pinodisole | 23.07.2017 23:12 | Code:
Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 23-07-2017
durchgeführt von pino (23-07-2017 23:45:29)
Gestartet von C:\Users\pino\Desktop
Windows 10 Pro Version 1703 (X64) (2017-06-09 11:46:15)
Start-Modus: Normal
==========================================================
==================== Konten: =============================
Administrator (S-1-5-21-697847764-2959338102-2115453073-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-697847764-2959338102-2115453073-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-697847764-2959338102-2115453073-1000 - Limited - Disabled) => C:\Users\defaultuser0
Gast (S-1-5-21-697847764-2959338102-2115453073-501 - Limited - Disabled)
pino (S-1-5-21-697847764-2959338102-2115453073-1001 - Administrator - Enabled) => C:\Users\pino
==================== Sicherheits-Center ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installierte Programme ======================
(Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.)
Avaya IP Integration (HKLM-x32\...\{41E392C5-8253-4ABE-AC55-6A23FB89ED1C}) (Version: 1.0.9987.0 - GN Netcom A/S) Hidden
Avaya one-X Integration (HKLM-x32\...\{0F8D3DE8-29BF-4731-AE55-14C38B19C6C1}) (Version: 3.0.12961.0 - GN Netcom A/S) Hidden
Avaya one-X V3 Integration (HKLM-x32\...\{2EC5D63C-BDD1-44A2-BC7E-290C75EF4757}) (Version: 1.0.472.0 - GN Audio A/S) Hidden
Basic Support (HKLM-x32\...\{1231D39C-47F0-470E-8E6A-155FE61AD0BD}) (Version: 2.0.294.0 - GN Audio A/S) Hidden
BIZ 2300 Family (HKLM-x32\...\{01F8214A-56CA-4E7A-B03C-02426C4E89C5}) (Version: 3.0.14012.0 - GN Netcom A/S) Hidden
BIZ 2400 II (HKLM-x32\...\{088961FA-7493-4E35-A8C0-3D3E933ED0A3}) (Version: 2.0.10316.0 - GN Netcom A/S) Hidden
BIZ1500Setup (HKLM-x32\...\{97540499-E348-4071-B840-697EEB083C3C}) (Version: 1.0.13138.0 - GN Netcom A/S) Hidden
BIZ2400_II_CCSetup (HKLM-x32\...\{31E2438C-6C70-4EE0-B745-BBF2F5773883}) (Version: 2.0.10315.0 - GN Netcom A/S) Hidden
BIZ2400_LINK280 (HKLM-x32\...\{5FD62AB7-8CB2-43BD-A269-9BD4532BEE7D}) (Version: 1.0.9672.0 - GN Netcom A/S) Hidden
Broadsoft Integration (HKLM-x32\...\{792B93D1-6ED1-4410-838E-D2BAA7D5B944}) (Version: 2.0.13949.0 - GN Netcom A/S) Hidden
CallManager (HKLM-x32\...\{1EABEEE7-9F25-4633-A576-C7BC492AE372}) (Version: 2.0.10294.0 - GN) Hidden
Canon MX410 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MX410_series) (Version: - )
Cisco IP Communicator Integration (HKLM-x32\...\{0F16E401-66F0-4E51-9881-9294534DE83E}) (Version: 3.0.10584.0 - GN Netcom A/S) Hidden
Cisco Jabber Integration (HKLM-x32\...\{A7A3B557-D9DB-4D47-A228-7A8DA24ADC49}) (Version: 3.0.10654.0 - GN Netcom A/S) Hidden
Cisco UC Integration (HKLM-x32\...\{AFF39F11-859B-4E94-8C44-DFBAB6B95BC4}) (Version: 1.0.9992.0 - GN Netcom A/S) Hidden
Cisco WebEx Connect Integration (HKLM-x32\...\{BDAAFFC6-7D89-4BB1-8879-92B80E488E35}) (Version: 1.0.9993.0 - GN Netcom A/S) Hidden
Cisco WebEx Meetings (HKU\S-1-5-21-697847764-2959338102-2115453073-1001\...\ActiveTouchMeetingClient) (Version: - Cisco WebEx LLC)
Citrix Receiver 4.6 (HKLM-x32\...\CitrixOnlinePluginPackWeb) (Version: 14.6.0.12010 - Citrix Systems, Inc.)
CounterPath Bria Integration (HKLM-x32\...\{130A2A6F-45FB-425C-85A4-9C051A4B1064}) (Version: 3.0.287.0 - GN Audio A/S) Hidden
Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 10.2207.101.108 - ALPS ELECTRIC CO., LTD.)
DFUDriverSetupX64Setup (HKLM-x32\...\{6A0A9DA3-2173-4CFD-AAF5-05B0BA51C31F}) (Version: 6.2.653.0 - GN Netcom A/S) Hidden
DIAL 550 (HKLM-x32\...\{835C23C0-9F95-442C-BBF5-FD38F5BC4023}) (Version: 1.0.9655.0 - GN Netcom A/S) Hidden
dreamboxEDIT -- The one and only settings editor for your Dreambox (HKLM-x32\...\dreamboxEDIT) (Version: - )
Dropbox (HKLM-x32\...\Dropbox) (Version: 30.4.22 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.65.1 - Dropbox, Inc.) Hidden
EVOLVE20_LINKSetup (HKLM-x32\...\{ADA8AA1D-6A7F-47FA-A9B4-4DF9F05B5EB5}) (Version: 3.0.414.0 - GN Netcom A/S) Hidden
EVOLVE30_IISetup (HKLM-x32\...\{D6C99D0E-69FD-4693-A53F-5022450A5BC8}) (Version: 4.0.506.0 - GN Audio A/S) Hidden
EVOLVE65Setup (HKLM-x32\...\{D467049A-6418-4D36-BA0B-10382B396353}) (Version: 4.0.616.0 - GN Audio A/S) Hidden
EVOLVE75Setup (HKLM-x32\...\{76DEEC1D-D9D9-4650-AC09-49881A34ED0E}) (Version: 1.0.686.0 - GN Audio A/S) Hidden
FileZilla Client 3.26.2 (HKLM-x32\...\FileZilla Client) (Version: 3.26.2 - Tim Kosse)
FirmwareUpdater (HKLM-x32\...\{86D87E09-E6CB-449C-B688-8C87A023AB0D}) (Version: 6.2.653.0 - GN Audio A/S) Hidden
GIMP 2.8.20 (HKLM\...\GIMP-2_is1) (Version: 2.8.20 - The GIMP Team)
GN2000 Family (HKLM-x32\...\{30CCF236-C34A-4282-B0BF-0974EC415F49}) (Version: 1.0.9657.0 - GN Netcom A/S) Hidden
GO 6470 (HKLM-x32\...\{5B4B9788-ADE8-41D8-98A2-88A057F8A0AA}) (Version: 1.0.9674.0 - GN Netcom A/S) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 59.0.3071.115 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden
HANDSET450Setup (HKLM-x32\...\{705D86E1-BDEA-41FE-BE33-F1DC93F320BB}) (Version: 2.0.11048.0 - GN Netcom A/S) Hidden
IBM Sametime Integration (HKLM-x32\...\{20BB76A6-7AF6-48B9-9B75-6408EA5E2C6B}) (Version: 4.0.11289.0 - GN Netcom A/S) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4531 - Intel Corporation)
Internet Manager (HKLM-x32\...\Internet Manager) (Version: 22.001.19.16.55 - Huawei Technologies Co.,Ltd)
IrfanView 4.44 (64-bit) (HKLM\...\IrfanView64) (Version: 4.44 - Irfan Skiljan)
Jabra Direct (HKLM-x32\...\{508c3a72-c776-4128-aaa5-06cd908081a1}) (Version: 3.8.689.0 - GN Audio A/S)
JabraDirect (HKLM-x32\...\{CC2A885E-4581-4256-93D8-D9577F687E2D}) (Version: 3.8.689.0 - GN Audio A/S) Hidden
JpcsSdkDeviceService (HKLM-x32\...\{30081FB6-1DD3-4084-83E5-14B20242A702}) (Version: 1.0.9811.0 - GN Netcom A/S) Hidden
Kodi (HKU\S-1-5-21-697847764-2959338102-2115453073-1001\...\Kodi) (Version: - XBMC-Foundation)
LINK 265 (HKLM-x32\...\{F42C3E86-AF7F-4047-8633-0CC870EEF43B}) (Version: 1.0.9879.0 - GN Netcom A/S) Hidden
LINK 30/32/33/41 Setup (HKLM-x32\...\{E2E1BC7A-A89A-4623-803C-CEF4104D5934}) (Version: 1.0.9732.0 - GN Netcom A/S) Hidden
LINK 360 (HKLM-x32\...\{F0D8BA38-E373-406D-BE91-4EE113DE0C64}) (Version: 3.0.665.0 - GN Netcom A/S) Hidden
LINK180aSetup (HKLM-x32\...\{CD79C32D-AEEB-46B1-A370-F99BEA8F460D}) (Version: 1.0.9660.0 - GN Netcom A/S) Hidden
LINK220_220ASetup (HKLM-x32\...\{F3B31FED-91AE-4C15-84BB-9F0FF2BB2BA7}) (Version: 1.0.9675.0 - GN Netcom A/S) Hidden
LINK230_260Setup (HKLM-x32\...\{1AB5D1BA-BC8E-46D2-9F2F-249180213C45}) (Version: 2.0.12955.0 - GN Netcom A/S) Hidden
LINK350Setup (HKLM-x32\...\{66AAB7C3-A2FC-488B-B182-F2EDEED4A72C}) (Version: 1.0.9676.0 - GN Netcom A/S) Hidden
LINK370Setup (HKLM-x32\...\{DE075A6E-35F9-4BB5-9697-4F7979105CF6}) (Version: 2.0.664.0 - GN Audio A/S) Hidden
LINK43Setup (HKLM-x32\...\{EDD1B59B-E5B3-47D5-9F00-9BAEB4F94BDF}) (Version: 1.0.10197.0 - GN Netcom A/S) Hidden
LINK850Setup (HKLM-x32\...\{2CE15BC9-DC51-446E-8929-1E09383D6C6B}) (Version: 2.0.10289.0 - GN Netcom A/S) Hidden
LINK860Setup (HKLM-x32\...\{B09FF355-BE7F-4B61-BF1B-CC46385F414E}) (Version: 1.0.10185.0 - GN Netcom A/S) Hidden
Lync Integration (HKLM-x32\...\{B13B6CFE-69AF-4CF7-8ADD-467B9F29FEB0}) (Version: 5.0.674.0 - GN Audio A/S) Hidden
Maintenance (HKLM-x32\...\{9A1E1C6B-A8D5-42BD-B71B-9728DADB0F20}) (Version: 10.0.0.0 - GN Audio A/S) Hidden
Mein Verein (HKLM-x32\...\{9ACE3A18-EE13-4012-989C-2BCDC95BA6B9}_is1) (Version: 16.0 - Buhl Data Service GmbH)
Microsoft Office Professional Plus 2016 - de-de (HKLM\...\ProPlusRetail - de-de) (Version: 16.0.8229.2073 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-697847764-2959338102-2115453073-1001\...\OneDriveSetup.exe) (Version: 17.3.6917.0607 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Motion (HKLM-x32\...\{06EA3781-ECDF-45AF-8E75-E623FC171931}) (Version: 2.0.541.0 - GN Netcom A/S) Hidden
MOTIONOFFICE (HKLM-x32\...\{A2CA3AD4-6C07-49C3-9E09-F4EEE6B9BA32}) (Version: 1.0.9677.0 - GN Netcom A/S) Hidden
Mozilla Firefox 54.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 54.0.1 (x86 de)) (Version: 54.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 53.0 - Mozilla)
NEC SP 350 Integration (HKLM-x32\...\{A37BF086-D78E-4D1C-BD58-19A725416DB4}) (Version: 2.0.14365.0 - GN Netcom A/S) Hidden
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.3.3 - Notepad++ Team)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.8229.2073 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.8229.2073 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.8229.2073 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0407-0000-0000000FF1CE}) (Version: 16.0.8229.2045 - Microsoft Corporation) Hidden
Online Plug-in (HKLM-x32\...\{9E362141-4BE9-47C3-BD36-638B77AC87AA}) (Version: 14.6.0.12010 - Citrix Systems, Inc.) Hidden
PRO 920 and 930 (HKLM-x32\...\{C145E0B4-7BF7-415F-B100-F32FF9EA169A}) (Version: 1.0.9734.0 - GN Netcom A/S) Hidden
PRO 94X0 Family (HKLM-x32\...\{B3A5BE45-76E7-40ED-8E58-ACF75504DC12}) (Version: 6.0.652.0 - GN Netcom A/S) Hidden
PRO925_935Setup (HKLM-x32\...\{6786309D-B042-4142-A98E-AA05E1071B79}) (Version: 1.0.9678.0 - GN Netcom A/S) Hidden
Pulse Secure Citrix Services Client (HKU\S-1-5-21-697847764-2959338102-2115453073-1001\...\Pulse_Citrix_Services) (Version: 8.2.6.51693 - Pulse Secure, LLC)
Pulse Secure Host Checker (HKU\S-1-5-21-697847764-2959338102-2115453073-1001\...\PulseSecure_Host_Checker) (Version: 8.2.6.51693 - Pulse Secure, LLC)
Pulse Secure Setup Client (HKU\S-1-5-21-697847764-2959338102-2115453073-1001\...\Pulse_Setup_Client) (Version: 8.2.6.977 - Pulse Secure, LLC)
Pulse Secure Setup Client 64-bit Activex Control (HKLM\...\Pulse_Setup_Client Activex Control) (Version: 2.1.1.1 - Pulse Secure, LLC)
Realtek Audio COM Components (HKLM-x32\...\{2355B503-9B11-4449-861D-1C1748B26320}) (Version: 1.0.2 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6070 - Realtek Semiconductor Corp.)
SDK Integration (HKLM-x32\...\{89095944-96E6-4520-88D6-BE2B224AFE83}) (Version: 1.0.8564.0 - GN Netcom A/S) Hidden
Self-Service Plug-in (HKLM-x32\...\{27B93352-3746-4329-9D16-CE20A1E400C5}) (Version: 4.6.0.14932 - Citrix Systems, Inc.) Hidden
Shoretel Integration (HKLM-x32\...\{36607082-9C1E-4B0D-8F30-F649BE07AF6E}) (Version: 1.0.10047.0 - GN Netcom A/S) Hidden
Sierra Wireless Dell Mobile Broadband INF Package (HKLM-x32\...\SWIDellDrvInstaller) (Version: 16.1.2.7 - Sierra Wireless)
Skype Integration (HKLM-x32\...\{6CF48C72-2923-4F4D-92A6-5A9E8E51E24B}) (Version: 4.0.673.0 - GN Audio A/S) Hidden
SPEAK 510 Family (HKLM-x32\...\{2FDB93C9-93BD-4115-A963-6186300FFF0A}) (Version: 2.0.571.0 - GN Netcom A/S) Hidden
SPEAK410Setup (HKLM-x32\...\{CC733B58-53DB-4613-AD49-1FFB62EC8989}) (Version: 1.0.9636.0 - GN Netcom A/S) Hidden
SPEAK450Setup (HKLM-x32\...\{21B3A5C8-C3E3-477F-9837-E43359C3546F}) (Version: 1.0.9637.0 - GN Netcom A/S) Hidden
SPEAK710Setup (HKLM-x32\...\{3E251A96-88F9-4364-844F-BA5FE399BBCA}) (Version: 1.0.599.0 - GN Audio A/S) Hidden
SPEAK810Setup (HKLM-x32\...\{89097763-7342-41F2-B4E7-76B846AC6BC6}) (Version: 3.0.617.0 - GN Audio A/S) Hidden
STEALTH Setup (HKLM-x32\...\{F07CB43D-352B-4B65-84E3-053C1778C8FB}) (Version: 3.0.538.0 - GN Audio A/S) Hidden
Steuer-Ratgeber 2016-2017 (HKLM-x32\...\{D63B636A-D43E-4BE3-8874-637402130365}) (Version: 17.03.3 - Wolters Kluwer Deutschland GmbH)
SteuerSparErklärung 2017 (HKLM-x32\...\{45815686-22F8-4D24-872D-E481A654B230}) (Version: 22.31.75 - Wolters Kluwer Deutschland GmbH)
Supreme (HKLM-x32\...\{51FFEA54-1FB6-4D8D-97D9-5B15C2938DA2}) (Version: 2.0.545.0 - GN Audio A/S) Hidden
UC VOICE A Family (HKLM-x32\...\{4D63AB94-C5BA-48FB-9A3A-C7BC43522CC7}) (Version: 1.0.9669.0 - GN Netcom A/S) Hidden
UC Voice Family (HKLM-x32\...\{87FC5C34-2573-4BFC-AF28-605037BE7B85}) (Version: 1.0.9670.0 - GN Netcom A/S) Hidden
Video Download Capture V6.2.5 (HKLM-x32\...\{b3336f66-e079-4ff6-abdb-51e2fab781d5}_is1) (Version: 6.2.5 - APOWERSOFT LIMITED)
Windows 10 Update and Privacy Settings (HKLM\...\{293F2009-0145-450B-B4AA-063D43FB368C}) (Version: 1.0.13.0 - Microsoft Corporation)
WinRAR 5.40 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.17.0.dll [2017-07-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.17.0.dll [2017-07-12] (Dropbox, Inc.)
ContextMenuHandlers01: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2017-03-08] ()
ContextMenuHandlers01: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ContextMenuHandlers01: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers01: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Keine Datei
ContextMenuHandlers04: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ContextMenuHandlers05: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.17.0.dll [2017-07-12] (Dropbox, Inc.)
ContextMenuHandlers05: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> Keine Datei
ContextMenuHandlers05: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-10-25] (Intel Corporation)
ContextMenuHandlers06: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers06: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> Keine Datei
==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) =============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
Task: {011A63D0-337D-4FA8-8782-7DECA722277D} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-07-02] ()
Task: {1B37C35B-5AA2-4E1C-AAA1-B34D5F4DE709} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-07-02] (Microsoft Corporation)
Task: {308CB599-DBB8-4D0D-8C29-A332196082C3} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-06-23] (Microsoft Corporation)
Task: {509CA7DD-7D1E-4F2C-962E-6629E22EE893} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2017-07-02] (Microsoft Corporation)
Task: {61CF55A5-1765-42FA-B30F-A34CE30E6792} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2015-05-27] (Realtek Semiconductor)
Task: {67A065B8-483C-4C2E-AC34-65ED736495BA} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-03-22] (Dropbox, Inc.)
Task: {9F3EC1FD-2233-4398-AE67-887D8051CF31} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2017-06-23] (Microsoft Corporation)
Task: {B085C343-7642-426F-B4E3-13C697078F4C} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2017-07-02] ()
Task: {C047AC5F-53D2-44A3-9A8C-10B7D252F3C7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-03-17] (Google Inc.)
Task: {D676FDE4-3B0E-4198-BE1A-BAA5898BAFD6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-03-17] (Google Inc.)
Task: {DEE2FAC8-B611-4742-8598-8A72544A5F5D} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-03-22] (Dropbox, Inc.)
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.)
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
==================== Verknüpfungen & WMI ========================
(Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.)
ShortcutWithArgument: C:\Users\pino\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps\Cisco WebEx.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=fceempjejlfaadkgdacpfhheknndlcjl
==================== Geladene Module (Nicht auf der Ausnahmeliste) ==============
2014-01-15 05:42 - 2014-01-15 05:42 - 00351824 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe
2017-03-20 13:11 - 2015-07-06 13:18 - 00682072 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe
2017-06-12 19:48 - 2017-06-12 19:48 - 00052392 _____ () C:\Program Files\FileZilla FTP Client\fzshellext_64.dll
2017-03-18 22:58 - 2017-03-18 22:58 - 00138000 _____ () C:\WINDOWS\SYSTEM32\inputhost.dll
2017-03-08 04:42 - 2017-03-08 04:42 - 00230064 _____ () C:\Program Files\Notepad++\NppShell_06.dll
2016-10-25 02:08 - 2016-10-25 02:08 - 00401912 _____ () C:\WINDOWS\system32\igfxTray.exe
2017-03-22 00:15 - 2017-07-12 22:01 - 00025408 _____ () C:\Program Files (x86)\Dropbox\Client\QtWebEngineProcess.exe
2017-07-18 13:04 - 2017-07-18 13:04 - 00074752 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkypeHost.exe
2017-07-18 13:04 - 2017-07-18 13:04 - 00203264 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkypeBackgroundTasks.dll
2017-07-18 13:04 - 2017-07-18 13:04 - 43573248 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\SkyWrap.dll
2017-07-18 13:04 - 2017-07-18 13:04 - 02435584 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.19.820.0_x64__kzf8qxf38zg5c\skypert.dll
2017-07-21 14:01 - 2017-07-21 14:02 - 24054272 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17062.12911.0_x64__8wekyb3d8bbwe\Video.UI.exe
2017-07-21 14:01 - 2017-07-21 14:02 - 09161728 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17062.12911.0_x64__8wekyb3d8bbwe\EntCommon.dll
2017-06-13 08:21 - 2017-06-13 08:22 - 03500456 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17062.12911.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2017-07-21 14:01 - 2017-07-21 14:02 - 10910208 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.17062.12911.0_x64__8wekyb3d8bbwe\EntPlat.dll
2017-03-18 22:59 - 2017-03-20 06:43 - 01731072 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2017-06-27 20:40 - 2017-06-23 05:21 - 03807064 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libglesv2.dll
2017-06-27 20:40 - 2017-06-23 05:21 - 00100184 _____ () C:\Program Files (x86)\Google\Chrome\Application\59.0.3071.115\libegl.dll
2017-07-12 21:18 - 2017-07-12 21:18 - 00020480 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.13720.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2017-07-12 21:18 - 2017-07-12 21:18 - 27590144 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.13720.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2017-07-12 21:18 - 2017-07-12 21:18 - 00428032 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.13720.0_x64__8wekyb3d8bbwe\Microsoft.Photos.AGM.Native.Windows.dll
2017-07-12 21:18 - 2017-07-12 21:18 - 20649984 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.13720.0_x64__8wekyb3d8bbwe\PhotosApp.Windows.dll
2017-07-12 21:18 - 2017-07-12 21:18 - 02305536 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.13720.0_x64__8wekyb3d8bbwe\MediaEngine.dll
2017-07-12 21:18 - 2017-07-12 21:18 - 02856448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.13720.0_x64__8wekyb3d8bbwe\AppCore.Windows.dll
2017-06-06 18:24 - 2017-06-06 18:25 - 03139496 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.13720.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2017-06-06 18:24 - 2017-06-06 18:25 - 00046080 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.13720.0_x64__8wekyb3d8bbwe\Microsoft.Photos.Edit.Services.dll
2017-03-17 23:37 - 2017-03-17 23:37 - 00680448 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.13720.0_x64__8wekyb3d8bbwe\Microsoft.DesignCore.dll
2017-07-12 21:18 - 2017-07-12 21:18 - 01127936 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.13720.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.Controls.dll
2017-05-09 08:14 - 2017-05-09 08:14 - 01062400 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.18062.13720.0_x64__8wekyb3d8bbwe\Microsoft.Sharing.dll
2017-03-20 13:11 - 2013-08-16 08:53 - 00011362 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\mingwm10.dll
2017-03-20 13:11 - 2014-02-15 09:33 - 01148416 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtNetwork4.dll
2017-03-20 13:11 - 2014-02-15 09:31 - 02416640 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtCore4.dll
2017-03-20 13:11 - 2013-08-16 08:53 - 00043008 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\libgcc_s_dw2-1.dll
2016-06-21 10:21 - 2016-06-21 10:21 - 01500672 _____ () C:\PROGRAM FILES (X86)\JABRA\DIRECT\BROADSOFTINTEGRATION\CommunicatorApiV2.dll
2017-07-14 10:47 - 2017-07-12 21:58 - 00746816 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_watchdog.dll
2017-07-14 10:47 - 2017-07-12 21:58 - 01787200 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_crashpad.dll
2017-04-16 14:33 - 2017-07-12 21:58 - 00100296 _____ () C:\Program Files (x86)\Dropbox\Client\_ctypes.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00018888 _____ () C:\Program Files (x86)\Dropbox\Client\select.pyd
2017-03-22 00:15 - 2017-07-12 22:01 - 00020800 _____ () C:\Program Files (x86)\Dropbox\Client\tornado.speedups.pyd
2017-04-16 14:33 - 2017-07-12 21:58 - 00035792 _____ () C:\Program Files (x86)\Dropbox\Client\_multiprocessing.pyd
2017-07-14 10:47 - 2017-07-12 21:59 - 00021848 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._constant_time.pyd
2017-04-16 14:33 - 2017-07-12 21:58 - 00125904 _____ () C:\Program Files (x86)\Dropbox\Client\_cffi_backend.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00694224 _____ () C:\Program Files (x86)\Dropbox\Client\unicodedata.pyd
2017-07-14 10:47 - 2017-07-12 21:59 - 01862992 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._openssl.pyd
2017-07-14 10:47 - 2017-07-12 21:59 - 00022864 _____ () C:\Program Files (x86)\Dropbox\Client\cryptography.hazmat.bindings._padding.pyd
2017-07-14 10:47 - 2017-07-12 21:58 - 00145864 _____ () C:\Program Files (x86)\Dropbox\Client\pyexpat.pyd
2017-07-14 10:47 - 2017-07-12 21:58 - 00020432 _____ () C:\Program Files (x86)\Dropbox\Client\faulthandler.pyd
2017-07-14 10:47 - 2017-07-12 21:58 - 00116688 _____ () C:\Program Files (x86)\Dropbox\Client\pywintypes27.dll
2017-03-22 00:15 - 2017-07-12 21:58 - 00105928 _____ () C:\Program Files (x86)\Dropbox\Client\win32api.pyd
2017-03-22 00:15 - 2017-07-12 22:01 - 00022864 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.crt.compiled._winffi_crt.pyd
2017-07-14 10:47 - 2017-07-12 21:59 - 00062784 _____ () C:\Program Files (x86)\Dropbox\Client\psutil._psutil_windows.pyd
2017-07-14 10:47 - 2017-07-12 21:59 - 00040248 _____ () C:\Program Files (x86)\Dropbox\Client\fastpath.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00024528 _____ () C:\Program Files (x86)\Dropbox\Client\win32event.pyd
2017-07-14 10:47 - 2017-07-12 21:58 - 00392656 _____ () C:\Program Files (x86)\Dropbox\Client\pythoncom27.dll
2017-07-14 10:47 - 2017-07-12 21:58 - 00020936 _____ () C:\Program Files (x86)\Dropbox\Client\mmapfile.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00116176 _____ () C:\Program Files (x86)\Dropbox\Client\win32security.pyd
2017-03-22 00:15 - 2017-07-12 22:01 - 00392512 _____ () C:\Program Files (x86)\Dropbox\Client\win32com.shell.shell.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00124880 _____ () C:\Program Files (x86)\Dropbox\Client\win32file.pyd
2017-03-22 00:15 - 2017-07-12 22:01 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.kernel32.compiled._winffi_kernel32.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32clipboard.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00175560 _____ () C:\Program Files (x86)\Dropbox\Client\win32gui.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00030160 _____ () C:\Program Files (x86)\Dropbox\Client\win32pipe.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00043472 _____ () C:\Program Files (x86)\Dropbox\Client\win32process.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00048592 _____ () C:\Program Files (x86)\Dropbox\Client\win32service.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00057808 _____ () C:\Program Files (x86)\Dropbox\Client\win32evtlog.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00024016 _____ () C:\Program Files (x86)\Dropbox\Client\win32profile.pyd
2017-07-14 10:47 - 2017-07-12 21:59 - 00022336 _____ () C:\Program Files (x86)\Dropbox\Client\cpuid.compiled._cpuid.pyd
2017-05-17 19:53 - 2017-07-12 22:01 - 00082264 _____ () C:\Program Files (x86)\Dropbox\Client\winenumhandles.compiled._WinEnumHandles.pyd
2017-03-22 00:15 - 2017-07-12 22:01 - 00025432 _____ () C:\Program Files (x86)\Dropbox\Client\winscreenshot.compiled._CaptureScreenshot.pyd
2017-07-14 10:47 - 2017-07-12 21:59 - 00027488 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox.infinite.win.compiled._driverinstallation.pyd
2017-07-14 10:47 - 2017-07-12 22:00 - 03928896 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWidgets.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00083912 _____ () C:\Program Files (x86)\Dropbox\Client\sip.pyd
2017-07-14 10:47 - 2017-07-12 21:59 - 01826104 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtCore.pyd
2017-07-14 10:47 - 2017-07-12 22:00 - 01972024 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtGui.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00028616 _____ () C:\Program Files (x86)\Dropbox\Client\win32ts.pyd
2017-07-14 10:47 - 2017-07-12 22:00 - 00171336 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebEngineWidgets.pyd
2017-07-14 10:47 - 2017-07-12 22:00 - 00042816 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebChannel.pyd
2017-07-14 10:47 - 2017-07-12 22:00 - 00531264 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtNetwork.pyd
2017-07-14 10:47 - 2017-07-12 22:00 - 00133432 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKit.pyd
2017-07-14 10:47 - 2017-07-12 22:00 - 00224064 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWebKitWidgets.pyd
2017-07-14 10:47 - 2017-07-12 22:00 - 00207680 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtPrintSupport.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00060880 _____ () C:\Program Files (x86)\Dropbox\Client\win32print.pyd
2017-03-22 00:15 - 2017-07-12 22:01 - 00054608 _____ () C:\Program Files (x86)\Dropbox\Client\winrpcserver.compiled._RPCServer.pyd
2017-03-22 00:15 - 2017-07-12 22:01 - 00022864 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.user32.compiled._winffi_user32.pyd
2017-03-22 00:15 - 2017-07-12 22:01 - 00069968 _____ () C:\Program Files (x86)\Dropbox\Client\windisplaytoast.compiled._DisplayToast.pyd
2017-03-22 00:15 - 2017-07-12 22:01 - 00022872 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.iphlpapi.compiled._winffi_iphlpapi.pyd
2017-03-22 00:15 - 2017-07-12 22:01 - 00021848 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winerror.compiled._winffi_winerror.pyd
2017-03-22 00:15 - 2017-07-12 22:01 - 00022872 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.wininet.compiled._winffi_wininet.pyd
2017-03-22 00:15 - 2017-07-12 21:58 - 00349128 _____ () C:\Program Files (x86)\Dropbox\Client\winxpgui.pyd
2017-07-14 10:47 - 2017-07-12 22:00 - 00103232 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtWinExtras.pyd
2017-03-22 00:15 - 2017-07-12 22:01 - 00023896 _____ () C:\Program Files (x86)\Dropbox\Client\winverifysignature.compiled._VerifySignature.pyd
2017-07-14 10:47 - 2017-07-12 21:59 - 00025936 _____ () C:\Program Files (x86)\Dropbox\Client\librsyncffi.compiled._librsyncffi.pyd
2017-07-14 10:47 - 2017-07-12 21:58 - 00036296 _____ () C:\Program Files (x86)\Dropbox\Client\librsync.dll
2017-07-14 10:47 - 2017-07-12 21:59 - 00033112 _____ () C:\Program Files (x86)\Dropbox\Client\enterprise_data.compiled._enterprise_data.pyd
2017-07-14 10:47 - 2017-07-12 21:58 - 00293392 _____ () C:\Program Files (x86)\Dropbox\Client\EnterpriseDataAdapter.dll
2017-07-14 10:47 - 2017-07-12 21:59 - 00181056 _____ () C:\Program Files (x86)\Dropbox\Client\dropbox_sqlite_ext.DLL
2017-03-22 00:15 - 2017-07-12 22:01 - 00030536 _____ () C:\Program Files (x86)\Dropbox\Client\wind3d11.compiled._wind3d11.pyd
2017-07-14 10:47 - 2017-07-12 21:59 - 00024368 _____ () C:\Program Files (x86)\Dropbox\Client\libEGL.dll
2017-07-14 10:47 - 2017-07-12 21:59 - 01637688 _____ () C:\Program Files (x86)\Dropbox\Client\libGLESv2.dll
2017-03-22 00:15 - 2017-07-12 22:01 - 00026456 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.winhttp.compiled._winffi_winhttp.pyd
2017-03-22 00:15 - 2017-07-12 22:01 - 00022864 _____ () C:\Program Files (x86)\Dropbox\Client\winffi.shcore.compiled._winffi_shcore.pyd
2017-04-07 20:38 - 2017-07-12 22:01 - 00023368 _____ () C:\Program Files (x86)\Dropbox\Client\wincrashpad.compiled._Crashpad.pyd
2017-07-14 10:47 - 2017-07-12 22:00 - 00546104 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQuick.pyd
2017-07-14 10:47 - 2017-07-12 22:00 - 00357688 _____ () C:\Program Files (x86)\Dropbox\Client\PyQt5.QtQml.pyd
2017-04-27 08:58 - 2017-07-12 21:58 - 00697304 _____ () C:\Program Files (x86)\Dropbox\Client\QtQuick\Controls\qtquickcontrolsplugin.dll
==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) =========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.)
==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Wdf01000.sys => ""="Driver"
==================== Verknüpfungen (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.)
==================== Internet Explorer Vertrauenswürdig/Eingeschränkt ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.)
IE trusted site: HKU\S-1-5-21-697847764-2959338102-2115453073-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-697847764-2959338102-2115453073-1001\...\webcompanion.com -> hxxp://webcompanion.com
==================== Hosts Inhalt: ===============================
(Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.)
2016-07-16 13:47 - 2016-07-16 13:45 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hosts
==================== Andere Bereiche ============================
(Aktuell gibt es keinen automatisierten Fix für diesen Bereich.)
HKU\S-1-5-21-697847764-2959338102-2115453073-1001\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.178.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall ist aktiviert.
==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge ==
==================== Firewall Regeln (Nicht auf der Ausnahmeliste) ===============
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
FirewallRules: [{EAD01BA2-A39A-4240-9062-A90FB6AFA13A}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe
FirewallRules: [UDP Query User{32629BF6-4303-4CB2-B1AF-D9329646DEBB}C:\users\pino\downloads\anydesk.exe] => (Allow) C:\users\pino\downloads\anydesk.exe
FirewallRules: [TCP Query User{080C05B9-4DE5-42B7-9807-E122EF46E40F}C:\users\pino\downloads\anydesk.exe] => (Allow) C:\users\pino\downloads\anydesk.exe
FirewallRules: [{C1A72C66-5F5F-4417-8BB6-D39D8CA309C7}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture 6\rtmpsrv.exe
FirewallRules: [{FE21340C-EED1-446D-8DD6-6F9F2FC2CBBB}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture 6\rtmpsrv.exe
FirewallRules: [{D203AF8D-344F-422E-A596-D372BDBBEF8C}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture 6\Video Download Capture 6.exe
FirewallRules: [{E16006B5-5786-4A80-A7EA-E18BA5671F7A}] => (Allow) C:\Program Files (x86)\Apowersoft\Video Download Capture 6\Video Download Capture 6.exe
FirewallRules: [{1F0904A6-A5E2-4E5D-A8ED-03B70F9CDB38}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe
FirewallRules: [{21CE1221-C968-4D51-AAC5-A55A0E9D7DFB}] => (Allow) C:\Program Files (x86)\Sony Mobile\Update Engine\Sony Mobile Update Engine.exe
FirewallRules: [{DDE1EF13-1C43-4585-A376-455595A9A649}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Unlimited\Apowersoft Unlimited.exe
FirewallRules: [{A38992C3-0BDB-4328-8E59-4C43A7C67A58}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Unlimited\Apowersoft Unlimited.exe
FirewallRules: [{3A1AFFB6-C46E-4939-9551-FEA1DE5FA1AF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{30BBAB3A-4B13-4924-8FF5-9CC0F2F838CF}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [UDP Query User{5BBCCF8E-3E75-4D4E-A6D0-9FAF6AAAEE61}C:\program files (x86)\kodi\kodi.exe] => (Block) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [TCP Query User{BAD3FD50-DE31-443A-BF1E-FE87142465C3}C:\program files (x86)\kodi\kodi.exe] => (Block) C:\program files (x86)\kodi\kodi.exe
FirewallRules: [UDP Query User{D5E1C8B3-4BCF-4B5C-847F-27D5F56C604D}C:\program files (x86)\citrix\ica client\wfica32.exe] => (Allow) C:\program files (x86)\citrix\ica client\wfica32.exe
FirewallRules: [TCP Query User{0864A867-1912-4CE3-9E97-426EB38CE5B6}C:\program files (x86)\citrix\ica client\wfica32.exe] => (Allow) C:\program files (x86)\citrix\ica client\wfica32.exe
FirewallRules: [{D5EFDD91-E9AF-475B-ADC1-C89AE6191212}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{EBA470EC-C109-444B-8381-9B175A81C505}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe
FirewallRules: [{4B0F8C3C-3D7C-42B1-AD92-CB8A944F8513}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [{B363EA4E-D2BC-48E9-835D-72630F2C1F3B}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe
FirewallRules: [UDP Query User{59B14F13-6A5F-4F9D-9E87-9586C78C5D43}C:\program files (x86)\citrix\ica client\wfica32.exe] => (Allow) C:\program files (x86)\citrix\ica client\wfica32.exe
FirewallRules: [TCP Query User{14D97455-470C-45C6-826D-C825C371E049}C:\program files (x86)\citrix\ica client\wfica32.exe] => (Allow) C:\program files (x86)\citrix\ica client\wfica32.exe
FirewallRules: [TCP Query User{A29C4871-9C9E-4830-87A7-9B9070DE2230}C:\users\pino\downloads\anydesk (2).exe] => (Allow) C:\users\pino\downloads\anydesk (2).exe
FirewallRules: [UDP Query User{580E3069-9401-4AA8-83C9-1D3DF8657596}C:\users\pino\downloads\anydesk (2).exe] => (Allow) C:\users\pino\downloads\anydesk (2).exe
FirewallRules: [{2A7D7719-0505-48AC-BDAE-5E9C7BE3EC9B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [{5A99D781-E857-4538-A95A-D4ACFBC05C89}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
FirewallRules: [TCP Query User{293EE330-7E12-415D-83F3-4B794A502CA8}C:\users\pino\downloads\anydesk (1).exe] => (Block) C:\users\pino\downloads\anydesk (1).exe
FirewallRules: [UDP Query User{DC541665-25E9-44DF-8898-E90D4AC921FF}C:\users\pino\downloads\anydesk (1).exe] => (Block) C:\users\pino\downloads\anydesk (1).exe
FirewallRules: [{1209BB15-ED96-4EE1-88BF-8D69D024EFA8}] => (Allow) C:\Users\pino\Desktop\FRST64.exe
FirewallRules: [{903FBE08-310C-4EF2-9AD2-FE37015E2736}] => (Allow) C:\Users\pino\Desktop\FRST64.exe
==================== Wiederherstellungspunkte =========================
08-07-2017 12:44:36 Geplanter Prüfpunkt
12-07-2017 21:25:10 Windows Update
22-07-2017 21:10:27 Geplanter Prüfpunkt
==================== Fehlerhafte Geräte im Gerätemanager =============
Name: Broadcom USH
Description: Broadcom USH
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Integrated Webcam
Description: USB-Videogerät
Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f}
Manufacturer: Microsoft
Service: usbvideo
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: Broadcom USH w/swipe sensor
Description: Broadcom USH w/swipe sensor
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Alessia
Description: Bluetooth-Gerät
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Microsoft
Service:
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
==================== Fehlereinträge in der Ereignisanzeige: =========================
Applikationsfehler:
==================
Error: (07/23/2017 11:23:21 PM) (Source: SWISoftDev) (EventID: 1) (User: )
Description: Device ID: <11999061> is not supported on this machine!
Error: (07/23/2017 05:06:54 PM) (Source: SWISoftDev) (EventID: 1) (User: )
Description: Device ID: <11999061> is not supported on this machine!
Error: (07/22/2017 10:40:56 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SearchUI.exe, Version: 10.0.15063.332, Zeitstempel: 0x591fdafc
Name des fehlerhaften Moduls: Windows.UI.Xaml.dll, Version: 10.0.15063.483, Zeitstempel: 0xb0271b92
Ausnahmecode: 0xc000027b
Fehleroffset: 0x00000000005dac1d
ID des fehlerhaften Prozesses: 0x2d38
Startzeit der fehlerhaften Anwendung: 0x01d2fe61de5697fc
Pfad der fehlerhaften Anwendung: C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
Pfad des fehlerhaften Moduls: C:\Windows\System32\Windows.UI.Xaml.dll
Berichtskennung: 375683f9-abfa-425f-9485-d1edf2da74df
Vollständiger Name des fehlerhaften Pakets: Microsoft.Windows.Cortana_1.8.12.15063_neutral_neutral_cw5n1h2txyewy
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: CortanaUI
Error: (07/22/2017 08:26:47 PM) (Source: SWISoftDev) (EventID: 1) (User: )
Description: Device ID: <11999061> is not supported on this machine!
Error: (07/22/2017 06:04:24 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest". Fehler in Manifest- oder Richtliniendatei "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" in Zeile 1.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition: UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.
Error: (07/22/2017 06:01:19 PM) (Source: SWISoftDev) (EventID: 1) (User: )
Description: Device ID: <11999061> is not supported on this machine!
Error: (07/21/2017 01:58:31 PM) (Source: SWISoftDev) (EventID: 1) (User: )
Description: Device ID: <11999061> is not supported on this machine!
Error: (07/20/2017 01:54:07 PM) (Source: SWISoftDev) (EventID: 1) (User: )
Description: Device ID: <11999061> is not supported on this machine!
Error: (07/20/2017 12:08:22 AM) (Source: SWISoftDev) (EventID: 1) (User: )
Description: Device ID: <11999061> is not supported on this machine!
Error: (07/19/2017 10:12:47 PM) (Source: SWISoftDev) (EventID: 1) (User: )
Description: Device ID: <11999061> is not supported on this machine!
Systemfehler:
=============
Error: (07/23/2017 11:23:23 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (07/23/2017 11:22:39 PM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: )
Description: Für den Miniport "Dell Wireless 5570 HSPA+ (42Mbps) Mobile Broadband Card, {6F47B31A-FD0F-4570-8865-BC1D18329E2D}" ist das Ereignis "71" aufgetreten.
Error: (07/23/2017 05:06:44 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (07/23/2017 05:06:37 PM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: )
Description: Für den Miniport "Dell Wireless 5570 HSPA+ (42Mbps) Mobile Broadband Card, {6F47B31A-FD0F-4570-8865-BC1D18329E2D}" ist das Ereignis "71" aufgetreten.
Error: (07/22/2017 08:26:36 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (07/22/2017 08:26:32 PM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: )
Description: Für den Miniport "Dell Wireless 5570 HSPA+ (42Mbps) Mobile Broadband Card, {6F47B31A-FD0F-4570-8865-BC1D18329E2D}" ist das Ereignis "71" aufgetreten.
Error: (07/22/2017 06:02:35 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (07/21/2017 05:13:59 PM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: )
Description: Für den Miniport "Dell Wireless 5570 HSPA+ (42Mbps) Mobile Broadband Card, {6F47B31A-FD0F-4570-8865-BC1D18329E2D}" ist das Ereignis "71" aufgetreten.
Error: (07/21/2017 01:58:31 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: Durch die Berechtigungseinstellungen für "Anwendungsspezifisch" wird dem Benutzer "NT-AUTORITÄT\SYSTEM" (SID: S-1-5-18) unter der Adresse "LocalHost (unter Verwendung von LRPC)" keine Berechtigung vom Typ "Lokal Aktivierung" für die COM-Serveranwendung mit der CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
und der APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) gewährt. Die Sicherheitsberechtigung kann mit dem Verwaltungstool für Komponentendienste geändert werden.
Error: (07/20/2017 05:46:13 PM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: NT-AUTORITÄT)
Description: Für den Miniport "Dell Wireless 5570 HSPA+ (42Mbps) Mobile Broadband Card, {6F47B31A-FD0F-4570-8865-BC1D18329E2D}" ist das Ereignis "71" aufgetreten.
==================== Speicherinformationen ===========================
Prozessor: Intel(R) Core(TM) i5-4300U CPU @ 1.90GHz
Prozentuale Nutzung des RAM: 37%
Installierter physikalischer RAM: 8097.43 MB
Verfügbarer physikalischer RAM: 5074.57 MB
Summe virtueller Speicher: 9377.43 MB
Verfügbarer virtueller Speicher: 5709.6 MB
==================== Laufwerke ================================
Drive c: () (Fixed) (Total:237.51 GB) (Free:70.52 GB) NTFS
==================== MBR & Partitionstabelle ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 238.5 GB) (Disk ID: 6DEEFFB3)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=237.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=484 MB) - (Type=27)
==================== Ende von Addition.txt ============================ Code:
00:01:01.0365 0x3270 TDSS rootkit removing tool 3.1.0.15 Apr 18 2017 11:34:02
00:01:06.0646 0x3270 ============================================================
00:01:06.0646 0x3270 Current date / time: 2017/07/24 00:01:06.0646
00:01:06.0646 0x3270 SystemInfo:
00:01:06.0646 0x3270
00:01:06.0646 0x3270 OS Version: 10.0.15063 ServicePack: 0.0
00:01:06.0646 0x3270 Product type: Workstation
00:01:06.0646 0x3270 ComputerName: DELL
00:01:06.0646 0x3270 UserName: pino
00:01:06.0646 0x3270 Windows directory: C:\WINDOWS
00:01:06.0646 0x3270 System windows directory: C:\WINDOWS
00:01:06.0646 0x3270 Running under WOW64
00:01:06.0646 0x3270 Processor architecture: Intel x64
00:01:06.0646 0x3270 Number of processors: 4
00:01:06.0646 0x3270 Page size: 0x1000
00:01:06.0646 0x3270 Boot type: Normal boot
00:01:06.0646 0x3270 CodeIntegrityOptions = 0x00000001
00:01:06.0646 0x3270 ============================================================
00:01:06.0724 0x3270 KLMD registered as C:\WINDOWS\system32\drivers\41640349.sys
00:01:06.0724 0x3270 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 15063.0, osProperties = 0x19
00:01:07.0381 0x3270 System UUID: {17C6CF4F-532A-2AE9-B7A7-FC059E91CF09}
00:01:07.0943 0x3270 Drive \Device\Harddisk0\DR0 - Size: 0x3B9E656000 ( 238.47 Gb ), SectorSize: 0x200, Cylinders: 0x799A, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
00:01:07.0943 0x3270 ============================================================
00:01:07.0943 0x3270 \Device\Harddisk0\DR0:
00:01:07.0943 0x3270 MBR partitions:
00:01:07.0943 0x3270 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xFA000
00:01:07.0943 0x3270 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xFA800, BlocksNum 0x1DB05240
00:01:07.0943 0x3270 ============================================================
00:01:07.0943 0x3270 Initialize success
00:01:07.0943 0x3270 ============================================================
00:02:30.0294 0x1e94 ============================================================
00:02:30.0294 0x1e94 Scan started
00:02:30.0294 0x1e94 Mode: Manual; SigCheck; TDLFS;
00:02:30.0294 0x1e94 ============================================================
00:02:30.0294 0x1e94 KSN ping started
00:02:30.0403 0x1e94 KSN ping finished: true
00:02:30.0606 0x1e94 ================ Scan system memory ========================
00:02:30.0606 0x1e94 System memory - ok
00:02:30.0606 0x1e94 ================ Scan services =============================
00:02:30.0637 0x1e94 1394ohci - ok
00:02:30.0653 0x1e94 3ware - ok
00:02:30.0653 0x1e94 ACPI - ok
00:02:30.0669 0x1e94 AcpiDev - ok
00:02:30.0669 0x1e94 acpiex - ok
00:02:30.0684 0x1e94 acpipagr - ok
00:02:30.0684 0x1e94 AcpiPmi - ok
00:02:30.0684 0x1e94 acpitime - ok
00:02:30.0700 0x1e94 ADP80XX - ok
00:02:30.0700 0x1e94 AFD - ok
00:02:30.0700 0x1e94 ahcache - ok
00:02:30.0700 0x1e94 AJRouter - ok
00:02:30.0715 0x1e94 ALG - ok
00:02:30.0715 0x1e94 AmdK8 - ok
00:02:30.0715 0x1e94 AmdPPM - ok
00:02:30.0715 0x1e94 amdsata - ok
00:02:30.0731 0x1e94 amdsbs - ok
00:02:30.0731 0x1e94 amdxata - ok
00:02:30.0731 0x1e94 ApfiltrService - ok
00:02:30.0731 0x1e94 ApHidMonitorService - ok
00:02:30.0731 0x1e94 AppID - ok
00:02:30.0747 0x1e94 AppIDSvc - ok
00:02:30.0747 0x1e94 Appinfo - ok
00:02:30.0747 0x1e94 applockerfltr - ok
00:02:30.0747 0x1e94 AppMgmt - ok
00:02:30.0762 0x1e94 AppReadiness - ok
00:02:30.0762 0x1e94 AppVClient - ok
00:02:30.0762 0x1e94 AppvStrm - ok
00:02:30.0762 0x1e94 AppvVemgr - ok
00:02:30.0778 0x1e94 AppvVfs - ok
00:02:30.0778 0x1e94 AppXSvc - ok
00:02:30.0778 0x1e94 arcsas - ok
00:02:30.0778 0x1e94 AsyncMac - ok
00:02:30.0794 0x1e94 atapi - ok
00:02:30.0794 0x1e94 AudioEndpointBuilder - ok
00:02:30.0794 0x1e94 Audiosrv - ok
00:02:30.0794 0x1e94 AxInstSV - ok
00:02:30.0794 0x1e94 b06bdrv - ok
00:02:30.0809 0x1e94 BasicDisplay - ok
00:02:30.0809 0x1e94 BasicRender - ok
00:02:30.0809 0x1e94 bcmfn2 - ok
00:02:30.0809 0x1e94 BDESVC - ok
00:02:30.0825 0x1e94 Beep - ok
00:02:30.0825 0x1e94 BFE - ok
00:02:30.0825 0x1e94 BITS - ok
00:02:30.0825 0x1e94 blackberryncm - ok
00:02:30.0840 0x1e94 bowser - ok
00:02:30.0840 0x1e94 BrokerInfrastructure - ok
00:02:30.0840 0x1e94 Browser - ok
00:02:30.0840 0x1e94 BthAvrcpTg - ok
00:02:30.0840 0x1e94 BthEnum - ok
00:02:30.0856 0x1e94 BthHFEnum - ok
00:02:30.0856 0x1e94 bthhfhid - ok
00:02:30.0856 0x1e94 BthHFSrv - ok
00:02:30.0856 0x1e94 BthLEEnum - ok
00:02:30.0856 0x1e94 BTHMODEM - ok
00:02:30.0872 0x1e94 BthPan - ok
00:02:30.0872 0x1e94 BTHPORT - ok
00:02:30.0872 0x1e94 bthserv - ok
00:02:30.0872 0x1e94 BTHUSB - ok
00:02:30.0872 0x1e94 buttonconverter - ok
00:02:30.0887 0x1e94 CAD - ok
00:02:30.0887 0x1e94 CapImg - ok
00:02:30.0887 0x1e94 cdfs - ok
00:02:30.0887 0x1e94 CDPSvc - ok
00:02:30.0887 0x1e94 CDPUserSvc - ok
00:02:30.0903 0x1e94 cdrom - ok
00:02:30.0903 0x1e94 CertPropSvc - ok
00:02:30.0903 0x1e94 cht4iscsi - ok
00:02:30.0919 0x1e94 cht4vbd - ok
00:02:30.0919 0x1e94 circlass - ok
00:02:30.0919 0x1e94 CldFlt - ok
00:02:30.0919 0x1e94 CLFS - ok
00:02:30.0919 0x1e94 ClickToRunSvc - ok
00:02:30.0934 0x1e94 ClipSVC - ok
00:02:30.0934 0x1e94 clreg - ok
00:02:30.0934 0x1e94 CmBatt - ok
00:02:30.0934 0x1e94 CNG - ok
00:02:30.0950 0x1e94 cnghwassist - ok
00:02:30.0950 0x1e94 CompositeBus - ok
00:02:30.0950 0x1e94 COMSysApp - ok
00:02:30.0950 0x1e94 condrv - ok
00:02:30.0950 0x1e94 CoreMessagingRegistrar - ok
00:02:30.0965 0x1e94 cphs - ok
00:02:30.0965 0x1e94 CryptSvc - ok
00:02:30.0965 0x1e94 CSC - ok
00:02:30.0981 0x1e94 CscService - ok
00:02:30.0981 0x1e94 ctxusbm - ok
00:02:30.0981 0x1e94 dam - ok
00:02:30.0981 0x1e94 dbupdate - ok
00:02:30.0981 0x1e94 dbupdatem - ok
00:02:30.0981 0x1e94 DbxSvc - ok
00:02:30.0997 0x1e94 DcomLaunch - ok
00:02:30.0997 0x1e94 defragsvc - ok
00:02:30.0997 0x1e94 DellRbtn - ok
00:02:30.0997 0x1e94 DeviceAssociationService - ok
00:02:31.0012 0x1e94 DeviceInstall - ok
00:02:31.0012 0x1e94 DevicesFlowUserSvc - ok
00:02:31.0012 0x1e94 DevQueryBroker - ok
00:02:31.0012 0x1e94 Dfsc - ok
00:02:31.0012 0x1e94 Dhcp - ok
00:02:31.0028 0x1e94 diagnosticshub.standardcollector.service - ok
00:02:31.0028 0x1e94 DiagTrack - ok
00:02:31.0028 0x1e94 Disk - ok
00:02:31.0028 0x1e94 DmEnrollmentSvc - ok
00:02:31.0028 0x1e94 dmvsc - ok
00:02:31.0044 0x1e94 dmwappushservice - ok
00:02:31.0044 0x1e94 Dnscache - ok
00:02:31.0044 0x1e94 dot3svc - ok
00:02:31.0044 0x1e94 DPS - ok
00:02:31.0059 0x1e94 drmkaud - ok
00:02:31.0059 0x1e94 DsmSvc - ok
00:02:31.0059 0x1e94 DsSvc - ok
00:02:31.0059 0x1e94 DusmSvc - ok
00:02:31.0059 0x1e94 DXGKrnl - ok
00:02:31.0075 0x1e94 e1dexpress - ok
00:02:31.0075 0x1e94 EapHost - ok
00:02:31.0075 0x1e94 ebdrv - ok
00:02:31.0075 0x1e94 EFS - ok
00:02:31.0075 0x1e94 EhStorClass - ok
00:02:31.0090 0x1e94 EhStorTcgDrv - ok
00:02:31.0090 0x1e94 embeddedmode - ok
00:02:31.0090 0x1e94 EntAppSvc - ok
00:02:31.0090 0x1e94 ErrDev - ok
00:02:31.0090 0x1e94 EventSystem - ok
00:02:31.0106 0x1e94 ew_hwusbdev - ok
00:02:31.0106 0x1e94 ew_usbenumfilter - ok
00:02:31.0106 0x1e94 exfat - ok
00:02:31.0106 0x1e94 fastfat - ok
00:02:31.0106 0x1e94 Fax - ok
00:02:31.0122 0x1e94 fdc - ok
00:02:31.0122 0x1e94 fdPHost - ok
00:02:31.0122 0x1e94 FDResPub - ok
00:02:31.0122 0x1e94 fhsvc - ok
00:02:31.0122 0x1e94 FileCrypt - ok
00:02:31.0137 0x1e94 FileInfo - ok
00:02:31.0137 0x1e94 Filetrace - ok
00:02:31.0137 0x1e94 flpydisk - ok
00:02:31.0137 0x1e94 FltMgr - ok
00:02:31.0137 0x1e94 FontCache - ok
00:02:31.0153 0x1e94 FontCache3.0.0.0 - ok
00:02:31.0153 0x1e94 FrameServer - ok
00:02:31.0153 0x1e94 FsDepends - ok
00:02:31.0153 0x1e94 Fs_Rec - ok
00:02:31.0153 0x1e94 fvevol - ok
00:02:31.0169 0x1e94 gencounter - ok
00:02:31.0169 0x1e94 genericusbfn - ok
00:02:31.0169 0x1e94 GPIOClx0101 - ok
00:02:31.0169 0x1e94 gpsvc - ok
00:02:31.0169 0x1e94 GpuEnergyDrv - ok
00:02:31.0184 0x1e94 gupdate - ok
00:02:31.0184 0x1e94 gupdatem - ok
00:02:31.0184 0x1e94 HDAudBus - ok
00:02:31.0184 0x1e94 HidBatt - ok
00:02:31.0200 0x1e94 HidBth - ok
00:02:31.0200 0x1e94 hidi2c - ok
00:02:31.0200 0x1e94 hidinterrupt - ok
00:02:31.0200 0x1e94 HidIr - ok
00:02:31.0200 0x1e94 hidserv - ok
00:02:31.0215 0x1e94 HidUsb - ok
00:02:31.0215 0x1e94 HomeGroupListener - ok
00:02:31.0215 0x1e94 HomeGroupProvider - ok
00:02:31.0215 0x1e94 HpSAMD - ok
00:02:31.0215 0x1e94 HTTP - ok
00:02:31.0215 0x1e94 huawei_enumerator - ok
00:02:31.0231 0x1e94 HvHost - ok
00:02:31.0231 0x1e94 hvservice - ok
00:02:31.0231 0x1e94 HWDeviceService64.exe - ok
00:02:31.0231 0x1e94 hwpolicy - ok
00:02:31.0231 0x1e94 hwusb_cdcacm - ok
00:02:31.0247 0x1e94 hwusb_wwanecm - ok
00:02:31.0247 0x1e94 hyperkbd - ok
00:02:31.0247 0x1e94 i8042prt - ok
00:02:31.0247 0x1e94 iagpio - ok
00:02:31.0247 0x1e94 iai2c - ok
00:02:31.0262 0x1e94 iaLPSS2i_GPIO2 - ok
00:02:31.0262 0x1e94 iaLPSS2i_GPIO2_BXT_P - ok
00:02:31.0262 0x1e94 iaLPSS2i_I2C - ok
00:02:31.0262 0x1e94 iaLPSS2i_I2C_BXT_P - ok
00:02:31.0262 0x1e94 iaLPSSi_GPIO - ok
00:02:31.0278 0x1e94 iaLPSSi_I2C - ok
00:02:31.0278 0x1e94 iaStorAV - ok
00:02:31.0278 0x1e94 iaStorV - ok
00:02:31.0278 0x1e94 ibbus - ok
00:02:31.0278 0x1e94 ibtsiva - ok
00:02:31.0294 0x1e94 ibtusb - ok
00:02:31.0294 0x1e94 icssvc - ok
00:02:31.0294 0x1e94 igfx - ok
00:02:31.0294 0x1e94 igfxCUIService2.0.0.0 - ok
00:02:31.0294 0x1e94 IKEEXT - ok
00:02:31.0309 0x1e94 IndirectKmd - ok
00:02:31.0309 0x1e94 IntcAzAudAddService - ok
00:02:31.0309 0x1e94 IntcDAud - ok
00:02:31.0309 0x1e94 intelide - ok
00:02:31.0325 0x1e94 intelpep - ok
00:02:31.0325 0x1e94 intelppm - ok
00:02:31.0325 0x1e94 Internet Manager. RunOuc - ok
00:02:31.0325 0x1e94 iorate - ok
00:02:31.0325 0x1e94 IpFilterDriver - ok
00:02:31.0341 0x1e94 iphlpsvc - ok
00:02:31.0341 0x1e94 IPMIDRV - ok
00:02:31.0341 0x1e94 IPNAT - ok
00:02:31.0341 0x1e94 IpxlatCfgSvc - ok
00:02:31.0341 0x1e94 irda - ok
00:02:31.0356 0x1e94 IRENUM - ok
00:02:31.0356 0x1e94 irmon - ok
00:02:31.0356 0x1e94 isapnp - ok
00:02:31.0356 0x1e94 iScsiPrt - ok
00:02:31.0356 0x1e94 kbdclass - ok
00:02:31.0372 0x1e94 kbdhid - ok
00:02:31.0372 0x1e94 kdnic - ok
00:02:31.0372 0x1e94 KeyIso - ok
00:02:31.0372 0x1e94 KSecDD - ok
00:02:31.0372 0x1e94 KSecPkg - ok
00:02:31.0372 0x1e94 ksthunk - ok
00:02:31.0387 0x1e94 KtmRm - ok
00:02:31.0387 0x1e94 LanmanServer - ok
00:02:31.0387 0x1e94 LanmanWorkstation - ok
00:02:31.0387 0x1e94 lfsvc - ok
00:02:31.0403 0x1e94 LicenseManager - ok
00:02:31.0403 0x1e94 lltdio - ok
00:02:31.0403 0x1e94 lltdsvc - ok
00:02:31.0403 0x1e94 lmhosts - ok
00:02:31.0403 0x1e94 LSI_SAS - ok
00:02:31.0419 0x1e94 LSI_SAS2i - ok
00:02:31.0419 0x1e94 LSI_SAS3i - ok
00:02:31.0419 0x1e94 LSI_SSS - ok
00:02:31.0419 0x1e94 LSM - ok
00:02:31.0419 0x1e94 luafv - ok
00:02:31.0434 0x1e94 MapsBroker - ok
00:02:31.0434 0x1e94 mausbhost - ok
00:02:31.0434 0x1e94 mausbip - ok
00:02:31.0434 0x1e94 megasas - ok
00:02:31.0434 0x1e94 megasas2i - ok
00:02:31.0450 0x1e94 megasr - ok
00:02:31.0450 0x1e94 MEIx64 - ok
00:02:31.0450 0x1e94 MessagingService - ok
00:02:31.0450 0x1e94 mlx4_bus - ok
00:02:31.0450 0x1e94 MMCSS - ok
00:02:31.0466 0x1e94 Modem - ok
00:02:31.0466 0x1e94 monitor - ok
00:02:31.0466 0x1e94 mouclass - ok
00:02:31.0466 0x1e94 mouhid - ok
00:02:31.0481 0x1e94 mountmgr - ok
00:02:31.0481 0x1e94 MozillaMaintenance - ok
00:02:31.0481 0x1e94 mpsdrv - ok
00:02:31.0481 0x1e94 MpsSvc - ok
00:02:31.0481 0x1e94 MRxDAV - ok
00:02:31.0497 0x1e94 mrxsmb - ok
00:02:31.0497 0x1e94 mrxsmb10 - ok
00:02:31.0497 0x1e94 mrxsmb20 - ok
00:02:31.0497 0x1e94 MsBridge - ok
00:02:31.0497 0x1e94 MSDTC - ok
00:02:31.0512 0x1e94 Msfs - ok
00:02:31.0512 0x1e94 msgpiowin32 - ok
00:02:31.0512 0x1e94 mshidkmdf - ok
00:02:31.0512 0x1e94 mshidumdf - ok
00:02:31.0528 0x1e94 msisadrv - ok
00:02:31.0528 0x1e94 MSiSCSI - ok
00:02:31.0528 0x1e94 msiserver - ok
00:02:31.0528 0x1e94 MSKSSRV - ok
00:02:31.0528 0x1e94 MsLldp - ok
00:02:31.0544 0x1e94 MSPCLOCK - ok
00:02:31.0544 0x1e94 MSPQM - ok
00:02:31.0544 0x1e94 MsRPC - ok
00:02:31.0544 0x1e94 MsSecFlt - ok
00:02:31.0544 0x1e94 mssmbios - ok
00:02:31.0559 0x1e94 MSTEE - ok
00:02:31.0559 0x1e94 MTConfig - ok
00:02:31.0559 0x1e94 Mup - ok
00:02:31.0559 0x1e94 mvumis - ok
00:02:31.0575 0x1e94 NativeWifiP - ok
00:02:31.0575 0x1e94 NaturalAuthentication - ok
00:02:31.0575 0x1e94 NcaSvc - ok
00:02:31.0575 0x1e94 NcbService - ok
00:02:31.0575 0x1e94 NcdAutoSetup - ok
00:02:31.0591 0x1e94 ndfltr - ok
00:02:31.0591 0x1e94 NDIS - ok
00:02:31.0591 0x1e94 NdisCap - ok
00:02:31.0591 0x1e94 NdisImPlatform - ok
00:02:31.0591 0x1e94 NdisTapi - ok
00:02:31.0606 0x1e94 Ndisuio - ok
00:02:31.0606 0x1e94 NdisVirtualBus - ok
00:02:31.0606 0x1e94 NdisWan - ok
00:02:31.0606 0x1e94 ndiswanlegacy - ok
00:02:31.0606 0x1e94 ndproxy - ok
00:02:31.0622 0x1e94 Ndu - ok
00:02:31.0622 0x1e94 NetAdapterCx - ok
00:02:31.0622 0x1e94 NetBIOS - ok
00:02:31.0622 0x1e94 NetBT - ok
00:02:31.0637 0x1e94 Netlogon - ok
00:02:31.0637 0x1e94 Netman - ok
00:02:31.0637 0x1e94 netprofm - ok
00:02:31.0637 0x1e94 NetSetupSvc - ok
00:02:31.0637 0x1e94 NetTcpPortSharing - ok
00:02:31.0653 0x1e94 netvsc - ok
00:02:31.0653 0x1e94 NETwNb64 - ok
00:02:31.0653 0x1e94 NgcCtnrSvc - ok
00:02:31.0653 0x1e94 NgcSvc - ok
00:02:31.0653 0x1e94 NlaSvc - ok
00:02:31.0669 0x1e94 npf - ok
00:02:31.0669 0x1e94 Npfs - ok
00:02:31.0669 0x1e94 npsvctrig - ok
00:02:31.0669 0x1e94 nsi - ok
00:02:31.0669 0x1e94 nsiproxy - ok
00:02:31.0684 0x1e94 NTFS - ok
00:02:31.0684 0x1e94 Null - ok
00:02:31.0684 0x1e94 nvdimmn - ok
00:02:31.0684 0x1e94 nvraid - ok
00:02:31.0684 0x1e94 nvstor - ok
00:02:31.0700 0x1e94 OneSyncSvc - ok
00:02:31.0700 0x1e94 ose - ok
00:02:31.0700 0x1e94 p2pimsvc - ok
00:02:31.0700 0x1e94 p2psvc - ok
00:02:31.0716 0x1e94 Parport - ok
00:02:31.0716 0x1e94 partmgr - ok
00:02:31.0716 0x1e94 PcaSvc - ok
00:02:31.0716 0x1e94 pci - ok
00:02:31.0716 0x1e94 pciide - ok
00:02:31.0731 0x1e94 pcmcia - ok
00:02:31.0731 0x1e94 pcw - ok
00:02:31.0731 0x1e94 pdc - ok
00:02:31.0731 0x1e94 PEAUTH - ok
00:02:31.0731 0x1e94 PeerDistSvc - ok
00:02:31.0747 0x1e94 percsas2i - ok
00:02:31.0747 0x1e94 percsas3i - ok
00:02:31.0747 0x1e94 PerfHost - ok
00:02:31.0762 0x1e94 PhoneSvc - ok
00:02:31.0762 0x1e94 PimIndexMaintenanceSvc - ok
00:02:31.0762 0x1e94 pla - ok
00:02:31.0762 0x1e94 PlugPlay - ok
00:02:31.0762 0x1e94 pmem - ok
00:02:31.0779 0x1e94 PNRPAutoReg - ok
00:02:31.0782 0x1e94 PNRPsvc - ok
00:02:31.0784 0x1e94 PolicyAgent - ok
00:02:31.0789 0x1e94 Power - ok
00:02:31.0792 0x1e94 PptpMiniport - ok
00:02:31.0795 0x1e94 PrintNotify - ok
00:02:31.0798 0x1e94 Processor - ok
00:02:31.0801 0x1e94 ProfSvc - ok
00:02:31.0802 0x1e94 Psched - ok
00:02:31.0802 0x1e94 QWAVE - ok
00:02:31.0802 0x1e94 QWAVEdrv - ok
00:02:31.0802 0x1e94 RasAcd - ok
00:02:31.0802 0x1e94 RasAgileVpn - ok
00:02:31.0818 0x1e94 RasAuto - ok
00:02:31.0818 0x1e94 Rasl2tp - ok
00:02:31.0818 0x1e94 RasMan - ok
00:02:31.0818 0x1e94 RasPppoe - ok
00:02:31.0818 0x1e94 RasSstp - ok
00:02:31.0833 0x1e94 rdbss - ok
00:02:31.0833 0x1e94 rdpbus - ok
00:02:31.0833 0x1e94 RDPDR - ok
00:02:31.0833 0x1e94 RdpVideoMiniport - ok
00:02:31.0849 0x1e94 rdyboost - ok
00:02:31.0849 0x1e94 ReFS - ok
00:02:31.0849 0x1e94 ReFSv1 - ok
00:02:31.0849 0x1e94 RemoteAccess - ok
00:02:31.0865 0x1e94 RemoteRegistry - ok
00:02:31.0865 0x1e94 RetailDemo - ok
00:02:31.0865 0x1e94 RFCOMM - ok
00:02:31.0865 0x1e94 RmSvc - ok
00:02:31.0865 0x1e94 RpcEptMapper - ok
00:02:31.0880 0x1e94 RpcLocator - ok
00:02:31.0880 0x1e94 RpcSs - ok
00:02:31.0880 0x1e94 rspndr - ok
00:02:31.0880 0x1e94 RtkAudioService - ok
00:02:31.0880 0x1e94 s3cap - ok
00:02:31.0896 0x1e94 SamSs - ok
00:02:31.0896 0x1e94 sbp2port - ok
00:02:31.0896 0x1e94 SCardSvr - ok
00:02:31.0896 0x1e94 ScDeviceEnum - ok
00:02:31.0896 0x1e94 scfilter - ok
00:02:31.0912 0x1e94 Schedule - ok
00:02:31.0912 0x1e94 scmbus - ok
00:02:31.0912 0x1e94 SCPolicySvc - ok
00:02:31.0912 0x1e94 sdbus - ok
00:02:31.0912 0x1e94 SDFRd - ok
00:02:31.0912 0x1e94 SDRSVC - ok
00:02:31.0927 0x1e94 sdstor - ok
00:02:31.0927 0x1e94 seclogon - ok
00:02:31.0927 0x1e94 SecurityHealthService - ok
00:02:31.0927 0x1e94 SEMgrSvc - ok
00:02:31.0927 0x1e94 SENS - ok
00:02:31.0943 0x1e94 Sense - ok
00:02:31.0943 0x1e94 SensorDataService - ok
00:02:31.0943 0x1e94 SensorService - ok
00:02:31.0943 0x1e94 SensrSvc - ok
00:02:31.0958 0x1e94 SerCx - ok
00:02:31.0958 0x1e94 SerCx2 - ok
00:02:31.0958 0x1e94 Serenum - ok
00:02:31.0958 0x1e94 Serial - ok
00:02:31.0958 0x1e94 sermouse - ok
00:02:31.0974 0x1e94 SessionEnv - ok
00:02:31.0974 0x1e94 sfloppy - ok
00:02:31.0974 0x1e94 SharedAccess - ok
00:02:31.0990 0x1e94 ShellHWDetection - ok
00:02:31.0990 0x1e94 shpamsvc - ok
00:02:31.0990 0x1e94 SiSRaid2 - ok
00:02:31.0990 0x1e94 SiSRaid4 - ok
00:02:31.0990 0x1e94 smphost - ok
00:02:32.0005 0x1e94 SmsRouter - ok
00:02:32.0005 0x1e94 SNMPTRAP - ok
00:02:32.0005 0x1e94 spaceport - ok
00:02:32.0005 0x1e94 SpatialGraphFilter - ok
00:02:32.0021 0x1e94 SpbCx - ok
00:02:32.0021 0x1e94 spectrum - ok
00:02:32.0021 0x1e94 Spooler - ok
00:02:32.0021 0x1e94 sppsvc - ok
00:02:32.0021 0x1e94 srv - ok
00:02:32.0021 0x1e94 srv2 - ok
00:02:32.0037 0x1e94 srvnet - ok
00:02:32.0037 0x1e94 SSDPSRV - ok
00:02:32.0037 0x1e94 SstpSvc - ok
00:02:32.0037 0x1e94 StateRepository - ok
00:02:32.0037 0x1e94 stdcfltn - ok
00:02:32.0052 0x1e94 stexstor - ok
00:02:32.0052 0x1e94 stisvc - ok
00:02:32.0052 0x1e94 storahci - ok
00:02:32.0052 0x1e94 storflt - ok
00:02:32.0052 0x1e94 stornvme - ok
00:02:32.0068 0x1e94 storqosflt - ok
00:02:32.0068 0x1e94 StorSvc - ok
00:02:32.0068 0x1e94 storufs - ok
00:02:32.0068 0x1e94 storvsc - ok
00:02:32.0083 0x1e94 ST_Accel - ok
00:02:32.0083 0x1e94 svsvc - ok
00:02:32.0083 0x1e94 swenum - ok
00:02:32.0115 0x1e94 swg3kser05 - ok
00:02:32.0115 0x1e94 SwiService - ok
00:02:32.0130 0x1e94 swprv - ok
00:02:32.0130 0x1e94 Synth3dVsc - ok
00:02:32.0146 0x1e94 SysMain - ok
00:02:32.0146 0x1e94 SystemEventsBroker - ok
00:02:32.0146 0x1e94 TabletInputService - ok
00:02:32.0146 0x1e94 TapiSrv - ok
00:02:32.0146 0x1e94 Tcpip - ok
00:02:32.0162 0x1e94 Tcpip6 - ok
00:02:32.0162 0x1e94 tcpipreg - ok
00:02:32.0162 0x1e94 tdx - ok
00:02:32.0162 0x1e94 terminpt - ok
00:02:32.0177 0x1e94 TermService - ok
00:02:32.0177 0x1e94 Themes - ok
00:02:32.0177 0x1e94 TieringEngineService - ok
00:02:32.0177 0x1e94 tiledatamodelsvc - ok
00:02:32.0177 0x1e94 TimeBrokerSvc - ok
00:02:32.0193 0x1e94 TokenBroker - ok
00:02:32.0193 0x1e94 TPM - ok
00:02:32.0193 0x1e94 TrkWks - ok
00:02:32.0193 0x1e94 TrustedInstaller - ok
00:02:32.0208 0x1e94 TsUsbFlt - ok
00:02:32.0208 0x1e94 TsUsbGD - ok
00:02:32.0208 0x1e94 tsusbhub - ok
00:02:32.0208 0x1e94 tunnel - ok
00:02:32.0208 0x1e94 tzautoupdate - ok
00:02:32.0208 0x1e94 UASPStor - ok
00:02:32.0224 0x1e94 UcmCx0101 - ok
00:02:32.0224 0x1e94 UcmTcpciCx0101 - ok
00:02:32.0224 0x1e94 UcmUcsi - ok
00:02:32.0224 0x1e94 Ucx01000 - ok
00:02:32.0224 0x1e94 UdeCx - ok
00:02:32.0240 0x1e94 udfs - ok
00:02:32.0240 0x1e94 UEFI - ok
00:02:32.0240 0x1e94 UevAgentDriver - ok
00:02:32.0240 0x1e94 UevAgentService - ok
00:02:32.0240 0x1e94 Ufx01000 - ok
00:02:32.0255 0x1e94 UfxChipidea - ok
00:02:32.0255 0x1e94 ufxsynopsys - ok
00:02:32.0255 0x1e94 UI0Detect - ok
00:02:32.0255 0x1e94 umbus - ok
00:02:32.0271 0x1e94 UmPass - ok
00:02:32.0271 0x1e94 UmRdpService - ok
00:02:32.0271 0x1e94 UnistoreSvc - ok
00:02:32.0271 0x1e94 upnphost - ok
00:02:32.0271 0x1e94 UrsChipidea - ok
00:02:32.0287 0x1e94 UrsCx01000 - ok
00:02:32.0287 0x1e94 UrsSynopsys - ok
00:02:32.0287 0x1e94 usbccgp - ok
00:02:32.0287 0x1e94 usbcir - ok
00:02:32.0302 0x1e94 usbehci - ok
00:02:32.0302 0x1e94 usbhub - ok
00:02:32.0302 0x1e94 USBHUB3 - ok
00:02:32.0302 0x1e94 usbohci - ok
00:02:32.0302 0x1e94 usbprint - ok
00:02:32.0302 0x1e94 usbser - ok
00:02:32.0318 0x1e94 USBSTOR - ok
00:02:32.0318 0x1e94 usbuhci - ok
00:02:32.0318 0x1e94 usbvideo - ok
00:02:32.0318 0x1e94 USBXHCI - ok
00:02:32.0318 0x1e94 UserDataSvc - ok
00:02:32.0333 0x1e94 UserManager - ok
00:02:32.0333 0x1e94 UsoSvc - ok
00:02:32.0333 0x1e94 VaultSvc - ok
00:02:32.0333 0x1e94 vdrvroot - ok
00:02:32.0333 0x1e94 vds - ok
00:02:32.0349 0x1e94 VerifierExt - ok
00:02:32.0349 0x1e94 vhdmp - ok
00:02:32.0349 0x1e94 vhf - ok
00:02:32.0349 0x1e94 vmbus - ok
00:02:32.0349 0x1e94 VMBusHID - ok
00:02:32.0365 0x1e94 vmgid - ok
00:02:32.0365 0x1e94 vmicguestinterface - ok
00:02:32.0365 0x1e94 vmicheartbeat - ok
00:02:32.0365 0x1e94 vmickvpexchange - ok
00:02:32.0365 0x1e94 vmicrdv - ok
00:02:32.0380 0x1e94 vmicshutdown - ok
00:02:32.0380 0x1e94 vmictimesync - ok
00:02:32.0380 0x1e94 vmicvmsession - ok
00:02:32.0380 0x1e94 vmicvss - ok
00:02:32.0380 0x1e94 volmgr - ok
00:02:32.0396 0x1e94 volmgrx - ok
00:02:32.0396 0x1e94 volsnap - ok
00:02:32.0396 0x1e94 volume - ok
00:02:32.0396 0x1e94 vpci - ok
00:02:32.0396 0x1e94 vsmraid - ok
00:02:32.0412 0x1e94 VSS - ok
00:02:32.0412 0x1e94 VSTXRAID - ok
00:02:32.0412 0x1e94 vwifibus - ok
00:02:32.0412 0x1e94 vwififlt - ok
00:02:32.0412 0x1e94 vwifimp - ok
00:02:32.0427 0x1e94 W32Time - ok
00:02:32.0427 0x1e94 WacomPen - ok
00:02:32.0427 0x1e94 WalletService - ok
00:02:32.0427 0x1e94 wanarp - ok
00:02:32.0443 0x1e94 wanarpv6 - ok
00:02:32.0443 0x1e94 wbengine - ok
00:02:32.0443 0x1e94 WbioSrvc - ok
00:02:32.0443 0x1e94 wcifs - ok
00:02:32.0443 0x1e94 Wcmsvc - ok
00:02:32.0458 0x1e94 wcncsvc - ok
00:02:32.0458 0x1e94 wcnfs - ok
00:02:32.0458 0x1e94 WdBoot - ok
00:02:32.0458 0x1e94 Wdf01000 - ok
00:02:32.0458 0x1e94 WdFilter - ok
00:02:32.0458 0x1e94 WdiServiceHost - ok
00:02:32.0474 0x1e94 WdiSystemHost - ok
00:02:32.0474 0x1e94 wdiwifi - ok
00:02:32.0474 0x1e94 WdNisDrv - ok
00:02:32.0474 0x1e94 WdNisSvc - ok
00:02:32.0474 0x1e94 WebClient - ok
00:02:32.0490 0x1e94 Wecsvc - ok
00:02:32.0490 0x1e94 WEPHOSTSVC - ok
00:02:32.0490 0x1e94 wercplsupport - ok
00:02:32.0490 0x1e94 WerSvc - ok
00:02:32.0490 0x1e94 WFDSConMgrSvc - ok
00:02:32.0505 0x1e94 WFPLWFS - ok
00:02:32.0505 0x1e94 WiaRpc - ok
00:02:32.0505 0x1e94 WIMMount - ok
00:02:32.0505 0x1e94 WinDefend - ok
00:02:32.0521 0x1e94 WindowsTrustedRT - ok
00:02:32.0521 0x1e94 WindowsTrustedRTProxy - ok
00:02:32.0521 0x1e94 WinHttpAutoProxySvc - ok
00:02:32.0521 0x1e94 WinMad - ok
00:02:32.0521 0x1e94 Winmgmt - ok
00:02:32.0537 0x1e94 WinNat - ok
00:02:32.0537 0x1e94 WinRM - ok
00:02:32.0537 0x1e94 WINUSB - ok
00:02:32.0537 0x1e94 WinVerbs - ok
00:02:32.0552 0x1e94 wisvc - ok
00:02:32.0552 0x1e94 WlanSvc - ok
00:02:32.0552 0x1e94 wlidsvc - ok
00:02:32.0552 0x1e94 wlpasvc - ok
00:02:32.0552 0x1e94 wmbclass - ok
00:02:32.0568 0x1e94 WmiAcpi - ok
00:02:32.0568 0x1e94 wmiApSrv - ok
00:02:32.0568 0x1e94 WMPNetworkSvc - ok
00:02:32.0568 0x1e94 Wof - ok
00:02:32.0583 0x1e94 workfolderssvc - ok
00:02:32.0583 0x1e94 WPDBusEnum - ok
00:02:32.0583 0x1e94 WpdUpFltr - ok
00:02:32.0583 0x1e94 WpnService - ok
00:02:32.0583 0x1e94 WpnUserService - ok
00:02:32.0599 0x1e94 ws2ifsl - ok
00:02:32.0599 0x1e94 wscsvc - ok
00:02:32.0599 0x1e94 WSDPrintDevice - ok
00:02:32.0599 0x1e94 WSDScan - ok
00:02:32.0599 0x1e94 WSearch - ok
00:02:32.0615 0x1e94 wuauserv - ok
00:02:32.0615 0x1e94 WudfPf - ok
00:02:32.0615 0x1e94 WUDFRd - ok
00:02:32.0615 0x1e94 wudfsvc - ok
00:02:32.0630 0x1e94 WUDFWpdFs - ok
00:02:32.0630 0x1e94 WUDFWpdMtp - ok
00:02:32.0630 0x1e94 WwanSvc - ok
00:02:32.0630 0x1e94 xbgm - ok
00:02:32.0630 0x1e94 XblAuthManager - ok
00:02:32.0646 0x1e94 XblGameSave - ok
00:02:32.0646 0x1e94 xboxgip - ok
00:02:32.0646 0x1e94 XboxGipSvc - ok
00:02:32.0646 0x1e94 XboxNetApiSvc - ok
00:02:32.0662 0x1e94 xinputhid - ok
00:02:32.0662 0x1e94 ================ Scan global ===============================
00:02:32.0662 0x1e94 [ Global ] - ok
00:02:32.0662 0x1e94 ================ Scan MBR ==================================
00:02:32.0662 0x1e94 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
00:02:32.0724 0x1e94 \Device\Harddisk0\DR0 - ok
00:02:32.0724 0x1e94 ================ Scan VBR ==================================
00:02:32.0740 0x1e94 [ DB98B3A5C03864B1B0EAC46C83F3B019 ] \Device\Harddisk0\DR0\Partition1
00:02:32.0740 0x1e94 \Device\Harddisk0\DR0\Partition1 - ok
00:02:32.0740 0x1e94 [ 88246742136D1317EB9F5B769A30C6D5 ] \Device\Harddisk0\DR0\Partition2
00:02:32.0740 0x1e94 \Device\Harddisk0\DR0\Partition2 - ok
00:02:32.0740 0x1e94 ================ Scan generic autorun ======================
00:02:32.0740 0x1e94 SecurityHealth - ok
00:02:32.0740 0x1e94 Apoint - ok
00:02:32.0740 0x1e94 RtHDVCpl - ok
00:02:32.0740 0x1e94 RtHDVBg - ok
00:02:32.0740 0x1e94 ConnectionCenter - ok
00:02:32.0740 0x1e94 Redirector - ok
00:02:32.0740 0x1e94 Dropbox - ok
00:02:32.0740 0x1e94 Jabra Direct - ok
00:02:32.0755 0x1e94 OneDriveSetup - ok
00:02:32.0755 0x1e94 OneDriveSetup - ok
00:02:32.0755 0x1e94 OneDriveSetup - ok
00:02:32.0755 0x1e94 WAB Migrate - ok
00:02:32.0771 0x1e94 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.11.15063.332 ), 0x61100 ( enabled : updated )
00:02:32.0787 0x1e94 Win FW state via NFP2: enabled ( trusted )
00:02:32.0927 0x1e94 ============================================================
00:02:32.0927 0x1e94 Scan finished
00:02:32.0927 0x1e94 ============================================================
00:02:32.0943 0x11f4 Detected object count: 0
00:02:32.0943 0x11f4 Actual detected object count: 0 Zitat:
Zitat von M-K-D-B
(Beitrag 1662434)
... Bitte poste mit deiner nächsten Antwort- die Logdatei von TDSS-Killer,
- die beiden neuen Logdateien von FRST.
| Hi Matthias,
die Log-Datei von TDSS-Killer haben ich gefunden. Hier der Content: Code:
00:01:01.0365 0x3270 TDSS rootkit removing tool 3.1.0.15 Apr 18 2017 11:34:02
00:01:06.0646 0x3270 ============================================================
00:01:06.0646 0x3270 Current date / time: 2017/07/24 00:01:06.0646
00:01:06.0646 0x3270 SystemInfo:
00:01:06.0646 0x3270
00:01:06.0646 0x3270 OS Version: 10.0.15063 ServicePack: 0.0
00:01:06.0646 0x3270 Product type: Workstation
00:01:06.0646 0x3270 ComputerName: DELL
00:01:06.0646 0x3270 UserName: pino
00:01:06.0646 0x3270 Windows directory: C:\WINDOWS
00:01:06.0646 0x3270 System windows directory: C:\WINDOWS
00:01:06.0646 0x3270 Running under WOW64
00:01:06.0646 0x3270 Processor architecture: Intel x64
00:01:06.0646 0x3270 Number of processors: 4
00:01:06.0646 0x3270 Page size: 0x1000
00:01:06.0646 0x3270 Boot type: Normal boot
00:01:06.0646 0x3270 CodeIntegrityOptions = 0x00000001
00:01:06.0646 0x3270 ============================================================
00:01:06.0724 0x3270 KLMD registered as C:\WINDOWS\system32\drivers\41640349.sys
00:01:06.0724 0x3270 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 15063.0, osProperties = 0x19
00:01:07.0381 0x3270 System UUID: {17C6CF4F-532A-2AE9-B7A7-FC059E91CF09}
00:01:07.0943 0x3270 Drive \Device\Harddisk0\DR0 - Size: 0x3B9E656000 ( 238.47 Gb ), SectorSize: 0x200, Cylinders: 0x799A, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040
00:01:07.0943 0x3270 ============================================================
00:01:07.0943 0x3270 \Device\Harddisk0\DR0:
00:01:07.0943 0x3270 MBR partitions:
00:01:07.0943 0x3270 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xFA000
00:01:07.0943 0x3270 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xFA800, BlocksNum 0x1DB05240
00:01:07.0943 0x3270 ============================================================
00:01:07.0943 0x3270 Initialize success
00:01:07.0943 0x3270 ============================================================
00:02:30.0294 0x1e94 ============================================================
00:02:30.0294 0x1e94 Scan started
00:02:30.0294 0x1e94 Mode: Manual; SigCheck; TDLFS;
00:02:30.0294 0x1e94 ============================================================
00:02:30.0294 0x1e94 KSN ping started
00:02:30.0403 0x1e94 KSN ping finished: true
00:02:30.0606 0x1e94 ================ Scan system memory ========================
00:02:30.0606 0x1e94 System memory - ok
00:02:30.0606 0x1e94 ================ Scan services =============================
00:02:30.0637 0x1e94 1394ohci - ok
00:02:30.0653 0x1e94 3ware - ok
00:02:30.0653 0x1e94 ACPI - ok
00:02:30.0669 0x1e94 AcpiDev - ok
00:02:30.0669 0x1e94 acpiex - ok
00:02:30.0684 0x1e94 acpipagr - ok
00:02:30.0684 0x1e94 AcpiPmi - ok
00:02:30.0684 0x1e94 acpitime - ok
00:02:30.0700 0x1e94 ADP80XX - ok
00:02:30.0700 0x1e94 AFD - ok
00:02:30.0700 0x1e94 ahcache - ok
00:02:30.0700 0x1e94 AJRouter - ok
00:02:30.0715 0x1e94 ALG - ok
00:02:30.0715 0x1e94 AmdK8 - ok
00:02:30.0715 0x1e94 AmdPPM - ok
00:02:30.0715 0x1e94 amdsata - ok
00:02:30.0731 0x1e94 amdsbs - ok
00:02:30.0731 0x1e94 amdxata - ok
00:02:30.0731 0x1e94 ApfiltrService - ok
00:02:30.0731 0x1e94 ApHidMonitorService - ok
00:02:30.0731 0x1e94 AppID - ok
00:02:30.0747 0x1e94 AppIDSvc - ok
00:02:30.0747 0x1e94 Appinfo - ok
00:02:30.0747 0x1e94 applockerfltr - ok
00:02:30.0747 0x1e94 AppMgmt - ok
00:02:30.0762 0x1e94 AppReadiness - ok
00:02:30.0762 0x1e94 AppVClient - ok
00:02:30.0762 0x1e94 AppvStrm - ok
00:02:30.0762 0x1e94 AppvVemgr - ok
00:02:30.0778 0x1e94 AppvVfs - ok
00:02:30.0778 0x1e94 AppXSvc - ok
00:02:30.0778 0x1e94 arcsas - ok
00:02:30.0778 0x1e94 AsyncMac - ok
00:02:30.0794 0x1e94 atapi - ok
00:02:30.0794 0x1e94 AudioEndpointBuilder - ok
00:02:30.0794 0x1e94 Audiosrv - ok
00:02:30.0794 0x1e94 AxInstSV - ok
00:02:30.0794 0x1e94 b06bdrv - ok
00:02:30.0809 0x1e94 BasicDisplay - ok
00:02:30.0809 0x1e94 BasicRender - ok
00:02:30.0809 0x1e94 bcmfn2 - ok
00:02:30.0809 0x1e94 BDESVC - ok
00:02:30.0825 0x1e94 Beep - ok
00:02:30.0825 0x1e94 BFE - ok
00:02:30.0825 0x1e94 BITS - ok
00:02:30.0825 0x1e94 blackberryncm - ok
00:02:30.0840 0x1e94 bowser - ok
00:02:30.0840 0x1e94 BrokerInfrastructure - ok
00:02:30.0840 0x1e94 Browser - ok
00:02:30.0840 0x1e94 BthAvrcpTg - ok
00:02:30.0840 0x1e94 BthEnum - ok
00:02:30.0856 0x1e94 BthHFEnum - ok
00:02:30.0856 0x1e94 bthhfhid - ok
00:02:30.0856 0x1e94 BthHFSrv - ok
00:02:30.0856 0x1e94 BthLEEnum - ok
00:02:30.0856 0x1e94 BTHMODEM - ok
00:02:30.0872 0x1e94 BthPan - ok
00:02:30.0872 0x1e94 BTHPORT - ok
00:02:30.0872 0x1e94 bthserv - ok
00:02:30.0872 0x1e94 BTHUSB - ok
00:02:30.0872 0x1e94 buttonconverter - ok
00:02:30.0887 0x1e94 CAD - ok
00:02:30.0887 0x1e94 CapImg - ok
00:02:30.0887 0x1e94 cdfs - ok
00:02:30.0887 0x1e94 CDPSvc - ok
00:02:30.0887 0x1e94 CDPUserSvc - ok
00:02:30.0903 0x1e94 cdrom - ok
00:02:30.0903 0x1e94 CertPropSvc - ok
00:02:30.0903 0x1e94 cht4iscsi - ok
00:02:30.0919 0x1e94 cht4vbd - ok
00:02:30.0919 0x1e94 circlass - ok
00:02:30.0919 0x1e94 CldFlt - ok
00:02:30.0919 0x1e94 CLFS - ok
00:02:30.0919 0x1e94 ClickToRunSvc - ok
00:02:30.0934 0x1e94 ClipSVC - ok
00:02:30.0934 0x1e94 clreg - ok
00:02:30.0934 0x1e94 CmBatt - ok
00:02:30.0934 0x1e94 CNG - ok
00:02:30.0950 0x1e94 cnghwassist - ok
00:02:30.0950 0x1e94 CompositeBus - ok
00:02:30.0950 0x1e94 COMSysApp - ok
00:02:30.0950 0x1e94 condrv - ok
00:02:30.0950 0x1e94 CoreMessagingRegistrar - ok
00:02:30.0965 0x1e94 cphs - ok
00:02:30.0965 0x1e94 CryptSvc - ok
00:02:30.0965 0x1e94 CSC - ok
00:02:30.0981 0x1e94 CscService - ok
00:02:30.0981 0x1e94 ctxusbm - ok
00:02:30.0981 0x1e94 dam - ok
00:02:30.0981 0x1e94 dbupdate - ok
00:02:30.0981 0x1e94 dbupdatem - ok
00:02:30.0981 0x1e94 DbxSvc - ok
00:02:30.0997 0x1e94 DcomLaunch - ok
00:02:30.0997 0x1e94 defragsvc - ok
00:02:30.0997 0x1e94 DellRbtn - ok
00:02:30.0997 0x1e94 DeviceAssociationService - ok
00:02:31.0012 0x1e94 DeviceInstall - ok
00:02:31.0012 0x1e94 DevicesFlowUserSvc - ok
00:02:31.0012 0x1e94 DevQueryBroker - ok
00:02:31.0012 0x1e94 Dfsc - ok
00:02:31.0012 0x1e94 Dhcp - ok
00:02:31.0028 0x1e94 diagnosticshub.standardcollector.service - ok
00:02:31.0028 0x1e94 DiagTrack - ok
00:02:31.0028 0x1e94 Disk - ok
00:02:31.0028 0x1e94 DmEnrollmentSvc - ok
00:02:31.0028 0x1e94 dmvsc - ok
00:02:31.0044 0x1e94 dmwappushservice - ok
00:02:31.0044 0x1e94 Dnscache - ok
00:02:31.0044 0x1e94 dot3svc - ok
00:02:31.0044 0x1e94 DPS - ok
00:02:31.0059 0x1e94 drmkaud - ok
00:02:31.0059 0x1e94 DsmSvc - ok
00:02:31.0059 0x1e94 DsSvc - ok
00:02:31.0059 0x1e94 DusmSvc - ok
00:02:31.0059 0x1e94 DXGKrnl - ok
00:02:31.0075 0x1e94 e1dexpress - ok
00:02:31.0075 0x1e94 EapHost - ok
00:02:31.0075 0x1e94 ebdrv - ok
00:02:31.0075 0x1e94 EFS - ok
00:02:31.0075 0x1e94 EhStorClass - ok
00:02:31.0090 0x1e94 EhStorTcgDrv - ok
00:02:31.0090 0x1e94 embeddedmode - ok
00:02:31.0090 0x1e94 EntAppSvc - ok
00:02:31.0090 0x1e94 ErrDev - ok
00:02:31.0090 0x1e94 EventSystem - ok
00:02:31.0106 0x1e94 ew_hwusbdev - ok
00:02:31.0106 0x1e94 ew_usbenumfilter - ok
00:02:31.0106 0x1e94 exfat - ok
00:02:31.0106 0x1e94 fastfat - ok
00:02:31.0106 0x1e94 Fax - ok
00:02:31.0122 0x1e94 fdc - ok
00:02:31.0122 0x1e94 fdPHost - ok
00:02:31.0122 0x1e94 FDResPub - ok
00:02:31.0122 0x1e94 fhsvc - ok
00:02:31.0122 0x1e94 FileCrypt - ok
00:02:31.0137 0x1e94 FileInfo - ok
00:02:31.0137 0x1e94 Filetrace - ok
00:02:31.0137 0x1e94 flpydisk - ok
00:02:31.0137 0x1e94 FltMgr - ok
00:02:31.0137 0x1e94 FontCache - ok
00:02:31.0153 0x1e94 FontCache3.0.0.0 - ok
00:02:31.0153 0x1e94 FrameServer - ok
00:02:31.0153 0x1e94 FsDepends - ok
00:02:31.0153 0x1e94 Fs_Rec - ok
00:02:31.0153 0x1e94 fvevol - ok
00:02:31.0169 0x1e94 gencounter - ok
00:02:31.0169 0x1e94 genericusbfn - ok
00:02:31.0169 0x1e94 GPIOClx0101 - ok
00:02:31.0169 0x1e94 gpsvc - ok
00:02:31.0169 0x1e94 GpuEnergyDrv - ok
00:02:31.0184 0x1e94 gupdate - ok
00:02:31.0184 0x1e94 gupdatem - ok
00:02:31.0184 0x1e94 HDAudBus - ok
00:02:31.0184 0x1e94 HidBatt - ok
00:02:31.0200 0x1e94 HidBth - ok
00:02:31.0200 0x1e94 hidi2c - ok
00:02:31.0200 0x1e94 hidinterrupt - ok
00:02:31.0200 0x1e94 HidIr - ok
00:02:31.0200 0x1e94 hidserv - ok
00:02:31.0215 0x1e94 HidUsb - ok
00:02:31.0215 0x1e94 HomeGroupListener - ok
00:02:31.0215 0x1e94 HomeGroupProvider - ok
00:02:31.0215 0x1e94 HpSAMD - ok
00:02:31.0215 0x1e94 HTTP - ok
00:02:31.0215 0x1e94 huawei_enumerator - ok
00:02:31.0231 0x1e94 HvHost - ok
00:02:31.0231 0x1e94 hvservice - ok
00:02:31.0231 0x1e94 HWDeviceService64.exe - ok
00:02:31.0231 0x1e94 hwpolicy - ok
00:02:31.0231 0x1e94 hwusb_cdcacm - ok
00:02:31.0247 0x1e94 hwusb_wwanecm - ok
00:02:31.0247 0x1e94 hyperkbd - ok
00:02:31.0247 0x1e94 i8042prt - ok
00:02:31.0247 0x1e94 iagpio - ok
00:02:31.0247 0x1e94 iai2c - ok
00:02:31.0262 0x1e94 iaLPSS2i_GPIO2 - ok
00:02:31.0262 0x1e94 iaLPSS2i_GPIO2_BXT_P - ok
00:02:31.0262 0x1e94 iaLPSS2i_I2C - ok
00:02:31.0262 0x1e94 iaLPSS2i_I2C_BXT_P - ok
00:02:31.0262 0x1e94 iaLPSSi_GPIO - ok
00:02:31.0278 0x1e94 iaLPSSi_I2C - ok
00:02:31.0278 0x1e94 iaStorAV - ok
00:02:31.0278 0x1e94 iaStorV - ok
00:02:31.0278 0x1e94 ibbus - ok
00:02:31.0278 0x1e94 ibtsiva - ok
00:02:31.0294 0x1e94 ibtusb - ok
00:02:31.0294 0x1e94 icssvc - ok
00:02:31.0294 0x1e94 igfx - ok
00:02:31.0294 0x1e94 igfxCUIService2.0.0.0 - ok
00:02:31.0294 0x1e94 IKEEXT - ok
00:02:31.0309 0x1e94 IndirectKmd - ok
00:02:31.0309 0x1e94 IntcAzAudAddService - ok
00:02:31.0309 0x1e94 IntcDAud - ok
00:02:31.0309 0x1e94 intelide - ok
00:02:31.0325 0x1e94 intelpep - ok
00:02:31.0325 0x1e94 intelppm - ok
00:02:31.0325 0x1e94 Internet Manager. RunOuc - ok
00:02:31.0325 0x1e94 iorate - ok
00:02:31.0325 0x1e94 IpFilterDriver - ok
00:02:31.0341 0x1e94 iphlpsvc - ok
00:02:31.0341 0x1e94 IPMIDRV - ok
00:02:31.0341 0x1e94 IPNAT - ok
00:02:31.0341 0x1e94 IpxlatCfgSvc - ok
00:02:31.0341 0x1e94 irda - ok
00:02:31.0356 0x1e94 IRENUM - ok
00:02:31.0356 0x1e94 irmon - ok
00:02:31.0356 0x1e94 isapnp - ok
00:02:31.0356 0x1e94 iScsiPrt - ok
00:02:31.0356 0x1e94 kbdclass - ok
00:02:31.0372 0x1e94 kbdhid - ok
00:02:31.0372 0x1e94 kdnic - ok
00:02:31.0372 0x1e94 KeyIso - ok
00:02:31.0372 0x1e94 KSecDD - ok
00:02:31.0372 0x1e94 KSecPkg - ok
00:02:31.0372 0x1e94 ksthunk - ok
00:02:31.0387 0x1e94 KtmRm - ok
00:02:31.0387 0x1e94 LanmanServer - ok
00:02:31.0387 0x1e94 LanmanWorkstation - ok
00:02:31.0387 0x1e94 lfsvc - ok
00:02:31.0403 0x1e94 LicenseManager - ok
00:02:31.0403 0x1e94 lltdio - ok
00:02:31.0403 0x1e94 lltdsvc - ok
00:02:31.0403 0x1e94 lmhosts - ok
00:02:31.0403 0x1e94 LSI_SAS - ok
00:02:31.0419 0x1e94 LSI_SAS2i - ok
00:02:31.0419 0x1e94 LSI_SAS3i - ok
00:02:31.0419 0x1e94 LSI_SSS - ok
00:02:31.0419 0x1e94 LSM - ok
00:02:31.0419 0x1e94 luafv - ok
00:02:31.0434 0x1e94 MapsBroker - ok
00:02:31.0434 0x1e94 mausbhost - ok
00:02:31.0434 0x1e94 mausbip - ok
00:02:31.0434 0x1e94 megasas - ok
00:02:31.0434 0x1e94 megasas2i - ok
00:02:31.0450 0x1e94 megasr - ok
00:02:31.0450 0x1e94 MEIx64 - ok
00:02:31.0450 0x1e94 MessagingService - ok
00:02:31.0450 0x1e94 mlx4_bus - ok
00:02:31.0450 0x1e94 MMCSS - ok
00:02:31.0466 0x1e94 Modem - ok
00:02:31.0466 0x1e94 monitor - ok
00:02:31.0466 0x1e94 mouclass - ok
00:02:31.0466 0x1e94 mouhid - ok
00:02:31.0481 0x1e94 mountmgr - ok
00:02:31.0481 0x1e94 MozillaMaintenance - ok
00:02:31.0481 0x1e94 mpsdrv - ok
00:02:31.0481 0x1e94 MpsSvc - ok
00:02:31.0481 0x1e94 MRxDAV - ok
00:02:31.0497 0x1e94 mrxsmb - ok
00:02:31.0497 0x1e94 mrxsmb10 - ok
00:02:31.0497 0x1e94 mrxsmb20 - ok
00:02:31.0497 0x1e94 MsBridge - ok
00:02:31.0497 0x1e94 MSDTC - ok
00:02:31.0512 0x1e94 Msfs - ok
00:02:31.0512 0x1e94 msgpiowin32 - ok
00:02:31.0512 0x1e94 mshidkmdf - ok
00:02:31.0512 0x1e94 mshidumdf - ok
00:02:31.0528 0x1e94 msisadrv - ok
00:02:31.0528 0x1e94 MSiSCSI - ok
00:02:31.0528 0x1e94 msiserver - ok
00:02:31.0528 0x1e94 MSKSSRV - ok
00:02:31.0528 0x1e94 MsLldp - ok
00:02:31.0544 0x1e94 MSPCLOCK - ok
00:02:31.0544 0x1e94 MSPQM - ok
00:02:31.0544 0x1e94 MsRPC - ok
00:02:31.0544 0x1e94 MsSecFlt - ok
00:02:31.0544 0x1e94 mssmbios - ok
00:02:31.0559 0x1e94 MSTEE - ok
00:02:31.0559 0x1e94 MTConfig - ok
00:02:31.0559 0x1e94 Mup - ok
00:02:31.0559 0x1e94 mvumis - ok
00:02:31.0575 0x1e94 NativeWifiP - ok
00:02:31.0575 0x1e94 NaturalAuthentication - ok
00:02:31.0575 0x1e94 NcaSvc - ok
00:02:31.0575 0x1e94 NcbService - ok
00:02:31.0575 0x1e94 NcdAutoSetup - ok
00:02:31.0591 0x1e94 ndfltr - ok
00:02:31.0591 0x1e94 NDIS - ok
00:02:31.0591 0x1e94 NdisCap - ok
00:02:31.0591 0x1e94 NdisImPlatform - ok
00:02:31.0591 0x1e94 NdisTapi - ok
00:02:31.0606 0x1e94 Ndisuio - ok
00:02:31.0606 0x1e94 NdisVirtualBus - ok
00:02:31.0606 0x1e94 NdisWan - ok
00:02:31.0606 0x1e94 ndiswanlegacy - ok
00:02:31.0606 0x1e94 ndproxy - ok
00:02:31.0622 0x1e94 Ndu - ok
00:02:31.0622 0x1e94 NetAdapterCx - ok
00:02:31.0622 0x1e94 NetBIOS - ok
00:02:31.0622 0x1e94 NetBT - ok
00:02:31.0637 0x1e94 Netlogon - ok
00:02:31.0637 0x1e94 Netman - ok
00:02:31.0637 0x1e94 netprofm - ok
00:02:31.0637 0x1e94 NetSetupSvc - ok
00:02:31.0637 0x1e94 NetTcpPortSharing - ok
00:02:31.0653 0x1e94 netvsc - ok
00:02:31.0653 0x1e94 NETwNb64 - ok
00:02:31.0653 0x1e94 NgcCtnrSvc - ok
00:02:31.0653 0x1e94 NgcSvc - ok
00:02:31.0653 0x1e94 NlaSvc - ok
00:02:31.0669 0x1e94 npf - ok
00:02:31.0669 0x1e94 Npfs - ok
00:02:31.0669 0x1e94 npsvctrig - ok
00:02:31.0669 0x1e94 nsi - ok
00:02:31.0669 0x1e94 nsiproxy - ok
00:02:31.0684 0x1e94 NTFS - ok
00:02:31.0684 0x1e94 Null - ok
00:02:31.0684 0x1e94 nvdimmn - ok
00:02:31.0684 0x1e94 nvraid - ok
00:02:31.0684 0x1e94 nvstor - ok
00:02:31.0700 0x1e94 OneSyncSvc - ok
00:02:31.0700 0x1e94 ose - ok
00:02:31.0700 0x1e94 p2pimsvc - ok
00:02:31.0700 0x1e94 p2psvc - ok
00:02:31.0716 0x1e94 Parport - ok
00:02:31.0716 0x1e94 partmgr - ok
00:02:31.0716 0x1e94 PcaSvc - ok
00:02:31.0716 0x1e94 pci - ok
00:02:31.0716 0x1e94 pciide - ok
00:02:31.0731 0x1e94 pcmcia - ok
00:02:31.0731 0x1e94 pcw - ok
00:02:31.0731 0x1e94 pdc - ok
00:02:31.0731 0x1e94 PEAUTH - ok
00:02:31.0731 0x1e94 PeerDistSvc - ok
00:02:31.0747 0x1e94 percsas2i - ok
00:02:31.0747 0x1e94 percsas3i - ok
00:02:31.0747 0x1e94 PerfHost - ok
00:02:31.0762 0x1e94 PhoneSvc - ok
00:02:31.0762 0x1e94 PimIndexMaintenanceSvc - ok
00:02:31.0762 0x1e94 pla - ok
00:02:31.0762 0x1e94 PlugPlay - ok
00:02:31.0762 0x1e94 pmem - ok
00:02:31.0779 0x1e94 PNRPAutoReg - ok
00:02:31.0782 0x1e94 PNRPsvc - ok
00:02:31.0784 0x1e94 PolicyAgent - ok
00:02:31.0789 0x1e94 Power - ok
00:02:31.0792 0x1e94 PptpMiniport - ok
00:02:31.0795 0x1e94 PrintNotify - ok
00:02:31.0798 0x1e94 Processor - ok
00:02:31.0801 0x1e94 ProfSvc - ok
00:02:31.0802 0x1e94 Psched - ok
00:02:31.0802 0x1e94 QWAVE - ok
00:02:31.0802 0x1e94 QWAVEdrv - ok
00:02:31.0802 0x1e94 RasAcd - ok
00:02:31.0802 0x1e94 RasAgileVpn - ok
00:02:31.0818 0x1e94 RasAuto - ok
00:02:31.0818 0x1e94 Rasl2tp - ok
00:02:31.0818 0x1e94 RasMan - ok
00:02:31.0818 0x1e94 RasPppoe - ok
00:02:31.0818 0x1e94 RasSstp - ok
00:02:31.0833 0x1e94 rdbss - ok
00:02:31.0833 0x1e94 rdpbus - ok
00:02:31.0833 0x1e94 RDPDR - ok
00:02:31.0833 0x1e94 RdpVideoMiniport - ok
00:02:31.0849 0x1e94 rdyboost - ok
00:02:31.0849 0x1e94 ReFS - ok
00:02:31.0849 0x1e94 ReFSv1 - ok
00:02:31.0849 0x1e94 RemoteAccess - ok
00:02:31.0865 0x1e94 RemoteRegistry - ok
00:02:31.0865 0x1e94 RetailDemo - ok
00:02:31.0865 0x1e94 RFCOMM - ok
00:02:31.0865 0x1e94 RmSvc - ok
00:02:31.0865 0x1e94 RpcEptMapper - ok
00:02:31.0880 0x1e94 RpcLocator - ok
00:02:31.0880 0x1e94 RpcSs - ok
00:02:31.0880 0x1e94 rspndr - ok
00:02:31.0880 0x1e94 RtkAudioService - ok
00:02:31.0880 0x1e94 s3cap - ok
00:02:31.0896 0x1e94 SamSs - ok
00:02:31.0896 0x1e94 sbp2port - ok
00:02:31.0896 0x1e94 SCardSvr - ok
00:02:31.0896 0x1e94 ScDeviceEnum - ok
00:02:31.0896 0x1e94 scfilter - ok
00:02:31.0912 0x1e94 Schedule - ok
00:02:31.0912 0x1e94 scmbus - ok
00:02:31.0912 0x1e94 SCPolicySvc - ok
00:02:31.0912 0x1e94 sdbus - ok
00:02:31.0912 0x1e94 SDFRd - ok
00:02:31.0912 0x1e94 SDRSVC - ok
00:02:31.0927 0x1e94 sdstor - ok
00:02:31.0927 0x1e94 seclogon - ok
00:02:31.0927 0x1e94 SecurityHealthService - ok
00:02:31.0927 0x1e94 SEMgrSvc - ok
00:02:31.0927 0x1e94 SENS - ok
00:02:31.0943 0x1e94 Sense - ok
00:02:31.0943 0x1e94 SensorDataService - ok
00:02:31.0943 0x1e94 SensorService - ok
00:02:31.0943 0x1e94 SensrSvc - ok
00:02:31.0958 0x1e94 SerCx - ok
00:02:31.0958 0x1e94 SerCx2 - ok
00:02:31.0958 0x1e94 Serenum - ok
00:02:31.0958 0x1e94 Serial - ok
00:02:31.0958 0x1e94 sermouse - ok
00:02:31.0974 0x1e94 SessionEnv - ok
00:02:31.0974 0x1e94 sfloppy - ok
00:02:31.0974 0x1e94 SharedAccess - ok
00:02:31.0990 0x1e94 ShellHWDetection - ok
00:02:31.0990 0x1e94 shpamsvc - ok
00:02:31.0990 0x1e94 SiSRaid2 - ok
00:02:31.0990 0x1e94 SiSRaid4 - ok
00:02:31.0990 0x1e94 smphost - ok
00:02:32.0005 0x1e94 SmsRouter - ok
00:02:32.0005 0x1e94 SNMPTRAP - ok
00:02:32.0005 0x1e94 spaceport - ok
00:02:32.0005 0x1e94 SpatialGraphFilter - ok
00:02:32.0021 0x1e94 SpbCx - ok
00:02:32.0021 0x1e94 spectrum - ok
00:02:32.0021 0x1e94 Spooler - ok
00:02:32.0021 0x1e94 sppsvc - ok
00:02:32.0021 0x1e94 srv - ok
00:02:32.0021 0x1e94 srv2 - ok
00:02:32.0037 0x1e94 srvnet - ok
00:02:32.0037 0x1e94 SSDPSRV - ok
00:02:32.0037 0x1e94 SstpSvc - ok
00:02:32.0037 0x1e94 StateRepository - ok
00:02:32.0037 0x1e94 stdcfltn - ok
00:02:32.0052 0x1e94 stexstor - ok
00:02:32.0052 0x1e94 stisvc - ok
00:02:32.0052 0x1e94 storahci - ok
00:02:32.0052 0x1e94 storflt - ok
00:02:32.0052 0x1e94 stornvme - ok
00:02:32.0068 0x1e94 storqosflt - ok
00:02:32.0068 0x1e94 StorSvc - ok
00:02:32.0068 0x1e94 storufs - ok
00:02:32.0068 0x1e94 storvsc - ok
00:02:32.0083 0x1e94 ST_Accel - ok
00:02:32.0083 0x1e94 svsvc - ok
00:02:32.0083 0x1e94 swenum - ok
00:02:32.0115 0x1e94 swg3kser05 - ok
00:02:32.0115 0x1e94 SwiService - ok
00:02:32.0130 0x1e94 swprv - ok
00:02:32.0130 0x1e94 Synth3dVsc - ok
00:02:32.0146 0x1e94 SysMain - ok
00:02:32.0146 0x1e94 SystemEventsBroker - ok
00:02:32.0146 0x1e94 TabletInputService - ok
00:02:32.0146 0x1e94 TapiSrv - ok
00:02:32.0146 0x1e94 Tcpip - ok
00:02:32.0162 0x1e94 Tcpip6 - ok
00:02:32.0162 0x1e94 tcpipreg - ok
00:02:32.0162 0x1e94 tdx - ok
00:02:32.0162 0x1e94 terminpt - ok
00:02:32.0177 0x1e94 TermService - ok
00:02:32.0177 0x1e94 Themes - ok
00:02:32.0177 0x1e94 TieringEngineService - ok
00:02:32.0177 0x1e94 tiledatamodelsvc - ok
00:02:32.0177 0x1e94 TimeBrokerSvc - ok
00:02:32.0193 0x1e94 TokenBroker - ok
00:02:32.0193 0x1e94 TPM - ok
00:02:32.0193 0x1e94 TrkWks - ok
00:02:32.0193 0x1e94 TrustedInstaller - ok
00:02:32.0208 0x1e94 TsUsbFlt - ok
00:02:32.0208 0x1e94 TsUsbGD - ok
00:02:32.0208 0x1e94 tsusbhub - ok
00:02:32.0208 0x1e94 tunnel - ok
00:02:32.0208 0x1e94 tzautoupdate - ok
00:02:32.0208 0x1e94 UASPStor - ok
00:02:32.0224 0x1e94 UcmCx0101 - ok
00:02:32.0224 0x1e94 UcmTcpciCx0101 - ok
00:02:32.0224 0x1e94 UcmUcsi - ok
00:02:32.0224 0x1e94 Ucx01000 - ok
00:02:32.0224 0x1e94 UdeCx - ok
00:02:32.0240 0x1e94 udfs - ok
00:02:32.0240 0x1e94 UEFI - ok
00:02:32.0240 0x1e94 UevAgentDriver - ok
00:02:32.0240 0x1e94 UevAgentService - ok
00:02:32.0240 0x1e94 Ufx01000 - ok
00:02:32.0255 0x1e94 UfxChipidea - ok
00:02:32.0255 0x1e94 ufxsynopsys - ok
00:02:32.0255 0x1e94 UI0Detect - ok
00:02:32.0255 0x1e94 umbus - ok
00:02:32.0271 0x1e94 UmPass - ok
00:02:32.0271 0x1e94 UmRdpService - ok
00:02:32.0271 0x1e94 UnistoreSvc - ok
00:02:32.0271 0x1e94 upnphost - ok
00:02:32.0271 0x1e94 UrsChipidea - ok
00:02:32.0287 0x1e94 UrsCx01000 - ok
00:02:32.0287 0x1e94 UrsSynopsys - ok
00:02:32.0287 0x1e94 usbccgp - ok
00:02:32.0287 0x1e94 usbcir - ok
00:02:32.0302 0x1e94 usbehci - ok
00:02:32.0302 0x1e94 usbhub - ok
00:02:32.0302 0x1e94 USBHUB3 - ok
00:02:32.0302 0x1e94 usbohci - ok
00:02:32.0302 0x1e94 usbprint - ok
00:02:32.0302 0x1e94 usbser - ok
00:02:32.0318 0x1e94 USBSTOR - ok
00:02:32.0318 0x1e94 usbuhci - ok
00:02:32.0318 0x1e94 usbvideo - ok
00:02:32.0318 0x1e94 USBXHCI - ok
00:02:32.0318 0x1e94 UserDataSvc - ok
00:02:32.0333 0x1e94 UserManager - ok
00:02:32.0333 0x1e94 UsoSvc - ok
00:02:32.0333 0x1e94 VaultSvc - ok
00:02:32.0333 0x1e94 vdrvroot - ok
00:02:32.0333 0x1e94 vds - ok
00:02:32.0349 0x1e94 VerifierExt - ok
00:02:32.0349 0x1e94 vhdmp - ok
00:02:32.0349 0x1e94 vhf - ok
00:02:32.0349 0x1e94 vmbus - ok
00:02:32.0349 0x1e94 VMBusHID - ok
00:02:32.0365 0x1e94 vmgid - ok
00:02:32.0365 0x1e94 vmicguestinterface - ok
00:02:32.0365 0x1e94 vmicheartbeat - ok
00:02:32.0365 0x1e94 vmickvpexchange - ok
00:02:32.0365 0x1e94 vmicrdv - ok
00:02:32.0380 0x1e94 vmicshutdown - ok
00:02:32.0380 0x1e94 vmictimesync - ok
00:02:32.0380 0x1e94 vmicvmsession - ok
00:02:32.0380 0x1e94 vmicvss - ok
00:02:32.0380 0x1e94 volmgr - ok
00:02:32.0396 0x1e94 volmgrx - ok
00:02:32.0396 0x1e94 volsnap - ok
00:02:32.0396 0x1e94 volume - ok
00:02:32.0396 0x1e94 vpci - ok
00:02:32.0396 0x1e94 vsmraid - ok
00:02:32.0412 0x1e94 VSS - ok
00:02:32.0412 0x1e94 VSTXRAID - ok
00:02:32.0412 0x1e94 vwifibus - ok
00:02:32.0412 0x1e94 vwififlt - ok
00:02:32.0412 0x1e94 vwifimp - ok
00:02:32.0427 0x1e94 W32Time - ok
00:02:32.0427 0x1e94 WacomPen - ok
00:02:32.0427 0x1e94 WalletService - ok
00:02:32.0427 0x1e94 wanarp - ok
00:02:32.0443 0x1e94 wanarpv6 - ok
00:02:32.0443 0x1e94 wbengine - ok
00:02:32.0443 0x1e94 WbioSrvc - ok
00:02:32.0443 0x1e94 wcifs - ok
00:02:32.0443 0x1e94 Wcmsvc - ok
00:02:32.0458 0x1e94 wcncsvc - ok
00:02:32.0458 0x1e94 wcnfs - ok
00:02:32.0458 0x1e94 WdBoot - ok
00:02:32.0458 0x1e94 Wdf01000 - ok
00:02:32.0458 0x1e94 WdFilter - ok
00:02:32.0458 0x1e94 WdiServiceHost - ok
00:02:32.0474 0x1e94 WdiSystemHost - ok
00:02:32.0474 0x1e94 wdiwifi - ok
00:02:32.0474 0x1e94 WdNisDrv - ok
00:02:32.0474 0x1e94 WdNisSvc - ok
00:02:32.0474 0x1e94 WebClient - ok
00:02:32.0490 0x1e94 Wecsvc - ok
00:02:32.0490 0x1e94 WEPHOSTSVC - ok
00:02:32.0490 0x1e94 wercplsupport - ok
00:02:32.0490 0x1e94 WerSvc - ok
00:02:32.0490 0x1e94 WFDSConMgrSvc - ok
00:02:32.0505 0x1e94 WFPLWFS - ok
00:02:32.0505 0x1e94 WiaRpc - ok
00:02:32.0505 0x1e94 WIMMount - ok
00:02:32.0505 0x1e94 WinDefend - ok
00:02:32.0521 0x1e94 WindowsTrustedRT - ok
00:02:32.0521 0x1e94 WindowsTrustedRTProxy - ok
00:02:32.0521 0x1e94 WinHttpAutoProxySvc - ok
00:02:32.0521 0x1e94 WinMad - ok
00:02:32.0521 0x1e94 Winmgmt - ok
00:02:32.0537 0x1e94 WinNat - ok
00:02:32.0537 0x1e94 WinRM - ok
00:02:32.0537 0x1e94 WINUSB - ok
00:02:32.0537 0x1e94 WinVerbs - ok
00:02:32.0552 0x1e94 wisvc - ok
00:02:32.0552 0x1e94 WlanSvc - ok
00:02:32.0552 0x1e94 wlidsvc - ok
00:02:32.0552 0x1e94 wlpasvc - ok
00:02:32.0552 0x1e94 wmbclass - ok
00:02:32.0568 0x1e94 WmiAcpi - ok
00:02:32.0568 0x1e94 wmiApSrv - ok
00:02:32.0568 0x1e94 WMPNetworkSvc - ok
00:02:32.0568 0x1e94 Wof - ok
00:02:32.0583 0x1e94 workfolderssvc - ok
00:02:32.0583 0x1e94 WPDBusEnum - ok
00:02:32.0583 0x1e94 WpdUpFltr - ok
00:02:32.0583 0x1e94 WpnService - ok
00:02:32.0583 0x1e94 WpnUserService - ok
00:02:32.0599 0x1e94 ws2ifsl - ok
00:02:32.0599 0x1e94 wscsvc - ok
00:02:32.0599 0x1e94 WSDPrintDevice - ok
00:02:32.0599 0x1e94 WSDScan - ok
00:02:32.0599 0x1e94 WSearch - ok
00:02:32.0615 0x1e94 wuauserv - ok
00:02:32.0615 0x1e94 WudfPf - ok
00:02:32.0615 0x1e94 WUDFRd - ok
00:02:32.0615 0x1e94 wudfsvc - ok
00:02:32.0630 0x1e94 WUDFWpdFs - ok
00:02:32.0630 0x1e94 WUDFWpdMtp - ok
00:02:32.0630 0x1e94 WwanSvc - ok
00:02:32.0630 0x1e94 xbgm - ok
00:02:32.0630 0x1e94 XblAuthManager - ok
00:02:32.0646 0x1e94 XblGameSave - ok
00:02:32.0646 0x1e94 xboxgip - ok
00:02:32.0646 0x1e94 XboxGipSvc - ok
00:02:32.0646 0x1e94 XboxNetApiSvc - ok
00:02:32.0662 0x1e94 xinputhid - ok
00:02:32.0662 0x1e94 ================ Scan global ===============================
00:02:32.0662 0x1e94 [ Global ] - ok
00:02:32.0662 0x1e94 ================ Scan MBR ==================================
00:02:32.0662 0x1e94 [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk0\DR0
00:02:32.0724 0x1e94 \Device\Harddisk0\DR0 - ok
00:02:32.0724 0x1e94 ================ Scan VBR ==================================
00:02:32.0740 0x1e94 [ DB98B3A5C03864B1B0EAC46C83F3B019 ] \Device\Harddisk0\DR0\Partition1
00:02:32.0740 0x1e94 \Device\Harddisk0\DR0\Partition1 - ok
00:02:32.0740 0x1e94 [ 88246742136D1317EB9F5B769A30C6D5 ] \Device\Harddisk0\DR0\Partition2
00:02:32.0740 0x1e94 \Device\Harddisk0\DR0\Partition2 - ok
00:02:32.0740 0x1e94 ================ Scan generic autorun ======================
00:02:32.0740 0x1e94 SecurityHealth - ok
00:02:32.0740 0x1e94 Apoint - ok
00:02:32.0740 0x1e94 RtHDVCpl - ok
00:02:32.0740 0x1e94 RtHDVBg - ok
00:02:32.0740 0x1e94 ConnectionCenter - ok
00:02:32.0740 0x1e94 Redirector - ok
00:02:32.0740 0x1e94 Dropbox - ok
00:02:32.0740 0x1e94 Jabra Direct - ok
00:02:32.0755 0x1e94 OneDriveSetup - ok
00:02:32.0755 0x1e94 OneDriveSetup - ok
00:02:32.0755 0x1e94 OneDriveSetup - ok
00:02:32.0755 0x1e94 WAB Migrate - ok
00:02:32.0771 0x1e94 AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.11.15063.332 ), 0x61100 ( enabled : updated )
00:02:32.0787 0x1e94 Win FW state via NFP2: enabled ( trusted )
00:02:32.0927 0x1e94 ============================================================
00:02:32.0927 0x1e94 Scan finished
00:02:32.0927 0x1e94 ============================================================
00:02:32.0943 0x11f4 Detected object count: 0
00:02:32.0943 0x11f4 Actual detected object count: 0
00:05:07.0654 0x1624 Deinitialize success Neue "FRST.txt" und "Addition.txt" habe ich nicht gefunden. Oder wurden die bisherigen Files überschrieben?
Danke und Gruß Pino |