FIRST:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:20-08-2015
durchgeführt von Christian (Administrator) auf MSI-CHRISEKO (20-08-2015 02:04:08)
Gestartet von C:\Users\Christian\Downloads
Geladene Profile: Christian (Verfügbare Profile: Christian)
Platform: Windows 10 Home (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool:
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe
(Qualcomm Atheros) C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
(Microsoft Corporation) C:\Windows\System32\Speech_OneCore\Common\SpeechRuntime.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\MSI\Dragon Gaming Center\Dragon Gaming Center.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(MSI) C:\Program Files (x86)\SCM\SCM.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\DolbyHid\DolbyHID64.exe
(SteelSeries ApS) C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe
(Valve Corporation) D:\Steam\Steam.exe
(Madcatz) C:\Program Files\Mad Catz\FREQ7 User Interface\FREQ7.exe
() C:\Program Files\Qualcomm Atheros\Network Manager\NetworkManager.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\main.exe
(The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Cortex\Cef\CefSharp.BrowserSubprocess.exe
(Valve Corporation) D:\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\NetworkUXBroker.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\ismagent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Valve Corporation) D:\Steam\bin\steamwebhelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2014-01-27] (Realtek Semiconductor)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3347688 2015-07-31] (ELAN Microelectronics Corp.)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-31] (Intel Corporation)
HKLM\...\Run: [Radio Manager] => C:\Program Files (x86)\SCM\Radio Manager.exe [406920 2014-01-03] (MSI)
HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [407720 2014-01-03] (MSI)
HKLM\...\Run: [MBCfg64] => C:\Windows\system32\RunDLL32.exe C:\Windows\system32\MBCfg64.dll,RunDLLEntry MBCfg64
HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [396688 2015-07-31] ()
HKLM\...\Run: [DolbyHid] => C:\Program Files\Conexant\DolbyHid\DolbyHid64.exe [2596992 2015-07-31] (Conexant Systems, Inc.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2634896 2015-07-24] (NVIDIA Corporation)
HKLM-x32\...\Run: [Sound Blaster Cinema] => C:\Program Files (x86)\Creative\Sound Blaster Cinema\Sound Blaster Cinema\SBCinema.exe [711680 2013-08-17] (Creative Technology Ltd)
HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [490480 2013-09-10] (MSI)
HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe [98256 2015-07-14] (Razer Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)
HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\SysWOW64\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-21-1517504399-1055261760-3252538504-1002\...\Run: [SteelSeries Engine] => C:\Program Files\SteelSeries\SteelSeries Engine\SteelSeriesEngine.exe [249856 2014-01-23] (SteelSeries ApS)
HKU\S-1-5-21-1517504399-1055261760-3252538504-1002\...\Run: [Steam] => D:\Steam\steam.exe [2899136 2015-08-12] (Valve Corporation)
HKU\S-1-5-21-1517504399-1055261760-3252538504-1002\...\Run: [BingSvc] => C:\Users\Christian\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-04-07] (© 2015 Microsoft Corporation)
HKU\S-1-5-21-1517504399-1055261760-3252538504-1002\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-08-18] (Safer-Networking Ltd.)
HKU\S-1-5-21-1517504399-1055261760-3252538504-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8418584 2015-07-17] (Piriform Ltd)
HKU\S-1-5-21-1517504399-1055261760-3252538504-1002\...\RunOnce: [Uninstall C:\Users\Christian\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Christian\AppData\Local\Microsoft\OneDrive\17.3.5892.0626\amd64"
AppInit_DLLs: C:\ProgramData\Saophase\513g5viq.dll => C:\ProgramData\Saophase\513g5viq.dll Datei nicht gefunden
AppInit_DLLs-x32: C:\ProgramData\Saophase\v4ezlosj.dll => "C:\ProgramData\Saophase\v4ezlosj.dll" Datei nicht gefunden
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FREQ7.lnk [2015-07-31]
ShortcutTarget: FREQ7.lnk -> C:\Windows\Installer\{F59E2605-2C88-4269-8B20-C371E8037B8A}\_2D0C1727B380D636A29931.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Killer Network Manager.lnk [2014-01-27]
ShortcutTarget: Killer Network Manager.lnk -> C:\Windows\Installer\{4E08CC97-912D-458B-8705-9A14C325532F}\NetworkManager.exe_130C27D738F34C89BDDF21BCFD74B56D.exe (Flexera Software LLC)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Christian\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-07-31] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Christian\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-07-31] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Christian\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\amd64\FileSyncShell64.dll [2015-07-31] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Christian\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-07-31] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Christian\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-07-31] (Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Christian\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-07-31] (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..)
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-21-1517504399-1055261760-3252538504-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://msi13.msn.com
SearchScopes: HKU\S-1-5-21-1517504399-1055261760-3252538504-1002 -> {625644C2-4122-4388-9F9E-A1812C36D7F4} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-08-17] (Oracle Corporation)
BHO: Kein Name -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> Keine Datei
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-17] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-08-19] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-08-19] (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{2cd5de42-3ce9-46eb-b77a-cd8009e26f71}: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-17] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-17] (Oracle Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-08-19] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-08-19] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-13] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-31] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-31] (Google Inc.)
Chrome:
=======
CHR Profile: C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-31]
CHR Extension: (YouTube) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-31]
CHR Extension: (Google Search) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-31]
CHR Extension: (ROG: Republic of Gamers) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\digokgjmmdldnmnemhffdeknllgbmkdo [2015-08-19]
CHR Extension: (AdBlock) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-07-31]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-07-31]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-31]
CHR Extension: (Gmail) - C:\Users\Christian\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-31]
==================== Dienste (Nicht auf der Ausnahmeliste) ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1125888 2015-07-31] ()
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [326144 2015-07-10] (Microsoft Corporation)
S3 CDPSvc; C:\Windows\System32\CDPSvc.dll [134144 2015-07-10] (Microsoft Corporation)
R2 CoreMessagingRegistrar; C:\Windows\system32\coremessaging.dll [808856 2015-07-22] (Microsoft Corporation)
R2 CoreMessagingRegistrar; C:\Windows\SysWOW64\coremessaging.dll [510976 2015-07-22] (Microsoft Corporation)
S3 diagnosticshub.standardcollector.service; C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [27136 2015-07-10] (Microsoft Corporation)
S3 DmEnrollmentSvc; C:\Windows\system32\Windows.Internal.Management.dll [267776 2015-07-10] (Microsoft Corporation)
S3 DmEnrollmentSvc; C:\Windows\SysWOW64\Windows.Internal.Management.dll [193024 2015-07-10] (Microsoft Corporation)
S3 embeddedmode; C:\Windows\System32\embeddedmodesvc.dll [87040 2015-07-10] (Microsoft Corporation)
S3 EntAppSvc; C:\Windows\system32\EnterpriseAppMgmtSvc.dll [275456 2015-07-10] (Microsoft Corporation)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144104 2015-07-31] (ELAN Microelectronics Corp.)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155216 2015-07-24] (NVIDIA Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-31] (Intel Corporation)
S3 icssvc; C:\Windows\System32\tetheringservice.dll [148992 2015-07-24] (Microsoft Corporation)
R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [351120 2015-07-31] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-28] (Intel(R) Corporation) [Datei ist nicht signiert]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-28] (Intel(R) Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-16] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation)
R3 lfsvc; C:\Windows\SysWOW64\lfsvc.dll [22528 2015-07-10] (Microsoft Corporation)
R3 LicenseManager; C:\Windows\system32\LicenseManagerSvc.dll [21504 2015-07-10] (Microsoft Corporation)
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-07-31] (IObit)
S2 MapsBroker; C:\Windows\System32\moshost.dll [62464 2015-07-10] (Microsoft Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2014-01-03] (Micro-Star International Co., Ltd.) [Datei ist nicht signiert]
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [161776 2013-09-10] (MSI)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1871504 2015-07-24] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544592 2015-07-24] (NVIDIA Corporation)
S2 OneSyncSvc; C:\Windows\System32\APHostService.dll [296960 2015-07-10] (Microsoft Corporation)
R2 OneSyncSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R2 OneSyncSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2007048 2015-07-31] (Electronic Arts)
S3 PimIndexMaintenanceSvc; C:\Windows\System32\PimIndexMaintenance.dll [289280 2015-07-10] (Microsoft Corporation)
R3 PimIndexMaintenanceSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R3 PimIndexMaintenanceSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
R2 Qualcomm Atheros Killer Service V2; C:\Program Files\Qualcomm Atheros\Network Manager\KillerService.exe [343040 2013-08-09] (Qualcomm Atheros) [Datei ist nicht signiert]
S4 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187048 2015-06-23] ()
S3 RetailDemo; C:\Windows\system32\RDXService.dll [988672 2015-07-22] (Microsoft Corporation)
R2 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [129168 2015-07-14] (Razer Inc.)
S3 SensorDataService; C:\Windows\System32\SensorDataService.exe [1031680 2015-07-12] (Microsoft Corporation)
R3 StateRepository; C:\Windows\system32\windows.staterepository.dll [2674176 2015-07-10] (Microsoft Corporation)
R3 StateRepository; C:\Windows\SysWOW64\windows.staterepository.dll [2049024 2015-07-10] (Microsoft Corporation)
S3 UnistoreSvc; C:\Windows\System32\unistore.dll [1203200 2015-07-24] (Microsoft Corporation)
S3 UnistoreSvc; C:\Windows\SysWOW64\unistore.dll [925696 2015-07-24] (Microsoft Corporation)
R3 UnistoreSvc_Session1; C:\WINDOWS\System32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R3 UnistoreSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 UserDataSvc; C:\Windows\System32\userdataservice.dll [1420288 2015-07-22] (Microsoft Corporation)
R3 UserDataSvc_Session1; C:\WINDOWS\system32\svchost.exe [39856 2015-07-10] (Microsoft Corporation)
R3 UserDataSvc_Session1; C:\WINDOWS\SysWOW64\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 vmicvmsession; C:\Windows\System32\ICSvc.dll [506880 2015-07-10] (Microsoft Corporation)
S3 WalletService; C:\Windows\system32\WalletService.dll [504320 2015-07-10] (Microsoft Corporation)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)
S3 XblAuthManager; C:\Windows\System32\XblAuthManager.dll [918016 2015-07-10] (Microsoft Corporation)
S3 XblGameSave; C:\Windows\System32\XblGameSave.dll [1149440 2015-07-10] (Microsoft Corporation)
S3 XboxNetApiSvc; C:\Windows\system32\XboxNetApiSvc.dll [1019392 2015-07-10] (Microsoft Corporation)
S2 AV Assistant Service; C:/Program Files (x86)/Preventon Antivirus/AVAssistant.exe [X]
S2 AV Scanning Service; C:/Program Files (x86)/Preventon Antivirus/AVScanningService.exe [X]
S2 CmdAgent; kein ImagePath
S3 cmdvirth; kein ImagePath
===================== Treiber (Nicht auf der Ausnahmeliste) ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S5 3ware; C:\Windows\System32\drivers\3ware.sys [107360 2015-07-10] (LSI)
R5 ACPI; C:\Windows\System32\drivers\ACPI.sys [565088 2015-07-22] (Microsoft Corporation)
R5 acpiex; C:\Windows\System32\Drivers\acpiex.sys [127840 2015-07-10] (Microsoft Corporation)
S5 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [1135456 2015-07-10] (PMC-Sierra)
S5 agp440; C:\Windows\System32\drivers\agp440.sys [63328 2015-07-10] (Microsoft Corporation)
S5 amdsata; C:\Windows\System32\drivers\amdsata.sys [83296 2015-07-10] (Advanced Micro Devices)
S5 amdsbs; C:\Windows\System32\drivers\amdsbs.sys [259424 2015-07-10] (AMD Technologies Inc.)
S5 amdxata; C:\Windows\System32\drivers\amdxata.sys [26976 2015-07-10] (Advanced Micro Devices)
S5 arcsas; C:\Windows\System32\drivers\arcsas.sys [131936 2015-07-10] (PMC-Sierra, Inc.)
S5 atapi; C:\Windows\System32\drivers\atapi.sys [28512 2015-07-10] (Microsoft Corporation)
S3 AVFSFilter; C:\Windows\system32\DRIVERS\avfsfilter.sys [13720 2012-09-07] ()
S5 b06bdrv; C:\Windows\System32\drivers\bxvbda.sys [531296 2015-07-10] (Broadcom Corporation)
R1 BfLwf; C:\Windows\system32\DRIVERS\bwcW8x64.sys [75056 2013-02-14] (Qualcomm Atheros, Inc.)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [237568 2015-07-10] (Microsoft Corporation)
R5 CLFS; C:\Windows\System32\drivers\CLFS.sys [380768 2015-07-10] (Microsoft Corporation)
R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [21720 2015-08-05] (COMODO)
R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [827632 2015-08-05] (COMODO)
R1 cmdhlp; C:\Windows\system32\DRIVERS\cmdhlp.sys [35056 2015-08-05] (COMODO)
R5 CNG; C:\Windows\System32\Drivers\cng.sys [601344 2015-07-17] (Microsoft Corporation)
R3 CompositeBus; C:\Windows\System32\DriverStore\FileRepository\compositebus.inf_amd64_98334ba6e76853ba\CompositeBus.sys [39936 2015-07-10] (Microsoft Corporation)
R5 disk; C:\Windows\System32\drivers\disk.sys [101216 2015-07-10] (Microsoft Corporation)
S5 ebdrv; C:\Windows\System32\drivers\evbda.sys [3436896 2015-07-10] (QLogic Corporation)
S3 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [498512 2015-07-31] (Symantec Corporation)
R5 EhStorClass; C:\Windows\System32\drivers\EhStorClass.sys [88928 2015-07-10] (Microsoft Corporation)
S5 EhStorTcgDrv; C:\Windows\System32\drivers\EhStorTcgDrv.sys [116576 2015-07-10] (Microsoft Corporation)
R1 FileCrypt; C:\Windows\System32\drivers\filecrypt.sys [83968 2015-07-10] (Microsoft Corporation)
R5 FileInfo; C:\Windows\System32\drivers\fileinfo.sys [83808 2015-07-10] (Microsoft Corporation)
R5 FltMgr; C:\Windows\System32\drivers\fltmgr.sys [368992 2015-07-10] (Microsoft Corporation)
U5 Fs_Rec; C:\Windows\System32\Drivers\Fs_Rec.sys [31072 2015-07-10] (Microsoft Corporation)
R5 fvevol; C:\Windows\System32\DRIVERS\fvevol.sys [633184 2015-07-10] (Microsoft Corporation)
S5 gagp30kx; C:\Windows\System32\drivers\gagp30kx.sys [66912 2015-07-10] (Microsoft Corporation)
S3 genericusbfn; C:\Windows\System32\drivers\genericusbfn.sys [20992 2015-07-10] (Microsoft Corporation)
R1 GpuEnergyDrv; C:\Windows\System32\drivers\gpuenergydrv.sys [8192 2015-07-10] (Microsoft Corporation)
S5 HpSAMD; C:\Windows\System32\drivers\HpSAMD.sys [64352 2015-07-10] (Hewlett-Packard Company)
S5 hwpolicy; C:\Windows\System32\drivers\hwpolicy.sys [29024 2015-07-10] (Microsoft Corporation)
R5 iaStorA; C:\Windows\System32\drivers\iaStorA.sys [644968 2013-08-28] (Intel Corporation)
S5 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [673120 2015-07-10] (Intel Corporation)
S5 iaStorV; C:\Windows\System32\drivers\iaStorV.sys [412000 2015-07-10] (Intel Corporation)
S3 ibbus; C:\Windows\System32\drivers\ibbus.sys [424800 2015-07-10] (Mellanox)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [263952 2015-07-31] (Intel Corporation)
R1 inspect; C:\Windows\system32\DRIVERS\inspect.sys [127232 2015-08-05] (COMODO)
S5 intelide; C:\Windows\System32\drivers\intelide.sys [19296 2015-07-10] (Microsoft Corporation)
S5 intelpep; C:\Windows\System32\drivers\intelpep.sys [43872 2015-07-10] (Microsoft Corporation)
S3 IoQos; C:\Windows\System32\drivers\ioqos.sys [26624 2015-07-10] (Microsoft Corporation)
S5 isapnp; C:\Windows\System32\drivers\isapnp.sys [22368 2015-07-10] (Microsoft Corporation)
R3 Ke2200; C:\Windows\System32\drivers\e22w8x64.sys [163536 2013-03-21] (Qualcomm Atheros, Inc.)
R5 KSecDD; C:\Windows\System32\Drivers\ksecdd.sys [131424 2015-07-10] (Microsoft Corporation)
R5 KSecPkg; C:\Windows\System32\Drivers\ksecpkg.sys [158560 2015-07-10] (Microsoft Corporation)
S5 LSI_SAS; C:\Windows\System32\drivers\lsi_sas.sys [108896 2015-07-10] (LSI Corporation)
S5 LSI_SAS2i; C:\Windows\System32\drivers\lsi_sas2i.sys [104800 2015-07-10] (LSI Corporation)
S5 LSI_SAS3i; C:\Windows\System32\drivers\lsi_sas3i.sys [99168 2015-07-10] (Avago Technologies)
S5 LSI_SSS; C:\Windows\System32\drivers\lsi_sss.sys [82784 2015-07-10] (LSI Corporation)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [113880 2015-08-20] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
S5 megasas; C:\Windows\System32\drivers\megasas.sys [59744 2015-07-10] (Avago Technologies)
S5 megasr; C:\Windows\System32\drivers\megasr.sys [575840 2015-07-10] (LSI Corporation, Inc.)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation)
S3 mlx4_bus; C:\Windows\System32\drivers\mlx4_bus.sys [705376 2015-07-10] (Mellanox)
R5 mountmgr; C:\Windows\System32\drivers\mountmgr.sys [103264 2015-07-10] (Microsoft Corporation)
R5 msisadrv; C:\Windows\System32\drivers\msisadrv.sys [19296 2015-07-10] (Microsoft Corporation)
R5 Mup; C:\Windows\System32\Drivers\mup.sys [118624 2015-07-10] (Microsoft Corporation)
S5 mvumis; C:\Windows\System32\drivers\mvumis.sys [63840 2015-07-10] (Marvell Semiconductor, Inc.)
S3 ndfltr; C:\Windows\System32\drivers\ndfltr.sys [76128 2015-07-10] (Mellanox)
R5 NDIS; C:\Windows\System32\drivers\ndis.sys [1168736 2015-07-19] (Microsoft Corporation)
R1 netcontroller; C:\Windows\System32\drivers\netcontroller.sys [59560 2015-06-24] (UtilTool Ltd)
R3 NETwNb64; C:\Windows\System32\drivers\Netwbw02.sys [3496216 2015-07-10] (Intel Corporation)
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-26] (MSI)
S5 nvraid; C:\Windows\System32\drivers\nvraid.sys [150368 2015-07-10] (NVIDIA Corporation)
S5 nvstor; C:\Windows\System32\drivers\nvstor.sys [166240 2015-07-10] (NVIDIA Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-07-24] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47976 2015-07-03] (NVIDIA Corporation)
S5 nv_agp; C:\Windows\System32\drivers\nv_agp.sys [126304 2015-07-10] (Microsoft Corporation)
R5 partmgr; C:\Windows\System32\drivers\partmgr.sys [117088 2015-07-10] (Microsoft Corporation)
R5 pci; C:\Windows\System32\drivers\pci.sys [325984 2015-07-15] (Microsoft Corporation)
S5 pciide; C:\Windows\System32\drivers\pciide.sys [15712 2015-07-10] (Microsoft Corporation)
S5 pcmcia; C:\Windows\System32\drivers\pcmcia.sys [118112 2015-07-10] (Microsoft Corporation)
R5 pcw; C:\Windows\System32\drivers\pcw.sys [51552 2015-07-10] (Microsoft Corporation)
R5 pdc; C:\Windows\System32\drivers\pdc.sys [98144 2015-07-10] (Microsoft Corporation)
S5 percsas2i; C:\Windows\System32\drivers\percsas2i.sys [58208 2015-07-10] (LSI Corporation)
S5 percsas3i; C:\Windows\System32\drivers\percsas3i.sys [58720 2015-07-10] (Avago Technologies)
R5 rdyboost; C:\Windows\System32\drivers\rdyboost.sys [235872 2015-07-10] (Microsoft Corporation)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [444632 2014-01-27] (Realsil Semiconductor Corporation)
R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [37184 2015-06-12] (Razer, Inc.)
S3 SAlphamBth; C:\Windows\System32\drivers\SAlphabt64.sys [31232 2012-10-16] (SteelSeries Corporation) [Datei ist nicht signiert]
S3 SAlphamHid; C:\Windows\System32\drivers\SAlpham64.sys [38016 2013-05-31] (SteelSeries Corporation)
R3 SAlphaPS2; C:\Windows\System32\drivers\SAlphaPS264.sys [26496 2013-12-12] (SteelSeries Corporation)
S5 sbp2port; C:\Windows\System32\drivers\sbp2port.sys [109920 2015-07-10] (Microsoft Corporation)
S5 SiSRaid2; C:\Windows\System32\drivers\SiSRaid2.sys [44896 2015-07-10] (Silicon Integrated Systems Corp.)
S5 SiSRaid4; C:\Windows\System32\drivers\sisraid4.sys [81760 2015-07-10] (Silicon Integrated Systems)
R5 spaceport; C:\Windows\System32\drivers\spaceport.sys [474464 2015-07-10] (Microsoft Corporation)
S5 stexstor; C:\Windows\System32\drivers\stexstor.sys [31072 2015-07-10] (Promise Technology, Inc.)
S5 storahci; C:\Windows\System32\drivers\storahci.sys [133984 2015-07-10] (Microsoft Corporation)
S5 storflt; C:\Windows\System32\drivers\vmstorfl.sys [45920 2015-07-10] (Microsoft Corporation)
S5 stornvme; C:\Windows\System32\drivers\stornvme.sys [78688 2015-07-10] (Microsoft Corporation)
R2 storqosflt; C:\Windows\System32\drivers\storqosflt.sys [61952 2015-07-10] (Microsoft Corporation)
S5 storufs; C:\Windows\System32\drivers\storufs.sys [40288 2015-07-10] (Microsoft Corporation)
S5 storvsc; C:\Windows\System32\drivers\storvsc.sys [36192 2015-07-10] (Microsoft Corporation)
R3 swenum; C:\Windows\System32\DriverStore\FileRepository\swenum.inf_amd64_2a699e44676b7781\swenum.sys [17760 2015-07-10] (Microsoft Corporation)
R5 Tcpip; C:\Windows\System32\drivers\tcpip.sys [2430816 2015-07-10] (Microsoft Corporation)
S5 uagp35; C:\Windows\System32\drivers\uagp35.sys [66400 2015-07-10] (Microsoft Corporation)
S3 UcmCx0101; C:\Windows\System32\Drivers\UcmCx.sys [61952 2015-07-10] (Microsoft Corporation)
S3 UcmUcsi; C:\Windows\System32\drivers\UcmUcsi.sys [46080 2015-07-14] (Microsoft Corporation)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
S5 uliagpkx; C:\Windows\System32\drivers\uliagpkx.sys [66912 2015-07-10] (Microsoft Corporation)
R5 vdrvroot; C:\Windows\System32\drivers\vdrvroot.sys [42848 2015-07-10] (Microsoft Corporation)
S5 vmbus; C:\Windows\System32\drivers\vmbus.sys [125792 2015-07-10] (Microsoft Corporation)
R5 volmgr; C:\Windows\System32\drivers\volmgr.sys [81248 2015-07-10] (Microsoft Corporation)
R5 volmgrx; C:\Windows\System32\drivers\volmgrx.sys [370016 2015-07-10] (Microsoft Corporation)
R5 volsnap; C:\Windows\System32\drivers\volsnap.sys [378720 2015-07-10] (Microsoft Corporation)
S5 vsmraid; C:\Windows\System32\drivers\vsmraid.sys [166752 2015-07-10] (VIA Technologies Inc.,Ltd)
S5 VSTXRAID; C:\Windows\System32\drivers\vstxraid.sys [305504 2015-07-10] (VIA Corporation)
S5 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
R5 Wdf01000; C:\Windows\System32\drivers\Wdf01000.sys [892224 2015-07-10] (Microsoft Corporation)
R5 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
R5 WFPLWFS; C:\Windows\System32\drivers\wfplwfs.sys [153440 2015-07-10] (Microsoft Corporation)
R5 WindowsTrustedRT; C:\Windows\System32\drivers\WindowsTrustedRT.sys [106520 2015-07-10] (Microsoft Corporation)
R5 WindowsTrustedRTProxy; C:\Windows\System32\drivers\WindowsTrustedRTProxy.sys [17944 2015-07-10] (Microsoft Corporation)
R3 WINIO; C:\Program Files (x86)\MSI\Dragon Gaming Center\winio64.sys [15160 2010-06-07] ()
S3 WinMad; C:\Windows\System32\drivers\winmad.sys [26976 2015-07-10] (Mellanox)
S3 WinVerbs; C:\Windows\System32\drivers\winverbs.sys [59232 2015-07-10] (Mellanox)
R5 Wof; C:\Windows\System32\Drivers\Wof.sys [199008 2015-07-10] (Microsoft Corporation)
S3 xboxgip; C:\Windows\System32\drivers\xboxgip.sys [222720 2015-07-10] (Microsoft Corporation)
S3 xinputhid; C:\Windows\System32\drivers\xinputhid.sys [25600 2015-07-10] (Microsoft Corporation)
R3 XSplit_Dummy; C:\Windows\system32\drivers\xspltspk.sys [26200 2015-05-26] (SplitmediaLabs Limited)
S1 bsdriver; \??\C:\WINDOWS\system32\drivers\bsdriver.sys [X]
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
NETSVC: XblGameSave -> C:\Windows\System32\XblGameSave.dll (Microsoft Corporation)
NETSVC: XboxNetApiSvc -> C:\Windows\system32\XboxNetApiSvc.dll (Microsoft Corporation)
NETSVC: UserManager -> C:\Windows\System32\usermgr.dll (Microsoft Corporation)
NETSVC: XblAuthManager -> C:\Windows\System32\XblAuthManager.dll (Microsoft Corporation)
NETSVCx32: UserManager -> C:\Windows\SysWOW64\usermgr.dll ==> Keine Datei
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-08-20 02:04 - 2015-08-20 02:04 - 00036196 _____ C:\Users\Christian\Downloads\FRST.txt
2015-08-20 02:03 - 2015-08-20 02:04 - 00000000 ____D C:\FRST
2015-08-20 02:03 - 2015-08-20 02:03 - 02173952 _____ (Farbar) C:\Users\Christian\Downloads\FRST64.exe
2015-08-20 02:01 - 2015-08-20 02:01 - 00016148 _____ C:\WINDOWS\system32\MSI-CHRISEKO_Christian_HistoryPrediction.bin
2015-08-19 21:45 - 2015-08-19 21:45 - 00097888 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2015-08-19 21:45 - 2015-08-19 21:45 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Sun
2015-08-19 21:45 - 2015-08-19 21:45 - 00000000 ____D C:\Users\Christian\.oracle_jre_usage
2015-08-19 21:45 - 2015-08-19 21:45 - 00000000 ____D C:\Program Files (x86)\Java
2015-08-19 21:44 - 2015-08-19 21:44 - 00584288 _____ (Oracle Corporation) C:\Users\Christian\Downloads\jre-8u60-windows-i586-iftw.exe
2015-08-19 21:30 - 2015-08-19 21:30 - 02508432 _____ (Sysinternals -
www.sysinternals.com) C:\Users\Christian\Downloads\procexp.exe
2015-08-19 21:05 - 2015-08-19 21:05 - 00000000 _____ C:\WINDOWS\setuperr.log
2015-08-19 21:05 - 2015-08-19 21:05 - 00000000 _____ C:\WINDOWS\setupact.log
2015-08-19 20:57 - 2015-08-20 02:04 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-08-19 20:39 - 2015-08-19 21:01 - 00016836 _____ C:\WINDOWS\PFRO.log
2015-08-19 20:25 - 2015-08-19 20:25 - 00341914 _____ C:\Users\Christian\Documents\cc_20150819_202546.reg
2015-08-19 20:24 - 2015-08-19 20:24 - 00002872 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2015-08-19 20:24 - 2015-08-19 20:24 - 00000000 ____D C:\Program Files\CCleaner
2015-08-19 20:23 - 2015-08-19 20:23 - 05375464 _____ (Piriform Ltd) C:\Users\Christian\Downloads\ccsetup508_slim.exe
2015-08-19 20:14 - 2015-08-19 20:14 - 01585664 _____ C:\Users\Christian\Downloads\adwcleaner_5.002 (1).exe
2015-08-19 20:04 - 2015-08-20 00:14 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-08-19 20:04 - 2015-08-19 20:04 - 00001072 _____ C:\AdwCleaner[S3].txt
2015-08-19 20:03 - 2015-08-19 20:03 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\Christian\Downloads\mbam-setup-2.1.8.1057.exe
2015-08-19 20:03 - 2015-08-19 20:03 - 00001185 _____ C:\Users\Christian\Desktop\Malwarebytes Anti-Malware.lnk
2015-08-19 20:03 - 2015-08-19 20:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-08-19 20:03 - 2015-08-19 20:03 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-08-19 20:03 - 2015-08-19 20:03 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-08-19 20:03 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-08-19 20:03 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-08-19 20:03 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-08-19 15:05 - 2015-08-19 15:06 - 114760879 _____ C:\Users\Christian\Downloads\OneLateNight4.zip
2015-08-19 12:28 - 2015-08-19 12:30 - 00000227 _____ C:\WINDOWS\SysWOW64\debug.log
2015-08-19 12:28 - 2015-08-19 12:29 - 00001550 _____ C:\WINDOWS\SysWOW64\boost.log
2015-08-19 12:28 - 2015-08-19 12:28 - 00000000 ____D C:\WINDOWS\SysWOW64\DCS
2015-08-19 12:28 - 2015-08-19 12:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Cef
2015-08-19 02:37 - 2015-08-19 02:37 - 00002013 _____ C:\AdwCleaner[C2].txt
2015-08-19 00:07 - 2015-08-19 00:08 - 00001805 _____ C:\AdwCleaner[S2].txt
2015-08-18 22:50 - 2015-08-18 22:50 - 00000000 ____D C:\Users\Christian\AppData\Roaming\ProductData
2015-08-18 18:07 - 2015-08-18 18:07 - 00003313 _____ C:\AdwCleaner[C1].txt
2015-08-18 17:56 - 2015-08-18 17:56 - 03839960 _____ (AVAST Software) C:\Users\Christian\Downloads\avast-browserv2-cleanup-sfx.exe
2015-08-18 17:51 - 2015-08-18 17:51 - 03839960 _____ (AVAST Software) C:\Users\Christian\Downloads\avast-browserv2-cleanup-sfx (1).exe
2015-08-18 17:51 - 2015-08-18 17:51 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Microsoft\Windows\Start Menu\avast! Browser Cleanup
2015-08-18 17:45 - 2015-08-19 20:15 - 00000000 ____D C:\AdwCleaner
2015-08-18 17:45 - 2015-08-18 17:45 - 00002967 _____ C:\AdwCleaner[S1].txt
2015-08-18 14:16 - 2015-08-18 14:16 - 00000000 ____D C:\Program Files\Common Files\AV
2015-08-18 14:04 - 2015-08-18 14:04 - 00000000 ____D C:\WINDOWS\System32\Tasks\Safer-Networking
2015-08-18 14:02 - 2015-08-18 14:03 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Christian\Downloads\spybot-2.4.exe
2015-08-18 12:47 - 2015-08-19 20:36 - 00001873 _____ C:\Users\Christian\Desktop\Google Chrome.lnk
2015-08-18 00:45 - 2015-08-18 00:45 - 00001453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk
2015-08-18 00:44 - 2015-08-18 00:44 - 10849056 _____ (IObit) C:\Users\Christian\Downloads\iobituninstaller5.exe
2015-08-18 00:37 - 2015-08-18 00:37 - 00000000 _____ C:\autoexec.bat
2015-08-18 00:36 - 2015-08-18 14:27 - 00000000 ____D C:\Program Files\Enigma Software Group
2015-08-18 00:35 - 2015-08-18 00:35 - 03237248 _____ (Enigma Software Group USA, LLC.) C:\Users\Christian\Downloads\SpyHunter-Installer.exe
2015-08-18 00:18 - 2015-08-18 00:49 - 00000000 ____D C:\ProgramData\clp
2015-08-18 00:18 - 2015-08-18 00:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Preventon Antivirus
2015-08-18 00:18 - 2015-08-18 00:18 - 00000000 ____D C:\ProgramData\Preventon
2015-08-18 00:18 - 2015-06-24 13:00 - 00059560 _____ (UtilTool Ltd) C:\WINDOWS\system32\Drivers\netcontroller.sys
2015-08-18 00:17 - 2015-08-18 00:17 - 00949624 _____ (Preventon Technologies Limited) C:\Users\Christian\Downloads\PreventonAntivirus.exe
2015-08-17 23:46 - 2015-08-17 23:46 - 01563648 _____ C:\Users\Christian\Downloads\adwcleaner_5.000 (2).exe
2015-08-17 22:15 - 2015-08-17 22:15 - 00040594 _____ C:\Users\Christian\Downloads\download_repair.htm
2015-08-17 21:43 - 2015-08-17 21:43 - 03588893 _____ (E-Tech) C:\Program Files\Common Files\mhw3f0bx.exe
2015-08-17 21:25 - 2015-08-17 23:18 - 1605483417 _____ C:\Users\Christian\Downloads\Battle-Royale-v060.zip
2015-08-17 21:24 - 2015-08-17 21:24 - 00003208 _____ C:\WINDOWS\System32\Tasks\zyxvmtcn
2015-08-17 21:24 - 2015-08-17 21:24 - 00000000 ____D C:\Program Files\Common Files\jlpztey3
2015-08-17 21:10 - 2015-08-17 21:10 - 00003936 _____ C:\WINDOWS\System32\Tasks\Install
2015-08-17 20:53 - 2015-08-17 20:53 - 00003388 _____ C:\WINDOWS\System32\Tasks\Sekundäre Anmeldung 1.74.17
2015-08-17 20:20 - 2015-08-17 20:28 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-08-17 20:20 - 2015-08-17 20:20 - 132483416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-08-17 19:51 - 2015-08-18 00:03 - 00000000 ____D C:\Users\Christian\AppData\Local\NPE
2015-08-17 19:51 - 2015-08-17 19:51 - 10079720 _____ (Symantec Corporation) C:\Users\Christian\Downloads\NPE.exe
2015-08-17 18:57 - 2015-08-17 18:57 - 01563648 _____ C:\Users\Christian\Downloads\adwcleaner_5.000 (1).exe
2015-08-17 18:43 - 2015-08-19 21:00 - 00000085 _____ C:\WINDOWS\wininit.ini
2015-08-17 18:35 - 2015-08-18 00:45 - 00000000 ____D C:\ProgramData\ProductData
2015-08-17 18:13 - 2015-08-17 19:22 - 00167406 _____ C:\WINDOWS\system32\Drivers\fvstore.dat
2015-08-17 18:13 - 2015-08-17 18:13 - 00000000 ___HD C:\VTRoot
2015-08-17 18:10 - 2015-08-20 01:51 - 01474832 _____ C:\WINDOWS\system32\Drivers\sfi.dat
2015-08-17 18:10 - 2015-08-17 18:10 - 00000000 ____D C:\WINDOWS\System32\Tasks\COMODO
2015-08-17 18:10 - 2015-08-17 18:10 - 00000000 ____D C:\ProgramData\Shared Space
2015-08-17 18:08 - 2015-08-17 18:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
2015-08-17 18:08 - 2015-08-17 18:40 - 00000000 ____D C:\Users\Christian\AppData\Local\Comodo
2015-08-17 18:06 - 2015-08-17 18:10 - 00000000 ____D C:\ProgramData\Comodo
2015-08-17 18:05 - 2015-08-17 18:06 - 226558984 _____ (COMODO) C:\Users\Christian\Downloads\cav_installer.exe
2015-08-17 17:54 - 2015-08-17 17:54 - 00003312 _____ C:\WINDOWS\System32\Tasks\crash_service
2015-08-17 15:12 - 2015-08-17 15:12 - 03588893 _____ (E-Tech) C:\Program Files\Common Files\itvy444u.exe
2015-08-17 14:57 - 2015-08-17 23:51 - 00000000 ____D C:\Program Files\Common Files\xwizzwif
2015-08-15 17:18 - 2015-08-15 17:18 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Mozilla
2015-08-15 11:18 - 2015-08-15 11:18 - 00000000 ____D C:\Users\Christian\AppData\Local\Blizzard
2015-08-15 11:10 - 2015-08-15 11:18 - 00000000 ____D C:\Program Files (x86)\Hearthstone
2015-08-15 11:10 - 2015-08-15 11:10 - 00001238 _____ C:\Users\Public\Desktop\Hearthstone.lnk
2015-08-15 11:10 - 2015-08-15 11:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
2015-08-15 11:05 - 2015-08-18 20:07 - 00000000 ____D C:\Users\Christian\AppData\Local\Battle.net
2015-08-15 11:05 - 2015-08-15 11:08 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Battle.net
2015-08-15 11:05 - 2015-08-15 11:05 - 00000000 ____D C:\Users\Christian\AppData\Local\Blizzard Entertainment
2015-08-15 11:04 - 2015-08-19 20:35 - 00000000 ____D C:\Program Files (x86)\Battle.net
2015-08-15 11:04 - 2015-08-15 11:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2015-08-15 11:04 - 2015-08-15 11:05 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2015-08-15 11:04 - 2015-08-15 11:04 - 00000000 ____D C:\ProgramData\Battle.net
2015-08-15 10:51 - 2015-08-15 10:51 - 00000000 ____D C:\WINDOWS\system32\uuf
2015-08-15 10:50 - 2015-08-15 10:50 - 00000045 _____ C:\user.js
2015-08-14 19:50 - 2015-08-19 21:46 - 00000000 ____D C:\ProgramData\Oracle
2015-08-14 19:50 - 2015-08-19 21:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-08-14 19:50 - 2015-08-17 15:01 - 00110688 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2015-08-14 19:50 - 2015-08-17 15:01 - 00000000 ____D C:\Program Files\Java
2015-08-14 19:50 - 2015-08-14 19:50 - 00000000 ____D C:\ProgramData\Sun
2015-08-14 18:05 - 2015-08-14 18:05 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Mirillis
2015-08-14 18:05 - 2015-08-14 18:05 - 00000000 ____D C:\Users\Christian\AppData\Local\Mirillis
2015-08-14 18:05 - 2015-08-14 18:05 - 00000000 ____D C:\ProgramData\Mirillis
2015-08-14 18:05 - 2015-08-14 18:05 - 00000000 ____D C:\Program Files (x86)\Action!
2015-08-14 18:04 - 2015-08-14 18:04 - 00002122 _____ C:\Users\Public\Desktop\Action!.lnk
2015-08-14 18:04 - 2015-08-14 18:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mirillis
2015-08-14 18:04 - 2015-08-14 18:04 - 00000000 ____D C:\Program Files (x86)\Mirillis
2015-08-14 17:50 - 2015-08-20 01:30 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-08-14 17:50 - 2015-08-19 21:20 - 00001028 _____ C:\WINDOWS\Tasks\9XTy35D.job
2015-08-14 17:50 - 2015-08-14 17:50 - 00004144 _____ C:\WINDOWS\System32\Tasks\9XTy35D
2015-08-14 17:50 - 2015-08-14 17:50 - 00003860 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-08-14 17:49 - 2015-08-19 23:54 - 00000376 ____H C:\WINDOWS\Tasks\UBAVSTQJEVEMCIFN.job
2015-08-14 17:49 - 2015-08-18 01:13 - 00000004 _____ C:\WINDOWS\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-08-14 17:49 - 2015-08-14 17:49 - 00003460 _____ C:\WINDOWS\System32\Tasks\UBAVSTQJEVEMCIFN
2015-08-14 17:48 - 2015-08-17 23:51 - 00000000 ____D C:\Users\Christian\AppData\Local\IntelRDynamic
2015-08-14 17:48 - 2015-08-14 17:48 - 00003398 _____ C:\WINDOWS\System32\Tasks\mWHZNGepLYqcqeK
2015-08-14 17:48 - 2015-08-14 17:48 - 00003354 _____ C:\WINDOWS\System32\Tasks\WCSKhlrQu1za7sF
2015-08-14 17:20 - 2015-08-19 20:01 - 00000000 ____D C:\ProgramData\Sony
2015-08-14 17:20 - 2015-08-14 17:30 - 00000000 ____D C:\Users\Christian\AppData\Local\Sony
2015-08-14 17:18 - 2015-08-14 17:32 - 00000000 ____D C:\Users\Christian\AppData\Roaming\Sony
2015-08-14 17:18 - 2013-12-02 21:01 - 00035376 _____ (Basil Projects) C:\WINDOWS\system32\Drivers\WinDivert64.sys
2015-08-13 15:59 - 2015-08-13 15:59 - 00000000 ____D C:\Users\Christian\Documents\Camtasia Studio
2015-08-13 15:59 - 2015-08-13 15:59 - 00000000 ____D C:\Users\Christian\AppData\Roaming\TechSmith
2015-08-10 15:59 - 2015-08-10 15:59 - 00000000 ____D C:\Users\Christian\AppData\Roaming\WinRAR
2015-08-09 19:15 - 2015-08-09 19:15 - 00000897 _____ C:\Users\Christian\Desktop\Steam.lnk
2015-08-06 23:54 - 2015-08-06 23:54 - 00000000 ____D C:\Users\Christian\AppData\Roaming\2K Sports
2015-08-06 20:55 - 2015-08-06 21:08 - 00000000 ____D C:\Users\Christian\Documents\DayZ
2015-08-06 20:55 - 2015-08-06 21:08 - 00000000 ____D C:\Users\Christian\AppData\Local\DayZ
2015-08-05 01:31 - 2015-08-05 01:31 - 00827632 _____ (COMODO) C:\WINDOWS\system32\Drivers\cmdguard.sys
2015-08-05 01:31 - 2015-08-05 01:31 - 00127232 _____ (COMODO) C:\WINDOWS\system32\Drivers\inspect.sys
2015-08-05 01:31 - 2015-08-05 01:31 - 00035056 _____ (COMODO) C:\WINDOWS\system32\Drivers\cmdhlp.sys
2015-08-05 01:31 - 2015-08-05 01:31 - 00021720 _____ (COMODO) C:\WINDOWS\system32\Drivers\cmderd.sys
2015-08-05 01:29 - 2015-08-05 01:29 - 00579408 _____ (COMODO) C:\WINDOWS\system32\guard64.dll
2015-08-05 01:29 - 2015-08-05 01:29 - 00445472 _____ (COMODO) C:\WINDOWS\SysWOW64\guard32.dll
2015-08-05 01:29 - 2015-08-05 01:29 - 00041224 _____ (COMODO) C:\WINDOWS\system32\cmdcsr.dll
2015-08-05 01:28 - 2015-08-05 01:28 - 00358080 _____ (COMODO) C:\WINDOWS\system32\cmdvrt64.dll
2015-08-05 01:28 - 2015-08-05 01:28 - 00045760 _____ (COMODO) C:\WINDOWS\system32\cmdkbd64.dll
2015-08-05 01:27 - 2015-08-05 01:27 - 00288448 _____ (COMODO) C:\WINDOWS\SysWOW64\cmdvrt32.dll
2015-08-05 01:26 - 2015-08-05 01:26 - 00040640 _____ (COMODO) C:\WINDOWS\SysWOW64\cmdkbd32.dll