Trojaner-Board

Trojaner-Board (https://www.trojaner-board.de/)
-   Log-Analyse und Auswertung (https://www.trojaner-board.de/log-analyse-auswertung/)
-   -   Trojaner oder Virus oder sonst was schädliches ? (https://www.trojaner-board.de/127451-trojaner-virus-schaedliches.html)

Masi1711 23.11.2012 22:30

Trojaner oder Virus oder sonst was schädliches ?
 
Hallo an alle helfende user ich habe da ein "kleines" , "großes" problem



(Hilfe Fenster oder Firefox tab´s werden geöffnet)


In unregelmäßigen abständen werden die windows hilfe und support fester geöffnet oder alternativ firefox tabs ( letzte mal 320 stk. ) die sich dann zu tode laden.

Ich konnte noch keinen zusammenhang mit irgendwelchen programmen finden mal passiert es nach dem "energie sparmodus" aufwecken mal einfach so dann wieder paar tage nichts ( mit oder ohne internet verbindung immer unterschiedlich)

hier mal die logfiles von OTL
OTL EXTRAS Logfile:
Code:

OTL logfile created on: 23.11.2012 22:04:14 - Run 1
OTL by OldTimer - Version 3.2.69.0    Folder = C:\Users\Masi\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
15,90 Gb Total Physical Memory | 13,45 Gb Available Physical Memory | 84,56% Memory free
31,80 Gb Paging File | 29,46 Gb Available in Paging File | 92,65% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 74,43 Gb Total Space | 9,75 Gb Free Space | 13,09% Space Free | Partition Type: NTFS
Drive D: | 698,63 Gb Total Space | 259,87 Gb Free Space | 37,20% Space Free | Partition Type: NTFS
 
Computer Name: MASI-01 | User Name: Masi | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - [2012.11.23 21:56:36 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Masi\Desktop\OTL.exe
PRC - [2012.11.15 15:50:05 | 000,384,800 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
PRC - [2012.10.16 18:06:12 | 000,084,256 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
PRC - [2012.10.16 17:57:04 | 000,108,320 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
PRC - [2012.09.29 19:54:26 | 000,399,432 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2012.09.23 20:43:34 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2012.04.23 06:43:32 | 000,291,608 | R--- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
PRC - [2012.04.23 06:43:15 | 002,458,944 | R--- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
PRC - [2012.04.23 06:42:58 | 000,362,840 | R--- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2012.04.23 06:42:57 | 000,276,824 | R--- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2012.04.23 06:42:56 | 000,162,648 | R--- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
PRC - [2012.02.01 16:29:58 | 000,013,592 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2012.02.01 16:29:56 | 000,284,440 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
PRC - [2011.12.19 19:16:44 | 001,014,096 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
 
 
========== Modules (No Company Name) ==========
 
MOD - [2012.11.16 10:45:08 | 000,489,472 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\8bb44e1dd221cada48308ce5f5d20561\IAStorUtil.ni.dll
MOD - [2012.11.16 10:45:08 | 000,014,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\0461c2bf4c5b235c0ca1d923c10d6849\IAStorCommon.ni.dll
MOD - [2012.11.15 17:25:31 | 000,771,584 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Runtime.Remo#\413288993ff690e8251d2dbe32bee01f\System.Runtime.Remoting.ni.dll
MOD - [2012.11.15 17:25:16 | 012,436,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\d040079bc7148afeca03c5abb6fc3c61\System.Windows.Forms.ni.dll
MOD - [2012.11.15 17:25:12 | 001,591,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\4e80768a2d88c7a333e43cbb7a6c0705\System.Drawing.ni.dll
MOD - [2012.11.15 17:25:04 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\b311b783e1efaa9527f4c2c9680c44d1\WindowsBase.ni.dll
MOD - [2012.11.15 17:25:00 | 005,452,800 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\25e672ea505e50ab058258ac72a54f02\System.Xml.ni.dll
MOD - [2012.11.15 17:24:58 | 007,988,736 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\9dd758ac0bf7358ac6e4720610fcc63c\System.ni.dll
MOD - [2012.11.15 17:24:58 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\c64ca3678261c8ffcd9e7efd1af6ed54\System.Configuration.ni.dll
MOD - [2012.11.15 17:24:54 | 011,493,376 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\187d7c66735c533de851c76384f86912\mscorlib.ni.dll
MOD - [2012.04.23 06:43:15 | 000,004,096 | ---- | M] () -- C:\Program Files (x86)\NVIDIA Corporation\CoProcManager\detoured.dll
MOD - [2010.11.13 00:26:08 | 000,315,392 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll
MOD - [2009.07.14 18:58:10 | 000,032,768 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_de_b77a5c561934e089\System.Runtime.Remoting.resources.dll
 
 
========== Services (SafeList) ==========
 
SRV:64bit: - [2009.07.14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2012.11.23 21:23:26 | 000,115,168 | ---- | M] (Mozilla Foundation) [Disabled | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2012.11.15 15:50:06 | 000,561,952 | ---- | M] (Avira Operations GmbH & Co. KG) [Disabled | Stopped] -- C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE -- (AntiVirWebService)
SRV - [2012.11.08 19:51:50 | 000,529,744 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2012.10.16 18:06:12 | 000,084,256 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2012.10.16 17:57:04 | 000,108,320 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2012.10.10 02:22:26 | 000,277,024 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2012.09.29 19:54:26 | 000,676,936 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2012.09.29 19:54:26 | 000,399,432 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2012.09.23 20:43:34 | 000,065,192 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012.04.23 06:43:34 | 002,429,544 | R--- | M] (Realsil Microelectronics Inc.) [Auto | Running] -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe -- (IconMan_R)
SRV - [2012.04.23 06:43:15 | 002,458,944 | R--- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe -- (nvUpdatusService)
SRV - [2012.04.23 06:42:58 | 000,362,840 | R--- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2012.04.23 06:42:57 | 000,276,824 | R--- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2012.04.23 06:42:56 | 000,162,648 | R--- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe -- (jhi_service)
SRV - [2012.02.26 05:07:52 | 002,669,840 | ---- | M] (Intel® Corporation) [Auto | Running] -- C:\Programme\Intel\WiFi\bin\ZeroConfigService.exe -- (ZeroConfigService)
SRV - [2012.02.26 05:07:42 | 000,273,168 | ---- | M] () [On_Demand | Stopped] -- C:\Programme\Intel\WiFi\bin\PanDhcpDns.exe -- (MyWiFiDHCPDNS)
SRV - [2012.02.26 05:07:32 | 000,626,960 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Programme\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV - [2012.02.26 05:07:26 | 000,148,752 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Programme\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
SRV - [2012.02.22 15:07:28 | 000,492,032 | ---- | M] () [Disabled | Stopped] -- C:\Programme\Qualcomm Atheros\Killer Network Manager\BFNService.exe -- (Qualcomm Atheros Killer Service)
SRV - [2012.02.02 22:29:52 | 000,628,448 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Programme\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV - [2012.02.01 16:29:58 | 000,013,592 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2012.01.17 16:12:28 | 000,135,952 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Programme\Intel\BluetoothHS\BTHSSecurityMgr.exe -- (BTHSSecurityMgr)
SRV - [2012.01.09 12:39:44 | 000,659,968 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Programme\Intel\BluetoothHS\BTHSAmpPalService.exe -- (AMPPALR3)
SRV - [2011.12.19 19:16:50 | 001,104,208 | ---- | M] (Intel Corporation) [Auto | Stopped] -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe -- (Bluetooth OBEX Service)
SRV - [2011.12.19 19:16:48 | 001,304,912 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe -- (Bluetooth Media Service)
SRV - [2011.12.19 19:16:44 | 001,014,096 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe -- (Bluetooth Device Monitor)
SRV - [2010.03.18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009.06.10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - [2012.11.15 15:50:18 | 000,129,216 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2012.11.15 15:50:18 | 000,098,888 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2012.11.08 20:47:39 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2012.10.10 02:22:28 | 005,343,584 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2012.09.29 19:54:26 | 000,025,928 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2012.09.24 09:58:11 | 000,027,800 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avkmgr.sys -- (avkmgr)
DRV:64bit: - [2012.08.23 15:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012.08.23 15:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012.07.17 18:12:08 | 000,062,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2012.04.23 06:43:34 | 000,340,072 | R--- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtsPStor.sys -- (RSPCIESTOR)
DRV:64bit: - [2012.04.23 06:43:33 | 000,788,760 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3xhc.sys -- (iusb3xhc)
DRV:64bit: - [2012.04.23 06:43:32 | 000,356,120 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iusb3hub.sys -- (iusb3hub)
DRV:64bit: - [2012.04.23 06:43:32 | 000,016,152 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iusb3hcs.sys -- (iusb3hcs)
DRV:64bit: - [2012.04.23 06:43:30 | 000,143,144 | ---- | M] (ELAN Microelectronics Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ETD.sys -- (ETD)
DRV:64bit: - [2012.04.23 06:43:15 | 000,028,992 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\nvpciflt.sys -- (nvpciflt)
DRV:64bit: - [2012.04.23 06:43:10 | 000,331,264 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2012.03.01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012.02.22 15:08:32 | 000,075,880 | ---- | M] (Bigfoot Networks, Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\bflwfx64.sys -- (BfLwf)
DRV:64bit: - [2012.02.22 15:08:30 | 000,159,848 | ---- | M] (Qualcomm Atheros, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\e22W7x64.sys -- (L1C)
DRV:64bit: - [2012.02.20 12:36:58 | 011,471,872 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Netwsw00.sys -- (NETwNs64)
DRV:64bit: - [2012.02.01 16:16:40 | 000,568,600 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2012.01.09 12:32:40 | 000,195,584 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPALP)
DRV:64bit: - [2012.01.09 12:32:40 | 000,195,584 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPAL)
DRV:64bit: - [2011.12.14 14:26:56 | 000,060,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iBtFltCoex.sys -- (ibtfltcoex)
DRV:64bit: - [2011.12.13 11:26:20 | 000,747,008 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btmhsf.sys -- (btmhsf)
DRV:64bit: - [2011.12.13 11:26:18 | 000,094,720 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btmaux.sys -- (btmaux)
DRV:64bit: - [2011.03.11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.11.20 05:33:36 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 01:37:44 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2008.03.24 16:40:02 | 000,113,792 | ---- | M] (QUALCOMM Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\qcusbser.sys -- (qcusbser)
DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKCU\..\SearchScopes\{F7315587-928E-455E-9F97-123A7366B32B}: "URL" = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-4&o=APN10261&src=crm&q={searchTerms}&locale=de_DE&apn_ptnrs=^AGS&apn_dtid=^YYYYYY^YY^DE&apn_uid=204c19c7-ab1f-4f3d-b736-07deb40e5859&apn_sauid=FC4AE1DC-EB12-4EAA-B988-CDB0AFF97601
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
========== FireFox ==========
 
FF - prefs.js..browser.search.defaultengine: "Ask.com"
FF - prefs.js..browser.search.defaultenginename: "Ask.com"
FF - prefs.js..browser.search.order.1: "Ask.com"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "google.de"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:17.0
FF - prefs.js..keyword.URL: "hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=AVR-4&o=APN10261&locale=de_DE&apn_uid=204c19c7-ab1f-4f3d-b736-07deb40e5859&apn_ptnrs=%5EAGS&apn_sauid=FC4AE1DC-EB12-4EAA-B988-CDB0AFF97601&apn_dtid=%5EYYYYYY%5EYY%5EDE&&q="
FF - user.js - File not found
 
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_5_502_110.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.2: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_5_502_110.dll ()
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@qq.com/TXSSO: C:\Program Files (x86)\Common Files\Tencent\TXSSO\1.2.1.38\Bin\npSSOAxCtrlForPTLogin.dll ()
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2012.11.23 21:23:26 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 17.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 16.0.2\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components [2012.11.08 19:07:51 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 16.0.2\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins
 
[2012.11.08 19:04:55 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Masi\AppData\Roaming\mozilla\Extensions
[2012.11.08 19:04:45 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2012.11.23 21:23:26 | 000,262,112 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2012.10.24 23:03:12 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2012.10.24 23:03:11 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2012.10.24 23:03:12 | 000,001,153 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2012.10.24 23:03:12 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2012.10.24 23:03:12 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2012.10.24 23:03:11 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
 
O1 HOSTS File: ([2009.06.10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2 - BHO: (Spybot-S&D IE Protection) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Avira SearchFree Toolbar plus Web Protection) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3 - HKLM\..\Toolbar: (Avira SearchFree Toolbar plus Web Protection) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
O3 - HKCU\..\Toolbar\WebBrowser: (Avira SearchFree Toolbar plus Web Protection) - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
O4:64bit: - HKLM..\Run: [BTMTrayAgent] C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll (Intel Corporation)
O4:64bit: - HKLM..\Run: [ETDCtrl] C:\Programme\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RtHDVBg_Dolby] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: []  File not found
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [Dolby Home Theater v4] C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Dolby Laboratories Inc.)
O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe (Intel Corporation)
O4 - HKLM..\Run: [USB3MON] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation)
O4 - HKCU..\Run: [SpybotSD TeaTimer] C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (Safer Networking Limited)
O4 - HKCU..\Run: [Steam] C:\Program Files (x86)\Steam\steam.exe (Valve Corporation)
O4 - HKLM..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O4 - HKLM..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll (Malwarebytes Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O8:64bit: - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Nach Microsoft &Excel exportieren - res://C:\PROGRA~2\MICROS~1\OFFICE11\EXCEL.EXE/3000 File not found
O9 - Extra Button: Recherchieren - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\OFFICE11\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Spybot - Search && Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\Program Files (x86)\Spybot - Search & Destroy\SDHelper.dll (Safer Networking Limited)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000001 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000002 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000003 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000004 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10:64bit: - Protocol_Catalog9\Catalog_Entries64\000000000015 - C:\Windows\SysNative\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000002 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000003 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000004 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000009 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O10 - Protocol_Catalog9\Catalog_Entries\000000000015 - C:\Windows\SysWOW64\BfLLR.dll (Bigfoot Networks, Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2BBE34B7-8F4D-492A-B51F-5D6243E3D20C}: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{CBF63013-3511-47EB-B2A0-96FA023EB23A}: DhcpNameServer = 192.168.43.1
O18:64bit: - Protocol\Handler\msdaipp - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\0x00000001 - No CLSID value found
O18:64bit: - Protocol\Handler\msdaipp\oledb - No CLSID value found
O18:64bit: - Protocol\Handler\mso-offdap11 - No CLSID value found
O18 - Protocol\Handler\msdaipp\0x00000001 {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\msdaipp\oledb {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation)
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\PROGRA~2\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL (Microsoft Corporation)
O18:64bit: - Protocol\Filter\text/xml - No CLSID value found
O20:64bit: - AppInit_DLLs: (C:\Windows\system32\nvinitx.dll) - C:\Windows\SysNative\nvinitx.dll (NVIDIA Corporation)
O20 - AppInit_DLLs: (C:\Windows\SysWOW64\nvinit.dll) - C:\Windows\SysWOW64\nvinit.dll (NVIDIA Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2012.11.23 21:56:35 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Masi\Desktop\OTL.exe
[2012.11.23 21:27:22 | 000,000,000 | ---D | C] -- C:\ProgramData\SecTaskMan
[2012.11.23 13:25:00 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Malwarebytes
[2012.11.23 13:24:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012.11.23 13:24:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2012.11.23 13:24:32 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2012.11.23 13:24:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2012.11.16 13:46:53 | 000,000,000 | ---D | C] -- C:\Windows\Minidump
[2012.11.15 16:21:11 | 000,000,000 | ---D | C] -- C:\rsit
[2012.11.14 15:27:44 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Local\Adobe
[2012.11.14 15:24:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2012.11.14 15:24:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
[2012.11.13 23:03:47 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Local\ElevatedDiagnostics
[2012.11.13 23:03:44 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Local\Diagnostics
[2012.11.13 15:52:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
[2012.11.13 15:52:21 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2012.11.12 16:01:14 | 000,113,792 | ---- | C] (QUALCOMM Incorporated) -- C:\Windows\SysNative\drivers\qcusbser.sys
[2012.11.12 16:01:14 | 000,103,424 | ---- | C] (Thesycon GmbH) -- C:\Windows\SysWow64\MyDIT_GenClassCoInst.dll
[2012.11.12 16:01:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HSDPA USB Modem
[2012.11.12 16:01:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HSDPA USB Modem
[2012.11.12 15:48:52 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\vlc
[2012.11.11 09:47:56 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SPReview
[2012.11.11 09:37:30 | 000,116,224 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\fms.dll
[2012.11.11 09:37:16 | 000,093,696 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysWow64\fms.dll
[2012.11.11 09:35:37 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\EventProviders
[2012.11.10 10:24:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2012.11.10 10:24:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2012.11.10 10:24:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
[2012.11.08 21:03:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
[2012.11.08 21:03:54 | 000,000,000 | ---D | C] -- C:\Program Files\TeamSpeak 3 Client
[2012.11.08 21:03:24 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\WinRAR
[2012.11.08 21:03:24 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2012.11.08 21:03:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2012.11.08 21:03:21 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2012.11.08 21:03:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2012.11.08 21:03:04 | 000,000,000 | ---D | C] -- C:\Program Files\VideoLAN
[2012.11.08 20:57:13 | 000,000,000 | ---D | C] -- C:\Users\Masi\Application Data
[2012.11.08 20:55:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
[2012.11.08 20:55:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2012.11.08 20:55:19 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2012.11.08 20:55:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET
[2012.11.08 20:55:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2012.11.08 20:52:53 | 000,000,000 | ---D | C] -- C:\Users\Public\Documents\Tencent
[2012.11.08 20:52:43 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tencent Software
[2012.11.08 20:52:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Tencent
[2012.11.08 20:52:41 | 000,000,000 | ---D | C] -- C:\Users\Masi\Documents\Tencent Files
[2012.11.08 20:52:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Tencent
[2012.11.08 20:52:27 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Tencent
[2012.11.08 20:47:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
[2012.11.08 20:47:39 | 000,283,200 | ---- | C] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2012.11.08 20:47:37 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\DAEMON Tools Lite
[2012.11.08 20:47:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite
[2012.11.08 20:46:35 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2012.11.08 20:33:52 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
[2012.11.08 19:51:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
[2012.11.08 19:51:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Steam
[2012.11.08 19:51:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam
[2012.11.08 19:22:22 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Macromedia
[2012.11.08 19:22:22 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Local\Macromedia
[2012.11.08 19:22:22 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Adobe
[2012.11.08 19:22:10 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
[2012.11.08 19:22:09 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
[2012.11.08 19:21:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2012.11.08 19:15:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy
[2012.11.08 19:15:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2012.11.08 19:15:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Spybot - Search & Destroy
[2012.11.08 19:11:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2012.11.08 19:07:55 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Thunderbird
[2012.11.08 19:07:55 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Local\Thunderbird
[2012.11.08 19:07:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Thunderbird
[2012.11.08 19:04:49 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Mozilla
[2012.11.08 19:04:49 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Local\Mozilla
[2012.11.08 19:04:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2012.11.08 19:04:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2012.11.08 19:04:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2012.11.08 19:00:36 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Avira
[2012.11.08 18:58:39 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Local\DoNotTrackPlus
[2012.11.08 18:55:42 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Local\AskToolbar
[2012.11.08 18:55:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ask.com
[2012.11.08 18:55:31 | 000,129,216 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2012.11.08 18:55:31 | 000,098,888 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2012.11.08 18:55:31 | 000,027,800 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[2012.11.08 18:55:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2012.11.08 18:55:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Avira
[2012.11.08 18:33:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Dolby Home Theater v4
[2012.11.08 18:33:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby
[2012.11.08 18:31:47 | 000,000,000 | -H-D | C] -- C:\Windows\SysNative\WLANProfiles
[2012.11.08 18:31:38 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Intel
[2012.11.08 18:31:32 | 000,000,000 | ---D | C] -- C:\Users\Masi\Roaming
[2012.11.08 18:31:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Roaming
[2012.11.08 18:30:59 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
[2012.11.08 18:30:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Cisco
[2012.11.08 18:30:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel.sav
[2012.11.08 18:28:58 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\sda
[2012.11.08 18:27:34 | 000,000,000 | ---D | C] -- C:\Program Files\Elantech
[2012.11.08 18:27:33 | 005,018,408 | ---- | C] (ELAN Microelectronics Corp.) -- C:\Windows\SysNative\ETDUI.cpl
[2012.11.08 18:27:33 | 000,143,144 | ---- | C] (ELAN Microelectronics Corp.) -- C:\Windows\SysNative\drivers\ETD.sys
[2012.11.08 18:27:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Intel Corporation
[2012.11.08 18:26:31 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Intel Corporation
[2012.11.08 18:24:01 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\NV
[2012.11.08 18:24:01 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\NV
[2012.11.08 18:23:04 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2012.11.08 18:23:04 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2012.11.08 18:22:56 | 002,604,376 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib.dll
[2012.11.08 18:22:56 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2012.11.08 18:22:56 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2012.11.08 18:22:56 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2012.11.08 18:22:56 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2012.11.08 18:22:55 | 000,221,024 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFNHK64.dll
[2012.11.08 18:22:55 | 000,081,248 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFCOM64.dll
[2012.11.08 18:22:55 | 000,078,688 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFAPO64.dll
[2012.11.08 18:22:55 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll
[2012.11.08 18:22:52 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
[2012.11.08 18:22:52 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2012.11.08 18:22:52 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2012.11.08 18:22:52 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
[2012.11.08 18:22:52 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
[2012.11.08 18:22:52 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
[2012.11.08 18:22:49 | 003,308,376 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll
[2012.11.08 18:22:49 | 000,702,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek2.dll
[2012.11.08 18:22:49 | 000,426,328 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll
[2012.11.08 18:22:49 | 000,334,680 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVolumeSDAPO.dll
[2012.11.08 18:22:49 | 000,136,024 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll
[2012.11.08 18:22:49 | 000,118,104 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll
[2012.11.08 18:22:49 | 000,074,072 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll
[2012.11.08 18:22:48 | 003,768,152 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek.dll
[2012.11.08 18:22:48 | 002,132,824 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ.dll
[2012.11.08 18:22:48 | 000,603,984 | ---- | C] (Knowles Acoustics ) -- C:\Windows\SysNative\KAAPORT64.dll
[2012.11.08 18:22:48 | 000,341,336 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll
[2012.11.08 18:22:48 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll
[2012.11.08 18:22:45 | 002,528,832 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2012.11.08 18:22:45 | 001,756,264 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll
[2012.11.08 18:22:45 | 000,712,296 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll
[2012.11.08 18:22:45 | 000,693,352 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll
[2012.11.08 18:22:45 | 000,527,872 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PLFX64.dll
[2012.11.08 18:22:45 | 000,515,584 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PGFX64.dll
[2012.11.08 18:22:45 | 000,439,808 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PREC64.dll
[2012.11.08 18:22:44 | 001,568,360 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll
[2012.11.08 18:22:44 | 001,486,952 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll
[2012.11.08 18:22:44 | 000,728,680 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll
[2012.11.08 18:22:44 | 000,491,112 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll
[2012.11.08 18:22:44 | 000,432,744 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll
[2012.11.08 18:22:44 | 000,428,648 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll
[2012.11.08 18:22:44 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll
[2012.11.08 18:22:44 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll
[2012.11.08 18:22:44 | 000,241,768 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll
[2012.11.08 18:22:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek
[2012.11.08 18:22:37 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp
[2012.11.08 18:22:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield
[2012.11.08 18:21:55 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA
[2012.11.08 18:21:44 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2012.11.08 18:21:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NVIDIA Corporation
[2012.11.08 18:20:39 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2012.11.08 18:20:01 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Intel
[2012.11.08 18:19:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Intel
[2012.11.08 18:19:45 | 000,056,832 | ---- | C] (Khronos Group) -- C:\Windows\SysNative\OpenCL.dll
[2012.11.08 18:19:45 | 000,056,320 | ---- | C] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll
[2012.11.08 18:18:04 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
[2012.11.08 18:17:43 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\InstallShield
[2012.11.08 18:16:51 | 000,053,248 | R--- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\SysWow64\CSVer.dll
[2012.11.08 18:15:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel
[2012.11.08 18:15:51 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2012.11.08 18:15:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\postureAgent
[2012.11.08 18:15:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Intel
[2012.11.08 18:15:24 | 000,000,000 | ---D | C] -- C:\Intel
[2012.11.08 18:14:48 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information
[2012.11.08 18:14:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Qualcomm Atheros
[2012.11.08 18:14:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Bigfoot Networks
[2012.11.08 18:14:43 | 000,000,000 | ---D | C] -- C:\Program Files\Qualcomm Atheros
[2012.11.08 18:14:17 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2012.11.08 18:11:45 | 000,000,000 | R--D | C] -- C:\Users\Masi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2012.11.08 18:11:45 | 000,000,000 | R--D | C] -- C:\Users\Masi\Searches
[2012.11.08 18:11:45 | 000,000,000 | R--D | C] -- C:\Users\Masi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2012.11.08 18:11:39 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Identities
[2012.11.08 18:11:38 | 000,000,000 | R--D | C] -- C:\Users\Masi\Contacts
[2012.11.08 18:11:37 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Local\VirtualStore
[2012.11.08 18:11:33 | 000,000,000 | --SD | C] -- C:\Users\Masi\AppData\Roaming\Microsoft
[2012.11.08 18:11:33 | 000,000,000 | R--D | C] -- C:\Users\Masi\Videos
[2012.11.08 18:11:33 | 000,000,000 | R--D | C] -- C:\Users\Masi\Saved Games
[2012.11.08 18:11:33 | 000,000,000 | R--D | C] -- C:\Users\Masi\Pictures
[2012.11.08 18:11:33 | 000,000,000 | R--D | C] -- C:\Users\Masi\Music
[2012.11.08 18:11:33 | 000,000,000 | R--D | C] -- C:\Users\Masi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2012.11.08 18:11:33 | 000,000,000 | R--D | C] -- C:\Users\Masi\Links
[2012.11.08 18:11:33 | 000,000,000 | R--D | C] -- C:\Users\Masi\Favorites
[2012.11.08 18:11:33 | 000,000,000 | R--D | C] -- C:\Users\Masi\Downloads
[2012.11.08 18:11:33 | 000,000,000 | R--D | C] -- C:\Users\Masi\Documents
[2012.11.08 18:11:33 | 000,000,000 | R--D | C] -- C:\Users\Masi\Desktop
[2012.11.08 18:11:33 | 000,000,000 | R--D | C] -- C:\Users\Masi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\Vorlagen
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\AppData\Local\Verlauf
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\AppData\Local\Temporary Internet Files
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\Startmenü
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\SendTo
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\Recent
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\Netzwerkumgebung
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\Lokale Einstellungen
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\Documents\Eigene Videos
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\Documents\Eigene Musik
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\Eigene Dateien
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\Documents\Eigene Bilder
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\Druckumgebung
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\Cookies
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\AppData\Local\Anwendungsdaten
[2012.11.08 18:11:33 | 000,000,000 | -HSD | C] -- C:\Users\Masi\Anwendungsdaten
[2012.11.08 18:11:33 | 000,000,000 | -H-D | C] -- C:\Users\Masi\AppData
[2012.11.08 18:11:33 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Local\Temp
[2012.11.08 18:11:33 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Local\Microsoft
[2012.11.08 18:11:33 | 000,000,000 | ---D | C] -- C:\Users\Masi\AppData\Roaming\Media Center Programs
[2012.11.08 18:09:33 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen
[2012.11.08 18:09:33 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü
[2012.11.08 18:09:33 | 000,000,000 | -HSD | C] -- C:\Recovery
[2012.11.08 18:09:33 | 000,000,000 | -HSD | C] -- C:\Programme
[2012.11.08 18:09:33 | 000,000,000 | -HSD | C] -- C:\Program Files\Gemeinsame Dateien
[2012.11.08 18:09:33 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten
[2012.11.08 18:09:33 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos
[2012.11.08 18:09:33 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik
[2012.11.08 18:09:33 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder
[2012.11.08 18:09:33 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen
[2012.11.08 18:09:33 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente
[2012.11.08 18:09:33 | 000,000,000 | -HSD | C] -- C:\ProgramData\Desktop
[2012.11.08 18:09:33 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten
[2012.11.08 18:09:30 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2012.11.08 18:06:47 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[2012.11.08 18:06:46 | 000,000,000 | ---D | C] -- C:\Windows\CSC
 
========== Files - Modified Within 30 Days ==========
 
[2012.11.23 22:02:39 | 000,000,168 | ---- | M] () -- C:\Users\Masi\defogger_reenable
[2012.11.23 21:56:36 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Masi\Desktop\OTL.exe
[2012.11.23 21:56:23 | 000,050,477 | ---- | M] () -- C:\Users\Masi\Desktop\Defogger.exe
[2012.11.23 21:40:05 | 000,010,410 | ---- | M] () -- C:\Users\Masi\Documents\hijackthis2
[2012.11.23 21:19:20 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.11.23 13:24:33 | 000,001,113 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012.11.23 13:14:56 | 001,498,506 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012.11.23 13:14:56 | 000,654,166 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2012.11.23 13:14:56 | 000,616,008 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012.11.23 13:14:56 | 000,130,006 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2012.11.23 13:14:56 | 000,106,388 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012.11.23 13:13:51 | 000,014,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012.11.23 13:13:51 | 000,014,016 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012.11.23 13:08:42 | 4213,768,190 | -HS- | M] () -- C:\hiberfil.sys
[2012.11.15 17:17:57 | 000,287,600 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012.11.15 16:17:17 | 000,880,274 | ---- | M] () -- C:\Users\Masi\AppData\Local\census.cache
[2012.11.15 16:17:10 | 000,100,253 | ---- | M] () -- C:\Users\Masi\AppData\Local\ars.cache
[2012.11.15 16:11:48 | 000,000,036 | ---- | M] () -- C:\Users\Masi\AppData\Local\housecall.guid.cache
[2012.11.15 15:50:18 | 000,129,216 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2012.11.15 15:50:18 | 000,098,888 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2012.11.14 15:24:55 | 000,002,019 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk
[2012.11.13 17:16:29 | 000,000,222 | ---- | M] () -- C:\Users\Masi\Desktop\Call of Duty Black Ops II.url
[2012.11.13 17:16:29 | 000,000,222 | ---- | M] () -- C:\Users\Masi\Desktop\Call of Duty Black Ops II - Zombies.url
[2012.11.13 17:16:29 | 000,000,222 | ---- | M] () -- C:\Users\Masi\Desktop\Call of Duty Black Ops II - Multiplayer.url
[2012.11.13 15:52:22 | 000,000,822 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2012.11.12 16:01:14 | 000,001,065 | ---- | M] () -- C:\Users\Masi\Desktop\USB Modem.lnk
[2012.11.09 14:37:50 | 000,072,822 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
[2012.11.09 14:37:50 | 000,072,822 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf
[2012.11.08 21:03:55 | 000,000,967 | ---- | M] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
[2012.11.08 21:03:07 | 000,000,871 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2012.11.08 20:57:00 | 000,002,703 | ---- | M] () -- C:\Users\Masi\Desktop\Microsoft Office Word 2003.lnk
[2012.11.08 20:56:55 | 000,002,735 | ---- | M] () -- C:\Users\Masi\Desktop\Microsoft Office Excel 2003.lnk
[2012.11.08 20:55:34 | 000,000,400 | ---- | M] () -- C:\Windows\ODBC.INI
[2012.11.08 20:52:44 | 000,002,243 | ---- | M] () -- C:\Users\Masi\Desktop\Tencent QQ.lnk
[2012.11.08 20:52:26 | 000,018,760 | ---- | M] () -- C:\Windows\SysWow64\QQVistaHelper.dll
[2012.11.08 20:51:29 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2012.11.08 20:48:02 | 000,001,954 | ---- | M] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2012.11.08 20:47:39 | 000,283,200 | ---- | M] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys
[2012.11.08 20:33:52 | 000,000,221 | ---- | M] () -- C:\Users\Masi\Desktop\Call of Duty Modern Warfare 3 - Multiplayer.url
[2012.11.08 19:04:46 | 000,001,151 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2012.11.08 18:35:18 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_btmaux_01009.Wdf
[2012.11.08 18:35:16 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iBtFltCoex_01009.Wdf
[2012.11.08 18:32:01 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_AMPPAL_01009.Wdf
[2012.11.08 18:28:26 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iusb3hcs_01009.Wdf
[2012.11.08 18:24:22 | 000,019,580 | ---- | M] () -- C:\Windows\SysNative\results.xml
[2012.11.08 18:14:46 | 000,002,238 | ---- | M] () -- C:\Users\Public\Desktop\Qualcomm Atheros Killer Network Manager.lnk
[2012.11.08 18:07:32 | 000,057,050 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
[2012.11.08 18:07:32 | 000,057,050 | ---- | M] () -- C:\Windows\SysNative\license.rtf
 
========== Files Created - No Company Name ==========
 
[2012.11.23 22:02:39 | 000,000,168 | ---- | C] () -- C:\Users\Masi\defogger_reenable
[2012.11.23 21:56:22 | 000,050,477 | ---- | C] () -- C:\Users\Masi\Desktop\Defogger.exe
[2012.11.23 21:40:05 | 000,010,410 | ---- | C] () -- C:\Users\Masi\Documents\hijackthis2
[2012.11.23 13:24:33 | 000,001,113 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
[2012.11.15 16:54:02 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
[2012.11.15 16:46:22 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
[2012.11.15 16:17:17 | 000,880,274 | ---- | C] () -- C:\Users\Masi\AppData\Local\census.cache
[2012.11.15 16:17:10 | 000,100,253 | ---- | C] () -- C:\Users\Masi\AppData\Local\ars.cache
[2012.11.15 16:11:48 | 000,000,036 | ---- | C] () -- C:\Users\Masi\AppData\Local\housecall.guid.cache
[2012.11.14 15:24:54 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
[2012.11.14 15:24:54 | 000,002,019 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk
[2012.11.13 17:16:29 | 000,000,222 | ---- | C] () -- C:\Users\Masi\Desktop\Call of Duty Black Ops II.url
[2012.11.13 17:16:29 | 000,000,222 | ---- | C] () -- C:\Users\Masi\Desktop\Call of Duty Black Ops II - Zombies.url
[2012.11.13 17:16:29 | 000,000,222 | ---- | C] () -- C:\Users\Masi\Desktop\Call of Duty Black Ops II - Multiplayer.url
[2012.11.13 15:52:22 | 000,000,822 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2012.11.12 16:01:14 | 000,001,065 | ---- | C] () -- C:\Users\Masi\Desktop\USB Modem.lnk
[2012.11.11 09:37:38 | 000,347,904 | ---- | C] () -- C:\Windows\SysNative\systemsf.ebd
[2012.11.11 09:37:30 | 000,001,041 | ---- | C] () -- C:\Windows\SysWow64\tcpbidi.xml
[2012.11.11 09:37:20 | 000,095,744 | ---- | C] () -- C:\Windows\SysNative\RDVGHelper.exe
[2012.11.11 09:37:18 | 000,146,389 | ---- | C] () -- C:\Windows\SysWow64\printmanagement.msc
[2012.11.11 09:37:18 | 000,010,429 | ---- | C] () -- C:\Windows\SysNative\ScavengeSpace.xml
[2012.11.11 09:37:17 | 000,105,559 | ---- | C] () -- C:\Windows\SysWow64\RacRules.xml
[2012.11.11 09:37:17 | 000,105,559 | ---- | C] () -- C:\Windows\SysNative\RacRules.xml
[2012.11.09 14:37:50 | 000,072,822 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
[2012.11.09 14:37:50 | 000,072,822 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf
[2012.11.08 21:03:55 | 000,000,967 | ---- | C] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
[2012.11.08 21:03:07 | 000,000,871 | ---- | C] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2012.11.08 20:57:00 | 000,002,703 | ---- | C] () -- C:\Users\Masi\Desktop\Microsoft Office Word 2003.lnk
[2012.11.08 20:56:55 | 000,002,735 | ---- | C] () -- C:\Users\Masi\Desktop\Microsoft Office Excel 2003.lnk
[2012.11.08 20:55:34 | 000,000,400 | ---- | C] () -- C:\Windows\ODBC.INI
[2012.11.08 20:52:44 | 000,002,243 | ---- | C] () -- C:\Users\Masi\Desktop\Tencent QQ.lnk
[2012.11.08 20:52:26 | 000,018,760 | ---- | C] () -- C:\Windows\SysWow64\QQVistaHelper.dll
[2012.11.08 20:51:29 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2012.11.08 20:48:02 | 000,001,954 | ---- | C] () -- C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
[2012.11.08 20:33:52 | 000,000,221 | ---- | C] () -- C:\Users\Masi\Desktop\Call of Duty Modern Warfare 3 - Multiplayer.url
[2012.11.08 19:07:52 | 000,002,102 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
[2012.11.08 19:04:46 | 000,001,163 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2012.11.08 19:04:46 | 000,001,151 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2012.11.08 18:35:18 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_btmaux_01009.Wdf
[2012.11.08 18:35:16 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iBtFltCoex_01009.Wdf
[2012.11.08 18:32:01 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_AMPPAL_01009.Wdf
[2012.11.08 18:28:26 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iusb3hcs_01009.Wdf
[2012.11.08 18:24:22 | 000,019,580 | ---- | C] () -- C:\Windows\SysNative\results.xml
[2012.11.08 18:22:52 | 000,202,904 | ---- | C] () -- C:\Windows\SysNative\drivers\RTAIODAT.DAT
[2012.11.08 18:21:51 | 002,487,744 | ---- | C] () -- C:\Windows\SysNative\nvcoproc.bin
[2012.11.08 18:21:39 | 000,011,770 | ---- | C] () -- C:\Windows\SysNative\nvinfo.pb
[2012.11.08 18:19:45 | 001,981,696 | ---- | C] () -- C:\Windows\SysNative\iglhxa64.cpa
[2012.11.08 18:19:45 | 000,735,796 | ---- | C] () -- C:\Windows\SysWow64\igkrng700.bin
[2012.11.08 18:19:45 | 000,735,796 | ---- | C] () -- C:\Windows\SysNative\igkrng700.bin
[2012.11.08 18:19:45 | 000,561,508 | ---- | C] () -- C:\Windows\SysWow64\igfcg700m.bin
[2012.11.08 18:19:45 | 000,561,508 | ---- | C] () -- C:\Windows\SysNative\igfcg700m.bin
[2012.11.08 18:19:45 | 000,094,208 | ---- | C] () -- C:\Windows\SysNative\IccLibDll_x64.dll
[2012.11.08 18:19:45 | 000,059,425 | ---- | C] () -- C:\Windows\SysNative\iglhxo64.vp
[2012.11.08 18:19:45 | 000,059,398 | ---- | C] () -- C:\Windows\SysNative\iglhxg64.vp
[2012.11.08 18:19:45 | 000,059,230 | ---- | C] () -- C:\Windows\SysNative\iglhxc64.vp
[2012.11.08 18:19:45 | 000,059,104 | ---- | C] () -- C:\Windows\SysNative\iglhxc64_dev.vp
[2012.11.08 18:19:45 | 000,058,796 | ---- | C] () -- C:\Windows\SysNative\iglhxg64_dev.vp
[2012.11.08 18:19:45 | 000,058,109 | ---- | C] () -- C:\Windows\SysNative\iglhxo64_dev.vp
[2012.11.08 18:15:57 | 000,015,128 | R--- | C] () -- C:\Windows\SysNative\drivers\IntelMEFWVer.dll
[2012.11.08 18:14:46 | 000,002,238 | ---- | C] () -- C:\Users\Public\Desktop\Qualcomm Atheros Killer Network Manager.lnk
[2012.11.08 18:11:48 | 000,001,409 | ---- | C] () -- C:\Users\Masi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
[2012.11.08 18:11:46 | 000,001,443 | ---- | C] () -- C:\Users\Masi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2012.11.08 18:06:42 | 4213,768,190 | -HS- | C] () -- C:\hiberfil.sys
[2012.10.10 02:22:34 | 000,064,512 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
[2012.10.10 02:22:32 | 000,598,780 | ---- | C] () -- C:\Windows\SysWow64\igvpkrng700.bin
[2012.10.10 02:22:16 | 000,755,048 | ---- | C] () -- C:\Windows\SysWow64\igcodeckrng700.bin
[2012.02.02 22:08:26 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll
 
========== ZeroAccess Check ==========
 
[2009.07.14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012.06.09 06:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012.06.09 05:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 04:19:04 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
========== LOP Check ==========
 
[2012.11.13 15:54:26 | 000,000,000 | ---D | M] -- C:\Users\Masi\AppData\Roaming\DAEMON Tools Lite
[2012.11.08 20:52:42 | 000,000,000 | ---D | M] -- C:\Users\Masi\AppData\Roaming\Tencent
[2012.11.08 19:07:55 | 000,000,000 | ---D | M] -- C:\Users\Masi\AppData\Roaming\Thunderbird
 
========== Purity Check ==========
 
 

< End of report >

--- --- ---




und hier die Extra file
OTL EXTRAS Logfile:
Code:

OTL Extras logfile created on: 23.11.2012 22:04:14 - Run 1
OTL by OldTimer - Version 3.2.69.0    Folder = C:\Users\Masi\Desktop
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
15,90 Gb Total Physical Memory | 13,45 Gb Available Physical Memory | 84,56% Memory free
31,80 Gb Paging File | 29,46 Gb Available in Paging File | 92,65% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 74,43 Gb Total Space | 9,75 Gb Free Space | 13,09% Space Free | Partition Type: NTFS
Drive D: | 698,63 Gb Total Space | 259,87 Gb Free Space | 37,20% Space Free | Partition Type: NTFS
 
Computer Name: MASI-01 | User Name: Masi | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
 
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
========== Shell Spawning ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
========== Security Center Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
 
========== Authorized Applications List ==========
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{024A6E9B-D9D3-4673-B290-605FE386E205}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{07EECE55-5FBC-4EF9-A6D9-E44FBE1576F4}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe |
"{0C4219F5-7279-4550-8C0B-CD85AD55B8A5}" = protocol=6 | dir=in | app=c:\program files (x86)\tencent\qqintl\bin\auclt.exe |
"{0FFB0488-7256-4B11-92BF-889B95E00F9C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6zm.exe |
"{121A1439-5F67-4B54-9487-4E538DABFBD8}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe |
"{1BA27DDA-5FED-4A79-BE93-B6746F9E7819}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6zm.exe |
"{1E93798B-814D-4660-95CC-BD9342404FD5}" = protocol=17 | dir=in | app=c:\program files (x86)\tencent\qqintl\bin\auclt.exe |
"{1EFB82AA-0D85-4CA4-BAC7-611C372FA9B1}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6mp.exe |
"{48A50637-1ECB-4077-9464-6DE5503F1C0A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6sp.exe |
"{4A95A141-CE55-4F54-8A31-408A3DE6191F}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty modern warfare 3\iw5mp.exe |
"{52B735D4-67B6-4C03-8ED3-E3D80A543C69}" = protocol=6 | dir=in | app=c:\program files (x86)\tencent\qqintl\bin\txupd.exe |
"{77395009-B7F1-46A1-9444-AE03C7A1459C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6mp.exe |
"{7B6B58B0-4C64-40A1-8BBB-E058095B1563}" = protocol=17 | dir=in | app=c:\program files (x86)\tencent\qqintl\bin\txupd.exe |
"{7B8D5F47-97CD-49C8-BA5D-8EF91289C57B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6mp.exe |
"{84F14710-98B9-443D-8C31-4451737F1ACE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6mp.exe |
"{9355AA0F-FDA9-4675-A1BF-5FF4EC2E8142}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6zm.exe |
"{AB88809F-B4EF-46B0-98D4-1BF00ED7CF70}" = protocol=6 | dir=in | app=c:\program files (x86)\tencent\qqintl\bin\qq.exe |
"{BFD0D70A-0AD8-4E1C-AA09-1301391CA9D9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6sp.exe |
"{CBB29B15-7F62-4E49-8FA4-FCAD494EE2AB}" = protocol=17 | dir=in | app=c:\program files (x86)\tencent\qqintl\bin\qq.exe |
"{DD33E6AF-C95C-4577-AF49-088282AB5166}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6zm.exe |
"{E29B251E-F733-40B7-A6E7-454B9D5749BD}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6sp.exe |
"{E2E1DFC1-119E-45B9-A70E-566785427D91}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6sp.exe |
"{E61D8955-27AF-438E-9335-3CE2CC97B691}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty modern warfare 3\iw5mp.exe |
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{09536BA1-E498-4CC3-B834-D884A67D7E34}" = Intel® Trusted Connect Service Client
"{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
"{37EC048A-81A2-452A-8D1F-3BE2018E767D}" = Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Systemsteuerung 295.62
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Grafiktreiber 295.62
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus 1.7.12
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.7.12
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{DF446558-ADF7-4884-9B2D-281979CCE71F}" = Qualcomm Atheros Killer Network Manager
"{E97F409F-9E1C-42A0-B72D-765A78DF3696}" = Intel® PROSet/Wireless WiFi-Software
"{F0932859-AA60-459E-B843-0BDECA34E2C7}" = Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CCleaner" = CCleaner
"Elantech" = ETDWare PS/2-X64 8.0.5.7_WHQL
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"ProInst" = Intel PROSet Wireless
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"VLC media player" = VLC media player 2.0.2
"WinRAR archiver" = WinRAR 4.20 (64-Bit)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{240C3DDD-C5E9-4029-9DF7-95650D040CF2}" = Intel(R) USB 3.0 eXtensible Host Controller Driver
"{26A24AE4-039D-4CA4-87B4-2F83217009FF}" = Java 7 Update 9
"{3CA54984-A14B-42FE-9FF1-7EA90151D725}" = Tencent QQ
"{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}" = Intel(R) Rapid Storage Technology
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{86D4B82A-ABED-442A-BE86-96357B70F4FE}" = Ask Toolbar
"{90110407-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{AC76BA86-7AD7-1031-7B44-AB0000000001}" = Adobe Reader XI - Deutsch
"{B26438B4-BF51-49C3-9567-7F14A5E40CB9}" = Dolby Home Theater v4
"{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy
"{C1594429-8296-4652-BF54-9DBE4932A44C}" = Realtek PCIE Card Reader
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{FCB3772C-B7D0-4933-B1A9-3707EBACC573}" = Intel(R) OpenCL CPU Runtime
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Avira AntiVir Desktop" = Avira Free Antivirus
"DAEMON Tools Lite" = DAEMON Tools Lite
"HSDPA USB Modem Normal Version_is1" = HSDPA USB Modem version 4.752
"InstallShield_{DF446558-ADF7-4884-9B2D-281979CCE71F}" = Qualcomm Atheros Killer Network Manager
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware Version 1.65.1.1000
"Mozilla Firefox 17.0 (x86 de)" = Mozilla Firefox 17.0 (x86 de)
"Mozilla Thunderbird 16.0.2 (x86 de)" = Mozilla Thunderbird 16.0.2 (x86 de)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Steam App 202970" = Call of Duty: Black Ops II
"Steam App 202990" = Call of Duty: Black Ops II - Multiplayer
"Steam App 212910" = Call of Duty: Black Ops II - Zombies
"Steam App 42690" = Call of Duty: Modern Warfare 3 - Multiplayer
 
========== HKEY_CURRENT_USER Uninstall List ==========
 
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{79A765E1-C399-405B-85AF-466F52E918B0}" = Avira SearchFree Toolbar plus Web Protection Updater
 
========== Last 20 Event Log Errors ==========
 
[ Application Events ]
Error - 11.11.2012 04:51:22 | Computer Name = Masi-01 | Source = ESENT | ID = 215
Description = WinMail (3920) WindowsMail0: Die Sicherung wurde abgebrochen, weil
 sie vom Client angehalten wurde, oder weil die Verbindung mit dem Client unterbrochen
 wurde.
 
Error - 11.11.2012 04:51:25 | Computer Name = Masi-01 | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files
 (x86)\Tencent\QQIntl\Bin\QQ.exe".  Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 12.11.2012 10:50:38 | Computer Name = Masi-01 | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files
 (x86)\Tencent\QQIntl\Bin\QQ.exe".  Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 13.11.2012 10:01:41 | Computer Name = Masi-01 | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files
 (x86)\Tencent\QQIntl\Bin\QQ.exe".  Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 13.11.2012 10:04:00 | Computer Name = Masi-01 | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files
 (x86)\Tencent\QQIntl\Bin\QQ.exe".  Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 13.11.2012 10:19:22 | Computer Name = Masi-01 | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files
 (x86)\Tencent\QQIntl\Bin\QQ.exe".  Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 14.11.2012 10:25:05 | Computer Name = Masi-01 | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files
 (x86)\Tencent\QQIntl\Bin\QQ.exe".  Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 15.11.2012 11:24:36 | Computer Name = Masi-01 | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files
 (x86)\Tencent\QQIntl\Bin\QQ.exe".  Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 16.11.2012 08:48:10 | Computer Name = Masi-01 | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files
 (x86)\Tencent\QQIntl\Bin\QQ.exe".  Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 16.11.2012 08:48:27 | Computer Name = Masi-01 | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files
 (x86)\Tencent\QQIntl\Bin\QQ.exe".  Die abhängige Assemblierung "Microsoft.VC80.ATL,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50727.4053""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
[ System Events ]
Error - 18.11.2012 16:42:39 | Computer Name = Masi-01 | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Bluetooth OBEX Service" ist vom Dienst "Bluetooth-Unterstützungsdienst"
 abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:  %%1058
 
Error - 19.11.2012 23:42:04 | Computer Name = Masi-01 | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Bluetooth OBEX Service" ist vom Dienst "Bluetooth-Unterstützungsdienst"
 abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:  %%1058
 
Error - 19.11.2012 23:43:23 | Computer Name = Masi-01 | Source = DCOM | ID = 10005
Description =
 
Error - 19.11.2012 23:43:23 | Computer Name = Masi-01 | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Bluetooth OBEX Service" ist vom Dienst "Bluetooth-Unterstützungsdienst"
 abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:  %%1058
 
Error - 20.11.2012 10:22:58 | Computer Name = Masi-01 | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Bluetooth OBEX Service" ist vom Dienst "Bluetooth-Unterstützungsdienst"
 abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:  %%1058
 
Error - 20.11.2012 10:25:50 | Computer Name = Masi-01 | Source = DCOM | ID = 10005
Description =
 
Error - 20.11.2012 10:25:50 | Computer Name = Masi-01 | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Bluetooth OBEX Service" ist vom Dienst "Bluetooth-Unterstützungsdienst"
 abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:  %%1058
 
Error - 21.11.2012 09:11:29 | Computer Name = Masi-01 | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Bluetooth OBEX Service" ist vom Dienst "Bluetooth-Unterstützungsdienst"
 abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:  %%1058
 
Error - 21.11.2012 09:11:49 | Computer Name = Masi-01 | Source = DCOM | ID = 10005
Description =
 
Error - 21.11.2012 09:11:49 | Computer Name = Masi-01 | Source = Service Control Manager | ID = 7001
Description = Der Dienst "Bluetooth OBEX Service" ist vom Dienst "Bluetooth-Unterstützungsdienst"
 abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde:  %%1058
 
 
< End of report >

--- --- ---

schrauber 26.11.2012 11:48

Hi,


Downloade dir bitte aswMBR.exe und speichere die Datei auf deinem Desktop.
  • Starte die aswMBR.exe - (aswMBR.exe Anleitung)
    Vista und Win7 User mit Rechtsklick "als Admininstartor starten"
  • Das Tool wird dich fragen, ob Du mit der aktuellen Virendefinition von AVAST! dein System scannen willst. Beantworte diese Frage bitte mit Ja. ( Sollte deine Firewall fragen, bitte den Zugriff auf das Internet zulassen )
    Der Download der Definitionen kann je nach Verbindung eine Weile dauern.
  • Klicke auf Scan.
  • Warte bitte bis Scan finished successfully im DOS Fenster steht.
  • Drücke auf Save Log und speichere diese auf dem Desktop.
Poste mir die aswMBR.txt in deiner nächsten Antwort.

Wichtig: Drücke keinesfalls einen der Fix Buttons ohne Anweisung

Hinweis: Sollte der Scan Button ausgeblendet sein, schließe das Tool und starte es erneut. Sollte es erneut nicht klappen teile mir das bitte mit.

Masi1711 27.11.2012 12:04

Moin

sorry hat ein wenig länger gedauert aber nun hier die log
Code:

aswMBR version 0.9.9.1707 Copyright(c) 2011 AVAST Software
Run date: 2012-11-27 11:53:58
-----------------------------
11:53:58.122    OS Version: Windows x64 6.1.7601 Service Pack 1
11:53:58.122    Number of processors: 8 586 0x3A09
11:53:58.122    ComputerName: MASI-01  UserName: Masi
11:53:58.231    Initialize success
11:59:19.322    Disk 0 (boot) \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1
11:59:19.338    Disk 0 Vendor: INTEL_SS 4PC1 Size: 76319MB BusType: 3
11:59:19.338    Disk 1  \Device\Harddisk1\DR1 -> \Device\Ide\IAAStorageDevice-2
11:59:19.338    Disk 1 Vendor: ST975042 0001 Size: 715404MB BusType: 3
11:59:19.338    Disk 0 MBR read successfully
11:59:19.338    Disk 0 MBR scan
11:59:19.354    Disk 0 Windows 7 default MBR code
11:59:19.354    Disk 0 Partition 1 80 (A) 07    HPFS/NTFS NTFS          100 MB offset 2048
11:59:19.354    Disk 0 Partition 2 00    07    HPFS/NTFS NTFS        76217 MB offset 206848
11:59:19.354    Disk 0 scanning C:\Windows\system32\drivers
11:59:20.383    Service scanning
11:59:22.942    Modules scanning
11:59:22.942    Disk 0 trace - called modules:
11:59:22.957    ntoskrnl.exe CLASSPNP.SYS disk.sys ACPI.sys iaStor.sys hal.dll
11:59:22.957    1 nt!IofCallDriver -> \Device\Harddisk0\DR0[0xfffffa800d3a1790]
11:59:22.973    3 CLASSPNP.SYS[fffff88001a5143f] -> nt!IofCallDriver -> [0xfffffa800cf629f0]
11:59:22.973    5 ACPI.sys[fffff88000f9d7a1] -> nt!IofCallDriver -> \Device\Ide\IAAStorageDevice-1[0xfffffa800cf65050]
11:59:22.973    Scan finished successfully
11:59:37.949    Disk 0 MBR has been saved successfully to "C:\Users\Masi\Desktop\MBR.dat"
11:59:37.964    The log file has been saved successfully to "C:\Users\Masi\Desktop\aswMBR1.txt"


schrauber 27.11.2012 13:08

Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!
Downloade dir bitte Combofix vom folgenden Downloadspiegel

Link 1


WICHTIG - Speichere Combofix auf deinem Desktop
  • Deaktiviere bitte all deine Anti Viren sowie Anti Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören.
Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.

Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort.


Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Zitat:

Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.

Masi1711 27.11.2012 14:31

diesmal etwas schneller und schon mal vielen vielen dank für deine hilfe

Combofix Logfile:
Code:

ComboFix 12-11-27.01 - Masi 27.11.2012  14:24:21.1.8 - x64
Microsoft Windows 7 Ultimate  6.1.7601.1.1252.49.1031.18.16281.14285 [GMT 1:00]
ausgeführt von:: c:\users\Masi\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 * Neuer Wiederherstellungspunkt wurde erstellt
.
.
((((((((((((((((((((((((((((((((((((  Weitere Löschungen  ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\Roaming
.
.
(((((((((((((((((((((((  Dateien erstellt von 2012-10-27 bis 2012-11-27  ))))))))))))))))))))))))))))))
.
.
2012-11-27 13:26 . 2012-11-27 13:26        --------        d-----w-        c:\users\Default\AppData\Local\temp
2012-11-23 20:27 . 2012-11-23 20:30        --------        d-----w-        c:\programdata\SecTaskMan
2012-11-23 12:24 . 2012-11-23 12:24        --------        d-----w-        c:\programdata\Malwarebytes
2012-11-23 12:24 . 2012-11-23 12:24        --------        d-----w-        c:\program files (x86)\Malwarebytes' Anti-Malware
2012-11-23 12:24 . 2012-09-29 18:54        25928        ----a-w-        c:\windows\system32\drivers\mbam.sys
2012-11-15 16:21 . 2012-08-24 18:09        458712        ----a-w-        c:\windows\system32\drivers\cng.sys
2012-11-15 16:21 . 2012-08-24 18:05        340992        ----a-w-        c:\windows\system32\schannel.dll
2012-11-15 16:21 . 2012-08-24 18:04        307200        ----a-w-        c:\windows\system32\ncrypt.dll
2012-11-15 16:21 . 2012-08-24 16:57        247808        ----a-w-        c:\windows\SysWow64\schannel.dll
2012-11-15 16:21 . 2012-08-24 18:13        154480        ----a-w-        c:\windows\system32\drivers\ksecpkg.sys
2012-11-15 16:21 . 2012-08-24 18:03        1448448        ----a-w-        c:\windows\system32\lsasrv.dll
2012-11-15 16:21 . 2012-08-24 16:57        22016        ----a-w-        c:\windows\SysWow64\secur32.dll
2012-11-15 16:21 . 2012-08-24 16:57        220160        ----a-w-        c:\windows\SysWow64\ncrypt.dll
2012-11-15 16:21 . 2012-08-24 16:53        96768        ----a-w-        c:\windows\SysWow64\sspicli.dll
2012-11-15 16:21 . 2012-05-04 11:00        366592        ----a-w-        c:\windows\system32\qdvd.dll
2012-11-15 16:21 . 2012-05-04 09:59        514560        ----a-w-        c:\windows\SysWow64\qdvd.dll
2012-11-15 16:19 . 2011-02-19 12:05        1139200        ----a-w-        c:\windows\system32\FntCache.dll
2012-11-15 16:19 . 2011-02-19 12:04        902656        ----a-w-        c:\windows\system32\d2d1.dll
2012-11-15 16:19 . 2011-02-19 06:30        739840        ----a-w-        c:\windows\SysWow64\d2d1.dll
2012-11-15 15:54 . 2012-07-26 07:46        2560        ----a-w-        c:\windows\system32\drivers\de-DE\wdf01000.sys.mui
2012-11-15 15:54 . 2012-07-26 04:55        785512        ----a-w-        c:\windows\system32\drivers\Wdf01000.sys
2012-11-15 15:54 . 2012-07-26 04:55        54376        ----a-w-        c:\windows\system32\drivers\WdfLdr.sys
2012-11-15 15:54 . 2012-07-26 02:36        9728        ----a-w-        c:\windows\system32\Wdfres.dll
2012-11-15 15:47 . 2012-10-08 11:42        10925568        ----a-w-        c:\windows\system32\ieframe.dll
2012-11-15 15:46 . 2012-07-26 03:08        84992        ----a-w-        c:\windows\system32\WUDFSvc.dll
2012-11-15 15:46 . 2012-07-26 03:08        194048        ----a-w-        c:\windows\system32\WUDFPlatform.dll
2012-11-15 15:46 . 2012-07-26 02:26        87040        ----a-w-        c:\windows\system32\drivers\WUDFPf.sys
2012-11-15 15:46 . 2012-07-26 02:26        198656        ----a-w-        c:\windows\system32\drivers\WUDFRd.sys
2012-11-15 15:46 . 2012-07-26 03:08        229888        ----a-w-        c:\windows\system32\WUDFHost.exe
2012-11-15 15:46 . 2012-07-26 03:08        744448        ----a-w-        c:\windows\system32\WUDFx.dll
2012-11-15 15:46 . 2012-07-26 03:08        45056        ----a-w-        c:\windows\system32\WUDFCoinstaller.dll
2012-11-15 15:36 . 2012-09-25 22:47        78336        ----a-w-        c:\windows\SysWow64\synceng.dll
2012-11-15 15:36 . 2012-09-25 22:46        95744        ----a-w-        c:\windows\system32\synceng.dll
2012-11-15 15:21 . 2012-11-15 15:21        --------        d-----w-        C:\rsit
2012-11-14 14:24 . 2012-11-14 14:24        --------        d-----w-        c:\program files (x86)\Common Files\Adobe
2012-11-13 14:52 . 2012-11-13 14:52        --------        d-----w-        c:\program files\CCleaner
2012-11-12 15:01 . 2008-03-24 15:40        113792        ----a-w-        c:\windows\system32\drivers\qcusbser.sys
2012-11-12 15:01 . 2007-11-01 14:35        103424        ----a-w-        c:\windows\SysWow64\MyDIT_GenClassCoInst.dll
2012-11-12 15:01 . 2012-11-12 15:01        --------        d-----w-        c:\program files (x86)\HSDPA USB Modem
2012-11-11 08:47 . 2012-11-11 08:47        --------        d-----w-        c:\windows\system32\SPReview
2012-11-11 08:41 . 2010-11-20 04:00        2560        ----a-w-        c:\windows\system32\drivers\de-DE\rdpwd.sys.mui
2012-11-11 08:41 . 2010-11-20 03:59        6656        ----a-w-        c:\windows\system32\drivers\de-DE\rdvgkmd.sys.mui
2012-11-11 08:41 . 2010-11-20 04:12        7168        ----a-w-        c:\windows\system32\drivers\de-DE\msdsm.sys.mui
2012-11-11 08:41 . 2010-11-20 04:01        4608        ----a-w-        c:\windows\system32\drivers\de-DE\tsusbhub.sys.mui
2012-11-11 08:41 . 2010-11-20 04:00        4608        ----a-w-        c:\windows\system32\drivers\de-DE\vdrvroot.sys.mui
2012-11-11 08:41 . 2010-11-20 04:07        2560        ----a-w-        c:\windows\system32\drivers\de-DE\disk.sys.mui
2012-11-11 08:35 . 2012-11-11 08:35        --------        d-----w-        c:\windows\system32\EventProviders
2012-11-10 09:24 . 2012-11-10 09:24        --------        d-----w-        c:\program files (x86)\Common Files\Java
2012-11-10 09:24 . 2012-11-10 09:24        821736        ----a-w-        c:\windows\SysWow64\npDeployJava1.dll
2012-11-10 09:24 . 2012-11-10 09:24        746984        ----a-w-        c:\windows\SysWow64\deployJava1.dll
2012-11-10 09:24 . 2012-11-10 09:24        95208        ----a-w-        c:\windows\SysWow64\WindowsAccessBridge-32.dll
2012-11-10 09:24 . 2012-11-10 09:24        --------        d-----w-        c:\program files (x86)\Java
2012-11-09 14:23 . 2012-08-02 17:58        574464        ----a-w-        c:\windows\system32\d3d10level9.dll
2012-11-09 14:04 . 2012-11-09 14:04        --------        d-----w-        c:\windows\SysWow64\wbem\en-US
2012-11-09 14:04 . 2012-11-09 14:04        --------        d-----w-        c:\windows\system32\wbem\en-US
2012-11-09 13:39 . 2010-02-23 08:16        294912        ----a-w-        c:\windows\system32\browserchoice.exe
2012-11-09 13:31 . 2012-03-01 06:46        23408        ----a-w-        c:\windows\system32\drivers\fs_rec.sys
2012-11-09 13:31 . 2012-03-01 06:33        81408        ----a-w-        c:\windows\system32\imagehlp.dll
2012-11-09 13:31 . 2012-03-01 06:28        5120        ----a-w-        c:\windows\system32\wmi.dll
2012-11-09 13:31 . 2012-03-01 05:33        159232        ----a-w-        c:\windows\SysWow64\imagehlp.dll
2012-11-09 13:31 . 2012-03-01 05:29        5120        ----a-w-        c:\windows\SysWow64\wmi.dll
2012-11-09 04:29 . 2012-01-04 10:44        509952        ----a-w-        c:\windows\system32\ntshrui.dll
2012-11-09 04:28 . 2011-03-12 12:08        1465344        ----a-w-        c:\windows\system32\XpsPrint.dll
2012-11-09 04:27 . 2011-08-17 05:26        613888        ----a-w-        c:\windows\system32\psisdecd.dll
2012-11-09 04:26 . 2011-11-17 06:41        1731920        ----a-w-        c:\windows\system32\ntdll.dll
2012-11-09 04:26 . 2011-11-17 05:38        1292080        ----a-w-        c:\windows\SysWow64\ntdll.dll
2012-11-09 04:26 . 2012-06-02 05:41        184320        ----a-w-        c:\windows\system32\cryptsvc.dll
2012-11-09 04:26 . 2012-06-02 05:41        140288        ----a-w-        c:\windows\system32\cryptnet.dll
2012-11-09 04:26 . 2012-06-02 05:41        1464320        ----a-w-        c:\windows\system32\crypt32.dll
2012-11-09 04:26 . 2012-06-02 04:36        140288        ----a-w-        c:\windows\SysWow64\cryptsvc.dll
2012-11-09 04:26 . 2012-06-02 04:36        1159680        ----a-w-        c:\windows\SysWow64\crypt32.dll
2012-11-09 04:26 . 2012-06-02 04:36        103936        ----a-w-        c:\windows\SysWow64\cryptnet.dll
2012-11-09 04:26 . 2011-11-19 14:58        77312        ----a-w-        c:\windows\system32\packager.dll
2012-11-09 04:26 . 2011-11-19 14:01        67072        ----a-w-        c:\windows\SysWow64\packager.dll
2012-11-08 20:03 . 2012-11-08 20:03        --------        d-----w-        c:\program files\TeamSpeak 3 Client
2012-11-08 20:03 . 2012-11-08 20:03        --------        d-----w-        c:\program files\WinRAR
2012-11-08 20:03 . 2012-11-08 20:03        --------        d-----w-        c:\program files\VideoLAN
2012-11-08 19:55 . 2012-11-10 08:39        --------        d-----w-        c:\program files (x86)\Microsoft.NET
2012-11-08 19:55 . 2012-11-08 19:55        --------        d-----w-        c:\windows\PCHEALTH
2012-11-08 19:52 . 2012-11-08 19:52        --------        d-----w-        c:\program files (x86)\Common Files\Tencent
2012-11-08 19:52 . 2012-11-08 19:52        --------        d-----w-        c:\program files (x86)\Tencent
2012-11-08 19:52 . 2012-11-08 19:52        18760        ----a-w-        c:\windows\SysWow64\QQVistaHelper.dll
2012-11-08 19:47 . 2012-11-08 19:47        283200        ----a-w-        c:\windows\system32\drivers\dtsoftbus01.sys
2012-11-08 19:47 . 2012-11-08 19:47        --------        d-----w-        c:\program files (x86)\DAEMON Tools Lite
2012-11-08 19:46 . 2012-11-08 19:53        --------        d-----w-        c:\programdata\DAEMON Tools Lite
2012-11-08 18:51 . 2012-11-27 10:46        --------        d-----w-        c:\program files (x86)\Steam
2012-11-08 18:51 . 2012-11-08 18:56        --------        d-----w-        c:\program files (x86)\Common Files\Steam
2012-11-08 18:22 . 2012-11-08 18:22        73656        ----a-w-        c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2012-11-08 18:22 . 2012-11-08 18:22        697272        ----a-w-        c:\windows\SysWow64\FlashPlayerApp.exe
2012-11-08 18:22 . 2012-11-08 18:22        --------        d-----w-        c:\windows\SysWow64\Macromed
2012-11-08 18:22 . 2012-11-08 18:22        --------        d-----w-        c:\windows\system32\Macromed
2012-11-08 18:15 . 2012-11-21 15:09        --------        d-----w-        c:\programdata\Spybot - Search & Destroy
2012-11-08 18:15 . 2012-11-08 18:15        --------        d-----w-        c:\program files (x86)\Spybot - Search & Destroy
2012-11-08 18:07 . 2012-11-08 18:07        --------        d-----w-        c:\program files (x86)\Mozilla Thunderbird
2012-11-08 18:04 . 2012-11-23 20:23        --------        d-----w-        c:\program files (x86)\Mozilla Maintenance Service
2012-11-08 17:55 . 2012-11-08 17:55        --------        d-----w-        c:\program files (x86)\Ask.com
2012-11-08 17:55 . 2012-11-15 14:50        98888        ----a-w-        c:\windows\system32\drivers\avgntflt.sys
2012-11-08 17:55 . 2012-11-15 14:50        129216        ----a-w-        c:\windows\system32\drivers\avipbb.sys
2012-11-08 17:55 . 2012-09-24 08:58        27800        ----a-w-        c:\windows\system32\drivers\avkmgr.sys
2012-11-08 17:55 . 2012-11-08 17:56        --------        d-----w-        c:\programdata\Avira
2012-11-08 17:55 . 2012-11-08 17:55        --------        d-----w-        c:\program files (x86)\Avira
2012-11-08 17:54 . 2012-02-17 06:38        1031680        ----a-w-        c:\windows\system32\rdpcore.dll
2012-11-08 17:54 . 2012-02-17 05:34        826880        ----a-w-        c:\windows\SysWow64\rdpcore.dll
2012-11-08 17:54 . 2012-02-17 04:57        23552        ----a-w-        c:\windows\system32\drivers\tdtcp.sys
2012-11-08 17:51 . 2012-06-02 22:19        2428952        ----a-w-        c:\windows\system32\wuaueng.dll
2012-11-08 17:51 . 2012-06-02 22:19        57880        ----a-w-        c:\windows\system32\wuauclt.exe
2012-11-08 17:51 . 2012-06-02 22:19        44056        ----a-w-        c:\windows\system32\wups2.dll
2012-11-08 17:51 . 2012-06-02 22:15        2622464        ----a-w-        c:\windows\system32\wucltux.dll
2012-11-08 17:51 . 2012-06-02 22:19        38424        ----a-w-        c:\windows\system32\wups.dll
2012-11-08 17:51 . 2012-06-02 22:19        701976        ----a-w-        c:\windows\system32\wuapi.dll
2012-11-08 17:51 . 2012-06-02 22:15        99840        ----a-w-        c:\windows\system32\wudriver.dll
2012-11-08 17:51 . 2012-06-02 14:19        186752        ----a-w-        c:\windows\system32\wuwebv.dll
2012-11-08 17:51 . 2012-06-02 14:15        36864        ----a-w-        c:\windows\system32\wuapp.exe
2012-11-08 17:33 . 2012-11-08 17:33        --------        d-----w-        c:\program files (x86)\Dolby Home Theater v4
2012-11-08 17:31 . 2012-11-08 17:31        --------        d--h--w-        c:\windows\system32\WLANProfiles
2012-11-08 17:31 . 2012-11-08 17:31        --------        d-----w-        c:\users\Public\Roaming
2012-11-08 17:31 . 2012-11-08 17:31        --------        d-----w-        c:\users\Default\Roaming
2012-11-08 17:30 . 2012-11-08 17:30        --------        d-----w-        c:\program files (x86)\Cisco
2012-11-08 17:28 . 2012-11-08 17:28        --------        d-----w-        c:\windows\SysWow64\sda
2012-11-08 17:28 . 2012-04-23 05:43        9888872        ----a-w-        c:\windows\SysWow64\RtsPStorIcon.dll
2012-11-08 17:28 . 2012-04-23 05:43        340072        ----a-r-        c:\windows\system32\drivers\RtsPStor.sys
2012-11-08 17:28 . 2012-04-23 05:43        16152        ----a-w-        c:\windows\system32\drivers\iusb3hcs.sys
2012-11-08 17:28 . 2012-04-23 05:43        788760        ----a-w-        c:\windows\system32\drivers\iusb3xhc.sys
2012-11-08 17:28 . 2012-04-23 05:43        356120        ----a-w-        c:\windows\system32\drivers\iusb3hub.sys
2012-11-08 17:27 . 2012-11-08 17:27        --------        d-----w-        c:\program files\Elantech
.
.
((((((((((((((((((((((((((((((((((((  Find3M Bericht  ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2012-11-11 08:45 . 2009-07-14 02:36        175616        ----a-w-        c:\windows\system32\msclmd.dll
2012-11-11 08:45 . 2009-07-14 02:36        152576        ----a-w-        c:\windows\SysWow64\msclmd.dll
2012-10-29 20:04 . 2009-10-14 05:12        66395536        ----a-w-        c:\windows\system32\MRT.exe
2012-10-10 01:22 . 2012-10-10 01:22        80384        ----a-w-        c:\windows\system32\igdde64.dll
2012-10-10 01:22 . 2012-10-10 01:22        437760        ----a-w-        c:\windows\system32\igfxrtrk.lrc
2012-10-10 01:22 . 2012-10-10 01:22        21818368        ----a-w-        c:\windows\SysWow64\igdfcl32.dll
2012-10-10 01:22 . 2012-10-10 01:22        216064        ----a-w-        c:\windows\system32\iglhcp64.dll
2012-10-10 01:22 . 2012-10-10 01:22        180224        ----a-w-        c:\windows\SysWow64\iglhcp32.dll
2012-10-10 01:22 . 2012-10-10 01:22        5903392        ----a-w-        c:\windows\system32\GfxUI.exe
2012-10-10 01:22 . 2012-10-10 01:22        438784        ----a-w-        c:\windows\system32\igfxrdeu.lrc
2012-10-10 01:22 . 2012-10-10 01:22        438272        ----a-w-        c:\windows\system32\igfxrhun.lrc
2012-10-10 01:22 . 2012-10-10 01:22        3776512        ----a-w-        c:\windows\SysWow64\igfxcmjit32.dll
2012-10-10 01:22 . 2012-10-10 01:22        27438080        ----a-w-        c:\windows\system32\igdfcl64.dll
2012-10-10 01:22 . 2012-10-10 01:22        64512        ----a-w-        c:\windows\SysWow64\igdde32.dll
2012-10-10 01:22 . 2012-10-10 01:22        501760        ----a-w-        c:\windows\system32\igfxcmrt64.dll
2012-10-10 01:22 . 2012-10-10 01:22        439296        ----a-w-        c:\windows\system32\igfxrrus.lrc
2012-10-10 01:22 . 2012-10-10 01:22        431104        ----a-w-        c:\windows\system32\igfxrkor.lrc
2012-10-10 01:22 . 2012-10-10 01:22        410624        ----a-w-        c:\windows\system32\igfxTMM.dll
2012-10-10 01:22 . 2012-10-10 01:22        27664896        ----a-w-        c:\windows\system32\igdrcl64.dll
2012-10-10 01:22 . 2012-10-10 01:22        598780        ----a-w-        c:\windows\system32\igvpkrng700.bin
2012-10-10 01:22 . 2012-10-10 01:22        330240        ----a-w-        c:\windows\SysWow64\igfxdv32.dll
2012-10-10 01:22 . 2012-10-10 01:22        12604416        ----a-w-        c:\windows\system32\igdumd64.dll
2012-10-10 01:22 . 2012-10-10 01:22        56832        ----a-w-        c:\windows\system32\Intel_OpenCL_ICD64.dll
2012-10-10 01:22 . 2012-10-10 01:22        441888        ----a-w-        c:\windows\system32\igfxpers.exe
2012-10-10 01:22 . 2012-10-10 01:22        438784        ----a-w-        c:\windows\system32\igfxrhrv.lrc
2012-10-10 01:22 . 2012-10-10 01:22        438272        ----a-w-        c:\windows\system32\igfxrcsy.lrc
2012-10-10 01:22 . 2012-10-10 01:22        3582976        ----a-w-        c:\windows\system32\igdbcl64.dll
2012-10-10 01:22 . 2012-10-10 01:22        25088        ----a-w-        c:\windows\SysWow64\igfxexps32.dll
2012-10-10 01:22 . 2012-10-10 01:22        5343584        ----a-w-        c:\windows\system32\drivers\igdkmd64.sys
2012-10-10 01:22 . 2012-10-10 01:22        448512        ----a-w-        c:\windows\SysWow64\igfx11cmrt32.dll
2012-10-10 01:22 . 2012-10-10 01:22        441856        ----a-w-        c:\windows\system32\igfxdev.dll
2012-10-10 01:22 . 2012-10-10 01:22        438784        ----a-w-        c:\windows\system32\igfxrnld.lrc
2012-10-10 01:22 . 2012-10-10 01:22        399392        ----a-w-        c:\windows\system32\hkcmd.exe
2012-10-10 01:22 . 2012-10-10 01:22        241664        ----a-w-        c:\windows\system32\IntelOpenCL64.dll
2012-10-10 01:22 . 2012-10-10 01:22        195584        ----a-w-        c:\windows\SysWow64\IntelOpenCL32.dll
2012-10-10 01:22 . 2012-10-10 01:22        126976        ----a-w-        c:\windows\system32\igfxcpl.cpl
2012-10-10 01:22 . 2012-10-10 01:22        116224        ----a-w-        c:\windows\system32\igfxCoIn_v2867.dll
2012-10-10 01:22 . 2012-10-10 01:22        604160        ----a-w-        c:\windows\SysWow64\igfxcmrt32.dll
2012-10-10 01:22 . 2012-10-10 01:22        4571136        ----a-w-        c:\windows\system32\igfxcmjit64.dll
2012-10-10 01:22 . 2012-10-10 01:22        439808        ----a-w-        c:\windows\system32\igfxresn.lrc
2012-10-10 01:22 . 2012-10-10 01:22        439296        ----a-w-        c:\windows\system32\igfxrrom.lrc
2012-10-10 01:22 . 2012-10-10 01:22        437760        ----a-w-        c:\windows\system32\igfxrsve.lrc
2012-10-10 01:22 . 2012-10-10 01:22        437760        ----a-w-        c:\windows\system32\igfxrslv.lrc
2012-10-10 01:22 . 2012-10-10 01:22        437760        ----a-w-        c:\windows\system32\igfxrnor.lrc
2012-10-10 01:22 . 2012-10-10 01:22        437248        ----a-w-        c:\windows\system32\igfxrdan.lrc
2012-10-10 01:22 . 2012-10-10 01:22        2899968        ----a-w-        c:\windows\SysWow64\igdbcl32.dll
2012-10-10 01:22 . 2012-10-10 01:22        277024        ----a-w-        c:\windows\SysWow64\IntelCpHeciSvc.exe
2012-10-10 01:22 . 2012-10-10 01:22        185376        ----a-w-        c:\windows\system32\difx64.exe
2012-10-10 01:22 . 2012-10-10 01:22        173568        ----a-w-        c:\windows\system32\gfxSrvc.dll
2012-10-10 01:22 . 2012-10-10 01:22        435712        ----a-w-        c:\windows\system32\igfxrheb.lrc
2012-10-10 01:22 . 2012-10-10 01:22        429056        ----a-w-        c:\windows\system32\igfxrcht.lrc
2012-10-10 01:22 . 2012-10-10 01:22        171040        ----a-w-        c:\windows\system32\igfxtray.exe
2012-10-10 01:22 . 2012-10-10 01:22        11158528        ----a-w-        c:\windows\SysWow64\igd10umd32.dll
2012-10-10 01:22 . 2012-10-10 01:22        56320        ----a-w-        c:\windows\SysWow64\Intel_OpenCL_ICD32.dll
2012-10-10 01:22 . 2012-10-10 01:22        509984        ----a-w-        c:\windows\system32\igfxsrvc.exe
2012-10-10 01:22 . 2012-10-10 01:22        440320        ----a-w-        c:\windows\system32\igfxrell.lrc
2012-10-10 01:22 . 2012-10-10 01:22        438784        ----a-w-        c:\windows\system32\igfxrptg.lrc
2012-10-10 01:22 . 2012-10-10 01:22        438784        ----a-w-        c:\windows\system32\igfxrplk.lrc
2012-10-10 01:22 . 2012-10-10 01:22        438784        ----a-w-        c:\windows\system32\igfxrita.lrc
2012-10-10 01:22 . 2012-10-10 01:22        438272        ----a-w-        c:\windows\system32\igfxrfin.lrc
2012-10-10 01:22 . 2012-10-10 01:22        437248        ----a-w-        c:\windows\system32\igfxrtha.lrc
2012-10-10 01:22 . 2012-10-10 01:22        428544        ----a-w-        c:\windows\system32\igfxrchs.lrc
2012-10-10 01:22 . 2012-10-10 01:22        286208        ----a-w-        c:\windows\system32\igfxrenu.lrc
2012-10-10 01:22 . 2012-10-10 01:22        27643904        ----a-w-        c:\windows\SysWow64\igdrcl32.dll
2012-10-10 01:22 . 2012-10-10 01:22        142336        ----a-w-        c:\windows\system32\igfxdo.dll
2012-10-10 01:22 . 2012-10-10 01:22        8579584        ----a-w-        c:\windows\SysWow64\ig7icd32.dll
2012-10-10 01:22 . 2012-10-10 01:22        482304        ----a-w-        c:\windows\system32\igfx11cmrt64.dll
2012-10-10 01:22 . 2012-10-10 01:22        386048        ----a-w-        c:\windows\system32\igfxpph.dll
2012-10-10 01:22 . 2012-10-10 01:22        11595776        ----a-w-        c:\windows\system32\ig7icd64.dll
2012-10-10 01:22 . 2012-10-10 01:22        438784        ----a-w-        c:\windows\system32\igfxrsky.lrc
2012-10-10 01:22 . 2012-10-10 01:22        435712        ----a-w-        c:\windows\system32\igfxrara.lrc
2012-10-10 01:22 . 2012-10-10 01:22        432128        ----a-w-        c:\windows\system32\igfxrjpn.lrc
2012-10-10 01:22 . 2012-10-10 01:22        28672        ----a-w-        c:\windows\system32\igfxexps.dll
2012-10-10 01:22 . 2012-10-10 01:22        252448        ----a-w-        c:\windows\system32\igfxext.exe
2012-10-10 01:22 . 2012-10-10 01:22        9728        ----a-w-        c:\windows\system32\IGFXDEVLib.dll
2012-10-10 01:22 . 2012-10-10 01:22        755048        ----a-w-        c:\windows\system32\igcodeckrng700.bin
2012-10-10 01:22 . 2012-10-10 01:22        439808        ----a-w-        c:\windows\system32\igfxrfra.lrc
2012-10-10 01:22 . 2012-10-10 01:22        437760        ----a-w-        c:\windows\system32\igfxrptb.lrc
.
.
((((((((((((((((((((((((((((  Autostartpunkte der Registrierung  ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\Wow6432Node\~\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}]
2012-10-29 16:33        1521872        ----a-w-        c:\program files (x86)\Ask.com\GenericAskToolbar.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar]
"{D4027C7F-154A-4066-A1AD-4243D8127440}"= "c:\program files (x86)\Ask.com\GenericAskToolbar.dll" [2012-10-29 1521872]
.
[HKEY_CLASSES_ROOT\clsid\{d4027c7f-154a-4066-a1ad-4243d8127440}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd.1]
[HKEY_CLASSES_ROOT\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}]
[HKEY_CLASSES_ROOT\GenericAskToolbar.ToolbarWnd]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SpybotSD TeaTimer"="c:\program files (x86)\Spybot - Search & Destroy\TeaTimer.exe" [2009-01-26 2144088]
"Steam"="c:\program files (x86)\Steam\steam.exe" [2012-11-08 1353080]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" [2012-02-29 56088]
"USB3MON"="c:\program files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe" [2012-04-23 291608]
"Dolby Home Theater v4"="c:\program files (x86)\Dolby Home Theater v4\pcee4.exe" [2011-12-20 507744]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2012-11-15 384800]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2012-07-03 252848]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2012-09-23 926896]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"PromptOnSecureDesktop"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"Userinit"="userinit.exe"
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
"AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [2012-09-29 676936]
R3 AMPPALP;Intel® Centrino® Wireless Bluetooth® + High Speed Protokoll;c:\windows\system32\DRIVERS\amppal.sys [2012-01-09 195584]
R3 btmaux;Intel Bluetooth Auxiliary Service;c:\windows\system32\DRIVERS\btmaux.sys [2011-12-13 94720]
R3 btmhsf;btmhsf;c:\windows\system32\DRIVERS\btmhsf.sys [2011-12-13 747008]
R3 ibtfltcoex;ibtfltcoex;c:\windows\system32\DRIVERS\iBtFltCoex.sys [2011-12-14 60416]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2012-09-29 25928]
R3 MyWiFiDHCPDNS;Wireless PAN DHCP Server;c:\program files\Intel\WiFi\bin\PanDhcpDns.exe [2012-02-26 273168]
R3 qcusbser;Mobile Connector;c:\windows\system32\DRIVERS\qcusbser.sys [2008-03-24 113792]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 19456]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2012-08-23 57856]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R4 AntiVirWebService;Avira Browser-Schutz;c:\program files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [2012-11-15 561952]
R4 Bluetooth Device Monitor;Bluetooth Device Monitor;c:\program files (x86)\Intel\Bluetooth\devmonsrv.exe [2011-12-19 1014096]
R4 Bluetooth Media Service;Bluetooth Media Service;c:\program files (x86)\Intel\Bluetooth\mediasrv.exe [2011-12-19 1304912]
R4 Bluetooth OBEX Service;Bluetooth OBEX Service;c:\program files (x86)\Intel\Bluetooth\obexsrv.exe [2011-12-19 1104208]
R4 Qualcomm Atheros Killer Service;Qualcomm Atheros Killer Service;c:\program files\Qualcomm Atheros\Killer Network Manager\BFNService.exe [2012-02-22 492032]
R4 SBSDWSCService;SBSD Security Center Service;c:\program files (x86)\Spybot - Search & Destroy\SDWinSec.exe [2009-01-26 1153368]
S0 iusb3hcs;Intel(R) USB 3.0 Hostcontroller-Switchtreiber;c:\windows\system32\DRIVERS\iusb3hcs.sys [2012-04-23 16152]
S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys [2012-04-23 28992]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [2012-09-24 27800]
S1 BfLwf;Bigfoot Networks Bandwidth Control;c:\windows\system32\DRIVERS\bflwfx64.sys [2012-02-22 75880]
S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys [2012-11-08 283200]
S2 AMPPALR3;Intel® Centrino® Wireless Bluetooth® + High Speed Service;c:\program files\Intel\BluetoothHS\BTHSAmpPalService.exe [2012-01-09 659968]
S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [2012-10-16 84256]
S2 BTHSSecurityMgr;Intel(R) Centrino(R) Wireless Bluetooth(R) + High Speed Security Service;c:\program files\Intel\BluetoothHS\BTHSSecurityMgr.exe [2012-01-17 135952]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-02-01 13592]
S2 IconMan_R;IconMan_R;c:\program files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [2012-04-23 2429544]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe [2012-02-02 628448]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-04-23 162648]
S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [2012-09-29 399432]
S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-04-23 362840]
S2 ZeroConfigService;Intel(R) PROSet/Wireless Zero Configuration Service;c:\program files\Intel\WiFi\bin\ZeroConfigService.exe [2012-02-26 2669840]
S3 AMPPAL;Intel® Centrino® Wireless Bluetooth® + High Speed - Virtueller Adapter;c:\windows\system32\DRIVERS\AMPPAL.sys [2012-01-09 195584]
S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys [2012-04-23 143144]
S3 IntcDAud;Intel(R) Display-Audio;c:\windows\system32\DRIVERS\IntcDAud.sys [2012-04-23 331264]
S3 iusb3hub;Intel(R) USB 3.0-Hubtreiber;c:\windows\system32\DRIVERS\iusb3hub.sys [2012-04-23 356120]
S3 iusb3xhc;Intel(R) USB 3.0 eXtensible-Hostcontrollertreiber;c:\windows\system32\DRIVERS\iusb3xhc.sys [2012-04-23 788760]
S3 L1C;NDIS Miniport Driver for the Killer e2200 PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\e22w7x64.sys [2012-02-22 159848]
S3 RSPCIESTOR;Realtek PCIE CardReader Driver;c:\windows\system32\DRIVERS\RtsPStor.sys [2012-04-23 340072]
.
.
--- Andere Dienste/Treiber im Speicher ---
.
*NewlyCreated* - ASWMBR
*Deregistered* - aswMBR
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-04-23 13374568]
"RtHDVBg_Dolby"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2012-04-23 2277992]
"BTMTrayAgent"="c:\program files (x86)\Intel\Bluetooth\btmshell.dll" [2011-12-19 11406608]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-10-10 171040]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-10-10 399392]
"Persistence"="c:\windows\system32\igfxpers.exe" [2012-10-10 441888]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\nvinitx.dll
.
------- Zusätzlicher Suchlauf -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: Nach Microsoft &Excel exportieren - c:\progra~2\MICROS~1\OFFICE11\EXCEL.EXE/3000
LSP: %SYSTEMROOT%\system32\BfLLR.dll
TCP: DhcpNameServer = 192.168.43.1
FF - ProfilePath - c:\users\Masi\AppData\Roaming\Mozilla\Firefox\Profiles\tnkacivv.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - google.de
FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=AVR-4&o=APN10261&locale=de_DE&apn_uid=204c19c7-ab1f-4f3d-b736-07deb40e5859&apn_ptnrs=%5EAGS&apn_sauid=FC4AE1DC-EB12-4EAA-B988-CDB0AFF97601&apn_dtid=%5EYYYYYY%5EYY%5EDE&&q=
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
HKLM-Run-ETDCtrl - c:\program files (x86)\Elantech\ETDCtrl.exe
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2012-11-27  14:27:46
ComboFix-quarantined-files.txt  2012-11-27 13:27
.
Vor Suchlauf: 9.620.832.256 Bytes frei
Nach Suchlauf: 9.292.427.264 Bytes frei
.
- - End Of File - - 34023C171B77DF883268A1D2D40927AF

--- --- ---

schrauber 27.11.2012 14:37

Hi,


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).



Bitte Malwarebytes updaten, Quick Scan, Funde löschen lassen, Log posten.




ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset




Und ein frisches OTL log bitte. Wie läuft der Rechner?

Masi1711 27.11.2012 17:36

so der adwcleaner log
Code:

# AdwCleaner v2.009 - Datei am 27/11/2012 um 16:12:03 erstellt
# Aktualisiert am 24/11/2012 von Xplode
# Betriebssystem : Windows 7 Ultimate Service Pack 1 (64 bits)
# Benutzer : Masi - MASI-01
# Bootmodus : Normal
# Ausgeführt unter : C:\Users\Masi\Desktop\adwcleaner.exe
# Option [Löschen]


**** [Dienste] ****


***** [Dateien / Ordner] *****

Ordner Gelöscht : C:\Program Files (x86)\Ask.com
Ordner Gelöscht : C:\Users\Masi\AppData\Local\AskToolbar
Ordner Gelöscht : C:\Users\Masi\AppData\LocalLow\AskToolbar
Ordner Gelöscht : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}

***** [Registrierungsdatenbank] *****

Schlüssel Gelöscht : HKCU\Software\APN
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\AskToolbar
Schlüssel Gelöscht : HKCU\Software\Ask.com
Schlüssel Gelöscht : HKCU\Software\AskToolbar
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Schlüssel Gelöscht : HKCU\Software\TENCENT
Schlüssel Gelöscht : HKLM\Software\APN
Schlüssel Gelöscht : HKLM\Software\AskToolbar
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\F928123A039649549966D4C29D35B1C9
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{1D55DAA5-04AC-4036-B0BE-DA81EE9676CD}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}
Schlüssel Gelöscht : HKLM\Software\TENCENT
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{05366194-3126-4601-AC1A-DDE573E093DC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{061F450C-37B9-4330-9235-0F25D9F75B33}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{22FEB0F5-0BA0-4D4B-8A66-55A21667BC31}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{061F450C-37B9-4330-9235-0F25D9F75B33}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{22FEB0F5-0BA0-4D4B-8A66-55A21667BC31}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ApnUpdater
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF

***** [Internet Browser] *****

-\\ Internet Explorer v9.0.8112.16421

[OK] Die Registrierungsdatenbank ist sauber.

-\\ Mozilla Firefox v17.0 (de)

Profilname : default
Datei : C:\Users\Masi\AppData\Roaming\Mozilla\Firefox\Profiles\tnkacivv.default\prefs.js

Gelöscht : user_pref("browser.search.defaultengine", "Ask.com");
Gelöscht : user_pref("browser.search.defaultenginename", "Ask.com");
Gelöscht : user_pref("browser.search.order.1", "Ask.com");
Gelöscht : user_pref("extensions.asktb.ff-original-keyword-url", "");
Gelöscht : user_pref("keyword.URL", "hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=AVR-4&o=APN10261&loc[...]

*************************

AdwCleaner[S1].txt - [3606 octets] - [27/11/2012 16:12:03]

########## EOF - C:\AdwCleaner[S1].txt - [3666 octets] ##########

nun der malwarebytes scan
Code:

Malwarebytes Anti-Malware (Test) 1.65.1.1000
www.malwarebytes.org

Datenbank Version: v2012.11.27.05

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Masi :: MASI-01 [Administrator]

Schutz: Aktiviert

27.11.2012 16:21:49
mbam-log-2012-11-27 (16-21-49).txt

Art des Suchlaufs: Quick-Scan
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 225060
Laufzeit: 58 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)

(Ende)

hier der eset scan
Code:

ESETSmartInstaller@High as downloader log:
all ok
esets_scanner_update returned -1 esets_gle=53251
# version=7
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6583
# api_version=3.0.2
# EOSSerial=c2e22dcdbc87b744ae0fab7c10f712af
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2012-11-27 03:28:17
# local_time=2012-11-27 04:28:17 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=1792 16777215 100 0 1636367 1636367 0 0
# compatibility_mode=5893 16776574 100 94 1409959 105659947 0 0
# compatibility_mode=8192 67108863 100 0 3662 3662 0 0
# scanned=0
# found=0
# cleaned=0
# scan_time=0




OTL SCAN wird mir gesagt das es zu viele zeichen sind ( auch wenn ich ihn alleine posten will ) soll ich es in ein archiv packen ?

Masi1711 27.11.2012 18:26

hier der OTL scan

schrauber 27.11.2012 19:25

Hi,

Log ist sauber. Noch Probleme?

Masi1711 28.11.2012 01:25

bis jetzt läuft er sauber werde es morgen bzw heute übertag erneut testen und dann noch mal rückmeldund geben nochmals danke für deine hilfe

schrauber 28.11.2012 07:55

Alles klar :)

Masi1711 29.11.2012 18:16

so habe nun mal alles getestet bzw normal weiter genutzt und ich habe ne schlechte nachricht :( der "fehler" ist noch nicht wirklich behoben
ist es denn nen virus oder so oder ist es "nur" ne beschädigte windows installation ? wenn ja kann man die hilfe optionen nicht irgendwie unterbinden ?

schrauber 30.11.2012 08:14

Definier mal bitte nochmal genau was der Fehler is, evtl noch nen Screenshot machen.

Masi1711 30.11.2012 08:59

also laptop steht im sleep modus oder wird hochgefahren soweit alles gut dann wird zb ne externe maus oder aber nur steam gestartet bis hier soweit auch noch alles ok nach dann erneuten 30 min ca fängt es an das hilfe und support fenster öffnet sich und oder es werden die hilfe fenster von den jeweiligen programme geöffnet als alternative wird firefox geöffnet mit hunderten von tabs die sich totladen die hilfe fenster und firefox kann man dann nur beenden wenn man die prozess strucktur beendet sonst nicht und jedesmal ist dann die helpane.exe gestartet screenshot gibt es heute abend wenn ich zuhause bin

schrauber 30.11.2012 09:29

Ok :)

Masi1711 02.12.2012 19:25

so nun aber also nen screenshoot läst sich nicht mehr machen sobald ich nur mit der maus klicke egal ob icon oder nur ins leere öffnet sich das fenster und es geht garnicht mehr zu

schrauber 03.12.2012 08:31

schonmal geschaut ob die F1 taste hängt?

Masi1711 03.12.2012 08:49

ja das war dad aller erste was ich getestet habe und wenn es so wäre dann würde das ja von anfang an so sein und nicht erst nach einer gewissen zeit

schrauber 03.12.2012 09:13

Dowloade Dir bitte TDSSKiller.exe und speichere die Datei am Desktop.
  • Schließe alle laufenden Programme.
  • Trenne dich von Internet.
  • Deaktiviere deine AntiViren Software.
  • Starte TDSSkiller.exe mit Doppelklick.
    Vista und Win7 User mit Rechtsklick "als Administrator starten"
  • Drücke auf Start scan.
    Mache während dem Scan nichts am Rechner
    1. Sollte das Tool keine Funde aufweisen, klicke Close um es zu schließen.
    2. Wurde etwas gefunden werden die Funde in Scan results - Select action for found objects angezeigt und geben 3 Auswahlmöglichkeiten.
      Gehe sicher das Cure ( default ) angehackt ist ! Drücke Continue --> Reboot.
  • Die Logfile ist nach dem Neustart auf deinem Systemlaufwerk ( meist C: ) unter TDSSKiller_version_date_time_log.txt zu finden.
  • Bitte poste mir den Inhalt hier in deinen Thread.
Bebilderte Anleitung zur Benutzung von TDSSKiller.

Masi1711 04.12.2012 13:33

habe ich gemacht aber es wurde nichts gefunden

schrauber 04.12.2012 14:51

Bekomm ich trotzdem das Logfile zu sehen? :)

Masi1711 05.12.2012 03:29

jo sorry habe extra noch mal nen frischen scan gemacht

Code:

03:24:26.0542 4232  TDSS rootkit removing tool 2.8.15.0 Oct 31 2012 21:47:35
03:24:26.0558 4232  ============================================================
03:24:26.0558 4232  Current date / time: 2012/12/05 03:24:26.0558
03:24:26.0558 4232  SystemInfo:
03:24:26.0558 4232 
03:24:26.0558 4232  OS Version: 6.1.7601 ServicePack: 1.0
03:24:26.0558 4232  Product type: Workstation
03:24:26.0558 4232  ComputerName: MASI-01
03:24:26.0558 4232  UserName: Masi
03:24:26.0558 4232  Windows directory: C:\Windows
03:24:26.0558 4232  System windows directory: C:\Windows
03:24:26.0558 4232  Running under WOW64
03:24:26.0558 4232  Processor architecture: Intel x64
03:24:26.0558 4232  Number of processors: 8
03:24:26.0558 4232  Page size: 0x1000
03:24:26.0558 4232  Boot type: Normal boot
03:24:26.0558 4232  ============================================================
03:24:26.0792 4232  Drive \Device\Harddisk0\DR0 - Size: 0x12A1F16000 (74.53 Gb), SectorSize: 0x200, Cylinders: 0x8F74, SectorsPerTrack: 0x13, TracksPerCylinder: 0xE0, Type 'K0', Flags 0x00000040
03:24:27.0151 4232  Drive \Device\Harddisk1\DR1 - Size: 0xAEA8CDE000 (698.64 Gb), SectorSize: 0x200, Cylinders: 0x16441, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
03:24:27.0213 4232  ============================================================
03:24:27.0213 4232  \Device\Harddisk0\DR0:
03:24:27.0213 4232  MBR partitions:
03:24:27.0213 4232  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x32000
03:24:27.0213 4232  \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x94DC800
03:24:27.0213 4232  \Device\Harddisk1\DR1:
03:24:27.0213 4232  MBR partitions:
03:24:27.0213 4232  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0x57544800
03:24:27.0213 4232  ============================================================
03:24:27.0213 4232  C: <-> \Device\Harddisk0\DR0\Partition2
03:24:27.0244 4232  D: <-> \Device\Harddisk1\DR1\Partition1
03:24:27.0244 4232  ============================================================
03:24:27.0244 4232  Initialize success
03:24:27.0244 4232  ============================================================
03:24:34.0374 1940  ============================================================
03:24:34.0374 1940  Scan started
03:24:34.0374 1940  Mode: Manual; SigCheck; TDLFS;
03:24:34.0374 1940  ============================================================
03:24:34.0592 1940  ================ Scan system memory ========================
03:24:34.0592 1940  System memory - ok
03:24:34.0592 1940  ================ Scan services =============================
03:24:34.0654 1940  [ A87D604AEA360176311474C87A63BB88 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
03:24:34.0701 1940  1394ohci - ok
03:24:34.0717 1940  [ D81D9E70B8A6DD14D42D7B4EFA65D5F2 ] ACPI            C:\Windows\system32\drivers\ACPI.sys
03:24:34.0732 1940  ACPI - ok
03:24:34.0732 1940  [ 99F8E788246D495CE3794D7E7821D2CA ] AcpiPmi        C:\Windows\system32\drivers\acpipmi.sys
03:24:34.0748 1940  AcpiPmi - ok
03:24:34.0764 1940  [ B1EA9681502EE57F87DB71D726288A5B ] AdobeARMservice C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
03:24:34.0764 1940  AdobeARMservice - ok
03:24:34.0779 1940  [ 2F6B34B83843F0C5118B63AC634F5BF4 ] adp94xx        C:\Windows\system32\DRIVERS\adp94xx.sys
03:24:34.0795 1940  adp94xx - ok
03:24:34.0795 1940  [ 597F78224EE9224EA1A13D6350CED962 ] adpahci        C:\Windows\system32\DRIVERS\adpahci.sys
03:24:34.0810 1940  adpahci - ok
03:24:34.0826 1940  [ E109549C90F62FB570B9540C4B148E54 ] adpu320        C:\Windows\system32\DRIVERS\adpu320.sys
03:24:34.0842 1940  adpu320 - ok
03:24:34.0842 1940  [ 4B78B431F225FD8624C5655CB1DE7B61 ] AeLookupSvc    C:\Windows\System32\aelupsvc.dll
03:24:34.0904 1940  AeLookupSvc - ok
03:24:34.0904 1940  [ 1C7857B62DE5994A75B054A9FD4C3825 ] AFD            C:\Windows\system32\drivers\afd.sys
03:24:34.0935 1940  AFD - ok
03:24:34.0935 1940  [ 608C14DBA7299D8CB6ED035A68A15799 ] agp440          C:\Windows\system32\drivers\agp440.sys
03:24:34.0951 1940  agp440 - ok
03:24:34.0951 1940  [ 3290D6946B5E30E70414990574883DDB ] ALG            C:\Windows\System32\alg.exe
03:24:34.0966 1940  ALG - ok
03:24:34.0966 1940  [ 5812713A477A3AD7363C7438CA2EE038 ] aliide          C:\Windows\system32\drivers\aliide.sys
03:24:34.0982 1940  aliide - ok
03:24:34.0982 1940  [ 1FF8B4431C353CE385C875F194924C0C ] amdide          C:\Windows\system32\drivers\amdide.sys
03:24:34.0998 1940  amdide - ok
03:24:34.0998 1940  [ 7024F087CFF1833A806193EF9D22CDA9 ] AmdK8          C:\Windows\system32\DRIVERS\amdk8.sys
03:24:35.0013 1940  AmdK8 - ok
03:24:35.0013 1940  [ 1E56388B3FE0D031C44144EB8C4D6217 ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
03:24:35.0029 1940  AmdPPM - ok
03:24:35.0029 1940  [ D4121AE6D0C0E7E13AA221AA57EF2D49 ] amdsata        C:\Windows\system32\drivers\amdsata.sys
03:24:35.0044 1940  amdsata - ok
03:24:35.0044 1940  [ F67F933E79241ED32FF46A4F29B5120B ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
03:24:35.0060 1940  amdsbs - ok
03:24:35.0076 1940  [ 540DAF1CEA6094886D72126FD7C33048 ] amdxata        C:\Windows\system32\drivers\amdxata.sys
03:24:35.0076 1940  amdxata - ok
03:24:35.0076 1940  [ 157B1C973637919DCD0D0464167C86BA ] AMPPAL          C:\Windows\system32\DRIVERS\AMPPAL.sys
03:24:35.0091 1940  AMPPAL - ok
03:24:35.0107 1940  [ 157B1C973637919DCD0D0464167C86BA ] AMPPALP        C:\Windows\system32\DRIVERS\amppal.sys
03:24:35.0107 1940  AMPPALP - ok
03:24:35.0122 1940  [ FB70F8C1283C8CC6BFAA6F9971107E68 ] AMPPALR3        C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
03:24:35.0138 1940  AMPPALR3 - ok
03:24:35.0154 1940  [ 07194A09DC27C99A2474251DE27F6E17 ] AntiVirSchedulerService C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
03:24:35.0154 1940  AntiVirSchedulerService - ok
03:24:35.0154 1940  [ F0964ECD283591E7686AF912298B9F39 ] AntiVirService  C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
03:24:35.0169 1940  AntiVirService - ok
03:24:35.0185 1940  [ 116879B401A4DDD184EA34473D726E35 ] AntiVirWebService C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
03:24:35.0200 1940  AntiVirWebService - ok
03:24:35.0200 1940  [ 89A69C3F2F319B43379399547526D952 ] AppID          C:\Windows\system32\drivers\appid.sys
03:24:35.0263 1940  AppID - ok
03:24:35.0263 1940  [ 0BC381A15355A3982216F7172F545DE1 ] AppIDSvc        C:\Windows\System32\appidsvc.dll
03:24:35.0278 1940  AppIDSvc - ok
03:24:35.0294 1940  [ 3977D4A871CA0D4F2ED1E7DB46829731 ] Appinfo        C:\Windows\System32\appinfo.dll
03:24:35.0310 1940  Appinfo - ok
03:24:35.0310 1940  [ 4ABA3E75A76195A3E38ED2766C962899 ] AppMgmt        C:\Windows\System32\appmgmts.dll
03:24:35.0325 1940  AppMgmt - ok
03:24:35.0325 1940  [ C484F8CEB1717C540242531DB7845C4E ] arc            C:\Windows\system32\DRIVERS\arc.sys
03:24:35.0341 1940  arc - ok
03:24:35.0341 1940  [ 019AF6924AEFE7839F61C830227FE79C ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
03:24:35.0356 1940  arcsas - ok
03:24:35.0356 1940  [ 769765CE2CC62867468CEA93969B2242 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
03:24:35.0388 1940  AsyncMac - ok
03:24:35.0388 1940  [ 02062C0B390B7729EDC9E69C680A6F3C ] atapi          C:\Windows\system32\drivers\atapi.sys
03:24:35.0403 1940  atapi - ok
03:24:35.0403 1940  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
03:24:35.0434 1940  AudioEndpointBuilder - ok
03:24:35.0450 1940  [ F23FEF6D569FCE88671949894A8BECF1 ] AudioSrv        C:\Windows\System32\Audiosrv.dll
03:24:35.0466 1940  AudioSrv - ok
03:24:35.0481 1940  [ 58AEE8F9E26595ADEB6F008FBB0D6174 ] avgntflt        C:\Windows\system32\DRIVERS\avgntflt.sys
03:24:35.0481 1940  avgntflt - ok
03:24:35.0497 1940  [ 37D3D3D28B107BCBC1C0137FF31AE480 ] avipbb          C:\Windows\system32\DRIVERS\avipbb.sys
03:24:35.0512 1940  avipbb - ok
03:24:35.0512 1940  [ CD0E732347BF09717E0BDDC0C66699AB ] avkmgr          C:\Windows\system32\DRIVERS\avkmgr.sys
03:24:35.0512 1940  avkmgr - ok
03:24:35.0528 1940  [ A6BF31A71B409DFA8CAC83159E1E2AFF ] AxInstSV        C:\Windows\System32\AxInstSV.dll
03:24:35.0544 1940  AxInstSV - ok
03:24:35.0559 1940  [ 3E5B191307609F7514148C6832BB0842 ] b06bdrv        C:\Windows\system32\DRIVERS\bxvbda.sys
03:24:35.0575 1940  b06bdrv - ok
03:24:35.0590 1940  [ B5ACE6968304A3900EEB1EBFD9622DF2 ] b57nd60a        C:\Windows\system32\DRIVERS\b57nd60a.sys
03:24:35.0606 1940  b57nd60a - ok
03:24:35.0606 1940  [ FDE360167101B4E45A96F939F388AEB0 ] BDESVC          C:\Windows\System32\bdesvc.dll
03:24:35.0684 1940  BDESVC - ok
03:24:35.0684 1940  [ 16A47CE2DECC9B099349A5F840654746 ] Beep            C:\Windows\system32\drivers\Beep.sys
03:24:35.0715 1940  Beep - ok
03:24:35.0715 1940  [ 82974D6A2FD19445CC5171FC378668A4 ] BFE            C:\Windows\System32\bfe.dll
03:24:35.0746 1940  BFE - ok
03:24:35.0762 1940  [ 1EA7969E3271CBC59E1730697DC74682 ] BITS            C:\Windows\system32\qmgr.dll
03:24:35.0793 1940  BITS - ok
03:24:35.0809 1940  [ 61583EE3C3A17003C4ACD0475646B4D3 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
03:24:35.0809 1940  blbdrive - ok
03:24:35.0824 1940  [ 05981C3E51D827ED6B8101A54B05E392 ] Bluetooth Device Monitor C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
03:24:35.0840 1940  Bluetooth Device Monitor - ok
03:24:35.0856 1940  [ BBFAF63BF768047FE2441B4139E803E3 ] Bluetooth Media Service C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
03:24:35.0887 1940  Bluetooth Media Service - ok
03:24:35.0902 1940  [ 41D8F56E6BBE0111244D87BE2FA90374 ] Bluetooth OBEX Service C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
03:24:35.0918 1940  Bluetooth OBEX Service - ok
03:24:35.0918 1940  [ 6C02A83164F5CC0A262F4199F0871CF5 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
03:24:35.0934 1940  bowser - ok
03:24:35.0934 1940  [ F09EEE9EDC320B5E1501F749FDE686C8 ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
03:24:35.0965 1940  BrFiltLo - ok
03:24:35.0965 1940  [ B114D3098E9BDB8BEA8B053685831BE6 ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
03:24:35.0980 1940  BrFiltUp - ok
03:24:35.0980 1940  [ 5C2F352A4E961D72518261257AAE204B ] BridgeMP        C:\Windows\system32\DRIVERS\bridge.sys
03:24:36.0012 1940  BridgeMP - ok
03:24:36.0012 1940  [ 05F5A0D14A2EE1D8255C2AA0E9E8E694 ] Browser        C:\Windows\System32\browser.dll
03:24:36.0027 1940  Browser - ok
03:24:36.0027 1940  [ 43BEA8D483BF1870F018E2D02E06A5BD ] Brserid        C:\Windows\System32\Drivers\Brserid.sys
03:24:36.0058 1940  Brserid - ok
03:24:36.0058 1940  [ A6ECA2151B08A09CACECA35C07F05B42 ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
03:24:36.0074 1940  BrSerWdm - ok
03:24:36.0074 1940  [ B79968002C277E869CF38BD22CD61524 ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
03:24:36.0090 1940  BrUsbMdm - ok
03:24:36.0090 1940  [ A87528880231C54E75EA7A44943B38BF ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
03:24:36.0090 1940  BrUsbSer - ok
03:24:36.0105 1940  [ CF98190A94F62E405C8CB255018B2315 ] BthEnum        C:\Windows\system32\drivers\BthEnum.sys
03:24:36.0105 1940  BthEnum - ok
03:24:36.0121 1940  [ 9DA669F11D1F894AB4EB69BF546A42E8 ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
03:24:36.0121 1940  BTHMODEM - ok
03:24:36.0136 1940  [ 02DD601B708DD0667E1331FA8518E9FF ] BthPan          C:\Windows\system32\DRIVERS\bthpan.sys
03:24:36.0136 1940  BthPan - ok
03:24:36.0152 1940  [ 738D0E9272F59EB7A1449C3EC118E6C4 ] BTHPORT        C:\Windows\system32\Drivers\BTHport.sys
03:24:36.0168 1940  BTHPORT - ok
03:24:36.0183 1940  [ 95F9C2976059462CBBF227F7AAB10DE9 ] bthserv        C:\Windows\system32\bthserv.dll
03:24:36.0199 1940  bthserv - ok
03:24:36.0199 1940  [ FA2D081709A764F6BEE16B7FFE03E36C ] BTHSSecurityMgr C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
03:24:36.0214 1940  BTHSSecurityMgr - ok
03:24:36.0214 1940  [ F188B7394D81010767B6DF3178519A37 ] BTHUSB          C:\Windows\system32\Drivers\BTHUSB.sys
03:24:36.0230 1940  BTHUSB - ok
03:24:36.0230 1940  [ 988CC6CC49303665D3B2435C51505C3F ] btmaux          C:\Windows\system32\DRIVERS\btmaux.sys
03:24:36.0246 1940  btmaux - ok
03:24:36.0246 1940  [ 2B4B508AFAC2A563931AF1FE875A5B16 ] btmhsf          C:\Windows\system32\DRIVERS\btmhsf.sys
03:24:36.0277 1940  btmhsf - ok
03:24:36.0277 1940  [ B8BD2BB284668C84865658C77574381A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
03:24:36.0308 1940  cdfs - ok
03:24:36.0308 1940  [ F036CE71586E93D94DAB220D7BDF4416 ] cdrom          C:\Windows\system32\drivers\cdrom.sys
03:24:36.0355 1940  cdrom - ok
03:24:36.0355 1940  [ F17D1D393BBC69C5322FBFAFACA28C7F ] CertPropSvc    C:\Windows\System32\certprop.dll
03:24:36.0386 1940  CertPropSvc - ok
03:24:36.0386 1940  [ D7CD5C4E1B71FA62050515314CFB52CF ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
03:24:36.0402 1940  circlass - ok
03:24:36.0402 1940  [ FE1EC06F2253F691FE36217C592A0206 ] CLFS            C:\Windows\system32\CLFS.sys
03:24:36.0417 1940  CLFS - ok
03:24:36.0433 1940  [ D88040F816FDA31C3B466F0FA0918F29 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
03:24:36.0448 1940  clr_optimization_v2.0.50727_32 - ok
03:24:36.0448 1940  [ D1CEEA2B47CB998321C579651CE3E4F8 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
03:24:36.0464 1940  clr_optimization_v2.0.50727_64 - ok
03:24:36.0464 1940  [ C5A75EB48E2344ABDC162BDA79E16841 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
03:24:36.0480 1940  clr_optimization_v4.0.30319_32 - ok
03:24:36.0480 1940  [ C6F9AF94DCD58122A4D7E89DB6BED29D ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
03:24:36.0495 1940  clr_optimization_v4.0.30319_64 - ok
03:24:36.0495 1940  [ 0840155D0BDDF1190F84A663C284BD33 ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
03:24:36.0511 1940  CmBatt - ok
03:24:36.0511 1940  [ E19D3F095812725D88F9001985B94EDD ] cmdide          C:\Windows\system32\drivers\cmdide.sys
03:24:36.0511 1940  cmdide - ok
03:24:36.0526 1940  [ AAFCB52FE0037207FB6FBEA070D25EFE ] CNG            C:\Windows\system32\Drivers\cng.sys
03:24:36.0558 1940  CNG - ok
03:24:36.0558 1940  [ 102DE219C3F61415F964C88E9085AD14 ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
03:24:36.0558 1940  Compbatt - ok
03:24:36.0558 1940  [ 03EDB043586CCEBA243D689BDDA370A8 ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
03:24:36.0573 1940  CompositeBus - ok
03:24:36.0573 1940  COMSysApp - ok
03:24:36.0620 1940  [ 78AF1C499BF02F9814DF959A04A4F9C9 ] cphs            C:\Windows\SysWow64\IntelCpHeciSvc.exe
03:24:36.0636 1940  cphs - ok
03:24:36.0651 1940  [ 1C827878A998C18847245FE1F34EE597 ] crcdisk        C:\Windows\system32\DRIVERS\crcdisk.sys
03:24:36.0651 1940  crcdisk - ok
03:24:36.0667 1940  [ 9C01375BE382E834CC26D1B7EAF2C4FE ] CryptSvc        C:\Windows\system32\cryptsvc.dll
03:24:36.0667 1940  CryptSvc - ok
03:24:36.0682 1940  [ 54DA3DFD29ED9F1619B6F53F3CE55E49 ] CSC            C:\Windows\system32\drivers\csc.sys
03:24:36.0714 1940  CSC - ok
03:24:36.0714 1940  [ 3AB183AB4D2C79DCF459CD2C1266B043 ] CscService      C:\Windows\System32\cscsvc.dll
03:24:36.0729 1940  CscService - ok
03:24:36.0745 1940  [ 5C627D1B1138676C0A7AB2C2C190D123 ] DcomLaunch      C:\Windows\system32\rpcss.dll
03:24:36.0776 1940  DcomLaunch - ok
03:24:36.0776 1940  [ 3CEC7631A84943677AA8FA8EE5B6B43D ] defragsvc      C:\Windows\System32\defragsvc.dll
03:24:36.0807 1940  defragsvc - ok
03:24:36.0807 1940  [ 9BB2EF44EAA163B29C4A4587887A0FE4 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
03:24:36.0838 1940  DfsC - ok
03:24:36.0838 1940  [ 43D808F5D9E1A18E5EEB5EBC83969E4E ] Dhcp            C:\Windows\system32\dhcpcore.dll
03:24:36.0854 1940  Dhcp - ok
03:24:36.0854 1940  [ 13096B05847EC78F0977F2C0F79E9AB3 ] discache        C:\Windows\system32\drivers\discache.sys
03:24:36.0885 1940  discache - ok
03:24:36.0885 1940  [ 9819EEE8B5EA3784EC4AF3B137A5244C ] Disk            C:\Windows\system32\DRIVERS\disk.sys
03:24:36.0885 1940  Disk - ok
03:24:36.0901 1940  [ 16835866AAA693C7D7FCEBA8FFF706E4 ] Dnscache        C:\Windows\System32\dnsrslvr.dll
03:24:36.0901 1940  Dnscache - ok
03:24:36.0916 1940  [ B1FB3DDCA0FDF408750D5843591AFBC6 ] dot3svc        C:\Windows\System32\dot3svc.dll
03:24:36.0932 1940  dot3svc - ok
03:24:36.0948 1940  [ B26F4F737E8F9DF4F31AF6CF31D05820 ] DPS            C:\Windows\system32\dps.dll
03:24:36.0963 1940  DPS - ok
03:24:36.0963 1940  [ 9B19F34400D24DF84C858A421C205754 ] drmkaud        C:\Windows\system32\drivers\drmkaud.sys
03:24:36.0979 1940  drmkaud - ok
03:24:36.0979 1940  [ 46571ED73AE84469DCA53081D33CF3C8 ] dtsoftbus01    C:\Windows\system32\DRIVERS\dtsoftbus01.sys
03:24:36.0994 1940  dtsoftbus01 - ok
03:24:37.0010 1940  [ F5BEE30450E18E6B83A5012C100616FD ] DXGKrnl        C:\Windows\System32\drivers\dxgkrnl.sys
03:24:37.0026 1940  DXGKrnl - ok
03:24:37.0041 1940  [ EDC6E9C057C9D7F83EEA22B4CEF5DCAD ] E1G60          C:\Windows\system32\DRIVERS\E1G6032E.sys
03:24:37.0057 1940  E1G60 - ok
03:24:37.0057 1940  [ E2DDA8726DA9CB5B2C4000C9018A9633 ] EapHost        C:\Windows\System32\eapsvc.dll
03:24:37.0072 1940  EapHost - ok
03:24:37.0104 1940  [ DC5D737F51BE844D8C82C695EB17372F ] ebdrv          C:\Windows\system32\DRIVERS\evbda.sys
03:24:37.0166 1940  ebdrv - ok
03:24:37.0166 1940  [ C118A82CD78818C29AB228366EBF81C3 ] EFS            C:\Windows\System32\lsass.exe
03:24:37.0182 1940  EFS - ok
03:24:37.0197 1940  [ C4002B6B41975F057D98C439030CEA07 ] ehRecvr        C:\Windows\ehome\ehRecvr.exe
03:24:37.0213 1940  ehRecvr - ok
03:24:37.0213 1940  [ 4705E8EF9934482C5BB488CE28AFC681 ] ehSched        C:\Windows\ehome\ehsched.exe
03:24:37.0228 1940  ehSched - ok
03:24:37.0244 1940  [ 0E5DA5369A0FCAEA12456DD852545184 ] elxstor        C:\Windows\system32\DRIVERS\elxstor.sys
03:24:37.0260 1940  elxstor - ok
03:24:37.0260 1940  [ 34A3C54752046E79A126E15C51DB409B ] ErrDev          C:\Windows\system32\drivers\errdev.sys
03:24:37.0275 1940  ErrDev - ok
03:24:37.0275 1940  [ 0621A1612DB6952C9554DA2AF864C9E9 ] ETD            C:\Windows\system32\DRIVERS\ETD.sys
03:24:37.0291 1940  ETD - ok
03:24:37.0306 1940  [ 4166F82BE4D24938977DD1746BE9B8A0 ] EventSystem    C:\Windows\system32\es.dll
03:24:37.0322 1940  EventSystem - ok
03:24:37.0338 1940  [ 23D401A43DADED10A153B9F3A7E66C91 ] EvtEng          C:\Program Files\Intel\WiFi\bin\EvtEng.exe
03:24:37.0353 1940  EvtEng - ok
03:24:37.0353 1940  [ A510C654EC00C1E9BDD91EEB3A59823B ] exfat          C:\Windows\system32\drivers\exfat.sys
03:24:37.0384 1940  exfat - ok
03:24:37.0400 1940  [ 0ADC83218B66A6DB380C330836F3E36D ] fastfat        C:\Windows\system32\drivers\fastfat.sys
03:24:37.0416 1940  fastfat - ok
03:24:37.0431 1940  [ DBEFD454F8318A0EF691FDD2EAAB44EB ] Fax            C:\Windows\system32\fxssvc.exe
03:24:37.0447 1940  Fax - ok
03:24:37.0462 1940  [ D765D19CD8EF61F650C384F62FAC00AB ] fdc            C:\Windows\system32\DRIVERS\fdc.sys
03:24:37.0462 1940  fdc - ok
03:24:37.0462 1940  [ 0438CAB2E03F4FB61455A7956026FE86 ] fdPHost        C:\Windows\system32\fdPHost.dll
03:24:37.0494 1940  fdPHost - ok
03:24:37.0494 1940  [ 802496CB59A30349F9A6DD22D6947644 ] FDResPub        C:\Windows\system32\fdrespub.dll
03:24:37.0525 1940  FDResPub - ok
03:24:37.0525 1940  [ 655661BE46B5F5F3FD454E2C3095B930 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
03:24:37.0540 1940  FileInfo - ok
03:24:37.0540 1940  [ 5F671AB5BC87EEA04EC38A6CD5962A47 ] Filetrace      C:\Windows\system32\drivers\filetrace.sys
03:24:37.0556 1940  Filetrace - ok
03:24:37.0572 1940  [ C172A0F53008EAEB8EA33FE10E177AF5 ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
03:24:37.0572 1940  flpydisk - ok
03:24:37.0587 1940  [ DA6B67270FD9DB3697B20FCE94950741 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
03:24:37.0603 1940  FltMgr - ok
03:24:37.0618 1940  [ 5C4CB4086FB83115B153E47ADD961A0C ] FontCache      C:\Windows\system32\FntCache.dll
03:24:37.0634 1940  FontCache - ok
03:24:37.0650 1940  [ A8B7F3818AB65695E3A0BB3279F6DCE6 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
03:24:37.0650 1940  FontCache3.0.0.0 - ok
03:24:37.0650 1940  [ D43703496149971890703B4B1B723EAC ] FsDepends      C:\Windows\system32\drivers\FsDepends.sys
03:24:37.0665 1940  FsDepends - ok
03:24:37.0665 1940  [ 6BD9295CC032DD3077C671FCCF579A7B ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
03:24:37.0681 1940  Fs_Rec - ok
03:24:37.0681 1940  [ 1F7B25B858FA27015169FE95E54108ED ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
03:24:37.0712 1940  fvevol - ok
03:24:37.0712 1940  [ 8C778D335C9D272CFD3298AB02ABE3B6 ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
03:24:37.0728 1940  gagp30kx - ok
03:24:37.0728 1940  [ 277BBC7E1AA1EE957F573A10ECA7EF3A ] gpsvc          C:\Windows\System32\gpsvc.dll
03:24:37.0759 1940  gpsvc - ok
03:24:37.0759 1940  [ F2523EF6460FC42405B12248338AB2F0 ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
03:24:37.0774 1940  hcw85cir - ok
03:24:37.0790 1940  [ 975761C778E33CD22498059B91E7373A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
03:24:37.0806 1940  HdAudAddService - ok
03:24:37.0806 1940  [ 97BFED39B6B79EB12CDDBFEED51F56BB ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
03:24:37.0821 1940  HDAudBus - ok
03:24:37.0821 1940  [ 78E86380454A7B10A5EB255DC44A355F ] HidBatt        C:\Windows\system32\DRIVERS\HidBatt.sys
03:24:37.0837 1940  HidBatt - ok
03:24:37.0837 1940  [ 7FD2A313F7AFE5C4DAB14798C48DD104 ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
03:24:37.0852 1940  HidBth - ok
03:24:37.0852 1940  [ 0A77D29F311B88CFAE3B13F9C1A73825 ] HidIr          C:\Windows\system32\DRIVERS\hidir.sys
03:24:37.0868 1940  HidIr - ok
03:24:37.0868 1940  [ BD9EB3958F213F96B97B1D897DEE006D ] hidserv        C:\Windows\System32\hidserv.dll
03:24:37.0899 1940  hidserv - ok
03:24:37.0899 1940  [ 9592090A7E2B61CD582B612B6DF70536 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
03:24:37.0915 1940  HidUsb - ok
03:24:37.0915 1940  [ 387E72E739E15E3D37907A86D9FF98E2 ] hkmsvc          C:\Windows\system32\kmsvc.dll
03:24:37.0930 1940  hkmsvc - ok
03:24:37.0946 1940  [ EFDFB3DD38A4376F93E7985173813ABD ] HomeGroupListener C:\Windows\system32\ListSvc.dll
03:24:37.0962 1940  HomeGroupListener - ok
03:24:37.0962 1940  [ 908ACB1F594274965A53926B10C81E89 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
03:24:37.0962 1940  HomeGroupProvider - ok
03:24:37.0977 1940  [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
03:24:37.0977 1940  HpSAMD - ok
03:24:37.0993 1940  [ 0EA7DE1ACB728DD5A369FD742D6EEE28 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
03:24:38.0040 1940  HTTP - ok
03:24:38.0040 1940  [ A5462BD6884960C9DC85ED49D34FF392 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
03:24:38.0040 1940  hwpolicy - ok
03:24:38.0055 1940  [ FA55C73D4AFFA7EE23AC4BE53B4592D3 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
03:24:38.0055 1940  i8042prt - ok
03:24:38.0071 1940  [ D1753C06EE17E29352B065EACF3F10D0 ] iaStor          C:\Windows\system32\DRIVERS\iaStor.sys
03:24:38.0086 1940  iaStor - ok
03:24:38.0086 1940  [ 545462D0DBE24AF379BA869B7C185CCD ] IAStorDataMgrSvc C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
03:24:38.0086 1940  IAStorDataMgrSvc - ok
03:24:38.0102 1940  [ AAAF44DB3BD0B9D1FB6969B23ECC8366 ] iaStorV        C:\Windows\system32\drivers\iaStorV.sys
03:24:38.0118 1940  iaStorV - ok
03:24:38.0118 1940  [ 9E3D44CE737388F6BBBB6DD4A1C1847C ] ibtfltcoex      C:\Windows\system32\DRIVERS\iBtFltCoex.sys
03:24:38.0133 1940  ibtfltcoex - ok
03:24:38.0164 1940  [ 3CC7B3BB1A9EA201A040883EDFAA67A0 ] IconMan_R      C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
03:24:38.0196 1940  IconMan_R - ok
03:24:38.0211 1940  [ 5988FC40F8DB5B0739CD1E3A5D0D78BD ] idsvc          C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe
03:24:38.0242 1940  idsvc - ok
03:24:38.0305 1940  [ A1CF07D24EDCDC6870535471654D957C ] igfx            C:\Windows\system32\DRIVERS\igdkmd64.sys
03:24:38.0367 1940  igfx - ok
03:24:38.0383 1940  [ 5C18831C61933628F5BB0EA2675B9D21 ] iirsp          C:\Windows\system32\DRIVERS\iirsp.sys
03:24:38.0383 1940  iirsp - ok
03:24:38.0398 1940  [ FCD84C381E0140AF901E58D48882D26B ] IKEEXT          C:\Windows\System32\ikeext.dll
03:24:38.0430 1940  IKEEXT - ok
03:24:38.0476 1940  [ 91ED47813243B455E2D81115A8255F0E ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys
03:24:38.0539 1940  IntcAzAudAddService - ok
03:24:38.0539 1940  [ 6C9FFFECA9FED31347D211C5D1FFBD2D ] IntcDAud        C:\Windows\system32\DRIVERS\IntcDAud.sys
03:24:38.0554 1940  IntcDAud - ok
03:24:38.0570 1940  [ 832CE330DD987227B7DEA8C03F22AEFA ] Intel(R) Capability Licensing Service Interface C:\Program Files\Intel\iCLS Client\HeciServer.exe
03:24:38.0586 1940  Intel(R) Capability Licensing Service Interface - ok
03:24:38.0586 1940  [ F00F20E70C6EC3AA366910083A0518AA ] intelide        C:\Windows\system32\drivers\intelide.sys
03:24:38.0586 1940  intelide - ok
03:24:38.0601 1940  [ ADA036632C664CAA754079041CF1F8C1 ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
03:24:38.0601 1940  intelppm - ok
03:24:38.0601 1940  [ 098A91C54546A3B878DAD6A7E90A455B ] IPBusEnum      C:\Windows\system32\ipbusenum.dll
03:24:38.0632 1940  IPBusEnum - ok
03:24:38.0632 1940  [ C9F0E1BD74365A8771590E9008D22AB6 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
03:24:38.0664 1940  IpFilterDriver - ok
03:24:38.0664 1940  [ 08C2957BB30058E663720C5606885653 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
03:24:38.0679 1940  iphlpsvc - ok
03:24:38.0695 1940  [ 0FC1AEA580957AA8817B8F305D18CA3A ] IPMIDRV        C:\Windows\system32\drivers\IPMIDrv.sys
03:24:38.0710 1940  IPMIDRV - ok
03:24:38.0710 1940  [ AF9B39A7E7B6CAA203B3862582E9F2D0 ] IPNAT          C:\Windows\system32\drivers\ipnat.sys
03:24:38.0742 1940  IPNAT - ok
03:24:38.0742 1940  [ 3ABF5E7213EB28966D55D58B515D5CE9 ] IRENUM          C:\Windows\system32\drivers\irenum.sys
03:24:38.0757 1940  IRENUM - ok
03:24:38.0757 1940  [ 2F7B28DC3E1183E5EB418DF55C204F38 ] isapnp          C:\Windows\system32\drivers\isapnp.sys
03:24:38.0773 1940  isapnp - ok
03:24:38.0773 1940  [ D931D7309DEB2317035B07C9F9E6B0BD ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
03:24:38.0788 1940  iScsiPrt - ok
03:24:38.0804 1940  [ 846354992EBB373F452EB9182D501B08 ] iusb3hcs        C:\Windows\system32\DRIVERS\iusb3hcs.sys
03:24:38.0804 1940  iusb3hcs - ok
03:24:38.0820 1940  [ 1D88A23853387D34D52CC8F9DDBFC56C ] iusb3hub        C:\Windows\system32\DRIVERS\iusb3hub.sys
03:24:38.0820 1940  iusb3hub - ok
03:24:38.0835 1940  [ FC5EFD7C797DF19DFB999F0605A7924E ] iusb3xhc        C:\Windows\system32\DRIVERS\iusb3xhc.sys
03:24:38.0851 1940  iusb3xhc - ok
03:24:38.0866 1940  [ 13E838EA8652F8451F29301D3B56B17B ] jhi_service    C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
03:24:38.0866 1940  jhi_service - ok
03:24:38.0866 1940  [ BC02336F1CBA7DCC7D1213BB588A68A5 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
03:24:38.0882 1940  kbdclass - ok
03:24:38.0882 1940  [ 0705EFF5B42A9DB58548EEC3B26BB484 ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
03:24:38.0898 1940  kbdhid - ok
03:24:38.0898 1940  [ C118A82CD78818C29AB228366EBF81C3 ] KeyIso          C:\Windows\system32\lsass.exe
03:24:38.0913 1940  KeyIso - ok
03:24:38.0913 1940  [ 97A7070AEA4C058B6418519E869A63B4 ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
03:24:38.0929 1940  KSecDD - ok
03:24:38.0929 1940  [ 7EFB9333E4ECCE6AE4AE9D777D9E553E ] KSecPkg        C:\Windows\system32\Drivers\ksecpkg.sys
03:24:38.0944 1940  KSecPkg - ok
03:24:38.0944 1940  [ 6869281E78CB31A43E969F06B57347C4 ] ksthunk        C:\Windows\system32\drivers\ksthunk.sys
03:24:38.0960 1940  ksthunk - ok
03:24:38.0976 1940  [ 6AB66E16AA859232F64DEB66887A8C9C ] KtmRm          C:\Windows\system32\msdtckrm.dll
03:24:39.0007 1940  KtmRm - ok
03:24:39.0007 1940  [ B360D24F23778501501404924AFD0C92 ] L1C            C:\Windows\system32\DRIVERS\e22w7x64.sys
03:24:39.0022 1940  L1C - ok
03:24:39.0038 1940  [ D9F42719019740BAA6D1C6D536CBDAA6 ] LanmanServer    C:\Windows\System32\srvsvc.dll
03:24:39.0054 1940  LanmanServer - ok
03:24:39.0069 1940  [ 851A1382EED3E3A7476DB004F4EE3E1A ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
03:24:39.0085 1940  LanmanWorkstation - ok
03:24:39.0085 1940  [ 1538831CF8AD2979A04C423779465827 ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
03:24:39.0116 1940  lltdio - ok
03:24:39.0116 1940  [ C1185803384AB3FEED115F79F109427F ] lltdsvc        C:\Windows\System32\lltdsvc.dll
03:24:39.0147 1940  lltdsvc - ok
03:24:39.0163 1940  [ F993A32249B66C9D622EA5592A8B76B8 ] lmhosts        C:\Windows\System32\lmhsvc.dll
03:24:39.0178 1940  lmhosts - ok
03:24:39.0178 1940  [ BD9457699AC9C1A0FE43398043617279 ] LMS            C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
03:24:39.0194 1940  LMS - ok
03:24:39.0194 1940  [ 1A93E54EB0ECE102495A51266DCDB6A6 ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
03:24:39.0210 1940  LSI_FC - ok
03:24:39.0210 1940  [ 1047184A9FDC8BDBFF857175875EE810 ] LSI_SAS        C:\Windows\system32\DRIVERS\lsi_sas.sys
03:24:39.0225 1940  LSI_SAS - ok
03:24:39.0225 1940  [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93 ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
03:24:39.0241 1940  LSI_SAS2 - ok
03:24:39.0241 1940  [ 0504EACAFF0D3C8AED161C4B0D369D4A ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
03:24:39.0256 1940  LSI_SCSI - ok
03:24:39.0256 1940  [ 43D0F98E1D56CCDDB0D5254CFF7B356E ] luafv          C:\Windows\system32\drivers\luafv.sys
03:24:39.0288 1940  luafv - ok
03:24:39.0288 1940  [ A8FE8F2783B2929B56F5370A89356CE9 ] MBAMProtector  C:\Windows\system32\drivers\mbam.sys
03:24:39.0303 1940  MBAMProtector - ok
03:24:39.0303 1940  [ 85B16A92B117A5A800032ECD904B86DB ] MBAMScheduler  C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
03:24:39.0319 1940  MBAMScheduler - ok
03:24:39.0334 1940  [ 20E2469DB709FC675E655CEAA11BE312 ] MBAMService    C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
03:24:39.0350 1940  MBAMService - ok
03:24:39.0350 1940  [ 0BE09CD858ABF9DF6ED259D57A1A1663 ] Mcx2Svc        C:\Windows\system32\Mcx2Svc.dll
03:24:39.0366 1940  Mcx2Svc - ok
03:24:39.0366 1940  [ A55805F747C6EDB6A9080D7C633BD0F4 ] megasas        C:\Windows\system32\DRIVERS\megasas.sys
03:24:39.0381 1940  megasas - ok
03:24:39.0381 1940  [ BAF74CE0072480C3B6B7C13B2A94D6B3 ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
03:24:39.0397 1940  MegaSR - ok
03:24:39.0397 1940  [ 772A1DEEDFDBC244183B5C805D1B7D85 ] MEIx64          C:\Windows\system32\DRIVERS\HECIx64.sys
03:24:39.0412 1940  MEIx64 - ok
03:24:39.0412 1940  [ E40E80D0304A73E8D269F7141D77250B ] MMCSS          C:\Windows\system32\mmcss.dll
03:24:39.0428 1940  MMCSS - ok
03:24:39.0444 1940  [ 800BA92F7010378B09F9ED9270F07137 ] Modem          C:\Windows\system32\drivers\modem.sys
03:24:39.0459 1940  Modem - ok
03:24:39.0459 1940  [ B03D591DC7DA45ECE20B3B467E6AADAA ] monitor        C:\Windows\system32\DRIVERS\monitor.sys
03:24:39.0475 1940  monitor - ok
03:24:39.0475 1940  [ 7D27EA49F3C1F687D357E77A470AEA99 ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
03:24:39.0490 1940  mouclass - ok
03:24:39.0490 1940  [ D3BF052C40B0C4166D9FD86A4288C1E6 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
03:24:39.0506 1940  mouhid - ok
03:24:39.0506 1940  [ 32E7A3D591D671A6DF2DB515A5CBE0FA ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
03:24:39.0522 1940  mountmgr - ok
03:24:39.0522 1940  [ 313265CF4F5F02ED927774DA1DB3FE00 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
03:24:39.0522 1940  MozillaMaintenance - ok
03:24:39.0537 1940  [ A44B420D30BD56E145D6A2BC8768EC58 ] mpio            C:\Windows\system32\drivers\mpio.sys
03:24:39.0537 1940  mpio - ok
03:24:39.0553 1940  [ 6C38C9E45AE0EA2FA5E551F2ED5E978F ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
03:24:39.0568 1940  mpsdrv - ok
03:24:39.0584 1940  [ 54FFC9C8898113ACE189D4AA7199D2C1 ] MpsSvc          C:\Windows\system32\mpssvc.dll
03:24:39.0615 1940  MpsSvc - ok
03:24:39.0615 1940  [ DC722758B8261E1ABAFD31A3C0A66380 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
03:24:39.0631 1940  MRxDAV - ok
03:24:39.0646 1940  [ A5D9106A73DC88564C825D317CAC68AC ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
03:24:39.0662 1940  mrxsmb - ok
03:24:39.0662 1940  [ D711B3C1D5F42C0C2415687BE09FC163 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
03:24:39.0678 1940  mrxsmb10 - ok
03:24:39.0678 1940  [ 9423E9D355C8D303E76B8CFBD8A5C30C ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
03:24:39.0693 1940  mrxsmb20 - ok
03:24:39.0693 1940  [ C25F0BAFA182CBCA2DD3C851C2E75796 ] msahci          C:\Windows\system32\drivers\msahci.sys
03:24:39.0709 1940  msahci - ok
03:24:39.0709 1940  [ DB801A638D011B9633829EB6F663C900 ] msdsm          C:\Windows\system32\drivers\msdsm.sys
03:24:39.0724 1940  msdsm - ok
03:24:39.0724 1940  [ DE0ECE52236CFA3ED2DBFC03F28253A8 ] MSDTC          C:\Windows\System32\msdtc.exe
03:24:39.0740 1940  MSDTC - ok
03:24:39.0756 1940  [ AA3FB40E17CE1388FA1BEDAB50EA8F96 ] Msfs            C:\Windows\system32\drivers\Msfs.sys
03:24:39.0771 1940  Msfs - ok
03:24:39.0771 1940  [ F9D215A46A8B9753F61767FA72A20326 ] mshidkmdf      C:\Windows\System32\drivers\mshidkmdf.sys
03:24:39.0802 1940  mshidkmdf - ok
03:24:39.0802 1940  [ D916874BBD4F8B07BFB7FA9B3CCAE29D ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
03:24:39.0818 1940  msisadrv - ok
03:24:39.0818 1940  [ 808E98FF49B155C522E6400953177B08 ] MSiSCSI        C:\Windows\system32\iscsiexe.dll
03:24:39.0849 1940  MSiSCSI - ok
03:24:39.0849 1940  msiserver - ok
03:24:39.0849 1940  [ 49CCF2C4FEA34FFAD8B1B59D49439366 ] MSKSSRV        C:\Windows\system32\drivers\MSKSSRV.sys
03:24:39.0880 1940  MSKSSRV - ok
03:24:39.0880 1940  [ BDD71ACE35A232104DDD349EE70E1AB3 ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
03:24:39.0896 1940  MSPCLOCK - ok
03:24:39.0896 1940  [ 4ED981241DB27C3383D72092B618A1D0 ] MSPQM          C:\Windows\system32\drivers\MSPQM.sys
03:24:39.0927 1940  MSPQM - ok
03:24:39.0927 1940  [ 759A9EEB0FA9ED79DA1FB7D4EF78866D ] MsRPC          C:\Windows\system32\drivers\MsRPC.sys
03:24:39.0943 1940  MsRPC - ok
03:24:39.0943 1940  [ 0EED230E37515A0EAEE3C2E1BC97B288 ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
03:24:39.0958 1940  mssmbios - ok
03:24:39.0958 1940  [ 2E66F9ECB30B4221A318C92AC2250779 ] MSTEE          C:\Windows\system32\drivers\MSTEE.sys
03:24:39.0974 1940  MSTEE - ok
03:24:39.0990 1940  [ 7EA404308934E675BFFDE8EDF0757BCD ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
03:24:39.0990 1940  MTConfig - ok
03:24:39.0990 1940  [ F9A18612FD3526FE473C1BDA678D61C8 ] Mup            C:\Windows\system32\Drivers\mup.sys
03:24:40.0005 1940  Mup - ok
03:24:40.0021 1940  [ 48C9BA25EDA90E3DB07ADAC8CD32F5F3 ] MyWiFiDHCPDNS  C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
03:24:40.0021 1940  MyWiFiDHCPDNS - ok
03:24:40.0036 1940  [ 582AC6D9873E31DFA28A4547270862DD ] napagent        C:\Windows\system32\qagentRT.dll
03:24:40.0052 1940  napagent - ok
03:24:40.0068 1940  [ 1EA3749C4114DB3E3161156FFFFA6B33 ] NativeWifiP    C:\Windows\system32\DRIVERS\nwifi.sys
03:24:40.0083 1940  NativeWifiP - ok
03:24:40.0099 1940  [ 760E38053BF56E501D562B70AD796B88 ] NDIS            C:\Windows\system32\drivers\ndis.sys
03:24:40.0114 1940  NDIS - ok
03:24:40.0114 1940  [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC ] NdisCap        C:\Windows\system32\DRIVERS\ndiscap.sys
03:24:40.0146 1940  NdisCap - ok
03:24:40.0146 1940  [ 30639C932D9FEF22B31268FE25A1B6E5 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
03:24:40.0177 1940  NdisTapi - ok
03:24:40.0177 1940  [ 136185F9FB2CC61E573E676AA5402356 ] Ndisuio        C:\Windows\system32\DRIVERS\ndisuio.sys
03:24:40.0208 1940  Ndisuio - ok
03:24:40.0208 1940  [ 53F7305169863F0A2BDDC49E116C2E11 ] NdisWan        C:\Windows\system32\DRIVERS\ndiswan.sys
03:24:40.0239 1940  NdisWan - ok
03:24:40.0239 1940  [ 015C0D8E0E0421B4CFD48CFFE2825879 ] NDProxy        C:\Windows\system32\drivers\NDProxy.sys
03:24:40.0255 1940  NDProxy - ok
03:24:40.0270 1940  [ 86743D9F5D2B1048062B14B1D84501C4 ] NetBIOS        C:\Windows\system32\DRIVERS\netbios.sys
03:24:40.0286 1940  NetBIOS - ok
03:24:40.0302 1940  [ 09594D1089C523423B32A4229263F068 ] NetBT          C:\Windows\system32\DRIVERS\netbt.sys
03:24:40.0333 1940  NetBT - ok
03:24:40.0333 1940  [ C118A82CD78818C29AB228366EBF81C3 ] Netlogon        C:\Windows\system32\lsass.exe
03:24:40.0333 1940  Netlogon - ok
03:24:40.0348 1940  [ 847D3AE376C0817161A14A82C8922A9E ] Netman          C:\Windows\System32\netman.dll
03:24:40.0364 1940  Netman - ok
03:24:40.0380 1940  [ 5F28111C648F1E24F7DBC87CDEB091B8 ] netprofm        C:\Windows\System32\netprofm.dll
03:24:40.0411 1940  netprofm - ok
03:24:40.0411 1940  [ 3E5A36127E201DDF663176B66828FAFE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe
03:24:40.0426 1940  NetTcpPortSharing - ok
03:24:40.0520 1940  [ FAD6C5610D020534401966CD72A1C306 ] NETwNs64        C:\Windows\system32\DRIVERS\Netwsw00.sys
03:24:40.0645 1940  NETwNs64 - ok
03:24:40.0645 1940  [ 77889813BE4D166CDAB78DDBA990DA92 ] nfrd960        C:\Windows\system32\DRIVERS\nfrd960.sys
03:24:40.0660 1940  nfrd960 - ok
03:24:40.0660 1940  [ 8AD77806D336673F270DB31645267293 ] NlaSvc          C:\Windows\System32\nlasvc.dll
03:24:40.0676 1940  NlaSvc - ok
03:24:40.0676 1940  [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
03:24:40.0707 1940  Npfs - ok
03:24:40.0707 1940  [ D54BFDF3E0C953F823B3D0BFE4732528 ] nsi            C:\Windows\system32\nsisvc.dll
03:24:40.0723 1940  nsi - ok
03:24:40.0738 1940  [ E7F5AE18AF4168178A642A9247C63001 ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
03:24:40.0754 1940  nsiproxy - ok
03:24:40.0785 1940  [ E453ACF4E7D44E5530B5D5F2B9CA8563 ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
03:24:40.0816 1940  Ntfs - ok
03:24:40.0816 1940  [ 9899284589F75FA8724FF3D16AED75C1 ] Null            C:\Windows\system32\drivers\Null.sys
03:24:40.0848 1940  Null - ok
03:24:41.0050 1940  [ 67428BB28210D22743CC5B3C032CBC57 ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
03:24:41.0238 1940  nvlddmkm - ok
03:24:41.0253 1940  [ 2AFE430C06494691DD97CBB20A982544 ] nvpciflt        C:\Windows\system32\DRIVERS\nvpciflt.sys
03:24:41.0253 1940  nvpciflt - ok
03:24:41.0269 1940  [ 0A92CB65770442ED0DC44834632F66AD ] nvraid          C:\Windows\system32\drivers\nvraid.sys
03:24:41.0269 1940  nvraid - ok
03:24:41.0284 1940  [ DAB0E87525C10052BF65F06152F37E4A ] nvstor          C:\Windows\system32\drivers\nvstor.sys
03:24:41.0300 1940  nvstor - ok
03:24:41.0300 1940  [ D594841129E5902A67430C01F59EB20C ] nvsvc          C:\Windows\system32\nvvsvc.exe
03:24:41.0331 1940  nvsvc - ok
03:24:41.0347 1940  [ CFE798F2095D6F23F9127CDED4547814 ] nvUpdatusService C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
03:24:41.0394 1940  nvUpdatusService - ok
03:24:41.0394 1940  [ 270D7CD42D6E3979F6DD0146650F0E05 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
03:24:41.0409 1940  nv_agp - ok
03:24:41.0409 1940  [ 3589478E4B22CE21B41FA1BFC0B8B8A0 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
03:24:41.0425 1940  ohci1394 - ok
03:24:41.0425 1940  [ 7A56CF3E3F12E8AF599963B16F50FB6A ] ose            C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE
03:24:41.0440 1940  ose - ok
03:24:41.0440 1940  [ 3EAC4455472CC2C97107B5291E0DCAFE ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
03:24:41.0456 1940  p2pimsvc - ok
03:24:41.0456 1940  [ 927463ECB02179F88E4B9A17568C63C3 ] p2psvc          C:\Windows\system32\p2psvc.dll
03:24:41.0472 1940  p2psvc - ok
03:24:41.0487 1940  [ 0086431C29C35BE1DBC43F52CC273887 ] Parport        C:\Windows\system32\DRIVERS\parport.sys
03:24:41.0487 1940  Parport - ok
03:24:41.0503 1940  [ E9766131EEADE40A27DC27D2D68FBA9C ] partmgr        C:\Windows\system32\drivers\partmgr.sys
03:24:41.0503 1940  partmgr - ok
03:24:41.0518 1940  [ 3AEAA8B561E63452C655DC0584922257 ] PcaSvc          C:\Windows\System32\pcasvc.dll
03:24:41.0534 1940  PcaSvc - ok
03:24:41.0534 1940  [ 94575C0571D1462A0F70BDE6BD6EE6B3 ] pci            C:\Windows\system32\drivers\pci.sys
03:24:41.0534 1940  pci - ok
03:24:41.0550 1940  [ B5B8B5EF2E5CB34DF8DCF8831E3534FA ] pciide          C:\Windows\system32\drivers\pciide.sys
03:24:41.0550 1940  pciide - ok
03:24:41.0565 1940  [ B2E81D4E87CE48589F98CB8C05B01F2F ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
03:24:41.0581 1940  pcmcia - ok
03:24:41.0581 1940  [ D6B9C2E1A11A3A4B26A182FFEF18F603 ] pcw            C:\Windows\system32\drivers\pcw.sys
03:24:41.0581 1940  pcw - ok
03:24:41.0596 1940  [ 68769C3356B3BE5D1C732C97B9A80D6E ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
03:24:41.0628 1940  PEAUTH - ok
03:24:41.0659 1940  [ B9B0A4299DD2D76A4243F75FD54DC680 ] PeerDistSvc    C:\Windows\system32\peerdistsvc.dll
03:24:41.0674 1940  PeerDistSvc - ok
03:24:41.0706 1940  [ E495E408C93141E8FC72DC0C6046DDFA ] PerfHost        C:\Windows\SysWow64\perfhost.exe
03:24:41.0721 1940  PerfHost - ok
03:24:41.0737 1940  [ C7CF6A6E137463219E1259E3F0F0DD6C ] pla            C:\Windows\system32\pla.dll
03:24:41.0784 1940  pla - ok
03:24:41.0784 1940  [ 25FBDEF06C4D92815B353F6E792C8129 ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
03:24:41.0799 1940  PlugPlay - ok
03:24:41.0799 1940  [ 7195581CEC9BB7D12ABE54036ACC2E38 ] PNRPAutoReg    C:\Windows\system32\pnrpauto.dll
03:24:41.0815 1940  PNRPAutoReg - ok
03:24:41.0815 1940  [ 3EAC4455472CC2C97107B5291E0DCAFE ] PNRPsvc        C:\Windows\system32\pnrpsvc.dll
03:24:41.0830 1940  PNRPsvc - ok
03:24:41.0830 1940  [ 4F15D75ADF6156BF56ECED6D4A55C389 ] PolicyAgent    C:\Windows\System32\ipsecsvc.dll
03:24:41.0877 1940  PolicyAgent - ok
03:24:41.0877 1940  [ 6BA9D927DDED70BD1A9CADED45F8B184 ] Power          C:\Windows\system32\umpo.dll
03:24:41.0908 1940  Power - ok
03:24:41.0908 1940  [ F92A2C41117A11A00BE01CA01A7FCDE9 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
03:24:41.0924 1940  PptpMiniport - ok
03:24:41.0940 1940  [ 0D922E23C041EFB1C3FAC2A6F943C9BF ] Processor      C:\Windows\system32\DRIVERS\processr.sys
03:24:41.0955 1940  Processor - ok
03:24:41.0955 1940  [ 53E83F1F6CF9D62F32801CF66D8352A8 ] ProfSvc        C:\Windows\system32\profsvc.dll
03:24:41.0971 1940  ProfSvc - ok
03:24:41.0971 1940  [ C118A82CD78818C29AB228366EBF81C3 ] ProtectedStorage C:\Windows\system32\lsass.exe
03:24:41.0971 1940  ProtectedStorage - ok
03:24:41.0971 1940  [ 0557CF5A2556BD58E26384169D72438D ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
03:24:42.0002 1940  Psched - ok
03:24:42.0002 1940  [ 4E087C5E17F7CC146CA8FD357AD8A7B0 ] qcusbser        C:\Windows\system32\DRIVERS\qcusbser.sys
03:24:42.0018 1940  qcusbser - ok
03:24:42.0033 1940  [ A53A15A11EBFD21077463EE2C7AFEEF0 ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
03:24:42.0064 1940  ql2300 - ok
03:24:42.0064 1940  [ 4F6D12B51DE1AAEFF7DC58C4D75423C8 ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
03:24:42.0080 1940  ql40xx - ok
03:24:42.0096 1940  [ 906191634E99AEA92C4816150BDA3732 ] QWAVE          C:\Windows\system32\qwave.dll
03:24:42.0096 1940  QWAVE - ok
03:24:42.0111 1940  [ 76707BB36430888D9CE9D705398ADB6C ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
03:24:42.0127 1940  QWAVEdrv - ok
03:24:42.0127 1940  [ 5A0DA8AD5762FA2D91678A8A01311704 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
03:24:42.0142 1940  RasAcd - ok
03:24:42.0158 1940  [ 7ECFF9B22276B73F43A99A15A6094E90 ] RasAgileVpn    C:\Windows\system32\DRIVERS\AgileVpn.sys
03:24:42.0174 1940  RasAgileVpn - ok
03:24:42.0174 1940  [ 8F26510C5383B8DBE976DE1CD00FC8C7 ] RasAuto        C:\Windows\System32\rasauto.dll
03:24:42.0205 1940  RasAuto - ok
03:24:42.0205 1940  [ 471815800AE33E6F1C32FB1B97C490CA ] Rasl2tp        C:\Windows\system32\DRIVERS\rasl2tp.sys
03:24:42.0220 1940  Rasl2tp - ok
03:24:42.0236 1940  [ EE867A0870FC9E4972BA9EAAD35651E2 ] RasMan          C:\Windows\System32\rasmans.dll
03:24:42.0252 1940  RasMan - ok
03:24:42.0267 1940  [ 855C9B1CD4756C5E9A2AA58A15F58C25 ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
03:24:42.0283 1940  RasPppoe - ok
03:24:42.0283 1940  [ E8B1E447B008D07FF47D016C2B0EEECB ] RasSstp        C:\Windows\system32\DRIVERS\rassstp.sys
03:24:42.0314 1940  RasSstp - ok
03:24:42.0314 1940  [ 77F665941019A1594D887A74F301FA2F ] rdbss          C:\Windows\system32\DRIVERS\rdbss.sys
03:24:42.0345 1940  rdbss - ok
03:24:42.0345 1940  [ 302DA2A0539F2CF54D7C6CC30C1F2D8D ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
03:24:42.0361 1940  rdpbus - ok
03:24:42.0361 1940  [ CEA6CC257FC9B7715F1C2B4849286D24 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
03:24:42.0392 1940  RDPCDD - ok
03:24:42.0392 1940  [ 1B6163C503398B23FF8B939C67747683 ] RDPDR          C:\Windows\system32\drivers\rdpdr.sys
03:24:42.0408 1940  RDPDR - ok
03:24:42.0408 1940  [ BB5971A4F00659529A5C44831AF22365 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
03:24:42.0439 1940  RDPENCDD - ok
03:24:42.0439 1940  [ 216F3FA57533D98E1F74DED70113177A ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
03:24:42.0454 1940  RDPREFMP - ok
03:24:42.0470 1940  [ 313F68E1A3E6345A4F47A36B07062F34 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
03:24:42.0470 1940  RdpVideoMiniport - ok
03:24:42.0486 1940  [ E61608AA35E98999AF9AAEEEA6114B0A ] RDPWD          C:\Windows\system32\drivers\RDPWD.sys
03:24:42.0501 1940  RDPWD - ok
03:24:42.0501 1940  [ 34ED295FA0121C241BFEF24764FC4520 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
03:24:42.0517 1940  rdyboost - ok
03:24:42.0517 1940  [ 0C2B4C3B10D183BE116A38353E937F62 ] RegSrvc        C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
03:24:42.0532 1940  RegSrvc - ok
03:24:42.0532 1940  [ 254FB7A22D74E5511C73A3F6D802F192 ] RemoteAccess    C:\Windows\System32\mprdim.dll
03:24:42.0564 1940  RemoteAccess - ok
03:24:42.0564 1940  [ E4D94F24081440B5FC5AA556C7C62702 ] RemoteRegistry  C:\Windows\system32\regsvc.dll
03:24:42.0595 1940  RemoteRegistry - ok
03:24:42.0595 1940  [ 3DD798846E2C28102B922C56E71B7932 ] RFCOMM          C:\Windows\system32\DRIVERS\rfcomm.sys
03:24:42.0610 1940  RFCOMM - ok
03:24:42.0610 1940  [ E4DC58CF7B3EA515AE917FF0D402A7BB ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
03:24:42.0626 1940  RpcEptMapper - ok
03:24:42.0626 1940  [ D5BA242D4CF8E384DB90E6A8ED850B8C ] RpcLocator      C:\Windows\system32\locator.exe
03:24:42.0642 1940  RpcLocator - ok
03:24:42.0657 1940  [ 5C627D1B1138676C0A7AB2C2C190D123 ] RpcSs          C:\Windows\system32\rpcss.dll
03:24:42.0673 1940  RpcSs - ok
03:24:42.0688 1940  [ EBBFA2B4E317AF86E93FEC4C04D7A9B3 ] RSPCIESTOR      C:\Windows\system32\DRIVERS\RtsPStor.sys
03:24:42.0688 1940  RSPCIESTOR - ok
03:24:42.0704 1940  [ DDC86E4F8E7456261E637E3552E804FF ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
03:24:42.0720 1940  rspndr - ok
03:24:42.0735 1940  [ E60C0A09F997826C7627B244195AB581 ] s3cap          C:\Windows\system32\drivers\vms3cap.sys
03:24:42.0735 1940  s3cap - ok
03:24:42.0735 1940  [ C118A82CD78818C29AB228366EBF81C3 ] SamSs          C:\Windows\system32\lsass.exe
03:24:42.0751 1940  SamSs - ok
03:24:42.0751 1940  [ AC03AF3329579FFFB455AA2DAABBE22B ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
03:24:42.0766 1940  sbp2port - ok
03:24:42.0782 1940  [ 794D4B48DFB6E999537C7C3947863463 ] SBSDWSCService  C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
03:24:42.0798 1940  SBSDWSCService - ok
03:24:42.0813 1940  [ 9B7395789E3791A3B6D000FE6F8B131E ] SCardSvr        C:\Windows\System32\SCardSvr.dll
03:24:42.0829 1940  SCardSvr - ok
03:24:42.0829 1940  [ 253F38D0D7074C02FF8DEB9836C97D2B ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
03:24:42.0860 1940  scfilter - ok
03:24:42.0876 1940  [ 262F6592C3299C005FD6BEC90FC4463A ] Schedule        C:\Windows\system32\schedsvc.dll
03:24:42.0907 1940  Schedule - ok
03:24:42.0907 1940  [ F17D1D393BBC69C5322FBFAFACA28C7F ] SCPolicySvc    C:\Windows\System32\certprop.dll
03:24:42.0938 1940  SCPolicySvc - ok
03:24:42.0938 1940  [ 111E0EBC0AD79CB0FA014B907B231CF0 ] sdbus          C:\Windows\system32\drivers\sdbus.sys
03:24:42.0954 1940  sdbus - ok
03:24:42.0954 1940  [ 6EA4234DC55346E0709560FE7C2C1972 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
03:24:42.0969 1940  SDRSVC - ok
03:24:42.0969 1940  [ 3EA8A16169C26AFBEB544E0E48421186 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
03:24:43.0000 1940  secdrv - ok
03:24:43.0000 1940  [ BC617A4E1B4FA8DF523A061739A0BD87 ] seclogon        C:\Windows\system32\seclogon.dll
03:24:43.0016 1940  seclogon - ok
03:24:43.0016 1940  [ C32AB8FA018EF34C0F113BD501436D21 ] SENS            C:\Windows\system32\sens.dll
03:24:43.0047 1940  SENS - ok
03:24:43.0047 1940  [ 0336CFFAFAAB87A11541F1CF1594B2B2 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
03:24:43.0063 1940  SensrSvc - ok
03:24:43.0063 1940  [ CB624C0035412AF0DEBEC78C41F5CA1B ] Serenum        C:\Windows\system32\DRIVERS\serenum.sys
03:24:43.0078 1940  Serenum - ok
03:24:43.0078 1940  [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6 ] Serial          C:\Windows\system32\DRIVERS\serial.sys
03:24:43.0094 1940  Serial - ok
03:24:43.0094 1940  [ 1C545A7D0691CC4A027396535691C3E3 ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
03:24:43.0094 1940  sermouse - ok
03:24:43.0110 1940  [ 0B6231BF38174A1628C4AC812CC75804 ] SessionEnv      C:\Windows\system32\sessenv.dll
03:24:43.0141 1940  SessionEnv - ok
03:24:43.0141 1940  [ A554811BCD09279536440C964AE35BBF ] sffdisk        C:\Windows\system32\drivers\sffdisk.sys
03:24:43.0156 1940  sffdisk - ok
03:24:43.0156 1940  [ FF414F0BAEFEBA59BC6C04B3DB0B87BF ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
03:24:43.0172 1940  sffp_mmc - ok
03:24:43.0172 1940  [ DD85B78243A19B59F0637DCF284DA63C ] sffp_sd        C:\Windows\system32\drivers\sffp_sd.sys
03:24:43.0188 1940  sffp_sd - ok
03:24:43.0188 1940  [ A9D601643A1647211A1EE2EC4E433FF4 ] sfloppy        C:\Windows\system32\DRIVERS\sfloppy.sys
03:24:43.0188 1940  sfloppy - ok
03:24:43.0203 1940  [ B95F6501A2F8B2E78C697FEC401970CE ] SharedAccess    C:\Windows\System32\ipnathlp.dll
03:24:43.0234 1940  SharedAccess - ok
03:24:43.0234 1940  [ AAF932B4011D14052955D4B212A4DA8D ] ShellHWDetection C:\Windows\System32\shsvcs.dll
03:24:43.0266 1940  ShellHWDetection - ok
03:24:43.0266 1940  [ 843CAF1E5FDE1FFD5FF768F23A51E2E1 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
03:24:43.0281 1940  SiSRaid2 - ok
03:24:43.0281 1940  [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4 ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
03:24:43.0281 1940  SiSRaid4 - ok
03:24:43.0297 1940  [ 548260A7B8654E024DC30BF8A7C5BAA4 ] Smb            C:\Windows\system32\DRIVERS\smb.sys
03:24:43.0312 1940  Smb - ok
03:24:43.0328 1940  [ 6313F223E817CC09AA41811DAA7F541D ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
03:24:43.0328 1940  SNMPTRAP - ok
03:24:43.0344 1940  [ B9E31E5CACDFE584F34F730A677803F9 ] spldr          C:\Windows\system32\drivers\spldr.sys
03:24:43.0344 1940  spldr - ok
03:24:43.0359 1940  [ 85DAA09A98C9286D4EA2BA8D0E644377 ] Spooler        C:\Windows\System32\spoolsv.exe
03:24:43.0375 1940  Spooler - ok
03:24:43.0406 1940  [ E17E0188BB90FAE42D83E98707EFA59C ] sppsvc          C:\Windows\system32\sppsvc.exe
03:24:43.0468 1940  sppsvc - ok
03:24:43.0468 1940  [ 93D7D61317F3D4BC4F4E9F8A96A7DE45 ] sppuinotify    C:\Windows\system32\sppuinotify.dll
03:24:43.0500 1940  sppuinotify - ok
03:24:43.0500 1940  [ 441FBA48BFF01FDB9D5969EBC1838F0B ] srv            C:\Windows\system32\DRIVERS\srv.sys
03:24:43.0531 1940  srv - ok
03:24:43.0531 1940  [ B4ADEBBF5E3677CCE9651E0F01F7CC28 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
03:24:43.0546 1940  srv2 - ok
03:24:43.0562 1940  [ 27E461F0BE5BFF5FC737328F749538C3 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
03:24:43.0578 1940  srvnet - ok
03:24:43.0578 1940  [ 51B52FBD583CDE8AA9BA62B8B4298F33 ] SSDPSRV        C:\Windows\System32\ssdpsrv.dll
03:24:43.0609 1940  SSDPSRV - ok
03:24:43.0609 1940  [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB ] SstpSvc        C:\Windows\system32\sstpsvc.dll
03:24:43.0624 1940  SstpSvc - ok
03:24:43.0624 1940  Steam Client Service - ok
03:24:43.0640 1940  [ F3817967ED533D08327DC73BC4D5542A ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
03:24:43.0640 1940  stexstor - ok
03:24:43.0656 1940  [ 8DD52E8E6128F4B2DA92CE27402871C1 ] stisvc          C:\Windows\System32\wiaservc.dll
03:24:43.0671 1940  stisvc - ok
03:24:43.0671 1940  [ 7785DC213270D2FC066538DAF94087E7 ] storflt        C:\Windows\system32\drivers\vmstorfl.sys
03:24:43.0687 1940  storflt - ok
03:24:43.0687 1940  [ D34E4943D5AC096C8EDEEBFD80D76E23 ] storvsc        C:\Windows\system32\drivers\storvsc.sys
03:24:43.0702 1940  storvsc - ok
03:24:43.0702 1940  [ D01EC09B6711A5F8E7E6564A4D0FBC90 ] swenum          C:\Windows\system32\drivers\swenum.sys
03:24:43.0702 1940  swenum - ok
03:24:43.0718 1940  [ E08E46FDD841B7184194011CA1955A0B ] swprv          C:\Windows\System32\swprv.dll
03:24:43.0749 1940  swprv - ok
03:24:43.0749 1940  Synth3dVsc - ok
03:24:43.0765 1940  [ BF9CCC0BF39B418C8D0AE8B05CF95B7D ] SysMain        C:\Windows\system32\sysmain.dll
03:24:43.0796 1940  SysMain - ok
03:24:43.0812 1940  [ E3C61FD7B7C2557E1F1B0B4CEC713585 ] TabletInputService C:\Windows\System32\TabSvc.dll
03:24:43.0812 1940  TabletInputService - ok
03:24:43.0827 1940  [ 40F0849F65D13EE87B9A9AE3C1DD6823 ] TapiSrv        C:\Windows\System32\tapisrv.dll
03:24:43.0843 1940  TapiSrv - ok
03:24:43.0858 1940  [ 1BE03AC720F4D302EA01D40F588162F6 ] TBS            C:\Windows\System32\tbssvc.dll
03:24:43.0874 1940  TBS - ok
03:24:43.0890 1940  [ 37608401DFDB388CAF66917F6B2D6FB0 ] Tcpip          C:\Windows\system32\drivers\tcpip.sys
03:24:43.0952 1940  Tcpip - ok
03:24:43.0968 1940  [ 37608401DFDB388CAF66917F6B2D6FB0 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
03:24:43.0999 1940  TCPIP6 - ok
03:24:43.0999 1940  [ 1B16D0BD9841794A6E0CDE0CEF744ABC ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
03:24:44.0014 1940  tcpipreg - ok
03:24:44.0014 1940  [ 3371D21011695B16333A3934340C4E7C ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
03:24:44.0030 1940  TDPIPE - ok
03:24:44.0030 1940  [ 51C5ECEB1CDEE2468A1748BE550CFBC8 ] TDTCP          C:\Windows\system32\drivers\tdtcp.sys
03:24:44.0046 1940  TDTCP - ok
03:24:44.0046 1940  [ DDAD5A7AB24D8B65F8D724F5C20FD806 ] tdx            C:\Windows\system32\DRIVERS\tdx.sys
03:24:44.0077 1940  tdx - ok
03:24:44.0077 1940  [ 561E7E1F06895D78DE991E01DD0FB6E5 ] TermDD          C:\Windows\system32\drivers\termdd.sys
03:24:44.0077 1940  TermDD - ok
03:24:44.0092 1940  [ 2E648163254233755035B46DD7B89123 ] TermService    C:\Windows\System32\termsrv.dll
03:24:44.0124 1940  TermService - ok
03:24:44.0124 1940  [ F0344071948D1A1FA732231785A0664C ] Themes          C:\Windows\system32\themeservice.dll
03:24:44.0139 1940  Themes - ok
03:24:44.0139 1940  [ E40E80D0304A73E8D269F7141D77250B ] THREADORDER    C:\Windows\system32\mmcss.dll
03:24:44.0170 1940  THREADORDER - ok
03:24:44.0170 1940  [ 7E7AFD841694F6AC397E99D75CEAD49D ] TrkWks          C:\Windows\System32\trkwks.dll
03:24:44.0202 1940  TrkWks - ok
03:24:44.0202 1940  [ 773212B2AAA24C1E31F10246B15B276C ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
03:24:44.0217 1940  TrustedInstaller - ok
03:24:44.0233 1940  [ CE18B2CDFC837C99E5FAE9CA6CBA5D30 ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
03:24:44.0248 1940  tssecsrv - ok
03:24:44.0264 1940  [ 17C6B51CBCCDED95B3CC14E22791F85E ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
03:24:44.0264 1940  TsUsbFlt - ok
03:24:44.0280 1940  tsusbhub - ok
03:24:44.0280 1940  [ 3566A8DAAFA27AF944F5D705EAA64894 ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
03:24:44.0295 1940  tunnel - ok
03:24:44.0295 1940  [ B4DD609BD7E282BFC683CEC7EAAAAD67 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
03:24:44.0311 1940  uagp35 - ok
03:24:44.0326 1940  [ FF4232A1A64012BAA1FD97C7B67DF593 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
03:24:44.0358 1940  udfs - ok
03:24:44.0358 1940  [ 3CBDEC8D06B9968ABA702EBA076364A1 ] UI0Detect      C:\Windows\system32\UI0Detect.exe
03:24:44.0373 1940  UI0Detect - ok
03:24:44.0373 1940  [ 4BFE1BC28391222894CBF1E7D0E42320 ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
03:24:44.0373 1940  uliagpkx - ok
03:24:44.0389 1940  [ DC54A574663A895C8763AF0FA1FF7561 ] umbus          C:\Windows\system32\drivers\umbus.sys
03:24:44.0389 1940  umbus - ok
03:24:44.0389 1940  [ B2E8E8CB557B156DA5493BBDDCC1474D ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
03:24:44.0404 1940  UmPass - ok
03:24:44.0404 1940  [ A293DCD756D04D8492A750D03B9A297C ] UmRdpService    C:\Windows\System32\umrdp.dll
03:24:44.0420 1940  UmRdpService - ok
03:24:44.0420 1940  [ F76057596EF65049869098677AB72C30 ] UNS            C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
03:24:44.0436 1940  UNS - ok
03:24:44.0451 1940  [ D47EC6A8E81633DD18D2436B19BAF6DE ] upnphost        C:\Windows\System32\upnphost.dll
03:24:44.0467 1940  upnphost - ok
03:24:44.0482 1940  [ 6F1A3157A1C89435352CEB543CDB359C ] usbccgp        C:\Windows\system32\DRIVERS\usbccgp.sys
03:24:44.0482 1940  usbccgp - ok
03:24:44.0482 1940  [ AF0892A803FDDA7492F595368E3B68E7 ] usbcir          C:\Windows\system32\drivers\usbcir.sys
03:24:44.0498 1940  usbcir - ok
03:24:44.0514 1940  [ C025055FE7B87701EB042095DF1A2D7B ] usbehci        C:\Windows\system32\drivers\usbehci.sys
03:24:44.0514 1940  usbehci - ok
03:24:44.0529 1940  [ 287C6C9410B111B68B52CA298F7B8C24 ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
03:24:44.0529 1940  usbhub - ok
03:24:44.0545 1940  [ 9840FC418B4CBD632D3D0A667A725C31 ] usbohci        C:\Windows\system32\drivers\usbohci.sys
03:24:44.0545 1940  usbohci - ok
03:24:44.0545 1940  [ 73188F58FB384E75C4063D29413CEE3D ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
03:24:44.0560 1940  usbprint - ok
03:24:44.0560 1940  [ FED648B01349A3C8395A5169DB5FB7D6 ] USBSTOR        C:\Windows\system32\DRIVERS\USBSTOR.SYS
03:24:44.0576 1940  USBSTOR - ok
03:24:44.0576 1940  [ 62069A34518BCF9C1FD9E74B3F6DB7CD ] usbuhci        C:\Windows\system32\drivers\usbuhci.sys
03:24:44.0592 1940  usbuhci - ok
03:24:44.0592 1940  [ EDBB23CBCF2CDF727D64FF9B51A6070E ] UxSms          C:\Windows\System32\uxsms.dll
03:24:44.0623 1940  UxSms - ok
03:24:44.0623 1940  [ C118A82CD78818C29AB228366EBF81C3 ] VaultSvc        C:\Windows\system32\lsass.exe
03:24:44.0638 1940  VaultSvc - ok
03:24:44.0638 1940  [ C5C876CCFC083FF3B128F933823E87BD ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
03:24:44.0638 1940  vdrvroot - ok
03:24:44.0654 1940  [ 8D6B481601D01A456E75C3210F1830BE ] vds            C:\Windows\System32\vds.exe
03:24:44.0685 1940  vds - ok
03:24:44.0685 1940  [ DA4DA3F5E02943C2DC8C6ED875DE68DD ] vga            C:\Windows\system32\DRIVERS\vgapnp.sys
03:24:44.0701 1940  vga - ok
03:24:44.0701 1940  [ 53E92A310193CB3C03BEA963DE7D9CFC ] VgaSave        C:\Windows\System32\drivers\vga.sys
03:24:44.0716 1940  VgaSave - ok
03:24:44.0732 1940  VGPU - ok
03:24:44.0732 1940  [ 2CE2DF28C83AEAF30084E1B1EB253CBB ] vhdmp          C:\Windows\system32\drivers\vhdmp.sys
03:24:44.0748 1940  vhdmp - ok
03:24:44.0748 1940  [ E5689D93FFE4E5D66C0178761240DD54 ] viaide          C:\Windows\system32\drivers\viaide.sys
03:24:44.0763 1940  viaide - ok
03:24:44.0763 1940  [ 86EA3E79AE350FEA5331A1303054005F ] vmbus          C:\Windows\system32\drivers\vmbus.sys
03:24:44.0779 1940  vmbus - ok
03:24:44.0779 1940  [ 7DE90B48F210D29649380545DB45A187 ] VMBusHID        C:\Windows\system32\drivers\VMBusHID.sys
03:24:44.0794 1940  VMBusHID - ok
03:24:44.0794 1940  [ D2AAFD421940F640B407AEFAAEBD91B0 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
03:24:44.0810 1940  volmgr - ok
03:24:44.0810 1940  [ A255814907C89BE58B79EF2F189B843B ] volmgrx        C:\Windows\system32\drivers\volmgrx.sys
03:24:44.0826 1940  volmgrx - ok
03:24:44.0841 1940  [ 0D08D2F3B3FF84E433346669B5E0F639 ] volsnap        C:\Windows\system32\drivers\volsnap.sys
03:24:44.0841 1940  volsnap - ok
03:24:44.0857 1940  [ 5E2016EA6EBACA03C04FEAC5F330D997 ] vsmraid        C:\Windows\system32\DRIVERS\vsmraid.sys
03:24:44.0857 1940  vsmraid - ok
03:24:44.0888 1940  [ B60BA0BC31B0CB414593E169F6F21CC2 ] VSS            C:\Windows\system32\vssvc.exe
03:24:44.0919 1940  VSS - ok
03:24:44.0919 1940  [ 36D4720B72B5C5D9CB2B9C29E9DF67A1 ] vwifibus        C:\Windows\system32\DRIVERS\vwifibus.sys
03:24:44.0935 1940  vwifibus - ok
03:24:44.0935 1940  [ 6A3D66263414FF0D6FA754C646612F3F ] vwififlt        C:\Windows\system32\DRIVERS\vwififlt.sys
03:24:44.0950 1940  vwififlt - ok
03:24:44.0950 1940  [ 6A638FC4BFDDC4D9B186C28C91BD1A01 ] vwifimp        C:\Windows\system32\DRIVERS\vwifimp.sys
03:24:44.0966 1940  vwifimp - ok
03:24:44.0982 1940  [ 1C9D80CC3849B3788048078C26486E1A ] W32Time        C:\Windows\system32\w32time.dll
03:24:44.0997 1940  W32Time - ok
03:24:45.0013 1940  [ 4E9440F4F152A7B944CB1663D3935A3E ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
03:24:45.0013 1940  WacomPen - ok
03:24:45.0028 1940  [ 356AFD78A6ED4457169241AC3965230C ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
03:24:45.0044 1940  WANARP - ok
03:24:45.0044 1940  [ 356AFD78A6ED4457169241AC3965230C ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
03:24:45.0075 1940  Wanarpv6 - ok
03:24:45.0091 1940  [ 78F4E7F5C56CB9716238EB57DA4B6A75 ] wbengine        C:\Windows\system32\wbengine.exe
03:24:45.0106 1940  wbengine - ok
03:24:45.0122 1940  [ 3AA101E8EDAB2DB4131333F4325C76A3 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
03:24:45.0138 1940  WbioSrvc - ok
03:24:45.0138 1940  [ 7368A2AFD46E5A4481D1DE9D14848EDD ] wcncsvc        C:\Windows\System32\wcncsvc.dll
03:24:45.0153 1940  wcncsvc - ok
03:24:45.0153 1940  [ 20F7441334B18CEE52027661DF4A6129 ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
03:24:45.0169 1940  WcsPlugInService - ok
03:24:45.0169 1940  [ 72889E16FF12BA0F235467D6091B17DC ] Wd              C:\Windows\system32\DRIVERS\wd.sys
03:24:45.0184 1940  Wd - ok
03:24:45.0200 1940  [ 442783E2CB0DA19873B7A63833FF4CB4 ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
03:24:45.0216 1940  Wdf01000 - ok
03:24:45.0231 1940  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiServiceHost  C:\Windows\system32\wdi.dll
03:24:45.0247 1940  WdiServiceHost - ok
03:24:45.0262 1940  [ BF1FC3F79B863C914687A737C2F3D681 ] WdiSystemHost  C:\Windows\system32\wdi.dll
03:24:45.0262 1940  WdiSystemHost - ok
03:24:45.0278 1940  [ 3DB6D04E1C64272F8B14EB8BC4616280 ] WebClient      C:\Windows\System32\webclnt.dll
03:24:45.0294 1940  WebClient - ok
03:24:45.0294 1940  [ C749025A679C5103E575E3B48E092C43 ] Wecsvc          C:\Windows\system32\wecsvc.dll
03:24:45.0325 1940  Wecsvc - ok
03:24:45.0325 1940  [ 7E591867422DC788B9E5BD337A669A08 ] wercplsupport  C:\Windows\System32\wercplsupport.dll
03:24:45.0340 1940  wercplsupport - ok
03:24:45.0356 1940  [ 6D137963730144698CBD10F202E9F251 ] WerSvc          C:\Windows\System32\WerSvc.dll
03:24:45.0372 1940  WerSvc - ok
03:24:45.0372 1940  [ 611B23304BF067451A9FDEE01FBDD725 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
03:24:45.0403 1940  WfpLwf - ok
03:24:45.0403 1940  [ 05ECAEC3E4529A7153B3136CEB49F0EC ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
03:24:45.0403 1940  WIMMount - ok
03:24:45.0418 1940  WinDefend - ok
03:24:45.0418 1940  WinHttpAutoProxySvc - ok
03:24:45.0418 1940  [ 19B07E7E8915D701225DA41CB3877306 ] Winmgmt        C:\Windows\system32\wbem\WMIsvc.dll
03:24:45.0450 1940  Winmgmt - ok
03:24:45.0465 1940  [ BCB1310604AA415C4508708975B3931E ] WinRM          C:\Windows\system32\WsmSvc.dll
03:24:45.0512 1940  WinRM - ok
03:24:45.0528 1940  [ 4FADA86E62F18A1B2F42BA18AE24E6AA ] Wlansvc        C:\Windows\System32\wlansvc.dll
03:24:45.0559 1940  Wlansvc - ok
03:24:45.0559 1940  [ F6FF8944478594D0E414D3F048F0D778 ] WmiAcpi        C:\Windows\system32\drivers\wmiacpi.sys
03:24:45.0559 1940  WmiAcpi - ok
03:24:45.0574 1940  [ 38B84C94C5A8AF291ADFEA478AE54F93 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
03:24:45.0574 1940  wmiApSrv - ok
03:24:45.0590 1940  WMPNetworkSvc - ok
03:24:45.0590 1940  [ 96C6E7100D724C69FCF9E7BF590D1DCA ] WPCSvc          C:\Windows\System32\wpcsvc.dll
03:24:45.0590 1940  WPCSvc - ok
03:24:45.0606 1940  [ 93221146D4EBBF314C29B23CD6CC391D ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
03:24:45.0621 1940  WPDBusEnum - ok
03:24:45.0621 1940  [ 6BCC1D7D2FD2453957C5479A32364E52 ] ws2ifsl        C:\Windows\system32\drivers\ws2ifsl.sys
03:24:45.0637 1940  ws2ifsl - ok
03:24:45.0652 1940  [ E8B1FE6669397D1772D8196DF0E57A9E ] wscsvc          C:\Windows\system32\wscsvc.dll
03:24:45.0652 1940  wscsvc - ok
03:24:45.0668 1940  WSearch - ok
03:24:45.0684 1940  [ D9EF901DCA379CFE914E9FA13B73B4C4 ] wuauserv        C:\Windows\system32\wuaueng.dll
03:24:45.0730 1940  wuauserv - ok
03:24:45.0730 1940  [ AB886378EEB55C6C75B4F2D14B6C869F ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
03:24:45.0746 1940  WudfPf - ok
03:24:45.0746 1940  [ DDA4CAF29D8C0A297F886BFE561E6659 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
03:24:45.0762 1940  WUDFRd - ok
03:24:45.0762 1940  [ B20F051B03A966392364C83F009F7D17 ] wudfsvc        C:\Windows\System32\WUDFSvc.dll
03:24:45.0777 1940  wudfsvc - ok
03:24:45.0777 1940  [ 9A3452B3C2A46C073166C5CF49FAD1AE ] WwanSvc        C:\Windows\System32\wwansvc.dll
03:24:45.0793 1940  WwanSvc - ok
03:24:45.0824 1940  [ D2FE4103450E52CB248D842501F84B90 ] ZeroConfigService C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
03:24:45.0871 1940  ZeroConfigService - ok
03:24:45.0871 1940  ================ Scan global ===============================
03:24:45.0871 1940  [ BA0CD8C393E8C9F83354106093832C7B ] C:\Windows\system32\basesrv.dll
03:24:45.0886 1940  [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\Windows\system32\winsrv.dll
03:24:45.0902 1940  [ F46BBAAC1C4980F4D0DD463F190A42D3 ] C:\Windows\system32\winsrv.dll
03:24:45.0902 1940  [ D6160F9D869BA3AF0B787F971DB56368 ] C:\Windows\system32\sxssrv.dll
03:24:45.0902 1940  [ 24ACB7E5BE595468E3B9AA488B9B4FCB ] C:\Windows\system32\services.exe
03:24:45.0918 1940  [Global] - ok
03:24:45.0918 1940  ================ Scan MBR ==================================
03:24:45.0918 1940  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
03:24:46.0058 1940  \Device\Harddisk0\DR0 - ok
03:24:46.0370 1940  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
03:24:46.0557 1940  \Device\Harddisk1\DR1 - ok
03:24:46.0557 1940  ================ Scan VBR ==================================
03:24:46.0557 1940  [ C20050F6B425ADB599EC56D31E77393B ] \Device\Harddisk0\DR0\Partition1
03:24:46.0557 1940  \Device\Harddisk0\DR0\Partition1 - ok
03:24:46.0557 1940  [ 00BE3166F86D958CF07DF78633FEEBAA ] \Device\Harddisk0\DR0\Partition2
03:24:46.0557 1940  \Device\Harddisk0\DR0\Partition2 - ok
03:24:46.0557 1940  [ AEE8BC7C8160102F3A4C725FF26A4026 ] \Device\Harddisk1\DR1\Partition1
03:24:46.0557 1940  \Device\Harddisk1\DR1\Partition1 - ok
03:24:46.0557 1940  ============================================================
03:24:46.0557 1940  Scan finished
03:24:46.0557 1940  ============================================================
03:24:46.0557 4888  Detected object count: 0
03:24:46.0557 4888  Actual detected object count: 0
03:24:50.0551 4776  Deinitialize success


schrauber 05.12.2012 08:57

Windows DVD zur Hand?

Masi1711 05.12.2012 13:09

ab freitag abend habe ich die dvd zu hand bin momentan auswärts bzw im zweitwohnsitz meinst du neu installation oder was ?

schrauber 05.12.2012 13:29

Nee, nur ne Reparaturinstallation, passiert nix mit Deinen Daten :)

Masi1711 05.12.2012 19:28

ok das geht aber leider erst am freitag abend wenn ich wieder zuhause bin oder geht das auch mit irgend einer windows dvd ? könnte evtl nen studien kollegen fragen ob der eine hat ?

schrauber 05.12.2012 21:59

Dann warten wir bis Freitag :)

Masi1711 07.12.2012 21:24

einfach eine normale " reparatur " starten oder besonders vorgehen ?

schrauber 09.12.2012 07:24

Schau mal hier

Windows 7 Reparaturinstallation: Windows 7 Inplace Upgrade


Alle Zeitangaben in WEZ +1. Es ist jetzt 11:53 Uhr.

Copyright ©2000-2025, Trojaner-Board


Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131