Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.

Antwort
Alt 05.11.2016, 11:14   #1
TanteKlara
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer



Die Datei ließ sich beim zurückgehen im Windows Explorer nicht öffnen-Hinweis: Administratoren Rechte und in etwa die Datei befindet sich in C oder in einem Heimnetzwerk. PS=Windows 7 Betriebssystem (wo kann man das genau im System abfragen?)
jedenfalls habe ich die Email gelöscht, finde diese nun aber nicht mehr im gelöscht-Ordner.
Wenn ich unter Netzwerk, Internet die Verbindungen abfrage, wählt sich dort von Zeit zu Zeit offensichtlich jemand "Fremdes" als downhill oder planexeuser oder so ähnlich ein.
Beim Öffnen der Zip Datei gab es noch eine weitere Datei mit MS DOS Hinweis, diese habe ich zwar doppelt angeklickt, es hat sich aber nichts geöffnet.

Alt 05.11.2016, 12:59   #2
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer





Mein Name ist Jürgen und ich werde Dir bei Deinem Problem behilflich sein. Zusammen schaffen wir das...
  • Bitte arbeite alle Schritte der Reihe nach ab.
  • Lies die Anleitungen sorgfältig durch bevor Du beginnst. Wenn es Probleme gibt oder Du etwas nicht verstehst, dann stoppe mit Deiner Ausführung und beschreibe mir das Problem.
  • Führe bitte nur Scans durch, zu denen Du von mir aufgefordert wurdest.
  • Bitte kein Crossposting (posten in mehreren Foren).
  • Installiere oder deinstalliere während der Bereinigung keine Software, außer Du wurdest dazu aufgefordert.
  • Speichere alle unsere Tools auf dem Desktop ab. Link: So ladet Ihr unsere Tools richtig
  • Poste die Logfiles direkt in Deinen Thread in Code-Tags.
  • Bedenke, dass wir hier alle während unserer Freizeit tätig sind, wenn du innerhalb von 24 Stunden nichts von mir liest, dann schreibe mir bitte eine PM.

Hinweis:
Ich kann Dir niemals eine Garantie geben, dass wir alle schädlichen Dateien finden werden.
Eine Formatierung ist meist der schnellere und immer der sicherste Weg, aber auch nur bei wirklicher Malware empfehlenswert.
Adware & Co. können wir sehr gut entfernen.
Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis Du mein clean bekommst.



Los geht's:

Schritt 1


Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)




Lesestoff
Posten in CODE-Tags: So gehts...
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert uns massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________

__________________

Alt 05.11.2016, 13:11   #3
TanteKlara
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

FRST-Dateien



Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 04-11-2016
durchgeführt von Grit (Administrator) auf GRIT-PC (05-11-2016 12:05:02)
Gestartet von C:\Users\Grit\Downloads
Geladene Profile: UpdatusUser & Grit (Verfügbare Profile: UpdatusUser & Grit)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
() C:\Program Files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfemms.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(McAfee, Inc.) C:\Windows\System32\mfevtps.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
(Intel Security, Inc.) C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\19.5.0\ToolbarUpdater.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
(Microsoft Corporation) C:\Program Files\Microsoft Device Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Device Center\ipoint.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
() C:\Users\Grit\AppData\Local\Amazon Music\Amazon Music Helper.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.376\SSScheduler.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTE.EXE
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\AMCore\mcshield.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe
(ACD Systems, Ltd.) C:\Program Files (x86)\Common Files\ACD Systems\DE\DevDetect.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuSchd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
() C:\Program Files (x86)\AVG Secure Search\vprot.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\Platform\McUICnt.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\CSP\1.9.829.0\McCSPServiceHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(McAfee, Inc.) C:\Program Files\mcafee\MAT\McPvTray.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\ModuleCore\ModuleCoreService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\Platform\Core\mchost.exe
(Egis Technology Inc.) C:\Program Files\EgisTec IPS\PmmUpdate.exe
(Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\OUTLOOK.EXE
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(McAfee, Inc.) C:\Program Files\mcafee\VUL\McVulCtr.exe
(Intel Security) C:\Program Files\Common Files\mcafee\ClientAnalytics\McClientAnalytics.exe
(Intel Security) C:\Program Files\Common Files\mcafee\ClientAnalytics\McClientAnalytics.exe
(Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe


==================== Registry (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-05-02] (Intel(R) Corporation)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2589992 2011-04-05] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11786344 2011-03-28] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2207848 2011-03-21] (Realtek Semiconductor)
HKLM\...\Run: [Power Management] => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [1831016 2011-08-02] (Acer Incorporated)
HKLM\...\Run: [IntelliType Pro] => c:\Program Files\Microsoft Device Center\itype.exe [1464928 2012-06-26] (Microsoft Corporation)
HKLM\...\Run: [IntelliPoint] => c:\Program Files\Microsoft Device Center\ipoint.exe [2004584 2012-06-26] (Microsoft Corporation)
HKLM-x32\...\Run: [SuiteTray] => C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [341360 2011-06-21] (Egis Technology Inc.)
HKLM-x32\...\Run: [Norton Online Backup] => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-01] (Symantec Corporation)
HKLM-x32\...\Run: [BackupManagerTray] => C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [297280 2011-04-24] (NTI Corporation)
HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1103440 2011-07-01] (Dritek System Inc.)
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Dolby PCEE4\pcee4.exe [506712 2011-02-03] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [ArcadeMovieService] => C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [177448 2011-05-09] (CyberLink Corp.)
HKLM-x32\...\Run: [Device Detector] => C:\Program Files (x86)\Common Files\ACD Systems\DE\DevDetect.exe [217088 2003-11-27] (ACD Systems, Ltd.)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54840 2007-05-08] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [ApnUpdater] => C:\Program Files (x86)\Ask.com\Updater\Updater.exe [1646216 2013-03-31] (Ask)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-12] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Secure Search\vprot.exe [1707080 2016-08-18] ()
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1156824 2016-10-01] (Adobe Systems Incorporated)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-19\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}
HKU\S-1-5-20\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}
HKU\S-1-5-21-204584621-2302456861-4053892398-1001\...\Run: [EA Core] => "C:\Program Files (x86)\Electronic Arts\EADM\Core.exe" -silent
HKU\S-1-5-21-204584621-2302456861-4053892398-1001\...\Run: [Amazon Music] => C:\Users\Grit\AppData\Local\Amazon Music\Amazon Music Helper.exe [6277952 2014-12-08] ()
HKU\S-1-5-21-204584621-2302456861-4053892398-1001\...\Run: [gaasp-43] => C:\ProgramData\gaasp-34\gaasp-3.exe [602344 2016-11-05] ()
HKU\S-1-5-21-204584621-2302456861-4053892398-1001\...\RunOnce: [torque-12] => C:\Users\Grit\AppData\Roaming\torque-6\torque-2.exe [613096 2016-11-05] ()
HKU\S-1-5-21-204584621-2302456861-4053892398-1001\...\Winlogon: [Shell] C:\Windows\explorer.exe [3231232 2016-04-09] (Microsoft Corporation) <==== ACHTUNG
HKU\S-1-5-21-204584621-2302456861-4053892398-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\System32\Acer.scr [456224 2010-07-29] ()
HKU\S-1-5-18\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid}
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [226920 2011-03-30] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [193128 2011-03-30] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.lnk [2011-12-30]
ShortcutTarget: Adobe Gamma Loader.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2012-06-24]
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2016-08-16]
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.376\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\Grit\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\onewire-8.lnk [2016-11-05]
ShortcutTarget: onewire-8.lnk -> C:\Users\Grit\AppData\Roaming\onewire-61\onewire-78.exe ()
Startup: C:\Users\Grit\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\QSBInitialise.lnk [2014-06-26]
ShortcutTarget: QSBInitialise.lnk -> C:\Users\Grit\AppData\Roaming\Microsoft\Installer\{A2AE3314-EFA1-46FF-8721-6A9D4D3A1790}\NewShortcut1_D1EBA7DBC2854E2A8CBC80A4C2C2935F.exe (Acresso Software Inc.)

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)

Hosts: 0.0.0.1	mssplus.mcafee.com
Tcpip\Parameters: [DhcpNameServer] 10.10.112.1
Tcpip\..\Interfaces\{9977D0A1-C087-46AC-9180-EF70A7316E5E}: [DhcpNameServer] 10.10.112.1
Tcpip\..\Interfaces\{A3B3B17A-3EBC-4F7C-AF43-CC229899CC77}: [DhcpNameServer] 192.168.1.250

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-204584621-2302456861-4053892398-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-204584621-2302456861-4053892398-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKU\S-1-5-21-204584621-2302456861-4053892398-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com
URLSearchHook: HKU\S-1-5-21-204584621-2302456861-4053892398-1001 - UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
URLSearchHook: HKU\S-1-5-21-204584621-2302456861-4053892398-1001 - Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-204584621-2302456861-4053892398-1001 -> DefaultScope {811216E5-95C0-4583-AFCC-664AF592B30A} URL = hxxps://de.search.yahoo.com/search?fr=mcafee&type=C011DE0D20140111&p={searchTerms}
SearchScopes: HKU\S-1-5-21-204584621-2302456861-4053892398-1001 -> {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.babylon.com/web/{searchTerms}?babsrc=SP_ss&affID=111015&mntrId=c87e25640000000000000811961da3e5
SearchScopes: HKU\S-1-5-21-204584621-2302456861-4053892398-1001 -> {811216E5-95C0-4583-AFCC-664AF592B30A} URL = hxxps://de.search.yahoo.com/search?fr=mcafee&type=C011DE0D20140111&p={searchTerms}
SearchScopes: HKU\S-1-5-21-204584621-2302456861-4053892398-1001 -> {ECBFFEC1-8BFD-4EC9-B45A-08C25AA74C17} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYDE&apn_uid=5ACB9FC2-8478-46AC-9017-A88F930B1FA5&apn_sauid=B11C284D-9473-4D55-85CC-B8DC4BF25E83
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-06-10] (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-05-01] (Google Inc.)
BHO: Plugin for Media Finder -> {AD4DF010-E2FD-43CE-864A-6BD1EDC59AC2} -> C:\Users\Grit\AppData\Roaming\Media Finder\Extensions\IEPlugin64.dll [2011-12-07] (Media Finder)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-06-10] (Oracle Corporation)
BHO-x32: &Yahoo! Toolbar Helper -> {02478D38-C3F9-4efb-9B51-7695ECA05670} -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28] (Yahoo! Inc.)
BHO-x32: HP Print Enhancer -> {0347C33E-8762-4905-BF09-768834316C61} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll [2009-05-21] (Hewlett-Packard Co.)
BHO-x32: Babylon toolbar helper -> {2EECD738-5844-4a99-B4B6-146BF802613B} -> C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\bh\BabylonToolbar.dll [2011-08-14] (Babylon BHO)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-07-12] (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-01] (Google Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07] (Microsoft Corporation.)
BHO-x32: Ask Toolbar -> {D4027C7F-154A-4066-A1AD-4243D8127440} -> C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll [2013-03-31] (Ask)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-07-12] (Oracle Corporation)
BHO-x32: SingleInstance Class -> {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} -> C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [2008-07-28] (Yahoo! Inc)
BHO-x32: HP Smart BHO Class -> {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} -> C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll [2009-05-21] (Hewlett-Packard Co.)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2016-05-01] (Google Inc.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07] (Microsoft Corporation.)
Toolbar: HKLM-x32 - Babylon Toolbar - {98889811-442D-49dd-99D7-DC866BE87DBC} - C:\Program Files (x86)\BabylonToolbar\BabylonToolbar\1.5.3.17\BabylonToolbarTlbr.dll [2011-08-14] (Babylon Ltd.)
Toolbar: HKLM-x32 - Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28] (Yahoo! Inc.)
Toolbar: HKLM-x32 - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll [2013-03-31] (Ask)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2016-05-01] (Google Inc.)
DPF: HKLM-x32 {85C86CCC-2158-4123-9C7D-785190CED875} hxxps://lernboerse.arbeitsagentur.de/exklusiv/ilias/data/balihob/lm_data/httppath/dpLaunchPlugin.cab
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-10-03] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-10-03] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2016-10-03] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2016-10-03] (McAfee, Inc.)
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\19.5.0\ViProtocol.dll [2016-08-18] (AVG Secure Search)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2016-10-19] (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll [2016-10-19] (McAfee, Inc.)

FireFox:
========
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2016-10-30]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: (HP Smart Web Printing) - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2012-06-24] [ist nicht signiert]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2016-08-02] [ist nicht signiert]
FF HKU\S-1-5-21-204584621-2302456861-4053892398-1001\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Plugin: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-06-10] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-06-10] (Oracle Corporation)
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2016-10-19] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [Keine Datei]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-20] ()
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\19.5.0\\npsitesafety.dll [Keine Datei]
FF Plugin-x32: @digitalpublishing.de/dpLaunch -> C:\Program Files (x86)\digital publishing\LAUNCHER_12_999999\nplaunch.dll [2015-04-22] (digital publishing AG)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2013-07-12] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2013-07-12] (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2016-10-19] ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Keine Datei]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2011-05-13] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2010-12-08] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.)
FF Plugin-x32: Soda PDF 6 -> C:\Program Files (x86)\Soda PDF 6\np-previewer.dll [Keine Datei]

Chrome: 
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR DefaultSearchURL: Default -> hxxps://de.search.yahoo.com/search?fr=mcafee&type=C211DE0D20140111&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Plugin: (Widevine Content Decryption Module) - C:\Users\Grit\AppData\Local\Google\Chrome\User Data\WidevineCDM\1.4.7.796\_platform_specific\win_x86\widevinecdmadapter.dll => Keine Datei
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.87\PepperFlash\pepflashplayer.dll => Keine Datei
CHR Profile: C:\Users\Grit\AppData\Local\Google\Chrome\User Data\Default [2016-11-05]
CHR Extension: (Google Docs) - C:\Users\Grit\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-04]
CHR Extension: (General Crawler) - C:\Users\Grit\AppData\Local\Google\Chrome\User Data\Default\Extensions\dednnpigldgdbpgcdpfppmlcnnbjciel [2013-11-21] [UpdateUrl: hxxp://1.update.general-crawler.com/updates/update_chrome.xml] <==== ACHTUNG
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Grit\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2016-09-27]
CHR Extension: (Media Finder plugin) - C:\Users\Grit\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpmkgpnbiojfaoklbkpfneikocaobfai [2013-11-21]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Grit\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Chrome Media Router) - C:\Users\Grit\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-31]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-06-19]
CHR HKLM-x32\...\Chrome\Extension: [aaaaojmikegpiepcfdkkjaplodkpfmlo] - C:\Users\Grit\AppData\Local\APN\GoogleCRXs\apnorjtoolbar.crx <nicht gefunden>
CHR HKLM-x32\...\Chrome\Extension: [dednnpigldgdbpgcdpfppmlcnnbjciel] - C:\Users\Grit\AppData\Roaming\Media Finder\Extensions\gencrawler_gc.crx [2012-03-27]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-06-19]
CHR HKLM-x32\...\Chrome\Extension: [lpmkgpnbiojfaoklbkpfneikocaobfai] - C:\Users\Grit\AppData\Roaming\Media Finder\Extensions\mf_plugin_gc.crx [2012-03-27]

==================== Dienste (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 AAV UpdateService; C:\Program Files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe [128296 2008-10-24] ()
S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [68096 2011-12-30] () [Datei ist nicht signiert]
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R3 hpqcxs08; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll [248832 2009-05-21] (Hewlett-Packard Co.) [Datei ist nicht signiert]
R2 hpqddsvc; C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-05-21] (Hewlett-Packard Co.) [Datei ist nicht signiert]
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [923136 2009-05-21] (Hewlett-Packard Co.) [Datei ist nicht signiert]
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [166152 2016-10-03] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [993824 2016-10-19] (McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\mcafee\ActWiz\McAWFwk.exe [334608 2013-04-09] (McAfee, Inc.)
R2 McBootDelayStartSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.376\McCHSvc.exe [327944 2016-07-19] (McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe [1910000 2016-05-31] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [816128 2016-06-21] (McAfee, Inc.)
S4 McOobeSv2; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [232688 2016-04-26] (McAfee, Inc.)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [382456 2016-06-23] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [277744 2016-04-26] (McAfee, Inc.)
R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1454216 2016-09-13] (McAfee, Inc.)
S3 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [596768 2016-07-07] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-05-02] ()
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2008-12-03] (Hewlett-Packard) [Datei ist nicht signiert]
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation)
R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832 2011-04-24] (NTI Corporation)
R2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [1045336 2016-05-25] (Intel Security, Inc.)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2008-12-03] (Hewlett-Packard) [Datei ist nicht signiert]
R2 vToolbarUpdater19.5.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\19.5.0\ToolbarUpdater.exe [1277512 2016-08-18] (AVG Secure Search)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S3 LULU Software CrashHandler; "C:\Program Files (x86)\Soda PDF 6\crash-handler-ws.exe" [X]
S3 Soda PDF 6; "C:\Program Files (x86)\Soda PDF 6\ws.exe" [X]

===================== Treiber (Nicht auf der Ausnahmeliste) ======================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [78632 2016-04-27] (McAfee, Inc.)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [216704 2016-08-02] (McAfee, Inc.)
R2 McPvDrv; C:\Windows\system32\drivers\McPvDrv.sys [79192 2016-04-20] (McAfee, Inc.)
R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [419616 2016-04-27] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [349480 2016-04-27] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [493352 2016-04-27] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [843048 2016-04-27] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [519456 2016-08-01] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [100136 2016-08-01] (McAfee, Inc.)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [46240 2016-06-06] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [243488 2016-04-27] (McAfee, Inc.)
S3 pfc; C:\Windows\SysWOW64\drivers\pfc.sys [9856 2011-12-30] (Padus, Inc.) [Datei ist nicht signiert]
U3 Vdpuiv; kein ImagePath

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-11-05 12:05 - 2016-11-05 12:06 - 00035573 _____ C:\Users\Grit\Downloads\FRST.txt
2016-11-05 12:04 - 2016-11-05 12:05 - 00000000 ____D C:\FRST
2016-11-05 12:03 - 2016-11-05 12:03 - 02409984 _____ (Farbar) C:\Users\Grit\Downloads\FRST64.exe
2016-11-05 09:28 - 2016-11-05 09:28 - 00000000 ____D C:\Users\Grit\AppData\Roaming\onewire-61
2016-11-05 09:25 - 2016-11-05 09:25 - 00000000 ____D C:\ProgramData\baseband-74
2016-11-05 09:22 - 2016-11-05 09:22 - 00000000 ____D C:\Users\Grit\AppData\Roaming\torque-6
2016-11-05 09:20 - 2016-11-05 09:20 - 00000000 ____D C:\ProgramData\gaasp-34
2016-11-04 15:44 - 2016-11-05 09:40 - 00000000 ____D C:\ProgramData\hdg
2016-11-04 15:41 - 2016-11-05 10:33 - 00003846 _____ C:\Windows\System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse
2016-11-04 15:41 - 2016-11-04 15:41 - 00004020 _____ C:\Windows\System32\Tasks\Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse
2016-10-31 20:06 - 2016-10-31 20:06 - 04068754 _____ C:\Users\Grit\Downloads\3599_VAKDDWinter2016web.pdf
2016-10-31 12:10 - 2016-10-31 12:10 - 00014805 _____ C:\Users\Grit\Downloads\Kreditkartenabrechnung_5408xxxxxxxx2446_per_2016_10_21 (1).pdf
2016-10-31 12:09 - 2016-10-31 12:09 - 00014805 _____ C:\Users\Grit\Downloads\Kreditkartenabrechnung_5408xxxxxxxx2446_per_2016_10_21.pdf
2016-10-31 12:09 - 2016-10-31 12:09 - 00012337 _____ C:\Users\Grit\Downloads\Kreditkartenabrechnung_4748xxxxxxxx7723_per_2016_10_21.pdf
2016-10-31 12:07 - 2016-10-31 12:07 - 00017208 _____ C:\Users\Grit\Downloads\Kontoauszug_1033450717_Nr_2016_009_per_2016_10_04.pdf
2016-10-31 12:03 - 2016-10-31 12:04 - 00561884 _____ C:\Users\Grit\Downloads\ver.di-Satzung.pdf
2016-10-31 10:32 - 2016-10-31 10:32 - 00084978 _____ C:\Users\Grit\Downloads\SBin_Steuerangelegenheiten_11112016.pdf
2016-10-31 10:29 - 2016-10-31 10:29 - 00336233 _____ C:\Users\Grit\Downloads\ARB.pdf
2016-10-31 10:28 - 2016-10-31 10:28 - 00281332 _____ C:\Users\Grit\Downloads\Privat-Rechtsschutz-OERAG_451015.pdf
2016-10-30 13:00 - 2016-10-30 13:00 - 00071589 _____ C:\Users\Grit\Downloads\NV_1_A_09.pdf
2016-10-30 12:47 - 2016-10-30 12:47 - 00047616 _____ C:\Users\Grit\Downloads\FahrerlistenMaennerundFrauen2014.xls
2016-10-30 12:19 - 2016-10-30 12:19 - 00147437 _____ C:\Users\Grit\Downloads\HUK24_Rechnung_560321892A_16_10_27.pdf
2016-10-30 12:05 - 2016-10-30 12:05 - 00073085 _____ C:\Users\Grit\Downloads\p_zuwachssp (1).pdf
2016-10-30 12:04 - 2016-10-30 12:04 - 00075034 _____ C:\Users\Grit\Downloads\p_sparplan (2).pdf
2016-10-30 10:56 - 2016-10-30 10:56 - 00175248 _____ C:\Users\Grit\Downloads\finanzueberblick (3).pdf
2016-10-25 18:21 - 2016-10-25 18:21 - 00207103 _____ C:\Users\Grit\Downloads\menue-engels-100.pdf
2016-10-25 18:19 - 2016-10-25 18:19 - 00361229 _____ C:\Users\Grit\Downloads\rezepte-hillejan-102.pdf
2016-10-24 16:56 - 2016-10-24 16:56 - 00084016 _____ C:\Users\Grit\Downloads\Sachbearbeiter_in-Dokumentation-17112016.pdf
2016-10-23 10:35 - 2016-10-23 10:35 - 00053513 _____ C:\Users\Grit\Downloads\Organigramm-09-2016.pdf
2016-10-23 10:32 - 2016-10-23 10:32 - 00104806 _____ C:\Users\Grit\Downloads\Organigramm_Stand_01_07_2016.pdf
2016-10-23 10:08 - 2016-10-23 10:09 - 02505950 _____ C:\Users\Grit\Downloads\Amtsblatt_21.pdf
2016-10-23 09:47 - 2016-10-23 09:47 - 00115446 _____ C:\Users\Grit\Downloads\2016-255.fak4_.pdf
2016-10-23 09:42 - 2016-10-23 09:42 - 00116899 _____ C:\Users\Grit\Downloads\2016-257.tu-freiberg.pdf
2016-10-18 21:03 - 2016-10-18 21:03 - 00000000 ____D C:\Users\Grit\Documents\Studium 2016
2016-10-18 20:44 - 2016-10-18 20:44 - 00671857 _____ C:\Users\Grit\Downloads\B_UEbersicht_ueber_pauschale_Anrechnung__IHK_Weiterbildungen_.pdf
2016-10-18 20:37 - 2016-10-18 20:37 - 01257470 _____ C:\Users\Grit\Downloads\Betriebswirtschaftslehre_berufsbegleitend__B.A._.pdf
2016-10-18 20:17 - 2016-10-18 20:17 - 02502662 _____ C:\Users\Grit\Downloads\Flyer_BWL_berufsbegleitend (1).pdf
2016-10-18 20:17 - 2016-10-18 20:17 - 00086187 _____ C:\Users\Grit\Downloads\SF_Diplom_Dozenten.pdf
2016-10-18 20:16 - 2016-10-18 20:16 - 00368383 _____ C:\Users\Grit\Downloads\MHB_bb_2011_150728.pdf
2016-10-18 19:44 - 2016-10-18 19:44 - 00134382 _____ C:\Users\Grit\Downloads\wirtinf_dipl.pdf
2016-10-18 19:39 - 2016-10-18 19:39 - 00047216 _____ C:\Users\Grit\Downloads\sonstO01.02.2014.pdf
2016-10-18 19:37 - 2016-10-18 19:38 - 00174789 _____ C:\Users\Grit\Downloads\Lehramt_Gymnasien.pdf
2016-10-18 18:16 - 2016-10-18 18:16 - 00061577 _____ C:\Users\Grit\Downloads\Schuemichen_Sachbearbeiter_180816_n199.pdf
2016-10-15 14:53 - 2016-10-15 14:53 - 02724848 _____ C:\Users\Grit\Downloads\Broschuere_SRuSV2015.pdf
2016-10-15 14:45 - 2016-10-15 14:45 - 01658173 _____ C:\Users\Grit\Downloads\AB10_300916.pdf
2016-10-15 14:43 - 2016-10-15 14:43 - 01034743 _____ C:\Users\Grit\Downloads\AB08_290716.pdf
2016-10-15 13:59 - 2016-10-15 14:00 - 02910715 _____ C:\Users\Grit\Downloads\AB09_260816.pdf
2016-10-14 09:02 - 2016-10-14 09:02 - 02502662 _____ C:\Users\Grit\Downloads\Flyer_BWL_berufsbegleitend.pdf
2016-10-14 08:57 - 2016-10-14 08:58 - 00251852 _____ C:\Users\Grit\Downloads\fallbeispiele_ag_2.pdf
2016-10-14 08:46 - 2016-10-14 08:47 - 01007440 _____ C:\Users\Grit\Downloads\Flyer_BWL.pdf
2016-10-14 08:36 - 2016-10-14 08:36 - 00083881 _____ C:\Users\Grit\Downloads\Stellenausschreibung_62161001DA.pdf
2016-10-14 08:23 - 2016-10-14 08:23 - 00013379 _____ C:\Users\Grit\Downloads\Antrag_Ueberpruefung_der_Eingruppierung.pdf
2016-10-10 19:13 - 2016-10-10 19:15 - 05886790 _____ C:\Users\Grit\Downloads\KFS_Leiter_IT__02_2016.pdf
2016-10-10 18:51 - 2016-10-10 18:51 - 00188373 _____ C:\Users\Grit\Downloads\plv_pk_unterstrichen.pdf
2016-10-10 18:41 - 2016-10-10 18:41 - 00105180 _____ C:\Users\Grit\Downloads\b_pin_tan_unterstrichen.pdf

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2016-11-05 11:53 - 2013-11-21 21:03 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-11-05 11:47 - 2012-05-21 19:24 - 00000000 ____D C:\Users\Grit\Documents\Outlook-Dateien
2016-11-05 11:34 - 2013-11-21 21:03 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-11-05 09:39 - 2009-07-14 05:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-11-05 09:39 - 2009-07-14 05:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-11-05 09:26 - 2011-09-12 22:53 - 00699440 _____ C:\Windows\system32\perfh007.dat
2016-11-05 09:26 - 2011-09-12 22:53 - 00149548 _____ C:\Windows\system32\perfc007.dat
2016-11-05 09:26 - 2009-07-14 06:13 - 01619700 _____ C:\Windows\system32\PerfStringBackup.INI
2016-11-05 09:26 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf
2016-11-05 09:23 - 2014-01-11 15:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2016-11-05 09:22 - 2011-11-12 15:35 - 00000000 ____D C:\ProgramData\clear.fi
2016-11-05 09:21 - 2014-01-11 15:59 - 00000000 __RSD C:\Users\Grit\Documents\McAfee-Tresore
2016-11-05 09:20 - 2014-06-26 05:50 - 00000402 _____ C:\Windows\Tasks\FileCure Startup.job
2016-11-05 09:20 - 2013-11-21 21:03 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-11-05 09:19 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-11-01 19:56 - 2013-11-21 21:06 - 00002191 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-11-01 19:56 - 2013-11-21 21:06 - 00002179 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-11-01 19:33 - 2013-11-21 21:03 - 00000000 ____D C:\Users\Grit\AppData\Local\Google
2016-11-01 19:31 - 2011-08-12 09:34 - 00000000 ____D C:\Program Files (x86)\McAfee
2016-10-31 20:47 - 2016-05-29 18:15 - 00003068 _____ C:\Windows\System32\Tasks\McAfeeLogon
2016-10-30 11:56 - 2014-03-31 18:17 - 00000000 ____D C:\Users\Grit\Documents\BANK
2016-10-28 16:35 - 2013-11-21 21:03 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-10-28 16:34 - 2013-11-21 21:03 - 00796352 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-10-28 16:34 - 2013-11-21 21:02 - 00000000 ____D C:\Windows\system32\Macromed
2016-10-28 16:34 - 2011-08-12 09:54 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-10-28 16:34 - 2011-08-12 09:54 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2016-10-24 17:00 - 2014-06-26 05:50 - 00000466 _____ C:\Windows\Tasks\ParetoLogic Registration3.job
2016-10-14 08:26 - 2014-03-28 09:41 - 00000000 ____D C:\Users\Grit\Documents\Arbeit
2016-10-14 08:12 - 2015-04-29 13:19 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2012-02-15 09:42 - 2013-10-28 17:39 - 0003584 _____ () C:\Users\Grit\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-06-23 10:47 - 2015-06-23 10:47 - 0010526 _____ () C:\Users\Grit\AppData\Local\recently-used.xbel
2011-09-12 13:30 - 2011-09-12 13:32 - 0015230 _____ () C:\ProgramData\ArcadeDeluxe5.log
2012-03-01 20:12 - 2016-09-19 19:03 - 0003148 _____ () C:\ProgramData\hpzinstall.log

Einige Dateien in TEMP:
====================
C:\Users\Grit\AppData\Local\Temp\7de87e75-391f-4972-be76-516412d76d3f.exe
C:\Users\Grit\AppData\Local\Temp\APNStub.exe
C:\Users\Grit\AppData\Local\Temp\dpSetSrvr.exe
C:\Users\Grit\AppData\Local\Temp\EADFF16.exe
C:\Users\Grit\AppData\Local\Temp\mcitinfo_1388677454.exe
C:\Users\Grit\AppData\Local\Temp\MouseKeyboardCenterx64_1031.exe
C:\Users\Grit\AppData\Local\Temp\oi_{DED79605-21FF-4996-A16E-B07301909A70}.exe
C:\Users\Grit\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Grit\AppData\Local\Temp\UninstallEADM.dll
C:\Users\Grit\AppData\Local\Temp\{134ACEB3-DAB9-45B4-8576-46A90854C8DA}-36.0.1985.125_35.0.1916.153_chrome_updater.exe


==================== Bamital & volsnap ======================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2016-09-04 19:50
         
Code:
ATTFilter
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 04-11-2016
durchgeführt von Grit (05-11-2016 12:07:14)
Gestartet von C:\Users\Grit\Downloads
Windows 7 Home Premium Service Pack 1 (X64) (2011-11-11 16:20:38)
Start-Modus: Normal
==========================================================


==================== Konten: =============================

Administrator (S-1-5-21-204584621-2302456861-4053892398-500 - Administrator - Disabled)
Gast (S-1-5-21-204584621-2302456861-4053892398-501 - Limited - Disabled)
Grit (S-1-5-21-204584621-2302456861-4053892398-1001 - Administrator - Enabled) => C:\Users\Grit
UpdatusUser (S-1-5-21-204584621-2302456861-4053892398-1000 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Sicherheits-Center ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)

AV: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {DA9F8ED0-D0DE-39CC-F55A-51AB4CC1B556}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: McAfee Anti-Virus und Anti-Spyware (Enabled - Up to date) {61FE6F34-F6E4-3642-CFEA-6AD93746FFEB}
FW: McAfee Firewall (Enabled) {E2A40FF5-9AB1-3894-DE05-F89EB212F22D}

==================== Installierte Programme ======================

(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)

4500_G510nz_Help (x32 Version: 000.0.439.000 - Hewlett-Packard) Hidden
4500G510nz (x32 Version: 000.0.439.000 - Hewlett-Packard) Hidden
4500G510nz_Software_Min (x32 Version: 000.0.423.000 - Hewlett-Packard) Hidden
64 Bit HP CIO Components Installer (Version: 6.2.1 - Hewlett-Packard) Hidden
AAVUpdateManager (HKLM-x32\...\{AFA42FE1-A5C3-485F-9180-BFCF5BF1F1C3}) (Version: 18.00.0000 - Wolters Kluwer Deutschland GmbH)
ACDSee 6.0 PowerPack (HKLM-x32\...\{1A20BC22-8F21-4A2A-9F4A-E31FC0E5C7E3}) (Version: 6.0.2 - ACD Systems Ltd.)
Acer Backup Manager (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.99 - NTI Corporation)
Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1904 - CyberLink Corp.)
Acer Crystal Eye Webcam (x32 Version: 1.0.1904 - CyberLink Corp.) Hidden
Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3008 - Acer Incorporated)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3502 - Acer Incorporated)
Acer Games (HKLM-x32\...\WildTangent acer Master Uninstall) (Version: 1.0.2.5 - WildTangent)
Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.04.3503 - Acer Incorporated)
Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0519.2011 - Acer Incorporated)
Acer Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3500 - Acer Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.110 - Adobe Systems Incorporated)
Adobe Download Assistant (HKLM-x32\...\com.adobe.downloadassistant.AdobeDownloadAssistant) (Version: 1.2.9 - Adobe Systems Incorporated)
Adobe Flash Player 23 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 23.0.0.205 - Adobe Systems Incorporated)
Adobe Photoshop CS (HKLM-x32\...\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}) (Version: CS - Adobe Systems, Inc.)
Adobe Reader XI (11.0.18) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.18 - Adobe Systems Incorporated)
Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98 - WildTangent) Hidden
Amazon Music (HKU\S-1-5-21-204584621-2302456861-4053892398-1001\...\Amazon Amazon Music) (Version: 3.7.1.698 - Amazon Services LLC)
Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Ask Toolbar (HKLM-x32\...\{86D4B82A-ABED-442A-BE86-96357B70F4FE}) (Version: 1.15.23.0 - Ask.com) <==== ACHTUNG
Ask Toolbar Updater (HKU\S-1-5-21-204584621-2302456861-4053892398-1001\...\{79A765E1-C399-405B-85AF-466F52E918B0}) (Version: 1.2.5.36191 - Ask.com) <==== ACHTUNG
AVG Security Toolbar (HKLM-x32\...\AVG Secure Search) (Version: 19.6.0.592 - AVG Technologies)
Babylon toolbar on IE (HKLM-x32\...\BabylonToolbar) (Version:  - ) <==== ACHTUNG
Backup Manager V3 (x32 Version: 3.0.0.99 - NTI Corporation) Hidden
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Bing Bar (HKLM-x32\...\{C28D96C0-6A90-459E-A077-A6706F4EC0FC}) (Version: 7.0.765.0 - Microsoft Corporation)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Broadcom Card Reader Driver Installer (HKLM\...\{4710662C-8204-4334-A977-B1AC9E547819}) (Version: 14.8.2.2 - Broadcom Corporation)
Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 14.8.4.1 - Broadcom Corporation)
BufferChm (x32 Version: 130.0.331.000 - Hewlett-Packard) Hidden
CBReader  (HKLM-x32\...\CBReader ) (Version:  - ChessBase GmbH)
Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
clear.fi (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 1.0.1720.00 - CyberLink Corp.)
clear.fi (x32 Version: 1.0.1517_36458 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 1.0.1720.00 - CyberLink Corp.) Hidden
clear.fi (x32 Version: 9.0.7709 - CyberLink Corp.) Hidden
clear.fi Client (HKLM-x32\...\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}) (Version: 1.00.3500 - Acer Incorporated)
Crazy Chicken Kart 2 (x32 Version: 2.2.0.97 - WildTangent) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Destinations (x32 Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 130.0.372.000 - Hewlett-Packard) Hidden
Die Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.42.130 - Electronic Arts)
Die Sims™ 3 Jahreszeiten (HKLM-x32\...\{3DE92282-CB49-434F-81BF-94E5B380E889}) (Version: 16.0.136 - Electronic Arts)
dm Fotowelt (HKLM-x32\...\dm Fotowelt) (Version:  - )
dm-Fotowelt (HKLM-x32\...\dm-Fotowelt) (Version: 5.0.1 - CEWE COLOR AG u Co. OHG)
DocMgr (x32 Version: 130.0.000.000 - Ihr Firmenname) Hidden
DocProc (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden
Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.7000.4 - Dolby Laboratories Inc)
eBay Worldwide (HKLM-x32\...\{D3E5A972-9A15-427D-AE78-8181A5FD943C}) (Version: 2.2.0409 - OEM)
ETDWare PS/2-X64 8.0.6.3_WHQL (HKLM\...\Elantech) (Version: 8.0.6.3 - ELAN Microelectronic Corp.)
FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden
Fax (x32 Version: 130.0.418.000 - Hewlett-Packard) Hidden
Final Drive: Nitro (x32 Version: 2.2.0.95 - WildTangent) Hidden
Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Fritz und Fertig 1 (HKLM-x32\...\Fritz und Fertig 1) (Version:  - )
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria fotogràfica del Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
GIMP 2.8.14 (HKLM\...\GIMP-2_is1) (Version: 2.8.14 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 54.0.2840.87 - Google Inc.)
Google Toolbar for Internet Explorer (HKLM-x32\...\{2318C2B1-4965-11d4-9B18-009027A5CD4F}) (Version: 7.5.7619.1252 - Google Inc.)
Google Toolbar for Internet Explorer (x32 Version: 1.0.0 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Google Update Helper (x32 Version: 1.3.31.5 - Google Inc.) Hidden
GPBaseService2 (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 13.0 (HKLM\...\HPExtendedCapabilities) (Version: 13.0 - HP)
HP Document Manager 2.0 (HKLM\...\HP Document Manager) (Version: 2.0 - HP)
HP Imaging Device Functions 13.0 (HKLM\...\HP Imaging Device Functions) (Version: 13.0 - HP)
HP Officejet 4500 G510n-z (HKLM\...\{7E0E61CC-1C99-429D-BEA7-C4DD5B898D2A}) (Version: 13.0 - HP)
HP Smart Web Printing 4.5 (HKLM\...\HP Smart Web Printing) (Version: 4.5 - HP)
HP Solution Center 13.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 13.0 - HP)
HP Update (HKLM-x32\...\{7059BDA7-E1DB-442C-B7A1-6144596720A4}) (Version: 4.000.011.006 - Hewlett-Packard)
HPProductAssistant (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 130.0.371.000 - Hewlett-Packard) Hidden
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3501 - Acer Incorporated)
Insaniquarium Deluxe (x32 Version: 2.2.0.97 - WildTangent) Hidden
Intel PROSet Wireless (x32 Version:  - ) Hidden
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2418 - Intel Corporation)
Intel(R) PROSet/Wireless WiFi-Software (HKLM\...\{3C41721F-AF0F-4086-AA1C-4C7F29076228}) (Version: 14.01.1000 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.5.0.1026 - Intel Corporation)
Intel(R) WiDi (HKLM-x32\...\{781A93CD-1608-427D-B7F0-D05C07795B25}) (Version: 2.1.41.0 - Intel Corporation)
Intel(R) Wireless Display (HKLM\...\{28EF7372-9087-4AC3-9B9F-D9751FCDF830}) (Version:  - )
iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: 11.1.5.5 - Apple Inc.)
Java 7 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.250 - Oracle)
Java 7 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417045FF}) (Version: 7.0.450 - Oracle)
Jewel Match 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden
Jewel Quest Solitaire (x32 Version: 2.2.0.95 - WildTangent) Hidden
John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Launch Manager (HKLM-x32\...\LManager) (Version: 5.1.7 - Acer Inc.)
MarketResearch (x32 Version: 130.0.374.000 - Hewlett-Packard) Hidden
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.11.376.2 - McAfee, Inc.)
McAfee Total Protection (HKLM-x32\...\MSC) (Version: 15.0.185 - McAfee, Inc.)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.0.279 - McAfee, Inc.)
Media Finder 1.0.9.20 (HKLM-x32\...\{414C790F-E24E-461B-983A-2AD84474DE4B}_is1) (Version: 1.0.9.20 - )
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.6.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft .NET Framework 4.6.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.6.01055 - Microsoft Corporation)
Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50428.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.)
Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 1.1.500.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Mystery of Mortlake Mansion (x32 Version: 2.2.0.98 - WildTangent) Hidden
MyWinLocker (Version: 4.0.14.27 - Egis Technology Inc.) Hidden
MyWinLocker 4 (x32 Version: 4.0.14.27 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.18 - Egis Technology Inc.)
MyWinLocker Suite (x32 Version: 4.0.14.18 - Egis Technology Inc.) Hidden
Network64 (Version: 130.0.374.000 - Hewlett-Packard) Hidden
newsXpresso (HKLM-x32\...\InstallShield_{613C0AC5-3A67-4B94-8B13-9176AD83F5BF}) (Version: 1.0.0.40 - esobi Inc.)
newsXpresso (x32 Version: 1.0.0.40 - esobi Inc.) Hidden
Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation)
NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.8942 - NTI Corporation)
NTI Media Maker 9 (x32 Version: 9.0.2.8942 - NTI Corporation) Hidden
NVIDIA Grafiktreiber 268.00 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 268.00 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}) (Version: 9.10.0514 - NVIDIA Corporation)
OCR Software by I.R.I.S. 13.0 (HKLM\...\HPOCR) (Version: 13.0 - HP)
Origin (HKLM-x32\...\Origin) (Version: 9.0.14.2148 - Electronic Arts, Inc.)
ParetoLogic FileCure (HKLM-x32\...\{C1C441C4-57FA-4950-BDBA-BABFBAA2AA39}) (Version: 2.0.1.0 - ParetoLogic, Inc.)
PDF Split And Merge Basic (HKLM\...\{C91B24F6-1629-11E2-B696-21676188709B}) (Version: 2.2.2 - Andrea Vacondio)
Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden
Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden
Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Questionmark Secure Browser (HKLM-x32\...\{A2AE3314-EFA1-46FF-8721-6A9D4D3A1790}) (Version: 5.7.3.4 - Questionmark Computing Ltd)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6339 - Realtek Semiconductor Corp.)
Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.34.0 - Renesas Electronics Corporation)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0 - Renesas Electronics Corporation) Hidden
Scan (x32 Version: 13.0.0.0 - Hewlett-Packard) Hidden
Schach.de  (HKLM-x32\...\Schach.de) (Version:  - ChessBase GmbH)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 13.0 - HP)
Shredder (Version: 2.0.8.9 - Egis Technology Inc.) Hidden
Shredder (x32 Version: 2.0.8.9 - Egis Technology Inc.) Hidden
Skype™ 7.10 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.10.101 - Skype Technologies S.A.)
Slingo Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
SmartWebPrinting (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden
Soda PDF 6 View Module (HKLM-x32\...\{373DCA79-825D-4A79-A5D4-7CB2EA7D478D}) (Version: 6.3.5.17130 - LULU Software Limited)
SolutionCenter (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden
Status (x32 Version: 130.0.373.000 - Hewlett-Packard) Hidden
Steuer-Spar-Erklärung 2012 (HKLM-x32\...\{CCD2BAD2-0919-40CB-80CC-E9538B0E4C2E}) (Version: 17.11 - Wolters Kluwer Deutschland GmbH)
Steuer-Spar-Erklärung 2013 (HKLM-x32\...\{AEB61F7A-4BBA-4292-A096-7893E09034A4}) (Version: 18.09 - Wolters Kluwer Deutschland GmbH)
SteuerSparErklärung 2014 (HKLM-x32\...\{A463EB06-22A6-47F5-9593-E52B291EF13E}) (Version: 19.09.86 - Akademische Arbeitsgemeinschaft)
SteuerSparErklärung 2015 (HKLM-x32\...\{312C0E08-8F94-4536-AAF6-3413F784AC5F}) (Version: 20.36.164 - Akademische Arbeitsgemeinschaft)
SteuerSparErklärung 2016 (HKLM-x32\...\{D331D50C-C578-423B-8BC7-94D3133CE315}) (Version: 21.36.103 - Akademische Arbeitsgemeinschaft)
Toolbox (x32 Version: 130.0.648.000 - Hewlett-Packard) Hidden
Torchlight (x32 Version: 2.2.0.97 - WildTangent) Hidden
TrayApp (x32 Version: 130.0.376.000 - Hewlett-Packard) Hidden
Überwachungstool für die Intel® Turbo-Boost-Technik 2.0 (HKLM\...\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.1.23.0 - Intel)
Update Installer for WildTangent Games App (x32 Version:  - WildTangent) Hidden
Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.97 - WildTangent) Hidden
WebReg (x32 Version: 130.0.132.017 - Hewlett-Packard) Hidden
Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3503 - Acer Incorporated)
WildTangent Games App (Acer Games) (x32 Version: 4.0.5.14 - WildTangent) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation)
Yahoo! Toolbar (HKLM-x32\...\Yahoo! Companion) (Version:  - )
Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden
Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden

==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

Task: {161BB6D0-EB62-4F38-AF4D-49BFB6637744} - System32\Tasks\Intel Security DAT Reputation (AMCore) periodic endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe [2016-02-18] (McAfee, Inc.)
Task: {2F83B62B-973C-4015-9B1A-2ABF24E89035} - System32\Tasks\DMREngine => C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [2011-05-20] (CyberLink)
Task: {326717C7-4CC3-4523-9002-37EC8635E412} - System32\Tasks\Adobe ARM => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-01] (Adobe Systems Incorporated)
Task: {3615C886-57F5-461D-8651-BD6F442B4F88} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {3B169C6C-75E3-45E9-BD6B-CEF4F2DA2F72} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2011-03-29] (Egis Technology Inc.)
Task: {65886FC5-8685-4E98-9785-221399A111E9} - System32\Tasks\Adobe Reader Speed Launcher => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe
Task: {76D33953-4949-41B1-A8B1-3A2698D928C1} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files (x86)\Ask.com\UpdateTask.exe [2013-03-31] () <==== ACHTUNG
Task: {7F6258E7-A9A5-4A5B-8CFF-66DDBDB4CE0E} - System32\Tasks\clear.fiAgent => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [2011-05-20] (CyberLink Corp.)
Task: {81FFFDBE-E014-4AC6-83E0-925300905334} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-02] (Google Inc.)
Task: {864B910E-2C6B-4B36-BE7B-98060D96C17D} - System32\Tasks\FileCure Startup => C:\Program Files (x86)\ParetoLogic\FileCure\FileCure.exe
Task: {965A64FA-8795-407F-B6E2-711D9F87C06F} - System32\Tasks\McAfee\McAfee Idle Detection Task
Task: {A265B897-A76D-49B1-AE58-F560F76308F5} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Device Center\ipoint.exe [2012-06-26] (Microsoft Corporation)
Task: {BD8F6F66-FA66-474B-B1D0-A0C36BAB74E1} - System32\Tasks\clear.fi => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [2011-05-20] (Acer Incorporated)
Task: {C0AA814F-CF50-491C-86DB-C29172C4DDB2} - System32\Tasks\ParetoLogic Registration3 => Rundll32.exe "C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\UUS3.dll" RunUns
Task: {D3E7AAD6-9919-4C20-AE11-2CF58FB3122F} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2011-03-29] (Egis Technology Inc.)
Task: {D5FEAE69-455C-41FF-8532-E1C322962A47} - System32\Tasks\Intel Security DAT Reputation (AMCore) Post DAT update endpoint safety pulse => C:\Program Files\Common Files\McAfee\AMContent\scanners\x86_64\datrep\54.0\mcdatrep.exe [2016-02-18] (McAfee, Inc.)
Task: {DA3C606A-D024-4E09-BBDA-FE93EC5EC88E} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\mcafee\Platform\McUICnt.exe [2016-09-20] (McAfee, Inc.)
Task: {DD1C284A-C5F9-4936-81B7-D44BF9643F6F} - System32\Tasks\Microsoft_Hardware_Launch_devicecenter_exe => c:\Program Files\Microsoft Device Center\devicecenter.exe [2012-06-26] (Microsoft)
Task: {E4BFFA2C-9A21-4AD6-8D12-03E4FFDE054C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-10-28] (Adobe Systems Incorporated)
Task: {F4527B92-23A9-44FA-8C27-BA4D21357938} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Device Center\itype.exe [2012-06-26] (Microsoft Corporation)
Task: {FCC561F1-28C5-4F07-A2C9-F249A6515EA9} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2016-10-01] (Adobe Systems Incorporated)
Task: {FDFE9880-980D-475D-BA3E-AECEEF642BC1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-09-02] (Google Inc.)

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\FileCure Startup.job => C:\Program Files (x86)\ParetoLogic\FileCure\FileCure.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\ParetoLogic Registration3.job => rundll32.exe  C:\Program Files (x86)\Common Files\ParetoLogic\UUS3\UUS3.dll

==================== Verknüpfungen =============================

(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)

==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============

2011-05-02 12:41 - 2011-05-02 12:41 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll
2008-10-24 16:35 - 2008-10-24 16:35 - 00128296 _____ () C:\Program Files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe
2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2011-08-12 10:01 - 2011-06-10 18:36 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2011-05-02 12:41 - 2011-05-02 12:41 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\LIBEAY32.dll
2014-07-29 12:48 - 2014-12-08 07:27 - 06277952 _____ () C:\Users\Grit\AppData\Local\Amazon Music\Amazon Music Helper.exe
2014-06-10 16:15 - 2016-08-18 20:14 - 01707080 _____ () C:\Program Files (x86)\AVG Secure Search\vprot.exe
2016-10-31 20:46 - 2016-10-25 00:31 - 00508368 _____ () C:\Program Files\Common Files\McAfee\Sustainability\GenericPlugin.dll
2014-02-12 20:58 - 2014-02-12 20:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-02-12 20:58 - 2014-02-12 20:58 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2011-04-24 02:29 - 2011-04-24 02:29 - 00465640 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll
2011-04-24 02:29 - 2011-04-24 02:29 - 01081664 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll
2011-04-24 02:29 - 2011-04-24 02:29 - 00125760 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll
2016-05-16 16:46 - 2016-05-16 16:46 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\f91bd970f20123a46b575cf6e92bc441\IsdiInterop.ni.dll
2011-08-12 09:21 - 2011-04-30 08:28 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\Microsoft Shared\office14\Cultures\office.odf
2015-11-11 02:42 - 2015-11-11 02:42 - 01045672 _____ () C:\Program Files (x86)\Microsoft Office\Office14\ADDINS\UmOutlookAddin.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2016-11-01 19:56 - 2016-10-31 06:29 - 01819240 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.87\libglesv2.dll
2016-11-01 19:56 - 2016-10-31 06:29 - 00093288 _____ () C:\Program Files (x86)\Google\Chrome\Application\54.0.2840.87\libegl.dll

==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)


==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcapexe => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McNaiAnn => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service"

==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)


==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)


==================== Hosts Inhalt: ===============================

(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)

2009-07-14 03:34 - 2016-08-16 19:35 - 00000869 ____A C:\Windows\system32\Drivers\etc\hosts


0.0.0.1	mssplus.mcafee.com

==================== Andere Bereiche ============================

(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)

HKU\S-1-5-21-204584621-2302456861-4053892398-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Grit\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 10.10.112.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall ist aktiviert.

==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==

MSCONFIG\startupreg: EADM => "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart

==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

FirewallRules: [{DCD0764F-F2FC-4692-AC00-6182656DB809}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{E9B97517-DFAA-447B-81DA-A324A90DC5B5}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{206D17A3-0E47-4E5E-A791-E070EEE3C58E}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe
FirewallRules: [{4C66A1DB-2E1D-4DA4-8163-41FAE4C345F5}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{3888A507-1516-4ED1-821E-977521D6B78C}] => (Allow) LPort=2869
FirewallRules: [{31121F76-DD69-40E4-89B8-C263E364B915}] => (Allow) LPort=1900
FirewallRules: [{70A03D02-C530-4568-B384-44A71E4A26EC}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{2440E1B4-BA41-497F-9494-B7F27A366469}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe
FirewallRules: [{57FB6BE4-776B-477C-900A-98BD32E30DD3}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
FirewallRules: [{4CDF6DC9-B291-4786-8CFC-6B955D22C9B4}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
FirewallRules: [{E3864405-8FE2-4356-B56D-F54FC325CA6C}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{6749A47E-7BEC-462E-8D03-851AE3A945D2}] => (Allow) C:\Program Files (x86)\Intel Corporation\Intel WiDi\WiDiApp.exe
FirewallRules: [{34F036C7-E860-43DC-9DFA-9F909AF07F34}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe
FirewallRules: [{8C8CF154-6208-4856-822D-C4C4EFC1E967}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe
FirewallRules: [{5D0C5CCE-6D19-476C-B715-828F9A2590E1}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\CLML\CLMLSvc.exe
FirewallRules: [{078FF0EC-E47A-45CD-8C3B-097958B23266}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe
FirewallRules: [{366A2DFF-7B33-4D33-8DD2-9F32B2CE5C6F}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe
FirewallRules: [{57631845-6E82-4D3D-81F2-03A53FE8722E}] => (Block) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe
FirewallRules: [{9F2D42D4-D336-4524-BC18-38059EE2372D}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\Movie\TouchMovie.exe
FirewallRules: [{8ECD6CED-81DE-4496-9450-CFF01DFBA0C7}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\Movie\TouchMovieService.exe
FirewallRules: [{1BEC25A7-552B-4C7D-9A67-C21D82B2F6AF}] => (Allow) D:\setup\hpznui40.exe
FirewallRules: [{27EA3EB6-7A1C-4450-86C7-D3EF2F0E317D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
FirewallRules: [{5D144E5D-31FC-49E4-8F8A-EB4B8E7E6F3A}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
FirewallRules: [{21E5C53F-2CED-436A-B9DD-784E3E17066F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe
FirewallRules: [{F9A007E3-ED26-4212-B68E-DCB27FAD02D9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe
FirewallRules: [{11475E4A-85AC-4270-8438-DD174C69F8BD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe
FirewallRules: [{DAB8EE7D-7484-4991-8CC5-97D412CA4783}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe
FirewallRules: [{66095E25-A335-4CA4-A7DA-8ECB5E8BFB44}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe
FirewallRules: [{DDBCB13E-680A-4C61-A875-0DF8AB7F7FAE}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe
FirewallRules: [{8FA72DDD-7B9D-489A-A584-ACFF69500EF9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe
FirewallRules: [{1086BE55-8502-45F5-A9E4-6817235D1C76}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe
FirewallRules: [{FFF41F9B-1322-4345-8A21-B553B77EDBCD}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe
FirewallRules: [{36D5D5ED-FD9D-4DFD-BD3A-30BF1FC91123}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe
FirewallRules: [{A4719902-CA20-4028-B6AA-97A5313FEA46}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe
FirewallRules: [{448D6C5C-E335-4BD5-9428-AF1DCF5B059C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
FirewallRules: [{9888C3AD-6271-4A85-A44C-DF2ACA803083}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe
FirewallRules: [{50D95DCF-941A-473D-B5CA-C521F42F55C1}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe
FirewallRules: [{90C11579-6602-4B5B-981F-D6B96CD21495}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe
FirewallRules: [{8174EF60-D8E4-441B-8235-943FD6152975}] => (Allow) C:\Program Files (x86)\HP\digital imaging\smart web printing\smartwebprintexe.exe
FirewallRules: [{90133875-3BED-4EB3-8587-93314681F675}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C8321319-CADF-4A9F-9FF6-A3631616AFB7}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{1A1582CD-C495-4D26-A5BB-2D9447CCC581}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{6CD77032-1A5D-4D5E-AC3B-B2C7E3C19FD0}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{FB46FD80-8B8E-4FC4-832B-ACB5C58034CC}] => (Allow) C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
FirewallRules: [{782DAA93-5087-44B6-BE44-ECAA4D57F67F}] => (Allow) C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
FirewallRules: [{10978915-BE57-4527-A9AA-759B476CDC15}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe
FirewallRules: [{6DACBE4F-39EA-4037-B704-B5A4A4D8964A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Wiederherstellungspunkte =========================

18-06-2016 19:12:25 Windows Update
26-06-2016 21:06:09 Windows Update
25-07-2016 20:44:57 Windows Update
29-07-2016 21:39:07 Windows Update
17-08-2016 20:41:50 Windows Update
20-08-2016 18:57:10 Windows Update
27-08-2016 08:26:43 Windows Update

==================== Fehlerhafte Geräte im Gerätemanager =============

Name: Officejet 4500 G510n-z
Description: Officejet 4500 G510n-z
Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318}
Manufacturer: HP
Service: 
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: Officejet 4500 G510n-z
Description: Officejet 4500 G510n-z
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: HP
Service: StillCam
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Fehlereinträge in der Ereignisanzeige: =========================

Applikationsfehler:
==================
Error: (11/05/2016 12:01:47 PM) (Source: MsiInstaller) (EventID: 11730) (User: Grit-PC)
Description: Produkt: Ask Toolbar -- Fehler 1730. Sie müssen über Administratorrechte verfügen, um diese Anwendung entfernen zu können. Melden Sie sich als Administrator an oder wenden Sie sich an den technischen Support, um Unterstützung zu erhalten.

Error: (11/05/2016 09:40:54 AM) (Source: Microsoft Office 14) (EventID: 2001) (User: )
Description: Microsoft Outlook: Rejected Safe Mode action : Outlook konnte zuletzt nicht korrekt gestartet werden. Das Starten von Outlook im abgesicherten Modus hilft Ihnen, ein Startproblem zu korrigieren oder zu isolieren, sodass Sie das Programm erfolgreich starten können. Einige Funktionen können in diesem Modus deaktiviert sein.

Möchten Sie Outlook im abgesicherten Modus starten?.
Rejected Safe Mode action : Microsoft Outlook.

Error: (11/05/2016 09:20:05 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist.

Error: (11/04/2016 03:34:43 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist.

Error: (11/01/2016 07:31:58 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: DevDetect.exe, Version: 2.0.1.6, Zeitstempel: 0x3fc5677d
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000031
ID des fehlerhaften Prozesses: 0x8c0
Startzeit der fehlerhaften Anwendung: 0x01d2346e35278d1b
Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Common Files\ACD Systems\DE\DevDetect.exe
Pfad des fehlerhaften Moduls: unknown
Berichtskennung: 78b6df08-a061-11e6-9aec-b870f4efaa8c

Error: (11/01/2016 07:31:35 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist.

Error: (10/31/2016 07:47:03 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: )
Description: Ein Problem hat das Senden von Daten aus dem Programm zur Verbesserung der Benutzerfreundlichkeit an Microsoft verhindert (Fehler 80004005).

Error: (10/31/2016 07:26:10 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist.

Error: (10/31/2016 11:52:39 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: DevDetect.exe, Version: 2.0.1.6, Zeitstempel: 0x3fc5677d
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00000031
ID des fehlerhaften Prozesses: 0x140c
Startzeit der fehlerhaften Anwendung: 0x01d23364e1469d50
Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\Common Files\ACD Systems\DE\DevDetect.exe
Pfad des fehlerhaften Moduls: unknown
Berichtskennung: 23c8f3bf-9f58-11e6-917f-b870f4efaa8c

Error: (10/31/2016 11:52:12 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Ereignisfilter mit Abfrage "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" konnte im Namespace "//./root/CIMV2" nicht reaktiviert werden aufgrund des Fehlers 0x80041003. Ereignisse können nicht durch diesen Filter geschickt werden, bis dieses Problem gelöst ist.


Systemfehler:
=============
Error: (11/05/2016 09:21:05 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen (Anwendungsspezifisch) wird der SID (S-1-5-18) für Benutzer NT-AUTORITÄT\SYSTEM von Adresse LocalHost (unter Verwendung von LRPC) keine Berechtigung zum Start (Lokal) für die COM-Serveranwendung mit CLSID 
{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}
 und APPID 
{344ED43D-D086-4961-86A6-1106F4ACAD9B}
 gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungsprogramm für Komponentendienste geändert werden.

Error: (11/05/2016 09:19:28 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\drivers\pfc.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.

Error: (11/04/2016 03:38:59 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "McAfee Home Network" wurde nicht richtig gestartet.

Error: (11/04/2016 03:35:33 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen (Anwendungsspezifisch) wird der SID (S-1-5-18) für Benutzer NT-AUTORITÄT\SYSTEM von Adresse LocalHost (unter Verwendung von LRPC) keine Berechtigung zum Start (Lokal) für die COM-Serveranwendung mit CLSID 
{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}
 und APPID 
{344ED43D-D086-4961-86A6-1106F4ACAD9B}
 gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungsprogramm für Komponentendienste geändert werden.

Error: (11/04/2016 03:35:12 PM) (Source: Schannel) (EventID: 4119) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung empfangen: 70.

Error: (11/04/2016 03:34:03 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\drivers\pfc.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.

Error: (11/01/2016 07:36:03 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "McAfee Home Network" wurde nicht richtig gestartet.

Error: (11/01/2016 07:33:14 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "McAfee CSP Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
Der Dienst antwortete nicht rechtzeitig auf die Start- oder Steuerungsanforderung.

Error: (11/01/2016 07:33:14 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst McAfee CSP Service erreicht.

Error: (11/01/2016 07:33:15 PM) (Source: DCOM) (EventID: 10005) (User: )
Description: Bei DCOM ist der Fehler "1053" aufgetreten, als der Dienst "mccspsvc" mit den Argumenten "" gestartet wurde, um den folgenden Server zu verwenden:
{8F2BC96B-68C5-40E8-9CE1-368E3ACAC09B}


==================== Speicherinformationen =========================== 

Prozessor: Intel(R) Core(TM) i7-2670QM CPU @ 2.20GHz
Prozentuale Nutzung des RAM: 51%
Installierter physikalischer RAM: 8043.86 MB
Verfügbarer physikalischer RAM: 3880.62 MB
Summe virtueller Speicher: 16085.9 MB
Verfügbarer virtueller Speicher: 12088.45 MB

==================== Laufwerke ================================

Drive c: (Acer) (Fixed) (Total:447.66 GB) (Free:276.53 GB) NTFS

==================== MBR & Partitionstabelle ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: C024A15A)
Partition 1: (Not Active) - (Size=18 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=447.7 GB) - (Type=07 NTFS)
         
__________________

Alt 05.11.2016, 13:21   #4
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer



Ja, das haste Dir was feines eingefangen. Unglaublich, dass Dein Antivirusprogramm das so hinnimmt...

Aber:
Zitat:
Beim Öffnen der Zip Datei gab es noch eine weitere Datei mit MS DOS Hinweis, diese habe ich zwar doppelt angeklickt, es hat sich aber nichts geöffnet.
Warum klickst Du sowas an?

Wichtige Online-Passwörter von einem sauberen Gerät aus ändern. In der Zwischenzeit eingegebene Passwörter als "bekannt" behandeln. Onlinebanking etc. sperren wenn in der Zwischenzeit verwendet.

Schritt 1
Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.
__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Alt 05.11.2016, 13:34   #5
TanteKlara
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer



Verdammt, ich war wirklich dumm.
TdssKiller bietet mir nur die Möglichkeit:
It is necessary to reboot for cure completion also 1) reboot computer oder 2) close
Was soll ich machen?
Herzlichen Dank für Deine Hilfe!


Alt 05.11.2016, 13:37   #6
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer



Poste bitte einen Screenshot.
__________________
--> zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer

Alt 05.11.2016, 13:43   #7
TanteKlara
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer



Sorry, wie mache ich das? Ich kenne einen Screenshot im word dokument, aber hier?

Alt 05.11.2016, 13:49   #8
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer



Bitte die Anweisungen auch lesen...Also erst Log posten, dann close klicken ohne Reboot.

Zitat:
Zitat von deeprybka Beitrag anzeigen

In diesem Fall oben rechts auf "Report" klicken.
Den Inhalt des Textdateifensters mit "STRG+A" markieren, "STRG+C" kopiert den Text in den Zwischenspeicher.
Mit "STRG+V" kann der Text dann in Code-Tags als Antwort in den Thread gepostet werden.



Bevor Du den Reboot durchführst, postest Du Deinem Helfer über "Report" den Bericht über die Desinfektion als Antwort in den Thread. (Vorgehen siehe Szenario 1)
__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Alt 05.11.2016, 13:55   #9
TanteKlara
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer



Code:
ATTFilter
13:52:19.0030 0x26e8  TDSS rootkit removing tool 3.1.0.11 Aug  5 2016 12:13:31
13:52:23.0968 0x26e8  ============================================================
13:52:23.0968 0x26e8  Current date / time: 2016/11/05 13:52:23.0968
13:52:23.0968 0x26e8  SystemInfo:
13:52:23.0968 0x26e8  
13:52:23.0968 0x26e8  OS Version: 6.1.7601 ServicePack: 1.0
13:52:23.0968 0x26e8  Product type: Workstation
13:52:23.0968 0x26e8  ComputerName: GRIT-PC
13:52:23.0969 0x26e8  UserName: Grit
13:52:23.0969 0x26e8  Windows directory: C:\Windows
13:52:23.0969 0x26e8  System windows directory: C:\Windows
13:52:23.0969 0x26e8  Running under WOW64
13:52:23.0969 0x26e8  Processor architecture: Intel x64
13:52:23.0969 0x26e8  Number of processors: 8
13:52:23.0969 0x26e8  Page size: 0x1000
13:52:23.0969 0x26e8  Boot type: Normal boot
13:52:23.0969 0x26e8  CodeIntegrityOptions = 0x00000001
13:52:23.0969 0x26e8  ============================================================
13:52:23.0971 0x26e8  KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 7601.23418, osProperties = 0x1
13:52:25.0814 0x26e8  System UUID: {E7AD4C8E-8EAE-6953-5721-AC9E44A8B77D}
13:52:26.0440 0x26e8  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
13:52:26.0444 0x26e8  ============================================================
13:52:26.0444 0x26e8  \Device\Harddisk0\DR0:
13:52:26.0444 0x26e8  MBR partitions:
13:52:26.0444 0x26e8  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x2400800, BlocksNum 0x32000
13:52:26.0444 0x26e8  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x2432800, BlocksNum 0x37F53000
13:52:26.0444 0x26e8  ============================================================
13:52:26.0467 0x26e8  C: <-> \Device\Harddisk0\DR0\Partition2
13:52:26.0467 0x26e8  ============================================================
13:52:26.0467 0x26e8  Initialize success
13:52:26.0467 0x26e8  ============================================================
13:52:30.0275 0x0968  ============================================================
13:52:30.0275 0x0968  Scan started
13:52:30.0275 0x0968  Mode: Manual; 
13:52:30.0275 0x0968  ============================================================
13:52:30.0275 0x0968  KSN ping started
13:52:30.0461 0x0968  KSN ping finished: true
13:52:31.0571 0x0968  ================ Scan system memory ========================
13:52:31.0572 0x0968  System memory - ok
13:52:31.0572 0x0968  ================ Scan services =============================
13:52:31.0726 0x0968  [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
13:52:31.0731 0x0968  1394ohci - ok
13:52:31.0819 0x0968  [ 6232E5A27CE0DDFD7E1AB7E54F56DA7D, AF746F02A9E13787162BA56A19BEA8434703EF104CEEB1B4366962CEE4826B3A ] 44053507        C:\Windows\system32\drivers\06568037.sys
13:52:31.0957 0x0968  [ 7EEB488346FBFA3731276C3EE8A8FD9E, 97D2E49C2E615E38E8176F1C1551BF452CC6A00787FF90845EFF27A4E6E20B1F ] AAV UpdateService C:\Program Files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe
13:52:31.0960 0x0968  AAV UpdateService - ok
13:52:31.0992 0x0968  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
13:52:31.0998 0x0968  ACPI - ok
13:52:32.0018 0x0968  [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
13:52:32.0019 0x0968  AcpiPmi - ok
13:52:32.0113 0x0968  [ F84C9DEE4698DF3C1D76801B7B1B55D7, 071A3938ED7B9E20E30E873011C8039382C7EFE90D39EC8C0F3E457B2873406E ] Adobe LM Service C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
13:52:32.0115 0x0968  Adobe LM Service - ok
13:52:32.0234 0x0968  [ DC00FD73505DAEDD99CAF4533B0C05BD, 2863D1F0587B79254FBE093C191C73892768CF2AC59BEF97745EE66CEE3473AF ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
13:52:32.0236 0x0968  AdobeARMservice - ok
13:52:32.0358 0x0968  [ 16D11D2CA3F2078F553E0C3A70A4F050, 51EEA7EFBE122D3FEB2F8487F5A45166A0C4963314B28840C3C404479B4E1849 ] AdobeFlashPlayerUpdateSvc C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
13:52:32.0363 0x0968  AdobeFlashPlayerUpdateSvc - ok
13:52:32.0403 0x0968  [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx         C:\Windows\system32\drivers\adp94xx.sys
13:52:32.0412 0x0968  adp94xx - ok
13:52:32.0464 0x0968  [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci         C:\Windows\system32\drivers\adpahci.sys
13:52:32.0471 0x0968  adpahci - ok
13:52:32.0478 0x0968  [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320         C:\Windows\system32\drivers\adpu320.sys
13:52:32.0481 0x0968  adpu320 - ok
13:52:32.0509 0x0968  [ 262D7C87D0AC20B96EF9877D3CA478A0, 54F7E5A5F8991C5525500C1ECCF3D3135D13F48866C366E52DF1D052DB2EE15B ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
13:52:32.0511 0x0968  AeLookupSvc - ok
13:52:32.0556 0x0968  [ 9A4A1EEE802BF2F878EE8EAB407B21B7, 177EB7DF4B35FE4C0E45E775A0FD5D48D39B410052E3EE18BDEEC809E152D9D8 ] AFD             C:\Windows\system32\drivers\afd.sys
13:52:32.0565 0x0968  AFD - ok
13:52:32.0598 0x0968  [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440          C:\Windows\system32\drivers\agp440.sys
13:52:32.0600 0x0968  agp440 - ok
13:52:32.0626 0x0968  [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG             C:\Windows\System32\alg.exe
13:52:32.0628 0x0968  ALG - ok
13:52:32.0687 0x0968  [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide          C:\Windows\system32\drivers\aliide.sys
13:52:32.0687 0x0968  aliide - ok
13:52:32.0725 0x0968  [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide          C:\Windows\system32\drivers\amdide.sys
13:52:32.0726 0x0968  amdide - ok
13:52:32.0744 0x0968  [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8           C:\Windows\system32\drivers\amdk8.sys
13:52:32.0746 0x0968  AmdK8 - ok
13:52:32.0763 0x0968  [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM          C:\Windows\system32\drivers\amdppm.sys
13:52:32.0765 0x0968  AmdPPM - ok
13:52:32.0769 0x0968  [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
13:52:32.0772 0x0968  amdsata - ok
13:52:32.0788 0x0968  [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs          C:\Windows\system32\drivers\amdsbs.sys
13:52:32.0792 0x0968  amdsbs - ok
13:52:32.0800 0x0968  [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata         C:\Windows\system32\drivers\amdxata.sys
13:52:32.0801 0x0968  amdxata - ok
13:52:32.0862 0x0968  [ 6474F8823C7188D2DA579F01FB6CED6B, 81D4E9D026CA60FB8840D520D151B8C2F4745A75DF90A4D6C80641F1A23AB605 ] AppID           C:\Windows\system32\drivers\appid.sys
13:52:32.0863 0x0968  AppID - ok
13:52:32.0882 0x0968  [ 8F58BA1F7772D6D7CE45F03309608001, CDB109E0DD241042C058F7D81A1BDEBC34435CB2DC4A7A7A3692193DD5806097 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
13:52:32.0883 0x0968  AppIDSvc - ok
13:52:32.0912 0x0968  [ B62867835B41BCD839D9896AB4D7DF09, 98036D0202DB6171E90485898175833AC44873A85E6453EBE928E433B364CE07 ] Appinfo         C:\Windows\System32\appinfo.dll
13:52:32.0914 0x0968  Appinfo - ok
13:52:33.0009 0x0968  [ 221564CC7BE37611FE15EACF443E1BF6, 381BDF17418C779D72332431BA174C2AD76CD9C7C1711FF5142EA9B05D5555E4 ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
13:52:33.0010 0x0968  Apple Mobile Device - ok
13:52:33.0034 0x0968  [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc             C:\Windows\system32\drivers\arc.sys
13:52:33.0036 0x0968  arc - ok
13:52:33.0052 0x0968  [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas          C:\Windows\system32\drivers\arcsas.sys
13:52:33.0054 0x0968  arcsas - ok
13:52:33.0153 0x0968  [ 660D597B7A78256734D7F3230B21B355, CAA19E8EFAD63B8975A4CD8EFD5CE5F21E056856D36BC5A9E48517F1E574ABBA ] aspnet_state    C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe
13:52:33.0154 0x0968  aspnet_state - ok
13:52:33.0182 0x0968  [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
13:52:33.0183 0x0968  AsyncMac - ok
13:52:33.0248 0x0968  [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi           C:\Windows\system32\drivers\atapi.sys
13:52:33.0249 0x0968  atapi - ok
13:52:33.0304 0x0968  [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
13:52:33.0316 0x0968  AudioEndpointBuilder - ok
13:52:33.0333 0x0968  [ 6968D02DC38757C3FBE7ED7C2F9670AA, C8B3115DDB32EFBE8C56C5AA78EEA05BBB77DF3F75CC2A04532EB32327E4735A ] AudioSrv        C:\Windows\System32\Audiosrv.dll
13:52:33.0345 0x0968  AudioSrv - ok
13:52:33.0388 0x0968  [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV        C:\Windows\System32\AxInstSV.dll
13:52:33.0390 0x0968  AxInstSV - ok
13:52:33.0422 0x0968  [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv         C:\Windows\system32\drivers\bxvbda.sys
13:52:33.0430 0x0968  b06bdrv - ok
13:52:33.0461 0x0968  [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
13:52:33.0466 0x0968  b57nd60a - ok
13:52:33.0521 0x0968  [ A424CB46A145E5AABF15621550976DF2, B6CA183FD5ED72237D2DC1F599FD04A066C06A717A2CF63AF08D3AA0A227D7BA ] b57xdbd         C:\Windows\system32\drivers\b57xdbd.sys
13:52:33.0522 0x0968  b57xdbd - ok
13:52:33.0544 0x0968  [ BE4E6FD5A898812B85D5817AD9754A9F, 46A7C80283BE53F43A0D73DA3338461024DD002A7CF43660F9C7D640E0C72876 ] b57xdmp         C:\Windows\system32\drivers\b57xdmp.sys
13:52:33.0545 0x0968  b57xdmp - ok
13:52:33.0602 0x0968  [ 87F3BCF82A63E900AF896CD930BF7E05, A68141E81D0541DDC1863FAC0DDBF0362641B8B0DBE06D645D00CC0DB36B30BB ] BBSvc           C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE
13:52:33.0606 0x0968  BBSvc - ok
13:52:33.0637 0x0968  [ 78779EE07231C658B483B1F38B5088DF, 42DE06151DA17C218067CA3A22509BC626CB505F87238E39D024CE29554EF47D ] BBUpdate        C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
13:52:33.0642 0x0968  BBUpdate - ok
13:52:33.0666 0x0968  [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC          C:\Windows\System32\bdesvc.dll
13:52:33.0668 0x0968  BDESVC - ok
13:52:33.0690 0x0968  [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep            C:\Windows\system32\drivers\Beep.sys
13:52:33.0690 0x0968  Beep - ok
13:52:33.0731 0x0968  [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE             C:\Windows\System32\bfe.dll
13:52:33.0744 0x0968  BFE - ok
13:52:33.0783 0x0968  [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS            C:\Windows\System32\qmgr.dll
13:52:33.0799 0x0968  BITS - ok
13:52:33.0831 0x0968  [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive        C:\Windows\system32\drivers\blbdrive.sys
13:52:33.0833 0x0968  blbdrive - ok
13:52:33.0922 0x0968  [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
13:52:33.0930 0x0968  Bonjour Service - ok
13:52:33.0957 0x0968  [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
13:52:33.0959 0x0968  bowser - ok
13:52:33.0993 0x0968  [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo        C:\Windows\system32\drivers\BrFiltLo.sys
13:52:33.0994 0x0968  BrFiltLo - ok
13:52:33.0996 0x0968  [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp        C:\Windows\system32\drivers\BrFiltUp.sys
13:52:33.0997 0x0968  BrFiltUp - ok
13:52:34.0042 0x0968  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser         C:\Windows\System32\browser.dll
13:52:34.0045 0x0968  Browser - ok
13:52:34.0062 0x0968  [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
13:52:34.0067 0x0968  Brserid - ok
13:52:34.0081 0x0968  [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
13:52:34.0082 0x0968  BrSerWdm - ok
13:52:34.0103 0x0968  [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
13:52:34.0104 0x0968  BrUsbMdm - ok
13:52:34.0107 0x0968  [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
13:52:34.0108 0x0968  BrUsbSer - ok
13:52:34.0154 0x0968  [ 0970D8B7151E9113BF8D44CE2E954DF7, D467DFFA1668F3BE29620154A13867568C25211ED823BE6A220D2DEE7E3A1278 ] bScsiMSa        C:\Windows\system32\drivers\bScsiMSa.sys
13:52:34.0155 0x0968  bScsiMSa - ok
13:52:34.0188 0x0968  [ 0C1EEE5AF32402D306874B110DE237EC, B0FE0F3B6A1E2C003E6F4B6330601C43126881262B328D7DD93AC2C0B714DC86 ] bScsiSDa        C:\Windows\system32\DRIVERS\bScsiSDa.sys
13:52:34.0190 0x0968  bScsiSDa - ok
13:52:34.0261 0x0968  [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM        C:\Windows\system32\drivers\bthmodem.sys
13:52:34.0263 0x0968  BTHMODEM - ok
13:52:34.0309 0x0968  [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv         C:\Windows\system32\bthserv.dll
13:52:34.0311 0x0968  bthserv - ok
13:52:34.0331 0x0968  [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
13:52:34.0333 0x0968  cdfs - ok
13:52:34.0375 0x0968  [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom           C:\Windows\system32\DRIVERS\cdrom.sys
13:52:34.0379 0x0968  cdrom - ok
13:52:34.0408 0x0968  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc     C:\Windows\System32\certprop.dll
13:52:34.0410 0x0968  CertPropSvc - ok
13:52:34.0474 0x0968  [ EF41D362661C5D71D0BEB6D2329739F7, 7D0BB550E5E337E0B76658254AD15C32D2E08F74E116AC07F7D5FAA09F3A524B ] cfwids          C:\Windows\system32\drivers\cfwids.sys
13:52:34.0476 0x0968  cfwids - ok
13:52:34.0487 0x0968  [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass        C:\Windows\system32\drivers\circlass.sys
13:52:34.0489 0x0968  circlass - ok
13:52:34.0545 0x0968  [ 404B7DF9CA4D1CB675045AF220FF3285, 91FFADE2ABE5C48849E63134D5FFD20671FE0D1720F7D486F904391B3D142C96 ] CLFS            C:\Windows\system32\CLFS.sys
13:52:34.0552 0x0968  CLFS - ok
13:52:34.0620 0x0968  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
13:52:34.0622 0x0968  clr_optimization_v2.0.50727_32 - ok
13:52:34.0671 0x0968  [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
13:52:34.0673 0x0968  clr_optimization_v2.0.50727_64 - ok
13:52:34.0764 0x0968  [ AB4CD527BEFCC43EE441E6C50CCE54C8, 13B776AE63049FFBA7E35EA0A4C26EBB57B10D973E05C4CF1214249754DC46E4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
13:52:34.0766 0x0968  clr_optimization_v4.0.30319_32 - ok
13:52:34.0830 0x0968  [ 1400C75FF021D6CFACE46AC41B60770E, 3FCB8D7714A79522F2738037D559F1FFFB2F05C5406D2A038EF5DDB4629CA1CE ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
13:52:34.0833 0x0968  clr_optimization_v4.0.30319_64 - ok
13:52:34.0877 0x0968  [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt          C:\Windows\system32\drivers\CmBatt.sys
13:52:34.0878 0x0968  CmBatt - ok
13:52:34.0913 0x0968  [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
13:52:34.0914 0x0968  cmdide - ok
13:52:34.0977 0x0968  [ 3323F76352B0AF14B2CDC4DFBF3E980A, F8E3C3508C37E647497B6889F26819B1DB30275F48A994D1BBFBAA9454E5FD70 ] CNG             C:\Windows\system32\Drivers\cng.sys
13:52:34.0985 0x0968  CNG - ok
13:52:35.0012 0x0968  [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt        C:\Windows\system32\drivers\compbatt.sys
13:52:35.0013 0x0968  Compbatt - ok
13:52:35.0030 0x0968  [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
13:52:35.0031 0x0968  CompositeBus - ok
13:52:35.0044 0x0968  COMSysApp - ok
13:52:35.0059 0x0968  [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk         C:\Windows\system32\drivers\crcdisk.sys
13:52:35.0060 0x0968  crcdisk - ok
13:52:35.0113 0x0968  [ 7BC3E861F7E8EB543A630090FAE779E0, 52A538F25C853AAC9706CD0D4EBF80B1963391AA175895CFD9D44C8ABBFCFB74 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
13:52:35.0117 0x0968  CryptSvc - ok
13:52:35.0186 0x0968  [ C7259495924D21F1AFA26467D9F4DAE0, 7FF991D7FE660E7CAC682FC82B9C44EC38E267A0C3AAE0C4FAEE0853756AF5C8 ] dc3d            C:\Windows\system32\DRIVERS\dc3d.sys
13:52:35.0188 0x0968  dc3d - ok
13:52:35.0246 0x0968  [ 622C96AFB07BB82C8650B47172137AC4, B74CEA5A3F4945E5A3EAE7AF1B1FA75F611C65C6FACE393052A512FA81B0C17C ] DcomLaunch      C:\Windows\system32\rpcss.dll
13:52:35.0257 0x0968  DcomLaunch - ok
13:52:35.0292 0x0968  [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc       C:\Windows\System32\defragsvc.dll
13:52:35.0297 0x0968  defragsvc - ok
13:52:35.0307 0x0968  [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
13:52:35.0309 0x0968  DfsC - ok
13:52:35.0333 0x0968  [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp            C:\Windows\system32\dhcpcore.dll
13:52:35.0340 0x0968  Dhcp - ok
13:52:35.0460 0x0968  [ EC3F433D00365F1A9BC3411BCA7C7140, 0852D747359DE573504EBBDB99DA26D3BFA8B3C7A4836F8E3A5AD94B5571AD5C ] DiagTrack       C:\Windows\system32\diagtrack.dll
13:52:35.0484 0x0968  DiagTrack - ok
13:52:35.0518 0x0968  [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache        C:\Windows\system32\drivers\discache.sys
13:52:35.0519 0x0968  discache - ok
13:52:35.0579 0x0968  [ 616387BBD83372220B09DE95F4E67BBC, 5E2D5280BB775576E7CDE3FA6BDE494E183123635E5908CF7EBF1FF52966D07D ] Disk            C:\Windows\system32\drivers\disk.sys
13:52:35.0581 0x0968  Disk - ok
13:52:35.0630 0x0968  [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
13:52:35.0635 0x0968  Dnscache - ok
13:52:35.0655 0x0968  [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc         C:\Windows\System32\dot3svc.dll
13:52:35.0661 0x0968  dot3svc - ok
13:52:35.0710 0x0968  [ B42ED0320C6E41102FDE0005154849BB, 4DB872E23AD049C3C9FDC0759FC58BFA60DA91B18BC82B611BFA300D26DDFC7A ] Dot4            C:\Windows\system32\DRIVERS\Dot4.sys
13:52:35.0714 0x0968  Dot4 - ok
13:52:35.0735 0x0968  [ E9F5969233C5D89F3C35E3A66A52A361, C4BD35795C78FB11E6022372CB25DEB570730EFDAD3DC1584368235FF622638C ] Dot4Print       C:\Windows\system32\DRIVERS\Dot4Prt.sys
13:52:35.0736 0x0968  Dot4Print - ok
13:52:35.0743 0x0968  [ FD05A02B0370BC3000F402E543CA5814, 089B1113E640F495F470E8F57060B89546270481B309DC8ED3C3D13A849076A3 ] dot4usb         C:\Windows\system32\DRIVERS\dot4usb.sys
13:52:35.0745 0x0968  dot4usb - ok
13:52:35.0787 0x0968  [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS             C:\Windows\system32\dps.dll
13:52:35.0791 0x0968  DPS - ok
13:52:35.0843 0x0968  [ 26FE888505E5A945B0536AF9A2A27A6F, A6B16ED498BAFE300E1F0E0A241E3D62F7A1C5973EE775904ED14F33A2BC08A6 ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
13:52:35.0844 0x0968  drmkaud - ok
13:52:35.0901 0x0968  [ 9DD3A22F804697606C2B7FF9E912FF6B, BBE2FC0D554030BA9E3A96CC4A360D61DBCCAA1D81BD7547809F29A3AF0B3A25 ] DsiWMIService   C:\Program Files (x86)\Launch Manager\dsiwmis.exe
13:52:35.0910 0x0968  DsiWMIService - ok
13:52:35.0973 0x0968  [ 3A9D7D464BDB3B70D7ECF689ADABBD4D, B4F5B23705EA1BA453FE30791CA245E1A5F7FBEABAD026E4A8A15A9FC44E8C9C ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
13:52:35.0995 0x0968  DXGKrnl - ok
13:52:36.0041 0x0968  [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost         C:\Windows\System32\eapsvc.dll
13:52:36.0045 0x0968  EapHost - ok
13:52:36.0176 0x0968  [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv           C:\Windows\system32\drivers\evbda.sys
13:52:36.0310 0x0968  ebdrv - ok
13:52:36.0353 0x0968  [ 13FE29C1C8E782829C7FAA3B14F4A666, C53F7F9039E79AC6D5BDA94981A187570D6C7828930B6064CEFC17DC172EA20E ] EFS             C:\Windows\System32\lsass.exe
13:52:36.0355 0x0968  EFS - ok
13:52:36.0397 0x0968  [ 5332EC2BA1C112BD4BB1F38127848FEF, 156585CE4011546B20EDD20D04E639A0788B1DE6455B23B94E2CD31BA725FE3C ] EgisTec Ticket Service C:\Program Files (x86)\Common Files\EgisTec\Services\EgisTicketService.exe
13:52:36.0402 0x0968  EgisTec Ticket Service - ok
13:52:36.0476 0x0968  [ C4002B6B41975F057D98C439030CEA07, 3D2484FBB832EFB90504DD406ED1CF3065139B1FE1646471811F3A5679EF75F1 ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
13:52:36.0492 0x0968  ehRecvr - ok
13:52:36.0515 0x0968  [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched         C:\Windows\ehome\ehsched.exe
13:52:36.0518 0x0968  ehSched - ok
13:52:36.0587 0x0968  [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor         C:\Windows\system32\drivers\elxstor.sys
13:52:36.0599 0x0968  elxstor - ok
13:52:36.0695 0x0968  [ 48425C93B6F36529707206E4FA680CF3, 328BD59DEDFAD359EF79CCFBC2AD3E9C95657EC616AE0611F5EFEB34B810692A ] ePowerSvc       C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
13:52:36.0714 0x0968  ePowerSvc - ok
13:52:36.0725 0x0968  [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
13:52:36.0726 0x0968  ErrDev - ok
13:52:36.0774 0x0968  [ DBAA0C650C9549DC5C599D1E81DEDAAD, C8DF68CDACEF27C91CFD1FE8032A8DAF830D9E77C573C25DE5D41FC3DB824ABA ] ETD             C:\Windows\system32\DRIVERS\ETD.sys
13:52:36.0778 0x0968  ETD - ok
13:52:36.0828 0x0968  [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem     C:\Windows\system32\es.dll
13:52:36.0836 0x0968  EventSystem - ok
13:52:36.0930 0x0968  [ 54FC81B0162478A72A93DBBEAFB35671, 1C0FA242E81105E2BB839ED32119DAF012FA4A3DB5D0E079350449CBB0CBF033 ] EvtEng          C:\Program Files\Intel\WiFi\bin\EvtEng.exe
13:52:36.0962 0x0968  EvtEng - ok
13:52:36.0991 0x0968  [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat           C:\Windows\system32\drivers\exfat.sys
13:52:36.0996 0x0968  exfat - ok
13:52:37.0033 0x0968  [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
13:52:37.0039 0x0968  fastfat - ok
13:52:37.0085 0x0968  [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax             C:\Windows\system32\fxssvc.exe
13:52:37.0101 0x0968  Fax - ok
13:52:37.0115 0x0968  [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc             C:\Windows\system32\drivers\fdc.sys
13:52:37.0117 0x0968  fdc - ok
13:52:37.0148 0x0968  [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost         C:\Windows\system32\fdPHost.dll
13:52:37.0150 0x0968  fdPHost - ok
13:52:37.0163 0x0968  [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub        C:\Windows\system32\fdrespub.dll
13:52:37.0165 0x0968  FDResPub - ok
13:52:37.0208 0x0968  [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
13:52:37.0210 0x0968  FileInfo - ok
13:52:37.0221 0x0968  [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
13:52:37.0222 0x0968  Filetrace - ok
13:52:37.0280 0x0968  [ BB0667B0171B632B97EA759515476F07, 07A123B2182D5813D2898928C231638353CF086606E9D5A5AF4A2A73E17CEC27 ] FLEXnet Licensing Service C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
13:52:37.0296 0x0968  FLEXnet Licensing Service - ok
13:52:37.0330 0x0968  [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk        C:\Windows\system32\drivers\flpydisk.sys
13:52:37.0332 0x0968  flpydisk - ok
13:52:37.0351 0x0968  [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
13:52:37.0357 0x0968  FltMgr - ok
13:52:37.0438 0x0968  [ BCB16AE33AA58E0042F3EF34CFB6396A, E8ADA10DE60A94E4BABE9FCA6D0AA83B11520C092D49057E17F6C6059D35A323 ] FontCache       C:\Windows\system32\FntCache.dll
13:52:37.0467 0x0968  FontCache - ok
13:52:37.0518 0x0968  [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
13:52:37.0520 0x0968  FontCache3.0.0.0 - ok
13:52:37.0609 0x0968  [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
13:52:37.0612 0x0968  FsDepends - ok
13:52:37.0679 0x0968  [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
13:52:37.0681 0x0968  Fs_Rec - ok
13:52:37.0730 0x0968  [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
13:52:37.0734 0x0968  fvevol - ok
13:52:37.0770 0x0968  [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx        C:\Windows\system32\drivers\gagp30kx.sys
13:52:37.0772 0x0968  gagp30kx - ok
13:52:37.0828 0x0968  [ C403C5DB49A0F9AAF4F2128EDC0106D8, 3C6948B63278022D8182F773C5FA15784514F76C1546118DDBADBA322B962D12 ] GamesAppService C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
13:52:37.0833 0x0968  GamesAppService - ok
13:52:37.0883 0x0968  [ 8E98D21EE06192492A5671A6144D092F, B8F656B34D361EA5AFB47F3A67AB2221580DADA59C8CD0CB83181E4AD8B562B4 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
13:52:37.0885 0x0968  GEARAspiWDM - ok
13:52:37.0938 0x0968  [ E4AE497857409127ED57562AF913A903, 262ADD713B1FBF6200550967D1F8635B55D01BBD8FA2E753536E71A4EC87867B ] gpsvc           C:\Windows\System32\gpsvc.dll
13:52:37.0956 0x0968  gpsvc - ok
13:52:38.0020 0x0968  [ C9B2D1D3F86FD3673EF847DEF73B6F9E, 9D3822A6464F685F770F8D02A8AE623A676888F135E8425C3BAF1CC077429A7F ] GREGService     C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
13:52:38.0022 0x0968  GREGService - ok
13:52:38.0120 0x0968  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdate         C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:52:38.0124 0x0968  gupdate - ok
13:52:38.0146 0x0968  [ DD7423ABBE2913E70D50E9318AD57EE4, 74BC123808F3FA60ADDC51C1383F8250608D3DBA3A8DC175B3418A1CF0BC53E9 ] gupdatem        C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
13:52:38.0149 0x0968  gupdatem - ok
13:52:38.0222 0x0968  [ 5D4BC124FAAE6730AC002CDB67BF1A1C, 00294F4DC7D17F6DD2A22B9C3299BED40146BA45C972367154D20DB502472551 ] gusvc           C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
13:52:38.0228 0x0968  gusvc - ok
13:52:38.0255 0x0968  [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
13:52:38.0257 0x0968  hcw85cir - ok
13:52:38.0313 0x0968  [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
13:52:38.0322 0x0968  HdAudAddService - ok
13:52:38.0377 0x0968  [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
13:52:38.0380 0x0968  HDAudBus - ok
13:52:38.0410 0x0968  [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt         C:\Windows\system32\drivers\HidBatt.sys
13:52:38.0411 0x0968  HidBatt - ok
13:52:38.0469 0x0968  [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth          C:\Windows\system32\drivers\hidbth.sys
13:52:38.0472 0x0968  HidBth - ok
13:52:38.0514 0x0968  [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr           C:\Windows\system32\drivers\hidir.sys
13:52:38.0516 0x0968  HidIr - ok
13:52:38.0545 0x0968  [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv         C:\Windows\system32\hidserv.dll
13:52:38.0547 0x0968  hidserv - ok
13:52:38.0602 0x0968  [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb          C:\Windows\system32\drivers\hidusb.sys
13:52:38.0604 0x0968  HidUsb - ok
13:52:38.0655 0x0968  [ F60E629BADC03B5BCCF8AAE022651A64, 08D3BA75F3A43843F8F13D7EEA263E46A9452FAB3B30BFD389E4B0477675CB3B ] HipShieldK      C:\Windows\system32\drivers\HipShieldK.sys
13:52:38.0660 0x0968  HipShieldK - ok
13:52:38.0692 0x0968  [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc          C:\Windows\system32\kmsvc.dll
13:52:38.0695 0x0968  hkmsvc - ok
13:52:38.0712 0x0968  [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll
13:52:38.0719 0x0968  HomeGroupListener - ok
13:52:38.0746 0x0968  [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
13:52:38.0752 0x0968  HomeGroupProvider - ok
13:52:38.0934 0x0968  [ FFD55794A830AA05BF4E59D724D7D344, 2BD84931D4BF21A128319E48D55394C8415F42FC1D1CC71C08C6C2792BA1480E ] HomeNetSvc      C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
13:52:38.0945 0x0968  HomeNetSvc - ok
13:52:39.0067 0x0968  [ 0A3C6AA4A9FC38C20BA4EAC2C3351C05, 7B3F117C1D606DDA7623BEC0BFBC362C33A12213E899F049AC56A55826984134 ] hpqcxs08        C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcxs08.dll
13:52:39.0073 0x0968  hpqcxs08 - ok
13:52:39.0092 0x0968  [ F3F72A2A86C22610BCA5439FA789DD52, DA5A8F09DCC512AA1558863AD4FAC12F72DD83CA8FB4D8D9831E4AFBB6B3C616 ] hpqddsvc        C:\Program Files (x86)\HP\Digital Imaging\bin\hpqddsvc.dll
13:52:39.0096 0x0968  hpqddsvc - ok
13:52:39.0129 0x0968  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
13:52:39.0131 0x0968  HpSAMD - ok
13:52:39.0187 0x0968  [ D972F48D0CE396759B788693CD665926, 13C32575F1BD5D75067B288D1669AE1F1829B434F97CB211EC3C189F7D2D7C38 ] HPSLPSVC        C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL
13:52:39.0208 0x0968  HPSLPSVC - ok
13:52:39.0278 0x0968  [ F61634BEC53F73702A10DE69F6DCAF57, BBA7344CF3AB96A46D1A6F1D50F2758EA8D097FE558C38B4EF45C8C334AF96E1 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
13:52:39.0292 0x0968  HTTP - ok
13:52:39.0324 0x0968  [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
13:52:39.0325 0x0968  hwpolicy - ok
13:52:39.0342 0x0968  [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
13:52:39.0345 0x0968  i8042prt - ok
13:52:39.0394 0x0968  [ 26CF4275034214ECEDD8EC17B0A18A99, 95A08C63971C28F1BC97040C0ADA247E3B43DE7D937B14E33A394B955D0AC8B7 ] iaStor          C:\Windows\system32\drivers\iaStor.sys
13:52:39.0408 0x0968  iaStor - ok
13:52:39.0474 0x0968  [ E79A8E33BD136D14BAE1FA20EB2EF124, 54AD784570282FEF21021BE76C57EE878EC6FF6423CE2FFC3A4372AF6C3112D4 ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
13:52:39.0476 0x0968  IAStorDataMgrSvc - ok
13:52:39.0511 0x0968  [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
13:52:39.0521 0x0968  iaStorV - ok
13:52:39.0582 0x0968  [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc           C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
13:52:39.0601 0x0968  idsvc - ok
13:52:39.0631 0x0968  IEEtwCollectorService - ok
13:52:40.0016 0x0968  [ 9937600A1584FF00565D5379EB4C9EDB, CF03333E9E7BD940B27194A9CF21ED8A6A10B698B545A898291976F650FC2675 ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
13:52:40.0364 0x0968  igfx - ok
13:52:40.0417 0x0968  [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp           C:\Windows\system32\drivers\iirsp.sys
13:52:40.0418 0x0968  iirsp - ok
13:52:40.0482 0x0968  [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT          C:\Windows\System32\ikeext.dll
13:52:40.0501 0x0968  IKEEXT - ok
13:52:40.0539 0x0968  [ CADDF0927DAC63EDAE48F5C35A61D87D, C46006461311B1563C1D149B9D60B202F30147265B9D93069B084D03A09D2BEC ] intaud_WaveExtensible C:\Windows\system32\drivers\intelaud.sys
13:52:40.0541 0x0968  intaud_WaveExtensible - ok
13:52:40.0656 0x0968  [ 1CE438B31551746AB450D8FFA403BDB5, 56000B9A2E9EBCB3D5F1E516EECFC10BEEAC9CBF6E088FC23D9B4B2C7FC9686A ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
13:52:40.0717 0x0968  IntcAzAudAddService - ok
13:52:40.0767 0x0968  [ FC727061C0F47C8059E88E05D5C8E381, C7A3782F5D86C7FDE57AA1F2EE81638C5FC3072ACC6E572BA2EC7B3CFF389800 ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
13:52:40.0775 0x0968  IntcDAud - ok
13:52:40.0804 0x0968  [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide        C:\Windows\system32\drivers\intelide.sys
13:52:40.0805 0x0968  intelide - ok
13:52:40.0844 0x0968  [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
13:52:40.0846 0x0968  intelppm - ok
13:52:40.0871 0x0968  [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
13:52:40.0875 0x0968  IPBusEnum - ok
13:52:40.0886 0x0968  [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
13:52:40.0889 0x0968  IpFilterDriver - ok
13:52:40.0952 0x0968  [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
13:52:40.0965 0x0968  iphlpsvc - ok
13:52:40.0988 0x0968  [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
13:52:40.0990 0x0968  IPMIDRV - ok
13:52:40.0996 0x0968  [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
13:52:40.0999 0x0968  IPNAT - ok
13:52:41.0078 0x0968  [ 842D1EDD0F2A6E0E6631BB96BAAA01DE, 9CDD0B99F2C5DAD573A9EA8D5AB2DBFD7A941454CBBA5BFE34E49F2D4EE96A90 ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
13:52:41.0092 0x0968  iPod Service - ok
13:52:41.0122 0x0968  [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM          C:\Windows\system32\drivers\irenum.sys
13:52:41.0123 0x0968  IRENUM - ok
13:52:41.0134 0x0968  [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
13:52:41.0136 0x0968  isapnp - ok
13:52:41.0188 0x0968  [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
13:52:41.0195 0x0968  iScsiPrt - ok
13:52:41.0223 0x0968  [ 716F66336F10885D935B08174DC54242, 1992708956A2A45A8870CFCB532F3ABF24B1143B75EF32AB1F59D5D86E65F493 ] iwdbus          C:\Windows\system32\DRIVERS\iwdbus.sys
13:52:41.0224 0x0968  iwdbus - ok
13:52:41.0283 0x0968  [ 455B75C19BF3F1F2EE3AC10E1169826C, C8CE6DE48E0B4621F2851A994261FA787556A27F9868A8859E5E8A8354028257 ] k57nd60a        C:\Windows\system32\DRIVERS\k57nd60a.sys
13:52:41.0291 0x0968  k57nd60a - ok
13:52:41.0329 0x0968  [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
13:52:41.0331 0x0968  kbdclass - ok
13:52:41.0352 0x0968  [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
13:52:41.0354 0x0968  kbdhid - ok
13:52:41.0376 0x0968  [ 13FE29C1C8E782829C7FAA3B14F4A666, C53F7F9039E79AC6D5BDA94981A187570D6C7828930B6064CEFC17DC172EA20E ] KeyIso          C:\Windows\system32\lsass.exe
13:52:41.0377 0x0968  KeyIso - ok
13:52:41.0411 0x0968  [ CFBA6BCBBDC7E33813D92FFB3460FA07, 4BE0DF9AC976A991731C784CD3F32C4CED67AD58267658F046798E84BA1BF78C ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
13:52:41.0414 0x0968  KSecDD - ok
13:52:41.0430 0x0968  [ CE66825289EE8326CB52C4E9E785ACB0, 41113B55F891A300C7967F585F59921917EC0718C26798946056B1DE534EE0E3 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
13:52:41.0434 0x0968  KSecPkg - ok
13:52:41.0472 0x0968  [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk         C:\Windows\system32\drivers\ksthunk.sys
13:52:41.0473 0x0968  ksthunk - ok
13:52:41.0506 0x0968  [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm           C:\Windows\system32\msdtckrm.dll
13:52:41.0516 0x0968  KtmRm - ok
13:52:41.0563 0x0968  [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer    C:\Windows\system32\srvsvc.dll
13:52:41.0570 0x0968  LanmanServer - ok
13:52:41.0600 0x0968  [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
13:52:41.0604 0x0968  LanmanWorkstation - ok
13:52:41.0675 0x0968  [ 93B73DED2BC688F140C6AE2FBAD45789, B6859BC5D309B99BCCDC3717108B714497AAE9C5B26CE5B201344A41FC4CFF9D ] Live Updater Service C:\Program Files\Acer\Acer Updater\UpdaterService.exe
13:52:41.0681 0x0968  Live Updater Service - ok
13:52:41.0707 0x0968  [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
13:52:41.0709 0x0968  lltdio - ok
13:52:41.0741 0x0968  [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc         C:\Windows\System32\lltdsvc.dll
13:52:41.0749 0x0968  lltdsvc - ok
13:52:41.0763 0x0968  [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts         C:\Windows\System32\lmhsvc.dll
13:52:41.0765 0x0968  lmhosts - ok
13:52:41.0811 0x0968  [ D75C4B4A8FE6D7FD74A7EECDBAEC729F, 9BB0A3BE7CCDF62CF0A67CB67019364965F6567BE29BA6D153B8E36F88058302 ] LMS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
13:52:41.0817 0x0968  LMS - ok
13:52:41.0854 0x0968  [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC          C:\Windows\system32\drivers\lsi_fc.sys
13:52:41.0857 0x0968  LSI_FC - ok
13:52:41.0863 0x0968  [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS         C:\Windows\system32\drivers\lsi_sas.sys
13:52:41.0866 0x0968  LSI_SAS - ok
13:52:41.0870 0x0968  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2        C:\Windows\system32\drivers\lsi_sas2.sys
13:52:41.0872 0x0968  LSI_SAS2 - ok
13:52:41.0891 0x0968  [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI        C:\Windows\system32\drivers\lsi_scsi.sys
13:52:41.0894 0x0968  LSI_SCSI - ok
13:52:41.0907 0x0968  [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv           C:\Windows\system32\drivers\luafv.sys
13:52:41.0910 0x0968  luafv - ok
13:52:41.0912 0x0968  LULU Software CrashHandler - ok
13:52:42.0032 0x0968  [ 963E110F8189126FD175EDA853612B42, B4E45D42767E582590B730FBC50E6108362896954B5D3A58FB5201C4206341A0 ] McAfee SiteAdvisor Service C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe
13:52:42.0037 0x0968  McAfee SiteAdvisor Service - ok
13:52:42.0195 0x0968  [ 3F7F0BF355D3B322F06363641E753DE7, 804B8C4461E0F976167EE7A3E00C78156F75C2434DE41B1338190AAD3F42AEEE ] McAPExe         C:\Program Files\McAfee\MSC\McAPExe.exe
13:52:42.0217 0x0968  McAPExe - ok
13:52:42.0290 0x0968  [ EE692EDC7D1E15EFA4742E5AB499CE48, 69CC9B7FA55C92E838FF247AD2747E3B97135AFBEF027DA6B6B83D4E25FAC43C ] McAWFwk         c:\PROGRA~1\COMMON~1\mcafee\actwiz\mcawfwk.exe
13:52:42.0299 0x0968  McAWFwk - ok
13:52:42.0356 0x0968  [ FFD55794A830AA05BF4E59D724D7D344, 2BD84931D4BF21A128319E48D55394C8415F42FC1D1CC71C08C6C2792BA1480E ] McBootDelayStartSvc C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
13:52:42.0367 0x0968  McBootDelayStartSvc - ok
13:52:42.0500 0x0968  [ 6EF327DBB5DC9D6310ADE48CAB14959D, AFDC81E83E9EC9424C14431E531E976C419715754952D92BE2691186C55F0E9B ] McComponentHostService C:\Program Files\McAfee Security Scan\3.11.376\McCHSvc.exe
13:52:42.0508 0x0968  McComponentHostService - ok
13:52:42.0786 0x0968  [ 40B02F6D4B331443CC7E879BCD87100F, ACF976DC9565A905F71EFE9A25516A0F1B128E70B961B8D8256F51474B1F78D7 ] mccspsvc        C:\Program Files\Common Files\McAfee\CSP\1.9.829.0\\McCSPServiceHost.exe
13:52:42.0893 0x0968  mccspsvc - ok
13:52:42.0990 0x0968  [ FFD55794A830AA05BF4E59D724D7D344, 2BD84931D4BF21A128319E48D55394C8415F42FC1D1CC71C08C6C2792BA1480E ] McMPFSvc        C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
13:52:43.0000 0x0968  McMPFSvc - ok
13:52:43.0030 0x0968  [ FFD55794A830AA05BF4E59D724D7D344, 2BD84931D4BF21A128319E48D55394C8415F42FC1D1CC71C08C6C2792BA1480E ] McNaiAnn        C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
13:52:43.0041 0x0968  McNaiAnn - ok
13:52:43.0147 0x0968  [ 9151C5CDF8489F9FFE9854601FDA9A0F, 6E080E216EE1F16A7B72B3F42434F34C75A8082A3CBAAF7265116CCD22AFE582 ] McODS           C:\Program Files\mcafee\VirusScan\mcods.exe
13:52:43.0165 0x0968  McODS - ok
13:52:43.0223 0x0968  [ FFD55794A830AA05BF4E59D724D7D344, 2BD84931D4BF21A128319E48D55394C8415F42FC1D1CC71C08C6C2792BA1480E ] McOobeSv2       C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
13:52:43.0233 0x0968  McOobeSv2 - ok
13:52:43.0312 0x0968  [ FFD55794A830AA05BF4E59D724D7D344, 2BD84931D4BF21A128319E48D55394C8415F42FC1D1CC71C08C6C2792BA1480E ] mcpltsvc        C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
13:52:43.0322 0x0968  mcpltsvc - ok
13:52:43.0390 0x0968  [ FFD55794A830AA05BF4E59D724D7D344, 2BD84931D4BF21A128319E48D55394C8415F42FC1D1CC71C08C6C2792BA1480E ] McProxy         C:\Program Files\Common Files\mcafee\Platform\McSvcHost\McSvHost.exe
13:52:43.0400 0x0968  McProxy - ok
13:52:43.0472 0x0968  [ 6B9B3656CD62E439287C3C2143E25404, AE4BB60BDA6726803E079D9E5F20BEE7B494FFE1BD1064138342974308CB6916 ] McPvDrv         C:\Windows\system32\drivers\McPvDrv.sys
13:52:43.0475 0x0968  McPvDrv - ok
13:52:43.0513 0x0968  [ 0BE09CD858ABF9DF6ED259D57A1A1663, 2FD28889B93C8E801F74C1D0769673A461671E0189D0A22C94509E3F0EEB7428 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
13:52:43.0516 0x0968  Mcx2Svc - ok
13:52:43.0540 0x0968  [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas         C:\Windows\system32\drivers\megasas.sys
13:52:43.0542 0x0968  megasas - ok
13:52:43.0574 0x0968  [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR          C:\Windows\system32\drivers\MegaSR.sys
13:52:43.0585 0x0968  MegaSR - ok
13:52:43.0627 0x0968  [ A6518DCC42F7A6E999BB3BEA8FD87567, 8A9AE992F93F37E0723761EA271A7E1AA8172702C471041A17324474FC96B9BC ] MEIx64          C:\Windows\system32\DRIVERS\HECIx64.sys
13:52:43.0629 0x0968  MEIx64 - ok
13:52:43.0693 0x0968  [ FAF196A8E1905DB9248790583B3745E2, C8E6A3E74636E4D04816D0B35C2691F81E766B03726E05993429A0BF15528354 ] mfeaack         C:\Windows\system32\drivers\mfeaack.sys
13:52:43.0703 0x0968  mfeaack - ok
13:52:43.0766 0x0968  [ A1A2DEA7E180BFC8284062DBCC67A18D, 77041A9D7429E615CE64E45A14BD53FAFF22284B0F3211399F4D6BA681B2A9DF ] mfeavfk         C:\Windows\system32\drivers\mfeavfk.sys
13:52:43.0775 0x0968  mfeavfk - ok
13:52:43.0848 0x0968  [ 95A4DC60385F57418BD3361262D5F7C8, 5FAAE03B306710509E36A7B77DE9D36E4A1A38832403C29247E1A8B8C1D918B3 ] mfefire         C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe
13:52:43.0854 0x0968  mfefire - ok
13:52:43.0908 0x0968  [ 767386839AD3C39F653512240C06D0D4, EA9D4DCC41AB1C1BC2BD86368C4F22AC43D046EAAAFFA13A89A8AA4D76F0B972 ] mfefirek        C:\Windows\system32\drivers\mfefirek.sys
13:52:43.0920 0x0968  mfefirek - ok
13:52:43.0997 0x0968  [ FAF5C37877D57B16D7E2DAFA29969F96, DA83A140B8727A4FE0DC7B845651BCA31988B0779DA6B3909BB03A4DF9470709 ] mfehidk         C:\Windows\system32\drivers\mfehidk.sys
13:52:44.0016 0x0968  mfehidk - ok
13:52:44.0063 0x0968  [ 989A3E3E8A686CC87A44F97CF45C0175, 373E99A8CCF6495EEC14018A437484516E7DC864E971514CB4955A92593B62EB ] mfemms          C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe
13:52:44.0072 0x0968  mfemms - ok
13:52:44.0142 0x0968  [ 34812CE00FAE95A6275D6B58072457F5, 23118A5E58F88AF5B8C5D4C15AEFA99C47D37A8E8C8FBF840DEEECC3C483AD8B ] mfencbdc        C:\Windows\system32\DRIVERS\mfencbdc.sys
13:52:44.0154 0x0968  mfencbdc - ok
13:52:44.0189 0x0968  [ CF9D4FCA3A5C737DCF72B9F94BB0AC62, 8534DADB74EF745F50A1A148DE5CBAD573B890C604CDA08276CDE3D5C2E8788F ] mfencrk         C:\Windows\system32\DRIVERS\mfencrk.sys
13:52:44.0192 0x0968  mfencrk - ok
13:52:44.0308 0x0968  [ DA49A90A69B3284FD11B6F02D0209A99, 759380964E6450FF21FB9A2BD23BA0394B005EC332E714D40D47262FCDC6CFE9 ] mfesapsn        C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys
13:52:44.0310 0x0968  mfesapsn - ok
13:52:44.0343 0x0968  [ 8DFE9C58B1509E3BBC6FD92B954204D9, 72D519AB2F5E3A335C61C1B632BB846FCD6406194EC36E965D52C1028E68FB33 ] mfevtp          C:\Windows\system32\mfevtps.exe
13:52:44.0350 0x0968  mfevtp - ok
13:52:44.0376 0x0968  [ A47260605572FE4E4C42AB0A3CC0B4E9, 4DE6A365C8C4041AA27BD853912F7F5BED3ABF24E63A2932380189D30764D5FB ] mfewfpk         C:\Windows\system32\drivers\mfewfpk.sys
13:52:44.0382 0x0968  mfewfpk - ok
13:52:44.0462 0x0968  Microsoft SharePoint Workspace Audit Service - ok
13:52:44.0494 0x0968  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS           C:\Windows\system32\mmcss.dll
13:52:44.0497 0x0968  MMCSS - ok
13:52:44.0515 0x0968  [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem           C:\Windows\system32\drivers\modem.sys
13:52:44.0517 0x0968  Modem - ok
13:52:44.0726 0x0968  [ DFB4BC8B5CD8C85D0BD9E608898901FB, AB3BB7FA2D23A5B7815E85F7A73E3F36E95D8FD895F76FA9936AD4C1DA1849EF ] ModuleCoreService C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe
13:52:44.0843 0x0968  ModuleCoreService - ok
13:52:44.0859 0x0968  [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
13:52:44.0861 0x0968  monitor - ok
13:52:44.0899 0x0968  [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
13:52:44.0901 0x0968  mouclass - ok
13:52:44.0914 0x0968  [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
13:52:44.0916 0x0968  mouhid - ok
13:52:44.0958 0x0968  [ 67050452C0118BAF2883928E6FCCFE47, 335FC0AEB7B47DCC7CE0CF3F424EB60ACB1327D2FF6515F04D9AC03A10FF1E31 ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
13:52:44.0961 0x0968  mountmgr - ok
13:52:45.0003 0x0968  [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio            C:\Windows\system32\drivers\mpio.sys
13:52:45.0007 0x0968  mpio - ok
13:52:45.0025 0x0968  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
13:52:45.0028 0x0968  mpsdrv - ok
13:52:45.0073 0x0968  [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc          C:\Windows\system32\mpssvc.dll
13:52:45.0092 0x0968  MpsSvc - ok
13:52:45.0140 0x0968  [ D7ADC2B83CA0B0381F75A98351F72CEE, 05476B7CA0486DF770AE492B5A90C85E3D3E7485152EB2FA30A19EC9BE44ED81 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
13:52:45.0144 0x0968  MRxDAV - ok
13:52:45.0183 0x0968  [ B7FADA5E1E55BB63F90EB9F8F016113B, 33C2C898E4AD0CBD34D9A6CF51987A4703009E23CD9D4F4294BF444C4D3D5A60 ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
13:52:45.0187 0x0968  mrxsmb - ok
13:52:45.0207 0x0968  [ 34AFF1849B3EC042C40C5EEC9D78562A, E3378A9977B429812C38529C562FE27945706ADB5E9E877C4A90B0285631A501 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
13:52:45.0214 0x0968  mrxsmb10 - ok
13:52:45.0237 0x0968  [ 058CE7A55E140EB0C72FBA6FD2FA72DE, B1D89E524A621BDCC464882EF621BDC7779BFCBCC9FD923D70DE130C41D0DB4C ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
13:52:45.0241 0x0968  mrxsmb20 - ok
13:52:45.0270 0x0968  [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci          C:\Windows\system32\drivers\msahci.sys
13:52:45.0271 0x0968  msahci - ok
13:52:45.0295 0x0968  [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
13:52:45.0299 0x0968  msdsm - ok
13:52:45.0325 0x0968  [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC           C:\Windows\System32\msdtc.exe
13:52:45.0329 0x0968  MSDTC - ok
13:52:45.0342 0x0968  [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
13:52:45.0343 0x0968  Msfs - ok
13:52:45.0387 0x0968  [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
13:52:45.0388 0x0968  mshidkmdf - ok
13:52:45.0401 0x0968  [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
13:52:45.0403 0x0968  msisadrv - ok
13:52:45.0432 0x0968  [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
13:52:45.0437 0x0968  MSiSCSI - ok
13:52:45.0440 0x0968  msiserver - ok
13:52:45.0502 0x0968  [ FFD55794A830AA05BF4E59D724D7D344, 2BD84931D4BF21A128319E48D55394C8415F42FC1D1CC71C08C6C2792BA1480E ] MSK80Service    C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
13:52:45.0512 0x0968  MSK80Service - ok
13:52:45.0555 0x0968  [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
13:52:45.0556 0x0968  MSKSSRV - ok
13:52:45.0559 0x0968  [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
13:52:45.0560 0x0968  MSPCLOCK - ok
13:52:45.0563 0x0968  [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
13:52:45.0564 0x0968  MSPQM - ok
13:52:45.0585 0x0968  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
13:52:45.0593 0x0968  MsRPC - ok
13:52:45.0607 0x0968  [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
13:52:45.0609 0x0968  mssmbios - ok
13:52:45.0642 0x0968  [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
13:52:45.0643 0x0968  MSTEE - ok
13:52:45.0646 0x0968  [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig        C:\Windows\system32\drivers\MTConfig.sys
13:52:45.0647 0x0968  MTConfig - ok
13:52:45.0667 0x0968  [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup             C:\Windows\system32\Drivers\mup.sys
13:52:45.0669 0x0968  Mup - ok
13:52:45.0676 0x0968  [ C009123B206C56854F4E88596035231D, 670403A40B425F77C90ECB048A0C8BC11FB19E40A8CECC2C3DCF79175B745863 ] mwlPSDFilter    C:\Windows\system32\DRIVERS\mwlPSDFilter.sys
13:52:45.0677 0x0968  mwlPSDFilter - ok
13:52:45.0702 0x0968  [ BF3739EEB9F008B1DEBAC115089A53F8, 8546AB69087656259BBE17D6F80F4AB164B04171673CE2BF9FFD1B5C9584E9A4 ] mwlPSDNServ     C:\Windows\system32\DRIVERS\mwlPSDNServ.sys
13:52:45.0703 0x0968  mwlPSDNServ - ok
13:52:45.0727 0x0968  [ 38DD143D95E7A01B86F219DDA9C28779, 5FA8C0595CCF835DBCE1CC5322E8FD4BFB6DFB6CF869BB7CB73F919445D469AA ] mwlPSDVDisk     C:\Windows\system32\DRIVERS\mwlPSDVDisk.sys
13:52:45.0729 0x0968  mwlPSDVDisk - ok
13:52:45.0771 0x0968  [ 4BBB9D9C4DF259FAE2D172C5BB25DDD0, 165EE2AB6F989E8D48AA52121B608510E932106835DA43071CC6476630C012FE ] MyWiFiDHCPDNS   C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
13:52:45.0777 0x0968  MyWiFiDHCPDNS - ok
13:52:45.0831 0x0968  [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent        C:\Windows\system32\qagentRT.dll
13:52:45.0847 0x0968  napagent - ok
13:52:45.0891 0x0968  [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
13:52:45.0899 0x0968  NativeWifiP - ok
13:52:45.0967 0x0968  [ F7309F42555F8AAB7144A51A1F2585B0, 065277A8AFAEE3888C997A76D2F751070F92DF4C3354D16B194860B4BDAFF937 ] NDIS            C:\Windows\system32\drivers\ndis.sys
13:52:45.0988 0x0968  NDIS - ok
13:52:46.0025 0x0968  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
13:52:46.0027 0x0968  NdisCap - ok
13:52:46.0058 0x0968  [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
13:52:46.0059 0x0968  NdisTapi - ok
13:52:46.0076 0x0968  [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
13:52:46.0078 0x0968  Ndisuio - ok
13:52:46.0096 0x0968  [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
13:52:46.0101 0x0968  NdisWan - ok
13:52:46.0117 0x0968  [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
13:52:46.0119 0x0968  NDProxy - ok
13:52:46.0202 0x0968  [ D5AC41AE382738483FAFFBD7E373D49A, 68793D15566F387650E9C5010E1CA73BDE3EB4BA431EA0A1673004CAE08413B0 ] Net Driver HPZ12 C:\Windows\system32\HPZinw12.dll
13:52:46.0204 0x0968  Net Driver HPZ12 - ok
13:52:46.0244 0x0968  [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
13:52:46.0246 0x0968  NetBIOS - ok
13:52:46.0282 0x0968  [ E47D571FEC2C76E867935109AB2A770C, F349D25890B6F476B106FD75BFB081DB737CA9B224D95E44927942FFF2DF82CD ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
13:52:46.0287 0x0968  NetBT - ok
13:52:46.0310 0x0968  [ 13FE29C1C8E782829C7FAA3B14F4A666, C53F7F9039E79AC6D5BDA94981A187570D6C7828930B6064CEFC17DC172EA20E ] Netlogon        C:\Windows\system32\lsass.exe
13:52:46.0312 0x0968  Netlogon - ok
13:52:46.0342 0x0968  [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman          C:\Windows\System32\netman.dll
13:52:46.0351 0x0968  Netman - ok
13:52:46.0415 0x0968  [ 15CBA881E10968E33B43D31BE6097BA3, 69449ACA82B67F308C9F7DAB7A4C75BD88A95B98FC7F9102C72AD3D233A48346 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:52:46.0419 0x0968  NetMsmqActivator - ok
13:52:46.0441 0x0968  [ 15CBA881E10968E33B43D31BE6097BA3, 69449ACA82B67F308C9F7DAB7A4C75BD88A95B98FC7F9102C72AD3D233A48346 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:52:46.0444 0x0968  NetPipeActivator - ok
13:52:46.0470 0x0968  [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm        C:\Windows\System32\netprofm.dll
13:52:46.0481 0x0968  netprofm - ok
13:52:46.0504 0x0968  [ 15CBA881E10968E33B43D31BE6097BA3, 69449ACA82B67F308C9F7DAB7A4C75BD88A95B98FC7F9102C72AD3D233A48346 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:52:46.0507 0x0968  NetTcpActivator - ok
13:52:46.0512 0x0968  [ 15CBA881E10968E33B43D31BE6097BA3, 69449ACA82B67F308C9F7DAB7A4C75BD88A95B98FC7F9102C72AD3D233A48346 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
13:52:46.0515 0x0968  NetTcpPortSharing - ok
13:52:46.0792 0x0968  [ AC69618DE5BCCE8747C9AB0AAE1003C1, D975963FA338AB58684BE0556633F3A846D5360FAD1A5E11BB7A273474DFB64D ] NETwNs64        C:\Windows\system32\DRIVERS\NETwNs64.sys
13:52:47.0038 0x0968  NETwNs64 - ok
13:52:47.0076 0x0968  [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960         C:\Windows\system32\drivers\nfrd960.sys
13:52:47.0078 0x0968  nfrd960 - ok
13:52:47.0118 0x0968  [ 8B301D474B478E9A92823BAB50A7BC49, 8181816035F41B1DABEC05E65E4F67BCD785F56760A61F1049E91BA39D42F01D ] NlaSvc          C:\Windows\System32\nlasvc.dll
13:52:47.0127 0x0968  NlaSvc - ok
13:52:47.0251 0x0968  [ 5839A8027D6D324A7CD494051A96628C, 474F2D0BB463ABE68D7C4D2C630860AED4B722EC62C616C91EE00AA965378382 ] NOBU            C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
13:52:47.0318 0x0968  NOBU - ok
13:52:47.0349 0x0968  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs            C:\Windows\system32\drivers\Npfs.sys
13:52:47.0351 0x0968  Npfs - ok
13:52:47.0371 0x0968  [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi             C:\Windows\system32\nsisvc.dll
13:52:47.0373 0x0968  nsi - ok
13:52:47.0385 0x0968  [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
13:52:47.0386 0x0968  nsiproxy - ok
13:52:47.0470 0x0968  [ 47B2D0B31BDC3EBE6090228E2BA3764D, 984A4B38300954164BCBF57EC1A09C18B53779E60A26E9618B50E26016735787 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
13:52:47.0517 0x0968  Ntfs - ok
13:52:47.0568 0x0968  [ 1873214666F6F0A883742DF91FBC48C9, DCF5382CE338D4B5B0C3A3B722A19B6C7BAB59EB7B266FEF04698B79070E2C4B ] NTI IScheduleSvc C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
13:52:47.0576 0x0968  NTI IScheduleSvc - ok
13:52:47.0613 0x0968  [ EE3BA1024594D5D09E314F206B94069E, 34C8EC3DF1C3088D8A0442CAA4F5506665AFB2DF016709457ED2AB7DA45F53A6 ] NTIDrvr         C:\Windows\system32\drivers\NTIDrvr.sys
13:52:47.0615 0x0968  NTIDrvr - ok
13:52:47.0627 0x0968  [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null            C:\Windows\system32\drivers\Null.sys
13:52:47.0628 0x0968  Null - ok
13:52:47.0667 0x0968  [ 0EBC9D13CD96C15B1B18D8678A609E4B, B10896DE16B0C102DFB3E73A6C11A1982C5B428015DAE1F8776BCEF94A0F75C6 ] nusb3hub        C:\Windows\system32\DRIVERS\nusb3hub.sys
13:52:47.0670 0x0968  nusb3hub - ok
13:52:47.0694 0x0968  [ 7BDEC000D56D485021D9C1E63C2F81CA, 7F1303FD0371AF8715BFC38433B730C797170AEF10C7DB845B7B547DA8DBB5D5 ] nusb3xhc        C:\Windows\system32\DRIVERS\nusb3xhc.sys
13:52:47.0699 0x0968  nusb3xhc - ok
13:52:48.0109 0x0968  [ 73DC184AF4D2ADDC41B37344636D2CC7, 6CB0AE9458A8E4DB7833C16238246D5850932462B618054FFBFF9B6B8368924F ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
13:52:48.0467 0x0968  nvlddmkm - ok
13:52:48.0522 0x0968  [ 477A3CF725C4040F77EB9E2C17B922A0, ED7C3CB741CF3E67F95AA7BBB95FB05EE9B2B8E07CEB3CE2A6866C06D6C9169F ] nvpciflt        C:\Windows\system32\DRIVERS\nvpciflt.sys
13:52:48.0523 0x0968  nvpciflt - ok
13:52:48.0553 0x0968  [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid          C:\Windows\system32\drivers\nvraid.sys
13:52:48.0557 0x0968  nvraid - ok
13:52:48.0564 0x0968  [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
13:52:48.0568 0x0968  nvstor - ok
13:52:48.0632 0x0968  [ 6D1056430AFC72A6097409A70A716C15, 6CE87CAEAA2121E161BFAC05F0ED307E6B4E5A8406B6ACF2FF52009A86767B8D ] NVSvc           C:\Windows\system32\nvvsvc.exe
13:52:48.0655 0x0968  NVSvc - ok
13:52:48.0736 0x0968  [ A072423C3812472D326BC774610055CF, 5DD4B491A6FB038842B5D373B9665A4BE16AA92883FA81058B676F79FA058232 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
13:52:48.0770 0x0968  nvUpdatusService - ok
13:52:48.0791 0x0968  [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
13:52:48.0794 0x0968  nv_agp - ok
13:52:48.0807 0x0968  [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
13:52:48.0810 0x0968  ohci1394 - ok
13:52:48.0880 0x0968  [ 9D10F99A6712E28F8ACD5641E3A7EA6B, 70964A0ED9011EA94044E15FA77EDD9CF535CC79ED8E03A3721FF007E69595CC ] ose             C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
13:52:48.0884 0x0968  ose - ok
13:52:49.0092 0x0968  [ 61BFFB5F57AD12F83AB64B7181829B34, 1DD0DD35E4158F95765EE6639F217DF03A0A19E624E020DBA609268C08A13846 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
13:52:49.0238 0x0968  osppsvc - ok
13:52:49.0266 0x0968  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
13:52:49.0275 0x0968  p2pimsvc - ok
13:52:49.0298 0x0968  [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc          C:\Windows\system32\p2psvc.dll
13:52:49.0309 0x0968  p2psvc - ok
13:52:49.0334 0x0968  [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport         C:\Windows\system32\drivers\parport.sys
13:52:49.0337 0x0968  Parport - ok
13:52:49.0356 0x0968  [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr         C:\Windows\system32\drivers\partmgr.sys
13:52:49.0358 0x0968  partmgr - ok
13:52:49.0397 0x0968  [ DB2D62AA2DF6B1F3D690A9EC9701AA2C, BEAC55E1AA0494565F1547DF5E6FE20FCEA66461764C016FCB68D8BFF0F0C375 ] PcaSvc          C:\Windows\System32\pcasvc.dll
13:52:49.0402 0x0968  PcaSvc - ok
13:52:49.0431 0x0968  [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci             C:\Windows\system32\drivers\pci.sys
13:52:49.0436 0x0968  pci - ok
13:52:49.0475 0x0968  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide          C:\Windows\system32\drivers\pciide.sys
13:52:49.0477 0x0968  pciide - ok
13:52:49.0503 0x0968  [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia          C:\Windows\system32\drivers\pcmcia.sys
13:52:49.0509 0x0968  pcmcia - ok
13:52:49.0523 0x0968  [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw             C:\Windows\system32\drivers\pcw.sys
13:52:49.0525 0x0968  pcw - ok
13:52:49.0582 0x0968  [ ED6E75158D28D33A2E2A020AC5B2B59D, 0F364D9A88304C45F31318605C417A70A9D0E4CF087D73E949B42C12CC76CD6C ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
13:52:49.0597 0x0968  PEAUTH - ok
13:52:49.0748 0x0968  [ EDD4C63050ED1821B4C92D06FFD7180B, 33C6B54147771C813CD78CEF66C0A76CA50D9F1D13D41E6764310BF8C0D8D89D ] PEFService      C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe
13:52:49.0804 0x0968  PEFService - ok
13:52:49.0881 0x0968  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
13:52:49.0883 0x0968  PerfHost - ok
13:52:49.0898 0x0968  pfc - ok
13:52:49.0952 0x0968  [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla             C:\Windows\system32\pla.dll
13:52:49.0984 0x0968  pla - ok
13:52:50.0026 0x0968  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
13:52:50.0034 0x0968  PlugPlay - ok
13:52:50.0082 0x0968  [ 37F6046CDC630442D7DC087501FF6FC6, EFC0F3DA49839CA263CD95AE5015F4FC554D9D845A58A699C542C8C96E70ED3C ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
13:52:50.0085 0x0968  Pml Driver HPZ12 - ok
13:52:50.0093 0x0968  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
13:52:50.0095 0x0968  PNRPAutoReg - ok
13:52:50.0111 0x0968  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
13:52:50.0118 0x0968  PNRPsvc - ok
13:52:50.0170 0x0968  [ 32D374C60778253B81FA76C2FE19E155, 6BD6B360EAC4F9988921281B52B4B1A29DDD287C6DB18688B4CEA5B1B4F22106 ] Point64         C:\Windows\system32\DRIVERS\point64.sys
13:52:50.0171 0x0968  Point64 - ok
13:52:50.0226 0x0968  [ 80D6B0563ED2BF10656B1D4748331082, B7E6B5E1148B7EE537E8D5C3A65450876B61CD45A395267D08699746E98AD574 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
13:52:50.0238 0x0968  PolicyAgent - ok
13:52:50.0254 0x0968  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
13:52:50.0259 0x0968  Power - ok
13:52:50.0304 0x0968  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
13:52:50.0307 0x0968  PptpMiniport - ok
13:52:50.0326 0x0968  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\drivers\processr.sys
13:52:50.0328 0x0968  Processor - ok
13:52:50.0367 0x0968  [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc         C:\Windows\system32\profsvc.dll
13:52:50.0372 0x0968  ProfSvc - ok
13:52:50.0388 0x0968  [ 13FE29C1C8E782829C7FAA3B14F4A666, C53F7F9039E79AC6D5BDA94981A187570D6C7828930B6064CEFC17DC172EA20E ] ProtectedStorage C:\Windows\system32\lsass.exe
13:52:50.0390 0x0968  ProtectedStorage - ok
13:52:50.0408 0x0968  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
13:52:50.0411 0x0968  Psched - ok
13:52:50.0482 0x0968  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
13:52:50.0515 0x0968  ql2300 - ok
13:52:50.0529 0x0968  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
13:52:50.0533 0x0968  ql40xx - ok
13:52:50.0555 0x0968  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
13:52:50.0562 0x0968  QWAVE - ok
13:52:50.0571 0x0968  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
13:52:50.0573 0x0968  QWAVEdrv - ok
13:52:50.0595 0x0968  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
13:52:50.0596 0x0968  RasAcd - ok
13:52:50.0616 0x0968  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
13:52:50.0618 0x0968  RasAgileVpn - ok
13:52:50.0643 0x0968  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
13:52:50.0647 0x0968  RasAuto - ok
13:52:50.0675 0x0968  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
13:52:50.0679 0x0968  Rasl2tp - ok
13:52:50.0700 0x0968  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\Windows\System32\rasmans.dll
13:52:50.0709 0x0968  RasMan - ok
13:52:50.0725 0x0968  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
13:52:50.0728 0x0968  RasPppoe - ok
13:52:50.0765 0x0968  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
13:52:50.0768 0x0968  RasSstp - ok
13:52:50.0794 0x0968  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
13:52:50.0801 0x0968  rdbss - ok
13:52:50.0821 0x0968  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\drivers\rdpbus.sys
13:52:50.0823 0x0968  rdpbus - ok
13:52:50.0852 0x0968  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
13:52:50.0853 0x0968  RDPCDD - ok
13:52:50.0868 0x0968  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
13:52:50.0869 0x0968  RDPENCDD - ok
13:52:50.0884 0x0968  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
13:52:50.0885 0x0968  RDPREFMP - ok
13:52:50.0918 0x0968  [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
13:52:50.0923 0x0968  RDPWD - ok
13:52:50.0972 0x0968  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
13:52:50.0978 0x0968  rdyboost - ok
13:52:51.0050 0x0968  [ A436F5E7D80BBDBB0826D0F176D5BEA8, 7862CE61F182C7613E34415C01AC1C228F79A45470CFD1D316DF2BD24EE09E3C ] RegSrvc         C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
13:52:51.0070 0x0968  RegSrvc - ok
13:52:51.0096 0x0968  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
13:52:51.0099 0x0968  RemoteAccess - ok
13:52:51.0124 0x0968  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
13:52:51.0129 0x0968  RemoteRegistry - ok
13:52:51.0138 0x0968  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
13:52:51.0141 0x0968  RpcEptMapper - ok
13:52:51.0163 0x0968  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
13:52:51.0165 0x0968  RpcLocator - ok
13:52:51.0214 0x0968  [ 622C96AFB07BB82C8650B47172137AC4, B74CEA5A3F4945E5A3EAE7AF1B1FA75F611C65C6FACE393052A512FA81B0C17C ] RpcSs           C:\Windows\system32\rpcss.dll
13:52:51.0224 0x0968  RpcSs - ok
13:52:51.0263 0x0968  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
13:52:51.0265 0x0968  rspndr - ok
13:52:51.0277 0x0968  [ 13FE29C1C8E782829C7FAA3B14F4A666, C53F7F9039E79AC6D5BDA94981A187570D6C7828930B6064CEFC17DC172EA20E ] SamSs           C:\Windows\system32\lsass.exe
13:52:51.0278 0x0968  SamSs - ok
13:52:51.0291 0x0968  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
13:52:51.0294 0x0968  sbp2port - ok
13:52:51.0332 0x0968  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
13:52:51.0338 0x0968  SCardSvr - ok
13:52:51.0349 0x0968  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
13:52:51.0351 0x0968  scfilter - ok
13:52:51.0418 0x0968  [ 40686B59C127F0C93B4234E4A1E3472A, B2DD61CB796C6AA8AFD285D43472B94646CA6D331D282818E0FDC9DE28DDE9CF ] Schedule        C:\Windows\system32\schedsvc.dll
13:52:51.0444 0x0968  Schedule - ok
13:52:51.0476 0x0968  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc     C:\Windows\System32\certprop.dll
13:52:51.0478 0x0968  SCPolicySvc - ok
13:52:51.0517 0x0968  [ 111E0EBC0AD79CB0FA014B907B231CF0, B7D43D156C2524938503CF8E99C4D1F7A5C55E16C0368F57F4CD23C6D833B38F ] sdbus           C:\Windows\system32\DRIVERS\sdbus.sys
13:52:51.0521 0x0968  sdbus - ok
13:52:51.0549 0x0968  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
13:52:51.0554 0x0968  SDRSVC - ok
13:52:51.0586 0x0968  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
13:52:51.0587 0x0968  secdrv - ok
13:52:51.0616 0x0968  [ A19623BDD61E66A12AB53992002B4F3A, E351CEEC086084A417BA3BD0EEF46114D3147EC38E3EF8BE49B724F9D028CC56 ] seclogon        C:\Windows\system32\seclogon.dll
13:52:51.0618 0x0968  seclogon - ok
13:52:51.0647 0x0968  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\System32\sens.dll
13:52:51.0650 0x0968  SENS - ok
13:52:51.0681 0x0968  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
13:52:51.0684 0x0968  SensrSvc - ok
13:52:51.0701 0x0968  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\drivers\serenum.sys
13:52:51.0703 0x0968  Serenum - ok
13:52:51.0740 0x0968  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\drivers\serial.sys
13:52:51.0743 0x0968  Serial - ok
13:52:51.0753 0x0968  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\drivers\sermouse.sys
13:52:51.0755 0x0968  sermouse - ok
13:52:51.0775 0x0968  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\Windows\system32\sessenv.dll
13:52:51.0779 0x0968  SessionEnv - ok
13:52:51.0800 0x0968  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
13:52:51.0801 0x0968  sffdisk - ok
13:52:51.0811 0x0968  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
13:52:51.0813 0x0968  sffp_mmc - ok
13:52:51.0816 0x0968  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
13:52:51.0817 0x0968  sffp_sd - ok
13:52:51.0824 0x0968  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
13:52:51.0825 0x0968  sfloppy - ok
13:52:51.0863 0x0968  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
13:52:51.0872 0x0968  SharedAccess - ok
13:52:51.0914 0x0968  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:52:51.0924 0x0968  ShellHWDetection - ok
13:52:51.0965 0x0968  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
13:52:51.0967 0x0968  SiSRaid2 - ok
13:52:51.0979 0x0968  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
13:52:51.0982 0x0968  SiSRaid4 - ok
13:52:52.0034 0x0968  [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
13:52:52.0041 0x0968  SkypeUpdate - ok
13:52:52.0071 0x0968  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
13:52:52.0074 0x0968  Smb - ok
13:52:52.0113 0x0968  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
13:52:52.0115 0x0968  SNMPTRAP - ok
13:52:52.0117 0x0968  Soda PDF 6 - ok
13:52:52.0128 0x0968  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
13:52:52.0130 0x0968  spldr - ok
13:52:52.0189 0x0968  [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler         C:\Windows\System32\spoolsv.exe
13:52:52.0203 0x0968  Spooler - ok
13:52:52.0324 0x0968  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\Windows\system32\sppsvc.exe
13:52:52.0436 0x0968  sppsvc - ok
13:52:52.0455 0x0968  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
13:52:52.0458 0x0968  sppuinotify - ok
13:52:52.0507 0x0968  [ F2F4B895296EE3ECCE781CC2A296A5D1, 126321EDDA8141A42DBE7C90675948433063E6D5B6DEFD805AA0797C95A461EE ] srv             C:\Windows\system32\DRIVERS\srv.sys
13:52:52.0517 0x0968  srv - ok
13:52:52.0545 0x0968  [ FD0008BEDD2723170CCA7D61837DFD52, F9F576FA7B84CAB5180B9080D62B8A00B3E5D5BC73199B11C63193742529227D ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
13:52:52.0555 0x0968  srv2 - ok
13:52:52.0585 0x0968  [ 63B5845D9379262083655D5C6AB8DFC5, 1813D2FC41ADCDAC6E3A522373B9DB934CC27B89E7185E0E4FC26E30CDAF1523 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
13:52:52.0589 0x0968  srvnet - ok
13:52:52.0626 0x0968  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
13:52:52.0632 0x0968  SSDPSRV - ok
13:52:52.0649 0x0968  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
13:52:52.0653 0x0968  SstpSvc - ok
13:52:52.0676 0x0968  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
13:52:52.0678 0x0968  stexstor - ok
13:52:52.0745 0x0968  [ DECACB6921DED1A38642642685D77DAC, 1633711CE973F818EBCCCA28538772431167C33ECDD44D1E846A9436598B52DC ] StillCam        C:\Windows\system32\drivers\serscan.sys
13:52:52.0747 0x0968  StillCam - ok
13:52:52.0783 0x0968  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\Windows\System32\wiaservc.dll
13:52:52.0797 0x0968  stisvc - ok
13:52:52.0819 0x0968  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\drivers\swenum.sys
13:52:52.0820 0x0968  swenum - ok
13:52:52.0853 0x0968  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
13:52:52.0865 0x0968  swprv - ok
13:52:52.0961 0x0968  [ 2E730941CC5BF6200A4F56D1E9C24AAD, 758836D55DC84F3EBE9917DC6FAB8E6170A5B238FEDBCFDB6D7C5C6EA98E08B2 ] SysMain         C:\Windows\system32\sysmain.dll
13:52:53.0000 0x0968  SysMain - ok
13:52:53.0041 0x0968  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:52:53.0045 0x0968  TabletInputService - ok
13:52:53.0059 0x0968  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv         C:\Windows\System32\tapisrv.dll
13:52:53.0067 0x0968  TapiSrv - ok
13:52:53.0174 0x0968  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
13:52:53.0215 0x0968  Tcpip - ok
13:52:53.0285 0x0968  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
13:52:53.0318 0x0968  TCPIP6 - ok
13:52:53.0349 0x0968  [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
13:52:53.0351 0x0968  tcpipreg - ok
13:52:53.0372 0x0968  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
13:52:53.0373 0x0968  TDPIPE - ok
13:52:53.0409 0x0968  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
13:52:53.0410 0x0968  TDTCP - ok
13:52:53.0443 0x0968  [ AA77EB517D2F07A947294F260E3ACA83, B7A5DF3066830C0C2302B059778A67419792058A0D300C471DE40AB245EA7E58 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
13:52:53.0447 0x0968  tdx - ok
13:52:53.0482 0x0968  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\Windows\system32\drivers\termdd.sys
13:52:53.0484 0x0968  TermDD - ok
13:52:53.0531 0x0968  [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService     C:\Windows\System32\termsrv.dll
13:52:53.0547 0x0968  TermService - ok
13:52:53.0583 0x0968  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
13:52:53.0586 0x0968  Themes - ok
13:52:53.0616 0x0968  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
13:52:53.0619 0x0968  THREADORDER - ok
13:52:53.0655 0x0968  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
13:52:53.0660 0x0968  TrkWks - ok
13:52:53.0704 0x0968  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:52:53.0709 0x0968  TrustedInstaller - ok
13:52:53.0737 0x0968  [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
13:52:53.0739 0x0968  tssecsrv - ok
13:52:53.0767 0x0968  [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
13:52:53.0770 0x0968  TsUsbFlt - ok
13:52:53.0787 0x0968  [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD         C:\Windows\system32\drivers\TsUsbGD.sys
13:52:53.0789 0x0968  TsUsbGD - ok
13:52:53.0810 0x0968  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
13:52:53.0813 0x0968  tunnel - ok
13:52:53.0836 0x0968  [ FD24F98D2898BE093FE926604BE7DB99, F9851C57A2ED838AC76BB19FE2F62BB81C57DBBE2A2555F738B5D6725D39AD61 ] TurboB          C:\Windows\system32\DRIVERS\TurboB.sys
13:52:53.0838 0x0968  TurboB - ok
13:52:53.0884 0x0968  [ 600B406A04D90F577FEA8A88D7379F08, 77CC8E8AFB6F571A42D916C0B2FEFFD3A7A32A455C78228B407C6C9B6DED8CAD ] TurboBoost      C:\Program Files\Intel\TurboBoost\TurboBoost.exe
13:52:53.0888 0x0968  TurboBoost - ok
13:52:53.0905 0x0968  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
13:52:53.0907 0x0968  uagp35 - ok
13:52:53.0918 0x0968  [ A17D5E1A6DF4EAB0A480F2C490DE4C9D, 1EA835F172B6BF3D7F496E079DF1CDF00122B2110C08D61427582BC9405D2B7B ] UBHelper        C:\Windows\system32\drivers\UBHelper.sys
13:52:53.0919 0x0968  UBHelper - ok
13:52:53.0938 0x0968  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
13:52:53.0945 0x0968  udfs - ok
13:52:53.0971 0x0968  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
13:52:53.0973 0x0968  UI0Detect - ok
13:52:53.0992 0x0968  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
13:52:53.0994 0x0968  uliagpkx - ok
13:52:54.0031 0x0968  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
13:52:54.0033 0x0968  umbus - ok
13:52:54.0036 0x0968  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\drivers\umpass.sys
13:52:54.0037 0x0968  UmPass - ok
13:52:54.0157 0x0968  [ 758C2CE427C343F780A205E28555C98D, E3413BA433CD26DD61D3257B08B8354478A049A972EFAC53C303690BC71DD7E1 ] UNS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
13:52:54.0215 0x0968  UNS - ok
13:52:54.0260 0x0968  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
13:52:54.0269 0x0968  upnphost - ok
13:52:54.0323 0x0968  [ C9E9D59C0099A9FF51697E9306A44240, 78D9A7A5E5742962B6978F475BF06CB32262F1D214699D3D40538476A58012A1 ] USBAAPL64       C:\Windows\system32\Drivers\usbaapl64.sys
13:52:54.0325 0x0968  USBAAPL64 - ok
13:52:54.0348 0x0968  [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
13:52:54.0350 0x0968  usbccgp - ok
13:52:54.0394 0x0968  [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir          C:\Windows\system32\drivers\usbcir.sys
13:52:54.0397 0x0968  usbcir - ok
13:52:54.0419 0x0968  [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci         C:\Windows\system32\drivers\usbehci.sys
13:52:54.0421 0x0968  usbehci - ok
13:52:54.0455 0x0968  [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
13:52:54.0463 0x0968  usbhub - ok
13:52:54.0482 0x0968  [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci         C:\Windows\system32\drivers\usbohci.sys
13:52:54.0483 0x0968  usbohci - ok
13:52:54.0506 0x0968  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
13:52:54.0507 0x0968  usbprint - ok
13:52:54.0541 0x0968  [ 9661DA76B4531B2DA272ECCE25A8AF24, FEA93254A21E71A7EB8AD35FCCAD2C1E41F7329EC33B1734F5B41307A34D8637 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
13:52:54.0543 0x0968  usbscan - ok
13:52:54.0594 0x0968  [ D029DD09E22EB24318A8FC3D8138BA43, C95805E8BF75ECB939520AE86420B16467B0771C161C51C9F1A37649ADFADCD0 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:52:54.0597 0x0968  USBSTOR - ok
13:52:54.0627 0x0968  [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
13:52:54.0628 0x0968  usbuhci - ok
13:52:54.0690 0x0968  [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
13:52:54.0695 0x0968  usbvideo - ok
13:52:54.0721 0x0968  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
13:52:54.0724 0x0968  UxSms - ok
13:52:54.0732 0x0968  [ 13FE29C1C8E782829C7FAA3B14F4A666, C53F7F9039E79AC6D5BDA94981A187570D6C7828930B6064CEFC17DC172EA20E ] VaultSvc        C:\Windows\system32\lsass.exe
13:52:54.0734 0x0968  VaultSvc - ok
13:52:54.0787 0x0968  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
13:52:54.0789 0x0968  vdrvroot - ok
13:52:54.0826 0x0968  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds             C:\Windows\System32\vds.exe
13:52:54.0839 0x0968  vds - ok
13:52:54.0850 0x0968  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
13:52:54.0851 0x0968  vga - ok
13:52:54.0870 0x0968  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
13:52:54.0871 0x0968  VgaSave - ok
13:52:54.0891 0x0968  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
13:52:54.0897 0x0968  vhdmp - ok
13:52:54.0931 0x0968  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\drivers\viaide.sys
13:52:54.0932 0x0968  viaide - ok
13:52:54.0954 0x0968  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
13:52:54.0957 0x0968  volmgr - ok
13:52:54.0972 0x0968  [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
13:52:54.0979 0x0968  volmgrx - ok
13:52:54.0997 0x0968  [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap         C:\Windows\system32\drivers\volsnap.sys
13:52:55.0004 0x0968  volsnap - ok
13:52:55.0046 0x0968  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
13:52:55.0050 0x0968  vsmraid - ok
13:52:55.0116 0x0968  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS             C:\Windows\system32\vssvc.exe
13:52:55.0151 0x0968  VSS - ok
13:52:55.0323 0x0968  [ EAD689064377AED746B6981BAFB83749, 0C51173DB295F10B5778020AD50A349631B089B00856A41B018B84211E10C939 ] vToolbarUpdater19.5.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\19.5.0\ToolbarUpdater.exe
13:52:55.0351 0x0968  vToolbarUpdater19.5.0 - ok
13:52:55.0373 0x0968  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
13:52:55.0374 0x0968  vwifibus - ok
13:52:55.0405 0x0968  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
13:52:55.0407 0x0968  vwififlt - ok
13:52:55.0418 0x0968  [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
13:52:55.0420 0x0968  vwifimp - ok
13:52:55.0473 0x0968  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
13:52:55.0483 0x0968  W32Time - ok
13:52:55.0511 0x0968  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
13:52:55.0513 0x0968  WacomPen - ok
13:52:55.0549 0x0968  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
13:52:55.0552 0x0968  WANARP - ok
13:52:55.0556 0x0968  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
13:52:55.0558 0x0968  Wanarpv6 - ok
13:52:55.0637 0x0968  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
13:52:55.0664 0x0968  WatAdminSvc - ok
13:52:55.0736 0x0968  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\Windows\system32\wbengine.exe
13:52:55.0769 0x0968  wbengine - ok
13:52:55.0793 0x0968  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
13:52:55.0799 0x0968  WbioSrvc - ok
13:52:55.0835 0x0968  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
13:52:55.0845 0x0968  wcncsvc - ok
13:52:55.0860 0x0968  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:52:55.0863 0x0968  WcsPlugInService - ok
13:52:55.0881 0x0968  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\drivers\wd.sys
13:52:55.0882 0x0968  Wd - ok
13:52:55.0931 0x0968  [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
13:52:55.0949 0x0968  Wdf01000 - ok
13:52:55.0976 0x0968  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost  C:\Windows\system32\wdi.dll
13:52:55.0980 0x0968  WdiServiceHost - ok
13:52:55.0986 0x0968  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost   C:\Windows\system32\wdi.dll
13:52:55.0989 0x0968  WdiSystemHost - ok
13:52:56.0029 0x0968  [ 4E89FC53493704BF835F0300DC201C34, FB3080725E144D93512DED81047D21C0582BC3412250EFF37E039108D7351F53 ] WebClient       C:\Windows\System32\webclnt.dll
13:52:56.0037 0x0968  WebClient - ok
13:52:56.0062 0x0968  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
13:52:56.0069 0x0968  Wecsvc - ok
13:52:56.0078 0x0968  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
13:52:56.0082 0x0968  wercplsupport - ok
13:52:56.0123 0x0968  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
13:52:56.0127 0x0968  WerSvc - ok
13:52:56.0212 0x0968  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
13:52:56.0214 0x0968  WfpLwf - ok
13:52:56.0223 0x0968  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
13:52:56.0224 0x0968  WIMMount - ok
13:52:56.0245 0x0968  WinDefend - ok
13:52:56.0260 0x0968  WinHttpAutoProxySvc - ok
13:52:56.0328 0x0968  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
13:52:56.0334 0x0968  Winmgmt - ok
13:52:56.0431 0x0968  [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM           C:\Windows\system32\WsmSvc.dll
13:52:56.0476 0x0968  WinRM - ok
13:52:56.0555 0x0968  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb          C:\Windows\system32\drivers\WinUsb.sys
13:52:56.0557 0x0968  WinUsb - ok
13:52:56.0602 0x0968  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
13:52:56.0623 0x0968  Wlansvc - ok
13:52:56.0670 0x0968  [ 06C8FA1CF39DE6A735B54D906BA791C6, D8FEC7DE227781CDA876904701B2AA995268F74DCD6CB34AA0296C557FC283B6 ] wlcrasvc        C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
13:52:56.0672 0x0968  wlcrasvc - ok
13:52:56.0779 0x0968  [ 2BACD71123F42CEA603F4E205E1AE337, 1FEF20554110371D738F462ECFFA999158EFEED02062414C58C1B61C422BF0B9 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:52:56.0828 0x0968  wlidsvc - ok
13:52:56.0877 0x0968  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\DRIVERS\wmiacpi.sys
13:52:56.0878 0x0968  WmiAcpi - ok
13:52:56.0909 0x0968  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
13:52:56.0914 0x0968  wmiApSrv - ok
13:52:56.0937 0x0968  WMPNetworkSvc - ok
13:52:56.0967 0x0968  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
13:52:56.0969 0x0968  WPCSvc - ok
13:52:56.0980 0x0968  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
13:52:56.0985 0x0968  WPDBusEnum - ok
13:52:57.0012 0x0968  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
13:52:57.0013 0x0968  ws2ifsl - ok
13:52:57.0047 0x0968  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\System32\wscsvc.dll
13:52:57.0050 0x0968  wscsvc - ok
13:52:57.0077 0x0968  [ 8D918B1DB190A4D9B1753A66FA8C96E8, DB7D2714DC04D2D6999A207D7399A5647C8653E5A1AD80856A65C5B6065AEDFE ] WSDPrintDevice  C:\Windows\system32\DRIVERS\WSDPrint.sys
13:52:57.0079 0x0968  WSDPrintDevice - ok
13:52:57.0082 0x0968  WSearch - ok
13:52:57.0196 0x0968  [ 86F11B85102AFA6A1A6101DCE2F09386, 68A0F0E628C8F33FDAC114876DA8ED14776DD74E80AC5A6A52257E19DE011091 ] wuauserv        C:\Windows\system32\wuaueng.dll
13:52:57.0254 0x0968  wuauserv - ok
13:52:57.0296 0x0968  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
13:52:57.0299 0x0968  WudfPf - ok
13:52:57.0335 0x0968  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
13:52:57.0340 0x0968  WUDFRd - ok
13:52:57.0359 0x0968  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
13:52:57.0362 0x0968  wudfsvc - ok
13:52:57.0400 0x0968  [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc         C:\Windows\System32\wwansvc.dll
13:52:57.0407 0x0968  WwanSvc - ok
13:52:57.0429 0x0968  ================ Scan global ===============================
13:52:57.0463 0x0968  [ 168EA9CD9BD6056BB6F60B57D5304BBE, 5A2F98754F042A7D80E7483842967EB362F01D57CE9720B24C7EDAA047F24C6F ] C:\Windows\system32\basesrv.dll
13:52:57.0499 0x0968  [ E0E4D286839FC27F56A85B4710E16B6B, 6BBBADB8904D6159E6171A339E0BF30A41D14E885D560BFB8BB73B1FF7239E1A ] C:\Windows\system32\winsrv.dll
13:52:57.0511 0x0968  [ E0E4D286839FC27F56A85B4710E16B6B, 6BBBADB8904D6159E6171A339E0BF30A41D14E885D560BFB8BB73B1FF7239E1A ] C:\Windows\system32\winsrv.dll
13:52:57.0545 0x0968  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
13:52:57.0597 0x0968  [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe
13:52:57.0604 0x0968  [ Global ] - ok
13:52:57.0604 0x0968  ================ Scan MBR ==================================
13:52:57.0619 0x0968  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
13:52:57.0857 0x0968  \Device\Harddisk0\DR0 - ok
13:52:57.0858 0x0968  ================ Scan VBR ==================================
13:52:57.0869 0x0968  [ B7F98197AA8E91EDC599FF5B7EF93065 ] \Device\Harddisk0\DR0\Partition1
13:52:57.0871 0x0968  \Device\Harddisk0\DR0\Partition1 - ok
13:52:57.0885 0x0968  [ 0441F0DA25B4E39B24D47E90D0A7DC93 ] \Device\Harddisk0\DR0\Partition2
13:52:57.0887 0x0968  \Device\Harddisk0\DR0\Partition2 - ok
13:52:57.0887 0x0968  ================ Scan generic autorun ======================
13:52:57.0913 0x0968  [ BA9E8BF3E91C14DE99FDB1FA946D07AF, 9C3F5F52EE5B8D02B15EE18AA492FB110547A8DCDA3F8284A614F4E1A30F9BB1 ] C:\Windows\system32\igfxtray.exe
13:52:57.0918 0x0968  IgfxTray - ok
13:52:57.0929 0x0968  [ B20857C91A3E992A5AC93D8625C53CAE, ECB89856B267E2F4930CB7B404B51425C6375A47F864577C1A7B8B255278EC12 ] C:\Windows\system32\hkcmd.exe
13:52:57.0938 0x0968  HotKeysCmds - ok
13:52:57.0949 0x0968  [ 29E120E36791B2E620CC398847C28E12, 7C2904FEDD50F49447FD091D33BB3BFA5A2A684101ADB123BC2C08699320B912 ] C:\Windows\system32\igfxpers.exe
13:52:57.0959 0x0968  Persistence - ok
13:52:57.0961 0x0968  IntelTBRunOnce - ok
13:52:58.0027 0x0968  [ 6A94CD69E9C2BD1864096AB0B16660E6, E22F3C432F104AD25512D1F97526D772D50BE0FC7910FFF12335F4ECC0EEE184 ] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
13:52:58.0060 0x0968  IntelPAN - ok
13:52:58.0062 0x0968  ETDCtrl - ok
13:52:58.0418 0x0968  [ 2D0838648D185E0B475E83AB1864F403, 3607D775E23C574CDEC6FA32A90114297BB914AAB5CEB9679B36FFFE484F527D ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
13:52:58.0612 0x0968  RtHDVCpl - ok
13:52:58.0707 0x0968  [ 7586ACA6DBFBDCD5EBC1776486D53AA4, 1DA51BE57CB6DDCB9DAEA337802DEEE729D56C2548B2BB8909D7FA007A68BBFB ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
13:52:58.0744 0x0968  RtHDVBg - ok
13:52:58.0839 0x0968  [ F0474296AC4E0E6BDE733C1B8513E41A, 2E54894FC1B422F0C520D11166204926D3994A3440037D655C73D66D7118859C ] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
13:52:58.0870 0x0968  Power Management - ok
13:52:58.0967 0x0968  [ 9843083FA1E4A655195DF4D7A687C576, 83BFC1F2C594C8BE2D775022ACDF2047A73DC7DE03E1207D90062EC7A3F38FEE ] c:\Program Files\Microsoft Device Center\itype.exe
13:52:58.0998 0x0968  IntelliType Pro - ok
13:52:59.0057 0x0968  [ 770FF1850E70B98777F5978FC8FD5D57, 98DF428740363EB61199798CBA88C9472C429AE97E05E1ACC7D920BF81D19BE3 ] c:\Program Files\Microsoft Device Center\ipoint.exe
13:52:59.0099 0x0968  IntelliPoint - ok
13:52:59.0140 0x0968  [ 4A80B3C030178E65CF0BECFF1BB20905, EBBB74B0597D1884D279C77248A818A6D9300DDE06BCE498945B82715ABE0196 ] C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe
13:52:59.0148 0x0968  SuiteTray - ok
13:52:59.0215 0x0968  [ D3E69D500466C17498AAF7F83D12FFF0, F5723FC28396489EADDDCAD67A0E46B56D859590823E3CFA7254BA6709DC5AE6 ] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
13:52:59.0239 0x0968  Norton Online Backup - ok
13:52:59.0299 0x0968  [ 0D360F06B168A6F37ACA9D9F958245DA, 0F37D510AE0A31503A359F65D5C04CD798B178A3A3E2601DFBAB6534B3C7C23C ] C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
13:52:59.0304 0x0968  BackupManagerTray - ok
13:52:59.0366 0x0968  [ 9ABC4E3B00CFA3A47D5569F5B49FE42F, 5D33CCE770BC9BC3AFA544A21F100A7F1E5A36577FDB30884160AC4BFE6A1838 ] C:\Program Files (x86)\Launch Manager\LManager.exe
13:52:59.0390 0x0968  LManager - ok
13:52:59.0426 0x0968  [ 9D51EA92A612B37E76E5E4621650C50A, 00BD61C8527A80C0F684882379A0AC2E5A54E8BBECC797087B960CDC8454C373 ] C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
13:52:59.0428 0x0968  NUSB3MON - ok
13:52:59.0469 0x0968  [ 14017E1CE1583C2C26F69C5BC3D4DBD0, 1D17EC0FF6DF5AF44C82EA6C6806CC940121BC93439D87C5442D7EEEFFA39E3A ] C:\Dolby PCEE4\pcee4.exe
13:52:59.0480 0x0968  Dolby Advanced Audio v2 - ok
13:52:59.0530 0x0968  [ 41D4102A550711871BB2DC49EA03CA7B, B8EE41B392D0614FE53174AF3014CE863902B29051397734EADEF858478B23A4 ] C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe
13:52:59.0533 0x0968  ArcadeMovieService - ok
13:52:59.0591 0x0968  [ EB6299B13573433744A6582966F760C7, 3D2FE7AB8533331566D449F9DD8FEC4B03C6E341E82D651DD778BDF8B0AEE663 ] C:\Program Files (x86)\Common Files\ACD Systems\DE\DevDetect.exe
13:52:59.0595 0x0968  Device Detector - ok
13:52:59.0673 0x0968  [ 187F4C75A89E3F412322C94526320074, D78FA7EF93C8C7B4326A5B6DB04A92ADD091DF00658FA8731D07C5D3BE29ED04 ] C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe
13:52:59.0675 0x0968  BCSSync - ok
13:52:59.0741 0x0968  [ 21293443961A4E2597453EE7A9347F22, FDA88181C975C251E56D5A38E5473F45B9CB4E1258A6E93320D34D656AB1E6ED ] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
13:52:59.0742 0x0968  HP Software Update - ok
13:52:59.0744 0x0968  {10EC57A6-43AE-4F4E-8920-BEAE840CB099} - ok
13:52:59.0816 0x0968  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
13:52:59.0841 0x0968  Sidebar - ok
13:52:59.0871 0x0968  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
13:52:59.0874 0x0968  mctadmin - ok
13:52:59.0876 0x0968  IsMyWinLockerReboot - ok
13:52:59.0928 0x0968  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
13:52:59.0947 0x0968  Sidebar - ok
13:52:59.0952 0x0968  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
13:52:59.0955 0x0968  mctadmin - ok
13:52:59.0956 0x0968  IsMyWinLockerReboot - ok
13:52:59.0983 0x0968  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
13:53:00.0003 0x0968  Sidebar - ok
13:53:00.0008 0x0968  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
13:53:00.0011 0x0968  mctadmin - ok
13:53:00.0090 0x0968  [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe
13:53:00.0115 0x0968  Sidebar - ok
13:53:00.0147 0x0968  EA Core - ok
13:53:00.0618 0x0968  [ C7C42AC946E25EC04BC671516A347FF9, 03DCB98F1764862A0DFC1B3A6CD34BA583DA512E8E4556E891A228832C0F8DE1 ] C:\Users\Grit\AppData\Local\Amazon Music\Amazon Music Helper.exe
13:53:00.0807 0x0968  Amazon Music - ok
13:53:00.0885 0x0968  [ 0BBC382A1946E061634CBD98EC8C44A9, 8FB59784D8816532AFBB9C28023E83748A7D56110B97FACF2374DBF5E9736AD0 ] C:\ProgramData\gaasp-34\gaasp-3.exe
13:53:00.0898 0x0968  gaasp-43 - ok
13:53:00.0965 0x0968  [ FA332D98A1450991B46F387535C59060, 5DE50511F3A0F1F88EE4398A8731E7F3840189750277269420DE6E5E45282879 ] C:\Users\Grit\AppData\Roaming\torque-6\torque-2.exe
13:53:00.0979 0x0968  torque-12 - ok
13:53:00.0980 0x0968  Waiting for KSN requests completion. In queue: 161
13:53:01.0980 0x0968  Have new async UDS detects: 1
13:53:01.0980 0x0968  torque-12 - detected UDS:DangerousObject.Multi.Generic ( 0 )
13:53:02.0039 0x0968  torque-12 ( UDS:DangerousObject.Multi.Generic ) - infected
13:53:02.0039 0x0968  Force sending object to P2P due to detect: C:\Users\Grit\AppData\Roaming\torque-6\torque-2.exe
13:53:02.0231 0x0968  Object send P2P result: true
13:53:02.0328 0x0968  AV detected via SS2: McAfee Anti-Virus und Anti-Spyware, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 15.0.0.0 ), 0x51000 ( enabled : updated )
13:53:02.0329 0x0968  FW detected via SS2: McAfee Firewall, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 15.0.0.0 ), 0x51010 ( enabled )
13:53:02.0687 0x0968  ============================================================
13:53:02.0687 0x0968  Scan finished
13:53:02.0687 0x0968  ============================================================
13:53:02.0692 0x2a2c  Detected object count: 1
13:53:02.0692 0x2a2c  Actual detected object count: 1
13:53:42.0451 0x2a2c  torque-12 ( UDS:DangerousObject.Multi.Generic ) - skipped by user
13:53:42.0451 0x2a2c  torque-12 ( UDS:DangerousObject.Multi.Generic ) - User select action: Skip
         

Alt 05.11.2016, 13:57   #10
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer



Scan bitte wiederholen und die richtigen Parameter setzen. Wie in der Anleitung beschrieben...

__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Alt 05.11.2016, 14:17   #11
TanteKlara
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer



OK, hab ich. Es passt nicht alles rein. Brauchst Du den Rest auch noch? Das ist die txt datei von unten!
Code:
ATTFilter
13:58:55.0537 0x24f8  [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost        C:\Windows\SysWow64\perfhost.exe
13:58:55.0549 0x24f8  PerfHost - ok
13:58:55.0556 0x24f8  pfc - ok
13:58:55.0612 0x24f8  [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla             C:\Windows\system32\pla.dll
13:58:55.0689 0x24f8  pla - ok
13:58:55.0730 0x24f8  [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
13:58:55.0757 0x24f8  PlugPlay - ok
13:58:55.0804 0x24f8  [ 37F6046CDC630442D7DC087501FF6FC6, EFC0F3DA49839CA263CD95AE5015F4FC554D9D845A58A699C542C8C96E70ED3C ] Pml Driver HPZ12 C:\Windows\system32\HPZipm12.dll
13:58:55.0811 0x24f8  Pml Driver HPZ12 - detected UnsignedFile.Multi.Generic ( 1 )
13:58:55.0811 0x24f8  Detect skipped due to KSN trusted
13:58:55.0811 0x24f8  Pml Driver HPZ12 - ok
13:58:55.0827 0x24f8  [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
13:58:55.0838 0x24f8  PNRPAutoReg - ok
13:58:55.0856 0x24f8  [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
13:58:55.0873 0x24f8  PNRPsvc - ok
13:58:55.0915 0x24f8  [ 32D374C60778253B81FA76C2FE19E155, 6BD6B360EAC4F9988921281B52B4B1A29DDD287C6DB18688B4CEA5B1B4F22106 ] Point64         C:\Windows\system32\DRIVERS\point64.sys
13:58:55.0923 0x24f8  Point64 - ok
13:58:55.0974 0x24f8  [ 80D6B0563ED2BF10656B1D4748331082, B7E6B5E1148B7EE537E8D5C3A65450876B61CD45A395267D08699746E98AD574 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
13:58:55.0998 0x24f8  PolicyAgent - ok
13:58:56.0021 0x24f8  [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power           C:\Windows\system32\umpo.dll
13:58:56.0059 0x24f8  Power - ok
13:58:56.0083 0x24f8  [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
13:58:56.0118 0x24f8  PptpMiniport - ok
13:58:56.0138 0x24f8  [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor       C:\Windows\system32\drivers\processr.sys
13:58:56.0150 0x24f8  Processor - ok
13:58:56.0190 0x24f8  [ B6A58491307B4CADA572583D863DC602, 5C44936605E52C9533E4CE22F18FAB8211475877F71EFD88DA4D02FD608C90A3 ] ProfSvc         C:\Windows\system32\profsvc.dll
13:58:56.0218 0x24f8  ProfSvc - ok
13:58:56.0233 0x24f8  [ 13FE29C1C8E782829C7FAA3B14F4A666, C53F7F9039E79AC6D5BDA94981A187570D6C7828930B6064CEFC17DC172EA20E ] ProtectedStorage C:\Windows\system32\lsass.exe
13:58:56.0247 0x24f8  ProtectedStorage - ok
13:58:56.0264 0x24f8  [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
13:58:56.0294 0x24f8  Psched - ok
13:58:56.0360 0x24f8  [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300          C:\Windows\system32\drivers\ql2300.sys
13:58:56.0403 0x24f8  ql2300 - ok
13:58:56.0410 0x24f8  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx          C:\Windows\system32\drivers\ql40xx.sys
13:58:56.0422 0x24f8  ql40xx - ok
13:58:56.0445 0x24f8  [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE           C:\Windows\system32\qwave.dll
13:58:56.0473 0x24f8  QWAVE - ok
13:58:56.0484 0x24f8  [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
13:58:56.0503 0x24f8  QWAVEdrv - ok
13:58:56.0529 0x24f8  [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
13:58:56.0557 0x24f8  RasAcd - ok
13:58:56.0573 0x24f8  [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
13:58:56.0602 0x24f8  RasAgileVpn - ok
13:58:56.0622 0x24f8  [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto         C:\Windows\System32\rasauto.dll
13:58:56.0653 0x24f8  RasAuto - ok
13:58:56.0665 0x24f8  [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
13:58:56.0707 0x24f8  Rasl2tp - ok
13:58:56.0724 0x24f8  [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan          C:\Windows\System32\rasmans.dll
13:58:56.0765 0x24f8  RasMan - ok
13:58:56.0782 0x24f8  [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
13:58:56.0811 0x24f8  RasPppoe - ok
13:58:56.0844 0x24f8  [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
13:58:56.0872 0x24f8  RasSstp - ok
13:58:56.0895 0x24f8  [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
13:58:56.0929 0x24f8  rdbss - ok
13:58:56.0944 0x24f8  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus          C:\Windows\system32\drivers\rdpbus.sys
13:58:56.0959 0x24f8  rdpbus - ok
13:58:56.0975 0x24f8  [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
13:58:57.0005 0x24f8  RDPCDD - ok
13:58:57.0014 0x24f8  [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
13:58:57.0056 0x24f8  RDPENCDD - ok
13:58:57.0062 0x24f8  [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
13:58:57.0091 0x24f8  RDPREFMP - ok
13:58:57.0130 0x24f8  [ FE571E088C2D83619D2D48D4E961BF41, 88C5A2FCB1D0E528657842E39963471A6E42FCA3FCDF37955AEC8258AB4C48EA ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
13:58:57.0160 0x24f8  RDPWD - ok
13:58:57.0184 0x24f8  [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
13:58:57.0198 0x24f8  rdyboost - ok
13:58:57.0251 0x24f8  [ A436F5E7D80BBDBB0826D0F176D5BEA8, 7862CE61F182C7613E34415C01AC1C228F79A45470CFD1D316DF2BD24EE09E3C ] RegSrvc         C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
13:58:57.0285 0x24f8  RegSrvc - ok
13:58:57.0319 0x24f8  [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess    C:\Windows\System32\mprdim.dll
13:58:57.0349 0x24f8  RemoteAccess - ok
13:58:57.0382 0x24f8  [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
13:58:57.0414 0x24f8  RemoteRegistry - ok
13:58:57.0428 0x24f8  [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
13:58:57.0465 0x24f8  RpcEptMapper - ok
13:58:57.0486 0x24f8  [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator      C:\Windows\system32\locator.exe
13:58:57.0500 0x24f8  RpcLocator - ok
13:58:57.0553 0x24f8  [ 622C96AFB07BB82C8650B47172137AC4, B74CEA5A3F4945E5A3EAE7AF1B1FA75F611C65C6FACE393052A512FA81B0C17C ] RpcSs           C:\Windows\system32\rpcss.dll
13:58:57.0588 0x24f8  RpcSs - ok
13:58:57.0620 0x24f8  [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
13:58:57.0668 0x24f8  rspndr - ok
13:58:57.0678 0x24f8  [ 13FE29C1C8E782829C7FAA3B14F4A666, C53F7F9039E79AC6D5BDA94981A187570D6C7828930B6064CEFC17DC172EA20E ] SamSs           C:\Windows\system32\lsass.exe
13:58:57.0691 0x24f8  SamSs - ok
13:58:57.0715 0x24f8  [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
13:58:57.0731 0x24f8  sbp2port - ok
13:58:57.0767 0x24f8  [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
13:58:57.0820 0x24f8  SCardSvr - ok
13:58:57.0850 0x24f8  [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
13:58:57.0892 0x24f8  scfilter - ok
13:58:57.0985 0x24f8  [ 40686B59C127F0C93B4234E4A1E3472A, B2DD61CB796C6AA8AFD285D43472B94646CA6D331D282818E0FDC9DE28DDE9CF ] Schedule        C:\Windows\system32\schedsvc.dll
13:58:58.0046 0x24f8  Schedule - ok
13:58:58.0076 0x24f8  [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc     C:\Windows\System32\certprop.dll
13:58:58.0104 0x24f8  SCPolicySvc - ok
13:58:58.0129 0x24f8  [ 111E0EBC0AD79CB0FA014B907B231CF0, B7D43D156C2524938503CF8E99C4D1F7A5C55E16C0368F57F4CD23C6D833B38F ] sdbus           C:\Windows\system32\DRIVERS\sdbus.sys
13:58:58.0147 0x24f8  sdbus - ok
13:58:58.0172 0x24f8  [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
13:58:58.0203 0x24f8  SDRSVC - ok
13:58:58.0231 0x24f8  [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv          C:\Windows\system32\drivers\secdrv.sys
13:58:58.0265 0x24f8  secdrv - ok
13:58:58.0305 0x24f8  [ A19623BDD61E66A12AB53992002B4F3A, E351CEEC086084A417BA3BD0EEF46114D3147EC38E3EF8BE49B724F9D028CC56 ] seclogon        C:\Windows\system32\seclogon.dll
13:58:58.0338 0x24f8  seclogon - ok
13:58:58.0370 0x24f8  [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS            C:\Windows\System32\sens.dll
13:58:58.0401 0x24f8  SENS - ok
13:58:58.0415 0x24f8  [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc        C:\Windows\system32\sensrsvc.dll
13:58:58.0434 0x24f8  SensrSvc - ok
13:58:58.0447 0x24f8  [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum         C:\Windows\system32\drivers\serenum.sys
13:58:58.0457 0x24f8  Serenum - ok
13:58:58.0485 0x24f8  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial          C:\Windows\system32\drivers\serial.sys
13:58:58.0497 0x24f8  Serial - ok
13:58:58.0509 0x24f8  [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse        C:\Windows\system32\drivers\sermouse.sys
13:58:58.0520 0x24f8  sermouse - ok
13:58:58.0543 0x24f8  [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv      C:\Windows\system32\sessenv.dll
13:58:58.0576 0x24f8  SessionEnv - ok
13:58:58.0600 0x24f8  [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
13:58:58.0613 0x24f8  sffdisk - ok
13:58:58.0623 0x24f8  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
13:58:58.0636 0x24f8  sffp_mmc - ok
13:58:58.0641 0x24f8  [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
13:58:58.0656 0x24f8  sffp_sd - ok
13:58:58.0669 0x24f8  [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy         C:\Windows\system32\drivers\sfloppy.sys
13:58:58.0680 0x24f8  sfloppy - ok
13:58:58.0719 0x24f8  [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess    C:\Windows\System32\ipnathlp.dll
13:58:58.0759 0x24f8  SharedAccess - ok
13:58:58.0782 0x24f8  [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
13:58:58.0829 0x24f8  ShellHWDetection - ok
13:58:58.0855 0x24f8  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2        C:\Windows\system32\drivers\SiSRaid2.sys
13:58:58.0864 0x24f8  SiSRaid2 - ok
13:58:58.0880 0x24f8  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4        C:\Windows\system32\drivers\sisraid4.sys
13:58:58.0892 0x24f8  SiSRaid4 - ok
13:58:58.0937 0x24f8  [ 52F7E8603E888E3DB0A8B3D1804098E9, 4E23DC9442C0C14AAE7146DACBB0B39743F1FFAA463EE7069CCDF866AD27BD77 ] SkypeUpdate     C:\Program Files (x86)\Skype\Updater\Updater.exe
13:58:58.0954 0x24f8  SkypeUpdate - ok
13:58:58.0972 0x24f8  [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
13:58:59.0013 0x24f8  Smb - ok
13:58:59.0036 0x24f8  [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
13:58:59.0055 0x24f8  SNMPTRAP - ok
13:58:59.0058 0x24f8  Soda PDF 6 - ok
13:58:59.0084 0x24f8  [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr           C:\Windows\system32\drivers\spldr.sys
13:58:59.0092 0x24f8  spldr - ok
13:58:59.0145 0x24f8  [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler         C:\Windows\System32\spoolsv.exe
13:58:59.0170 0x24f8  Spooler - ok
13:58:59.0296 0x24f8  [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc          C:\Windows\system32\sppsvc.exe
13:58:59.0440 0x24f8  sppsvc - ok
13:58:59.0456 0x24f8  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify     C:\Windows\system32\sppuinotify.dll
13:58:59.0488 0x24f8  sppuinotify - ok
13:58:59.0541 0x24f8  [ F2F4B895296EE3ECCE781CC2A296A5D1, 126321EDDA8141A42DBE7C90675948433063E6D5B6DEFD805AA0797C95A461EE ] srv             C:\Windows\system32\DRIVERS\srv.sys
13:58:59.0577 0x24f8  srv - ok
13:58:59.0612 0x24f8  [ FD0008BEDD2723170CCA7D61837DFD52, F9F576FA7B84CAB5180B9080D62B8A00B3E5D5BC73199B11C63193742529227D ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
13:58:59.0632 0x24f8  srv2 - ok
13:58:59.0663 0x24f8  [ 63B5845D9379262083655D5C6AB8DFC5, 1813D2FC41ADCDAC6E3A522373B9DB934CC27B89E7185E0E4FC26E30CDAF1523 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
13:58:59.0677 0x24f8  srvnet - ok
13:58:59.0705 0x24f8  [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
13:58:59.0740 0x24f8  SSDPSRV - ok
13:58:59.0750 0x24f8  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc         C:\Windows\system32\sstpsvc.dll
13:58:59.0782 0x24f8  SstpSvc - ok
13:58:59.0810 0x24f8  [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor        C:\Windows\system32\drivers\stexstor.sys
13:58:59.0823 0x24f8  stexstor - ok
13:58:59.0857 0x24f8  [ DECACB6921DED1A38642642685D77DAC, 1633711CE973F818EBCCCA28538772431167C33ECDD44D1E846A9436598B52DC ] StillCam        C:\Windows\system32\drivers\serscan.sys
13:58:59.0874 0x24f8  StillCam - ok
13:58:59.0906 0x24f8  [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc          C:\Windows\System32\wiaservc.dll
13:58:59.0937 0x24f8  stisvc - ok
13:58:59.0964 0x24f8  [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum          C:\Windows\system32\drivers\swenum.sys
13:58:59.0975 0x24f8  swenum - ok
13:59:00.0009 0x24f8  [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv           C:\Windows\System32\swprv.dll
13:59:00.0064 0x24f8  swprv - ok
13:59:00.0176 0x24f8  [ 2E730941CC5BF6200A4F56D1E9C24AAD, 758836D55DC84F3EBE9917DC6FAB8E6170A5B238FEDBCFDB6D7C5C6EA98E08B2 ] SysMain         C:\Windows\system32\sysmain.dll
13:59:00.0265 0x24f8  SysMain - ok
13:59:00.0298 0x24f8  [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll
13:59:00.0326 0x24f8  TabletInputService - ok
13:59:00.0374 0x24f8  [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv         C:\Windows\System32\tapisrv.dll
13:59:00.0424 0x24f8  TapiSrv - ok
13:59:00.0519 0x24f8  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
13:59:00.0567 0x24f8  Tcpip - ok
13:59:00.0615 0x24f8  [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
13:59:00.0662 0x24f8  TCPIP6 - ok
13:59:00.0694 0x24f8  [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
13:59:00.0705 0x24f8  tcpipreg - ok
13:59:00.0728 0x24f8  [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
13:59:00.0752 0x24f8  TDPIPE - ok
13:59:00.0788 0x24f8  [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
13:59:00.0797 0x24f8  TDTCP - ok
13:59:00.0833 0x24f8  [ AA77EB517D2F07A947294F260E3ACA83, B7A5DF3066830C0C2302B059778A67419792058A0D300C471DE40AB245EA7E58 ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
13:59:00.0845 0x24f8  tdx - ok
13:59:00.0871 0x24f8  [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD          C:\Windows\system32\drivers\termdd.sys
13:59:00.0881 0x24f8  TermDD - ok
13:59:00.0932 0x24f8  [ 008CD4EBFABCF78D0F19B3778492648C, 9050490EEE0AD86E73F0A82D83E4FC29DF84F6B6FDB389AE135FD712B5F425BE ] TermService     C:\Windows\System32\termsrv.dll
13:59:00.0972 0x24f8  TermService - ok
13:59:00.0995 0x24f8  [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes          C:\Windows\system32\themeservice.dll
13:59:01.0011 0x24f8  Themes - ok
13:59:01.0039 0x24f8  [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER     C:\Windows\system32\mmcss.dll
13:59:01.0069 0x24f8  THREADORDER - ok
13:59:01.0089 0x24f8  [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks          C:\Windows\System32\trkwks.dll
13:59:01.0133 0x24f8  TrkWks - ok
13:59:01.0238 0x24f8  [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
13:59:01.0270 0x24f8  TrustedInstaller - ok
13:59:01.0305 0x24f8  [ E232A3B43A894BB327FC161529BD9ED1, F2673DA8C920F21ACCECC25F7C59A05822E5E577D47F126EDF9C94FEB4B30C5F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
13:59:01.0316 0x24f8  tssecsrv - ok
13:59:01.0346 0x24f8  [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
13:59:01.0387 0x24f8  TsUsbFlt - ok
13:59:01.0413 0x24f8  [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD         C:\Windows\system32\drivers\TsUsbGD.sys
13:59:01.0433 0x24f8  TsUsbGD - ok
13:59:01.0455 0x24f8  [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
13:59:01.0486 0x24f8  tunnel - ok
13:59:01.0504 0x24f8  [ FD24F98D2898BE093FE926604BE7DB99, F9851C57A2ED838AC76BB19FE2F62BB81C57DBBE2A2555F738B5D6725D39AD61 ] TurboB          C:\Windows\system32\DRIVERS\TurboB.sys
13:59:01.0514 0x24f8  TurboB - ok
13:59:01.0563 0x24f8  [ 600B406A04D90F577FEA8A88D7379F08, 77CC8E8AFB6F571A42D916C0B2FEFFD3A7A32A455C78228B407C6C9B6DED8CAD ] TurboBoost      C:\Program Files\Intel\TurboBoost\TurboBoost.exe
13:59:01.0575 0x24f8  TurboBoost - ok
13:59:01.0595 0x24f8  [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35          C:\Windows\system32\drivers\uagp35.sys
13:59:01.0607 0x24f8  uagp35 - ok
13:59:01.0630 0x24f8  [ A17D5E1A6DF4EAB0A480F2C490DE4C9D, 1EA835F172B6BF3D7F496E079DF1CDF00122B2110C08D61427582BC9405D2B7B ] UBHelper        C:\Windows\system32\drivers\UBHelper.sys
13:59:01.0638 0x24f8  UBHelper - ok
13:59:01.0661 0x24f8  [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
13:59:01.0701 0x24f8  udfs - ok
13:59:01.0727 0x24f8  [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect       C:\Windows\system32\UI0Detect.exe
13:59:01.0739 0x24f8  UI0Detect - ok
13:59:01.0748 0x24f8  [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
13:59:01.0761 0x24f8  uliagpkx - ok
13:59:01.0787 0x24f8  [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus           C:\Windows\system32\DRIVERS\umbus.sys
13:59:01.0798 0x24f8  umbus - ok
13:59:01.0815 0x24f8  [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass          C:\Windows\system32\drivers\umpass.sys
13:59:01.0826 0x24f8  UmPass - ok
13:59:01.0946 0x24f8  [ 758C2CE427C343F780A205E28555C98D, E3413BA433CD26DD61D3257B08B8354478A049A972EFAC53C303690BC71DD7E1 ] UNS             C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
13:59:02.0029 0x24f8  UNS - ok
13:59:02.0072 0x24f8  [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost        C:\Windows\System32\upnphost.dll
13:59:02.0110 0x24f8  upnphost - ok
13:59:02.0147 0x24f8  [ C9E9D59C0099A9FF51697E9306A44240, 78D9A7A5E5742962B6978F475BF06CB32262F1D214699D3D40538476A58012A1 ] USBAAPL64       C:\Windows\system32\Drivers\usbaapl64.sys
13:59:02.0175 0x24f8  USBAAPL64 - ok
13:59:02.0193 0x24f8  [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
13:59:02.0214 0x24f8  usbccgp - ok
13:59:02.0250 0x24f8  [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir          C:\Windows\system32\drivers\usbcir.sys
13:59:02.0276 0x24f8  usbcir - ok
13:59:02.0297 0x24f8  [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci         C:\Windows\system32\drivers\usbehci.sys
13:59:02.0308 0x24f8  usbehci - ok
13:59:02.0333 0x24f8  [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
13:59:02.0351 0x24f8  usbhub - ok
13:59:02.0361 0x24f8  [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci         C:\Windows\system32\drivers\usbohci.sys
13:59:02.0372 0x24f8  usbohci - ok
13:59:02.0395 0x24f8  [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
13:59:02.0410 0x24f8  usbprint - ok
13:59:02.0442 0x24f8  [ 9661DA76B4531B2DA272ECCE25A8AF24, FEA93254A21E71A7EB8AD35FCCAD2C1E41F7329EC33B1734F5B41307A34D8637 ] usbscan         C:\Windows\system32\DRIVERS\usbscan.sys
13:59:02.0452 0x24f8  usbscan - ok
13:59:02.0494 0x24f8  [ D029DD09E22EB24318A8FC3D8138BA43, C95805E8BF75ECB939520AE86420B16467B0771C161C51C9F1A37649ADFADCD0 ] USBSTOR         C:\Windows\system32\DRIVERS\USBSTOR.SYS
13:59:02.0523 0x24f8  USBSTOR - ok
13:59:02.0550 0x24f8  [ DD253AFC3BC6CBA412342DE60C3647F3, 146F8613F1057AC054DC3593E84BC52899DA27EA33B0E72ACFB78C3699ADCDE7 ] usbuhci         C:\Windows\system32\drivers\usbuhci.sys
13:59:02.0560 0x24f8  usbuhci - ok
13:59:02.0602 0x24f8  [ 1F775DA4CF1A3A1834207E975A72E9D7, 6D3DE5BD3EF3A76E997E5BAF900C51D25308F5A9682D1F62017F577A24095B90 ] usbvideo        C:\Windows\System32\Drivers\usbvideo.sys
13:59:02.0626 0x24f8  usbvideo - ok
13:59:02.0644 0x24f8  [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms           C:\Windows\System32\uxsms.dll
13:59:02.0690 0x24f8  UxSms - ok
13:59:02.0711 0x24f8  [ 13FE29C1C8E782829C7FAA3B14F4A666, C53F7F9039E79AC6D5BDA94981A187570D6C7828930B6064CEFC17DC172EA20E ] VaultSvc        C:\Windows\system32\lsass.exe
13:59:02.0728 0x24f8  VaultSvc - ok
13:59:02.0766 0x24f8  [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
13:59:02.0780 0x24f8  vdrvroot - ok
13:59:02.0809 0x24f8  [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds             C:\Windows\System32\vds.exe
13:59:02.0864 0x24f8  vds - ok
13:59:02.0884 0x24f8  [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
13:59:02.0904 0x24f8  vga - ok
13:59:02.0926 0x24f8  [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave         C:\Windows\System32\drivers\vga.sys
13:59:02.0971 0x24f8  VgaSave - ok
13:59:03.0003 0x24f8  [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
13:59:03.0023 0x24f8  vhdmp - ok
13:59:03.0053 0x24f8  [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide          C:\Windows\system32\drivers\viaide.sys
13:59:03.0062 0x24f8  viaide - ok
13:59:03.0088 0x24f8  [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
13:59:03.0098 0x24f8  volmgr - ok
13:59:03.0117 0x24f8  [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
13:59:03.0133 0x24f8  volmgrx - ok
13:59:03.0153 0x24f8  [ 0D08D2F3B3FF84E433346669B5E0F639, 3D6716CEC95B8861A7CC5778E91F310528DC6BEE0E57A3C8757FC675154EBDEC ] volsnap         C:\Windows\system32\drivers\volsnap.sys
13:59:03.0170 0x24f8  volsnap - ok
13:59:03.0202 0x24f8  [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid         C:\Windows\system32\drivers\vsmraid.sys
13:59:03.0214 0x24f8  vsmraid - ok
13:59:03.0283 0x24f8  [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS             C:\Windows\system32\vssvc.exe
13:59:03.0352 0x24f8  VSS - ok
13:59:03.0512 0x24f8  [ EAD689064377AED746B6981BAFB83749, 0C51173DB295F10B5778020AD50A349631B089B00856A41B018B84211E10C939 ] vToolbarUpdater19.5.0 C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\19.5.0\ToolbarUpdater.exe
13:59:03.0553 0x24f8  vToolbarUpdater19.5.0 - ok
13:59:03.0574 0x24f8  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
13:59:03.0586 0x24f8  vwifibus - ok
13:59:03.0594 0x24f8  [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
13:59:03.0612 0x24f8  vwififlt - ok
13:59:03.0619 0x24f8  [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp         C:\Windows\system32\DRIVERS\vwifimp.sys
13:59:03.0633 0x24f8  vwifimp - ok
13:59:03.0674 0x24f8  [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time         C:\Windows\system32\w32time.dll
13:59:03.0732 0x24f8  W32Time - ok
13:59:03.0757 0x24f8  [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen        C:\Windows\system32\drivers\wacompen.sys
13:59:03.0767 0x24f8  WacomPen - ok
13:59:03.0783 0x24f8  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
13:59:03.0813 0x24f8  WANARP - ok
13:59:03.0819 0x24f8  [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
13:59:03.0863 0x24f8  Wanarpv6 - ok
13:59:03.0939 0x24f8  [ 3CEC96DE223E49EAAE3651FCF8FAEA6C, 4150DAB33E8D61076F1D4767BCAFC9B4ECCCCBD58FD4FB3CFE5B8D27DCDCAB61 ] WatAdminSvc     C:\Windows\system32\Wat\WatAdminSvc.exe
13:59:03.0984 0x24f8  WatAdminSvc - ok
13:59:04.0058 0x24f8  [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine        C:\Windows\system32\wbengine.exe
13:59:04.0118 0x24f8  wbengine - ok
13:59:04.0139 0x24f8  [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
13:59:04.0164 0x24f8  WbioSrvc - ok
13:59:04.0193 0x24f8  [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc         C:\Windows\System32\wcncsvc.dll
13:59:04.0231 0x24f8  wcncsvc - ok
13:59:04.0250 0x24f8  [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
13:59:04.0269 0x24f8  WcsPlugInService - ok
13:59:04.0293 0x24f8  [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd              C:\Windows\system32\drivers\wd.sys
13:59:04.0305 0x24f8  Wd - ok
13:59:04.0357 0x24f8  [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
13:59:04.0394 0x24f8  Wdf01000 - ok
13:59:04.0422 0x24f8  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiServiceHost  C:\Windows\system32\wdi.dll
13:59:04.0452 0x24f8  WdiServiceHost - ok
13:59:04.0460 0x24f8  [ C6F7473B55510F0B93961DA03D8E3B38, 4BAB9274DED8F7AC4A52B8739F501323FFFA0367CAA24BFAFDB5523812E0CE39 ] WdiSystemHost   C:\Windows\system32\wdi.dll
13:59:04.0481 0x24f8  WdiSystemHost - ok
13:59:04.0531 0x24f8  [ 4E89FC53493704BF835F0300DC201C34, FB3080725E144D93512DED81047D21C0582BC3412250EFF37E039108D7351F53 ] WebClient       C:\Windows\System32\webclnt.dll
13:59:04.0568 0x24f8  WebClient - ok
13:59:04.0609 0x24f8  [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc          C:\Windows\system32\wecsvc.dll
13:59:04.0652 0x24f8  Wecsvc - ok
13:59:04.0668 0x24f8  [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
13:59:04.0709 0x24f8  wercplsupport - ok
13:59:04.0724 0x24f8  [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc          C:\Windows\System32\WerSvc.dll
13:59:04.0787 0x24f8  WerSvc - ok
13:59:04.0813 0x24f8  [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
13:59:04.0856 0x24f8  WfpLwf - ok
13:59:04.0868 0x24f8  [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
13:59:04.0880 0x24f8  WIMMount - ok
13:59:04.0901 0x24f8  WinDefend - ok
13:59:04.0908 0x24f8  WinHttpAutoProxySvc - ok
13:59:04.0974 0x24f8  [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
13:59:05.0029 0x24f8  Winmgmt - ok
13:59:05.0136 0x24f8  [ D929ABD465A2DED963DA8B30946A8D5C, DE8DBFB01C11D2AE903CBD6A974D6F995E9813CE2D6484B7DA06EAE4C545842A ] WinRM           C:\Windows\system32\WsmSvc.dll
13:59:05.0261 0x24f8  WinRM - ok
13:59:05.0311 0x24f8  [ FE88B288356E7B47B74B13372ADD906D, A16B166F6BB32EF9D2A142F27B9EC54CBC7B3AC915799783CF4C40E525BC9E03 ] WinUsb          C:\Windows\system32\drivers\WinUsb.sys
13:59:05.0329 0x24f8  WinUsb - ok
13:59:05.0417 0x24f8  [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc         C:\Windows\System32\wlansvc.dll
13:59:05.0463 0x24f8  Wlansvc - ok
13:59:05.0504 0x24f8  [ 06C8FA1CF39DE6A735B54D906BA791C6, D8FEC7DE227781CDA876904701B2AA995268F74DCD6CB34AA0296C557FC283B6 ] wlcrasvc        C:\Program Files\Windows Live\Mesh\wlcrasvc.exe
13:59:05.0515 0x24f8  wlcrasvc - ok
13:59:05.0623 0x24f8  [ 2BACD71123F42CEA603F4E205E1AE337, 1FEF20554110371D738F462ECFFA999158EFEED02062414C58C1B61C422BF0B9 ] wlidsvc         C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
13:59:05.0701 0x24f8  wlidsvc - ok
13:59:05.0734 0x24f8  [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi         C:\Windows\system32\DRIVERS\wmiacpi.sys
13:59:05.0763 0x24f8  WmiAcpi - ok
13:59:05.0799 0x24f8  [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
13:59:05.0821 0x24f8  wmiApSrv - ok
13:59:05.0849 0x24f8  WMPNetworkSvc - ok
13:59:05.0878 0x24f8  [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc          C:\Windows\System32\wpcsvc.dll
13:59:05.0905 0x24f8  WPCSvc - ok
13:59:05.0926 0x24f8  [ 93221146D4EBBF314C29B23CD6CC391D, C0750858A65BF51E210CD244C825C121D67E025CD2D2455139991AAC289A90FE ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
13:59:05.0946 0x24f8  WPDBusEnum - ok
13:59:05.0968 0x24f8  [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
13:59:06.0002 0x24f8  ws2ifsl - ok
13:59:06.0037 0x24f8  [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc          C:\Windows\System32\wscsvc.dll
13:59:06.0068 0x24f8  wscsvc - ok
13:59:06.0100 0x24f8  [ 8D918B1DB190A4D9B1753A66FA8C96E8, DB7D2714DC04D2D6999A207D7399A5647C8653E5A1AD80856A65C5B6065AEDFE ] WSDPrintDevice  C:\Windows\system32\DRIVERS\WSDPrint.sys
13:59:06.0117 0x24f8  WSDPrintDevice - ok
13:59:06.0121 0x24f8  WSearch - ok
13:59:06.0255 0x24f8  [ 86F11B85102AFA6A1A6101DCE2F09386, 68A0F0E628C8F33FDAC114876DA8ED14776DD74E80AC5A6A52257E19DE011091 ] wuauserv        C:\Windows\system32\wuaueng.dll
13:59:06.0391 0x24f8  wuauserv - ok
13:59:06.0431 0x24f8  [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
13:59:06.0464 0x24f8  WudfPf - ok
13:59:06.0492 0x24f8  [ DDA4CAF29D8C0A297F886BFE561E6659, 94E5DD649B5D86FA1A7C7D30FCF9644D0EE048D312E626111458ADF66BFBE978 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
13:59:06.0510 0x24f8  WUDFRd - ok
13:59:06.0549 0x24f8  [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
13:59:06.0564 0x24f8  wudfsvc - ok
13:59:06.0603 0x24f8  [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc         C:\Windows\System32\wwansvc.dll
13:59:06.0631 0x24f8  WwanSvc - ok
13:59:06.0651 0x24f8  ================ Scan global ===============================
13:59:06.0686 0x24f8  [ 168EA9CD9BD6056BB6F60B57D5304BBE, 5A2F98754F042A7D80E7483842967EB362F01D57CE9720B24C7EDAA047F24C6F ] C:\Windows\system32\basesrv.dll
13:59:06.0722 0x24f8  [ E0E4D286839FC27F56A85B4710E16B6B, 6BBBADB8904D6159E6171A339E0BF30A41D14E885D560BFB8BB73B1FF7239E1A ] C:\Windows\system32\winsrv.dll
13:59:06.0734 0x24f8  [ E0E4D286839FC27F56A85B4710E16B6B, 6BBBADB8904D6159E6171A339E0BF30A41D14E885D560BFB8BB73B1FF7239E1A ] C:\Windows\system32\winsrv.dll
13:59:06.0768 0x24f8  [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll
13:59:06.0820 0x24f8  [ 71C85477DF9347FE8E7BC55768473FCA, A86D6A6D1F5A0EFCD649792A06F3AE9B37158D48493D2ECA7F52DCC1CB9B6536 ] C:\Windows\system32\services.exe
13:59:06.0827 0x24f8  [ Global ] - ok
13:59:06.0828 0x24f8  ================ Scan MBR ==================================
13:59:06.0842 0x24f8  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
13:59:07.0174 0x24f8  \Device\Harddisk0\DR0 - ok
13:59:07.0175 0x24f8  ================ Scan VBR ==================================
13:59:07.0203 0x24f8  [ B7F98197AA8E91EDC599FF5B7EF93065 ] \Device\Harddisk0\DR0\Partition1
13:59:07.0205 0x24f8  \Device\Harddisk0\DR0\Partition1 - ok
13:59:07.0219 0x24f8  [ 0441F0DA25B4E39B24D47E90D0A7DC93 ] \Device\Harddisk0\DR0\Partition2
13:59:07.0221 0x24f8  \Device\Harddisk0\DR0\Partition2 - ok
13:59:07.0221 0x24f8  ================ Scan generic autorun ======================
13:59:07.0247 0x24f8  [ BA9E8BF3E91C14DE99FDB1FA946D07AF, 9C3F5F52EE5B8D02B15EE18AA492FB110547A8DCDA3F8284A614F4E1A30F9BB1 ] C:\Windows\system32\igfxtray.exe
13:59:07.0259 0x24f8  IgfxTray - ok
13:59:07.0270 0x24f8  [ B20857C91A3E992A5AC93D8625C53CAE, ECB89856B267E2F4930CB7B404B51425C6375A47F864577C1A7B8B255278EC12 ] C:\Windows\system32\hkcmd.exe
13:59:07.0287 0x24f8  HotKeysCmds - ok
13:59:07.0300 0x24f8  [ 29E120E36791B2E620CC398847C28E12, 7C2904FEDD50F49447FD091D33BB3BFA5A2A684101ADB123BC2C08699320B912 ] C:\Windows\system32\igfxpers.exe
13:59:07.0320 0x24f8  Persistence - ok
13:59:07.0322 0x24f8  IntelTBRunOnce - ok
13:59:07.0406 0x24f8  [ 6A94CD69E9C2BD1864096AB0B16660E6, E22F3C432F104AD25512D1F97526D772D50BE0FC7910FFF12335F4ECC0EEE184 ] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
13:59:07.0453 0x24f8  IntelPAN - ok
13:59:07.0456 0x24f8  ETDCtrl - ok
13:59:07.0829 0x24f8  [ 2D0838648D185E0B475E83AB1864F403, 3607D775E23C574CDEC6FA32A90114297BB914AAB5CEB9679B36FFFE484F527D ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
13:59:08.0077 0x24f8  RtHDVCpl - ok
13:59:08.0165 0x24f8  [ 7586ACA6DBFBDCD5EBC1776486D53AA4, 1DA51BE57CB6DDCB9DAEA337802DEEE729D56C2548B2BB8909D7FA007A68BBFB ] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
13:59:08.0216 0x24f8  RtHDVBg - ok
13:59:08.0330 0x24f8  [ F0474296AC4E0E6BDE733C1B8513E41A, 2E54894FC1B422F0C520D11166204926D3994A3440037D655C73D66D7118859C ] C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
13:59:08.0375 0x24f8  Power Management - ok
13:59:08.0492 0x24f8  [ 9843083FA1E4A655195DF4D7A687C576, 83BFC1F2C594C8BE2D775022ACDF2047A73DC7DE03E1207D90062EC7A3F38FEE ] c:\Program Files\Microsoft Device Center\itype.exe
13:59:08.0534 0x24f8  IntelliType Pro - ok
13:59:08.0604 0x24f8  [ 770FF1850E70B98777F5978FC8FD5D57, 98DF428740363EB61199798CBA88C9472C429AE97E05E1ACC7D920BF81D19BE3 ] c:\Program Files\Microsoft Device Center\ipoint.exe
13:59:08.0656 0x24f8  IntelliPoint - ok
13:59:08.0697 0x24f8  [ 4A80B3C030178E65CF0BECFF1BB20905, EBBB74B0597D1884D279C77248A818A6D9300DDE06BCE498945B82715ABE0196 ] C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe
13:59:08.0712 0x24f8  SuiteTray - ok
13:59:08.0783 0x24f8  [ D3E69D500466C17498AAF7F83D12FFF0, F5723FC28396489EADDDCAD67A0E46B56D859590823E3CFA7254BA6709DC5AE6 ] C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
13:59:08.0818 0x24f8  Norton Online Backup - ok
13:59:08.0856 0x24f8  [ 0D360F06B168A6F37ACA9D9F958245DA, 0F37D510AE0A31503A359F65D5C04CD798B178A3A3E2601DFBAB6534B3C7C23C ] C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
13:59:08.0868 0x24f8  BackupManagerTray - ok
13:59:08.0935 0x24f8  [ 9ABC4E3B00CFA3A47D5569F5B49FE42F, 5D33CCE770BC9BC3AFA544A21F100A7F1E5A36577FDB30884160AC4BFE6A1838 ] C:\Program Files (x86)\Launch Manager\LManager.exe
13:59:08.0970 0x24f8  LManager - ok
13:59:09.0006 0x24f8  [ 9D51EA92A612B37E76E5E4621650C50A, 00BD61C8527A80C0F684882379A0AC2E5A54E8BBECC797087B960CDC8454C373 ] C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
13:59:09.0016 0x24f8  NUSB3MON - ok
13:59:09.0059 0x24f8  [ 14017E1CE1583C2C26F69C5BC3D4DBD0, 1D17EC0FF6DF5AF44C82EA6C6806CC940121BC93439D87C5442D7EEEFFA39E3A ] C:\Dolby PCEE4\pcee4.exe
13:59:09.0084 0x24f8  Dolby Advanced Audio v2 - ok
13:59:09.0132 0x24f8  [ 41D4102A550711871BB2DC49EA03CA7B, B8EE41B392D0614FE53174AF3014CE863902B29051397734EADEF858478B23A4 ] C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe
13:59:09.0142 0x24f8  ArcadeMovieService - ok
13:59:09.0193 0x24f8  [ EB6299B13573433744A6582966F760C7, 3D2FE7AB8533331566D449F9DD8FEC4B03C6E341E82D651DD778BDF8B0AEE663 ] C:\Program Files (x86)\Common Files\ACD Systems\DE\DevDetect.exe
13:59:09.0203 0x24f8  Device Detector - detected UnsignedFile.Multi.Generic ( 1 )
13:59:09.0203 0x24f8  Detect skipped due to KSN trusted
13:59:09.0203 0x24f8  Device Detector - ok
13:59:09.0286 0x24f8  [ 187F4C75A89E3F412322C94526320074, D78FA7EF93C8C7B4326A5B6DB04A92ADD091DF00658FA8731D07C5D3BE29ED04 ] C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe
13:59:09.0296 0x24f8  BCSSync - ok
13:59:09.0365 0x24f8  [ 21293443961A4E2597453EE7A9347F22, FDA88181C975C251E56D5A38E5473F45B9CB4E1258A6E93320D34D656AB1E6ED ] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
13:59:09.0374 0x24f8  HP Software Update - ok
13:59:09.0376 0x24f8  {10EC57A6-43AE-4F4E-8920-BEAE840CB099} - ok
13:59:09.0452 0x24f8  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
13:59:09.0494 0x24f8  Sidebar - ok
13:59:09.0528 0x24f8  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
13:59:09.0546 0x24f8  mctadmin - ok
13:59:09.0548 0x24f8  IsMyWinLockerReboot - ok
13:59:09.0601 0x24f8  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
13:59:09.0634 0x24f8  Sidebar - ok
13:59:09.0650 0x24f8  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
13:59:09.0666 0x24f8  mctadmin - ok
13:59:09.0668 0x24f8  IsMyWinLockerReboot - ok
13:59:09.0718 0x24f8  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe
13:59:09.0752 0x24f8  Sidebar - ok
13:59:09.0773 0x24f8  [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe
13:59:09.0788 0x24f8  mctadmin - ok
13:59:09.0870 0x24f8  [ E3BF29CED96790CDAAFA981FFDDF53A3, 76CB27EF7B27E5636EDA9D95229519B2A2870729A0BB694F1FD11CD602BAC4DC ] C:\Program Files\Windows Sidebar\sidebar.exe
13:59:09.0929 0x24f8  Sidebar - ok
13:59:09.0949 0x24f8  EA Core - ok
13:59:10.0254 0x24f8  [ C7C42AC946E25EC04BC671516A347FF9, 03DCB98F1764862A0DFC1B3A6CD34BA583DA512E8E4556E891A228832C0F8DE1 ] C:\Users\Grit\AppData\Local\Amazon Music\Amazon Music Helper.exe
13:59:10.0405 0x24f8  Amazon Music - ok
13:59:10.0486 0x24f8  [ 0BBC382A1946E061634CBD98EC8C44A9, 8FB59784D8816532AFBB9C28023E83748A7D56110B97FACF2374DBF5E9736AD0 ] C:\ProgramData\gaasp-34\gaasp-3.exe
13:59:10.0524 0x24f8  gaasp-43 - detected UnsignedFile.Multi.Generic ( 1 )
13:59:10.0524 0x24f8  gaasp-43 ( UnsignedFile.Multi.Generic ) - warning
13:59:10.0524 0x24f8  Force sending object to P2P due to detect: C:\ProgramData\gaasp-34\gaasp-3.exe
13:59:10.0718 0x24f8  Object send P2P result: true
13:59:11.0255 0x24f8  [ FA332D98A1450991B46F387535C59060, 5DE50511F3A0F1F88EE4398A8731E7F3840189750277269420DE6E5E45282879 ] C:\Users\Grit\AppData\Roaming\torque-6\torque-2.exe
13:59:11.0291 0x24f8  torque-12 - detected UnsignedFile.Multi.Generic ( 1 )
13:59:11.0291 0x24f8  Detect turned to UDS exact due to KSN untrusted
13:59:11.0291 0x24f8  torque-12 ( UDS:DangerousObject.Multi.Generic ) - infected
13:59:11.0291 0x24f8  Force sending object to P2P due to detect: C:\Users\Grit\AppData\Roaming\torque-6\torque-2.exe
13:59:11.0547 0x24f8  Object send P2P result: true
13:59:11.0804 0x24f8  AV detected via SS2: McAfee Anti-Virus und Anti-Spyware, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 15.0.0.0 ), 0x51000 ( enabled : updated )
13:59:11.0806 0x24f8  FW detected via SS2: McAfee Firewall, C:\Program Files\McAfee.com\Agent\mcupdate.exe ( 15.0.0.0 ), 0x51010 ( enabled )
13:59:11.0948 0x24f8  ============================================================
13:59:11.0948 0x24f8  Scan finished
13:59:11.0948 0x24f8  ============================================================
13:59:11.0953 0x2bf0  Detected object count: 2
13:59:11.0953 0x2bf0  Actual detected object count: 2
14:02:05.0754 0x2bf0  gaasp-43 ( UnsignedFile.Multi.Generic ) - skipped by user
14:02:05.0754 0x2bf0  gaasp-43 ( UnsignedFile.Multi.Generic ) - User select action: Skip 
14:02:05.0755 0x2bf0  torque-12 ( UDS:DangerousObject.Multi.Generic ) - skipped by user
14:02:05.0755 0x2bf0  torque-12 ( UDS:DangerousObject.Multi.Generic ) - User select action: Skip
         

Alt 05.11.2016, 14:23   #12
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer



Nö, passt soweit. Weitere Anweisungen kommen gleich...
__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Alt 05.11.2016, 15:02   #13
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer



Schritt 1

Lade dir die passende Version von SystemLook vom folgenden Spiegel herunter und speichere das Tool auf dem Desktop:
SystemLook (32 bit) | SystemLook (64 bit)
  • Doppelklicke auf die SystemLook.exe, um das Tool zu starten.
  • Kopiere den Inhalt der folgenden Codebox in das Textfeld des Tools:

    Code:
    ATTFilter
    :dir
    %ProgramData% /n*.exe /t5 /md5
    %Appdata% /n*.exe /t5 /md5
    %LocalAppdata% /n*.exe /t5 /md5
    %TEMP% /n*.exe /t5 /md5
             
  • Klicke nun auf den Button Look, um den Scan zu starten.
  • Der Suchlauf kann einige Zeit dauern.
  • Wenn der Suchlauf beendet ist, wird sich dein Editor mit den Ergebnissen öffnen, poste diese in deinen Thread.
  • Die Ergebnisse werden auch auf dem Desktop als SystemLook.txt gespeichert.

__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Alt 05.11.2016, 15:31   #14
TanteKlara
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer



Code:
ATTFilter
SystemLook 30.07.11 by jpshortstuff
Log created at 15:29 on 05/11/2016 by Grit
Administrator - Elevation successful

========== dir ==========

C:\ProgramData - Parameters: "/n*.exe /t5 /md5"

---Files---
None found.

---Folders---
34BE82C4-E596-4e99-A191-52C6199EBF69	d------	[20:16 27/02/2014]
AAV	d------	[21:17 07/02/2012]
ACD Systems	d------	[17:03 30/12/2011]
Acer	d------	[08:36 12/08/2011]
Adobe	d------	[08:53 12/08/2011]
Anwendungsdaten	d--hs--	[16:20 11/11/2011]
Apple	d------	[20:26 12/07/2013]
Apple Computer	d------	[20:34 12/07/2013]
Application Data	d--hs--	[05:08 14/07/2009]
Ask	d------	[15:43 12/06/2013]
AVG Secure Search	d------	[15:15 10/06/2014]
Babylon	d------	[19:27 27/03/2012]
BackupManager	d------	[08:55 12/08/2011]
baseband-74	d------	[08:25 05/11/2016]
clear.fi	d------	[14:35 12/11/2011]
CLSK	d------	[12:31 12/09/2011]
Common Files	d--h---	[15:13 10/06/2014]
CyberLink	d------	[12:30 12/09/2011]
Desktop	d--hs--	[05:08 14/07/2009]
Documents	d--hs--	[05:08 14/07/2009]
Dokumente	d--hs--	[16:20 11/11/2011]
EgisTec	d------	[12:04 12/09/2011]
EgisTec IPS	d------	[08:50 12/08/2011]
Electronic Arts	d------	[16:24 27/01/2013]
Favoriten	d--hs--	[16:20 11/11/2011]
Favorites	d--hs--	[05:08 14/07/2009]
FileCure	d------	[04:50 26/06/2014]
FLEXnet	d------	[12:26 12/09/2011]
Google	d------	[20:03 21/11/2013]
hdg	d------	[14:44 04/11/2016]
HP	d------	[19:03 01/03/2012]
HP Product Assistant	d------	[14:17 24/06/2012]
hps	d------	[19:21 07/05/2013]
Intel	d------	[12:04 12/09/2011]
Intel Security	d------	[18:47 23/02/2016]
Macrovision	d------	[16:41 30/12/2011]
McAfee	d------	[08:34 12/08/2011]
McAfee Security Scan	d------	[12:21 29/04/2015]
Microsoft	d---s--	[03:20 14/07/2009]
Microsoft Help	d------	[15:12 12/11/2011]
newsXpresso	d------	[08:59 12/08/2011]
NTI Launcher	d------	[12:27 12/09/2011]
NVIDIA	d------	[12:06 12/09/2011]
NVIDIA Corporation	d------	[12:05 12/09/2011]
oem	d------	[08:52 12/08/2011]
Origin	d------	[16:43 27/01/2013]
parallel-30	d------	[13:43 05/11/2016]
ParetoLogic	d------	[04:50 26/06/2014]
Roaming	d------	[12:12 12/09/2011]
Skype	d------	[08:34 12/08/2011]
Soda PDF 6	d------	[15:12 10/06/2014]
Start Menu	d--hs--	[05:08 14/07/2009]
Startmenü	d--hs--	[16:20 11/11/2011]
Sun	d------	[19:27 04/04/2013]
Symantec	d------	[08:52 12/08/2011]
Temp	d------	[12:30 12/09/2011]
Templates	d--hs--	[05:08 14/07/2009]
tmp	d------	[20:35 07/05/2013]
Vorlagen	d--hs--	[16:20 11/11/2011]
WEBREG	d------	[14:33 24/06/2012]
WildTangent	d------	[08:31 12/08/2011]
Yahoo! Companion	d------	[14:19 24/06/2012]

C:\Users\Grit\AppData\Roaming - Parameters: "/n*.exe /t5 /md5"

---Files---
None found.

---Folders---
ACD Systems	d------	[17:36 30/12/2011]
Adobe	d------	[18:59 11/11/2011]
Apple Computer	d------	[20:35 12/07/2013]
Babylon	d------	[19:27 27/03/2012]
ChessBase	d------	[19:16 05/05/2014]
com.adobe.downloadassistant.AdobeDownloadAssistant	d------	[15:59 10/06/2014]
CyberLink	d------	[16:21 11/11/2011]
dynamics-71	d------	[14:01 05/11/2016]
HP	d------	[14:33 24/06/2012]
Identities	d------	[16:23 11/11/2011]
Intel	d------	[16:20 11/11/2011]
Macromedia	d------	[16:23 11/11/2011]
Media Center Programs	d------	[16:20 11/11/2011]
Media Finder	d------	[19:29 27/03/2012]
Microsoft	d---s--	[16:20 11/11/2011]
Mozilla	d------	[19:29 27/03/2012]
Origin	d------	[17:03 27/01/2013]
PowerCinema	d------	[16:35 30/12/2011]
Skype	d------	[14:35 12/11/2011]
Soda PDF 6	d------	[15:29 10/06/2014]
torque-6	d------	[08:22 05/11/2016]
Yahoo!	d------	[14:19 24/06/2012]

C:\Users\Grit\AppData\Local - Parameters: "/n*.exe /t5 /md5"

---Files---
None found.

---Folders---
AAV	d------	[21:22 07/02/2012]
Acer	d------	[16:21 11/11/2011]
Adobe	d------	[20:25 13/11/2011]
Amazon Music	d------	[11:48 29/07/2014]
Anwendungsdaten	d--hs--	[16:20 11/11/2011]
Apple	d------	[20:27 12/07/2013]
Apple Computer	d------	[20:35 12/07/2013]
Apps	d------	[08:16 17/07/2014]
AVG Secure Search	d------	[15:16 10/06/2014]
Babylon	d------	[19:27 27/03/2012]
ChessBase	d------	[19:15 05/05/2014]
Cyberlink	d------	[16:35 30/12/2011]
Diagnostics	d------	[12:31 08/06/2013]
Downloaded Installations	d------	[04:55 26/06/2014]
EgisTec IPS	d------	[18:49 11/11/2011]
ElevatedDiagnostics	d------	[09:43 17/02/2013]
EmieBrowserModeList	d--hs--	[07:37 14/11/2014]
EmieSiteList	d--hs--	[20:18 29/04/2014]
EmieUserList	d--hs--	[20:18 29/04/2014]
fontconfig	d------	[14:03 31/05/2015]
Fritz und Fertig	d------	[07:26 07/05/2014]
gegl-0.2	d------	[14:03 31/05/2015]
Google	d------	[20:03 21/11/2013]
gtk-2.0	d------	[09:44 02/06/2015]
GWX	d------	[19:01 03/06/2015]
HP	d------	[14:33 24/06/2012]
McAfee File Lock	d------	[14:59 11/01/2014]
Microsoft	d------	[16:20 11/11/2011]
Microsoft Help	d------	[15:12 12/11/2011]
Origin	d------	[17:03 27/01/2013]
PowerCinema	d------	[16:21 11/11/2011]
Programs	d------	[13:55 31/05/2015]
Questionmark	d------	[05:04 26/06/2014]
Skype	d------	[11:27 16/10/2014]
Temp	d------	[16:20 11/11/2011]
Temporary Internet Files	d--hs--	[16:20 11/11/2011]
Verlauf	d--hs--	[16:20 11/11/2011]
VirtualStore	d------	[16:20 11/11/2011]
Windows Live	d------	[07:24 24/06/2012]
{0006503C-B6F0-4808-98B8-AC4BB1757F78}	d------	[15:15 04/08/2014]
{043FD1BD-3C02-40B1-BE36-D82E2B587EEE}	d------	[09:34 20/07/2014]
{06A677D5-A17D-42C9-8136-0B53F330BF4A}	d------	[06:58 04/11/2014]
{09238B92-F169-4782-AA42-DC7680F109AC}	d------	[18:12 25/05/2015]
{0B4D3C88-B8D6-43C5-B719-739CB6C7052B}	d------	[22:20 02/11/2013]
{0E464743-5ABF-4B72-9749-CBA98BF8053A}	d------	[08:07 21/02/2015]
{101BA4CD-92ED-43FD-894E-07889217F226}	d------	[16:51 14/09/2013]
{120FB7C9-E79F-494B-B422-0D0E07F78DA4}	d------	[13:23 16/02/2014]
{15EF6EBE-9EBC-4096-B8B8-5AB2FF73619D}	d------	[13:52 03/04/2014]
{18179C20-5BCF-48A9-9F58-736646C04697}	d------	[17:56 01/05/2016]
{22F4CE67-EA8E-4DC6-896A-B8E75BD3580C}	d------	[06:57 18/06/2012]
{293E5249-993A-4D84-A4F6-A9FCCA12FA4C}	d------	[18:32 25/07/2015]
{2BABF361-3CB9-4298-8C94-0F380A3828AA}	d------	[19:13 21/01/2014]
{2E81FBF3-6316-478B-8564-8DE83BB7C6D2}	d------	[13:25 08/06/2013]
{2F6C6354-B823-4B8E-AE56-932408824A13}	d------	[18:05 03/10/2016]
{37BC8C92-B889-49DD-9D36-A4DFF611FC44}	d------	[17:17 19/08/2012]
{3E9046F6-CA58-4143-8496-D057E9C0265C}	d------	[09:50 07/11/2014]
{3F03E644-185E-4816-AC41-93FBA9A90E2A}	d------	[14:19 09/09/2014]
{40392410-FF4F-4C62-94A6-01B4238257D9}	d------	[11:15 17/07/2014]
{42D491CB-0FBD-4DDF-ADB8-9ADBCAE0F554}	d------	[19:41 16/08/2013]
{49B7DA1E-A786-4917-AC9D-E23F2F1CFFC4}	d------	[06:57 18/06/2012]
{4F61F4A0-F795-48EF-B37E-AE1591A7A558}	d------	[18:34 23/10/2014]
{53325497-4970-4F2B-B68C-EF0348CF5BA0}	d------	[17:48 05/10/2013]
{5716BBD5-370E-4BD6-98B6-2EA5B1BFAC12}	d------	[15:42 16/07/2014]
{59A24477-A4E4-4B59-BD90-FA91E0105E4F}	d------	[18:32 18/10/2014]
{5C9D4FBD-4C2F-4464-82B4-229F30DAC919}	d------	[15:39 05/01/2014]
{5D74740A-1F2D-4780-B9EC-2C6A6018AF28}	d------	[14:16 09/09/2014]
{5EB7D7F9-E33C-4ACF-98DD-AFAA04EE39F8}	d------	[19:00 30/08/2012]
{5FB12E19-A8A5-498A-BBA8-EFC5487AC267}	d------	[07:00 18/06/2012]
{61157707-CEA1-49B1-AB53-9E070D3F9A80}	d------	[17:32 04/06/2014]
{64AA3CBC-8A30-4186-A6A4-AF92B1E741BA}	d------	[18:55 23/10/2014]
{7270D5F4-3DD1-42F3-B2DC-2724560BA258}	d------	[15:14 09/11/2014]
{79155378-4413-4BB2-890F-E84124B7F196}	d------	[14:18 03/02/2015]
{7D78FE8F-A6DA-4424-AB82-6573471757EC}	d------	[18:44 13/12/2015]
{7FF66757-8692-4A8C-B6D5-1E6AA2B63DFE}	d------	[16:43 27/09/2016]
{8127A710-BA00-480B-A56E-00071E57C04E}	d------	[09:42 27/10/2013]
{82A30847-8D93-4003-A6B9-533891EE9F29}	d------	[14:59 25/10/2015]
{8C5CCD8B-3773-4E47-A3E5-51BC5F13E3CC}	d------	[18:10 18/05/2014]
{9332DA35-1ABE-48BF-9690-F8E40CDE5F41}	d------	[18:01 27/02/2014]
{943EF923-72A1-407A-A410-6DF6FF34AB12}	d------	[12:24 28/04/2013]
{97735A35-8F27-4600-A7E3-57F0F5D60FD1}	d------	[18:40 05/12/2015]
{9FEB2A3C-BC55-4AB0-B902-D64D02F2A951}	d------	[17:30 29/07/2016]
{A0A9D9A1-2ED0-4566-B939-D7D5D6F58764}	d------	[19:13 07/10/2013]
{A0B0C401-A861-4CFC-9ACC-90DDF758DDCA}	d------	[18:01 09/03/2015]
{AA450EE5-7081-4A07-BB68-471E5EAB2A8F}	d------	[15:48 04/02/2015]
{AE38671B-242D-4036-87DC-107421F88C28}	d------	[14:59 01/09/2014]
{AFE7BEE4-EA4D-4CA9-AFF1-B2C80FFDB239}	d------	[16:04 12/08/2013]
{B0005551-99B6-4052-9255-B356AC6E418C}	d------	[18:30 02/11/2014]
{B3EFD7F8-62A7-4B58-9374-FEAFEF9FB362}	d------	[08:22 05/05/2014]
{B4BB21E1-7287-4AE2-81EC-1F7F39A9D845}	d------	[19:02 11/09/2012]
{B54480B0-6712-4889-9541-8055D2633D06}	d------	[16:35 08/05/2016]
{B7726E5C-1B6D-45D9-8314-9DBCF0FEA928}	d------	[07:23 24/06/2012]
{CCDF30C6-004C-49BC-91BC-7781D4F61FD9}	d------	[14:18 03/02/2015]
{CD27D935-1E65-4EE5-9E10-ED3C7682FBDB}	d------	[08:13 24/06/2012]
{D02B3CCC-EB92-499B-8462-835C5C2A2809}	d------	[20:56 16/04/2016]
{D39F7E9F-BC84-44CE-A283-7F196597C2FC}	d------	[12:02 21/10/2014]
{D642003E-317F-40E9-93F2-3639425F2B51}	d------	[09:40 06/09/2015]
{D899A312-B55E-466E-A1D0-8CEE2E2256EA}	d------	[08:18 24/06/2012]
{E5B1DCB1-36A4-4F1C-9AD5-87FA61199B16}	d------	[04:40 29/09/2014]
{E68960F4-F420-4267-9A26-A04748627C91}	d------	[17:50 20/05/2014]
{E811A5ED-BAD3-4569-86D1-AECA0C1CAF78}	d------	[17:41 26/10/2012]
{E9CD8B8F-CEDB-4584-8046-70BCC7B56215}	d------	[06:34 04/09/2014]
{EAD43064-9F84-47C1-BC3A-5562858A6A2F}	d------	[18:29 29/08/2012]
{EAE5813A-2A05-477F-B798-135081075275}	d------	[17:25 16/10/2014]
{EDACEE3C-F222-431F-8669-1575E8A0DD48}	d------	[13:10 17/10/2014]
{FB885C55-2D4D-4A7F-B83E-D2C759EDB720}	d------	[16:39 27/09/2016]

C:\Users\Grit\AppData\Local\Temp - Parameters: "/n*.exe /t5 /md5"

---Files---
None found.

---Folders---
.bitrock	d------	[11:48 29/07/2014]
06240925-0000142c-gnhldcox6i	d------	[07:25 24/06/2012]
06241014-000011c0-msy81ucx70	d------	[08:14 24/06/2012]
06241019-00000718-8f194owkyl	d------	[08:19 24/06/2012]
1052_773	d------	[20:28 17/12/2013]
1192_20880	d------	[12:08 12/03/2014]
12588_3331	d------	[18:44 24/03/2014]
1516_5988	d------	[07:34 04/04/2014]
2168_685	d------	[20:39 22/03/2014]
2404_32591	d------	[10:22 29/03/2014]
27EA873C-BAB0-7891-9B64-BD6E320A41B9	d------	[19:27 27/03/2012]
2932_15187	d------	[19:46 14/01/2014]
2996_22055	d------	[20:33 09/12/2013]
4788_21114	d------	[19:57 02/01/2014]
5288_21439	d------	[05:55 28/03/2014]
5496_26294	d------	[18:45 16/12/2013]
5612_1207	d------	[19:49 12/12/2013]
5728_26346	d------	[15:34 22/06/2015]
5964_22237	d------	[08:56 08/04/2014]
5996_6606	d------	[13:24 22/01/2016]
6076_19456	d------	[20:34 21/12/2013]
6104_592	d------	[18:55 01/03/2014]
6256_3809	d------	[19:28 11/01/2014]
6288_30740	d------	[19:35 20/02/2014]
6512_21464	d------	[07:22 27/08/2015]
6544_8249	d------	[16:17 24/11/2015]
6560_10880	d------	[07:47 10/04/2014]
6608_4950	d------	[20:47 08/01/2014]
6696_3757	d------	[20:19 21/02/2014]
6944_24124	d------	[19:24 18/01/2014]
7108_27081	d------	[09:50 17/01/2016]
7256_26362	d------	[16:17 02/02/2016]
7544_32013	d------	[17:39 04/04/2015]
7640_3422	d------	[08:28 14/12/2013]
7744_18534	d------	[12:54 12/06/2015]
7744_26805	d------	[15:33 13/06/2015]
8092_3119	d------	[11:12 01/10/2016]
8144_20467	d------	[19:59 09/02/2014]
8184_18252	d------	[19:22 17/03/2014]
8292_1916	d------	[15:45 09/04/2014]
8304_6896	d------	[21:06 15/12/2013]
8404_6999	d------	[19:37 05/01/2014]
8808_28086	d------	[20:59 09/03/2014]
8808_7167	d------	[20:44 09/03/2014]
960_21038	d------	[16:40 19/01/2016]
acrord32_sbx	d------	[12:30 29/04/2015]
Adobe	d------	[20:25 13/11/2011]
Adobe_ADMLogs	d------	[12:04 29/04/2015]
APN-Stub	d------	[15:43 12/06/2013]
APNLogs	d------	[15:54 12/06/2013]
avg_a03008	d------	[15:14 10/06/2014]
avg_a06840	d------	[15:13 10/06/2014]
BabylonToolbar	d------	[19:27 27/03/2012]
be29e7f1-71ae-4703-50cb-1d52be512f51	d------	[11:48 29/07/2014]
chrome_BITS_3176_5667	d------	[07:10 14/10/2016]
chrome_BITS_4348_784	d------	[16:36 25/07/2015]
chrome_BITS_5640_614	d------	[15:55 24/03/2016]
chrome_BITS_5792_23973	d------	[19:34 25/07/2016]
chrome_BITS_6760_15159	d------	[15:26 09/05/2016]
chrome_BITS_7388_22995	d------	[19:02 09/12/2015]
clear.fiClient	d------	[14:35 12/11/2011]
Cookies	d--hs--	[20:25 13/11/2011]
DPE	d------	[10:14 28/06/2012]
fla750F.tmp	d------	[10:40 18/11/2014]
FotoSchauBilder	d------	[11:47 06/06/2013]
History	d--hs--	[20:25 13/11/2011]
hsperfdata_Grit	d------	[19:25 04/04/2013]
ImageDebug	d------	[10:13 28/06/2012]
is-1G19K.tmp	d------	[19:26 27/03/2012]
isp9F1C.tmp	d------	[16:37 30/12/2011]
ispA019.tmp	d------	[16:37 30/12/2011]
lilo.10412	d------	[16:13 19/03/2015]
Low	d------	[16:23 11/11/2011]
MaglevExpressTemp	d------	[10:13 28/06/2012]
McInstrumentationTemp	d------	[13:05 11/01/2014]
McInstrumentationTemp (4)	d------	[16:06 11/01/2014]
McTemp	d------	[13:05 11/01/2014]
McTemp (4)	d------	[16:06 11/01/2014]
Microsoft Visual C++ 2010  x64 Redistributable Setup_10.0.40219	d------	[16:43 27/01/2013]
Microsoft Visual C++ 2010  x86 Redistributable Setup_10.0.40219	d------	[16:43 27/01/2013]
msdt	d------	[09:42 17/02/2013]
msdtadmin	d------	[09:42 17/02/2013]
msohtmlclip	d------	[20:26 20/11/2011]
msohtmlclip1	d------	[20:26 20/11/2011]
nsaCB7A.tmp	d------	[15:05 11/05/2015]
nsf65D5.tmp	d------	[19:51 21/05/2015]
nslC6C9.tmp	d------	[09:35 14/05/2015]
nslF5C5.tmp	d------	[06:11 13/06/2015]
nsq11FC.tmp	d------	[03:45 30/06/2015]
nsq3110.tmp	d------	[18:44 18/06/2015]
nsq6B6.tmp	d------	[19:01 03/06/2015]
nsvD2BB.tmp	d------	[11:46 05/05/2015]
nsvF133.tmp	d------	[15:51 05/07/2015]
OfficeMMergeTempDir	d------	[15:56 04/11/2014]
OICE_5DBE485F-C68E-43A8-A2A4-68F800D0C7D7.0	d------	[20:10 30/12/2014]
OICE_B94944CA-F6BA-470A-87B2-3039C68682C6.0	d------	[19:39 06/01/2014]
OICE_BE361E1D-40A0-45B6-8BF2-3FD6F6B9607C.0	d------	[12:17 03/02/2015]
OIS	d------	[08:50 20/05/2013]
Origin	d------	[16:40 27/01/2013]
outlook logging	d------	[18:19 21/05/2012]
Outlook-Protokoll	d------	[18:23 21/05/2012]
scoped_dir4756_30322	d------	[04:53 12/09/2014]
scoped_dir5024_26565	d------	[18:48 07/09/2014]
scoped_dir_8300_17728	d------	[21:18 21/11/2013]
scoped_dir_8300_22860	d------	[21:18 21/11/2013]
SilverStreakLog	d------	[10:13 28/06/2012]
Skype	d------	[19:31 14/03/2014]
Soda PDF 6	d------	[15:29 10/06/2014]
SSE_ELSTER_130613-21.22_8c16cf70-64b0-4bf4-b3f3-b2a9a5bd95e9	d------	[19:22 13/06/2013]
TCD10D.tmp	d------	[04:46 20/04/2015]
TCD115B.tmp	d------	[14:47 19/02/2012]
TCD11FC.tmp	d------	[18:51 16/12/2013]
TCD128B.tmp	d------	[18:51 16/12/2013]
TCD1311.tmp	d------	[04:46 20/04/2015]
TCD1366.tmp	d------	[17:27 22/06/2015]
TCD1367.tmp	d------	[18:51 16/12/2013]
TCD1390.tmp	d------	[04:46 20/04/2015]
TCD13A8.tmp	d------	[18:51 16/12/2013]
TCD13D0.tmp	d------	[04:46 20/04/2015]
TCD148D.tmp	d------	[04:46 20/04/2015]
TCD14AD.tmp	d------	[11:15 26/07/2015]
TCD14D.tmp	d------	[12:39 05/11/2016]
TCD14ED.tmp	d------	[04:46 20/04/2015]
TCD15A5.tmp	d------	[17:30 23/04/2014]
TCD1627.tmp	d------	[04:46 20/04/2015]
TCD162D.tmp	d------	[18:50 02/12/2015]
TCD16A6.tmp	d------	[04:46 20/04/2015]
TCD16CF.tmp	d------	[17:30 23/04/2014]
TCD1727.tmp	d------	[14:47 19/02/2012]
TCD1772.tmp	d------	[04:46 20/04/2015]
TCD178D.tmp	d------	[17:30 23/04/2014]
TCD1794.tmp	d------	[04:46 20/04/2015]
TCD179E.tmp	d------	[17:30 23/04/2014]
TCD17E.tmp	d------	[12:39 05/11/2016]
TCD1803.tmp	d------	[04:46 20/04/2015]
TCD1824.tmp	d------	[04:46 20/04/2015]
TCD18BE.tmp	d------	[14:47 19/02/2012]
TCD18D2.tmp	d------	[04:46 20/04/2015]
TCD18F3.tmp	d------	[04:46 20/04/2015]
TCD19AA.tmp	d------	[19:36 22/11/2011]
TCD1B20.tmp	d------	[17:34 13/04/2012]
TCD1B41.tmp	d------	[19:36 22/11/2011]
TCD1B54.tmp	d------	[17:27 22/06/2015]
TCD1B90.tmp	d------	[17:34 13/04/2012]
TCD1BA0.tmp	d------	[07:54 07/04/2014]
TCD1BB1.tmp	d------	[07:54 07/04/2014]
TCD1BE2.tmp	d------	[07:54 07/04/2014]
TCD1BFC.tmp	d------	[14:26 17/11/2014]
TCD1BFD.tmp	d------	[14:26 17/11/2014]
TCD1BFE.tmp	d------	[14:26 17/11/2014]
TCD1C3D.tmp	d------	[17:34 13/04/2012]
TCD1C79.tmp	d------	[19:09 31/10/2015]
TCD1C7A.tmp	d------	[19:09 31/10/2015]
TCD1CA2.tmp	d------	[20:02 09/06/2016]
TCD1CEA.tmp	d------	[19:09 31/10/2015]
TCD1E4A.tmp	d------	[18:50 02/12/2015]
TCD1EBD.tmp	d------	[11:15 26/07/2015]
TCD207D.tmp	d------	[18:50 02/12/2015]
TCD219.tmp	d------	[18:49 02/12/2015]
TCD2255.tmp	d------	[19:36 22/11/2011]
TCD2286.tmp	d------	[11:15 26/07/2015]
TCD22F5.tmp	d------	[11:15 26/07/2015]
TCD2410.tmp	d------	[11:15 26/07/2015]
TCD244.tmp	d------	[18:59 02/07/2013]
TCD2460.tmp	d------	[11:15 26/07/2015]
TCD24F2.tmp	d------	[18:50 02/12/2015]
TCD2505.tmp	d------	[19:36 22/11/2011]
TCD2510.tmp	d------	[10:53 04/10/2016]
TCD2511.tmp	d------	[10:53 04/10/2016]
TCD2580.tmp	d------	[10:53 04/10/2016]
TCD264D.tmp	d------	[10:53 04/10/2016]
TCD266E.tmp	d------	[19:36 22/11/2011]
TCD2770.tmp	d------	[17:49 28/09/2015]
TCD2857.tmp	d------	[20:02 09/06/2016]
TCD293E.tmp	d------	[19:36 22/11/2011]
TCD2955.tmp	d------	[17:49 28/09/2015]
TCD2986.tmp	d------	[18:50 02/12/2015]
TCD2B43.tmp	d------	[19:36 22/11/2011]
TCD2CA2.tmp	d------	[17:49 28/09/2015]
TCD2D21.tmp	d------	[18:50 02/12/2015]
TCD2FCB.tmp	d------	[15:59 01/12/2014]
TCD2FE1.tmp	d------	[18:50 02/12/2015]
TCD3015.tmp	d------	[19:36 22/11/2011]
TCD3057.tmp	d------	[21:12 09/02/2014]
TCD3058.tmp	d------	[21:12 09/02/2014]
TCD30A8.tmp	d------	[21:12 09/02/2014]
TCD30F1.tmp	d------	[19:36 22/11/2011]
TCD3101.tmp	d------	[09:49 15/02/2015]
TCD3102.tmp	d------	[09:49 15/02/2015]
TCD314E.tmp	d------	[18:35 09/06/2014]
TCD316F.tmp	d------	[18:35 09/06/2014]
TCD31DF.tmp	d------	[18:35 09/06/2014]
TCD320C.tmp	d------	[19:36 22/11/2011]
TCD321.tmp	d------	[04:46 20/04/2015]
TCD32A9.tmp	d------	[15:59 01/12/2014]
TCD32AA.tmp	d------	[15:59 01/12/2014]
TCD32E9.tmp	d------	[19:36 22/11/2011]
TCD3319.tmp	d------	[18:35 09/06/2014]
TCD33C5.tmp	d------	[19:36 22/11/2011]
TCD341C.tmp	d------	[19:09 17/05/2012]
TCD347C.tmp	d------	[19:09 17/05/2012]
TCD3482.tmp	d------	[19:36 22/11/2011]
TCD3606.tmp	d------	[17:27 22/06/2015]
TCD362F.tmp	d------	[11:02 01/05/2014]
TCD364F.tmp	d------	[11:02 01/05/2014]
TCD366D.tmp	d------	[20:02 09/06/2016]
TCD3690.tmp	d------	[11:02 01/05/2014]
TCD37CF.tmp	d------	[18:50 02/12/2015]
TCD37E5.tmp	d------	[20:02 09/06/2016]
TCD383.tmp	d------	[12:39 05/11/2016]
TCD388A.tmp	d------	[19:36 22/11/2011]
TCD3892.tmp	d------	[14:59 17/06/2014]
TCD3893.tmp	d------	[14:59 17/06/2014]
TCD3894.tmp	d------	[14:59 17/06/2014]
TCD38E1.tmp	d------	[20:02 09/06/2016]
TCD3912.tmp	d------	[17:49 28/09/2015]
TCD395A.tmp	d------	[07:04 17/12/2014]
TCD395B.tmp	d------	[07:04 17/12/2014]
TCD3966.tmp	d------	[18:50 02/12/2015]
TCD396D.tmp	d------	[07:04 17/12/2014]
TCD3A0B.tmp	d------	[20:02 09/06/2016]
TCD3AE4.tmp	d------	[19:09 17/05/2012]
TCD3AEE.tmp	d------	[18:50 02/12/2015]
TCD3B15.tmp	d------	[19:09 17/05/2012]
TCD3B6D.tmp	d------	[18:50 02/12/2015]
TCD3B93.tmp	d------	[19:09 17/05/2012]
TCD3C4F.tmp	d------	[20:02 09/06/2016]
TCD3C8D.tmp	d------	[17:49 28/09/2015]
TCD3C98.tmp	d------	[18:50 02/12/2015]
TCD3D04.tmp	d------	[08:25 21/03/2014]
TCD3D15.tmp	d------	[08:25 21/03/2014]
TCD3D45.tmp	d------	[18:50 02/12/2015]
TCD3D55.tmp	d------	[08:25 21/03/2014]
TCD3D68.tmp	d------	[17:27 22/06/2015]
TCD3EB2.tmp	d------	[17:27 22/06/2015]
TCD3EE.tmp	d------	[14:47 19/02/2012]
TCD3F4B.tmp	d------	[18:50 02/12/2015]
TCD3F4C.tmp	d------	[18:50 02/12/2015]
TCD3F6C.tmp	d------	[20:02 09/06/2016]
TCD3FFA.tmp	d------	[18:50 02/12/2015]
TCD401.tmp	d------	[12:39 05/11/2016]
TCD403A.tmp	d------	[17:27 22/06/2015]
TCD40B0.tmp	d------	[07:04 17/12/2014]
TCD40C8.tmp	d------	[17:27 22/06/2015]
TCD40D6.tmp	d------	[18:50 02/12/2015]
TCD40D9.tmp	d------	[12:34 21/02/2016]
TCD4128.tmp	d------	[17:27 22/06/2015]
TCD4184.tmp	d------	[18:50 02/12/2015]
TCD41B4.tmp	d------	[18:08 01/06/2014]
TCD41B5.tmp	d------	[18:08 01/06/2014]
TCD41C6.tmp	d------	[17:27 22/06/2015]
TCD41D.tmp	d------	[18:50 02/12/2015]
TCD4231.tmp	d------	[18:50 02/12/2015]
TCD4261.tmp	d------	[12:34 21/02/2016]
TCD4292.tmp	d------	[12:34 21/02/2016]
TCD42BC.tmp	d------	[20:40 23/01/2014]
TCD430C.tmp	d------	[20:40 23/01/2014]
TCD433C.tmp	d------	[18:50 02/12/2015]
TCD4405.tmp	d------	[10:26 09/12/2014]
TCD440A.tmp	d------	[12:34 21/02/2016]
TCD4512.tmp	d------	[20:40 23/01/2014]
TCD4538.tmp	d------	[20:02 09/06/2016]
TCD455.tmp	d------	[07:13 05/08/2014]
TCD456.tmp	d------	[07:13 05/08/2014]
TCD45C1.tmp	d------	[12:34 21/02/2016]
TCD45CF.tmp	d------	[20:40 23/01/2014]
TCD45DD.tmp	d------	[18:08 01/06/2014]
TCD4626.tmp	d------	[09:52 25/12/2013]
TCD4627.tmp	d------	[09:52 25/12/2013]
TCD468C.tmp	d------	[20:40 23/01/2014]
TCD46D1.tmp	d------	[18:07 23/06/2013]
TCD46DC.tmp	d------	[20:40 23/01/2014]
TCD470B.tmp	d------	[12:34 21/02/2016]
TCD471.tmp	d------	[12:39 05/11/2016]
TCD4711.tmp	d------	[18:07 23/06/2013]
TCD4742.tmp	d------	[18:07 23/06/2013]
TCD4850.tmp	d------	[07:04 17/12/2014]
TCD4946.tmp	d------	[09:52 25/12/2013]
TCD499A.tmp	d------	[17:49 28/09/2015]
TCD49F1.tmp	d------	[09:50 15/02/2015]
TCD4A07.tmp	d------	[07:04 17/12/2014]
TCD4A5.tmp	d------	[07:13 05/08/2014]
TCD4A59.tmp	d------	[20:02 09/06/2016]
TCD4B14.tmp	d------	[11:16 26/07/2015]
TCD4C42.tmp	d------	[20:33 29/07/2016]
TCD4CB1.tmp	d------	[20:33 29/07/2016]
TCD4CCB.tmp	d------	[11:16 26/07/2015]
TCD4D5C.tmp	d------	[09:50 15/02/2015]
TCD4DDB.tmp	d------	[20:33 29/07/2016]
TCD4E91.tmp	d------	[07:37 14/10/2014]
TCD4E92.tmp	d------	[07:37 14/10/2014]
TCD4E93.tmp	d------	[07:37 14/10/2014]
TCD4E98.tmp	d------	[20:33 29/07/2016]
TCD4EF.tmp	d------	[12:39 05/11/2016]
TCD4F03.tmp	d------	[09:50 15/02/2015]
TCD504D.tmp	d------	[09:50 15/02/2015]
TCD508D.tmp	d------	[09:50 15/02/2015]
TCD50FD.tmp	d------	[09:50 15/02/2015]
TCD516C.tmp	d------	[09:50 15/02/2015]
TCD51BB.tmp	d------	[11:22 06/09/2014]
TCD51BC.tmp	d------	[11:22 06/09/2014]
TCD51BD.tmp	d------	[09:50 15/02/2015]
TCD51F9.tmp	d------	[18:49 14/01/2014]
TCD51FA.tmp	d------	[18:49 14/01/2014]
TCD51FC.tmp	d------	[09:50 15/02/2015]
TCD521B.tmp	d------	[18:49 14/01/2014]
TCD523D.tmp	d------	[09:50 15/02/2015]
TCD526.tmp	d------	[04:46 20/04/2015]
TCD5288.tmp	d------	[11:22 06/09/2014]
TCD52C4.tmp	d------	[09:20 10/01/2016]
TCD52C5.tmp	d------	[09:20 10/01/2016]
TCD5319.tmp	d------	[09:50 15/02/2015]
TCD5324.tmp	d------	[09:20 10/01/2016]
TCD53B3.tmp	d------	[11:22 06/09/2014]
TCD5469.tmp	d------	[20:02 09/06/2016]
TCD54DF.tmp	d------	[09:50 15/02/2015]
TCD551.tmp	d------	[07:13 05/08/2014]
TCD5543.tmp	d------	[03:19 03/06/2013]
TCD5544.tmp	d------	[03:19 03/06/2013]
TCD5594.tmp	d------	[03:19 03/06/2013]
TCD5835.tmp	d------	[17:27 22/06/2015]
TCD583B.tmp	d------	[09:50 15/02/2015]
TCD5846.tmp	d------	[17:27 22/06/2015]
TCD589F.tmp	d------	[20:03 09/06/2016]
TCD58C5.tmp	d------	[17:27 22/06/2015]
TCD58E6.tmp	d------	[17:27 22/06/2015]
TCD5AAD.tmp	d------	[17:27 22/06/2015]
TCD5ABD.tmp	d------	[09:50 15/02/2015]
TCD5AFA.tmp	d------	[17:49 28/09/2015]
TCD5C95.tmp	d------	[11:16 26/07/2015]
TCD5C97.tmp	d------	[20:03 09/06/2016]
TCD5DEE.tmp	d------	[11:16 26/07/2015]
TCD5E3E.tmp	d------	[11:16 26/07/2015]
TCD5E47.tmp	d------	[17:27 22/06/2015]
TCD5E50.tmp	d------	[11:16 26/07/2015]
TCD5E87.tmp	d------	[17:27 22/06/2015]
TCD5F2C.tmp	d------	[11:16 26/07/2015]
TCD5F3E.tmp	d------	[11:16 26/07/2015]
TCD61A.tmp	d------	[12:39 05/11/2016]
TCD61E.tmp	d------	[07:13 05/08/2014]
TCD62C9.tmp	d------	[11:16 26/07/2015]
TCD635D.tmp	d------	[20:03 09/06/2016]
TCD6374.tmp	d------	[17:50 28/09/2015]
TCD64FC.tmp	d------	[17:50 28/09/2015]
TCD650.tmp	d------	[14:47 19/02/2012]
TCD650B.tmp	d------	[15:42 29/08/2016]
TCD651E.tmp	d------	[17:27 22/06/2015]
TCD655A.tmp	d------	[11:16 26/07/2015]
TCD6654.tmp	d------	[17:57 07/10/2013]
TCD6655.tmp	d------	[17:57 07/10/2013]
TCD6656.tmp	d------	[17:57 07/10/2013]
TCD66A1.tmp	d------	[19:29 02/01/2014]
TCD66C1.tmp	d------	[19:29 02/01/2014]
TCD66F1.tmp	d------	[17:50 28/09/2015]
TCD6781.tmp	d------	[17:27 22/06/2015]
TCD67CE.tmp	d------	[19:29 02/01/2014]
TCD67CF.tmp	d------	[17:50 28/09/2015]
TCD6885.tmp	d------	[16:45 09/12/2014]
TCD689B.tmp	d------	[17:50 28/09/2015]
TCD68A5.tmp	d------	[16:45 09/12/2014]
TCD6947.tmp	d------	[17:27 22/06/2015]
TCD6A23.tmp	d------	[17:50 28/09/2015]
TCD6A6A.tmp	d------	[19:35 30/10/2014]
TCD6A6B.tmp	d------	[19:35 30/10/2014]
TCD6A9C.tmp	d------	[19:35 30/10/2014]
TCD6AEA.tmp	d------	[16:45 09/12/2014]
TCD6B74.tmp	d------	[11:16 26/07/2015]
TCD6B78.tmp	d------	[16:45 09/12/2014]
TCD6C9B.tmp	d------	[15:42 29/08/2016]
TCD6CD3.tmp	d------	[17:50 28/09/2015]
TCD6CF4.tmp	d------	[07:05 17/12/2014]
TCD6D6E.tmp	d------	[17:27 22/06/2015]
TCD6D88.tmp	d------	[11:16 26/07/2015]
TCD6D9B.tmp	d------	[20:03 09/06/2016]
TCD6DF0.tmp	d------	[11:56 09/05/2014]
TCD6DF1.tmp	d------	[07:05 17/12/2014]
TCD6E4.tmp	d------	[20:02 09/06/2016]
TCD6E5F.tmp	d------	[07:05 17/12/2014]
TCD6E8F.tmp	d------	[11:56 09/05/2014]
TCD6EE2.tmp	d------	[11:16 26/07/2015]
TCD6F1E.tmp	d------	[11:56 09/05/2014]
TCD70F5.tmp	d------	[11:56 09/05/2014]
TCD71C8.tmp	d------	[12:24 21/02/2016]
TCD71F8.tmp	d------	[12:24 21/02/2016]
TCD71FF.tmp	d------	[11:16 26/07/2015]
TCD7232.tmp	d------	[17:50 28/09/2015]
TCD73B7.tmp	d------	[17:27 22/06/2015]
TCD73CD.tmp	d------	[07:05 17/12/2014]
TCD73DC.tmp	d------	[09:10 21/10/2014]
TCD7489.tmp	d------	[09:10 21/10/2014]
TCD7490.tmp	d------	[20:03 09/06/2016]
TCD753C.tmp	d------	[11:16 26/07/2015]
TCD7540.tmp	d------	[16:33 01/01/2012]
TCD7546.tmp	d------	[09:10 21/10/2014]
TCD7574.tmp	d------	[07:05 17/12/2014]
TCD75F3.tmp	d------	[07:05 17/12/2014]
TCD75FB.tmp	d------	[17:50 28/09/2015]
TCD7627.tmp	d------	[20:03 09/06/2016]
TCD7653.tmp	d------	[07:05 17/12/2014]
TCD7668.tmp	d------	[20:03 09/06/2016]
TCD7691.tmp	d------	[09:10 21/10/2014]
TCD7693.tmp	d------	[07:05 17/12/2014]
TCD76E3.tmp	d------	[07:05 17/12/2014]
TCD7716.tmp	d------	[16:33 01/01/2012]
TCD7763.tmp	d------	[20:03 09/06/2016]
TCD779.tmp	d------	[18:50 02/12/2015]
TCD77A5.tmp	d------	[12:24 21/02/2016]
TCD77B1.tmp	d------	[09:50 15/02/2015]
TCD77BE.tmp	d------	[11:16 26/07/2015]
TCD783B.tmp	d------	[17:27 22/06/2015]
TCD786F.tmp	d------	[20:03 09/06/2016]
TCD789E.tmp	d------	[16:33 01/01/2012]
TCD78C0.tmp	d------	[16:33 01/01/2012]
TCD78DE.tmp	d------	[20:03 09/06/2016]
TCD7918.tmp	d------	[17:27 22/06/2015]
TCD7919.tmp	d------	[17:27 22/06/2015]
TCD797B.tmp	d------	[12:24 21/02/2016]
TCD79C5.tmp	d------	[09:50 15/02/2015]
TCD7A06.tmp	d------	[17:27 22/06/2015]
TCD7A27.tmp	d------	[17:27 22/06/2015]
TCD7A3F.tmp	d------	[11:16 26/07/2015]
TCD7A51.tmp	d------	[11:16 26/07/2015]
TCD7A57.tmp	d------	[16:33 01/01/2012]
TCD7AB4.tmp	d------	[20:03 09/06/2016]
TCD7AC5.tmp	d------	[20:03 09/06/2016]
TCD7B1.tmp	d------	[12:39 05/11/2016]
TCD7B2.tmp	d------	[20:02 09/06/2016]
TCD7B22.tmp	d------	[17:27 22/06/2015]
TCD7B3B.tmp	d------	[07:41 29/09/2014]
TCD7B3C.tmp	d------	[07:41 29/09/2014]
TCD7B4D.tmp	d------	[07:41 29/09/2014]
TCD7B53.tmp	d------	[17:27 22/06/2015]
TCD7BA2.tmp	d------	[20:03 09/06/2016]
TCD7BBB.tmp	d------	[09:50 15/02/2015]
TCD7C11.tmp	d------	[17:27 22/06/2015]
TCD7C12.tmp	d------	[17:27 22/06/2015]
TCD7C3.tmp	d------	[20:02 09/06/2016]
TCD7C6F.tmp	d------	[20:03 09/06/2016]
TCD7C71.tmp	d------	[19:35 22/11/2011]
TCD7CC0.tmp	d------	[17:27 22/06/2015]
TCD7CE1.tmp	d------	[17:27 22/06/2015]
TCD7D4B.tmp	d------	[20:03 09/06/2016]
TCD7D9B.tmp	d------	[17:50 28/09/2015]
TCD7DCE.tmp	d------	[17:27 22/06/2015]
TCD7DCF.tmp	d------	[17:27 22/06/2015]
TCD7E27.tmp	d------	[20:03 09/06/2016]
TCD7E68.tmp	d------	[11:16 26/07/2015]
TCD7EF6.tmp	d------	[11:16 26/07/2015]
TCD7F56.tmp	d------	[11:16 26/07/2015]
TCD7F8F.tmp	d------	[19:35 22/11/2011]
TCD7F93.tmp	d------	[09:50 15/02/2015]
TCD8013.tmp	d------	[11:16 26/07/2015]
TCD8082.tmp	d------	[11:16 26/07/2015]
TCD811.tmp	d------	[12:39 05/11/2016]
TCD815F.tmp	d------	[11:16 26/07/2015]
TCD81DE.tmp	d------	[11:16 26/07/2015]
TCD823D.tmp	d------	[11:16 26/07/2015]
TCD82CB.tmp	d------	[19:35 22/11/2011]
TCD83A5.tmp	d------	[17:50 28/09/2015]
TCD83E0.tmp	d------	[07:05 17/12/2014]
TCD8404.tmp	d------	[11:16 26/07/2015]
TCD8438.tmp	d------	[16:33 01/01/2012]
TCD8482.tmp	d------	[11:16 26/07/2015]
TCD84E3.tmp	d------	[09:50 15/02/2015]
TCD852E.tmp	d------	[19:35 22/11/2011]
TCD8549.tmp	d------	[07:05 17/12/2014]
TCD85E5.tmp	d------	[20:18 28/01/2014]
TCD85E6.tmp	d------	[20:18 28/01/2014]
TCD8637.tmp	d------	[17:50 28/09/2015]
TCD8645.tmp	d------	[20:18 28/01/2014]
TCD8681.tmp	d------	[15:17 08/11/2014]
TCD8682.tmp	d------	[15:17 08/11/2014]
TCD86AA.tmp	d------	[16:33 01/01/2012]
TCD86EF.tmp	d------	[07:56 30/08/2014]
TCD86F0.tmp	d------	[07:56 30/08/2014]
TCD873F.tmp	d------	[15:17 08/11/2014]
TCD8740.tmp	d------	[07:56 30/08/2014]
TCD8783.tmp	d------	[09:50 15/02/2015]
TCD8790.tmp	d------	[19:35 22/11/2011]
TCD8812.tmp	d------	[09:50 15/02/2015]
TCD88F3.tmp	d------	[07:05 17/12/2014]
TCD8907.tmp	d------	[15:17 08/11/2014]
TCD8914.tmp	d------	[07:05 17/12/2014]
TCD8993.tmp	d------	[12:24 21/02/2016]
TCD8A26.tmp	d------	[16:33 01/01/2012]
TCD8ABB.tmp	d------	[17:50 28/09/2015]
TCD8AE1.tmp	d------	[09:50 15/02/2015]
TCD8B03.tmp	d------	[09:50 15/02/2015]
TCD8B59.tmp	d------	[12:24 21/02/2016]
TCD8B62.tmp	d------	[09:50 15/02/2015]
TCD8C3F.tmp	d------	[09:50 15/02/2015]
TCD8CBD.tmp	d------	[09:50 15/02/2015]
TCD8CCF.tmp	d------	[09:50 15/02/2015]
TCD8D05.tmp	d------	[16:33 01/01/2012]
TCD8D2F.tmp	d------	[09:50 15/02/2015]
TCD8D8B.tmp	d------	[19:36 22/11/2011]
TCD8DAE.tmp	d------	[09:50 15/02/2015]
TCD8DAF.tmp	d------	[09:50 15/02/2015]
TCD8DC2.tmp	d------	[16:33 01/01/2012]
TCD8E5D.tmp	d------	[09:50 15/02/2015]
TCD8E7E.tmp	d------	[09:50 15/02/2015]
TCD8F45.tmp	d------	[19:29 02/01/2014]
TCD8F5A.tmp	d------	[16:33 01/01/2012]
TCD8FAF.tmp	d------	[12:24 21/02/2016]
TCD8FE3.tmp	d------	[19:29 02/01/2014]
TCD9046.tmp	d------	[16:33 01/01/2012]
TCD90E.tmp	d------	[04:46 20/04/2015]
TCD9123.tmp	d------	[17:50 28/09/2015]
TCD916B.tmp	d------	[19:29 02/01/2014]
TCD916F.tmp	d------	[07:05 17/12/2014]
TCD9195.tmp	d------	[12:24 21/02/2016]
TCD91DB.tmp	d------	[19:29 02/01/2014]
TCD926D.tmp	d------	[19:36 22/11/2011]
TCD9384.tmp	d------	[07:05 17/12/2014]
TCD93E9.tmp	d------	[07:19 22/09/2014]
TCD9419.tmp	d------	[07:19 22/09/2014]
TCD943B.tmp	d------	[07:19 22/09/2014]
TCD94B5.tmp	d------	[22:09 30/11/2013]
TCD94B6.tmp	d------	[22:09 30/11/2013]
TCD94B7.tmp	d------	[22:09 30/11/2013]
TCD9517.tmp	d------	[07:19 22/09/2014]
TCD958A.tmp	d------	[07:05 17/12/2014]
TCD959A.tmp	d------	[07:05 17/12/2014]
TCD95D6.tmp	d------	[17:50 28/09/2015]
TCD96F1.tmp	d------	[17:50 28/09/2015]
TCD97CD.tmp	d------	[17:50 28/09/2015]
TCD984F.tmp	d------	[15:42 29/08/2016]
TCD989.tmp	d------	[20:02 09/06/2016]
TCD98AA.tmp	d------	[17:50 28/09/2015]
TCD9963.tmp	d------	[07:05 17/12/2014]
TCD99C6.tmp	d------	[17:50 28/09/2015]
TCD99C7.tmp	d------	[17:50 28/09/2015]
TCD9AD2.tmp	d------	[17:50 28/09/2015]
TCD9BB5.tmp	d------	[12:40 18/05/2013]
TCD9BCD.tmp	d------	[17:50 28/09/2015]
TCD9C2.tmp	d------	[17:01 24/05/2014]
TCD9C41.tmp	d------	[04:39 14/07/2014]
TCD9C42.tmp	d------	[04:39 14/07/2014]
TCD9C82.tmp	d------	[12:40 18/05/2013]
TCD9C92.tmp	d------	[04:39 14/07/2014]
TCD9E06.tmp	d------	[15:22 23/04/2016]
TCD9E07.tmp	d------	[15:22 23/04/2016]
TCD9E1A.tmp	d------	[04:39 14/07/2014]
TCD9E77.tmp	d------	[12:40 18/05/2013]
TCD9E9.tmp	d------	[20:02 09/06/2016]
TCD9F23.tmp	d------	[15:22 23/04/2016]
TCD9F33.tmp	d------	[15:22 23/04/2016]
TCD9F8B.tmp	d------	[12:40 18/05/2013]
TCDA03D.tmp	d------	[15:42 29/08/2016]
TCDA03E.tmp	d------	[12:40 18/05/2013]
TCDA119.tmp	d------	[15:42 29/08/2016]
TCDA11D.tmp	d------	[17:50 28/09/2015]
TCDA21C.tmp	d------	[07:05 17/12/2014]
TCDA247.tmp	d------	[17:50 28/09/2015]
TCDA292.tmp	d------	[15:42 29/08/2016]
TCDA2BA.tmp	d------	[07:05 17/12/2014]
TCDA30A.tmp	d------	[07:05 17/12/2014]
TCDA333.tmp	d------	[17:50 28/09/2015]
TCDA34.tmp	d------	[07:13 05/08/2014]
TCDA35E.tmp	d------	[15:42 29/08/2016]
TCDA373.tmp	d------	[17:50 28/09/2015]
TCDA3B8.tmp	d------	[07:05 17/12/2014]
TCDA3DF.tmp	d------	[12:24 21/02/2016]
TCDA437.tmp	d------	[07:05 17/12/2014]
TCDA450.tmp	d------	[17:50 28/09/2015]
TCDA4F4.tmp	d------	[07:05 17/12/2014]
TCDA50.tmp	d------	[17:01 24/05/2014]
TCDA534.tmp	d------	[15:42 29/08/2016]
TCDA563.tmp	d------	[07:05 17/12/2014]
TCDA5A5.tmp	d------	[12:24 21/02/2016]
TCDA5E2.tmp	d------	[07:05 17/12/2014]
TCDA621.tmp	d------	[15:42 29/08/2016]
TCDA632.tmp	d------	[15:42 29/08/2016]
TCDA640.tmp	d------	[09:53 25/07/2014]
TCDA641.tmp	d------	[09:53 25/07/2014]
TCDA642.tmp	d------	[07:05 17/12/2014]
TCDA662.tmp	d------	[09:53 25/07/2014]
TCDA6C0.tmp	d------	[07:05 17/12/2014]
TCDA6FF.tmp	d------	[15:42 29/08/2016]
TCDA710.tmp	d------	[07:05 17/12/2014]
TCDA741.tmp	d------	[07:05 17/12/2014]
TCDA7AC.tmp	d------	[15:42 29/08/2016]
TCDA7B0.tmp	d------	[07:05 17/12/2014]
TCDA964.tmp	d------	[15:42 29/08/2016]
TCDA975.tmp	d------	[15:42 29/08/2016]
TCDA9FB.tmp	d------	[12:25 21/02/2016]
TCDAA62.tmp	d------	[19:36 22/11/2011]
TCDABAF.tmp	d------	[15:06 24/11/2014]
TCDACF4.tmp	d------	[05:32 23/05/2015]
TCDAD34.tmp	d------	[05:32 23/05/2015]
TCDAD3E.tmp	d------	[15:42 29/08/2016]
TCDAD65.tmp	d------	[15:06 24/11/2014]
TCDAD66.tmp	d------	[05:32 23/05/2015]
TCDADF5.tmp	d------	[15:06 24/11/2014]
TCDAF8C.tmp	d------	[15:06 24/11/2014]
TCDB02D.tmp	d------	[15:42 29/08/2016]
TCDB18B.tmp	d------	[12:25 21/02/2016]
TCDB59.tmp	d------	[17:53 07/07/2013]
TCDB5A.tmp	d------	[17:53 07/07/2013]
TCDB5B.tmp	d------	[17:01 24/05/2014]
TCDB7B5.tmp	d------	[12:25 21/02/2016]
TCDB85E.tmp	d------	[12:38 05/11/2016]
TCDB85F.tmp	d------	[12:38 05/11/2016]
TCDB8C6.tmp	d------	[15:42 29/08/2016]
TCDBA2E.tmp	d------	[18:59 02/07/2013]
TCDBB48.tmp	d------	[15:42 29/08/2016]
TCDBBA.tmp	d------	[17:53 07/07/2013]
TCDBC24.tmp	d------	[15:42 29/08/2016]
TCDBCA2.tmp	d------	[04:46 20/04/2015]
TCDBCA3.tmp	d------	[04:46 20/04/2015]
TCDBCA4.tmp	d------	[04:46 20/04/2015]
TCDBCA5.tmp	d------	[04:46 20/04/2015]
TCDBCA6.tmp	d------	[04:46 20/04/2015]
TCDBCA7.tmp	d------	[04:46 20/04/2015]
TCDBDEB.tmp	d------	[15:42 29/08/2016]
TCDBE08.tmp	d------	[18:59 02/07/2013]
TCDBE98.tmp	d------	[12:38 05/11/2016]
TCDC20B.tmp	d------	[19:01 27/02/2014]
TCDC228.tmp	d------	[19:02 15/06/2013]
TCDC27A.tmp	d------	[19:01 27/02/2014]
TCDC2CA.tmp	d------	[19:01 27/02/2014]
TCDC2F5.tmp	d------	[19:02 15/06/2013]
TCDC32C.tmp	d------	[12:38 05/11/2016]
TCDC3E5.tmp	d------	[19:01 27/02/2014]
TCDC400.tmp	d------	[19:02 15/06/2013]
TCDC406.tmp	d------	[12:25 21/02/2016]
TCDC46F.tmp	d------	[19:02 15/06/2013]
TCDC491.tmp	d------	[15:42 29/08/2016]
TCDC756.tmp	d------	[12:36 08/03/2014]
TCDC7A1.tmp	d------	[12:39 05/11/2016]
TCDC7B.tmp	d------	[18:50 02/12/2015]
TCDC7B5.tmp	d------	[12:36 08/03/2014]
TCDC853.tmp	d------	[12:36 08/03/2014]
TCDC89A.tmp	d------	[12:25 21/02/2016]
TCDC96.tmp	d------	[17:01 24/05/2014]
TCDC97.tmp	d------	[07:14 05/08/2014]
TCDC9CC.tmp	d------	[12:36 08/03/2014]
TCDCB09.tmp	d------	[15:42 29/08/2016]
TCDCB62.tmp	d------	[18:59 02/07/2013]
TCDCC3E.tmp	d------	[18:59 02/07/2013]
TCDCC95.tmp	d------	[15:37 25/06/2014]
TCDCC96.tmp	d------	[15:37 25/06/2014]
TCDCC97.tmp	d------	[15:37 25/06/2014]
TCDCCFC.tmp	d------	[18:59 02/07/2013]
TCDCD0E.tmp	d------	[15:42 29/08/2016]
TCDCD2E.tmp	d------	[12:25 21/02/2016]
TCDCDAC.tmp	d------	[15:42 29/08/2016]
TCDCDC8.tmp	d------	[18:59 02/07/2013]
TCDCE4A.tmp	d------	[15:42 29/08/2016]
TCDCE85.tmp	d------	[12:39 05/11/2016]
TCDCF55.tmp	d------	[15:43 29/08/2016]
TCDCF81.tmp	d------	[12:25 21/02/2016]
TCDD012.tmp	d------	[15:43 29/08/2016]
TCDD013.tmp	d------	[15:37 25/06/2014]
TCDD04A.tmp	d------	[18:59 02/07/2013]
TCDD07.tmp	d------	[20:02 09/06/2016]
TCDD0F4.tmp	d------	[04:46 20/04/2015]
TCDD136.tmp	d------	[12:39 05/11/2016]
TCDD1F9.tmp	d------	[15:43 29/08/2016]
TCDD209.tmp	d------	[15:43 29/08/2016]
TCDD2C6.tmp	d------	[15:43 29/08/2016]
TCDD2DD.tmp	d------	[18:49 02/12/2015]
TCDD2DE.tmp	d------	[18:49 02/12/2015]
TCDD2DF.tmp	d------	[18:49 02/12/2015]
TCDD2E0.tmp	d------	[18:49 02/12/2015]
TCDD393.tmp	d------	[15:43 29/08/2016]
TCDD3CC.tmp	d------	[18:49 02/12/2015]
TCDD450.tmp	d------	[15:43 29/08/2016]
TCDD50E.tmp	d------	[15:43 29/08/2016]
TCDD59B.tmp	d------	[12:25 21/02/2016]
TCDD5E9.tmp	d------	[11:17 02/11/2013]
TCDD5EA.tmp	d------	[11:17 02/11/2013]
TCDD5EB.tmp	d------	[11:17 02/11/2013]
TCDD75F.tmp	d------	[12:39 05/11/2016]
TCDD7C1.tmp	d------	[11:17 02/11/2013]
TCDD85B.tmp	d------	[12:39 05/11/2016]
TCDD89B.tmp	d------	[12:39 05/11/2016]
TCDD9C6.tmp	d------	[12:39 05/11/2016]
TCDDA2A.tmp	d------	[07:01 07/10/2014]
TCDDA2C.tmp	d------	[11:17 27/08/2015]
TCDDA2D.tmp	d------	[11:17 27/08/2015]
TCDDA2E.tmp	d------	[11:17 27/08/2015]
TCDDA3C.tmp	d------	[07:01 07/10/2014]
TCDDAB2.tmp	d------	[12:39 05/11/2016]
TCDDC12.tmp	d------	[07:01 07/10/2014]
TCDDC42.tmp	d------	[07:01 07/10/2014]
TCDDC4C.tmp	d------	[06:58 05/07/2014]
TCDDCD6.tmp	d------	[12:39 05/11/2016]
TCDDDD4.tmp	d------	[06:58 05/07/2014]
TCDDDF6.tmp	d------	[12:25 21/02/2016]
TCDDF29.tmp	d------	[12:39 05/11/2016]
TCDDF39.tmp	d------	[08:54 16/01/2015]
TCDDFAD.tmp	d------	[12:25 21/02/2016]
TCDDFCE.tmp	d------	[12:25 21/02/2016]
TCDE016.tmp	d------	[08:54 16/01/2015]
TCDE017.tmp	d------	[08:54 16/01/2015]
TCDE039.tmp	d------	[08:54 16/01/2015]
TCDE04A.tmp	d------	[08:54 16/01/2015]
TCDE08B.tmp	d------	[12:25 21/02/2016]
TCDE0B9.tmp	d------	[08:54 16/01/2015]
TCDE19B.tmp	d------	[11:05 11/05/2013]
TCDE287.tmp	d------	[11:05 11/05/2013]
TCDE2B2.tmp	d------	[18:51 17/01/2012]
TCDE2D3.tmp	d------	[12:39 05/11/2016]
TCDE2F6.tmp	d------	[11:05 11/05/2013]
TCDE327.tmp	d------	[11:05 11/05/2013]
TCDE367.tmp	d------	[11:05 11/05/2013]
TCDE37B.tmp	d------	[12:25 21/02/2016]
TCDE37C.tmp	d------	[12:25 21/02/2016]
TCDE387.tmp	d------	[18:49 02/12/2015]
TCDE43A.tmp	d------	[12:25 21/02/2016]
TCDE444.tmp	d------	[11:05 11/05/2013]
TCDE44B.tmp	d------	[12:25 21/02/2016]
TCDE4C2.tmp	d------	[11:05 11/05/2013]
TCDE512.tmp	d------	[11:05 11/05/2013]
TCDE518.tmp	d------	[12:25 21/02/2016]
TCDE585.tmp	d------	[06:58 05/07/2014]
TCDE5AB.tmp	d------	[18:49 02/12/2015]
TCDE5D5.tmp	d------	[12:25 21/02/2016]
TCDE5FE.tmp	d------	[11:05 11/05/2013]
TCDE60F.tmp	d------	[12:39 05/11/2016]
TCDE620.tmp	d------	[11:05 11/05/2013]
TCDE670.tmp	d------	[11:05 11/05/2013]
TCDE6A2.tmp	d------	[12:25 21/02/2016]
TCDE6C0.tmp	d------	[11:05 11/05/2013]
TCDE71F.tmp	d------	[11:05 11/05/2013]
TCDE74F.tmp	d------	[12:25 21/02/2016]
TCDE82D.tmp	d------	[18:49 02/12/2015]
TCDEA8E.tmp	d------	[04:46 20/04/2015]
TCDEB7E.tmp	d------	[12:39 05/11/2016]
TCDEBA9.tmp	d------	[04:46 20/04/2015]
TCDEBE6.tmp	d------	[18:51 17/01/2012]
TCDEBE9.tmp	d------	[04:46 20/04/2015]
TCDEC26.tmp	d------	[18:51 17/01/2012]
TCDEC2A.tmp	d------	[04:46 20/04/2015]
TCDEC7A.tmp	d------	[04:46 20/04/2015]
TCDED5E.tmp	d------	[18:51 17/01/2012]
TCDED63.tmp	d------	[12:39 05/11/2016]
TCDED66.tmp	d------	[04:46 20/04/2015]
TCDEDCD.tmp	d------	[18:51 17/01/2012]
TCDEDEC.tmp	d------	[18:51 17/01/2012]
TCDEEE8.tmp	d------	[18:51 17/01/2012]
TCDEEF8.tmp	d------	[18:51 17/01/2012]
TCDEFA.tmp	d------	[04:46 20/04/2015]
TCDF083.tmp	d------	[04:46 20/04/2015]
TCDF265.tmp	d------	[12:39 05/11/2016]
TCDF45A.tmp	d------	[12:39 05/11/2016]
TCDF49D.tmp	d------	[14:49 17/05/2014]
TCDF4F8.tmp	d------	[04:46 20/04/2015]
TCDF56B.tmp	d------	[14:49 17/05/2014]
TCDF57C.tmp	d------	[14:49 17/05/2014]
TCDF64.tmp	d------	[07:14 05/08/2014]
TCDF809.tmp	d------	[14:47 19/02/2012]
TCDF80A.tmp	d------	[14:47 19/02/2012]
TCDF911.tmp	d------	[08:32 28/03/2014]
TCDF921.tmp	d------	[08:32 28/03/2014]
TCDF990.tmp	d------	[08:32 28/03/2014]
TCDFB02.tmp	d------	[04:46 20/04/2015]
TCDFB51.tmp	d------	[15:04 17/03/2015]
TCDFB52.tmp	d------	[15:04 17/03/2015]
TCDFB83.tmp	d------	[15:04 17/03/2015]
TCDFC23.tmp	d------	[08:32 28/03/2014]
TCDFDC3.tmp	d------	[12:35 14/09/2014]
TCDFDD4.tmp	d------	[12:35 14/09/2014]
TCDFE.tmp	d------	[18:49 02/12/2015]
TCDFE44.tmp	d------	[12:35 14/09/2014]
TCDFE4B.tmp	d------	[12:39 05/11/2016]
TCDFF37.tmp	d------	[12:39 05/11/2016]
TCDFF96.tmp	d------	[12:39 05/11/2016]
TCDFFC4.tmp	d------	[18:49 02/12/2015]
Temp1_Lenka - Everything At Once -- Deep BlueM55211431.zip	d------	[18:36 14/12/2014]
Temp1_Zusatzdateien_FP11_1.zip	d------	[12:13 31/03/2013]
Temp1_Zusatzdateien_HP10.zip	d------	[12:45 07/04/2013]
Temp1_Zusatzdateien_HP11.zip	d------	[20:30 29/03/2013]
Temp2_Zusatzdateien_FP11_1.zip	d------	[06:39 21/11/2014]
Temp2_Zusatzdateien_HP11.zip	d------	[17:50 30/03/2013]
Temp3_Zusatzdateien_HP11.zip	d------	[14:44 13/11/2014]
Temporary Internet Files	d--hs--	[20:25 13/11/2011]
thumbs	d------	[19:21 07/05/2013]
VBE	d------	[15:05 16/04/2012]
WMPBurn	d------	[09:02 02/07/2012]
Word8.0	d------	[16:54 25/11/2012]
WPDNSE	d------	[08:20 05/11/2016]
_isA729	d------	[17:00 30/12/2011]
{08A7E1C2-EEF0-494F-9FDB-CF5B725DACF5}	d------	[12:52 05/11/2016]
{10EC57A6-43AE-4F4E-8920-BEAE840CB099}	d------	[12:51 05/11/2016]
{4545BEC3-6EE1-492B-824E-7E6B4254BB40}	d------	[16:37 30/12/2011]
{86D4B82A-ABED-442A-BE86-96357B70F4FE}	d------	[09:21 05/11/2016]
{8E4AB94D-9CB0-41A5-AE02-A25CE1B14DD7}	d------	[16:18 27/01/2013]
{8EFE83FA-5979-436E-BFDF-33B935F624F4}	d------	[16:20 27/01/2013]
{C88A72B0-D9D1-4E5F-94D2-199768DDC8FC}	d------	[12:52 05/11/2016]
{CE4B2A23-9FF8-49E0-8CB3-E3D154BFBE60}	d------	[16:20 27/01/2013]
{E260429B-0138-4D38-AD36-EFC0A9F039F7}	d------	[17:09 07/04/2013]
{E32BFCCA-BA85-4F5C-AED6-D52D9ACFBCAE}	d------	[15:51 27/01/2013]
~DEST	d------	[10:14 28/06/2012]

-= EOF =-
         

Alt 05.11.2016, 15:45   #15
deeprybka
/// TB-Ausbilder
/// Anleitungs-Guru
 
zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Standard

zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer



Schritt 1



Drücke bitte die + R Taste und schreibe notepad in das Ausführen Fenster.
Klicke auf OK und kopiere nun den Text aus der Codebox in das leere Textdokument:
Code:
ATTFilter
C:\ProgramData\gaasp-34
C:\ProgramData\parallel-30
C:\Users\Grit\AppData\Roaming\torque-6
C:\Users\Grit\AppData\Roaming\onewire-61\
C:\Users\Grit\AppData\Roaming\baseband-74\

HKU\S-1-5-21-204584621-2302456861-4053892398-1001\...\Run: [gaasp-43] => 
HKU\S-1-5-21-204584621-2302456861-4053892398-1001\...\RunOnce: [torque-12] => 
Startup: C:\Users\Grit\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\onewire-8.lnk [2016-11-05]
         
Speichere dieses bitte als Fixlist.txt in das Verzeichnis ab, in dem sich auch die FRST-Anwendung befindet.
  • Starte FRST und drücke auf den Entfernen-Button.
  • Das Tool erstellt eine "Fixlog.txt" -Datei.
  • Poste mir bitte deren Inhalt.
__________________
Gruß
deeprybka

Lob, Kritik, Wünsche?

Spende fürs trojaner-board?
_______________________________________________
„Neminem laede, immo omnes, quantum potes, iuva.“ Arthur Schopenhauer

Antwort

Themen zu zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer
administratoren, appdata, aufruf, befindet, betriebssystem, datei, doppel, doppelt, dos, email, email anhang zip datei- ms dos - netzwerk, explorer, gelöscht, gespeichert, interne, internet, nicht mehr, nichts, rechte, temp, users, verbindungen, windows, windows 7, windows explorer, wählt



Ähnliche Themen: zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer


  1. TR/Agent.7375 in C:\Users\HerrTest\AppData\Local\Temp\nscA085.tmp\temp\5FT.zip
    Log-Analyse und Auswertung - 18.10.2015 (13)
  2. gvu will svchost.exe unter C:\users\user\appdata\local\temp starten
    Log-Analyse und Auswertung - 16.01.2014 (13)
  3. C:\Users\****\AppData\Local\Temp\jrscpls.exe
    Plagegeister aller Art und deren Bekämpfung - 30.09.2013 (39)
  4. Avira meldet TR/Kryptik.58880145 unter C:\Users\test\AppData\Local\Temp\
    Plagegeister aller Art und deren Bekämpfung - 13.06.2013 (32)
  5. C:\Users\User\AppData\Local\Temp\wgsdgsdgdsgsd.exe wurde nicht Gefunden
    Log-Analyse und Auswertung - 19.12.2012 (2)
  6. C:\Users\User\AppData\Local\Temp\wgsdgsdgdsgsd.exe wurde nicht Gefunden
    Plagegeister aller Art und deren Bekämpfung - 10.11.2012 (11)
  7. C:\Users\***\AppData\Local\Temp\wgsdgsdgdsgsd.exe - Das Modul kann nicht gefunden werden.
    Plagegeister aller Art und deren Bekämpfung - 05.11.2012 (13)
  8. C:\Users\User\AppData\Local\Temp\wgsdgsdgdsgsd.exe wurde nicht Gefunden - GVU Trojaner
    Plagegeister aller Art und deren Bekämpfung - 22.09.2012 (16)
  9. C:\Users\Name\AppData\Local\Temp\g7i0ol_kaz.exe, was ist das??
    Plagegeister aller Art und deren Bekämpfung - 10.08.2012 (15)
  10. c:\users\***\appdata\local\temp\vcplt.dll
    Plagegeister aller Art und deren Bekämpfung - 05.06.2012 (21)
  11. C:/users/anwender/AppData/Local/Temp/0.9455801217990903.exe modul konnte nicht gefunden werden.
    Plagegeister aller Art und deren Bekämpfung - 08.04.2012 (1)
  12. C:\Users\***\AppData\Local\Temp!
    Plagegeister aller Art und deren Bekämpfung - 26.03.2012 (1)
  13. C:/Users/Appdata/Local/Temp/WAB.log
    Log-Analyse und Auswertung - 21.04.2011 (3)
  14. Virus Gen:Variant.Renos.61 unter C:Users\XX\AppData\Local\Temp\
    Log-Analyse und Auswertung - 23.02.2011 (5)
  15. Virus Die Datei 'C:\Users\Florian\AppData\Local\Temp\gjyE7E8.tmp'
    Log-Analyse und Auswertung - 23.11.2010 (8)
  16. Virus unter C:\Users\***\AppData\Local\Temp
    Plagegeister aller Art und deren Bekämpfung - 06.07.2010 (2)
  17. BDS/Bredavi.azd in C:\Users\****\AppData\Local\Temp\****.exe
    Plagegeister aller Art und deren Bekämpfung - 29.11.2009 (8)

Zum Thema zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer - Die Datei ließ sich beim zurückgehen im Windows Explorer nicht öffnen-Hinweis: Administratoren Rechte und in etwa die Datei befindet sich in C oder in einem Heimnetzwerk. PS=Windows 7 Betriebssystem (wo - zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer...
Archiv
Du betrachtest: zip-Datei in Email geöffnet - war unter c:\Users\Name\AppData\Local\Temp\Temp1_Name03.11.2016.zip gespeichert - Aufruf nicht möglich-Netzwer auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.