049270 _____ C:\Users\Christian\Downloads\ERFOS-Prog-S.zip
2015-08-28 21:25 - 2015-08-28 21:52 - 00000000 ____D C:\Users\Christian\.nbi
2015-08-28 21:24 - 2015-08-28 21:24 - 65284640 _____ C:\Users\Christian\Downloads\netbeans-8.0.2-cpp-windows(1).exe
2015-08-26 22:26 - 2015-08-26 22:26 - 08194130 _____ C:\Users\Christian\Downloads\Firmware_Speedport_W723V_TypA_1.01.010.bin
2015-08-26 22:26 - 2015-08-26 22:26 - 00017216 _____ C:\Users\Christian\Downloads\Speedport_W723V_A_V1.01.010_26.08.15_2226.bin

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-09-21 19:25 - 2015-08-07 15:03 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1713392027-413273371-3575476453-1002
2015-09-21 19:22 - 2015-08-07 15:31 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2015-09-21 19:20 - 2015-08-08 18:54 - 00000000 ___RD C:\Users\Christian\OneDrive
2015-09-21 19:16 - 2015-08-08 17:52 - 01118829 _____ C:\WINDOWS\WindowsUpdate.log
2015-09-21 19:16 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-09-21 19:15 - 2013-08-22 16:46 - 00338975 _____ C:\WINDOWS\setupact.log
2015-09-21 19:15 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-09-21 14:15 - 2015-08-09 22:10 - 00000000 ____D C:\Users\Christian\AppData\Local\ClassicShell
2015-09-21 14:15 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-09-21 14:09 - 2014-11-21 05:35 - 01776918 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-09-21 14:09 - 2014-11-21 04:45 - 00765582 _____ C:\WINDOWS\system32\perfh007.dat
2015-09-21 14:09 - 2014-11-21 04:45 - 00159366 _____ C:\WINDOWS\system32\perfc007.dat
2015-09-21 14:01 - 2015-08-10 16:50 - 00000000 ____D C:\Users\Christian\AppData\Roaming\TS3Client
2015-09-21 14:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-09-21 09:52 - 2015-08-16 14:53 - 00003946 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{D4327FB0-6705-489D-B8A9-90B3230ECE55}
2015-09-20 22:28 - 2015-08-11 16:28 - 00000000 ____D C:\Users\Christian\AppData\Roaming\vlc
2015-09-20 22:13 - 2015-08-10 18:29 - 00000000 ____D C:\Users\Christian\Documents\LED Matrix
2015-09-20 20:38 - 2015-08-07 14:56 - 00000000 ____D C:\Users\Christian\AppData\Local\VirtualStore
2015-09-20 10:51 - 2015-08-19 00:11 - 00015238 _____ C:\Users\Christian\Documents\Lärmprotokoll.ods
2015-09-20 10:06 - 2015-08-10 11:43 - 00000000 ____D C:\WINDOWS\System32\Tasks\Abelssoft
2015-09-20 10:06 - 2015-08-10 11:43 - 00000000 ____D C:\Program Files (x86)\CheckDrive
2015-09-19 12:59 - 2015-08-07 15:31 - 00000000 ____D C:\Program Files (x86)\Kaspersky Lab
2015-09-19 12:58 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2015-09-19 12:58 - 2012-07-26 07:37 - 00000000 ____D C:\Users\Default.migrated
2015-09-18 00:12 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-09-16 22:27 - 2015-08-07 14:56 - 00000000 ____D C:\Users\Christian\AppData\Local\Packages
2015-09-11 01:31 - 2013-05-21 09:42 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-09-10 10:03 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-09-09 12:59 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2015-09-09 11:20 - 2013-08-22 16:44 - 00404528 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-09-09 11:16 - 2014-11-21 05:13 - 00000000 ____D C:\Program Files\Windows Journal
2015-09-09 11:16 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-09-09 00:27 - 2015-08-07 16:45 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-09-05 21:35 - 2013-09-24 04:17 - 00000000 ___HD C:\Program Files (x86)\Temp
2015-09-05 21:34 - 2013-09-24 04:18 - 00000000 ____D C:\Dolby PCEE4
2015-09-05 21:33 - 2015-08-08 17:54 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2015-09-05 21:29 - 2014-11-20 20:24 - 00012070 _____ C:\WINDOWS\PFRO.log
2015-09-05 21:26 - 2013-09-24 04:17 - 00247560 _____ C:\WINDOWS\system32\Drivers\RTConvEQ.dat
2015-09-05 21:26 - 2013-09-24 04:17 - 00039672 _____ C:\WINDOWS\system32\Drivers\RtPCEE3.DAT
2015-09-05 21:26 - 2013-09-24 04:17 - 00016494 _____ C:\WINDOWS\system32\Drivers\RtPCEE4.DAT
2015-09-05 21:26 - 2013-09-24 04:17 - 00001448 _____ C:\WINDOWS\system32\Drivers\RtHdatEx.dat
2015-09-05 21:26 - 2013-09-24 04:17 - 00000712 _____ C:\WINDOWS\system32\Drivers\RTEQEX0.dat
2015-09-05 21:26 - 2013-09-24 04:17 - 00000520 _____ C:\WINDOWS\system32\Drivers\RTEQEX3.dat
2015-09-05 21:26 - 2013-09-24 04:17 - 00000520 _____ C:\WINDOWS\system32\Drivers\RTEQEX2.dat
2015-09-05 21:26 - 2013-09-24 04:17 - 00000520 _____ C:\WINDOWS\system32\Drivers\RTEQEX1.dat
2015-09-05 21:26 - 2013-09-24 04:17 - 00000176 _____ C:\WINDOWS\system32\Drivers\RTHDAEQ1.dat
2015-09-05 21:26 - 2013-09-24 04:17 - 00000024 _____ C:\WINDOWS\system32\Drivers\rtkhdaud.dat
2015-09-03 15:11 - 2015-08-07 14:57 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Adobe
2015-09-02 20:38 - 2015-08-08 18:00 - 00000000 ____D C:\Users\Christian
2015-08-30 18:46 - 2015-08-08 18:25 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-08-29 15:44 - 2015-08-08 14:23 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-08-26 18:37 - 2015-08-07 16:45 - 134753440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2015-09-16 22:10 - 2015-09-16 22:10 - 0000057 _____ () C:\ProgramData\Ament.ini
2013-09-24 04:18 - 2013-09-24 04:18 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

Einige Dateien in TEMP:
====================
C:\Users\Christian\AppData\Local\Temp\autorun.dll
C:\Users\Christian\AppData\Local\Temp\nbi-cleaner2482045441530618938.exe


==================== Bamital & volsnap =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2015-09-16 15:35

==================== Ende von FRST.txt ============================
         

Und dies der Inhalt der Addition.txt:


Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:15-09-2015
durchgeführt von Christian (2015-09-21 19:28:14)
Gestartet von C:\Users\Christian\Desktop
Windows 8.1 (X64) (2015-08-08 16:23:25)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-1713392027-413273371-3575476453-500 - Administrator - Disabled)
Christian (S-1-5-21-1713392027-413273371-3575476453-1002 - Administrator - Enabled) => C:\Users\Christian
Gast (S-1-5-21-1713392027-413273371-3575476453-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1713392027-413273371-3575476453-1006 - Limited - Enabled)
UpdatusUser (S-1-5-21-1713392027-413273371-3575476453-1001 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Kaspersky Internet Security (Enabled - Up to date) {B41C7598-35F6-4D89-7D0E-7ADE69B4047B}
AS: Kaspersky Internet Security (Enabled - Up to date) {0F7D947C-13CC-4207-47BE-41AC12334EC6}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Kaspersky Internet Security (Enabled) {8C27F4BD-7F99-4CD1-5651-D3EB97674300}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

Acer Device Fast-lane (HKLM\...\{3F62D2FD-13C1-49A2-8B5D-47623D9460D7}) (Version: 1.00.3011 - Acer Incorporated)
Acer Power Management (HKLM\...\{91F52DE4-B789-42B0-9311-A349F10E5479}) (Version: 7.00.3013 - Acer Incorporated)
Acer Recovery Management (HKLM\...\{07F2005A-8CAC-4A4B-83A2-DA98A722CA61}) (Version: 6.00.3016 - Acer Incorporated)
AcerCloud Docs (HKLM-x32\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.01.2008 - Acer Incorporated)
AcerCloud Portal (HKLM-x32\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 2.02.2021 - Acer Incorporated)
Adobe Acrobat Reader DC - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AC0F074E4100}) (Version: 15.008.20082 - Adobe Systems Incorporated)
Atmel ARM GNU Toolchain (HKLM-x32\...\{736745FA-6A66-4654-9397-1321B2B4D196}) (Version: 4.8.1443 - Atmel)
Atmel AVR (32 bit) GNU Toolchain (HKLM-x32\...\{C342B5D0-D95A-4B39-9262-2CC3CE3F39B2}) (Version: 3.4.1067 - Atmel)
Atmel AVR (8 bit) GNU Toolchain (HKLM-x32\...\{6E3D61B8-F3EC-462D-91F9-49D03A97053E}) (Version: 3.4.1061 - Atmel)
Atmel Driver Files (HKLM-x32\...\{9131C2E1-DD85-4BFD-96E0-CB7BC31019BE}) (Version: 7.0.949 - Atmel Corporation)
Atmel Jungo USB Driver (HKLM-x32\...\{54324D5D-7DCD-4557-9E13-B831D7EF9680}) (Version: 7.0.129 - Atmel)
Atmel Kits (HKLM-x32\...\{3C85CFF3-91DE-4520-B836-5F4C2F247FF5}) (Version: 6.2.338 - Atmel)
Atmel LibUSB0 Driver (x64) (HKLM\...\{C1F86585-CDAC-4ABE-B163-161DDBCC4332}) (Version: 7.0.125 - Atmel)
Atmel Segger USB Drivers (501b) (HKLM-x32\...\{D01B6BB2-0E07-4137-B6D7-BFCDC76C9F32}) (Version: 7.0.311 - Atmel)
Atmel Studio 6.2 (HKLM-x32\...\{C179E170-07D6-4D8D-A34D-FDB3FCC79FEC}) (Version: 6.2.1563 - Atmel)
Atmel Studio Backend (HKLM-x32\...\{1B2C7C63-4659-49A1-8BC9-F845FE0F0D35}) (Version: 1.12.4144 - Atmel Corporation)
Atmel Studio Memory Logger (HKLM-x32\...\{053538A7-0B52-4CA9-9728-D506BFAA42BD}) (Version: 6.2.171 - Atmel)
Atmel USB Driver Package (HKLM-x32\...\{47e06c91-4767-40f5-9833-04a28aec7c1a}) (Version: 7.0.888 - Atmel)
Atmel WinUSB (x32 Version: 6.2.32 - Atmel) Hidden
AtmelSoftwareFramework (HKLM-x32\...\{5E9D1D3F-F99E-4182-B462-5B2C08B987EA}) (Version: 3.22.0.1325 - Atmel)
AVR Jungo USB (HKLM-x32\...\{E8F8861D-98E0-43FF-9E48-AC236CC3BE4E}) (Version: 10.2 - Atmel)
AVR macro Assembler (HKLM-x32\...\{251D9F73-6297-4941-9016-EA787F708FDF}) (Version: 2.1.1175 - Atmel)
AVR Toolchain (HKLM-x32\...\{2CE5E313-EC49-4527-A752-6DC89FE51C0D}) (Version: 3.4.2.1573 - Atmel)
AVRStudio4 (HKLM-x32\...\{D5D88F8F-FDA4-4CF4-9F3E-3F40118C2120}) (Version: 4.18.716 - Atmel)
AVRStudio4 (x32 Version: 4.18.684 - Atmel) Hidden
AvrTools (HKLM-x32\...\{0C439E7E-DE2B-4AC0-8BEB-DAD70FAE2918}) (Version: 1.00.0000 - Atmel)
Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
Broadcom Card Reader Driver Installer (HKLM\...\{F0A7DF2F-0BE0-470F-B137-D7A19F977189}) (Version: 15.4.7.1 - Broadcom Corporation)
ChamSys MagicQ (HKLM-x32\...\MagicQ) (Version: 1.6.6.8 - ChamSys Limited)
Classic Shell (HKLM\...\{7C129CF8-199F-4269-AAEE-60B5D8D716E2}) (Version: 4.2.1 - IvoSoft)
clear.fi Media (HKLM-x32\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 2.02.2012 - Acer Incorporated)
clear.fi Photo (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 2.02.2016 - Acer Incorporated)
clear.fi SDK - Video 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden
clear.fi SDK- Movie 2 (x32 Version: 2.1.2606 - CyberLink Corp.) Hidden
CodeLite (HKLM-x32\...\CodeLite_is1) (Version: 8.2.3 - Eran Ifrah)
CPUID CPU-Z 1.73 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
CPUID HWMonitor 1.28 (HKLM\...\CPUID HWMonitor_is1) (Version:  - )
CyberLink MediaEspresso 6.5 (HKLM-x32\...\InstallShield_{E3739848-5329-48E3-8D28-5BBD6E8BE384}) (Version: 6.5.3729_45993 - CyberLink Corp.)
Delicious: Emily's Childhood Memories Premium Edition (x32 Version: 3.0.2.32 - WildTangent) Hidden
Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.7000.7 - Dolby Laboratories Inc)
Dritek Radio Controller (HKLM-x32\...\RadioController) (Version: 2.02.2001.0803 - Dritek System Inc.)
eBay Worldwide (HKLM-x32\...\{91589413-6675-4C27-8AFC-EFB9103B90A5}) (Version: 2.4.0105 - OEM)
ETDWare PS/2-X64 11.6.16.003_WHQL (HKLM\...\Elantech) (Version: 11.6.16.003 - ELAN Microelectronic Corp.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.93 - Google Inc.)
Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden
Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.110 - WildTangent) Hidden
HP Officejet 6700 - Grundlegende Software für das Gerät (HKLM\...\{9086D601-50B7-491D-A143-28193DADE36B}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Officejet 6700 Hilfe (HKLM-x32\...\{E1AE0CB7-1333-4728-8520-CB3F88A252B4}) (Version: 140.0.2.2 - Hewlett Packard)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
Identity Card (HKLM-x32\...\{3D9CB654-99AD-4301-89C6-0D12A790767C}) (Version: 2.00.3004 - Acer Incorporated)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.4.1001 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Java 8 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218051F0}) (Version: 8.0.510 - Oracle Corporation)
Jewel Match 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden
John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{77E7AE5C-181C-4CAF-ADBF-946F11C1CE26}) (Version: 16.0.0.614 - Kaspersky Lab)
Kaspersky Internet Security (x32 Version: 16.0.0.614 - Kaspersky Lab) Hidden
Launch Manager (HKLM-x32\...\LManager) (Version: 7.0.10 - Acer Inc.)
LibreOffice 4.4.5.2 (HKLM-x32\...\{406EECCC-AF98-4F2C-A99F-FED788F7580C}) (Version: 4.4.5.2 - The Document Foundation)
Live Updater (HKLM-x32\...\{EE26E302-876A-48D9-9058-3129E5B99999}) (Version: 2.00.3007 - Acer Incorporated)
Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden
Maxima (sbcl) 5.36.1 (HKLM-x32\...\Maxima-sbcl-5.36.1_is1) (Version: 5.36.1 - The Maxima Development Team)
Microsoft .NET Framework 4 Multi-Targeting Pack (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft SQL Server 2008 R2 Management Objects (HKLM-x32\...\{4E968D9C-21A7-4915-B698-F7AEB913541D}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft SQL Server System CLR Types (HKLM-x32\...\{2A2F3AE8-246A-4252-BB26-1BEB45627074}) (Version: 10.50.1447.4 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 (HKLM-x32\...\{B7E38540-E355-3503-AFD7-635B2F2F76E1}) (Version: 9.0.30729.4974 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Runtime - 10.0.30319 (HKLM-x32\...\{6A86554B-8928-30E4-A53C-D7337689134D}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual Studio 2010 Shell (Isolated) - ENU (HKLM-x32\...\{D64B6984-242F-32BC-B008-752806E5FC44}) (Version: 10.0.30319 - Microsoft Corporation)
Mozilla Firefox 40.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 40.0.3 (x86 de)) (Version: 40.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 40.0.3.5716 - Mozilla)
Nero BackItUp 12 Essentials OEM.a01 (HKLM-x32\...\{4CA8F973-6377-4ABF-9ED5-CC2323B3C000}) (Version: 12.5.00500 - Nero AG)
NetBeans IDE 8.0.2 (HKLM-x32\...\nbi-nb-base-8.0.2.0.201411181905) (Version: 8.0.2 - NetBeans.org)
Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.2.3.51r2 - Symantec Corporation)
Norton Online Backup ARA (x32 Version: 4.1.0.14 - Symantec Corporation) Hidden
NVIDIA Grafiktreiber 327.02 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 327.02 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
NVIDIA Update 1.11.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.11.3 - NVIDIA Corporation)
Office Addin (HKLM-x32\...\{6D2BBE1D-E600-4695-BA37-0B0E605542CC}) (Version: 2.02.2008 - Acer)
Opera Stable 31.0.1889.230 (HKLM-x32\...\Opera 31.0.1889.230) (Version: 31.0.1889.230 - Opera Software)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden
Prerequisite installer (x32 Version: 12.0.0003 - Nero AG) Hidden
Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: 8.0.0.220 - Qualcomm Atheros Communications)
Qualcomm Atheros WiFi Driver Installation (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 11.39 - Qualcomm Atheros)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6543 - Realtek Semiconductor Corp.)
Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee)
Spotify (HKLM-x32\...\Spotify) (Version: 0.8.4.99.ga249b5f1 - Spotify AB)
Tales of Lagoona (x32 Version: 2.2.0.110 - WildTangent) Hidden
TDM-GCC (HKLM-x32\...\TDM-GCC) (Version: 1.1309.0 - TDM)
TeamSpeak 3 Client (HKU\S-1-5-21-1713392027-413273371-3575476453-1002\...\TeamSpeak 3 Client) (Version: 3.0.17 - TeamSpeak Systems GmbH)
UDPixel.exe (HKLM-x32\...\UDPixel) (Version:  - )
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
Visual Studio 2005 Tools for Office Second Edition Runtime (HKLM-x32\...\Microsoft Visual Studio 2005 Tools for Office Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime (HKLM-x32\...\Visual Studio Tools for the Office system 3.0 Runtime) (Version:  - Microsoft Corporation)
Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (HKLM-x32\...\{8FB53850-246A-3507-8ADE-0060093FFEA6}.KB949258) (Version: 1 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN)
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.4.0 - WildTangent)
WildTangent Games App (x32 Version: 4.0.10.5 - WildTangent) Hidden
WinAVR 20100110 (remove only) (HKLM-x32\...\WinAVR-20100110) (Version: 20100110 - )
WinRAR 5.21 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.21.0 - win.rar GmbH)

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

CustomCLSID: HKU\S-1-5-21-1713392027-413273371-3575476453-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)

==================== Wiederherstellungspunkte =========================

30-08-2015 18:39:59 Installed AVRStudio4
09-09-2015 00:09:17 Windows Update
11-09-2015 01:28:46 Atmel USB Driver Package
18-09-2015 12:06:18 Geplanter Prüfpunkt

==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {12E23E4A-FA91-403B-840D-541CE5D5FD9A} - System32\Tasks\Abelssoft\StartBackgroundguardWithWindows => C:\Program Files (x86)\CheckDrive\CheckDrive.exe
Task: {1399F9E2-DEC0-4775-94BC-E4EB9FAE378A} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2013-01-23] (Acer Incorporated)
Task: {20DD3ED4-8C5F-4067-86FB-F0E47610695F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-10] (Google Inc.)
Task: {43842D03-77E0-40DE-A22F-46BB020348DF} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2013-03-15] (Acer Incorporated)
Task: {5AF83C15-4813-4C66-859A-F0D33BDEE7D9} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser
Task: {65C78933-97CA-4A5A-97A0-EE9BA7FA6F76} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2013-01-22] ()
Task: {7BB40846-0F15-4281-9C98-1B332B1D4D1C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-10] (Google Inc.)
Task: {9CD50B61-E730-4769-8CA4-4F750FFFC665} - System32\Tasks\Opera scheduled Autoupdate 1441894134 => C:\Program Files (x86)\Opera\launcher.exe [2015-09-02] (Opera Software)
Task: {C23148F1-B9C8-4BA2-A109-73D522BA4BED} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2013-01-22] ()
Task: {C5D8C408-4267-4BEF-A371-9B8308F720CD} - System32\Tasks\DeviceDetector => C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe [2013-02-08] (CyberLink)
Task: {EFE7304D-F48B-4C9D-A373-DB9830A348CD} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-08-26] (Microsoft Corporation)
Task: {F7CB8345-F0EB-4EA3-BFD9-2123D63BE176} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2013-09-05 02:36 - 2013-09-05 02:36 - 00013088 _____ () C:\Program Files\NVIDIA Corporation\CoProcManager\detoured.dll
2013-01-25 00:09 - 2013-01-25 00:09 - 00011264 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\ActivateDesktopDebugger\ActivateDesktopDebugger.dll
2013-01-25 00:05 - 2013-01-25 00:05 - 00084992 _____ () C:\Program Files (x86)\Bluetooth Suite\Modules\Map\MAP.dll
2013-01-25 00:12 - 2013-01-25 00:12 - 00012928 _____ () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe
2015-07-08 23:18 - 2015-07-08 23:18 - 00794920 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\kpcengine.2.3.dll
2013-09-24 04:08 - 2012-06-25 19:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)

AlternateDataStreams: C:\Users\Christian\OneDrive:ms-properties

==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)


==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-1713392027-413273371-3575476453-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Christian\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\acer01.jpg
DNS Servers: 192.168.1.2
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKLM\...\StartupApproved\Run32: => "Norton Online Backup"

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{5C9742D2-971E-4904-9983-D9037BE02A9D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{FCC8A15E-6A5F-4EB4-8FAE-DD81171CAD43}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{E9D4D2C8-5AD1-414D-9BB0-2D6CF65C311F}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe
FirewallRules: [{4ABB4AB8-785B-4A36-AC30-5A05623C6A9D}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\virtualdrive.exe
FirewallRules: [{6AD60F38-CFEF-48F3-B0B1-1306B42EE628}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe
FirewallRules: [{6EBB7FF7-1773-4BD1-8C0C-43E64A437AF3}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\Sdd.exe
FirewallRules: [{CE1AFF87-AA86-4A4E-9CE3-49503E5C4835}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{D10D2B50-61E6-42B8-9D75-45BA0526BA31}] => (Allow) C:\Program Files (x86)\Acer\Acer Cloud\ccd.exe
FirewallRules: [{85A12DD3-F870-4AA8-892E-A2650ACE564F}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{FA2198F0-1D1C-476B-877E-FE83D4818D48}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\WindowsUpnp.exe
FirewallRules: [{26521814-E9E0-4BEE-AEE7-1E8B80BEDAA1}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{D454724D-63B9-480C-88F1-88E547C880EA}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Photo\DMCDaemon.exe
FirewallRules: [{47C3847F-A4CB-4191-83AC-9E3C2A2A75B0}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK21\Movie\PlayMovie.exe
FirewallRules: [{BEBD1041-92DE-4288-9D8E-793113ADE5BA}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK21\Video\MusicPlayer.exe
FirewallRules: [{B607D784-0150-400F-B7F1-A1E308A18F58}] => (Allow) C:\Program Files (x86)\Acer\clear.fi SDK21\Video\VideoPlayer.exe
FirewallRules: [{F7480101-7AF2-4CFF-9527-CD29A7285CCD}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{497CB74D-1A4B-434C-93D8-0310256AC94E}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\WindowsUpnpMV.exe
FirewallRules: [{00C30469-3868-439B-AC7E-08BA4EA7216F}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{9E691AC1-0A19-45D5-911F-F3CEBDEB1C43}] => (Allow) C:\Program Files (x86)\Acer\clear.fi Media\DMCDaemon.exe
FirewallRules: [{A5AD7228-F5C7-47DF-812D-E24BC28D56D6}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{E6AF4D3E-56D2-4BA9-B360-879D4785B846}] => (Allow) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe
FirewallRules: [{A08DC21F-DEBE-40D9-8D20-FB977DD401AC}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{46C8F43C-CD11-4D9B-8F66-08990DED358B}] => (Allow) C:\Program Files (x86)\Spotify\spotify.exe
FirewallRules: [{1A3D3C35-5139-44C7-996D-4A4001150FA1}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{2623E709-25D8-4C07-9B96-53A269931CBC}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{DDC0F819-EAB5-4BA6-AA3E-F268B439F5F2}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe
FirewallRules: [{7B3E6503-8FE3-4BE5-9890-D815AD332CC1}] => (Allow) C:\Program Files (x86)\Nero\Nero 12\Nero BackItUp\BackItUp.exe
FirewallRules: [{189245C7-523A-46EE-89DB-77CCF1C57778}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{37BCAA87-7F06-4875-8427-D67BF0E5E68C}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{1B6249B3-9717-452E-8891-BE94D590B5A5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{A585B492-62A4-471D-8D16-9DBF50A59902}] => (Allow) C:\Program Files\HP\HP Officejet 6700\bin\FaxApplications.exe
FirewallRules: [{36D7859D-0AF9-47B4-A325-569C6565FBC5}] => (Allow) C:\Program Files\HP\HP Officejet 6700\bin\DigitalWizards.exe
FirewallRules: [{0F86B5A7-83DF-425D-BCB1-3AF0B4A4FF1D}] => (Allow) C:\Program Files\HP\HP Officejet 6700\bin\SendAFax.exe
FirewallRules: [{AE64684A-3ABD-4B5B-B5FD-FE69E4D8B6DD}] => (Allow) C:\Program Files\HP\HP Officejet 6700\Bin\DeviceSetup.exe
FirewallRules: [{327A232F-EE2C-42D7-A9AA-C2E7D3D0E1F6}] => (Allow) C:\Program Files\HP\HP Officejet 6700\Bin\HPNetworkCommunicator.exe
FirewallRules: [{D3551ABE-658A-4AFF-9F1E-5C4CC1891694}] => (Allow) C:\Program Files\HP\HP Officejet 6700\Bin\HPNetworkCommunicatorCom.exe

==================== Fehlerhafte Geräte im Gerätemanager =============

Name: Bluetooth Audio Device
Description: Bluetooth Audio Device
Class Guid: {4d36e96c-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros Communications
Service: BTATH_A2DP
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

Name: Virtual Bluetooth Support (Include Audio)
Description: Virtual Bluetooth Support (Include Audio)
Class Guid: {c7c038ad-1f2d-44d4-b2fe-d912be20e6d5}
Manufacturer: Qualcomm Atheros Communications
Service: AthBTPort
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver

Name: Bluetooth LWFLT Device
Description: Bluetooth LWFLT Device
Class Guid: {c7c038ad-1f2d-44d4-b2fe-d912be20e6d5}
Manufacturer: Qualcomm Atheros Communications
Service: BTATH_LWFLT
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (09/20/2015 08:38:40 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm mqqt.exe, Version 0.0.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 1af0

Startzeit: 01d0f3d37e771c07

Endzeit: 2

Anwendungspfad: C:\Program Files (x86)\ChamSys Ltd\MagicQ PC\mqqt.exe

Berichts-ID: cb95b1c4-5fc6-11e5-be9e-3c77e6af533c

Vollständiger Name des fehlerhaften Pakets: 

Anwendungs-ID, die relativ zum fehlerhaften Paket ist:

Error: (09/18/2015 12:14:55 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 40.0.3.5716, Zeitstempel: 0x55ddb213
Name des fehlerhaften Moduls: mozglue.dll, Version: 40.0.3.5716, Zeitstempel: 0x55dda062
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000e250
ID des fehlerhaften Prozesses: 0xaec
Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0
Pfad der fehlerhaften Anwendung: plugin-container.exe1
Pfad des fehlerhaften Moduls: plugin-container.exe2
Berichtskennung: plugin-container.exe3
Vollständiger Name des fehlerhaften Pakets: plugin-container.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: plugin-container.exe5

Error: (09/18/2015 12:14:54 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 40.0.3.5716, Zeitstempel: 0x55ddb213
Name des fehlerhaften Moduls: mozglue.dll, Version: 40.0.3.5716, Zeitstempel: 0x55dda062
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000e250
ID des fehlerhaften Prozesses: 0x470
Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0
Pfad der fehlerhaften Anwendung: plugin-container.exe1
Pfad des fehlerhaften Moduls: plugin-container.exe2
Berichtskennung: plugin-container.exe3
Vollständiger Name des fehlerhaften Pakets: plugin-container.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: plugin-container.exe5

Error: (09/18/2015 12:14:46 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 40.0.3.5716, Zeitstempel: 0x55ddb213
Name des fehlerhaften Moduls: mozglue.dll, Version: 40.0.3.5716, Zeitstempel: 0x55dda062
Ausnahmecode: 0x80000003
Fehleroffset: 0x0000e250
ID des fehlerhaften Prozesses: 0xc04
Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0
Pfad der fehlerhaften Anwendung: plugin-container.exe1
Pfad des fehlerhaften Moduls: plugin-container.exe2
Berichtskennung: plugin-container.exe3
Vollständiger Name des fehlerhaften Pakets: plugin-container.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: plugin-container.exe5

Error: (09/18/2015 12:11:30 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm LiveComm.exe, Version 17.5.9600.20911 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: 1434

Startzeit: 01d0f0cfff32dcaf

Endzeit: 4294967295

Anwendungspfad: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\LiveComm.exe

Berichts-ID: 07b2897f-5d89-11e5-be9c-3c77e6af533c

Vollständiger Name des fehlerhaften Pakets: microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe

Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ppleae38af2e007f4358a809ac99a64a67c1

Error: (09/11/2015 01:14:49 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: atbackend.exe, Version: 0.0.0.0, Zeitstempel: 0x54dde291
Name des fehlerhaften Moduls: vtoc.dll, Version: 0.0.0.0, Zeitstempel: 0x470409c1
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0001baa7
ID des fehlerhaften Prozesses: 0xf88
Startzeit der fehlerhaften Anwendung: 0xatbackend.exe0
Pfad der fehlerhaften Anwendung: atbackend.exe1
Pfad des fehlerhaften Moduls: atbackend.exe2
Berichtskennung: atbackend.exe3
Vollständiger Name des fehlerhaften Pakets: atbackend.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: atbackend.exe5

Error: (09/11/2015 10:29:29 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: atbackend.exe, Version: 0.0.0.0, Zeitstempel: 0x54dde291
Name des fehlerhaften Moduls: MSVCR70.dll, Version: 7.0.9466.0, Zeitstempel: 0x3c36e574
Ausnahmecode: 0x80000003
Fehleroffset: 0x000123b2
ID des fehlerhaften Prozesses: 0xcac
Startzeit der fehlerhaften Anwendung: 0xatbackend.exe0
Pfad der fehlerhaften Anwendung: atbackend.exe1
Pfad des fehlerhaften Moduls: atbackend.exe2
Berichtskennung: atbackend.exe3
Vollständiger Name des fehlerhaften Pakets: atbackend.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: atbackend.exe5

Error: (09/11/2015 01:32:21 AM) (Source: HelpLibManager) (EventID: 1003) (User: )
Description: An error occurred while updating local content: Microsoft.Help.CacheLib.CacheLibCabSignatureException: The digital signature on file C:\ProgramData\Microsoft\HelpLibrary\content\Atmel Corporation\incoming\30d931ac-8040-48a8-af12-04ae112f96de\MemoryLoggerUserGuide_4767.cab could not be verified. 
   at Microsoft.Help.CacheLib.DocumentationCache.<>c__DisplayClass5c.<VerifyAndExtractPackages>b__58(String cabFile)
   at Microsoft.Help.CacheLib.Extensions.Each[T](IEnumerable`1 that, Action`1 lambda)
   at Microsoft.Help.CacheLib.DocumentationCache.VerifyAndExtractPackages(VendorName vendorName, ChangeDescription change, StatusCallback`1 statusCallback, CertificateCheckCallback certCheckCallback)
   at Microsoft.Help.CacheLib.DocumentationCache.IntegrateChange(VendorName vendorName, ChangeDescription change, StatusCallback`1 statusCallback, CertificateCheckCallback certCheckCallback)
   at Microsoft.Help.CacheLib.DocumentationCache.Update(VendorName vendorName, Boolean checkForOnlineUpdates, StatusCallback`1 statusCallback, CertificateCheckCallback certCheckCallback)
   at Microsoft.Help.CacheLib.CacheManager.<>c__DisplayClass24.<UpdateAsync>b__23()
   at Microsoft.Help.CacheLib.AsyncOperationRunner.Run(Object state)

Error: (09/08/2015 04:18:50 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: GWXUX.exe, Version: 6.3.9600.17924, Zeitstempel: 0x55959290
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.3.9600.17936, Zeitstempel: 0x55a68e0c
Ausnahmecode: 0xc0000005
Fehleroffset: 0x000000000003d86e
ID des fehlerhaften Prozesses: 0x18d4
Startzeit der fehlerhaften Anwendung: 0xGWXUX.exe0
Pfad der fehlerhaften Anwendung: GWXUX.exe1
Pfad des fehlerhaften Moduls: GWXUX.exe2
Berichtskennung: GWXUX.exe3
Vollständiger Name des fehlerhaften Pakets: GWXUX.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: GWXUX.exe5

Error: (09/07/2015 02:00:24 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: 80070005


Systemfehler:
=============
Error: (09/21/2015 07:17:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069

Error: (09/21/2015 07:17:24 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%1326

Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).

Error: (09/21/2015 02:05:19 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069

Error: (09/21/2015 02:05:19 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%1326

Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).

Error: (09/21/2015 12:19:03 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalAktivierung{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)Nicht verfügbarNicht verfügbar

Error: (09/20/2015 01:16:07 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069

Error: (09/20/2015 01:16:07 AM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%1326

Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).

Error: (09/19/2015 01:04:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069

Error: (09/19/2015 01:04:14 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: 
%%1326

Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).

Error: (09/09/2015 11:34:03 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1069


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i7-3612QM CPU @ 2.10GHz
Prozentuale Nutzung des RAM: 23%
Installierter physikalischer RAM: 8007.27 MB
Verfügbarer physikalischer RAM: 6119.84 MB
Summe virtueller Speicher: 22343.27 MB
Verfügbarer virtueller Speicher: 20410.57 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:448.75 GB) (Free:378.27 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 6B4C9261)

Partition: GPT.

==================== Ende von Addition.txt ============================
         

Viele Grüße,
Chris
__________________

Alt 22.09.2015, 06:53   #4
Deathkid535
/// Malwareteam
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Hi,

mach mal bitte folgende Anleitung: Zustand der Festplatte herausfinden - so gehts - Anleitungen

Alt 22.09.2015, 09:40   #5
X3nion
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Hey, okay alles klar!
Hier das Log von CrystalDiskInfo:

Code:
ATTFilter
----------------------------------------------------------------------------
CrystalDiskInfo 6.5.2 (C) 2008-2015 hiyohiyo
                                Crystal Dew World : hxxp://crystalmark.info/
----------------------------------------------------------------------------

    OS : Windows 8.1  [6.3 Build 9600] (x64)
  Date : 2015/09/22 10:39:40

-- Controller Map ----------------------------------------------------------
 + Intel(R) 7 Series Chipset Family SATA AHCI Controller [ATA]
   - WDC WD5000LPVX-22V0TT0
   - HL-DT-ST DVDRAM GT90N
 - Microsoft-Controller für Speicherplätze [SCSI]

-- Disk List ---------------------------------------------------------------
 (1) WDC WD5000LPVX-22V0TT0 : 500,1 GB [0/0/0, pd1] - wd
 (2) WDC WD10JMVW-11AJGS1 : 1000,2 GB [1/0/0, sa1] - wd

----------------------------------------------------------------------------
 (1) WDC WD5000LPVX-22V0TT0
----------------------------------------------------------------------------
           Model : WDC WD5000LPVX-22V0TT0
        Firmware : 01.01A01
   Serial Number : WD-WX51A73F1519
       Disk Size : 500,1 GB (8,4/137,4/500,1/500,1)
     Buffer Size : 8192 KB
     Queue Depth : 32
    # of Sectors : 976773168
   Rotation Rate : 5400 RPM
       Interface : Serial ATA
   Major Version : ACS-2
   Minor Version : ----
   Transfer Mode : SATA/600 | SATA/600
  Power On Hours : 1999 Std.
  Power On Count : 1227 mal
     Temperature : 23 C (73 F)
   Health Status : Gut
        Features : S.M.A.R.T., APM, 48bit LBA, NCQ
       APM Level : 00FEh [ON]
       AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 00000000003C Lesefehlerrate
03 152 151 _21 00000000054E Mittlere Anlaufzeit
04 _98 _98 __0 000000000A16 Start/Stopp-Zyklen der Spindel
05 200 200 140 000000000000 Wiederzugewiesene Sektoren
07 200 200 __0 000000000000 Suchfehler
09 _98 _98 __0 0000000007CF Betriebsstunden
0A 100 100 __0 000000000000 Misslungene Spindelanläufe
0B 100 100 __0 000000000000 Nnotwendige Rekalibrierungen
0C _99 _99 __0 0000000004CB Geräte-Einschaltvorgänge
BF __1 __1 __0 00000000008F Beschleunigungssensor-Fehlerrate
C0 200 200 __0 000000000032 Ausschaltungsabbrüche
C1 197 197 __0 000000002502 Laden/Entladen-Zyklen
C2 120 _95 __0 000000000017 Temperatur
C4 200 200 __0 000000000000 Wiederzuweisungsereignisse
C5 200 200 __0 000000000000 Aktuell ausstehende Sektoren
C6 100 253 __0 000000000000 Nicht korrigierbare Sektoren
C7 200 200 __0 000000000000 UltraDMA-CRC-Fehler
C8 100 253 __0 000000000000 Schreibfehlerrate

-- IDENTIFY_DEVICE ---------------------------------------------------------
        0    1    2    3    4    5    6    7    8    9
000: 427A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2057 442D 5758 3531 4137 3346 3135 3139
020: 0000 4000 0000 3031 2E30 3141 3031 5744 4320 5744
030: 3530 3030 4C50 5658 2D32 3256 3054 5430 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4001 0000 0000 0007 3FFF 0010 003F FC10 00FB 0100
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F FF0E 0006 004C 00C8
080: 03FE 0000 746B 7D69 6123 7469 BC49 6123 407F 0034
090: 0034 00FE FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 0000 6003 0000 5001 4EE2
110: B39D BCE0 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 7035 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 103E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 1000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 22A5

-- SMART_READ_DATA ---------------------------------------------------------
     +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 C8 C8 3C 00 00 00 00 00 00 03 27
010: 00 98 97 4E 05 00 00 00 00 00 04 32 00 62 62 16
020: 0A 00 00 00 00 00 05 33 00 C8 C8 00 00 00 00 00
030: 00 00 07 2E 00 C8 C8 00 00 00 00 00 00 00 09 32
040: 00 62 62 CF 07 00 00 00 00 00 0A 32 00 64 64 00
050: 00 00 00 00 00 00 0B 32 00 64 64 00 00 00 00 00
060: 00 00 0C 32 00 63 63 CB 04 00 00 00 00 00 BF 32
070: 00 01 01 8F 00 00 00 00 00 00 C0 32 00 C8 C8 32
080: 00 00 00 00 00 00 C1 32 00 C5 C5 02 25 00 00 00
090: 00 00 C2 22 00 78 5F 17 00 00 00 00 00 00 C4 32
0A0: 00 C8 C8 00 00 00 00 00 00 00 C5 32 00 C8 C8 00
0B0: 00 00 00 00 00 00 C6 30 00 64 FD 00 00 00 00 00
0C0: 00 00 C7 32 00 C8 C8 00 00 00 00 00 00 00 C8 08
0D0: 00 64 FD 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 34 26 01 7B
170: 03 00 01 00 02 70 05 00 00 00 00 00 00 00 00 00
180: 00 00 01 02 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 D2

-- SMART_READ_THRESHOLD ----------------------------------------------------
     +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 33 C8 C8 00 00 00 00 00 00 00 00 03 15
010: 00 00 00 00 00 00 00 00 00 00 04 00 00 00 00 00
020: 00 00 00 00 00 00 05 8C 00 00 00 00 00 00 00 00
030: 00 00 07 00 C8 C8 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 00 00 00 00 00
050: 00 00 00 00 00 00 0B 00 00 00 00 00 00 00 00 00
060: 00 00 0C 00 00 00 00 00 00 00 00 00 00 00 BF 00
070: 00 00 00 00 00 00 00 00 00 00 C0 00 00 00 00 00
080: 00 00 00 00 00 00 C1 00 00 00 00 00 00 00 00 00
090: 00 00 C2 00 00 00 00 00 00 00 00 00 00 00 C4 00
0A0: 00 00 00 00 00 00 00 00 00 00 C5 00 00 00 00 00
0B0: 00 00 00 00 00 00 C6 00 00 00 00 00 00 00 00 00
0C0: 00 00 C7 00 00 00 00 00 00 00 00 00 00 00 C8 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 DE

----------------------------------------------------------------------------
 (2) WDC WD10JMVW-11AJGS1
----------------------------------------------------------------------------
       Enclosure : WD Elements 10A8 USB Device (V=1058, P=10A8, sa1) - wd
           Model : WDC WD10JMVW-11AJGS1
        Firmware : 01.01A01
   Serial Number : WD-WXH1E43DKLR4
       Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,1)
     Buffer Size : 8192 KB
     Queue Depth : 32
    # of Sectors : 1953525168
   Rotation Rate : 5400 RPM
       Interface : USB (Serial ATA)
   Major Version : ACS-2
   Minor Version : ----
   Transfer Mode : SATA/300 | SATA/300
  Power On Hours : 97 Std.
  Power On Count : 96 mal
     Temperature : 21 C (69 F)
   Health Status : Gut
        Features : S.M.A.R.T., APM, 48bit LBA, NCQ
       APM Level : 0080h [ON]
       AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000000 Lesefehlerrate
03 178 175 _21 00000000081B Mittlere Anlaufzeit
04 100 100 __0 0000000000B5 Start/Stopp-Zyklen der Spindel
05 200 200 140 000000000000 Wiederzugewiesene Sektoren
07 100 253 __0 000000000000 Suchfehler
09 100 100 __0 000000000061 Betriebsstunden
0A 100 100 __0 000000000000 Misslungene Spindelanläufe
0B 100 253 __0 000000000000 Nnotwendige Rekalibrierungen
0C 100 100 __0 000000000060 Geräte-Einschaltvorgänge
C0 200 200 __0 000000000031 Ausschaltungsabbrüche
C1 200 200 __0 00000000028C Laden/Entladen-Zyklen
C2 126 _96 __0 000000000015 Temperatur
C4 200 200 __0 000000000000 Wiederzuweisungsereignisse
C5 200 200 __0 000000000000 Aktuell ausstehende Sektoren
C6 100 253 __0 000000000000 Nicht korrigierbare Sektoren
C7 200 200 __0 000000000000 UltraDMA-CRC-Fehler
C8 100 253 __0 000000000000 Schreibfehlerrate

-- IDENTIFY_DEVICE ---------------------------------------------------------
        0    1    2    3    4    5    6    7    8    9
000: 427A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2057 442D 5758 4831 4534 3344 4B4C 5234
020: 0000 4000 0000 3031 2E30 3141 3031 5744 4320 5744
030: 3130 4A4D 5657 2D31 3141 4A47 5331 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4001 0000 0000 0007 3FFF 0010 003F FC10 00FB 0100
060: FFFF 0FFF 0000 0107 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 9F06 0004 004C 0000
080: 03FE 0000 706B 7C69 6123 7069 BC49 6123 007F 0063
090: 0063 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 6003 0000 5001 4EE6
110: AE5D 0DC5 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0021 0000
130: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 7035 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 103E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 1000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 A5A5

-- SMART_READ_DATA ---------------------------------------------------------
     +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 2F 00 C8 C8 00 00 00 00 00 00 00 03 27
010: 00 B2 AF 1B 08 00 00 00 00 00 04 32 00 64 64 B5
020: 00 00 00 00 00 00 05 33 00 C8 C8 00 00 00 00 00
030: 00 00 07 2E 00 64 FD 00 00 00 00 00 00 00 09 32
040: 00 64 64 61 00 00 00 00 00 00 0A 32 00 64 64 00
050: 00 00 00 00 00 00 0B 32 00 64 FD 00 00 00 00 00
060: 00 00 0C 32 00 64 64 60 00 00 00 00 00 00 C0 32
070: 00 C8 C8 31 00 00 00 00 00 00 C1 32 00 C8 C8 8C
080: 02 00 00 00 00 00 C2 22 00 7E 60 15 00 00 00 00
090: 00 00 C4 32 00 C8 C8 00 00 00 00 00 00 00 C5 32
0A0: 00 C8 C8 00 00 00 00 00 00 00 C6 30 00 64 FD 00
0B0: 00 00 00 00 00 00 C7 32 00 C8 C8 00 00 00 00 00
0C0: 00 00 C8 08 00 64 FD 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 A8 48 01 7B
170: 03 00 01 00 02 D1 05 00 00 00 00 00 00 00 00 00
180: 00 00 01 04 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 FF

-- SMART_READ_THRESHOLD ----------------------------------------------------
     +0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 10 00 01 33 C8 C8 C8 C8 00 00 00 00 00 00 03 15
010: 00 00 00 00 00 00 00 00 00 00 04 00 00 00 00 00
020: 00 00 00 00 00 00 05 8C 00 00 00 00 00 00 00 00
030: 00 00 07 00 64 64 64 64 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 00 00 00 00 00
050: 00 00 00 00 00 00 0B 00 00 00 00 00 00 00 00 00
060: 00 00 0C 00 00 00 00 00 00 00 00 00 00 00 C0 00
070: 00 00 00 00 00 00 00 00 00 00 C1 00 00 00 00 00
080: 00 00 00 00 00 00 C2 00 00 00 00 00 00 00 00 00
090: 00 00 C4 00 00 00 00 00 00 00 00 00 00 00 C5 00
0A0: 00 00 00 00 00 00 00 00 00 00 C6 00 00 00 00 00
0B0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00
0C0: 00 00 C8 00 00 00 00 00 00 00 00 00 00 00 00 00
0D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
0F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0D
         


Alt 22.09.2015, 15:56   #6
Deathkid535
/// Malwareteam
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Hi,

Schritt # 1: MBAR

Downloade dir bitte Malwarebytes Anti-Rootkit Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
  • Starte bitte die mbar.exe.
  • Folge den Anweisungen auf deinem Bildschirm gemäß Anleitung zu Malwarebytes Anti-Rootkit
  • Aktualisiere unbedingt die Datenbank und erlaube dem Tool, dein System zu scannen.
  • Klicke auf den CleanUp Button und erlaube den Neustart.
  • Während dem Neustart wird MBAR die gefundenen Objekte entfernen, also bleib geduldig.
  • Nach dem Neustart starte die mbar.exe erneut.
  • Sollte nochmal was gefunden werden, wiederhole den CleanUp Prozess.
Das Tool wird im erstellten Ordner eine Logfile ( mbar-log-<Jahr-Monat-Tag>.txt ) erzeugen. Bitte poste diese hier.

Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers


Schritt # 2: TDSS-Killer

Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.


Schritt # 3: Bitte Posten
  • Das Log von MBAR
  • Das Log von TDSS Killer
__________________
--> Windows 8.1 Laptop auf einmal sehr langsam

Alt 22.09.2015, 16:11   #7
X3nion
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Hallo!
Vorab: ich bekomme die Meldung:
Code:
ATTFilter
Probable rootkit activity detected.

Registry value "AppInit_Dlls" has been found, which may be caused by rootkit activity.
Note: Press "No" button if you're not sure. If the tool crashed or terminates unexpectedly during a system scan, restart the tool and press "Yes" should this message appear again.
Do you want to remove this value and restart the tool?
         
Was soll ich tun? Habe mal noch nichts gedrückt!

Alt 22.09.2015, 16:20   #8
Deathkid535
/// Malwareteam
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Nein klicken bitte

Alt 22.09.2015, 16:32   #9
X3nion
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Okay und da steht nach dem Neustart die mbar.exe nochmals starten und, falls was gefunden wird, nochmal den CleanUP Prozess wiederholen.
Muss ich nach dem Neustart also nochmals einen Scan durchführen, oder nur das Programm öffnen?

Alt 22.09.2015, 16:35   #10
Deathkid535
/// Malwareteam
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Wenn beim ersten Scan was gefunden wurde, nochmal Scannen. Wenn nicht, dann TDSS Killer machen.

Alt 22.09.2015, 17:18   #11
X3nion
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Hallo Dennis,

dies ist der Inhalt des Logfiles von Malwarebytes:

Code:
ATTFilter
 Malwarebytes Anti-Rootkit BETA 1.9.3.1001
www.malwarebytes.org

Database version:
  main:    v2015.09.22.05
  rootkit: v2015.09.18.01

Windows 8.1 x64 NTFS
Internet Explorer 11.0.9600.18036
Christian :: CHRIS-PC [administrator]

22.09.2015 17:47:40
mbar-log-2015-09-22 (17-47-40).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled: 
Objects scanned: 438833
Time elapsed: 21 minute(s), 8 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)
         
und dies der Inhalt des TDSS Killer Logfile:
Code:
ATTFilter
18:15:47.0698 0x12ac  TDSS rootkit removing tool 3.1.0.5 Jul 24 2015 12:29:57
18:15:47.0698 0x12ac  UEFI system
18:15:49.0358 0x12ac  ============================================================
18:15:49.0358 0x12ac  Current date / time: 2015/09/22 18:15:49.0358
18:15:49.0358 0x12ac  SystemInfo:
18:15:49.0358 0x12ac  
18:15:49.0358 0x12ac  OS Version: 6.3.9600 ServicePack: 0.0
18:15:49.0358 0x12ac  Product type: Workstation
18:15:49.0358 0x12ac  ComputerName: CHRIS-PC
18:15:49.0358 0x12ac  UserName: Christian
18:15:49.0359 0x12ac  Windows directory: C:\WINDOWS
18:15:49.0359 0x12ac  System windows directory: C:\WINDOWS
18:15:49.0359 0x12ac  Running under WOW64
18:15:49.0359 0x12ac  Processor architecture: Intel x64
18:15:49.0359 0x12ac  Number of processors: 8
18:15:49.0359 0x12ac  Page size: 0x1000
18:15:49.0359 0x12ac  Boot type: Normal boot
18:15:49.0359 0x12ac  ============================================================
18:15:49.0614 0x12ac  KLMD registered as C:\WINDOWS\system32\drivers\10636102.sys
18:15:49.0839 0x12ac  System UUID: {FBA6D003-F2EE-8BA4-DADA-28EDA6578C6D}
18:15:50.0285 0x12ac  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
18:15:50.0288 0x12ac  ============================================================
18:15:50.0288 0x12ac  \Device\Harddisk0\DR0:
18:15:50.0288 0x12ac  GPT partitions:
18:15:50.0289 0x12ac  \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {FCBC7A66-CFA3-4B87-8901-5959F837A6A4}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0xC8000
18:15:50.0289 0x12ac  \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {DC987750-72C5-4721-BB79-A80A7DB51C82}, Name: EFI system partition, StartLBA 0xC8800, BlocksNum 0x96000
18:15:50.0289 0x12ac  \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {F6E5694D-B6AA-4260-BC0E-E3F64880ECB7}, Name: Microsoft reserved partition, StartLBA 0x15E800, BlocksNum 0x40000
18:15:50.0289 0x12ac  \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {934C9BE6-B7CC-421B-8B63-09DAA92B6A11}, Name: Basic data partition, StartLBA 0x19E800, BlocksNum 0x38181000
18:15:50.0289 0x12ac  \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {D02399FB-5B13-40A9-9CF9-5B103EA7F7E0}, Name: , StartLBA 0x3831F800, BlocksNum 0xE1000
18:15:50.0289 0x12ac  \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {598DBB5D-AC69-4FA3-A62A-8DA7AF4CAB9C}, Name: Basic data partition, StartLBA 0x38400800, BlocksNum 0x1F85800
18:15:50.0289 0x12ac  MBR partitions:
18:15:50.0289 0x12ac  ============================================================
18:15:50.0311 0x12ac  C: <-> \Device\Harddisk0\DR0\Partition4
18:15:50.0311 0x12ac  ============================================================
18:15:50.0311 0x12ac  Initialize success
18:15:50.0311 0x12ac  ============================================================
18:15:56.0165 0x1c34  ============================================================
18:15:56.0165 0x1c34  Scan started
18:15:56.0165 0x1c34  Mode: Manual; SigCheck; TDLFS; 
18:15:56.0165 0x1c34  ============================================================
18:15:56.0165 0x1c34  KSN ping started
18:15:58.0502 0x1c34  KSN ping finished: true
18:15:59.0920 0x1c34  ================ Scan system memory ========================
18:15:59.0920 0x1c34  System memory - ok
18:15:59.0921 0x1c34  ================ Scan services =============================
18:16:00.0097 0x1c34  [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci        C:\WINDOWS\System32\drivers\1394ohci.sys
18:16:00.0130 0x1c34  1394ohci - ok
18:16:00.0139 0x1c34  [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware           C:\WINDOWS\system32\drivers\3ware.sys
18:16:00.0148 0x1c34  3ware - ok
18:16:00.0183 0x1c34  [ E796AE43DDD1844281DB4D57294D17C0, 21AE69615044A96041E46476BE814B52C22624B6C7EA6BFC77BB64F69C3C21F5 ] ACPI            C:\WINDOWS\system32\drivers\ACPI.sys
18:16:00.0203 0x1c34  ACPI - ok
18:16:00.0223 0x1c34  [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex          C:\WINDOWS\system32\Drivers\acpiex.sys
18:16:00.0232 0x1c34  acpiex - ok
18:16:00.0244 0x1c34  [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr        C:\WINDOWS\System32\drivers\acpipagr.sys
18:16:00.0252 0x1c34  acpipagr - ok
18:16:00.0289 0x1c34  [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi         C:\WINDOWS\System32\drivers\acpipmi.sys
18:16:00.0297 0x1c34  AcpiPmi - ok
18:16:00.0302 0x1c34  [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime        C:\WINDOWS\System32\drivers\acpitime.sys
18:16:00.0310 0x1c34  acpitime - ok
18:16:00.0394 0x1c34  [ 013697369EAFFA675D0671607F036020, 65611C775AC4681E46A6565E5A7A4FF3363C66EBDC98C4C58AFB365D40BE23B6 ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
18:16:00.0401 0x1c34  AdobeARMservice - ok
18:16:00.0436 0x1c34  [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX         C:\WINDOWS\system32\drivers\ADP80XX.SYS
18:16:00.0460 0x1c34  ADP80XX - ok
18:16:00.0488 0x1c34  [ BCD58DACAA1EAAADC115EDD940478F6D, F31613F583C302F62A00E6766B031531C9E193CAED563689B178BA257715B992 ] AeLookupSvc     C:\WINDOWS\System32\aelupsvc.dll
18:16:00.0501 0x1c34  AeLookupSvc - ok
18:16:00.0530 0x1c34  [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD             C:\WINDOWS\system32\drivers\afd.sys
18:16:00.0549 0x1c34  AFD - ok
18:16:00.0567 0x1c34  [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440          C:\WINDOWS\system32\drivers\agp440.sys
18:16:00.0575 0x1c34  agp440 - ok
18:16:00.0606 0x1c34  [ FE14D249D39368CA62D8DA6BC94AC694, E1036E22BFBD3750FD2D3DA6AB939B2DD54E824F4BD3E6539EF0E45AB5453DD1 ] ahcache         C:\WINDOWS\system32\DRIVERS\ahcache.sys
18:16:00.0616 0x1c34  ahcache - ok
18:16:00.0643 0x1c34  [ 14A45BE6F5678339F0EC5752D9849410, DD0F60E96FAC68FBD5B86382E541408C613BD0F871D0E0A1EF9AB6E7B26E545C ] ALG             C:\WINDOWS\System32\alg.exe
18:16:00.0652 0x1c34  ALG - ok
18:16:00.0671 0x1c34  [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8           C:\WINDOWS\System32\drivers\amdk8.sys
18:16:00.0681 0x1c34  AmdK8 - ok
18:16:00.0686 0x1c34  [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM          C:\WINDOWS\System32\drivers\amdppm.sys
18:16:00.0696 0x1c34  AmdPPM - ok
18:16:00.0703 0x1c34  [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata         C:\WINDOWS\system32\drivers\amdsata.sys
18:16:00.0712 0x1c34  amdsata - ok
18:16:00.0726 0x1c34  [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs          C:\WINDOWS\system32\drivers\amdsbs.sys
18:16:00.0739 0x1c34  amdsbs - ok
18:16:00.0747 0x1c34  [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata         C:\WINDOWS\system32\drivers\amdxata.sys
18:16:00.0755 0x1c34  amdxata - ok
18:16:00.0785 0x1c34  [ 415DD71628795197F7AFC176CBADC74E, 5F0359053A6CD6EE239139E0E6F46E1FA9A73F017C0CE9B7BC052216B2C846EC ] AppID           C:\WINDOWS\system32\drivers\appid.sys
18:16:00.0795 0x1c34  AppID - ok
18:16:00.0821 0x1c34  [ 88358135810B9DFD830A9D3A8C3D149A, DF914DA3828EE2310895D156342E3B3DF5E8C6F6F9B851C359E82A1F48180D4B ] AppIDSvc        C:\WINDOWS\System32\appidsvc.dll
18:16:00.0830 0x1c34  AppIDSvc - ok
18:16:00.0852 0x1c34  [ 680BFB820C5A943AB709BAA2B1EF27F2, A51D2A7976A762FE470C13C6D1BA0319A0FB19C9E66BF02AA44F83EAEC7130F8 ] Appinfo         C:\WINDOWS\System32\appinfo.dll
18:16:00.0862 0x1c34  Appinfo - ok
18:16:00.0887 0x1c34  [ 35E28923A23ADABAA5A1B43256D0AB58, A5F3AF8BBEE58B2165BAFACC5FF8B167B55B020998D3D1565C2229ED8753B269 ] AppReadiness    C:\WINDOWS\system32\AppReadiness.dll
18:16:00.0907 0x1c34  AppReadiness - ok
18:16:00.0949 0x1c34  [ 573542B5E97772021B73E854DA861DAA, C3FD00FA28060F8D7CDFD455BBB5FF8239CB76DDFFF2BDAE6AA944674DD993D3 ] AppXSvc         C:\WINDOWS\system32\appxdeploymentserver.dll
18:16:00.0982 0x1c34  AppXSvc - ok
18:16:01.0002 0x1c34  [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas          C:\WINDOWS\system32\drivers\arcsas.sys
18:16:01.0012 0x1c34  arcsas - ok
18:16:01.0046 0x1c34  [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi           C:\WINDOWS\system32\drivers\atapi.sys
18:16:01.0053 0x1c34  atapi - ok
18:16:01.0104 0x1c34  [ 62A40F3DFF2B40915A1981285B14EFD4, 02F19978D153E816A6A879F6D0D67B2AB89F5964B86953F11B82D9970C3ED963 ] AthBTPort       C:\WINDOWS\system32\DRIVERS\btath_flt.sys
18:16:01.0115 0x1c34  AthBTPort - ok
18:16:01.0179 0x1c34  [ A917E4F753B90A5181ECBFA56D5C154A, 4025FC65AB44AE5FDF6D144F16873C1E165D9EB7C4BF0570C996F2D7C8B71A1E ] AtherosSvc      C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
18:16:01.0189 0x1c34  AtherosSvc - detected UnsignedFile.Multi.Generic ( 1 )
18:16:03.0601 0x1c34  Detect skipped due to KSN trusted
18:16:03.0601 0x1c34  AtherosSvc - ok
18:16:03.0724 0x1c34  [ 2C7676F892E88FD190F08D98048C7C6C, 44C13C103F61DA4D1A3823D37344F8C9465A611A9560808CE928925FB69604F7 ] athr            C:\WINDOWS\system32\DRIVERS\athw8x.sys
18:16:03.0800 0x1c34  athr - ok
18:16:03.0841 0x1c34  [ 431FE56F5A2F5937994CB2DA330B47DB, E5AED551529A21494114959251FDF566802DD6D9B9D86A937A0EECE53338CAC7 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll
18:16:03.0855 0x1c34  AudioEndpointBuilder - ok
18:16:03.0905 0x1c34  [ 0F03CC00645D7F841879A048787D6AC7, 3ECD2486157469F2EDB63D4868338D1445F2909153DF0AFFE432083730EEE3F5 ] Audiosrv        C:\WINDOWS\System32\Audiosrv.dll
18:16:03.0931 0x1c34  Audiosrv - ok
18:16:03.0998 0x1c34  [ 50C3C62FFE6337E6E4F2F01CB07DF63C, CC9C7D2827E872F22A2A79D42195530F61DF6EA6A1C8F520E25DB35537574FAB ] AVP16.0.0       C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\avp.exe
18:16:04.0007 0x1c34  AVP16.0.0 - ok
18:16:04.0040 0x1c34  [ 3C6ED74AF41DD1A5585CE5EF3D00915F, A742F576407776634E5A8E49C60023FFDF395DE0B2DE36662A23F85B79405ED2 ] AxInstSV        C:\WINDOWS\System32\AxInstSV.dll
18:16:04.0050 0x1c34  AxInstSV - ok
18:16:04.0088 0x1c34  [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv         C:\WINDOWS\system32\drivers\bxvbda.sys
18:16:04.0106 0x1c34  b06bdrv - ok
18:16:04.0137 0x1c34  [ 0630C8915B747E88E825CE7F73B66A5D, E9B465EE23487B59B1C906B04F9235B0BFBF254C1760E2462A7D1D7FE1655088 ] b57xdbd         C:\WINDOWS\System32\drivers\b57xdbd.sys
18:16:04.0143 0x1c34  b57xdbd - ok
18:16:04.0160 0x1c34  [ CA8457E528E13B38F8DC3B86B6BA4C6B, 532E48BBBA806608EBEFE10A94DCE2BFE8918D8DD6DEF6871F44FEEDA51238B8 ] b57xdmp         C:\WINDOWS\System32\drivers\b57xdmp.sys
18:16:04.0165 0x1c34  b57xdmp - ok
18:16:04.0196 0x1c34  [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay    C:\WINDOWS\System32\drivers\BasicDisplay.sys
18:16:04.0204 0x1c34  BasicDisplay - ok
18:16:04.0213 0x1c34  [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender     C:\WINDOWS\System32\drivers\BasicRender.sys
18:16:04.0221 0x1c34  BasicRender - ok
18:16:04.0237 0x1c34  [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2          C:\WINDOWS\System32\drivers\bcmfn2.sys
18:16:04.0243 0x1c34  bcmfn2 - ok
18:16:04.0275 0x1c34  [ 77D760E9B477C21487C171F561497F98, 2393D466CEC863C771C5BB4CD81B251635DC084386134B8E13F74F3E1C6D68DF ] BDESVC          C:\WINDOWS\System32\bdesvc.dll
18:16:04.0289 0x1c34  BDESVC - ok
18:16:04.0317 0x1c34  [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep            C:\WINDOWS\system32\drivers\Beep.sys
18:16:04.0325 0x1c34  Beep - ok
18:16:04.0375 0x1c34  [ 22A5582ACF0CEE97268D7868C69F35CE, 78A44C10966FE467D3FCC76BE37647AE2CC2BCA9DE5715AD9E643162B23C3A19 ] BFE             C:\WINDOWS\System32\bfe.dll
18:16:04.0398 0x1c34  BFE - ok
18:16:04.0447 0x1c34  [ 48554994279BFE17A3D2B00076D0CB1A, 6521B1EC0BC6B01F63976370D89FE7DC2E7404899F68B6FAC37A9173B9C5D489 ] BITS            C:\WINDOWS\System32\qmgr.dll
18:16:04.0473 0x1c34  BITS - ok
18:16:04.0494 0x1c34  [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser          C:\WINDOWS\system32\DRIVERS\bowser.sys
18:16:04.0503 0x1c34  bowser - ok
18:16:04.0571 0x1c34  [ 5C6ADD0111E1C6601B5911F7ACF85BB8, 1653E8725478C8118D2AF15399A1A44464AFDC6F66EB1A90BB268A0692831AEE ] BrcmCardReader  C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe
18:16:04.0577 0x1c34  BrcmCardReader - detected UnsignedFile.Multi.Generic ( 1 )
18:16:06.0996 0x1c34  Detect skipped due to KSN trusted
18:16:06.0996 0x1c34  BrcmCardReader - ok
18:16:07.0025 0x1c34  [ FA601515FF2B59F25FDD8EDB1D2A1104, 21DFB53241F8E880F7546B9ADF38F47D6AD0782EC7F8F0284ED69DE7CEF7DCB9 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll
18:16:07.0038 0x1c34  BrokerInfrastructure - ok
18:16:07.0050 0x1c34  [ BC111AADACD0BF59D56547461D13AB6E, 91E3619930C29EE4B2683683888BA7EE3CF6B1DDB0C19A14E0880470CBE40EF4 ] Browser         C:\WINDOWS\System32\browser.dll
18:16:07.0060 0x1c34  Browser - ok
18:16:07.0082 0x1c34  [ 0E9B28782D0E5DE7C25207432B791B33, FE33E3B27BEED03922DB2565DECC0E12F8CD586B5060EE4A1A87FF99EEC77B22 ] bScsiMSa        C:\WINDOWS\System32\drivers\bScsiMSa.sys
18:16:07.0087 0x1c34  bScsiMSa - ok
18:16:07.0117 0x1c34  [ 8F62F985BDD2F333A3EE34D54894363D, 44755CEEE5B1823990547C1F22FFC833D7BD693E6C3DD056B0C41615ED61ED4C ] bScsiSDa        C:\WINDOWS\System32\drivers\bScsiSDa.sys
18:16:07.0123 0x1c34  bScsiSDa - ok
18:16:07.0146 0x1c34  [ 6BF12F3F3A5D3F2866E69B8B463BC0CD, E6D3358ABCF16ED2E68A93171C5E84D797137898BB2231E26FF0E4A07B8ADB22 ] BTATH_A2DP      C:\WINDOWS\system32\drivers\btath_a2dp.sys
18:16:07.0156 0x1c34  BTATH_A2DP - ok
18:16:07.0185 0x1c34  [ DC7038090A369FE866B76DB18E356558, 6782DBDDA352FBF8C2F5F6A90591794B569F2897AA5BD901AF062E774E734E48 ] btath_avdt      C:\WINDOWS\system32\drivers\btath_avdt.sys
18:16:07.0192 0x1c34  btath_avdt - ok
18:16:07.0203 0x1c34  [ 4AF7C20F94DAC343C01ED671C82DCB99, 2AABD85D9D76461DE883E0F13F61C391BA81E6198FF88268B319474E25A196C8 ] BTATH_HCRP      C:\WINDOWS\System32\drivers\btath_hcrp.sys
18:16:07.0212 0x1c34  BTATH_HCRP - ok
18:16:07.0228 0x1c34  [ 785C38070043BEEE9E9D591DE4067244, 1C8D15B8A9E80A2799E7094C4AE111FEA9FBC6EAA4A61B13EFE59314C9794949 ] BTATH_LWFLT     C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys
18:16:07.0234 0x1c34  BTATH_LWFLT - ok
18:16:07.0247 0x1c34  [ A6019537D6125099363F90D0C6D181F9, CA0C46AABBF71E2A29C93A477A06D33E3CACC84978DD9D729BEFB339E50D7055 ] BTATH_RCP       C:\WINDOWS\System32\drivers\btath_rcp.sys
18:16:07.0254 0x1c34  BTATH_RCP - ok
18:16:07.0280 0x1c34  [ 7A38787D2CF43FA2812E2BF86F636BB9, 1A22D38B8CA091E8E8D794FC316DE52E949102EB779A38A1FAE2F72DD3DD5945 ] BtFilter        C:\WINDOWS\system32\DRIVERS\btfilter.sys
18:16:07.0295 0x1c34  BtFilter - ok
18:16:07.0330 0x1c34  [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg      C:\WINDOWS\System32\drivers\BthAvrcpTg.sys
18:16:07.0340 0x1c34  BthAvrcpTg - ok
18:16:07.0352 0x1c34  [ 1104A31260CCF4318C884E0AE6C513BF, A8F83B558944DEF0F84414A11DC3CB90C3A92377B46760EC0A9B8BC22FB0D5C7 ] BthEnum         C:\WINDOWS\system32\DRIVERS\BthEnum.sys
18:16:07.0361 0x1c34  BthEnum - ok
18:16:07.0389 0x1c34  [ 272A62B660A48AEF366F8A1836CED19F, 78EFAC6B1B2313482329BBFFBF0DDA6462BD88E5BE3C817C5E8E0EAF3074C925 ] BthHFEnum       C:\WINDOWS\System32\drivers\bthhfenum.sys
18:16:07.0398 0x1c34  BthHFEnum - ok
18:16:07.0403 0x1c34  [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid        C:\WINDOWS\System32\drivers\BthHFHid.sys
18:16:07.0412 0x1c34  bthhfhid - ok
18:16:07.0453 0x1c34  [ 9307A4B743D277C499CDA8E19E5687AC, 7A01989EC3D54581F292BDEDC9B9445F2ABD50165102617E3089BDD061C63A19 ] BthHFSrv        C:\WINDOWS\System32\BthHFSrv.dll
18:16:07.0467 0x1c34  BthHFSrv - ok
18:16:07.0498 0x1c34  [ D30C67473A2E229662D21F27EAA9AAA5, D009C4836B0DFE963D8E3DEEDE611068838F2BBCAB146E6D70692FAB838E11F1 ] BthLEEnum       C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys
18:16:07.0509 0x1c34  BthLEEnum - ok
18:16:07.0529 0x1c34  [ EF4B9E7C9AD88C00C18A12B0D22D1894, 672537E75201E690D86CD65252B8AEF887C76EBD37AB0C419462D69164B350CC ] BTHMODEM        C:\WINDOWS\System32\drivers\bthmodem.sys
18:16:07.0537 0x1c34  BTHMODEM - ok
18:16:07.0564 0x1c34  [ FEA8FC81431AD93F44D5FBFBBF096AA7, C0581DF6B2AD24836604B083F4866F93A3F4D9091D382029948A5E6221EDF788 ] BthPan          C:\WINDOWS\System32\drivers\bthpan.sys
18:16:07.0573 0x1c34  BthPan - ok
18:16:07.0627 0x1c34  [ 0CC00ADC1B84C93FB46E1A0974E956E1, 64C759244651B916901F4D0C82C3D6034532A20714A72FD26FC9D050B99E230B ] BTHPORT         C:\WINDOWS\System32\Drivers\BTHport.sys
18:16:07.0656 0x1c34  BTHPORT - ok
18:16:07.0672 0x1c34  [ 043A0F37631BF453F16D478B71320F46, C368296B802984F438852927B8A40EA3F4205724A05828F3173F08EC17228356 ] bthserv         C:\WINDOWS\system32\bthserv.dll
18:16:07.0682 0x1c34  bthserv - ok
18:16:07.0709 0x1c34  [ 08EA90955AED2D959EE67DF6EDF0E2B6, 0A70AA67E5DD24C473C66A570C0FEBA9D398A0F0AD8386FE05D01C4D16346968 ] BTHUSB          C:\WINDOWS\System32\Drivers\BTHUSB.sys
18:16:07.0718 0x1c34  BTHUSB - ok
18:16:07.0836 0x1c34  [ 843F5EFF90A988617C5FFD8596A2B571, 69FF9731876E1CBA4BBF00557F0CBC73247165F8EB45F45A55CC0178A7B90D44 ] CCDMonitorService C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
18:16:07.0887 0x1c34  CCDMonitorService - ok
18:16:07.0937 0x1c34  [ E41F70406C34F1CB667B4B27D81AD162, 8869C7EB9CBF68B90640765D15DB5B8DACEF45025C1E580AA94D96E32560274B ] ccSet_NARA      C:\WINDOWS\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys
18:16:07.0945 0x1c34  ccSet_NARA - ok
18:16:07.0963 0x1c34  [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs            C:\WINDOWS\system32\DRIVERS\cdfs.sys
18:16:07.0973 0x1c34  cdfs - ok
18:16:08.0005 0x1c34  [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom           C:\WINDOWS\System32\drivers\cdrom.sys
18:16:08.0016 0x1c34  cdrom - ok
18:16:08.0044 0x1c34  [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] CertPropSvc     C:\WINDOWS\System32\certprop.dll
18:16:08.0055 0x1c34  CertPropSvc - ok
18:16:08.0073 0x1c34  [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass        C:\WINDOWS\System32\drivers\circlass.sys
18:16:08.0082 0x1c34  circlass - ok
18:16:08.0123 0x1c34  [ 8EB7E70C2D348FE2476A2E3F2D585E3D, 2B5D407FACF1D049261026CC552A7C93B028A661B0F4E959815EAE7670054127 ] CLFS            C:\WINDOWS\system32\drivers\CLFS.sys
18:16:08.0137 0x1c34  CLFS - ok
18:16:08.0158 0x1c34  [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt          C:\WINDOWS\System32\drivers\CmBatt.sys
18:16:08.0166 0x1c34  CmBatt - ok
18:16:08.0207 0x1c34  [ B2A6D2A30E93B6F215F74AC7E1733C9C, 960299F7BF2501B46296EDEA050BF30313C17A9B785574B56B79C070BD1B6E1A ] cm_km           C:\WINDOWS\system32\DRIVERS\cm_km.sys
18:16:08.0221 0x1c34  cm_km - ok
18:16:08.0260 0x1c34  [ 5E5AB950693F2C6D6ACBEE3A74697ED7, 3790A7DD0AC65F47A697A577744FDFA4CC1CA3422884C84E499F97AC91BA84F3 ] CNG             C:\WINDOWS\system32\Drivers\cng.sys
18:16:08.0280 0x1c34  CNG - ok
18:16:08.0302 0x1c34  [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus    C:\WINDOWS\System32\drivers\CompositeBus.sys
18:16:08.0311 0x1c34  CompositeBus - ok
18:16:08.0314 0x1c34  COMSysApp - ok
18:16:08.0352 0x1c34  [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv          C:\WINDOWS\system32\drivers\condrv.sys
18:16:08.0361 0x1c34  condrv - ok
18:16:08.0462 0x1c34  [ D8724B606616B2B75AF54096119580F5, 53E1DEF9F966FDE5898759A33FB62B5062A941E97B235D6F6EF79A5AD1283BDE ] cphs            C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
18:16:08.0475 0x1c34  cphs - ok
18:16:08.0508 0x1c34  [ 6324F0D18FB52833BA64BC828E29054C, 04118FA1BDFC512F76E4A81FEF34C78B6BD98429DB1D65123B6802B4A1E30584 ] CryptSvc        C:\WINDOWS\system32\cryptsvc.dll
18:16:08.0519 0x1c34  CryptSvc - ok
18:16:08.0540 0x1c34  [ 389C998C64319CD97625B0550E52ECFA, DD0EDDD9C8412F78D2D2B648D67DA887C3040E05DF29F48F71299CB68FDDD0F8 ] dam             C:\WINDOWS\system32\drivers\dam.sys
18:16:08.0548 0x1c34  dam - ok
18:16:08.0598 0x1c34  [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] DcomLaunch      C:\WINDOWS\system32\rpcss.dll
18:16:08.0621 0x1c34  DcomLaunch - ok
18:16:08.0655 0x1c34  [ 95E1ABFB27F8A62ED764805775F0D2F3, 692865DA60C93481E01592883678B2C51FD9AC9A835DFB00A8E3F2DFEE7AB0ED ] defragsvc       C:\WINDOWS\System32\defragsvc.dll
18:16:08.0672 0x1c34  defragsvc - ok
18:16:08.0713 0x1c34  [ FF086DEF5995558CCB1B5AAC2110195D, CED52FF01F9247BFDAFC5C7EFC538F8638146ED715574A422496EE0F846CB079 ] DeviceAssociationService C:\WINDOWS\system32\das.dll
18:16:08.0728 0x1c34  DeviceAssociationService - ok
18:16:08.0783 0x1c34  [ D06DB4200F9444B2386E6C0E68CD574A, 7266A22D6AF86813CF8AB13BE40384D20C24CE72EF75B0C467C5F88F5B058B1E ] DeviceFastLaneService C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe
18:16:08.0796 0x1c34  DeviceFastLaneService - ok
18:16:08.0818 0x1c34  [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] DeviceInstall   C:\WINDOWS\system32\umpnpmgr.dll
18:16:08.0829 0x1c34  DeviceInstall - ok
18:16:08.0862 0x1c34  [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc            C:\WINDOWS\system32\Drivers\dfsc.sys
18:16:08.0871 0x1c34  Dfsc - ok
18:16:08.0910 0x1c34  [ 3EEAADA3125431980E5804ED7143458A, 381E12C83E3211C255B321D35536F4049D67E31061F8D82155E4D4509E97F43D ] Dhcp            C:\WINDOWS\system32\dhcpcore.dll
18:16:08.0925 0x1c34  Dhcp - ok
18:16:08.0996 0x1c34  [ 21EDAD8188372C912B7BB9B1C6CB0D38, 4A102745DE8A2A82D2C069B30503BF9FF2312A035A82854F84EF9C27E3533CEE ] DiagTrack       C:\WINDOWS\system32\diagtrack.dll
18:16:09.0034 0x1c34  DiagTrack - ok
18:16:09.0054 0x1c34  [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk            C:\WINDOWS\system32\drivers\disk.sys
18:16:09.0063 0x1c34  disk - ok
18:16:09.0086 0x1c34  [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc           C:\WINDOWS\System32\drivers\dmvsc.sys
18:16:09.0095 0x1c34  dmvsc - ok
18:16:09.0123 0x1c34  [ E9AE4FAE83FB38A2962F9032B24CEB3C, CC7D2D8C97CB779791613D76D6E4AF5D628C948C28BAC584C3C7F6A5A6036FBA ] Dnscache        C:\WINDOWS\System32\dnsrslvr.dll
18:16:09.0135 0x1c34  Dnscache - ok
18:16:09.0178 0x1c34  [ 811EACBCC7C51A03AE11F13CC27B2AB6, FAB94F84950FFB7D3649BAFB8D96D43B880D7FDE8D5B879472AE26C4BC4203B0 ] dot3svc         C:\WINDOWS\System32\dot3svc.dll
18:16:09.0191 0x1c34  dot3svc - ok
18:16:09.0208 0x1c34  [ B99CB575986789A93A683DCF292A43A1, 6ACEA31C723B74003E106FC8303542FCC6DBC4952B6B523F6590D006BE57238D ] DPS             C:\WINDOWS\system32\dps.dll
18:16:09.0220 0x1c34  DPS - ok
18:16:09.0224 0x1c34  [ 00C594D5A1DBD22AD8B2902B9F6EFF94, 2920D62B5F7C49A8AFA80FCAD1E834BBAA670AEBDD7E6F21F0496D1D3CCB4E90 ] drmkaud         C:\WINDOWS\system32\drivers\drmkaud.sys
18:16:09.0231 0x1c34  drmkaud - ok
18:16:09.0285 0x1c34  [ D2BCDD6BBFCD068090C109854FCEE079, 6DC8C67713566ABD2CC7860359AC7ABDBA8B6949D8F7ED001730BB0D53010693 ] DsiWMIService   C:\Program Files (x86)\Launch Manager\dsiwmis.exe
18:16:09.0296 0x1c34  DsiWMIService - ok
18:16:09.0329 0x1c34  [ 263625A4F616538EB867B6306A6590DB, 2A064720C247EAA3446EFDCC9E01D84CBA875905D78DFED0FBD62D1EE422D416 ] DsmSvc          C:\WINDOWS\System32\DeviceSetupManager.dll
18:16:09.0342 0x1c34  DsmSvc - ok
18:16:09.0399 0x1c34  [ E1BB0B6F00F470B451AB45EA13EBA0B3, 3A2FC2175B69A5EB98D6C2D563DBFDCB320647AB87A14E47FAE800423DCACDAB ] DXGKrnl         C:\WINDOWS\System32\drivers\dxgkrnl.sys
18:16:09.0439 0x1c34  DXGKrnl - ok
18:16:09.0472 0x1c34  [ E253530BD5EDE28F1FF6AF93C4D8034D, 787A70C3E946348F066FB8EB81FCE60157217D93FD78ADC631B5835E8D76A253 ] Eaphost         C:\WINDOWS\System32\eapsvc.dll
18:16:09.0483 0x1c34  Eaphost - ok
18:16:09.0578 0x1c34  [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv           C:\WINDOWS\system32\drivers\evbda.sys
18:16:09.0657 0x1c34  ebdrv - ok
18:16:09.0683 0x1c34  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] EFS             C:\WINDOWS\System32\lsass.exe
18:16:09.0692 0x1c34  EFS - ok
18:16:09.0710 0x1c34  [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass     C:\WINDOWS\system32\drivers\EhStorClass.sys
18:16:09.0719 0x1c34  EhStorClass - ok
18:16:09.0740 0x1c34  [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv    C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys
18:16:09.0749 0x1c34  EhStorTcgDrv - ok
18:16:09.0807 0x1c34  [ 616E1B9130314EB0E331197940AA625B, A4736A31EFF6D35A27B0EC14A7C855B7577301500E20CE936B0F1C0013F0FDF0 ] ePowerSvc       C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
18:16:09.0825 0x1c34  ePowerSvc - ok
18:16:09.0837 0x1c34  [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev          C:\WINDOWS\System32\drivers\errdev.sys
18:16:09.0845 0x1c34  ErrDev - ok
18:16:09.0890 0x1c34  [ BBEFD1442896352FBACEC3319959B278, 274BD43FD5F28D61CD2BA9D4AE127798F14DAADC247892A85358BB8D9FC53904 ] ETD             C:\WINDOWS\system32\DRIVERS\ETD.sys
18:16:09.0901 0x1c34  ETD - ok
18:16:09.0952 0x1c34  [ F00C593994D57C75273F820653440536, 2DC986D9890EC907405FB2045E6F55ACC384169B45F0B56CCB1A953CF71D9A5D ] EventSystem     C:\WINDOWS\system32\es.dll
18:16:09.0970 0x1c34  EventSystem - ok
18:16:10.0002 0x1c34  [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat           C:\WINDOWS\system32\drivers\exfat.sys
18:16:10.0018 0x1c34  exfat - ok
18:16:10.0041 0x1c34  [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat         C:\WINDOWS\system32\drivers\fastfat.sys
18:16:10.0053 0x1c34  fastfat - ok
18:16:10.0093 0x1c34  [ 304B6AEC4639A7CCCCF544C6BA6177B2, B75CDD52FD3890B3008E06C503945D1E36478F0EC5E067C8DBC2822D7935D24B ] Fax             C:\WINDOWS\system32\fxssvc.exe
18:16:10.0113 0x1c34  Fax - ok
18:16:10.0133 0x1c34  [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc             C:\WINDOWS\System32\drivers\fdc.sys
18:16:10.0142 0x1c34  fdc - ok
18:16:10.0172 0x1c34  [ 020D2F29009F893ADEFF4405B4B44565, 9F8501064C72933D1442DA00E70392B30D0207EB7D60F50E6648FF363799E6F1 ] fdPHost         C:\WINDOWS\system32\fdPHost.dll
18:16:10.0180 0x1c34  fdPHost - ok
18:16:10.0200 0x1c34  [ E80D2EDD2F88B6E20076A0A4F5A5A245, E3CD6E0BE152B22E8A7340EFFD10CCDB1B632CD3EDF487E83F697D2E22A7D594 ] FDResPub        C:\WINDOWS\system32\fdrespub.dll
18:16:10.0209 0x1c34  FDResPub - ok
18:16:10.0234 0x1c34  [ 47AB7D16EDE434B934AA4D661456C2D5, D375A92FB3E4BB0A8DA5270DACC888E53FB9F514516039FE6DAE4D4EF6B9A970 ] fhsvc           C:\WINDOWS\system32\fhsvc.dll
18:16:10.0244 0x1c34  fhsvc - ok
18:16:10.0270 0x1c34  [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo        C:\WINDOWS\system32\drivers\fileinfo.sys
18:16:10.0278 0x1c34  FileInfo - ok
18:16:10.0292 0x1c34  [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace       C:\WINDOWS\system32\drivers\filetrace.sys
18:16:10.0305 0x1c34  Filetrace - ok
18:16:10.0308 0x1c34  [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk        C:\WINDOWS\System32\drivers\flpydisk.sys
18:16:10.0317 0x1c34  flpydisk - ok
18:16:10.0341 0x1c34  [ C1FB505A73FA2E9019D32444AB33B75A, 765F0635C18295855CA4C0394192E8B94BA2EA1C4D74F86B720358ABA019FFAA ] FltMgr          C:\WINDOWS\system32\drivers\fltmgr.sys
18:16:10.0355 0x1c34  FltMgr - ok
18:16:10.0424 0x1c34  [ 1E93CBB75D167CDF85501A8C790097A8, C9E5DD090C94E7855939CE1F416460DB408EFF897C2CD52E0D52A734D8ED18B7 ] FontCache       C:\WINDOWS\system32\FntCache.dll
18:16:10.0458 0x1c34  FontCache - ok
18:16:10.0557 0x1c34  [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
18:16:10.0565 0x1c34  FontCache3.0.0.0 - ok
18:16:10.0585 0x1c34  [ A7C31B168F371E8E6796219F23E354DB, C51C9BF568F1E96CBBE57D2432B38F93F40520086DDB6AAAAC48CBCD1691B441 ] FsDepends       C:\WINDOWS\system32\drivers\FsDepends.sys
18:16:10.0593 0x1c34  FsDepends - ok
18:16:10.0609 0x1c34  [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec          C:\WINDOWS\system32\drivers\Fs_Rec.sys
18:16:10.0617 0x1c34  Fs_Rec - ok
18:16:10.0645 0x1c34  [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol          C:\WINDOWS\system32\DRIVERS\fvevol.sys
18:16:10.0665 0x1c34  fvevol - ok
18:16:10.0689 0x1c34  [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM           C:\WINDOWS\System32\drivers\fxppm.sys
18:16:10.0697 0x1c34  FxPPM - ok
18:16:10.0714 0x1c34  [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx        C:\WINDOWS\system32\drivers\gagp30kx.sys
18:16:10.0722 0x1c34  gagp30kx - ok
18:16:10.0773 0x1c34  [ C403C5DB49A0F9AAF4F2128EDC0106D8, 3C6948B63278022D8182F773C5FA15784514F76C1546118DDBADBA322B962D12 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
18:16:10.0782 0x1c34  GamesAppService - ok
18:16:10.0811 0x1c34  [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter      C:\WINDOWS\System32\drivers\vmgencounter.sys
18:16:10.0819 0x1c34  gencounter - ok
18:16:10.0838 0x1c34  [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101     C:\WINDOWS\system32\Drivers\msgpioclx.sys
18:16:10.0848 0x1c34  GPIOClx0101 - ok
18:16:10.0907 0x1c34  [ 0D03F87D4FF4ADBAF8336DD80548155A, BC10CFA88EA2F41A8D96CB810B7953A4C168B79273A3E804A9F020F49AB58CD3 ] gpsvc           C:\WINDOWS\System32\gpsvc.dll
18:16:10.0941 0x1c34  gpsvc - ok
18:16:11.0008 0x1c34  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:16:11.0016 0x1c34  gupdate - ok
18:16:11.0020 0x1c34  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
18:16:11.0028 0x1c34  gupdatem - ok
18:16:11.0056 0x1c34  [ 56F69F7C25FB67C970997D7066DBC593, 83E03A82237DCC5BCB3E722ACECACEF3510CAA619F33E0D7C4D902A482E90418 ] HdAudAddService C:\WINDOWS\system32\drivers\HdAudio.sys
18:16:11.0071 0x1c34  HdAudAddService - ok
18:16:11.0103 0x1c34  [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus        C:\WINDOWS\System32\drivers\HDAudBus.sys
18:16:11.0112 0x1c34  HDAudBus - ok
18:16:11.0125 0x1c34  [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt         C:\WINDOWS\System32\drivers\HidBatt.sys
18:16:11.0134 0x1c34  HidBatt - ok
18:16:11.0145 0x1c34  [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth          C:\WINDOWS\System32\drivers\hidbth.sys
18:16:11.0154 0x1c34  HidBth - ok
18:16:11.0167 0x1c34  [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c          C:\WINDOWS\System32\drivers\hidi2c.sys
18:16:11.0176 0x1c34  hidi2c - ok
18:16:11.0200 0x1c34  [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr           C:\WINDOWS\System32\drivers\hidir.sys
18:16:11.0208 0x1c34  HidIr - ok
18:16:11.0238 0x1c34  [ EA85B5093DF7B5C3E80362B053740AE2, 1D4251385402A2ADEE8FA1642F54180304F88337DA74989BDE44025ABB145FE5 ] hidserv         C:\WINDOWS\system32\hidserv.dll
18:16:11.0247 0x1c34  hidserv - ok
18:16:11.0261 0x1c34  [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb          C:\WINDOWS\System32\drivers\hidusb.sys
18:16:11.0269 0x1c34  HidUsb - ok
18:16:11.0298 0x1c34  [ 93C4315F47F8D635C6DB0DF49FCE10EE, 70C52B8927D54ACD23F27948780B522974250FD5CD81AA9801C3F158C402889F ] hkmsvc          C:\WINDOWS\system32\kmsvc.dll
18:16:11.0309 0x1c34  hkmsvc - ok
18:16:11.0333 0x1c34  [ AC49522ED106BD4B545D6614D71C2445, 40BD738A301170378ECFC031635EB04E2F812B676376CADDD6607ECABEC9255F ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll
18:16:11.0349 0x1c34  HomeGroupListener - ok
18:16:11.0392 0x1c34  [ 99932E30CE0283B73BB6E5019E150394, 1F88C2F56A7B8E1F75E6359281F418F9661DA4FB7B7D7B14FA7F718B15D4DCE0 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll
18:16:11.0409 0x1c34  HomeGroupProvider - ok
18:16:11.0434 0x1c34  [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD          C:\WINDOWS\system32\drivers\HpSAMD.sys
18:16:11.0443 0x1c34  HpSAMD - ok
18:16:11.0493 0x1c34  [ E87A6D3B8FECD5B93BC0CFBB48C27970, 55C49B6F3822450447C082B40A263F3370694DB53AD0018ADEB911E4A9F65A88 ] HTTP            C:\WINDOWS\system32\drivers\HTTP.sys
18:16:11.0522 0x1c34  HTTP - ok
18:16:11.0551 0x1c34  [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy        C:\WINDOWS\system32\drivers\hwpolicy.sys
18:16:11.0559 0x1c34  hwpolicy - ok
18:16:11.0571 0x1c34  [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd        C:\WINDOWS\System32\drivers\hyperkbd.sys
18:16:11.0579 0x1c34  hyperkbd - ok
18:16:11.0591 0x1c34  [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo      C:\WINDOWS\system32\DRIVERS\HyperVideo.sys
18:16:11.0599 0x1c34  HyperVideo - ok
18:16:11.0627 0x1c34  [ 49EE0AE9E5B64FFBBD06D55C4984B598, 8866627F9241B24A59C81D8BCC67A4DCA87576F589599BA291D0E323F679EB4D ] i8042prt        C:\WINDOWS\System32\drivers\i8042prt.sys
18:16:11.0637 0x1c34  i8042prt - ok
18:16:11.0652 0x1c34  [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO    C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys
18:16:11.0660 0x1c34  iaLPSSi_GPIO - ok
18:16:11.0713 0x1c34  [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C     C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys
18:16:11.0720 0x1c34  iaLPSSi_I2C - ok
18:16:11.0765 0x1c34  [ 6C024B3AE192D72B216166802AF345DD, 67AEDBEF4A1C1EE1DA9B684BDEB3DB07715E12B766AA72B6684CC6C583A8DCC5 ] iaStorA         C:\WINDOWS\system32\drivers\iaStorA.sys
18:16:11.0781 0x1c34  iaStorA - ok
18:16:11.0812 0x1c34  [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV        C:\WINDOWS\system32\drivers\iaStorAV.sys
18:16:11.0829 0x1c34  iaStorAV - ok
18:16:11.0850 0x1c34  [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV         C:\WINDOWS\system32\drivers\iaStorV.sys
18:16:11.0866 0x1c34  iaStorV - ok
18:16:11.0869 0x1c34  IEEtwCollectorService - ok
18:16:11.0998 0x1c34  [ 076023219E918D34585B231029A44571, C2AB0DE0D80D0BC6595C9F9655A890531E7952599714DC03B4ECB46947D833A8 ] igfx            C:\WINDOWS\system32\DRIVERS\igdkmd64.sys
18:16:12.0088 0x1c34  igfx - ok
18:16:12.0219 0x1c34  [ C814D4A0B7B91E936B2DC0828C69ACAB, A19B503CB3C598474C61DA6F1AC087CCF287F7523D2F932B21EF21E7CA1809B1 ] igfxCUIService1.0.0.0 C:\WINDOWS\system32\igfxCUIService.exe
18:16:12.0232 0x1c34  igfxCUIService1.0.0.0 - ok
18:16:12.0393 0x1c34  [ 57322EBB67A59FB64E228F31A84CA43D, 258DA26BDFAB635F145E55CF65CDFCFE4EB91454E3F930489E92810250EF9FD7 ] IKEEXT          C:\WINDOWS\System32\ikeext.dll
18:16:12.0422 0x1c34  IKEEXT - ok
18:16:12.0493 0x1c34  [ FC7C456AF9B9811499EDBD10616832EE, CA2D8B0E672D3AE449C2FF0B9E142D74E8C72FD877D11162A9F7CC51AF58220F ] intaud_WaveExtensible C:\WINDOWS\system32\drivers\intelaud.sys
18:16:12.0499 0x1c34  intaud_WaveExtensible - ok
18:16:12.0801 0x1c34  [ D830262519DDCDFC8BE34EB7047C22DC, A3D41BD7EDBAD0B64245824E920804FB98468E32A649A7983AB3C13C89144D23 ] IntcAzAudAddService C:\WINDOWS\system32\drivers\RTKVHD64.sys
18:16:12.0891 0x1c34  IntcAzAudAddService - ok
18:16:12.0971 0x1c34  [ F5495B38BFB9149925F54F65AB40EFBF, 7CBB72C41E2343DACBFB967A39CA04788561EDECB289C41BC2D6A06B80882AC4 ] IntcDAud        C:\WINDOWS\system32\DRIVERS\IntcDAud.sys
18:16:12.0984 0x1c34  IntcDAud - ok
18:16:13.0185 0x1c34  [ C99F8E90DE4B8F0C7FE15BB1CBCD29DC, F791EE101EEF8B9F48102B6C63A89B78F7C0041C750C4F4C0D16D54B583B7B5C ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
18:16:13.0201 0x1c34  Intel(R) Capability Licensing Service Interface - ok
18:16:13.0229 0x1c34  [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide        C:\WINDOWS\system32\drivers\intelide.sys
18:16:13.0236 0x1c34  intelide - ok
18:16:13.0280 0x1c34  [ 7AA01AB1C110916825E6E1389F1B9AF2, E2885955AFA0908E194B1BC364C9582249B2B2AFFF93F17F3414F55B1E5F2C42 ] intelpep        C:\WINDOWS\system32\drivers\intelpep.sys
18:16:13.0288 0x1c34  intelpep - ok
18:16:13.0319 0x1c34  [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm        C:\WINDOWS\System32\drivers\intelppm.sys
18:16:13.0329 0x1c34  intelppm - ok
18:16:13.0840 0x1c34  [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver  C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys
18:16:13.0851 0x1c34  IpFilterDriver - ok
18:16:14.0005 0x1c34  [ A5800036E4EA06697A34742A24ACFBE1, BA67060526E9213000B4206F86A74F904999AD7018EFCBE4FE9708650DA9D973 ] iphlpsvc        C:\WINDOWS\System32\iphlpsvc.dll
18:16:14.0031 0x1c34  iphlpsvc - ok
18:16:14.0203 0x1c34  [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV         C:\WINDOWS\System32\drivers\IPMIDrv.sys
18:16:14.0213 0x1c34  IPMIDRV - ok
18:16:14.0301 0x1c34  [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT           C:\WINDOWS\system32\drivers\ipnat.sys
18:16:14.0311 0x1c34  IPNAT - ok
18:16:14.0423 0x1c34  [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM          C:\WINDOWS\system32\drivers\irenum.sys
18:16:14.0434 0x1c34  IRENUM - ok
18:16:14.0465 0x1c34  [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp          C:\WINDOWS\system32\drivers\isapnp.sys
18:16:14.0471 0x1c34  isapnp - ok
18:16:14.0607 0x1c34  [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt        C:\WINDOWS\System32\drivers\msiscsi.sys
18:16:14.0621 0x1c34  iScsiPrt - ok
18:16:14.0721 0x1c34  [ A90C843F4FDD7A07129BA73C6BE13976, A76DEA9F09E3B2F18D3B646A0DD39E2773EC62E2F3C55421BA61C12190D78C1C ] iwdbus          C:\WINDOWS\System32\drivers\iwdbus.sys
18:16:14.0726 0x1c34  iwdbus - ok
18:16:14.0961 0x1c34  [ 3C4002D339491AF73D663FFC7F6E5ECB, 0B53047989BDB781572253BC3AA757912FE54366870C1955E687972CE210C285 ] jhi_service     C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
18:16:14.0968 0x1c34  jhi_service - ok
18:16:15.0082 0x1c34  [ 45369E037410609D769852A1CE46A184, 752BE7BB167E602CD89D52E3A4382AF7C75033306E31884EC55872EF7A0A3EE2 ] k57nd60a        C:\WINDOWS\system32\DRIVERS\k57nd60a.sys
18:16:15.0098 0x1c34  k57nd60a - ok
18:16:15.0168 0x1c34  [ 5917AFE4A3F695A54B99C1849C8207FE, DD57638966F2F0387DCF9DA4BBAEE3CDD8CC6F1A2D49581A0374D46A565BED4F ] kbdclass        C:\WINDOWS\System32\drivers\kbdclass.sys
18:16:15.0177 0x1c34  kbdclass - ok
18:16:15.0308 0x1c34  [ 8CD840A062F6BDF41DDE3ACB96164B72, AEAE867F3557C1CE6B931E19D7144A3BD3CBABD81B1542667680D54FC24DEBE1 ] kbdhid          C:\WINDOWS\System32\drivers\kbdhid.sys
18:16:15.0317 0x1c34  kbdhid - ok
18:16:15.0355 0x1c34  [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic           C:\WINDOWS\system32\DRIVERS\kdnic.sys
18:16:15.0365 0x1c34  kdnic - ok
18:16:15.0395 0x1c34  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] KeyIso          C:\WINDOWS\system32\lsass.exe
18:16:15.0404 0x1c34  KeyIso - ok
18:16:15.0474 0x1c34  [ BEE1682DA217A4AD46C36896769AA580, 4D853D78E459F7BFE4F4217FCAD47CDACFAC19C2F6CF8261FBAA46BDB387FFDC ] kl1             C:\WINDOWS\system32\DRIVERS\kl1.sys
18:16:15.0489 0x1c34  kl1 - ok
18:16:15.0590 0x1c34  [ 86F40D79CE80ACBE6BEBAC8CE89D75A0, 8B800425160D1AF3C32EF7B5CA794658EE09CD3EE782473D8D38E1C7706076B3 ] klbackupdisk    C:\WINDOWS\system32\DRIVERS\klbackupdisk.sys
18:16:15.0597 0x1c34  klbackupdisk - ok
18:16:15.0735 0x1c34  [ 2B4BC41223326FF440E2DB32B9239138, E95D5BB3388D6B219A4C175D5DA77CEB620A27A13F5AA4E7E2C05694B6E26947 ] klbackupflt     C:\WINDOWS\system32\DRIVERS\klbackupflt.sys
18:16:15.0744 0x1c34  klbackupflt - ok
18:16:15.0833 0x1c34  [ 1557DF622127972EDB3DD3A61E7763CC, F6E8F31760B549B882180EB6FB45B40CA6CEDC5E61B11E02609C26E053F7C902 ] kldisk          C:\WINDOWS\system32\DRIVERS\kldisk.sys
18:16:15.0841 0x1c34  kldisk - ok
18:16:15.0947 0x1c34  [ E2097C8F18F1E8E3B7D09F12B51843A3, 0506A99BD0962AAE64692BD7F080DB080F8B678DC59685CF22830A47B486430C ] klelam          C:\WINDOWS\system32\DRIVERS\klelam.sys
18:16:15.0956 0x1c34  klelam - ok
18:16:16.0069 0x1c34  [ D103BF27B16C31B0496B0CBB38EE21FB, FF1D9AAEED9E8F0992B8E432D7B79C5D3254BD773205F28151B07372B8B1BB92 ] klflt           C:\WINDOWS\system32\DRIVERS\klflt.sys
18:16:16.0079 0x1c34  klflt - ok
18:16:16.0184 0x1c34  [ 59C41AB76A88C3AB7AADA1FD2ECB12F5, 943122266762E3C94593C6E7DDE9A177D79073DC7B32AD4AADE952D0DE1EBB60 ] klhk            C:\WINDOWS\system32\DRIVERS\klhk.sys
18:16:16.0195 0x1c34  klhk - ok
18:16:16.0324 0x1c34  [ 935514F3BC992223B6C3ADAE4064383B, 6A5FF6A6FF880C9A5F8E33EF1067CAEFE4550F8A56C891D0CB064A4404AEF884 ] KLIF            C:\WINDOWS\system32\DRIVERS\klif.sys
18:16:16.0348 0x1c34  KLIF - ok
18:16:16.0506 0x1c34  [ E62321376344231F5F488758ACC6D553, 1155C1FDD5C95B05EABBD4268A7D3FFF050D0C0921B61226179C312605AB46C3 ] KLIM6           C:\WINDOWS\system32\DRIVERS\klim6.sys
18:16:16.0514 0x1c34  KLIM6 - ok
18:16:16.0537 0x1c34  [ DAE5768E6FD34A36E3B9D1AF1FCA682B, 24DA0B71E3B4AC0FABEE0BF687DF8D35283DBF808CA3AB6F86E72B37471F6B33 ] klkbdflt        C:\WINDOWS\system32\DRIVERS\klkbdflt.sys
18:16:16.0546 0x1c34  klkbdflt - ok
18:16:16.0579 0x1c34  [ FD47C92A63B6EADEA830BFA96C06EAEE, C15C39B6FA53CBD01A2F95243845C4B706B4229F8FFB75C7128819B9CEE5B2CB ] klmouflt        C:\WINDOWS\system32\DRIVERS\klmouflt.sys
18:16:16.0587 0x1c34  klmouflt - ok
18:16:16.0621 0x1c34  [ 55C46046D2EED16C05B237BA2C881207, 91569E97E2F1FC6B74A1D46168E91F5279A1419A4A51DD28A27520C0B59E5285 ] klpd            C:\WINDOWS\system32\DRIVERS\klpd.sys
18:16:16.0629 0x1c34  klpd - ok
18:16:16.0676 0x1c34  [ CAEB8838AE66B906B116951EB3A25299, F8E036B44DD41E3C76AC6BB7285071224C2B12DEE53A5F0AF5F33013A3873E60 ] klwfp           C:\WINDOWS\system32\DRIVERS\klwfp.sys
18:16:16.0684 0x1c34  klwfp - ok
18:16:16.0741 0x1c34  [ 91234D71CEED29F2DBA16942CABDCA4F, 5D71BAC86C33BC77EEBF1ECB8F372DFE631991E4C5F36EAF0C8C957150BD6D52 ] Klwtp           C:\WINDOWS\system32\DRIVERS\klwtp.sys
18:16:16.0749 0x1c34  Klwtp - ok
18:16:16.0803 0x1c34  [ 1686DE8288052316EFDD49EEA8929065, AD43D6ACCD8693BD76F218E1A4EE088BA061C1309A3E7DAA7EC94D875985D895 ] kneps           C:\WINDOWS\system32\DRIVERS\kneps.sys
18:16:16.0813 0x1c34  kneps - ok
18:16:16.0836 0x1c34  [ 4E829B18D5BAEC29893792A3C671A847, 64C3B99F53A9D1ACA802B46B09E820AD210B667D5A1CD0ADAF1F12944B15B52E ] KSecDD          C:\WINDOWS\system32\Drivers\ksecdd.sys
18:16:16.0845 0x1c34  KSecDD - ok
18:16:16.0915 0x1c34  [ 46711F40D0F9E63F786ED23F9BD5215E, 1FBC5101D843E5B43184C98B3D9AF3015C9409EEA6C7BB01B143FD08D4946FC0 ] KSecPkg         C:\WINDOWS\system32\Drivers\ksecpkg.sys
18:16:16.0926 0x1c34  KSecPkg - ok
18:16:16.0967 0x1c34  [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk         C:\WINDOWS\system32\drivers\ksthunk.sys
18:16:16.0976 0x1c34  ksthunk - ok
18:16:17.0058 0x1c34  [ C1591A66028C71147A3E2EAB0B1CCB7E, 82F3D5DCC1614398A144D9791E4BAA814DBA9112677341FD57D5E9834CEDEB41 ] KtmRm           C:\WINDOWS\system32\msdtckrm.dll
18:16:17.0075 0x1c34  KtmRm - ok
18:16:17.0148 0x1c34  [ CA2828DDE4B09FEFFDB7CE68B3D8D00A, B514792FF1EF36C678BB51644A1C420105D5E2CD6DD5A89A3FB252D08277A40C ] LanmanServer    C:\WINDOWS\system32\srvsvc.dll
18:16:17.0164 0x1c34  LanmanServer - ok
18:16:17.0317 0x1c34  [ 3DBD9100745F9B8506B8FEC6FE6CCDE3, C3EF2856A1680AFDE133887E48946CF9CAB6755C3BDC07F0326965DCD4096F62 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll
18:16:17.0733 0x1c34  LanmanWorkstation - ok
18:16:17.0785 0x1c34  [ 8B9F3796EC1762CF255BDB324E5529C8, F73D6BEF19BE20AEB18DA82CB63E9D8B50ACBBE4ED9B646EF0C9F598F6B81F94 ] lfsvc           C:\WINDOWS\System32\GeofenceMonitorService.dll
18:16:17.0805 0x1c34  lfsvc - ok
18:16:17.0828 0x1c34  [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio          C:\WINDOWS\system32\DRIVERS\lltdio.sys
18:16:17.0839 0x1c34  lltdio - ok
18:16:17.0884 0x1c34  [ DAE98CC96C5EE308BF4EA7B18F226CB8, 7A6CC56BF075010707715AB6608764291E358EDF27C806A025532869004C686B ] lltdsvc         C:\WINDOWS\System32\lltdsvc.dll
18:16:17.0898 0x1c34  lltdsvc - ok
18:16:17.0996 0x1c34  [ 1E2662D847B7D9995C65D90D254A7E0F, AFD4063D2071FFCB6B0EAC0715276D986F42326919C86E525DCE12E1109A93E2 ] lmhosts         C:\WINDOWS\System32\lmhsvc.dll
18:16:18.0006 0x1c34  lmhosts - ok
18:16:18.0133 0x1c34  [ 4269D44BB47A6DA5D80B11F4C8536458, 7A8FFC8F851DD9E5C43986BE0888831CB71D188138DF3CF7F787DADDA70915B0 ] LMS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
18:16:18.0143 0x1c34  LMS - ok
18:16:18.0262 0x1c34  [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS         C:\WINDOWS\system32\drivers\lsi_sas.sys
18:16:18.0273 0x1c34  LSI_SAS - ok
18:16:18.0292 0x1c34  [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2        C:\WINDOWS\system32\drivers\lsi_sas2.sys
18:16:18.0301 0x1c34  LSI_SAS2 - ok
18:16:18.0342 0x1c34  [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3        C:\WINDOWS\system32\drivers\lsi_sas3.sys
18:16:18.0352 0x1c34  LSI_SAS3 - ok
18:16:18.0374 0x1c34  [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS         C:\WINDOWS\system32\drivers\lsi_sss.sys
18:16:18.0383 0x1c34  LSI_SSS - ok
18:16:18.0471 0x1c34  [ 9A7A7E45DAED2E8C2816716D8D28236A, C94787988826E546A8DC752BD6BE4EA7423DC3762B2D371DB297A63F865A95FF ] LSM             C:\WINDOWS\System32\lsm.dll
18:16:18.0495 0x1c34  LSM - ok
18:16:18.0600 0x1c34  [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv           C:\WINDOWS\system32\drivers\luafv.sys
18:16:18.0610 0x1c34  luafv - ok
18:16:18.0713 0x1c34  [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas         C:\WINDOWS\system32\drivers\megasas.sys
18:16:18.0721 0x1c34  megasas - ok
18:16:18.0822 0x1c34  [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr          C:\WINDOWS\system32\drivers\megasr.sys
18:16:18.0842 0x1c34  megasr - ok
18:16:19.0257 0x1c34  [ 772A1DEEDFDBC244183B5C805D1B7D85, 7D821B8DF1F174E5414FFDEAB5207DB687740E9842F7203600AEBA086945AFC9 ] MEIx64          C:\WINDOWS\System32\drivers\HECIx64.sys
18:16:19.0264 0x1c34  MEIx64 - ok
18:16:19.0297 0x1c34  [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] MMCSS           C:\WINDOWS\system32\mmcss.dll
18:16:19.0306 0x1c34  MMCSS - ok
18:16:19.0332 0x1c34  [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem           C:\WINDOWS\system32\drivers\modem.sys
18:16:19.0343 0x1c34  Modem - ok
18:16:19.0434 0x1c34  [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor         C:\WINDOWS\System32\drivers\monitor.sys
18:16:19.0442 0x1c34  monitor - ok
18:16:19.0533 0x1c34  [ 08374E4E5B8914DE6067CBA99F61E930, CBB1390D6523FC968BEDF78FD13699488621ACB2CD1DF55D1606316090548661 ] mouclass        C:\WINDOWS\System32\drivers\mouclass.sys
18:16:19.0541 0x1c34  mouclass - ok
18:16:19.0572 0x1c34  [ 5FCBAB60598AE119E02B4C27DE6B99EA, 36F30094F700DE41C293047ACB49ED1961DD927BEDAD8DFDAB7023D4D24CB0DE ] mouhid          C:\WINDOWS\System32\drivers\mouhid.sys
18:16:19.0581 0x1c34  mouhid - ok
18:16:19.0632 0x1c34  [ 9A788037D768809DFD677F4BA08A224A, E0686B3318F924E440ADA439D6671D44D3FF97C13D45C2E0A3A7B9E23DA38350 ] mountmgr        C:\WINDOWS\system32\drivers\mountmgr.sys
18:16:19.0641 0x1c34  mountmgr - ok
18:16:19.0767 0x1c34  [ CC11EEB7AF4617D65DF0E9A21FC1ABD0, A683A5FB26E1B9FB4EEB40A9C7186F8433E3FB0A45848DF6102EF07B4DC75AC8 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
18:16:19.0776 0x1c34  MozillaMaintenance - ok
18:16:19.0817 0x1c34  [ 6FC047578785B0435F4E2660946D1ADC, 8AEA5659F01FC2F75160922C69622502DABA39F33CB90D5178DD679A1CDE617D ] mpsdrv          C:\WINDOWS\system32\drivers\mpsdrv.sys
18:16:19.0825 0x1c34  mpsdrv - ok
18:16:19.0941 0x1c34  [ C18AA14126ADC66478E8E962B2DFAA98, A6F8CE9D88D590DC083253004392572C3BD02C33433CD6C0D9117D2AA7171EEC ] MpsSvc          C:\WINDOWS\system32\mpssvc.dll
18:16:19.0965 0x1c34  MpsSvc - ok
18:16:20.0020 0x1c34  [ DB32958F0E704EFBF7F15161A569E39F, 8A26448B954F8A16EE9BA72EF47F6C549A75B30BD13FEB5A29EB099A74D8F678 ] MRxDAV          C:\WINDOWS\system32\drivers\mrxdav.sys
18:16:20.0030 0x1c34  MRxDAV - ok
18:16:20.0062 0x1c34  [ 6FBDF2B1B025A8E6E069234362FFFFB7, CF1AFC088F59AD61037F4C4650F3BAEE7FE37C40B3A27B903475F005410F8155 ] mrxsmb          C:\WINDOWS\system32\DRIVERS\mrxsmb.sys
18:16:20.0077 0x1c34  mrxsmb - ok
18:16:20.0118 0x1c34  [ BCBD64220AD85C26823453FF1DC3EFBD, 0245E3659E9135B9276F3CCFBEA0CEFFC4F4C0826F6D19B6329057620235F087 ] mrxsmb10        C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys
18:16:20.0130 0x1c34  mrxsmb10 - ok
18:16:20.0158 0x1c34  [ 57C2473D501331211D6885FD59F3E44B, 10253703DB32A32291C61B6962A79E374B5DF7DD14A6B6AFD08A99EF26206619 ] mrxsmb20        C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys
18:16:20.0169 0x1c34  mrxsmb20 - ok
18:16:20.0259 0x1c34  [ F3C060444777A59FC63D920719E43CCD, 8766A2746E3DFB0749E902F458141269335CA6F0CEDCA3D5F8C204637C19E783 ] MsBridge        C:\WINDOWS\system32\DRIVERS\bridge.sys
18:16:20.0269 0x1c34  MsBridge - ok
18:16:20.0336 0x1c34  [ 915747E010A9414B069173284A9B93F4, 8A335C28FE1EF96DD71485877F2E86155D24B5614ACE05468F4B07E2ACD56331 ] MSDTC           C:\WINDOWS\System32\msdtc.exe
18:16:20.0347 0x1c34  MSDTC - ok
18:16:20.0414 0x1c34  [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs            C:\WINDOWS\system32\drivers\Msfs.sys
18:16:20.0422 0x1c34  Msfs - ok
18:16:20.0513 0x1c34  [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32     C:\WINDOWS\System32\drivers\msgpiowin32.sys
18:16:20.0521 0x1c34  msgpiowin32 - ok
18:16:20.0539 0x1c34  [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf       C:\WINDOWS\System32\drivers\mshidkmdf.sys
18:16:20.0547 0x1c34  mshidkmdf - ok
18:16:20.0565 0x1c34  [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf       C:\WINDOWS\System32\drivers\mshidumdf.sys
18:16:20.0573 0x1c34  mshidumdf - ok
18:16:20.0589 0x1c34  [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv        C:\WINDOWS\system32\drivers\msisadrv.sys
18:16:20.0596 0x1c34  msisadrv - ok
18:16:20.0708 0x1c34  [ 4EAEEBAC8CFF4E0D717DFA920BC58A90, A65CB1BB3392B6A04B978348CAC18A414560A6B04A727F22DFC0ADB20DD3AF6B ] MSiSCSI         C:\WINDOWS\system32\iscsiexe.dll
18:16:20.0719 0x1c34  MSiSCSI - ok
18:16:20.0722 0x1c34  msiserver - ok
18:16:20.0789 0x1c34  [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV         C:\WINDOWS\system32\drivers\MSKSSRV.sys
18:16:20.0798 0x1c34  MSKSSRV - ok
18:16:20.0871 0x1c34  [ 51B3AC0560848CD6D65AC2033E293113, 73A27E88774C6929328E6C9FC9C389F4DF76D4D4D5CBFC4F51651CC308829628 ] MsLldp          C:\WINDOWS\system32\DRIVERS\mslldp.sys
18:16:20.0880 0x1c34  MsLldp - ok
18:16:20.0904 0x1c34  [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK        C:\WINDOWS\system32\drivers\MSPCLOCK.sys
18:16:20.0912 0x1c34  MSPCLOCK - ok
18:16:20.0923 0x1c34  [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM           C:\WINDOWS\system32\drivers\MSPQM.sys
18:16:20.0931 0x1c34  MSPQM - ok
18:16:21.0027 0x1c34  [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC           C:\WINDOWS\system32\drivers\MsRPC.sys
18:16:21.0042 0x1c34  MsRPC - ok
18:16:21.0138 0x1c34  [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios        C:\WINDOWS\System32\drivers\mssmbios.sys
18:16:21.0146 0x1c34  mssmbios - ok
18:16:21.0162 0x1c34  [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE           C:\WINDOWS\system32\drivers\MSTEE.sys
18:16:21.0170 0x1c34  MSTEE - ok
18:16:21.0182 0x1c34  [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig        C:\WINDOWS\System32\drivers\MTConfig.sys
18:16:21.0190 0x1c34  MTConfig - ok
18:16:21.0230 0x1c34  [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup             C:\WINDOWS\system32\Drivers\mup.sys
18:16:21.0239 0x1c34  Mup - ok
18:16:21.0265 0x1c34  [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis          C:\WINDOWS\system32\drivers\mvumis.sys
18:16:21.0274 0x1c34  mvumis - ok
18:16:21.0351 0x1c34  [ 8DF30698BDD9492A9D45A4B94FB4A82A, 26B1B2D7E785E29B8BCB74C467C66AE4EBDD481ACFF36334F3BDF4506B778244 ] napagent        C:\WINDOWS\system32\qagentRT.dll
18:16:21.0368 0x1c34  napagent - ok
18:16:21.0570 0x1c34  [ 008F7CED69FD5B30CBDE1E03C6F36A27, D4ADA7834C470B17A3CD976012DC5A511B32545B9F91D23D09A85722E0B75320 ] NativeWifiP     C:\WINDOWS\system32\DRIVERS\nwifi.sys
18:16:21.0585 0x1c34  NativeWifiP - ok
18:16:21.0817 0x1c34  [ E0E4A1F81A7D69C595A8A9DDAD084C19, 8F55F3637AE8BFFB0ACE37AFC5122026525137E0B2923899B779C1BD08DF0E22 ] NAUpdate        c:\Program Files (x86)\Nero\Update\NASvc.exe
18:16:21.0837 0x1c34  NAUpdate - ok
18:16:22.0003 0x1c34  [ BFCE1225D10619029E68946929CEB64C, 499F560331FFBA82E3D673B47F027FDAB7BEE4F2CB5B811D69E0218839F6E6A5 ] NcaSvc          C:\WINDOWS\System32\ncasvc.dll
18:16:22.0014 0x1c34  NcaSvc - ok
18:16:22.0046 0x1c34  [ 267C97373110B7AFD3B46DF60B6CBB85, CEBB99F71D47634BB9C04DF2836DF6B47F15B3073FEFC237F85526DF01E4E38B ] NcbService      C:\WINDOWS\System32\ncbservice.dll
18:16:22.0057 0x1c34  NcbService - ok
18:16:22.0075 0x1c34  [ 9ACED0F5B458C9011F39143326494E93, 9DFFC7EE7DE6FD92545EC6A203213C498A01EEFB0BC55460D339BCE498E56A7F ] NcdAutoSetup    C:\WINDOWS\System32\NcdAutoSetup.dll
18:16:22.0084 0x1c34  NcdAutoSetup - ok
18:16:22.0289 0x1c34  [ 97DC5967F65503213FD1F1B3E4A6F983, 3EC515856C7CE9B30032F963DC04190F66EE62402A819781DC45B7D088C84229 ] NDIS            C:\WINDOWS\system32\drivers\ndis.sys
18:16:22.0320 0x1c34  NDIS - ok
18:16:22.0443 0x1c34  [ 8CECC8DA55F3274181FD1EA28AD76664, 188112424CEF97FB926A0FB915260B803555A775DD2E1846725A9C8616300F42 ] NdisCap         C:\WINDOWS\system32\DRIVERS\ndiscap.sys
18:16:22.0452 0x1c34  NdisCap - ok
18:16:22.0472 0x1c34  [ 269882812E9A68FFF1AFE1283D428322, 50B99EBC42DA9B46A8C2C28C9BADCF58AE3079535CDD1227D0F5C86291C715FF ] NdisImPlatform  C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys
18:16:22.0481 0x1c34  NdisImPlatform - ok
18:16:22.0591 0x1c34  [ DC1D9F692C2AD84C214584C28501C1F7, 96FC0D1EC48FED963E02648541A2AAC8E72ED00D797EA8E3D0ED02F5EB4816C5 ] NdisTapi        C:\WINDOWS\system32\DRIVERS\ndistapi.sys
18:16:22.0599 0x1c34  NdisTapi - ok
18:16:22.0649 0x1c34  [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio         C:\WINDOWS\system32\DRIVERS\ndisuio.sys
18:16:22.0658 0x1c34  Ndisuio - ok
18:16:22.0678 0x1c34  [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus  C:\WINDOWS\System32\drivers\NdisVirtualBus.sys
18:16:22.0688 0x1c34  NdisVirtualBus - ok
18:16:22.0812 0x1c34  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan         C:\WINDOWS\system32\DRIVERS\ndiswan.sys
18:16:22.0826 0x1c34  NdisWan - ok
18:16:22.0856 0x1c34  [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy   C:\WINDOWS\system32\DRIVERS\ndiswan.sys
18:16:22.0869 0x1c34  NdisWanLegacy - ok
18:16:22.0888 0x1c34  [ 0BBE2FA30BAD58C9ADC01E4F84A3D2A1, 913AEC8A5F735C2EFDCB417E4077AB5A15457C601E6E88A1F4FA52C91E6E0BBF ] NDProxy         C:\WINDOWS\system32\drivers\NDProxy.sys
18:16:22.0897 0x1c34  NDProxy - ok
18:16:22.0917 0x1c34  [ 3083926D1CC5B56EA0786527B557DD1B, 3C3F0CA0D43398576DBE8F677B353ADDA7E8F56829874958CE668E31261C1590 ] Ndu             C:\WINDOWS\system32\drivers\Ndu.sys
18:16:22.0927 0x1c34  Ndu - ok
18:16:23.0387 0x1c34  [ 42FF4975D032CAE558AE4BB8448F6E5A, 0B8FACF3382443DED79A8004A6AA14C32471A6A1C6BAA543AA9F3FEC52620A6D ] NetBIOS         C:\WINDOWS\system32\DRIVERS\netbios.sys
18:16:23.0396 0x1c34  NetBIOS - ok
18:16:23.0414 0x1c34  [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT           C:\WINDOWS\system32\DRIVERS\netbt.sys
18:16:23.0427 0x1c34  NetBT - ok
18:16:23.0454 0x1c34  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] Netlogon        C:\WINDOWS\system32\lsass.exe
18:16:23.0463 0x1c34  Netlogon - ok
18:16:23.0492 0x1c34  [ 8F074B62E66B6117D9598C62A12069C5, 5FDB19045D3E2F6D0F0C5158AC2ECB0D5404CD2AF7A319755D7E3753CA3B7CF3 ] Netman          C:\WINDOWS\System32\netman.dll
18:16:23.0505 0x1c34  Netman - ok
18:16:23.0619 0x1c34  [ 4A04B1CD5BFB4A978C5F60E86D6C3E45, A946922C1C38ADD3CF9D3B09DDCC301AE4DAC960A081B2F42B32BE1E7095B3FD ] netprofm        C:\WINDOWS\System32\netprofmsvc.dll
18:16:23.0637 0x1c34  netprofm - ok
18:16:23.0821 0x1c34  [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
18:16:23.0831 0x1c34  NetTcpPortSharing - ok
18:16:23.0880 0x1c34  [ D4DCE03870314D3354F3501F9DDD4123, 5BFE8299B3F72B8C39A4965365CBF5BA151024451F02DD872FAD1CC35CF94CEA ] netvsc          C:\WINDOWS\System32\drivers\netvsc63.sys
18:16:23.0889 0x1c34  netvsc - ok
18:16:23.0934 0x1c34  [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc          C:\WINDOWS\System32\nlasvc.dll
18:16:23.0948 0x1c34  NlaSvc - ok
18:16:24.0254 0x1c34  [ 9B70CE32DD84A674B100BEA37F756016, 4B52FDA1FB24B02AE149AC70F46F3605B85A2A8AC5B948260BF53A5F076A674A ] NOBU            C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
18:16:24.0330 0x1c34  NOBU - ok
18:16:24.0351 0x1c34  [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs            C:\WINDOWS\system32\drivers\Npfs.sys
18:16:24.0361 0x1c34  Npfs - ok
18:16:24.0371 0x1c34  [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig       C:\WINDOWS\System32\drivers\npsvctrig.sys
18:16:24.0379 0x1c34  npsvctrig - ok
18:16:24.0471 0x1c34  [ 0F12A72A753CFD7FB0631EE8D08FE983, 860A96471F6CD90DDA9AB3A48E95CEAD826C87D2FA98A00EF91B61C44A4C8B82 ] nsi             C:\WINDOWS\system32\nsisvc.dll
18:16:24.0480 0x1c34  nsi - ok
18:16:24.0492 0x1c34  [ 0E046FF5823B95326D10CF1B4AF23541, 39D22715003746527AB4BFEDED8C34B695DAF589091AE7F3A2A2C4B8A35675A9 ] nsiproxy        C:\WINDOWS\system32\drivers\nsiproxy.sys
18:16:24.0500 0x1c34  nsiproxy - ok
18:16:24.0670 0x1c34  [ 7F68063A5A0461E02BC860CE0E6BFDDC, 47E9F75D27B97278B74034B7D3951A26B1644911ED321455E08D935731C858DE ] Ntfs            C:\WINDOWS\system32\drivers\Ntfs.sys
18:16:24.0721 0x1c34  Ntfs - ok
18:16:24.0742 0x1c34  [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null            C:\WINDOWS\system32\drivers\Null.sys
18:16:24.0751 0x1c34  Null - ok
18:16:25.0338 0x1c34  [ 9B93CC9C70EDE60A9C486E7719DB9E8D, 8E31BE72797D3308D8AF136E9F4C6199BCF4592F88E9FEB361752FF768225EC9 ] nvlddmkm        C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys
18:16:25.0544 0x1c34  nvlddmkm - ok
18:16:25.0588 0x1c34  [ F76296368BB813E0C6996501A3271C7C, FA1C127F881C09C5066CB83A686AFD7A40D731922185EA4001A52ABA230FD812 ] nvpciflt        C:\WINDOWS\system32\DRIVERS\nvpciflt.sys
18:16:25.0594 0x1c34  nvpciflt - ok
18:16:25.0667 0x1c34  [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid          C:\WINDOWS\system32\drivers\nvraid.sys
18:16:25.0677 0x1c34  nvraid - ok
18:16:25.0770 0x1c34  [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor          C:\WINDOWS\system32\drivers\nvstor.sys
18:16:25.0780 0x1c34  nvstor - ok
18:16:25.0886 0x1c34  [ FB50E60564ED30DDC855F0CE435C8467, C9A56D74F58739B8A069336FF5456FC5F3CE89371B8CFE8144B8D06A9C79C6AB ] nvsvc           C:\WINDOWS\system32\nvvsvc.exe
18:16:25.0908 0x1c34  nvsvc - ok
18:16:26.0078 0x1c34  [ C63E582366EAD77978BFFD959A66DBB8, BBAC11300AFED29291A08EEC8A740DA67C8C003AF89D06F9E0671CCF0E7908A0 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
18:16:26.0108 0x1c34  nvUpdatusService - ok
18:16:26.0201 0x1c34  [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp          C:\WINDOWS\system32\drivers\nv_agp.sys
18:16:26.0211 0x1c34  nv_agp - ok
18:16:26.0268 0x1c34  [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] p2pimsvc        C:\WINDOWS\system32\pnrpsvc.dll
18:16:26.0283 0x1c34  p2pimsvc - ok
18:16:26.0348 0x1c34  [ FD8F61F0D1F64BBB3D835F39A3F979C9, E5C5F86576488EA7F605E26C06EE5AFB36506A446F60C894D55E0A148BF7F02D ] p2psvc          C:\WINDOWS\system32\p2psvc.dll
18:16:26.0363 0x1c34  p2psvc - ok
18:16:26.0473 0x1c34  [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport         C:\WINDOWS\System32\drivers\parport.sys
18:16:26.0483 0x1c34  Parport - ok
18:16:26.0511 0x1c34  [ BAFF6122CFC9F95CA175AD8C348179A4, 079A912D951DF6A57BC1BDB0D182977EE9592751EC9DDCDA2932BDEDB333850C ] partmgr         C:\WINDOWS\system32\drivers\partmgr.sys
18:16:26.0520 0x1c34  partmgr - ok
18:16:26.0588 0x1c34  [ ABE95ABE27A8BD9701782BBCD82C9925, AE3BA1E9ECDE692374D8DAC95A8DAA289DD2470E3D8D58EFAD9F83A37F3AC8E5 ] PcaSvc          C:\WINDOWS\System32\pcasvc.dll
18:16:26.0605 0x1c34  PcaSvc - ok
18:16:26.0636 0x1c34  [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci             C:\WINDOWS\system32\drivers\pci.sys
18:16:26.0649 0x1c34  pci - ok
18:16:26.0673 0x1c34  [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide          C:\WINDOWS\system32\drivers\pciide.sys
18:16:26.0680 0x1c34  pciide - ok
18:16:26.0729 0x1c34  [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia          C:\WINDOWS\system32\drivers\pcmcia.sys
18:16:26.0738 0x1c34  pcmcia - ok
18:16:26.0758 0x1c34  [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw             C:\WINDOWS\system32\drivers\pcw.sys
18:16:26.0767 0x1c34  pcw - ok
18:16:26.0810 0x1c34  [ ED54A75050211DC77F9B98C41E026858, F92FB59ADE88469EAA50E91D43165C68CC32FDE11595A0069FD43103A674FE44 ] pdc             C:\WINDOWS\system32\drivers\pdc.sys
18:16:26.0818 0x1c34  pdc - ok
18:16:26.0931 0x1c34  [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH          C:\WINDOWS\system32\drivers\peauth.sys
18:16:26.0950 0x1c34  PEAUTH - ok
18:16:27.0575 0x1c34  [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost        C:\WINDOWS\SysWow64\perfhost.exe
18:16:27.0584 0x1c34  PerfHost - ok
18:16:27.0768 0x1c34  [ 70B39E7241F750A248798CE82C44596D, 54A72199EB277EE586611DCBC21654786FD2196F91D5884C4F531297893CC3EC ] pla             C:\WINDOWS\system32\pla.dll
18:16:27.0805 0x1c34  pla - ok
18:16:27.0846 0x1c34  [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] PlugPlay        C:\WINDOWS\system32\umpnpmgr.dll
18:16:27.0857 0x1c34  PlugPlay - ok
18:16:27.0943 0x1c34  [ 4570F8A37D221660F3A09D6F4DD4BA94, 0EA190CFFA53DF9CCA2D53A4EF1BCB837BA3F2489A3AC5BD11F6D6ED811D118E ] PNRPAutoReg     C:\WINDOWS\system32\pnrpauto.dll
18:16:27.0952 0x1c34  PNRPAutoReg - ok
18:16:28.0006 0x1c34  [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] PNRPsvc         C:\WINDOWS\system32\pnrpsvc.dll
18:16:28.0022 0x1c34  PNRPsvc - ok
18:16:28.0146 0x1c34  [ BDD52AB4AEBB8B1904568DBD0CCB70CB, C3D1DBA349C79B43DCDD9EF5255C5EE973EFB844235B808B5EF9B63A51FF00AA ] PolicyAgent     C:\WINDOWS\System32\ipsecsvc.dll
18:16:28.0162 0x1c34  PolicyAgent - ok
18:16:28.0274 0x1c34  [ C8DD82C3035E60D671B8CC5DF128D3A9, 6AABF632CBEDA9A7B553BC9134FF100CB6FDC88000D499D2883408FCEDD97576 ] Power           C:\WINDOWS\system32\umpo.dll
18:16:28.0284 0x1c34  Power - ok
18:16:28.0955 0x1c34  [ E3514CE7CB4AF80ECCA383F065BC77C0, 1EA06D358A07EB9DFB703CEFC4EB834B947B899E0ACFE1C494E2DAED63F1D4B5 ] PrintNotify     C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll
18:16:29.0016 0x1c34  PrintNotify - ok
18:16:29.0079 0x1c34  [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor       C:\WINDOWS\System32\drivers\processr.sys
18:16:29.0088 0x1c34  Processor - ok
18:16:29.0137 0x1c34  [ 6E409D818C6B342544EAE741B1422B85, B4ADFB7809FC42C432C984C3AC13FAFD1B7AD53BCC7FB16E86371DE4C829DD1A ] ProfSvc         C:\WINDOWS\system32\profsvc.dll
18:16:29.0150 0x1c34  ProfSvc - ok
18:16:29.0177 0x1c34  [ 138DBAE80F390B22297ACD861BDA996E, F0799F40266A11058710AD8ED5D8797A350DCB2A55D3DEF179C1D8C87AFB5208 ] Ps2Kb2Hid       C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys
18:16:29.0182 0x1c34  Ps2Kb2Hid - ok
18:16:29.0214 0x1c34  [ FC0141B4A5AD6D637D883C1A89FC45C5, DCE8942C02EEDAE7A57707CA60CAC3A8CD6BA68E6571E405CA882D4DD6D69E43 ] Psched          C:\WINDOWS\system32\DRIVERS\pacer.sys
18:16:29.0224 0x1c34  Psched - ok
18:16:29.0283 0x1c34  [ DAA9DEE0A5D5F238C4EE54C2C7FB67C5, 7EC8C603BD92699AC35BDCD294F13BEE90D5C2C195FD93A3F16928BFCF53CA93 ] QWAVE           C:\WINDOWS\system32\qwave.dll
18:16:29.0296 0x1c34  QWAVE - ok
18:16:29.0341 0x1c34  [ 83868EB2924E6BC21A54337C65D614D1, 8D1BE01EBD190231153B867C32120DC8FBFBD32050448A778134D435D76A0B07 ] QWAVEdrv        C:\WINDOWS\system32\drivers\qwavedrv.sys
18:16:29.0350 0x1c34  QWAVEdrv - ok
18:16:29.0397 0x1c34  [ B337B1F1E82A83E20A1743E008E25C0F, A2E8AF041B4CAB78AEE28A2147A189FF0F9D2FCEFB167D60FBBA0A787A5A5BE7 ] RasAcd          C:\WINDOWS\system32\DRIVERS\rasacd.sys
18:16:29.0405 0x1c34  RasAcd - ok
18:16:29.0454 0x1c34  [ 044638489B4A5FE5334F46C5314A0826, E06CC2A9EF369794DAD69FBB5AFD1676D4283DDAB2AD5E3EFE454C473F62F955 ] RasAuto         C:\WINDOWS\System32\rasauto.dll
18:16:29.0464 0x1c34  RasAuto - ok
18:16:29.0539 0x1c34  [ F83B38FCD4F69157B3D158433FA149CC, AB103BD3E2B3B134CB355C556DF70BCF0CF4DB11EFF7DB4A9876D5AA43D81293 ] RasMan          C:\WINDOWS\System32\rasmans.dll
18:16:29.0557 0x1c34  RasMan - ok
18:16:29.0591 0x1c34  [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe        C:\WINDOWS\system32\DRIVERS\raspppoe.sys
18:16:29.0602 0x1c34  RasPppoe - ok
18:16:29.0655 0x1c34  [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss           C:\WINDOWS\system32\DRIVERS\rdbss.sys
18:16:29.0669 0x1c34  rdbss - ok
18:16:29.0682 0x1c34  [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus          C:\WINDOWS\System32\drivers\rdpbus.sys
18:16:29.0690 0x1c34  rdpbus - ok
18:16:29.0714 0x1c34  [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR           C:\WINDOWS\system32\drivers\rdpdr.sys
18:16:29.0725 0x1c34  RDPDR - ok
18:16:29.0761 0x1c34  [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys
18:16:29.0769 0x1c34  RdpVideoMiniport - ok
18:16:29.0806 0x1c34  [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost        C:\WINDOWS\system32\drivers\rdyboost.sys
18:16:29.0819 0x1c34  rdyboost - ok
18:16:30.0084 0x1c34  [ 615DFD97DEA56CE1C3A52185A3038FF8, 707BF5F9FAE478A12656D15013F507CC1335E7B72BD21CA99BB813CB95E37BC0 ] ReFS            C:\WINDOWS\system32\drivers\ReFS.sys
18:16:30.0111 0x1c34  ReFS - ok
18:16:30.0149 0x1c34  [ 0CF7CB56BF2D5E9DBCEE0185CB626FAD, 2BD2E2FB1D2EADD1F70EF55E8523C353F95D4FEB1BAD5017FA4D94F790F27825 ] RemoteAccess    C:\WINDOWS\System32\mprdim.dll
18:16:30.0162 0x1c34  RemoteAccess - ok
18:16:30.0239 0x1c34  [ AC8785B53F8436058C90450DA1840AE7, CC1FFC2713910211F8A6AD532DBB9253ACD188CBD784F1BE6613DF382825A3C1 ] RemoteRegistry  C:\WINDOWS\system32\regsvc.dll
18:16:30.0250 0x1c34  RemoteRegistry - ok
18:16:30.0424 0x1c34  [ F61333867216EDE1A09A7C55FEDCB6A8, 991FC810FB281F4E91B7D22A7C5AF5D11419ACE05BBB3F664812391069A336F0 ] RfButtonDriverService C:\Windows\RfBtnSvc64.exe
18:16:30.0431 0x1c34  RfButtonDriverService - ok
18:16:30.0492 0x1c34  [ DC66AE45816614D2999DCD3834DCCC4E, 1C26225135E851DDD1307F52401DD7055B26B3F3B8FDD693B21042C2896E235A ] RFCOMM          C:\WINDOWS\system32\DRIVERS\rfcomm.sys
18:16:30.0502 0x1c34  RFCOMM - ok
18:16:30.0539 0x1c34  [ 65B9FDE300A6DECC03BA44C4616DCAD6, CAD992982733DD20282A3453DC4E554AE1FC077C35479C0CA4E8BC3A9DCD3BB0 ] RpcEptMapper    C:\WINDOWS\System32\RpcEpMap.dll
18:16:30.0549 0x1c34  RpcEptMapper - ok
18:16:30.0580 0x1c34  [ A737B433ABAF3F2DCB2BD7B4CC582B26, 3B5706B0CF0969A9F82060FD4DCC745F2D83C066B663FE8A4F0F493B64032C9C ] RpcLocator      C:\WINDOWS\system32\locator.exe
18:16:30.0588 0x1c34  RpcLocator - ok
18:16:30.0819 0x1c34  [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] RpcSs           C:\WINDOWS\system32\rpcss.dll
18:16:30.0842 0x1c34  RpcSs - ok
18:16:30.0879 0x1c34  [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr          C:\WINDOWS\system32\DRIVERS\rspndr.sys
18:16:30.0890 0x1c34  rspndr - ok
18:16:30.0919 0x1c34  [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap           C:\WINDOWS\System32\drivers\vms3cap.sys
18:16:30.0927 0x1c34  s3cap - ok
18:16:30.0948 0x1c34  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] SamSs           C:\WINDOWS\system32\lsass.exe
18:16:30.0956 0x1c34  SamSs - ok
18:16:30.0992 0x1c34  [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port        C:\WINDOWS\system32\drivers\sbp2port.sys
18:16:31.0001 0x1c34  sbp2port - ok
18:16:31.0052 0x1c34  [ 74A3B67F03877D06B09B1B40C5ED582E, A8FF9BF416F0BF365BFB4E1796859825C811A74B5E54DDDCE8345193BEEBE206 ] SCardSvr        C:\WINDOWS\System32\SCardSvr.dll
18:16:31.0064 0x1c34  SCardSvr - ok
18:16:31.0093 0x1c34  [ 8B9C4D55B4A536FB01C360DDB9533574, 9B939FE68F6F9C171ED0D91E2CE1E67515295D34EC23606BCDFD097DCC8CFD4A ] ScDeviceEnum    C:\WINDOWS\System32\ScDeviceEnum.dll
18:16:31.0105 0x1c34  ScDeviceEnum - ok
18:16:31.0146 0x1c34  [ 13BEA6C882D4D877A5A85CA149C86BC1, 8E9BE5C2A36D5881D9985C3A31309FE03966EA13A3541D3C5B542AB67FA0D55F ] scfilter        C:\WINDOWS\system32\DRIVERS\scfilter.sys
18:16:31.0154 0x1c34  scfilter - ok
18:16:31.0315 0x1c34  [ 3151A020E03DDE31AAC49F35C5EFB4DB, 5ABB1103009979F86C862357E28F37C2744979F2C99F7CF6ABB4EB1B8416B3F6 ] Schedule        C:\WINDOWS\system32\schedsvc.dll
18:16:31.0349 0x1c34  Schedule - ok
18:16:31.0390 0x1c34  [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] SCPolicySvc     C:\WINDOWS\System32\certprop.dll
18:16:31.0401 0x1c34  SCPolicySvc - ok
18:16:31.0481 0x1c34  [ C54B6B2170BF628FD42F799A66956D75, BCF460A124CAA6F1F1A9A7BCBDCC2D5E39B0404D96B7C9FFAC806E041782B91E ] sdbus           C:\WINDOWS\System32\drivers\sdbus.sys
18:16:31.0493 0x1c34  sdbus - ok
18:16:31.0589 0x1c34  [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor          C:\WINDOWS\System32\drivers\sdstor.sys
18:16:31.0597 0x1c34  sdstor - ok
18:16:31.0615 0x1c34  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\WINDOWS\system32\drivers\secdrv.sys
18:16:31.0623 0x1c34  secdrv - ok
18:16:31.0658 0x1c34  [ BA24CEA7152239F42ECD04AFB7C89D24, A2A11EABB0C283772B74667C7544B61BEB1B9745FBF065E831542129EB585AFA ] seclogon        C:\WINDOWS\system32\seclogon.dll
18:16:31.0668 0x1c34  seclogon - ok
18:16:31.0683 0x1c34  [ 81FE9A81EDF8016816C9E91FBFBF7D35, 87FB92A3D15F312F0B9C423EF851061A944B013E5668D8C9A441B4DC0EB690AF ] SENS            C:\WINDOWS\System32\sens.dll
18:16:31.0694 0x1c34  SENS - ok
18:16:31.0756 0x1c34  [ 6E4012AE67F09F867EF620C8D5524C0B, 63933E51F8E413E63481369CE2F9FD224560550FBD3BD2B4573E9F4AD88708A2 ] SensrSvc        C:\WINDOWS\system32\sensrsvc.dll
18:16:31.0768 0x1c34  SensrSvc - ok
18:16:31.0806 0x1c34  [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx           C:\WINDOWS\system32\drivers\SerCx.sys
18:16:31.0814 0x1c34  SerCx - ok
18:16:31.0881 0x1c34  [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2          C:\WINDOWS\system32\drivers\SerCx2.sys
18:16:31.0891 0x1c34  SerCx2 - ok
18:16:31.0922 0x1c34  [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum         C:\WINDOWS\System32\drivers\serenum.sys
18:16:31.0938 0x1c34  Serenum - ok
18:16:31.0989 0x1c34  [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial          C:\WINDOWS\System32\drivers\serial.sys
18:16:31.0998 0x1c34  Serial - ok
18:16:32.0040 0x1c34  [ 148195AE95D9BC7375A08846439FDAC1, 3A2F78FD18AA7A6D659921E19335E943894530874AC5AB5E7219CEF28FA54F7A ] sermouse        C:\WINDOWS\System32\drivers\sermouse.sys
18:16:32.0048 0x1c34  sermouse - ok
18:16:32.0255 0x1c34  [ 3A2F1A7472C3B7CC9B89C8516C726488, 9BCBBAC10C900EA7B30822B463A77EE5067F217C4B490857A09E5277983CB89B ] SessionEnv      C:\WINDOWS\system32\sessenv.dll
18:16:32.0269 0x1c34  SessionEnv - ok
18:16:32.0310 0x1c34  [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy         C:\WINDOWS\System32\drivers\sfloppy.sys
18:16:32.0318 0x1c34  sfloppy - ok
18:16:32.0374 0x1c34  [ 8081FF3DAE8159FE8956B09BC29CE983, AC0F305AEE8B1AB2E1275F1D33EC1D2F3E23F234F831BD9D41F415A94A19D3AB ] SharedAccess    C:\WINDOWS\System32\ipnathlp.dll
18:16:32.0390 0x1c34  SharedAccess - ok
18:16:32.0466 0x1c34  [ 7FD9A61A3523A61FC135D61D6E160314, 409E1CF7A62FD90CBC31AEAFBB7230B02DBEC6CFCA2D266D221A7643FAEBA13B ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll
18:16:32.0487 0x1c34  ShellHWDetection - ok
18:16:32.0500 0x1c34  [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2        C:\WINDOWS\system32\drivers\SiSRaid2.sys
18:16:32.0509 0x1c34  SiSRaid2 - ok
18:16:32.0560 0x1c34  [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4        C:\WINDOWS\system32\drivers\sisraid4.sys
18:16:32.0569 0x1c34  SiSRaid4 - ok
18:16:32.0603 0x1c34  [ 3C84DCCE5B322F745A75CA8BA3A0F6B3, 1FB94A8A1C63D6FDB82E28ED5B696B3CB1F64183A89A3B5153B266C292CB7815 ] smphost         C:\WINDOWS\System32\smphost.dll
18:16:32.0611 0x1c34  smphost - ok
18:16:32.0640 0x1c34  [ D0EB0DF8C603BBA084351A92732B1CBE, E24ED8F78EF41C1BC17386AE4BBCE0DC892C5B89B12C03FC9FB61D359B13F1B4 ] SNMPTRAP        C:\WINDOWS\System32\snmptrap.exe
18:16:32.0649 0x1c34  SNMPTRAP - ok
18:16:32.0739 0x1c34  [ D24B1945ED1F9C96DA786DBBF1E983CE, B46CB0B72B7A3DF94A46B8D65E38535C5F8E72A55CF2DC48EFA1F9A0108691C4 ] spaceport       C:\WINDOWS\system32\drivers\spaceport.sys
18:16:32.0755 0x1c34  spaceport - ok
18:16:32.0776 0x1c34  [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx           C:\WINDOWS\system32\drivers\SpbCx.sys
18:16:32.0785 0x1c34  SpbCx - ok
18:16:32.0897 0x1c34  [ 2E3976C857D7230EC8D2B2276E688255, C0A6A84369CB3E709A6FFEBED2B38AB62D731B79D052D6D6FA8EF855BC428778 ] Spooler         C:\WINDOWS\System32\spoolsv.exe
18:16:32.0920 0x1c34  Spooler - ok
18:16:33.0380 0x1c34  [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc          C:\WINDOWS\system32\sppsvc.exe
18:16:33.0530 0x1c34  sppsvc - ok
18:16:33.0721 0x1c34  [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] srv             C:\WINDOWS\system32\DRIVERS\srv.sys
18:16:33.0735 0x1c34  srv - ok
18:16:33.0818 0x1c34  [ 00D8AC8E3053290BDE6EA2FB6810D2FC, 957FEF84CBBAE71829529AE99A1B24F52D7831BD666442D0132FBB825409A75D ] srv2            C:\WINDOWS\system32\DRIVERS\srv2.sys
18:16:33.0837 0x1c34  srv2 - ok
18:16:33.0859 0x1c34  [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet          C:\WINDOWS\system32\DRIVERS\srvnet.sys
18:16:33.0875 0x1c34  srvnet - ok
18:16:34.0301 0x1c34  [ CF6C3037839CF78421A94F9060C2886F, CA98C180AE03F5BE8FEFFBA75BD98DEE2AD4FA975E1EF83215C9CD2476946811 ] SSDPSRV         C:\WINDOWS\System32\ssdpsrv.dll
18:16:34.0314 0x1c34  SSDPSRV - ok
18:16:34.0350 0x1c34  [ 198A737DBA666F4808D62E9A8277A6B7, 90B6E5E2ACE95D850C913A3A1DA1F966C44955C530004C228FA93B2A536F5C27 ] SstpSvc         C:\WINDOWS\system32\sstpsvc.dll
18:16:34.0361 0x1c34  SstpSvc - ok
18:16:34.0406 0x1c34  [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor        C:\WINDOWS\system32\drivers\stexstor.sys
18:16:34.0413 0x1c34  stexstor - ok
18:16:34.0462 0x1c34  [ 8F3C0CCF27CFFE89424F30E9FB3381AB, 74E54541B4A16DC97098428E1715A27557BAB97E05AF346F88958580199C1541 ] StillCam        C:\WINDOWS\system32\DRIVERS\serscan.sys
18:16:34.0470 0x1c34  StillCam - ok
18:16:34.0539 0x1c34  [ 63E9CE568CF1192771A5F0460DE7D2B9, C27B21FD2C14AD41A59EF62EB8AC95C08EB13CCB1CEECD8378B8CDD4DC352E69 ] stisvc          C:\WINDOWS\System32\wiaservc.dll
18:16:34.0560 0x1c34  stisvc - ok
18:16:34.0584 0x1c34  [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci        C:\WINDOWS\system32\drivers\storahci.sys
18:16:34.0593 0x1c34  storahci - ok
18:16:34.0627 0x1c34  [ 8B9486B64E5FC17FB9CC04CA10B77A34, C1EAC9D27DC83E4C56B890D97988C3CCFAE3877309610601F2E3FFFE97686D43 ] storflt         C:\WINDOWS\system32\drivers\vmstorfl.sys
18:16:34.0635 0x1c34  storflt - ok
18:16:34.0665 0x1c34  [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme        C:\WINDOWS\system32\drivers\stornvme.sys
18:16:34.0673 0x1c34  stornvme - ok
18:16:34.0734 0x1c34  [ A45F5AC9D8069D0EC66E3CA73103073B, 996788F1C58E016E8E5CF3FD1D220A3C40AFFD6C21361A34636415DB12E0D381 ] StorSvc         C:\WINDOWS\system32\storsvc.dll
18:16:34.0742 0x1c34  StorSvc - ok
18:16:34.0760 0x1c34  [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc         C:\WINDOWS\system32\drivers\storvsc.sys
18:16:34.0768 0x1c34  storvsc - ok
18:16:34.0813 0x1c34  [ E395BE02F80A79A6CF973BA38DBB8135, 4C6F85B0EB8E7725BA720F9742561D229726C0D7C17505D1E79F19A5626F6325 ] svsvc           C:\WINDOWS\system32\svsvc.dll
18:16:34.0821 0x1c34  svsvc - ok
18:16:34.0852 0x1c34  [ 65454187E0F8B6C0DCECB0287D06EC43, 87550000CF5B3C1DF3E69633934AFE8554AE40B6638F190D3185AD63F1D7A2EE ] swenum          C:\WINDOWS\System32\drivers\swenum.sys
18:16:34.0859 0x1c34  swenum - ok
18:16:34.0927 0x1c34  [ 1C71D72D4997A284128FBEE770726330, 21682BDE74A1108FED1124FB1EA35A03CBFA94ABE1B89CC0FADB4DD82596C43E ] swprv           C:\WINDOWS\System32\swprv.dll
18:16:34.0950 0x1c34  swprv - ok
18:16:35.0186 0x1c34  [ 7E85DB0463AD2403AE84AD162B162279, 996C42ECAFC6E24C623068AFAFCC0A2612526333AF9315F7536C6D40C2570632 ] SysMain         C:\WINDOWS\system32\sysmain.dll
18:16:35.0216 0x1c34  SysMain - ok
18:16:35.0355 0x1c34  [ D73DBBB96CEE90C2856164AAD8543425, D11ADB5D4C5DD355314CA656D375D0062CAE7462E866F94F1B26D5803F65DCB2 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll
18:16:35.0370 0x1c34  SystemEventsBroker - ok
18:16:35.0520 0x1c34  [ D6A71B95ACF71ACA63B67232059F1BCD, C5CEC032E7AB507500D1CC7A4E65DA6322412C798201A9D770CBDE892E50DFC8 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll
18:16:35.0531 0x1c34  TabletInputService - ok
18:16:35.0819 0x1c34  [ 5A5BAB1CA9621E73E25EE4744B67CDA6, 479EBD7BAE1E2AD431153FDC016742F7A8D824716EAB1A4CA87EBBD21D61DECD ] TapiSrv         C:\WINDOWS\System32\tapisrv.dll
18:16:35.0833 0x1c34  TapiSrv - ok
18:16:35.0931 0x1c34  [ 746DDF7D59AB8D721C88D48434597E8D, 78BDBAB8D1E86A11804FEB19B355C0FAD04ACE8DD4BDDFDADCE5461E259BCE82 ] Tcpip           C:\WINDOWS\system32\drivers\tcpip.sys
18:16:35.0991 0x1c34  Tcpip - ok
18:16:36.0076 0x1c34  [ 746DDF7D59AB8D721C88D48434597E8D, 78BDBAB8D1E86A11804FEB19B355C0FAD04ACE8DD4BDDFDADCE5461E259BCE82 ] TCPIP6          C:\WINDOWS\system32\DRIVERS\tcpip.sys
18:16:36.0136 0x1c34  TCPIP6 - ok
18:16:36.0177 0x1c34  [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg        C:\WINDOWS\system32\drivers\tcpipreg.sys
18:16:36.0185 0x1c34  tcpipreg - ok
18:16:36.0208 0x1c34  [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx             C:\WINDOWS\system32\DRIVERS\tdx.sys
18:16:36.0218 0x1c34  tdx - ok
18:16:36.0231 0x1c34  [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt        C:\WINDOWS\System32\drivers\terminpt.sys
18:16:36.0238 0x1c34  terminpt - ok
18:16:36.0275 0x1c34  [ C50997E282576DA492EBA66B059D4196, EBD793CB396F9503376207FA60353F5672DEDB620C8E01C8D6AE0030B3B03339 ] TermService     C:\WINDOWS\System32\termsrv.dll
18:16:36.0304 0x1c34  TermService - ok
18:16:36.0312 0x1c34  [ 2180DBCE75B914E5E5BBFFFAAE97AA21, 8000AECC8855903DB50ABA7E304396D1FCEAE8DC9ADD4FC50275CF24B4D914DE ] Themes          C:\WINDOWS\system32\themeservice.dll
18:16:36.0322 0x1c34  Themes - ok
18:16:36.0355 0x1c34  [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] THREADORDER     C:\WINDOWS\system32\mmcss.dll
18:16:36.0365 0x1c34  THREADORDER - ok
18:16:36.0377 0x1c34  [ B5ED9CC61798C7D44BD535D40B89EFB5, 1BDCEAA9AF2096381870D92129C748F4EE06A1167ABA9367B9DD43BAF27E3F5B ] TimeBroker      C:\WINDOWS\System32\TimeBrokerServer.dll
18:16:36.0390 0x1c34  TimeBroker - ok
18:16:36.0429 0x1c34  [ 82F909359600D3603FE852DB7F135626, 2EB2BB9D81AC9A2E432B2628E296B7B21F1C82EAE8009300EEF1B8596A9F418D ] TPM             C:\WINDOWS\system32\drivers\tpm.sys
18:16:36.0439 0x1c34  TPM - ok
18:16:36.0451 0x1c34  [ 884113C2BB703FE806C8608B75F34831, 24DE5750CA4363455412BABB0B1FAB08497153E8F158ED44958F100410F93506 ] TrkWks          C:\WINDOWS\System32\trkwks.dll
18:16:36.0462 0x1c34  TrkWks - ok
18:16:36.0512 0x1c34  [ 44A94FB4C76528D2382FFE04B05827C3, B0BCDF7CD1D65E61A9061D539D83527A89B69583958F8A26C6BF9766C1B61E0C ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe
18:16:36.0521 0x1c34  TrustedInstaller - ok
18:16:36.0537 0x1c34  [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt        C:\WINDOWS\system32\drivers\tsusbflt.sys
18:16:36.0546 0x1c34  TsUsbFlt - ok
18:16:36.0586 0x1c34  [ 20185BEB7512EDE4EFECDFA148AC9F99, 6F539478493C0F87F3DDF67A4A6D4D41E9474EEF21434E856350CE149A34EA9F ] TsUsbGD         C:\WINDOWS\System32\drivers\TsUsbGD.sys
18:16:36.0593 0x1c34  TsUsbGD - ok
18:16:36.0609 0x1c34  [ C8E0E78B5D284C2FF59BDFFDAF997242, BA1576C491A1246EF9866762426D110F4570F9DB42A68C174943C7D5020FE3E2 ] tunnel          C:\WINDOWS\system32\DRIVERS\tunnel.sys
18:16:36.0621 0x1c34  tunnel - ok
18:16:36.0633 0x1c34  [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35          C:\WINDOWS\system32\drivers\uagp35.sys
18:16:36.0642 0x1c34  uagp35 - ok
18:16:36.0676 0x1c34  [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor        C:\WINDOWS\System32\drivers\uaspstor.sys
18:16:36.0685 0x1c34  UASPStor - ok
18:16:36.0709 0x1c34  [ 807F8CF3E973305FC435C61CBBEE2A49, 43CDEAC2BFC5091C11DFC0E7F7171AF9A598AE56CB056C3CF382AE7807F79EF0 ] UCX01000        C:\WINDOWS\System32\drivers\ucx01000.sys
18:16:36.0720 0x1c34  UCX01000 - ok
18:16:36.0754 0x1c34  [ C61EAF8E1E4B2F62BA4FDF457440B2C6, 961F76A789925234AC27F56AAE34556FA06088D71580B42C24B0BC209EAFD67E ] udfs            C:\WINDOWS\system32\DRIVERS\udfs.sys
18:16:36.0767 0x1c34  udfs - ok
18:16:36.0794 0x1c34  [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI            C:\WINDOWS\System32\drivers\UEFI.sys
18:16:36.0802 0x1c34  UEFI - ok
18:16:36.0839 0x1c34  [ A867F0F978EE64C87FADC3B100869EE4, 2686BE85F963D0D0BB275E92E5B543280D8742CF10772303E3189D0719B6A277 ] UI0Detect       C:\WINDOWS\system32\UI0Detect.exe
18:16:36.0848 0x1c34  UI0Detect - ok
18:16:36.0861 0x1c34  [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx        C:\WINDOWS\system32\drivers\uliagpkx.sys
18:16:36.0870 0x1c34  uliagpkx - ok
18:16:36.0889 0x1c34  [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus           C:\WINDOWS\System32\drivers\umbus.sys
18:16:36.0897 0x1c34  umbus - ok
18:16:36.0914 0x1c34  [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass          C:\WINDOWS\System32\drivers\umpass.sys
18:16:36.0922 0x1c34  UmPass - ok
18:16:36.0955 0x1c34  [ A023F267A262D5DA6CE1436D9C5E8FD9, 92AD7AF91184C244A7E392F49663143193A80D5D81114546A00F18227DE31D23 ] UmRdpService    C:\WINDOWS\System32\umrdp.dll
18:16:36.0969 0x1c34  UmRdpService - ok
18:16:37.0047 0x1c34  [ DBE2E6388379D5CC78099650541E9566, 1914BC929F109A49FB18ED31F239A9813A010B0A3914BC8CD0D6A94A67A072D7 ] UNS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
18:16:37.0059 0x1c34  UNS - ok
18:16:37.0081 0x1c34  [ C98493DD8E6A50154FAC75C15E1C36BB, CECD1C826C8F7AF05468871BF6A0ACDBB6B0202F4F87F48C6D367E5BD699E800 ] upnphost        C:\WINDOWS\System32\upnphost.dll
18:16:37.0099 0x1c34  upnphost - ok
18:16:37.0132 0x1c34  [ DF355EB0199198728027962DCFCDE5FB, 9E158BD07389B4CFF99674716647FA3AABEECBD1A98EDF20E544E099A99A8768 ] usbaudio        C:\WINDOWS\system32\drivers\usbaudio.sys
18:16:37.0141 0x1c34  usbaudio - ok
18:16:37.0172 0x1c34  [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp         C:\WINDOWS\System32\drivers\usbccgp.sys
18:16:37.0182 0x1c34  usbccgp - ok
18:16:37.0188 0x1c34  [ 0139248F6B95CF0D837B5B46A2722D40, 38E3E704E0364F07732DB418AEBD126B040FB3CDB7D78EA36E8605D50D528A80 ] usbcir          C:\WINDOWS\System32\drivers\usbcir.sys
18:16:37.0197 0x1c34  usbcir - ok
18:16:37.0213 0x1c34  [ 48BA326A3DBA5B5BEB5F2777F4618696, B9EC8155F11A3A7644BD9DC8910681B46AE44AE3BF53F052DF50E9C5555E3229 ] usbehci         C:\WINDOWS\System32\drivers\usbehci.sys
18:16:37.0222 0x1c34  usbehci - ok
18:16:37.0249 0x1c34  [ FEF0BC107812B36849741C3211BA6B60, B3EF738BE1E6B6027F29C9713CD3F367EA067D2BE46580AFBC0FB58046EF6BBD ] usbhub          C:\WINDOWS\System32\drivers\usbhub.sys
18:16:37.0265 0x1c34  usbhub - ok
18:16:37.0307 0x1c34  [ 95B0179BDA907252025DEEA183699FB3, A6BDFB93EE9418A83407024204A41640A08638C60E2BE75C249D102601DC1D80 ] USBHUB3         C:\WINDOWS\System32\drivers\UsbHub3.sys
18:16:37.0324 0x1c34  USBHUB3 - ok
18:16:37.0337 0x1c34  [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci         C:\WINDOWS\System32\drivers\usbohci.sys
18:16:37.0345 0x1c34  usbohci - ok
18:16:37.0355 0x1c34  [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint        C:\WINDOWS\System32\drivers\usbprint.sys
18:16:37.0365 0x1c34  usbprint - ok
18:16:37.0388 0x1c34  [ 048D4067DD96205D735E0E0B0199C2EF, 4D9BC20B1BBEC5FEF04F96F3FD45F43944F4212EBD4824AE7C8A1D832E22F2A7 ] usbser          C:\WINDOWS\system32\DRIVERS\usbser.sys
18:16:37.0396 0x1c34  usbser - ok
18:16:37.0408 0x1c34  [ 66732C13628BDB1AB0D6FD46027327C2, B582C0F348D8F79419CA5A58F10CA151E06D7CA3BE162344CADA46D9D7FED97C ] USBSTOR         C:\WINDOWS\System32\drivers\USBSTOR.SYS
18:16:37.0419 0x1c34  USBSTOR - ok
18:16:37.0428 0x1c34  [ 064260B3A5868AC894A4943543BC7AB7, D3534E98B34C4AC9A430D7E0AB301A0E5E1511E3117C2FEA392636B0DE2C38E2 ] usbuhci         C:\WINDOWS\System32\drivers\usbuhci.sys
18:16:37.0436 0x1c34  usbuhci - ok
18:16:37.0463 0x1c34  [ 5C8F604F6DC74177CDD8372D7B1ADFF0, C1DE9A37A7A01CCCBFCE13C1E5B26683F620AB21EDA5A14C82022E2F49C84484 ] usbvideo        C:\WINDOWS\System32\Drivers\usbvideo.sys
18:16:37.0474 0x1c34  usbvideo - ok
18:16:37.0505 0x1c34  [ 44603DA5A87FB491EF59C889EBBB4DDB, 59AA9B6B0B5D66F9312CD3F999D0D9F12F1A2C5D230365AD7287CD71FD86961C ] USBXHCI         C:\WINDOWS\System32\drivers\USBXHCI.SYS
18:16:37.0519 0x1c34  USBXHCI - ok
18:16:37.0535 0x1c34  [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] VaultSvc        C:\WINDOWS\system32\lsass.exe
18:16:37.0543 0x1c34  VaultSvc - ok
18:16:37.0551 0x1c34  [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot        C:\WINDOWS\system32\drivers\vdrvroot.sys
18:16:37.0559 0x1c34  vdrvroot - ok
18:16:37.0608 0x1c34  [ 8A4D808D1EC7C1C47B2C8BF488A9A07A, 63C07312ADB6F8A8BDE93361C30AC63DAB4DE1141AF54630EEF11E54B0BF983D ] vds             C:\WINDOWS\System32\vds.exe
18:16:37.0642 0x1c34  vds - ok
18:16:37.0653 0x1c34  [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt     C:\WINDOWS\system32\drivers\VerifierExt.sys
18:16:37.0664 0x1c34  VerifierExt - ok
18:16:37.0708 0x1c34  [ F6ECFD6128A16A4851CFE98D4E01B011, C349893E8D7FB9B510A3FAD040F70C3C72B0ACDD5F6EB336951849F9E953717D ] vhdmp           C:\WINDOWS\System32\drivers\vhdmp.sys
18:16:37.0727 0x1c34  vhdmp - ok
18:16:37.0759 0x1c34  [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide          C:\WINDOWS\system32\drivers\viaide.sys
18:16:37.0767 0x1c34  viaide - ok
18:16:37.0784 0x1c34  [ 511AD3FF957A0127E6BD336FF6F89C38, 55325BFD0857A1204F7F6F8ED8C91C07B0E20A50402105708E7365ECD9E25A21 ] vmbus           C:\WINDOWS\system32\drivers\vmbus.sys
18:16:37.0793 0x1c34  vmbus - ok
18:16:37.0810 0x1c34  [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID        C:\WINDOWS\System32\drivers\VMBusHID.sys
18:16:37.0818 0x1c34  VMBusHID - ok
18:16:37.0878 0x1c34  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll
18:16:37.0896 0x1c34  vmicguestinterface - ok
18:16:37.0924 0x1c34  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicheartbeat   C:\WINDOWS\System32\ICSvc.dll
18:16:37.0941 0x1c34  vmicheartbeat - ok
18:16:37.0953 0x1c34  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll
18:16:37.0971 0x1c34  vmickvpexchange - ok
18:16:37.0983 0x1c34  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicrdv         C:\WINDOWS\System32\ICSvc.dll
18:16:38.0000 0x1c34  vmicrdv - ok
18:16:38.0012 0x1c34  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicshutdown    C:\WINDOWS\System32\ICSvc.dll
18:16:38.0029 0x1c34  vmicshutdown - ok
18:16:38.0041 0x1c34  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmictimesync    C:\WINDOWS\System32\ICSvc.dll
18:16:38.0058 0x1c34  vmictimesync - ok
18:16:38.0071 0x1c34  [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicvss         C:\WINDOWS\System32\ICSvc.dll
18:16:38.0088 0x1c34  vmicvss - ok
18:16:38.0100 0x1c34  [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr          C:\WINDOWS\system32\drivers\volmgr.sys
18:16:38.0108 0x1c34  volmgr - ok
18:16:38.0128 0x1c34  [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx         C:\WINDOWS\system32\drivers\volmgrx.sys
18:16:38.0143 0x1c34  volmgrx - ok
18:16:38.0160 0x1c34  [ 64CA2B4A49A8EAF495E435623ECCE7DB, 81151F295A54DE2B8B88C7F48C86BF58CDFF96F98493509C06D6F41484594386 ] volsnap         C:\WINDOWS\system32\drivers\volsnap.sys
18:16:38.0173 0x1c34  volsnap - ok
18:16:38.0202 0x1c34  [ EF31713EE4C7CCFE4049F7E7F15645A2, 35D198D3F1061E19A7EF89FA1E75377049CD6BCA9702F8076B9F95BB8737E0D4 ] vpci            C:\WINDOWS\System32\drivers\vpci.sys
18:16:38.0211 0x1c34  vpci - ok
18:16:38.0241 0x1c34  [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid         C:\WINDOWS\system32\drivers\vsmraid.sys
18:16:38.0252 0x1c34  vsmraid - ok
18:16:38.0311 0x1c34  [ 3B7F9612439EA47151EC5EAB232C1C3F, CA08CCB14CB46512F72E2C20454242B18BC57E34C55B42A37B7EC27B79242CDC ] VSS             C:\WINDOWS\system32\vssvc.exe
18:16:38.0346 0x1c34  VSS - ok
18:16:38.0437 0x1c34  [ 79F4D90FAA0ACC1866F2F3E03E39CA89, EE08BCBF29A7E4AFFF520B8DF067281425F433EC275F8C86CE8F20F000E92E3D ] vssbrigde64     C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\x64\vssbridge64.exe
18:16:38.0445 0x1c34  vssbrigde64 - ok
18:16:38.0466 0x1c34  [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID        C:\WINDOWS\system32\drivers\vstxraid.sys
18:16:38.0479 0x1c34  VSTXRAID - ok
18:16:38.0513 0x1c34  [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus        C:\WINDOWS\System32\drivers\vwifibus.sys
18:16:38.0521 0x1c34  vwifibus - ok
18:16:38.0533 0x1c34  [ 6B26AD573CCDD5209DF4397438B76354, 2C8AC314EC471F6D8B0B12D49D621360A10DCADA7C52E73596730C954FF89FCF ] vwififlt        C:\WINDOWS\system32\DRIVERS\vwififlt.sys
18:16:38.0543 0x1c34  vwififlt - ok
18:16:38.0552 0x1c34  [ 0B48E0DFB44EE475F4FD8A8EE599AF30, 28271D4CA0C642304CD8826A3D514F44E3391F9D6D07A1595BB30CE65E7E3494 ] vwifimp         C:\WINDOWS\system32\DRIVERS\vwifimp.sys
18:16:38.0562 0x1c34  vwifimp - ok
18:16:38.0598 0x1c34  [ DC821E811EFBB65CDD77FBB8B6ECA385, B7C8AACDF81DBA298F2F384983D36B269876C31F0398D89BF9070217A069B96F ] W32Time         C:\WINDOWS\system32\w32time.dll
18:16:38.0615 0x1c34  W32Time - ok
18:16:38.0643 0x1c34  [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen        C:\WINDOWS\System32\drivers\wacompen.sys
18:16:38.0651 0x1c34  WacomPen - ok
18:16:38.0715 0x1c34  [ A81988DCC4FA440AA88B84CA452F5E22, 3573AAA09971E8ADB6FEFA778E02B2D8EE5E4249267CF37A524D9F019CC836FB ] wbengine        C:\WINDOWS\system32\wbengine.exe
18:16:38.0751 0x1c34  wbengine - ok
18:16:38.0790 0x1c34  [ 0F1DFA2FED73FA78B8C3CDE332A870F6, 1089F6F585F5350D349A640EBD3117832DF6B3657EB6667CB00AE217E04ACA17 ] WbioSrvc        C:\WINDOWS\System32\wbiosrvc.dll
18:16:38.0807 0x1c34  WbioSrvc - ok
18:16:38.0823 0x1c34  [ 0EAEC313B24837613621B4A2536ED382, 61C194ED7FA7D65BBE61A546D5FCA52F52AB08324E084D3EC23C9706E9BF0175 ] Wcmsvc          C:\WINDOWS\System32\wcmsvc.dll
18:16:38.0839 0x1c34  Wcmsvc - ok
18:16:38.0859 0x1c34  [ F6B4C2280FF7C7156AC8A4687B9DA35E, 1899D584D7469BB49355D84080051E2575B033E6312009D9C6C1DD3F7F9AA4C5 ] wcncsvc         C:\WINDOWS\System32\wcncsvc.dll
18:16:38.0876 0x1c34  wcncsvc - ok
18:16:38.0887 0x1c34  [ B7BF1D783F5B2484E8CE1C0C78257F16, 468601199FCCF63DBAE86EE6B8825EA85B2A1EE177413353FFA2CC9CA5249FCD ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll
18:16:38.0897 0x1c34  WcsPlugInService - ok
18:16:38.0912 0x1c34  [ 81285DDC994F03379DB46419300B2DCB, 98D3622E11F375718AEA1DE3B5F0104DDAB4F96B6D4C19788C14F7B338A6F235 ] WdBoot          C:\WINDOWS\system32\drivers\WdBoot.sys
18:16:38.0921 0x1c34  WdBoot - ok
18:16:38.0952 0x1c34  [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000        C:\WINDOWS\system32\drivers\Wdf01000.sys
18:16:38.0975 0x1c34  Wdf01000 - ok
18:16:38.0995 0x1c34  [ 26B8FED3F3B85F5F0C4BD03FD00B9941, 7F94FE7954498223B33C025258DB588A3AC9FF25C58EEAD204514FD20652FE40 ] WdFilter        C:\WINDOWS\system32\drivers\WdFilter.sys
18:16:39.0009 0x1c34  WdFilter - ok
18:16:39.0022 0x1c34  [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiServiceHost  C:\WINDOWS\system32\wdi.dll
18:16:39.0035 0x1c34  WdiServiceHost - ok
18:16:39.0039 0x1c34  [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiSystemHost   C:\WINDOWS\system32\wdi.dll
18:16:39.0051 0x1c34  WdiSystemHost - ok
18:16:39.0087 0x1c34  [ CE67080F00E0AF32755096CEA6430ABA, 0E5D626F9F76C0BC63B2D246AD66D9CBF7D92F34B56398417BCFD0C331DBD282 ] WdNisDrv        C:\WINDOWS\system32\Drivers\WdNisDrv.sys
18:16:39.0097 0x1c34  WdNisDrv - ok
18:16:39.0122 0x1c34  WdNisSvc - ok
18:16:39.0155 0x1c34  [ 40F83492DB9ABBA59773A45FB487C8B2, 0D0DE0B0C9B929FEFD2674CCF17F5F2FC4B16EAB8E1981BBCE51B0305FD7D75E ] WebClient       C:\WINDOWS\System32\webclnt.dll
18:16:39.0167 0x1c34  WebClient - ok
18:16:39.0185 0x1c34  [ 384E1D04FE20845B2559D292F17A9FA1, AD3B0B2B2219691AC30FEEC8AFDB3BBB74B51BB7D02038AE2B4DEA514E245315 ] Wecsvc          C:\WINDOWS\system32\wecsvc.dll
18:16:39.0198 0x1c34  Wecsvc - ok
18:16:39.0214 0x1c34  [ 455014F4E48B67EBE0F032E2B0E06BF2, A36435784A034B27056A0E606683A20C69F1B0AB2B6BAEDEAEAA190F6287CAEF ] WEPHOSTSVC      C:\WINDOWS\system32\wephostsvc.dll
18:16:39.0222 0x1c34  WEPHOSTSVC - ok
18:16:39.0242 0x1c34  [ F13DBA57CEA9B7074B95EDCA6AD2635E, 1D9BA4841EF1343A5D9096B5FE27FC65DC1901D6683DD13516171638549666B5 ] wercplsupport   C:\WINDOWS\System32\wercplsupport.dll
18:16:39.0254 0x1c34  wercplsupport - ok
18:16:39.0264 0x1c34  [ FD7E58B6AA3EABF2D12B9762A20E11E4, 4C5E2E246C5C70074866BB3DBC2AAF483ECE4345004CCB8D1FE285047268685D ] WerSvc          C:\WINDOWS\System32\WerSvc.dll
18:16:39.0276 0x1c34  WerSvc - ok
18:16:39.0320 0x1c34  [ 715ABA3DD164D06457A2A3C92F6EA9D5, E6F8269D2FFC4A548B65724C0A3F53756ED15E47229861FBD40B656EE40FE166 ] WFPLWFS         C:\WINDOWS\system32\DRIVERS\wfplwfs.sys
18:16:39.0330 0x1c34  WFPLWFS - ok
18:16:39.0367 0x1c34  [ 8C840E1FD7584E74BD0CC1EA581EC187, 148E534A94B4882E7396B13FABE17407802292E7890713540080D03D5629C81D ] WiaRpc          C:\WINDOWS\System32\wiarpc.dll
18:16:39.0377 0x1c34  WiaRpc - ok
18:16:39.0413 0x1c34  [ 5F66B7BB330AA80067FC66149A692620, 92C5D7115A168A23108B65EEEB5FBA8FA43D781855355792596D2419160263C2 ] WIMMount        C:\WINDOWS\system32\drivers\wimmount.sys
18:16:39.0420 0x1c34  WIMMount - ok
18:16:39.0422 0x1c34  WinDefend - ok
18:16:39.0447 0x1c34  [ 82597A56652EB73A95484ADA65EB532B, 8DAFA715B9192CB37422DD6DDAC9B358B12CFE6B52A53240BF980C7559FE9371 ] WinDriver6      C:\WINDOWS\system32\drivers\windrvr6.sys
18:16:39.0482 0x1c34  WinDriver6 - ok
18:16:39.0527 0x1c34  [ 10DAD6A7FC617A221313BD584E3C3A00, F139B878668ECF38FE59831E8595A207D5CEEE76C6FFDA8C9F735435E601A763 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll
18:16:39.0550 0x1c34  WinHttpAutoProxySvc - ok
18:16:39.0633 0x1c34  [ FC8BD690321216C32BB58B035B6D5674, D61698DB19D9DB2593B60B6BA13F7B7735667206F41D751D507135469D6D3CDD ] Winmgmt         C:\WINDOWS\system32\wbem\WMIsvc.dll
18:16:39.0645 0x1c34  Winmgmt - ok
18:16:39.0729 0x1c34  [ 75436315AA383CF527695C6D49D0CA59, E3D55F2ACBD45D4D031FA6CA799394459C89BE50FF6ADE4FE36F2CAB2D2E63D0 ] WinRM           C:\WINDOWS\system32\WsmSvc.dll
18:16:39.0786 0x1c34  WinRM - ok
18:16:39.0821 0x1c34  [ AC263C2F66405589528995AA41040599, 81B46E551D6130A2C3D113EC3B563CEDB5A06BB340986C0E03136CE5BE729481 ] WinUsb          C:\WINDOWS\system32\DRIVERS\WinUsb.sys
18:16:39.0830 0x1c34  WinUsb - ok
18:16:39.0902 0x1c34  [ DC079BA8390089E4EBCA63D27EEA3ECB, 4D549217A68292E2B16C09FD9F84317011EE54A2DAF4E2AB85554267DF0D3249 ] WlanSvc         C:\WINDOWS\System32\wlansvc.dll
18:16:39.0938 0x1c34  WlanSvc - ok
18:16:39.0988 0x1c34  [ 06BF5897949A8F24893F792E876B71F5, 9D3719492A86BF52A56E2EA798FD6FDB5862A03F6D360FCC4B0CEA9BE9792AE4 ] wlidsvc         C:\WINDOWS\system32\wlidsvc.dll
18:16:40.0026 0x1c34  wlidsvc - ok
18:16:40.0054 0x1c34  [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi         C:\WINDOWS\System32\drivers\wmiacpi.sys
18:16:40.0062 0x1c34  WmiAcpi - ok
18:16:40.0104 0x1c34  [ B96F7A1236C3F21212DE2C40A3DDB005, 5A29EBB6DA036E303611EB1304192655021405BB05452FD37886DDE604FF0D9D ] wmiApSrv        C:\WINDOWS\system32\wbem\WmiApSrv.exe
18:16:40.0116 0x1c34  wmiApSrv - ok
18:16:40.0144 0x1c34  WMPNetworkSvc - ok
18:16:40.0160 0x1c34  [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof             C:\WINDOWS\system32\drivers\Wof.sys
18:16:40.0170 0x1c34  Wof - ok
18:16:40.0226 0x1c34  [ 588040D595BBF0856CA1ADD941A8ED17, CBC92BB5453FE1BEA6F33239B7CE884F312559591383408EA5F95A006156C5D3 ] workfolderssvc  C:\WINDOWS\system32\workfolderssvc.dll
18:16:40.0264 0x1c34  workfolderssvc - ok
18:16:40.0296 0x1c34  [ A2468CC3509394A33C4C32F99563D845, 62690C7D41F382DF74B8F4B942647842858E37DE35FF2DE028192E4D09ABB2C5 ] wpcfltr         C:\WINDOWS\system32\DRIVERS\wpcfltr.sys
18:16:40.0304 0x1c34  wpcfltr - ok
18:16:40.0322 0x1c34  [ 19F4DF69876DA7E9C4965351560FE6B7, 127247A7964F55EE3AF842D25120F5ACD387632BEE2BF3D28FAC05840CEA19BA ] WPCSvc          C:\WINDOWS\System32\wpcsvc.dll
18:16:40.0330 0x1c34  WPCSvc - ok
18:16:40.0345 0x1c34  [ 2ADE11F3D84709C5F6781E4C59F11683, F003C43396CF8FCF44EAB87583650DB4D2A233322D28D6A78D1694945D9073BB ] WPDBusEnum      C:\WINDOWS\system32\wpdbusenum.dll
18:16:40.0355 0x1c34  WPDBusEnum - ok
18:16:40.0370 0x1c34  [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr       C:\WINDOWS\system32\drivers\WpdUpFltr.sys
18:16:40.0377 0x1c34  WpdUpFltr - ok
18:16:40.0394 0x1c34  [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl         C:\WINDOWS\system32\drivers\ws2ifsl.sys
18:16:40.0404 0x1c34  ws2ifsl - ok
18:16:40.0437 0x1c34  [ 5596C0960ED6ED7494BF2A55DE428684, C95CF09A657F37F421CC80E16F2F95B8EC59A8D5D48F104551155EAC8E53DCB2 ] wscsvc          C:\WINDOWS\System32\wscsvc.dll
18:16:40.0448 0x1c34  wscsvc - ok
18:16:40.0468 0x1c34  [ F586F3F1BF962FE9AE4316E0D896B22F, 8D0AD48D79294567123D943D0F5B6D5A32D7A82B129A24DC821D3095AFAA100B ] WSDPrintDevice  C:\WINDOWS\System32\drivers\WSDPrint.sys
18:16:40.0476 0x1c34  WSDPrintDevice - ok
18:16:40.0479 0x1c34  WSearch - ok
18:16:40.0577 0x1c34  [ 6B2D71124C1EA86B74412F414C42431D, 078CC6C9667EF6BDA3E6900BC26A5A5B030CAA66928A6BBB7B7DC43C5C199EDC ] WSService       C:\WINDOWS\System32\WSService.dll
18:16:40.0664 0x1c34  WSService - ok
18:16:40.0785 0x1c34  [ 3F726FF7B1ACC7D5E89940EA5BFF0E61, DF84486870C677B30985005A909CFDF8446BD566F601A295FF29F258E1D1AFF4 ] wuauserv        C:\WINDOWS\system32\wuaueng.dll
18:16:40.0859 0x1c34  wuauserv - ok
18:16:40.0892 0x1c34  [ 481286719402E4BAEFEA0604AB1B5113, F3CF65DF2AB39F79AE4C1335831408418E40726706E0242677E8B96B0FAD988F ] WudfPf          C:\WINDOWS\system32\drivers\WudfPf.sys
18:16:40.0902 0x1c34  WudfPf - ok
18:16:40.0922 0x1c34  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFRd          C:\WINDOWS\System32\drivers\WUDFRd.sys
18:16:40.0934 0x1c34  WUDFRd - ok
18:16:40.0946 0x1c34  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFSensorLP    C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
18:16:40.0957 0x1c34  WUDFSensorLP - ok
18:16:40.0982 0x1c34  [ 51D28F7F1F888DDCF2C67DCF3B79A5D3, 74FF2936AFCEB9A36175D5B00EB91A5AD614B52BE3FB3FA9B994A025A484D2B7 ] wudfsvc         C:\WINDOWS\System32\WUDFSvc.dll
18:16:40.0992 0x1c34  wudfsvc - ok
18:16:41.0001 0x1c34  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdFs       C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
18:16:41.0013 0x1c34  WUDFWpdFs - ok
18:16:41.0020 0x1c34  [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdMtp      C:\WINDOWS\system32\DRIVERS\WUDFRd.sys
18:16:41.0032 0x1c34  WUDFWpdMtp - ok
18:16:41.0052 0x1c34  [ A0900F8F628B5AF6841414EB3CF11E50, 8A531F2472FF4B4D895D469D28C215C834ECADBEF539894B8F3F606079A86184 ] WwanSvc         C:\WINDOWS\System32\wwansvc.dll
18:16:41.0071 0x1c34  WwanSvc - ok
18:16:41.0081 0x1c34  ================ Scan global ===============================
18:16:41.0111 0x1c34  [ 05B08C20B8428ECE088CB5635696A48D, 471642A2D0E5C3BB235962FC8D86A49AC30D7DDE80B97E348425BBFCDE4DCDC3 ] C:\WINDOWS\system32\basesrv.dll
18:16:41.0148 0x1c34  [ EAB311B0A7A8EA0346F14F08D4BC8F46, 11168E4074679F8A69DA714C0ABD0C68BA49D171B379343F14783C9C563202CA ] C:\WINDOWS\system32\winsrv.dll
18:16:41.0178 0x1c34  [ 3600ED7EA8AED849E20700551C0BD63B, 4A8C346C1646E80B58EF93F87F915A41E05CA2E993BB1C96955AE62A0669AF66 ] C:\WINDOWS\system32\sxssrv.dll
18:16:41.0223 0x1c34  [ E0C7813A97CA7947FF5C18A8F3B61A45, 083BB4F3B20419C87DB656F1465E5F782ACDE76838CDE6207F26AAD035C69DE0 ] C:\WINDOWS\system32\services.exe
18:16:41.0230 0x1c34  [ Global ] - ok
18:16:41.0230 0x1c34  ================ Scan MBR ==================================
18:16:41.0239 0x1c34  [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0
18:16:41.0336 0x1c34  \Device\Harddisk0\DR0 - ok
18:16:41.0336 0x1c34  ================ Scan VBR ==================================
18:16:41.0338 0x1c34  [ 91CAFD10F35657DFD3718C2573867B85 ] \Device\Harddisk0\DR0\Partition1
18:16:41.0365 0x1c34  \Device\Harddisk0\DR0\Partition1 - ok
18:16:41.0382 0x1c34  [ 7CCF3B00DA736DCD7F0C2F353124BB59 ] \Device\Harddisk0\DR0\Partition2
18:16:41.0390 0x1c34  \Device\Harddisk0\DR0\Partition2 - ok
18:16:41.0408 0x1c34  [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition3
18:16:41.0408 0x1c34  \Device\Harddisk0\DR0\Partition3 - ok
18:16:41.0415 0x1c34  [ ED788AF329DA2228589C0E6D327AAEEB ] \Device\Harddisk0\DR0\Partition4
18:16:41.0433 0x1c34  \Device\Harddisk0\DR0\Partition4 - ok
18:16:41.0460 0x1c34  [ 5465BA5894797A12F586EA85F32774AC ] \Device\Harddisk0\DR0\Partition5
18:16:41.0476 0x1c34  \Device\Harddisk0\DR0\Partition5 - ok
18:16:41.0490 0x1c34  [ 97F2691A6C4A90DA298D97B84F781D4D ] \Device\Harddisk0\DR0\Partition6
18:16:41.0504 0x1c34  \Device\Harddisk0\DR0\Partition6 - ok
18:16:41.0504 0x1c34  ================ Scan generic autorun ======================
18:16:41.0545 0x1c34  ETDCtrl - ok
18:16:41.0582 0x1c34  [ 8EC9EF60E24E88DC5DC74D305925E2CF, 37719AAD02B4EA851F899AB4A3464EA381B96BA2E386A52BF9FDAA8C9257FDBE ] C:\Windows\system32\igfxtray.exe
18:16:41.0596 0x1c34  IgfxTray - ok
18:16:41.0598 0x1c34  HotKeysCmds - ok
18:16:41.0599 0x1c34  Persistence - ok
18:16:41.0641 0x1c34  [ 4984CCE4890E3AB3206C01E1F70E804E, 3BAB8F0196E3BB11658B74A028E6A230FBF68AAA592527A8A93D512FA74CEB0E ] C:\Program Files\Classic Shell\ClassicStartMenu.exe
18:16:41.0651 0x1c34  Classic Start Menu - ok
18:16:42.0013 0x1c34  [ 6522AA1BCFC503A2417B7358E31F4EB9, 7E0AC65A1A99877DAFC139C7F712C19A92FED4D1E80BD8DC6FD857EA2D40E1CA ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
18:16:42.0231 0x1c34  RtHDVCpl - ok
18:16:42.0278 0x1c34  [ 350AE710634AF327DDC90B897BBBA23A, E4F0C0D50894A9CA63311AC48EA22F7B9BCA35AE3AC71AD6259C0FAC6FA134B9 ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
18:16:42.0303 0x1c34  RtHDVBg_Dolby - ok
18:16:42.0340 0x1c34  [ FF7CB5344094510654C240486B4B1B3F, 2A50A3BC366D5293C61FEDC5639C0EB2BB3176933599B6C1533F06F9B6C5D2DF ] C:\Program Files (x86)\RadioController\RfBtnHelper.exe
18:16:42.0347 0x1c34  RadioController - ok
18:16:42.0427 0x1c34  [ C46229075C0CE88B2BB71AC5664601CE, 0B8CAD993148AF73EA07D375AA9A1EAA1EADC409DF3E21ECBACF91204D191125 ] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
18:16:42.0483 0x1c34  Norton Online Backup - ok
18:16:42.0539 0x1c34  [ 4F9DD96AECDC12373D4203253D665C6D, 871FF2367ACD5F9A378FED53574BF28A8129224C4B7C4AF074809ED7CF870904 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
18:16:42.0550 0x1c34  SunJavaUpdateSched - ok
18:16:42.0603 0x1c34  [ 613166769A21CC231605F88A147B27C2, A48EB76D8B49C309B58F8ABC0C19A81379EEC95896D301B8EE8CE8BDB0DE4019 ] C:\Dolby PCEE4\pcee4.exe
18:16:42.0616 0x1c34  Dolby Home Theater v4 - ok
18:16:42.0660 0x1c34  [ 34D296AFC913E302953C70463EF09A48, BC413307CBC56C039EE8A05B51A56E14EF59678FBB33815AEB320078056C8CE7 ] C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe
18:16:42.0666 0x1c34  HP Software Update - ok
18:16:42.0720 0x1c34  [ 369993D4B8C009393A2F9BCBB7BD2587, DD9FBF8C32BB3A29F7062BABA23B84FB9F7395A4AB3FB7001071154CDE92F7D5 ] C:\Program Files (x86)\Windows Mail\wab.exe
18:16:42.0736 0x1c34  WAB Migrate - ok
18:16:42.0828 0x1c34  [ 22F7B9670AD770C7ED7F4738204C8E5C, 7B793AC094CB1B073419B5DAE09DFBB8EBED03D29301F490AA76EA0667613438 ] C:\Program Files\HP\HP Officejet 6700\Bin\ScanToPCActivationApp.exe
18:16:42.0882 0x1c34  HP Officejet 6700 (NET) - ok
18:16:42.0884 0x1c34  Waiting for KSN requests completion. In queue: 189
18:16:43.0885 0x1c34  Waiting for KSN requests completion. In queue: 189
18:16:44.0886 0x1c34  Waiting for KSN requests completion. In queue: 189
18:16:45.0894 0x1c34  AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.8.207.0 ), 0x60110 ( disabled : outofdate )
18:16:45.0894 0x1c34  AV detected via SS2: Kaspersky Internet Security, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\wmiav.exe ( 16.0.0.614 ), 0x41000 ( enabled : updated )
18:16:45.0895 0x1c34  FW detected via SS2: Kaspersky Internet Security, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 16.0.0\wmiav.exe ( 16.0.0.614 ), 0x41010 ( enabled )
18:16:48.0237 0x1c34  ============================================================
18:16:48.0237 0x1c34  Scan finished
18:16:48.0237 0x1c34  ============================================================
18:16:48.0244 0x1938  Detected object count: 0
18:16:48.0244 0x1938  Actual detected object count: 0
         

Alt 23.09.2015, 06:45   #12
Deathkid535
/// Malwareteam
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Hi,

Schritt # 1: MBAM

Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.



Schritt # 2: AdwCleaner

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).


Schritt # 3: JRT

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.



Schritt # 4: FRST

Bitte noch ein FRST-Log erstellen, Addition.txt anhakerln bitte.



Schritt # 5: Bitte Posten
  • Das Logfile von MBAM
  • Das Logfile von AdwCleaner
  • Das Logfile von JRT
  • Das Logfile von FRST

Alt 23.09.2015, 10:21   #13
X3nion
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Hi,
eine kurze Frage zu Malwarebytes Anti Malware: Ich habe es heruntergeladen und in der Installation stand, "Pro Version" testen. Dies habe ich aktiviert und nun habe ich die "Premium Trial" Version. Ist dies trotzdem eine Vollversion mit lediglich einer Frist, oder ist diese eingeschränkt?
Beim Suchlauf steht gerade, die Premium Version würde Angriffe von Malware abwehren.

Alt 23.09.2015, 10:22   #14
Deathkid535
/// Malwareteam
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Die Vollversion bringt einen Echtzeitschutz mit. Diesen kannst du 14 Tage lang gratis testen. Ob du diesen kostenpflichtig haben willst oder nicht ist deine Entscheidung. Wir benötigen nur die Funktionalität der Gratis-Version

Alt 23.09.2015, 11:18   #15
X3nion
 
Windows 8.1 Laptop auf einmal sehr langsam - Standard

Windows 8.1 Laptop auf einmal sehr langsam



Alles klar!

Hab MBAM jetzt durchgeführt und er hat ein potentiell unerwünschtes Programm entdeckt, welches er dann entfernt hat. Dann stand geschrieben, es müsse ein Neustart durchgeführt werden, damit die Untersuchung abgeschlossen werden kann. Allerdings hätte ich dann das Logfile nicht speichern können. So habe ich auf "Nein" geklickt, das Logfile auf den Desktop gespeichert und dann neugestartet.

War das so okay? Oder hätt ich mit der Aufforderung des Programms durch Klicken auf "Ja" neustarten müssen?

Antwort

Themen zu Windows 8.1 Laptop auf einmal sehr langsam
bedrohungen, beitrag, benötigt, clean, community, dankbar, experte, experten, gen, herzliches, kaspersky, langsam, laptop, liebe, programme, schädliche, unterstützung, untersuchung, vergleich, versteckte, versteckte viren, viren, windows, wirklich, woche, wochen



Ähnliche Themen: Windows 8.1 Laptop auf einmal sehr langsam


  1. laptop läuft sehr langsam, Tastatureingabe oft zeitverzögert, windows 7, 64bit
    Plagegeister aller Art und deren Bekämpfung - 11.10.2015 (21)
  2. Pc auf einmal Sehr Langsam...
    Alles rund um Windows - 05.10.2015 (5)
  3. Windows 8: Datenträger 0 (C:) ständig auf 100% Leistung und Laptop sehr langsam.
    Log-Analyse und Auswertung - 30.05.2015 (5)
  4. Windows XP: Laptop sehr langsam geworden,oder er reagiert nicht mehr
    Log-Analyse und Auswertung - 30.05.2015 (41)
  5. Windows 7: Bildschirm friert dauernd ein, Laptop sehr langsam.
    Log-Analyse und Auswertung - 28.02.2015 (27)
  6. Windows 7: Task Host Window, Laptop sehr langsam
    Log-Analyse und Auswertung - 11.02.2015 (21)
  7. Internet auf einmal sehr langsam
    Plagegeister aller Art und deren Bekämpfung - 08.02.2015 (25)
  8. Kurz nach Update auf Windows 8.1 Laptop sehr langsam und scheinbar Arbeitsspeicher zu gering
    Plagegeister aller Art und deren Bekämpfung - 27.11.2014 (17)
  9. Windows 7: Laptop wurde sehr langsam
    Log-Analyse und Auswertung - 25.01.2014 (14)
  10. Windows 7 / Virus entfernt/ Laptop und Firefox trotzdem sehr langsam
    Plagegeister aller Art und deren Bekämpfung - 06.12.2013 (9)
  11. Windows 8 / neuer Laptop nach paar Tagen sehr langsam geworden!
    Plagegeister aller Art und deren Bekämpfung - 07.05.2013 (1)
  12. laptop auf einmal langsam
    Plagegeister aller Art und deren Bekämpfung - 19.02.2013 (10)
  13. Internet auf einmal sehr langsam...
    Plagegeister aller Art und deren Bekämpfung - 30.09.2012 (13)
  14. PC auf einmal sehr langsam
    Plagegeister aller Art und deren Bekämpfung - 19.04.2012 (11)
  15. Laptop auf einmal sehr langsam, Trojaner oder andere Viren?
    Log-Analyse und Auswertung - 17.01.2010 (14)
  16. USB Stick auf einmal sehr langsam
    Netzwerk und Hardware - 30.03.2008 (5)
  17. Internet auf einmal sehr langsam
    Log-Analyse und Auswertung - 18.11.2007 (0)

Zum Thema Windows 8.1 Laptop auf einmal sehr langsam - Ein herzliches Hallo an euch, liebe Community! Ich verfasse diesen Beitrag, da mein Laptop auf einen Schlag langsam geworden ist. Selbst die Untersuchung mit Kaspersky 2016 benötigt sehr lange. Im - Windows 8.1 Laptop auf einmal sehr langsam...
Archiv
Du betrachtest: Windows 8.1 Laptop auf einmal sehr langsam auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.