|
Plagegeister aller Art und deren Bekämpfung: Delta Search ProblemWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
19.08.2013, 12:10 | #1 |
| Delta Search Problem Hallo an alle, dummerweise habe ich mir gestern beim Versuch einen aktuellen Graphikkartentreiber zu installieren den Delta Search Virus eingefangen. Bisher habe ich unter Systemsteuerung alles gelöscht, was ich zum Zeitpunkt dieser Installation aufgespielt hatte (waren außerdem noch ca. 2 Programme) und mittels Avast Browser Cleanup versucht den Virus zu entfernen. Fürs Erste scheint das funktioniert zu haben, allerdings würde ich gerne sicher gehen, dass das Programm komplett entfernt wurde und auch keine weitere Malware gestern mit dabei war. Vielen Dank im Voraus! Mfg, Spoo |
19.08.2013, 12:45 | #2 |
/// the machine /// TB-Ausbilder | Delta Search Problem hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
19.08.2013, 17:44 | #3 |
| Delta Search ProblemFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-08-2013 Ran by Chris (administrator) on 19-08-2013 18:39:00 Running from C:\Users\Chris\Desktop Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation) c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe (DigitalPersona, Inc.) c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe (AMD) C:\windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (Hewlett-Packard Company) C:\windows\system32\Hpservice.exe (AMD) C:\windows\system32\atieclxx.exe (Validity Sensors, Inc.) C:\windows\system32\vcsFPService.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe () C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe (PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (ArcSoft, Inc.) C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe (Microsoft Corporation) c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Advanced Micro Devices, Inc.) C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (DigitalPersona, Inc.) c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe (DigitalPersona, Inc.) c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe (Hewlett-Packard Development Company, L.P.) c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe (Portrait Displays, Inc) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe (Microsoft Corporation) C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2887440 2012-03-09] (Synaptics Incorporated) HKLM\...\Run: [NUSB3MON] - C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe [97280 2012-04-11] (Advanced Micro Devices, Inc.) HKLM\...\Run: [HPPowerAssistant] - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [3488640 2012-03-14] (Hewlett-Packard Company) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-03-05] (IDT, Inc.) HKLM\...\Run: [MfeEpePcMonitor] - "C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe" [x] HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1436736 2011-06-15] (Microsoft Corporation) HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe, HKLM-x32\...\Run: [PDF Complete] - C:\Program Files (x86)\PDF Complete\pdfsty.exe [684024 2012-03-07] (PDF Complete Inc) HKLM-x32\...\Run: [QLBController] - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [319360 2012-03-14] (Hewlett-Packard Company) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [630952 2012-07-09] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [AMD AVT] - C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe [12288 2012-04-20] () HKLM-x32\...\Run: [DTRun] - c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [517456 2010-11-24] (ArcSoft Inc.) HKLM-x32\...\Run: [HPConnectionManager] - c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [184704 2012-03-16] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [BtTray] - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [364032 2012-08-16] (IVT Corporation) HKLM-x32\...\Run: [File Sanitizer] - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [12310616 2012-03-22] (Hewlett-Packard) Lsa: [Notification Packages] DPPassFilter scecli ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCOM/10 HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.bing.com SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF SearchScopes: HKLM - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CMNTDF SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox SearchScopes: HKLM-x32 - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF SearchScopes: HKLM-x32 - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CMNTDF SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www1.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=249C1C3E842A9A5E&affID=121240&tsp=4978 SearchScopes: HKCU - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=CMNTDF SearchScopes: HKCU - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=CMNTDF BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO-x32: File Sanitizer for HP ProtectTools - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard) BHO-x32: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] 83.169.185.225 83.169.185.161 FireFox: ======== FF ProfilePath: C:\Users\Chris\AppData\Roaming\Mozilla\Firefox\Profiles\ljtjfzlm.default FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt\ FF Extension: DigitalPersona Extension - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt\ ==================== Services (Whitelisted) ================= S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1578496 2012-08-14] (IVT Corporation) R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [138752 2012-08-14] (IVT Corporation) R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [493904 2012-03-15] (DigitalPersona, Inc.) S3 FLCDLOCK; c:\windows\SysWOW64\flcdlock.exe [477056 2012-11-19] (Hewlett-Packard Company) R2 HPAuto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [682040 2011-02-17] (Hewlett-Packard) R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [365440 2012-03-14] (Hewlett-Packard Company) R2 McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [1327104 2012-03-22] () R2 MsMpSvc; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [12784 2011-04-28] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [288272 2011-04-28] (Microsoft Corporation) R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1134584 2012-03-07] (PDF Complete Inc) R2 uArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [498352 2012-04-05] (ArcSoft, Inc.) ==================== Drivers (Whitelisted) ==================== R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [31872 2012-01-31] (Advanced Micro Devices, Inc.) R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [42816 2012-02-03] (ArcSoft, Inc.) R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23104 2011-08-13] (Ralink Corporation) S3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [51776 2012-04-03] (Ralink Corporation) S3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48320 2012-03-05] (Ralink Corporation) S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [64832 2012-11-09] (Hewlett-Packard Company) R0 MfeEpeOpal; C:\Windows\System32\Drivers\MfeEpeOpal.sys [93640 2012-03-22] (McAfee, Inc.) R0 MfeEpePc; C:\Windows\System32\Drivers\MfeEpePc.sys [158792 2012-03-22] (McAfee, Inc.) R1 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [189440 2011-04-18] (Microsoft Corporation) R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [84864 2011-04-28] (Microsoft Corporation) R3 rtbth; C:\Windows\System32\DRIVERS\rtbth.sys [685152 2012-06-14] (Ralink Technology, Corp.) R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [1064184 2012-09-22] (Sunplus) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-19 18:37 - 2013-08-19 18:37 - 01575812 _____ (Farbar) C:\Users\Chris\Desktop\FRST64.exe 2013-08-19 00:30 - 2013-08-19 00:30 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Mozilla 2013-08-19 00:29 - 2013-08-19 00:29 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-08-19 00:29 - 2013-08-19 00:29 - 00001151 _____ C:\ProgramData\Desktop\Mozilla Firefox.lnk 2013-08-19 00:29 - 2013-08-19 00:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-19 00:28 - 2013-08-19 00:29 - 22240760 _____ (Mozilla) C:\Users\Chris\Downloads\Firefox_Setup_23.0.1.exe 2013-08-19 00:26 - 2013-08-19 00:26 - 02828552 _____ (AVAST Software) C:\Users\Chris\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-08-18 23:54 - 2013-08-18 23:54 - 00792704 _____ (AMD) C:\Users\Chris\Downloads\amddriverdownloader.exe 2013-08-18 23:54 - 2013-08-18 23:54 - 00000000 ____D C:\AMD 2013-08-18 23:37 - 2013-08-18 23:37 - 00000000 ____D C:\windows\system32\appmgmt 2013-08-18 23:30 - 2013-08-18 23:30 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Babylon 2013-08-18 23:30 - 2013-08-18 23:30 - 00000000 ____D C:\ProgramData\Babylon 2013-08-18 23:24 - 2013-08-18 23:24 - 00000000 ____D C:\Users\Chris\Documents\Diablo III 2013-08-18 22:07 - 2013-08-18 23:23 - 00000000 ____D C:\Program Files (x86)\Diablo III 2013-08-18 22:07 - 2013-08-18 22:38 - 00001162 _____ C:\Users\Public\Desktop\Diablo III.lnk 2013-08-18 22:07 - 2013-08-18 22:38 - 00001162 _____ C:\ProgramData\Desktop\Diablo III.lnk 2013-08-18 22:07 - 2013-08-18 22:38 - 00000000 ____D C:\ProgramData\Blizzard Entertainment 2013-08-18 22:06 - 2013-08-18 22:07 - 00000000 ____D C:\ProgramData\Battle.net 2013-08-18 21:18 - 2013-08-19 00:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-14 23:51 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2013-08-14 23:51 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2013-08-14 23:51 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2013-08-14 23:51 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2013-08-14 23:51 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2013-08-14 23:51 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll 2013-08-14 23:51 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll 2013-08-14 23:51 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll 2013-08-14 23:51 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll 2013-08-14 23:51 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb 2013-08-14 23:51 - 2013-07-26 04:39 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe 2013-08-14 23:51 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe 2013-08-14 23:44 - 2013-08-14 23:46 - 00000000 ____D C:\windows\system32\MRT 2013-08-14 20:13 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL 2013-08-14 20:13 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMVDECOD.DLL 2013-08-14 20:13 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll 2013-08-14 20:13 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll 2013-08-14 20:13 - 2013-07-09 08:03 - 05550528 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe 2013-08-14 20:13 - 2013-07-09 07:54 - 01732032 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll 2013-08-14 20:13 - 2013-07-09 07:53 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll 2013-08-14 20:13 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll 2013-08-14 20:13 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll 2013-08-14 20:13 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll 2013-08-14 20:13 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll 2013-08-14 20:13 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll 2013-08-14 20:13 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe 2013-08-14 20:13 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe 2013-08-14 20:13 - 2013-07-09 06:53 - 01292192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll 2013-08-14 20:13 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll 2013-08-14 20:13 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll 2013-08-14 20:13 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll 2013-08-14 20:13 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll 2013-08-14 20:13 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptnet.dll 2013-08-14 20:13 - 2013-07-09 04:49 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll 2013-08-14 20:12 - 2013-07-09 06:52 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll 2013-08-14 20:12 - 2013-07-09 04:49 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe 2013-08-14 20:12 - 2013-07-09 04:49 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe 2013-08-14 20:12 - 2013-07-09 04:49 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe 2013-08-14 20:12 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys 2013-08-14 20:12 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys 2013-08-11 21:17 - 2013-08-15 22:19 - 00003182 _____ C:\windows\System32\Tasks\HPCeeScheduleForChris 2013-08-11 21:17 - 2013-08-15 22:19 - 00000332 _____ C:\windows\Tasks\HPCeeScheduleForChris.job 2013-08-11 13:04 - 2013-08-11 21:33 - 00000000 ____D C:\ProgramData\VirtualizedApplications 2013-08-11 11:01 - 2013-08-11 11:01 - 00000000 __RHD C:\MSOCache 2013-08-11 10:54 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Roaming\SoftGrid Client 2013-08-11 10:54 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Local\SoftGrid Client 2013-08-11 10:53 - 2013-08-12 17:55 - 00000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client 2013-08-11 10:53 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Roaming\TP 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\windows\PCHEALTH 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\Program Files\Microsoft Office 2013-08-11 10:52 - 2013-08-11 10:52 - 00009079 _____ C:\Users\Chris\Downloads\für Chris.xlsx 2013-08-05 21:23 - 2013-08-05 21:23 - 00000000 ____D C:\windows\system32\Macromed 2013-08-05 21:23 - 2013-08-05 21:23 - 00000000 ____D C:\Users\Chris\AppData\Local\Macromedia 2013-08-05 21:22 - 2013-08-05 21:22 - 00000000 ____D C:\Users\Chris\AppData\Local\Adobe 2013-08-05 18:09 - 2013-04-17 09:02 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll 2013-08-05 18:09 - 2013-04-17 08:24 - 01424384 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll 2013-08-04 23:33 - 2013-08-14 23:44 - 78161360 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2013-08-04 23:25 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\windows\SysWOW64\DWrite.dll 2013-08-04 23:25 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll 2013-08-04 21:54 - 2012-07-26 06:55 - 00785512 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Wdf01000.sys 2013-08-04 21:54 - 2012-07-26 06:55 - 00054376 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdfLdr.sys 2013-08-04 21:54 - 2012-07-26 04:36 - 00009728 _____ (Microsoft Corporation) C:\windows\system32\Wdfres.dll 2013-08-04 21:54 - 2012-06-02 16:35 - 00000003 _____ C:\windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2013-08-04 21:29 - 2013-08-04 21:29 - 01509376 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2013-08-04 21:29 - 2013-08-04 21:29 - 01441280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl 2013-08-04 21:29 - 2013-08-04 21:29 - 01400416 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat 2013-08-04 21:29 - 2013-08-04 21:29 - 01400416 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat 2013-08-04 21:29 - 2013-08-04 21:29 - 01054720 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00905728 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00719360 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00629248 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00523264 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\html.iec 2013-08-04 21:29 - 2013-08-04 21:29 - 00361984 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec 2013-08-04 21:29 - 2013-08-04 21:29 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00270848 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00242200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\url.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00232960 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00204800 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00185344 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00173568 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00150528 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\occache.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00138752 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00125440 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00110592 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00097280 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00079872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx 2013-08-04 21:29 - 2013-08-04 21:29 - 00073728 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx 2013-08-04 21:29 - 2013-08-04 21:29 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe 2013-08-04 21:24 - 2013-08-04 21:24 - 03928064 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 03419136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02776576 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02284544 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01988096 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01682432 _____ (Microsoft Corporation) C:\windows\system32\XpsPrint.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01238528 _____ (Microsoft Corporation) C:\windows\system32\d3d10.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01175552 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01158144 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsPrint.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01080832 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00648192 _____ (Microsoft Corporation) C:\windows\system32\d3d10level9.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00604160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10level9.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00522752 _____ (Microsoft Corporation) C:\windows\system32\XpsGdiConverter.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00465920 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00417792 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00364544 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsGdiConverter.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00363008 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00333312 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\d3d10core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00293376 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxgi.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00249856 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00245248 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecsExt.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00207872 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecsExt.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00194560 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00187392 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIAnimation.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00161792 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00010752 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00010752 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00009728 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00009728 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00002560 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00002560 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-04 21:22 - 2013-08-04 21:52 - 00016471 _____ C:\windows\IE10_main.log 2013-08-04 21:15 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\windows\system32\browserchoice.exe 2013-08-04 20:53 - 2012-12-16 19:11 - 00046080 _____ (Adobe Systems) C:\windows\system32\atmlib.dll 2013-08-04 20:53 - 2012-12-16 16:45 - 00367616 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll 2013-08-04 20:53 - 2012-12-16 16:13 - 00295424 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll 2013-08-04 20:53 - 2012-12-16 16:13 - 00034304 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll 2013-08-04 20:52 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\windows\system32\WUDFx.dll 2013-08-04 20:52 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\windows\system32\WUDFHost.exe 2013-08-04 20:52 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\windows\system32\WUDFPlatform.dll 2013-08-04 20:52 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\windows\system32\WUDFSvc.dll 2013-08-04 20:52 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\windows\system32\WUDFCoinstaller.dll 2013-08-04 20:52 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WUDFRd.sys 2013-08-04 20:52 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WUDFPf.sys 2013-08-04 20:52 - 2012-06-02 16:57 - 00000003 _____ C:\windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2013-08-04 20:33 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fs_rec.sys 2013-08-04 20:33 - 2012-03-01 08:33 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\imagehlp.dll 2013-08-04 20:33 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\windows\system32\wmi.dll 2013-08-04 20:33 - 2012-03-01 07:33 - 00159232 _____ (Microsoft Corporation) C:\windows\SysWOW64\imagehlp.dll 2013-08-04 20:33 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmi.dll 2013-08-04 20:09 - 2013-04-10 07:24 - 00983912 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys 2013-08-04 20:09 - 2013-04-10 07:24 - 00265064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms1.sys 2013-08-04 20:09 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\windows\system32\tsgqec.dll 2013-08-04 20:09 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll 2013-08-04 20:09 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\windows\system32\aaclient.dll 2013-08-04 20:09 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll 2013-08-04 20:09 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\windows\SysWOW64\aaclient.dll 2013-08-04 20:09 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\windows\SysWOW64\tsgqec.dll 2013-08-04 20:09 - 2013-01-03 08:00 - 00288088 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS 2013-08-04 20:09 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\windows\system32\dhcpcore6.dll 2013-08-04 20:09 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\windows\system32\dhcpcsvc6.dll 2013-08-04 20:09 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\windows\SysWOW64\dhcpcore6.dll 2013-08-04 20:09 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\windows\SysWOW64\dhcpcsvc6.dll 2013-08-04 20:09 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\windows\system32\poqexec.exe 2013-08-04 20:09 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\windows\SysWOW64\poqexec.exe 2013-08-04 20:08 - 2013-04-12 16:45 - 01656680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys 2013-08-04 20:08 - 2013-03-19 07:53 - 00230400 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll 2013-08-04 20:08 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\wwanprotdim.dll 2013-08-04 20:08 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\windows\system32\consent.exe 2013-08-04 20:08 - 2013-02-27 07:52 - 14172672 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll 2013-08-04 20:08 - 2013-02-27 07:52 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll 2013-08-04 20:08 - 2013-02-27 07:48 - 01930752 _____ (Microsoft Corporation) C:\windows\system32\authui.dll 2013-08-04 20:08 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\windows\system32\appinfo.dll 2013-08-04 20:08 - 2013-02-27 06:55 - 12872704 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll 2013-08-04 20:08 - 2013-02-27 06:55 - 00180224 _____ (Microsoft Corporation) C:\windows\SysWOW64\shdocvw.dll 2013-08-04 20:08 - 2013-02-27 06:49 - 01796096 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll 2013-08-04 20:08 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usb8023.sys 2013-08-04 20:08 - 2012-11-01 07:43 - 02002432 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll 2013-08-04 20:08 - 2012-11-01 07:43 - 01882624 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll 2013-08-04 20:08 - 2012-11-01 06:47 - 01389568 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll 2013-08-04 20:08 - 2012-11-01 06:47 - 01236992 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00303104 _____ (Microsoft Corporation) C:\windows\system32\nlasvc.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\windows\system32\netcorehc.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\windows\system32\ncsi.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\windows\system32\nlaapi.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\windows\system32\netevent.dll 2013-08-04 20:08 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\windows\system32\iphlpsvc.dll 2013-08-04 20:08 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\windows\SysWOW64\netcorehc.dll 2013-08-04 20:08 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncsi.dll 2013-08-04 20:08 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\windows\SysWOW64\netevent.dll 2013-08-04 20:08 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpipreg.sys 2013-08-04 20:08 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys 2013-08-04 20:08 - 2012-08-22 20:12 - 00376688 _____ (Microsoft Corporation) C:\windows\system32\Drivers\netio.sys 2013-08-04 20:08 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\Drivers\RNDISMP.sys 2013-08-04 20:08 - 2012-06-02 07:50 - 00458704 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys 2013-08-04 20:08 - 2012-06-02 07:48 - 00151920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys 2013-08-04 20:08 - 2012-06-02 07:48 - 00095600 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys 2013-08-04 20:08 - 2012-06-02 07:45 - 00340992 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll 2013-08-04 20:08 - 2012-06-02 06:40 - 00225280 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll 2013-08-04 20:08 - 2012-06-02 06:40 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll 2013-08-04 20:08 - 2012-06-02 06:34 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll 2013-08-04 20:08 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\rdpcorekmts.dll 2013-08-04 20:08 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\rdpwsx.dll 2013-08-04 20:08 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\windows\system32\rdrmemptylst.exe 2013-08-04 20:08 - 2012-01-13 09:12 - 00052224 _____ (Microsoft Corporation) C:\windows\SysWOW64\nlaapi.dll 2013-08-04 20:08 - 2010-06-26 05:55 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll 2013-08-04 20:08 - 2010-06-26 05:24 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3r.dll 2013-08-04 20:07 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll 2013-08-04 20:07 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll 2013-08-04 20:07 - 2013-01-04 07:46 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll 2013-08-04 20:07 - 2012-11-20 07:48 - 00307200 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll 2013-08-04 20:07 - 2012-11-20 06:51 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll 2013-08-04 20:07 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\windows\system32\dpnet.dll 2013-08-04 20:07 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\windows\SysWOW64\dpnet.dll 2013-08-04 20:07 - 2012-05-01 07:40 - 00209920 _____ (Microsoft Corporation) C:\windows\system32\profsvc.dll 2013-08-04 20:06 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\Wpc.dll 2013-08-04 20:06 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\windows\system32\gameux.dll 2013-08-04 20:06 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\windows\SysWOW64\Wpc.dll 2013-08-04 20:06 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\windows\SysWOW64\gameux.dll 2013-08-04 20:06 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\windows\system32\oflc-nz.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\windows\system32\pegibbfc.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\windows\system32\csrr.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\windows\system32\usk.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\windows\system32\oflc.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\windows\system32\pegi-pt.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\windows\system32\pegi-fi.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\windows\system32\cero.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\windows\system32\esrb.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\windows\system32\fpb.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\windows\system32\cob-au.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\windows\system32\grb.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\windows\system32\pegi.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\windows\system32\djctq.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\windows\SysWOW64\cero.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\windows\SysWOW64\esrb.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\windows\SysWOW64\fpb.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\windows\SysWOW64\oflc-nz.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\windows\SysWOW64\pegibbfc.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\windows\SysWOW64\csrr.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\windows\SysWOW64\cob-au.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\windows\SysWOW64\usk.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\windows\SysWOW64\oflc.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\windows\SysWOW64\grb.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\windows\SysWOW64\pegi-pt.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\windows\SysWOW64\pegi-fi.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\windows\SysWOW64\pegi.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\windows\SysWOW64\djctq.rs 2013-08-04 20:06 - 2012-11-22 07:44 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll 2013-08-04 20:06 - 2012-11-22 06:45 - 00626688 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll 2013-08-04 20:06 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\windows\system32\OxpsConverter.exe 2013-08-04 20:05 - 2012-08-11 02:56 - 00715776 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll 2013-08-04 20:05 - 2012-08-11 01:56 - 00542208 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll 2013-08-04 20:05 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpwd.sys 2013-08-04 20:05 - 2012-04-07 14:31 - 03216384 _____ (Microsoft Corporation) C:\windows\system32\msi.dll 2013-08-04 20:05 - 2012-04-07 13:26 - 02342400 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll 2013-08-04 20:05 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\windows\system32\Drivers\partmgr.sys 2013-08-04 20:04 - 2012-11-30 07:45 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll 2013-08-04 20:04 - 2012-11-30 07:45 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll 2013-08-04 20:04 - 2012-11-30 07:43 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll 2013-08-04 20:04 - 2012-11-30 07:41 - 01161216 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll 2013-08-04 20:04 - 2012-11-30 07:41 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:53 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll 2013-08-04 20:04 - 2012-11-30 06:53 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 05:23 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe 2013-08-04 20:04 - 2012-11-30 04:38 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 04:38 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 04:38 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 04:38 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 01:17 - 00420064 _____ C:\windows\SysWOW64\locale.nls 2013-08-04 20:04 - 2012-11-30 01:15 - 00420064 _____ C:\windows\system32\locale.nls 2013-08-04 20:03 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys 2013-08-04 20:03 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\certenc.dll 2013-08-04 20:03 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\windows\system32\certutil.exe 2013-08-04 20:03 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\windows\SysWOW64\certutil.exe 2013-08-04 20:03 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\certenc.dll 2013-08-04 20:03 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\cryptdlg.dll 2013-08-04 20:03 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptdlg.dll 2013-08-04 20:03 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\windows\system32\win32spl.dll 2013-08-04 20:03 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32spl.dll 2013-08-04 20:03 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fvevol.sys 2013-08-04 20:03 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\windows\system32\taskhost.exe 2013-08-04 20:03 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\windows\SysWOW64\synceng.dll 2013-08-04 20:03 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\windows\system32\synceng.dll 2013-08-04 20:03 - 2012-07-06 22:07 - 00552960 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bthport.sys 2013-08-04 20:03 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\netapi32.dll 2013-08-04 20:03 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\browser.dll 2013-08-04 20:03 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\windows\system32\browcli.dll 2013-08-04 20:03 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\netapi32.dll 2013-08-04 20:03 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\browcli.dll 2013-08-04 20:03 - 2012-05-05 10:36 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll 2013-08-04 20:03 - 2012-05-05 09:46 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll 2013-08-04 20:02 - 2013-04-26 01:30 - 01505280 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d11.dll 2013-08-04 20:02 - 2013-04-01 00:52 - 01887232 _____ (Microsoft Corporation) C:\windows\system32\d3d11.dll 2013-08-04 20:02 - 2013-03-19 07:46 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll 2013-08-04 20:02 - 2013-03-19 06:47 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll 2013-08-04 20:02 - 2013-03-19 05:06 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe 2013-08-04 20:02 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\windows\system32\cdosys.dll 2013-08-04 20:02 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\windows\SysWOW64\cdosys.dll 2013-08-04 20:02 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll 2013-08-04 20:02 - 2012-02-11 08:36 - 00559104 _____ (Microsoft Corporation) C:\windows\system32\spoolsv.exe 2013-08-04 20:02 - 2012-02-11 08:36 - 00067072 _____ (Microsoft Corporation) C:\windows\splwow64.exe 2013-08-04 19:57 - 2013-08-15 21:56 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Skype 2013-08-04 19:57 - 2013-08-04 19:57 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-08-04 19:54 - 2013-08-04 19:55 - 32782192 _____ (Skype Technologies S.A.) C:\Users\Chris\Downloads\SkypeSetupFull_6.7.102.exe 2013-08-04 19:40 - 2013-08-04 19:40 - 00000000 ____D C:\Users\Chris\AppData\Local\Mozilla 2013-08-04 19:40 - 2013-08-04 19:40 - 00000000 ____D C:\ProgramData\Mozilla 2013-08-04 19:38 - 2013-08-04 19:39 - 21703480 _____ (Mozilla) C:\Users\Chris\Downloads\Firefox_Setup_22.0.exe 2013-08-03 10:32 - 2013-08-03 10:36 - 108422648 _____ C:\Users\Chris\Downloads\avira_free_antivirus884_de.exe 2013-08-03 10:30 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll 2013-08-03 10:30 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll 2013-08-03 10:30 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe 2013-08-03 10:30 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll 2013-08-03 10:30 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\windows\system32\wups.dll 2013-08-03 10:30 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll 2013-08-03 10:30 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll 2013-08-03 10:30 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll 2013-08-03 10:30 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe 2013-08-03 10:22 - 2013-08-03 10:22 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Macromedia 2013-08-03 09:53 - 2013-08-11 21:17 - 00000000 ____D C:\Users\Chris\AppData\Local\Hewlett-Packard 2013-08-03 09:51 - 2013-08-04 23:19 - 00058016 _____ C:\Users\Chris\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Roaming\ATI 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Adobe 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Local\ATI 2013-08-03 09:50 - 2013-08-19 00:20 - 00003930 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{8F644E91-0779-4744-ACD3-D6E802ACE2A0} 2013-08-03 09:50 - 2013-08-13 18:40 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Hewlett-Packard 2013-08-03 09:50 - 2013-08-04 23:19 - 00001425 _____ C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-03 09:50 - 2013-08-04 23:19 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-08-03 09:50 - 2013-08-04 23:19 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\Documents\Bluetooth 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Synaptics 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Local\PDFC 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Local\bluesoleil 2013-08-03 09:49 - 2013-08-03 09:49 - 00000000 ____D C:\Users\Chris\AppData\Local\VirtualStore 2013-08-03 09:48 - 2013-08-13 18:40 - 00003760 _____ C:\windows\System32\Tasks\Registration 2013-08-03 09:48 - 2013-08-03 09:48 - 00000000 ____D C:\Users\Chris\AppData\Local\RemEngine 2013-08-03 09:48 - 2013-08-03 09:48 - 00000000 ____D C:\Users\Chris\AppData\Local\Hewlett-Packard_Company 2013-08-03 09:46 - 2013-08-03 09:46 - 00000000 __RSH C:\windows\SysWOW64\Drivers\103C_HP_bNB_ProBook 4545s_Y5336AN_0U_Q2CE31614KQ_E669319-A41_4A_I17ED_SHP_V54.1E_B68CPD F.40_T130308_W748-1_L407_M3533_J500_7AMD_8F01_92.50_#120420_N10EC8168;18143290_(H5V74EA#ABD)_XMOBILE_CN10_Z_2A1019D1103.MRK 2013-08-03 09:46 - 2013-08-03 09:46 - 00000000 __RSH C:\windows\system32\Drivers\103C_HP_bNB_ProBook 4545s_Y5336AN_0U_Q2CE31614KQ_E669319-A41_4A_I17ED_SHP_V54.1E_B68CPD F.40_T130308_W748-1_L407_M3533_J500_7AMD_8F01_92.50_#120420_N10EC8168;18143290_(H5V74EA#ABD)_XMOBILE_CN10_Z_2A1019D1103.MRK 2013-08-03 09:45 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Roaming\hpqLog 2013-08-03 09:45 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Roaming\DigitalPersona 2013-08-03 09:45 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Local\DigitalPersona 2013-08-03 09:44 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Vorlagen 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Startmenü 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Netzwerkumgebung 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Lokale Einstellungen 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Eigene Dateien 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Druckumgebung 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Documents\Eigene Musik 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Documents\Eigene Bilder 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Local\Verlauf 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Local\Anwendungsdaten 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Anwendungsdaten 2013-08-03 09:44 - 2011-02-11 07:19 - 00000020 ___SH C:\Users\Chris\ntuser.ini 2013-08-03 09:44 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-08-03 09:44 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance ==================== One Month Modified Files and Folders ======= 2013-08-19 18:38 - 2013-08-19 18:38 - 00000000 ____D C:\FRST 2013-08-19 18:38 - 2012-04-21 07:44 - 00000830 _____ C:\windows\Tasks\Adobe Flash Player Updater.job 2013-08-19 18:38 - 2009-07-14 06:45 - 00031312 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-19 18:38 - 2009-07-14 06:45 - 00031312 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-19 18:37 - 2013-08-19 18:37 - 01575812 _____ (Farbar) C:\Users\Chris\Desktop\FRST64.exe 2013-08-19 18:15 - 2012-04-21 05:11 - 00699422 _____ C:\windows\system32\perfh007.dat 2013-08-19 18:15 - 2012-04-21 05:11 - 00149328 _____ C:\windows\system32\perfc007.dat 2013-08-19 18:15 - 2009-07-14 07:13 - 01620564 _____ C:\windows\system32\PerfStringBackup.INI 2013-08-19 18:13 - 2013-04-20 17:40 - 01383874 _____ C:\windows\WindowsUpdate.log 2013-08-19 18:09 - 2012-08-16 02:46 - 00000787 _____ C:\windows\SysWOW64\bscs.ini 2013-08-19 18:09 - 2012-04-21 07:43 - 00000000 ____D C:\ProgramData\PDFC 2013-08-19 18:09 - 2009-07-14 07:08 - 00000006 ____H C:\windows\Tasks\SA.DAT 2013-08-19 18:08 - 2009-07-14 06:51 - 00053032 _____ C:\windows\setupact.log 2013-08-19 08:08 - 2010-11-21 05:47 - 00034988 _____ C:\windows\PFRO.log 2013-08-19 00:30 - 2013-08-19 00:30 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Mozilla 2013-08-19 00:29 - 2013-08-19 00:29 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-08-19 00:29 - 2013-08-19 00:29 - 00001151 _____ C:\ProgramData\Desktop\Mozilla Firefox.lnk 2013-08-19 00:29 - 2013-08-19 00:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-19 00:29 - 2013-08-19 00:28 - 22240760 _____ (Mozilla) C:\Users\Chris\Downloads\Firefox_Setup_23.0.1.exe 2013-08-19 00:29 - 2013-08-18 21:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-19 00:26 - 2013-08-19 00:26 - 02828552 _____ (AVAST Software) C:\Users\Chris\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-08-19 00:20 - 2013-08-03 09:50 - 00003930 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{8F644E91-0779-4744-ACD3-D6E802ACE2A0} 2013-08-18 23:54 - 2013-08-18 23:54 - 00792704 _____ (AMD) C:\Users\Chris\Downloads\amddriverdownloader.exe 2013-08-18 23:54 - 2013-08-18 23:54 - 00000000 ____D C:\AMD 2013-08-18 23:37 - 2013-08-18 23:37 - 00000000 ____D C:\windows\system32\appmgmt 2013-08-18 23:30 - 2013-08-18 23:30 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Babylon 2013-08-18 23:30 - 2013-08-18 23:30 - 00000000 ____D C:\ProgramData\Babylon 2013-08-18 23:24 - 2013-08-18 23:24 - 00000000 ____D C:\Users\Chris\Documents\Diablo III 2013-08-18 23:23 - 2013-08-18 22:07 - 00000000 ____D C:\Program Files (x86)\Diablo III 2013-08-18 22:38 - 2013-08-18 22:07 - 00001162 _____ C:\Users\Public\Desktop\Diablo III.lnk 2013-08-18 22:38 - 2013-08-18 22:07 - 00001162 _____ C:\ProgramData\Desktop\Diablo III.lnk 2013-08-18 22:38 - 2013-08-18 22:07 - 00000000 ____D C:\ProgramData\Blizzard Entertainment 2013-08-18 22:07 - 2013-08-18 22:06 - 00000000 ____D C:\ProgramData\Battle.net 2013-08-15 22:19 - 2013-08-11 21:17 - 00003182 _____ C:\windows\System32\Tasks\HPCeeScheduleForChris 2013-08-15 22:19 - 2013-08-11 21:17 - 00000332 _____ C:\windows\Tasks\HPCeeScheduleForChris.job 2013-08-15 21:56 - 2013-08-04 19:57 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Skype 2013-08-15 21:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\rescache 2013-08-14 23:46 - 2013-08-14 23:44 - 00000000 ____D C:\windows\system32\MRT 2013-08-14 23:44 - 2013-08-04 23:33 - 78161360 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2013-08-14 17:38 - 2013-04-20 18:22 - 00004524 _____ C:\windows\SysWOW64\LOCALSERVICE.INI 2013-08-14 17:38 - 2013-04-20 18:22 - 00000043 _____ C:\windows\SysWOW64\LOCALDEVICE.INI 2013-08-13 18:40 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Hewlett-Packard 2013-08-13 18:40 - 2013-08-03 09:48 - 00003760 _____ C:\windows\System32\Tasks\Registration 2013-08-12 17:55 - 2013-08-11 10:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client 2013-08-12 17:55 - 2012-04-21 07:24 - 01648182 _____ C:\windows\SysWOW64\PerfStringBackup.INI 2013-08-11 21:33 - 2013-08-11 13:04 - 00000000 ____D C:\ProgramData\VirtualizedApplications 2013-08-11 21:17 - 2013-08-03 09:53 - 00000000 ____D C:\Users\Chris\AppData\Local\Hewlett-Packard 2013-08-11 11:01 - 2013-08-11 11:01 - 00000000 __RHD C:\MSOCache 2013-08-11 10:54 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Roaming\SoftGrid Client 2013-08-11 10:54 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Local\SoftGrid Client 2013-08-11 10:54 - 2013-08-11 10:53 - 00000000 ____D C:\Users\Chris\AppData\Roaming\TP 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\windows\PCHEALTH 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\Program Files\Microsoft Office 2013-08-11 10:53 - 2012-04-21 07:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-08-11 10:53 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2013-08-11 10:52 - 2013-08-11 10:52 - 00009079 _____ C:\Users\Chris\Downloads\für Chris.xlsx 2013-08-07 00:39 - 2012-04-21 04:53 - 00000000 ____D C:\Program Files\Windows Journal 2013-08-07 00:39 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\winrm 2013-08-07 00:39 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\sysprep 2013-08-07 00:39 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\slmgr 2013-08-07 00:39 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-07 00:39 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-07 00:39 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System 2013-08-07 00:38 - 2012-04-21 05:03 - 00000000 ____D C:\windows\SysWOW64\XPSViewer 2013-08-07 00:38 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\WCN 2013-08-07 00:38 - 2010-11-21 09:06 - 00000000 ____D C:\windows\system32\winrm 2013-08-07 00:38 - 2010-11-21 09:06 - 00000000 ____D C:\windows\system32\WCN 2013-08-07 00:38 - 2010-11-21 09:06 - 00000000 ____D C:\windows\system32\slmgr 2013-08-07 00:38 - 2009-07-14 07:37 - 00000000 ____D C:\windows\DigitalLocker 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\Setup 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\MUI 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\Dism 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\sysprep 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\Setup 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\oobe 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\MUI 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\migwiz 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\Dism 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\IME 2013-08-07 00:37 - 2010-11-21 09:06 - 00000000 ____D C:\windows\system32\Printing_Admin_Scripts 2013-08-07 00:37 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\com 2013-08-07 00:36 - 2012-04-21 05:19 - 00000000 ____D C:\windows\SysWOW64\it 2013-08-07 00:36 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\Printing_Admin_Scripts 2013-08-07 00:36 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-08-07 00:36 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2013-08-07 00:36 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2013-08-07 00:36 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2013-08-07 00:36 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\oobe 2013-08-07 00:36 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\migwiz 2013-08-07 00:36 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\com 2013-08-07 00:36 - 2009-07-14 05:20 - 00000000 ____D C:\windows\servicing 2013-08-07 00:35 - 2009-07-14 07:32 - 00000000 ____D C:\windows\system32\WinBioPlugIns 2013-08-07 00:34 - 2012-04-21 05:19 - 00000000 ____D C:\windows\system32\it 2013-08-07 00:33 - 2012-04-21 05:03 - 00000000 ____D C:\windows\SysWOW64\fr 2013-08-07 00:32 - 2012-04-21 05:03 - 00000000 ____D C:\windows\system32\fr 2013-08-07 00:32 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\DVD Maker 2013-08-05 21:38 - 2012-04-21 07:44 - 00692104 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe 2013-08-05 21:38 - 2012-04-21 07:44 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-08-05 21:38 - 2012-04-21 07:44 - 00003768 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater 2013-08-05 21:23 - 2013-08-05 21:23 - 00000000 ____D C:\windows\system32\Macromed 2013-08-05 21:23 - 2013-08-05 21:23 - 00000000 ____D C:\Users\Chris\AppData\Local\Macromedia 2013-08-05 21:23 - 2013-08-05 21:22 - 00000000 ____D C:\Users\Chris\AppData\Local\Adobe 2013-08-04 23:19 - 2013-08-03 09:51 - 00058016 _____ C:\Users\Chris\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-04 23:19 - 2013-08-03 09:50 - 00001425 _____ C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-04 23:19 - 2013-08-03 09:50 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-08-04 23:19 - 2013-08-03 09:50 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-08-04 23:16 - 2009-07-14 06:45 - 00275856 _____ C:\windows\system32\FNTCACHE.DAT 2013-08-04 23:13 - 2009-07-14 05:20 - 00000000 ____D C:\windows\PolicyDefinitions 2013-08-04 23:12 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\zh-HK 2013-08-04 23:12 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\tr-TR 2013-08-04 23:12 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\zh-HK 2013-08-04 23:12 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\tr-TR 2013-08-04 21:52 - 2013-08-04 21:22 - 00016471 _____ C:\windows\IE10_main.log 2013-08-04 21:29 - 2013-08-04 21:29 - 01509376 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2013-08-04 21:29 - 2013-08-04 21:29 - 01441280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl 2013-08-04 21:29 - 2013-08-04 21:29 - 01400416 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat 2013-08-04 21:29 - 2013-08-04 21:29 - 01400416 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat 2013-08-04 21:29 - 2013-08-04 21:29 - 01054720 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00905728 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00719360 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00629248 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00523264 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\html.iec 2013-08-04 21:29 - 2013-08-04 21:29 - 00361984 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec 2013-08-04 21:29 - 2013-08-04 21:29 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00270848 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00242200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\url.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00232960 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00204800 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00185344 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00173568 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00150528 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\occache.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00138752 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00125440 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00110592 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00097280 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00079872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx 2013-08-04 21:29 - 2013-08-04 21:29 - 00073728 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx 2013-08-04 21:29 - 2013-08-04 21:29 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe 2013-08-04 21:24 - 2013-08-04 21:24 - 03928064 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 03419136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02776576 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02284544 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01988096 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01682432 _____ (Microsoft Corporation) C:\windows\system32\XpsPrint.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01238528 _____ (Microsoft Corporation) C:\windows\system32\d3d10.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01175552 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01158144 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsPrint.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01080832 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00648192 _____ (Microsoft Corporation) C:\windows\system32\d3d10level9.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00604160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10level9.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00522752 _____ (Microsoft Corporation) C:\windows\system32\XpsGdiConverter.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00465920 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00417792 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00364544 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsGdiConverter.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00363008 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00333312 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\d3d10core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00293376 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxgi.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00249856 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00245248 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecsExt.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00207872 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecsExt.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00194560 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00187392 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIAnimation.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00161792 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00010752 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00010752 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00009728 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00009728 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00002560 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00002560 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-04 19:57 - 2013-08-04 19:57 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-08-04 19:57 - 2013-04-20 18:10 - 00000000 ____D C:\ProgramData\Skype 2013-08-04 19:55 - 2013-08-04 19:54 - 32782192 _____ (Skype Technologies S.A.) C:\Users\Chris\Downloads\SkypeSetupFull_6.7.102.exe 2013-08-04 19:40 - 2013-08-04 19:40 - 00000000 ____D C:\Users\Chris\AppData\Local\Mozilla 2013-08-04 19:40 - 2013-08-04 19:40 - 00000000 ____D C:\ProgramData\Mozilla 2013-08-04 19:39 - 2013-08-04 19:38 - 21703480 _____ (Mozilla) C:\Users\Chris\Downloads\Firefox_Setup_22.0.exe 2013-08-03 10:36 - 2013-08-03 10:32 - 108422648 _____ C:\Users\Chris\Downloads\avira_free_antivirus884_de.exe 2013-08-03 10:22 - 2013-08-03 10:22 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Macromedia 2013-08-03 09:59 - 2013-04-20 18:19 - 00001945 _____ C:\windows\epplauncher.mif 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Roaming\ATI 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Adobe 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Local\ATI 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\Documents\Bluetooth 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Synaptics 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Local\PDFC 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Local\bluesoleil 2013-08-03 09:50 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Roaming\hpqLog 2013-08-03 09:50 - 2013-08-03 09:44 - 00000000 ____D C:\Users\Chris 2013-08-03 09:50 - 2012-04-21 07:28 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2013-08-03 09:49 - 2013-08-03 09:49 - 00000000 ____D C:\Users\Chris\AppData\Local\VirtualStore 2013-08-03 09:48 - 2013-08-03 09:48 - 00000000 ____D C:\Users\Chris\AppData\Local\RemEngine 2013-08-03 09:48 - 2013-08-03 09:48 - 00000000 ____D C:\Users\Chris\AppData\Local\Hewlett-Packard_Company 2013-08-03 09:48 - 2013-04-20 18:03 - 00000000 ___RD C:\Program Files (x86)\Online Services 2013-08-03 09:48 - 2011-07-29 19:38 - 00000000 ___HD C:\SYSTEM.SAV 2013-08-03 09:48 - 2011-07-29 01:51 - 00000000 ____D C:\swsetup 2013-08-03 09:48 - 2009-07-14 07:32 - 00000000 ____D C:\windows\system32\restore 2013-08-03 09:46 - 2013-08-03 09:46 - 00000000 __RSH C:\windows\SysWOW64\Drivers\103C_HP_bNB_ProBook 4545s_Y5336AN_0U_Q2CE31614KQ_E669319-A41_4A_I17ED_SHP_V54.1E_B68CPD F.40_T130308_W748-1_L407_M3533_J500_7AMD_8F01_92.50_#120420_N10EC8168;18143290_(H5V74EA#ABD)_XMOBILE_CN10_Z_2A1019D1103.MRK 2013-08-03 09:46 - 2013-08-03 09:46 - 00000000 __RSH C:\windows\system32\Drivers\103C_HP_bNB_ProBook 4545s_Y5336AN_0U_Q2CE31614KQ_E669319-A41_4A_I17ED_SHP_V54.1E_B68CPD F.40_T130308_W748-1_L407_M3533_J500_7AMD_8F01_92.50_#120420_N10EC8168;18143290_(H5V74EA#ABD)_XMOBILE_CN10_Z_2A1019D1103.MRK 2013-08-03 09:46 - 2011-02-11 07:14 - 00000000 ____D C:\windows\Panther 2013-08-03 09:45 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Roaming\DigitalPersona 2013-08-03 09:45 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Local\DigitalPersona 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Vorlagen 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Startmenü 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Netzwerkumgebung 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Lokale Einstellungen 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Eigene Dateien 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Druckumgebung 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Documents\Eigene Musik 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Documents\Eigene Bilder 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Local\Verlauf 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Local\Anwendungsdaten 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Anwendungsdaten 2013-08-03 09:44 - 2011-02-11 07:19 - 00000000 __SHD C:\Recovery 2013-08-03 09:44 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\Recovery 2013-07-26 07:13 - 2013-08-14 23:51 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2013-07-26 07:13 - 2013-08-14 23:51 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2013-07-26 07:13 - 2013-08-14 23:51 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2013-07-26 07:12 - 2013-08-14 23:51 - 19239424 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 15405056 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 03958784 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 02647040 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2013-07-26 05:35 - 2013-08-14 23:51 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2013-07-26 05:13 - 2013-08-14 23:51 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll 2013-07-26 05:13 - 2013-08-14 23:51 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 14329344 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 02877440 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 02048512 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00039936 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll 2013-07-26 05:11 - 2013-08-14 23:51 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll 2013-07-26 05:11 - 2013-08-14 23:51 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll 2013-07-26 04:49 - 2013-08-14 23:51 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb 2013-07-26 04:39 - 2013-08-14 23:51 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe 2013-07-26 03:59 - 2013-08-14 23:51 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-25 11:25 - 2013-08-14 20:13 - 01888768 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL 2013-07-25 10:57 - 2013-08-14 20:13 - 01620992 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMVDECOD.DLL ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-12 19:17 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-08-2013 Ran by Chris at 2013-08-19 18:39:59 Running from C:\Users\Chris\Desktop Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.224) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) AMD Accelerated Video Transcoding (Version: 2.00.0002) AMD APP SDK Runtime (Version: 10.0.873.1) AMD AVIVO64 Codecs (Version: 12.2.0.20708) AMD Catalyst Install Manager (Version: 8.0.871.0) AMD Media Foundation Decoders (Version: 1.0.70708.2225) AMD Steady Video Plug-In (Version: 2.03.0000) AMD USB 3.0 Device Detector (Version: 2.1.27.0) AMD VISION Engine Control Center (x32 Version: 2012.0708.2230.38439) ArcSoft TotalMedia (x32 Version: 1.0.61.25) ArcSoft TotalMedia (x32 Version: 2.0.39.42) ArcSoft Webcam Sharing Manager (x32 Version: 2.0.0.39) Bonjour (Version: 3.0.0.10) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center Graphics Previews Common (x32 Version: 2012.0708.2230.38439) Catalyst Control Center Localization All (x32 Version: 2012.0708.2230.38439) CCC Help Chinese Standard (x32 Version: 2012.0708.2229.38439) CCC Help Chinese Traditional (x32 Version: 2012.0708.2229.38439) CCC Help Czech (x32 Version: 2012.0708.2229.38439) CCC Help Danish (x32 Version: 2012.0708.2229.38439) CCC Help Dutch (x32 Version: 2012.0708.2229.38439) CCC Help English (x32 Version: 2012.0708.2229.38439) CCC Help Finnish (x32 Version: 2012.0708.2229.38439) CCC Help French (x32 Version: 2012.0708.2229.38439) CCC Help German (x32 Version: 2012.0708.2229.38439) CCC Help Greek (x32 Version: 2012.0708.2229.38439) CCC Help Hungarian (x32 Version: 2012.0708.2229.38439) CCC Help Italian (x32 Version: 2012.0708.2229.38439) CCC Help Japanese (x32 Version: 2012.0708.2229.38439) CCC Help Korean (x32 Version: 2012.0708.2229.38439) CCC Help Norwegian (x32 Version: 2012.0708.2229.38439) CCC Help Polish (x32 Version: 2012.0708.2229.38439) CCC Help Portuguese (x32 Version: 2012.0708.2229.38439) CCC Help Russian (x32 Version: 2012.0708.2229.38439) CCC Help Spanish (x32 Version: 2012.0708.2229.38439) CCC Help Swedish (x32 Version: 2012.0708.2229.38439) CCC Help Thai (x32 Version: 2012.0708.2229.38439) CCC Help Turkish (x32 Version: 2012.0708.2229.38439) ccc-utility64 (Version: 2012.0708.2230.38439) Device Access Manager for HP ProtectTools (Version: 7.1.2.0) Diablo III (x32 Version: 1.0.8.16603) Drive Encryption For HP ProtectTools (Version: 7.0.28.30376) e Recognition for HP ProtectTools (Version: 7.01.4525) Energy Star Digital Logo (x32 Version: 1.0.1) Evernote v. 4.5.4 (x32 Version: 4.5.4.6487) File Sanitizer For HP ProtectTools (x32 Version: 7.0.0.5) Hewlett-Packard ACLM.NET v1.1.2.0 (x32 Version: 1.00.0000) HP 3D DriveGuard (Version: 5.0.8.0) HP Auto (Version: 1.0.12935.3667) HP Connection Manager (x32 Version: 4.2.50.1) HP Customer Experience Enhancements (x32 Version: 6.0.1.8) HP Documentation (x32 Version: 1.1.1.0) HP ESU for Microsoft Windows 7 (x32 Version: 2.0.6.1) HP HD Webcam Driver (x32 Version: 3.4.8.16) HP Hotkey Support (x32 Version: 4.5.9.1) HP Postscript Converter (Version: 3.0.3384) HP Power Assistant (Version: 2.5.0.16) HP ProtectTools Security Manager (Version: 7.0.0.1177) HP Setup (x32 Version: 9.1.15453.4066) HP SoftPaq Download Manager (x32 Version: 3.4.3.0) HP Software Framework (x32 Version: 4.5.10.1) HP Software Setup (x32 Version: 8.5.2.1) HP Support Assistant (x32 Version: 6.1.12.1) HP System Default Settings (x32 Version: 2.4.1.2) HP Wallpaper (x32 Version: 3.0.0.1) IDT Audio (x32 Version: 1.0.6392.0) JMicron Flash Media Controller Driver (x32 Version: 1.0.68.0) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Microsoft Antimalware (Version: 3.0.8402.2) Microsoft Antimalware Service Multi-Language Pack (Version: 3.0.8402.2) Microsoft Office 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000) Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000) Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.5139.5005) Microsoft Security Client (Version: 2.1.1116.0) Microsoft Security Client MUI Language Pack (Version: 2.1.1116.0) Microsoft Security Essentials (Version: 2.1.1116.0) Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (Version: 8.0.50727.4053) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Mozilla Firefox 23.0.1 (x86 de) (x32 Version: 23.0.1) Mozilla Maintenance Service (x32 Version: 23.0.1) opensource (x32 Version: 1.0.14960.3876) PDF Complete Corporate Edition (x32 Version: 4.0.93) Privacy Manager for HP ProtectTools (Version: 7.0.0.865) Ralink Bluetooth Stack64 (Version: 9.0.717.0) Ralink RT3290 802.11bgn Wi-Fi Adapter (x32 Version: 5.0.2.0) Realtek Ethernet Controller All-In-One Windows Driver (x32 Version: 7.50.1123.2011) SDK (x32 Version: 2.30.042) Skype™ 6.7 (x32 Version: 6.7.102) Synaptics Pointing Device Driver (Version: 16.0.3.0) Theft Recovery for HP ProtectTools (x32 Version: 7.0.0.10) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1) Validity Fingerprint Sensor Driver (Version: 4.4.213.0) WinZip 15.0 (Version: 15.0.10039) ==================== Restore Points ========================= 05-08-2013 21:40:31 Windows Update 06-08-2013 21:27:34 Sprachpaketdeinstallation 09-08-2013 18:53:28 Windows Update 12-08-2013 15:53:53 Windows Update 14-08-2013 21:43:42 Windows Update 18-08-2013 18:24:35 Windows Update 18-08-2013 21:36:47 Removed 7-Zip 9.21 ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {13171765-C7C9-40C1-9B4D-B7EA3D1D0C33} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater\HPSFUpdater.exe [2011-06-14] (Hewlett-Packard) Task: {2871FC3D-182E-42F3-A50C-61A7D261DE27} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPSFMessenger\HPSFMsgr.exe [2011-09-10] (Hewlett-Packard Company) Task: {664B3282-928A-4C1F-A5C7-BBCA26767195} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-05] (Adobe Systems Incorporated) Task: {7EA8F097-EC95-4986-BACF-E35E84661DEB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2011-09-10] (Hewlett-Packard Company) Task: {91793489-AE04-4567-A37F-ECFCB52F0B4C} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\windows\System32\lpksetup.exe [2010-11-21] (Microsoft Corporation) Task: {A95D473F-48C6-4C1C-83AA-84441F002806} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Tuneup => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2011-09-10] (Hewlett-Packard Company) Task: {BCBF5D48-A8EE-4A95-9518-D893CADCDCC6} - System32\Tasks\Microsoft\Microsoft Antimalware\MP Scheduled Scan => c:\Program Files\Microsoft Security Client\Antimalware\MpCmdRun.exe [2011-04-28] (Microsoft Corporation) Task: {C07E8D73-4EC1-4DA6-888A-2E77659D2ACB} - System32\Tasks\Registration => C:\Program Files (x86)\Hewlett-Packard\HP Setup\Dependencies\RemEngine.exe [2012-03-21] () Task: {DB144B2B-914F-4AEC-BBA2-757EB4BF8EFF} - System32\Tasks\User_Feed_Synchronization-{8F644E91-0779-4744-ACD3-D6E802ACE2A0} => C:\windows\system32\msfeedssync.exe [2013-08-04] (Microsoft Corporation) Task: {DB96FE78-2CCA-41E0-BFE4-7EFC16C03D36} - System32\Tasks\HPCeeScheduleForChris => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard) Task: {F4C3DD94-0CB1-46AC-81EC-5F2380E385CB} - System32\Tasks\Microsoft\Microsoft Antimalware\MpIdleTask => c:\Program Files\Microsoft Security Client\Antimalware\MpCmdRun.exe [2011-04-28] (Microsoft Corporation) Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\windows\Tasks\HPCeeScheduleForChris.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/19/2013 06:09:12 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/19/2013 08:09:21 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/19/2013 00:11:27 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/18/2013 08:14:16 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/15/2013 08:53:38 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "imaging1". Fehler in Manifest- oder Richtliniendatei "imaging2" in Zeile imaging3. Das imaging-Element wird als untergeordnetes Element des urn:schemas-microsoft-com:asm.v1^assembly-Elements angezeigt, das von dieser Windows-Version nicht unterstützt wird. Error: (08/15/2013 07:01:29 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/14/2013 09:51:11 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1139 Error: (08/14/2013 09:51:11 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1139 Error: (08/14/2013 09:51:11 PM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (08/14/2013 08:04:55 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (08/19/2013 06:09:24 PM) (Source: Microsoft Antimalware) (User: ) Description: Fehler in %%860-Echtzeitschutzfunktion. Funktion: %%835 Fehlercode: 0x80004005 Fehlerbeschreibung: Unbekannter Fehler Ursache: %%842 Error: (08/19/2013 06:08:53 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Offlinedateien" wurde mit folgendem Fehler beendet: %%3 Error: (08/19/2013 08:09:23 AM) (Source: Microsoft Antimalware) (User: ) Description: Fehler in %%860-Echtzeitschutzfunktion. Funktion: %%835 Fehlercode: 0x80004005 Fehlerbeschreibung: Unbekannter Fehler Ursache: %%842 Error: (08/19/2013 08:09:01 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Offlinedateien" wurde mit folgendem Fehler beendet: %%3 Error: (08/19/2013 00:11:28 AM) (Source: Microsoft Antimalware) (User: ) Description: Fehler in %%860-Echtzeitschutzfunktion. Funktion: %%835 Fehlercode: 0x80004005 Fehlerbeschreibung: Unbekannter Fehler Ursache: %%842 Error: (08/19/2013 00:11:04 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Offlinedateien" wurde mit folgendem Fehler beendet: %%3 Error: (08/18/2013 08:14:27 PM) (Source: Microsoft Antimalware) (User: ) Description: Fehler in %%860-Echtzeitschutzfunktion. Funktion: %%835 Fehlercode: 0x80004005 Fehlerbeschreibung: Unbekannter Fehler Ursache: %%842 Error: (08/18/2013 08:13:55 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Offlinedateien" wurde mit folgendem Fehler beendet: %%3 Error: (08/15/2013 07:01:35 PM) (Source: Microsoft Antimalware) (User: ) Description: Fehler in %%860-Echtzeitschutzfunktion. Funktion: %%835 Fehlercode: 0x80004005 Fehlerbeschreibung: Unbekannter Fehler Ursache: %%842 Error: (08/15/2013 07:01:03 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Offlinedateien" wurde mit folgendem Fehler beendet: %%3 Microsoft Office Sessions: ========================= Error: (08/19/2013 06:09:12 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/19/2013 08:09:21 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/19/2013 00:11:27 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/18/2013 08:14:16 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/15/2013 08:53:38 PM) (Source: SideBySide)(User: ) Description: imagingurn:schemas-microsoft-com:asm.v1^assemblyc:\program files\microsoft security client\MSESysprep.dllc:\program files\microsoft security client\MSESysprep.dll10 Error: (08/15/2013 07:01:29 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/14/2013 09:51:11 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1139 Error: (08/14/2013 09:51:11 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1139 Error: (08/14/2013 09:51:11 PM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (08/14/2013 08:04:55 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Percentage of memory in use: 42% Total physical RAM: 3532.11 MB Available physical RAM: 2027 MB Total Pagefile: 7062.41 MB Available Pagefile: 5058.71 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:442.85 GB) (Free:388.24 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive e: (HP_TOOLS) (Fixed) (Total:1.99 GB) (Free:1.98 GB) FAT32 Drive g: (HP_RECOVERY) (Fixed) (Total:20.61 GB) (Free:3.17 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: A6451A16) Partition 1: (Active) - (Size=300 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=443 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=21 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=2 GB) - (Type=0C) ==================== End Of Log ============================ |
20.08.2013, 11:31 | #4 |
/// the machine /// TB-Ausbilder | Delta Search Problem Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
20.08.2013, 19:15 | #5 |
| Delta Search Problem Hallo schrauber, hier kommen die Logs: Code:
ATTFilter Malwarebytes Anti-Malware (Test) 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.08.20.05 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 10.0.9200.16660 Chris :: CHRIS-HP [Administrator] Schutz: Aktiviert 20.08.2013 19:40:24 mbam-log-2013-08-20 (19-40-24).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 212468 Laufzeit: 4 Minute(n), 47 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 3 HKCR\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\SOFTWARE\DataMngr_Toolbar (PUP.Optional.DataMngr) -> Erfolgreich gelöscht und in Quarantäne gestellt. HKCU\Software\DataMngr (PUP.Optional.DataMngr) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 1 C:\Users\Chris\AppData\Roaming\Babylon (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. Infizierte Dateien: 6 C:\Users\Chris\AppData\Local\Temp\AA859D8F-BAB0-7891-805E-B41FEC299D05\Latest\BabMaint.exe (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Chris\AppData\Local\Temp\AA859D8F-BAB0-7891-805E-B41FEC299D05\Latest\BUSolution.dll (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Chris\AppData\Local\Temp\AA859D8F-BAB0-7891-805E-B41FEC299D05\Latest\MyDeltaTB.exe (PUP.Optional.Delta) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Chris\AppData\Local\Temp\AA859D8F-BAB0-7891-805E-B41FEC299D05\Latest\Setup.exe (PUP.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Chris\AppData\Local\Temp\is357113909\DeltaTB.exe (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. C:\Users\Chris\AppData\Roaming\Babylon\log_file.txt (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) Code:
ATTFilter 2013/08/20 19:36:13 +0200 CHRIS-HP Chris MESSAGE Executing scheduled update: Daily 2013/08/20 19:36:19 +0200 CHRIS-HP Chris MESSAGE Starting protection 2013/08/20 19:36:19 +0200 CHRIS-HP Chris MESSAGE Protection started successfully 2013/08/20 19:36:20 +0200 CHRIS-HP Chris MESSAGE Starting IP protection 2013/08/20 19:36:48 +0200 CHRIS-HP Chris MESSAGE IP Protection started successfully 2013/08/20 19:38:05 +0200 CHRIS-HP Chris MESSAGE Scheduled update executed successfully: database updated from version v2013.04.04.07 to version v2013.08.20.05 2013/08/20 19:38:05 +0200 CHRIS-HP Chris MESSAGE Starting database refresh 2013/08/20 19:38:05 +0200 CHRIS-HP Chris MESSAGE Stopping IP protection 2013/08/20 19:38:15 +0200 CHRIS-HP Chris MESSAGE IP Protection stopped successfully 2013/08/20 19:38:20 +0200 CHRIS-HP Chris MESSAGE Database refreshed successfully 2013/08/20 19:38:20 +0200 CHRIS-HP Chris MESSAGE Starting IP protection 2013/08/20 19:38:26 +0200 CHRIS-HP Chris MESSAGE IP Protection started successfully 2013/08/20 19:48:26 +0200 CHRIS-HP (null) MESSAGE Starting protection 2013/08/20 19:48:26 +0200 CHRIS-HP (null) MESSAGE Protection started successfully 2013/08/20 19:48:26 +0200 CHRIS-HP (null) MESSAGE Starting IP protection 2013/08/20 19:48:34 +0200 CHRIS-HP (null) MESSAGE IP Protection started successfully 2013/08/20 19:57:21 +0200 CHRIS-HP (null) MESSAGE Starting protection 2013/08/20 19:57:21 +0200 CHRIS-HP (null) MESSAGE Protection started successfully 2013/08/20 19:57:21 +0200 CHRIS-HP (null) MESSAGE Starting IP protection 2013/08/20 19:57:29 +0200 CHRIS-HP (null) MESSAGE IP Protection started successfully Code:
ATTFilter # AdwCleaner v3.000 - Report created 20/08/2013 at 19:54:40 # Updated 20/08/2013 by Xplode # Operating System : Windows 7 Professional Service Pack 1 (64 bits) # Username : Chris - CHRIS-HP # Running from : C:\Users\Chris\Desktop\adwcleaner.exe # Option : Scan ***** [ Services ] ***** ***** [ Files / Folders ] ***** Folder Found C:\ProgramData\Babylon ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Key Found : HKCU\Software\BabSolution Key Found : HKCU\Software\Delta Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827} Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671} Key Found : [x64] HKCU\Software\BabSolution Key Found : [x64] HKCU\Software\Delta Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827} Key Found : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671} Key Found : HKLM\SOFTWARE\592d78ae739ed40 Key Found : HKLM\SOFTWARE\Classes\Prod.cap Key Found : HKLM\SOFTWARE\Classes\Prod.cap Key Found : HKLM\Software\DataMngr Key Found : HKLM\Software\Delta Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827} Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671} Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827} Key Found : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671} ***** [ Browsers ] ***** -\\ Internet Explorer v10.0.9200.16660 -\\ Mozilla Firefox v23.0.1 (de) [ File : C:\Users\Chris\AppData\Roaming\Mozilla\Firefox\Profiles\ljtjfzlm.default\prefs.js ] ************************* AdwCleaner[R0].txt - [2097 octets] - [20/08/2013 19:54:40] ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [2157 octets] ########## Code:
ATTFilter # AdwCleaner v3.000 - Report created 20/08/2013 at 19:55:58 # Updated 20/08/2013 by Xplode # Operating System : Windows 7 Professional Service Pack 1 (64 bits) # Username : Chris - CHRIS-HP # Running from : C:\Users\Chris\Desktop\adwcleaner.exe # Option : Clean ***** [ Services ] ***** ***** [ Files / Folders ] ***** Folder Deleted : C:\ProgramData\Babylon ***** [ Shortcuts ] ***** ***** [ Registry ] ***** Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap Key Deleted : HKLM\SOFTWARE\592d78ae739ed40 Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9} Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827} Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827} Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671} Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{2FA28606-DE77-4029-AF96-B231E3B8F827} Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671} Key Deleted : HKCU\Software\BabSolution Key Deleted : HKCU\Software\Delta Key Deleted : HKLM\Software\DataMngr Key Deleted : HKLM\Software\Delta ***** [ Browsers ] ***** -\\ Internet Explorer v10.0.9200.16660 -\\ Mozilla Firefox v23.0.1 (de) [ File : C:\Users\Chris\AppData\Roaming\Mozilla\Firefox\Profiles\ljtjfzlm.default\prefs.js ] ************************* AdwCleaner[R0].txt - [2265 octets] - [20/08/2013 19:54:40] AdwCleaner[S0].txt - [1741 octets] - [20/08/2013 19:55:58] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1801 octets] ########## FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-08-2013 04 Ran by Chris (administrator) on 20-08-2013 20:02:45 Running from C:\Users\Chris\Desktop Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation) c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe (DigitalPersona, Inc.) c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe (AMD) C:\windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (Hewlett-Packard Company) C:\windows\system32\Hpservice.exe (AMD) C:\windows\system32\atieclxx.exe (Validity Sensors, Inc.) C:\windows\system32\vcsFPService.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe () C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe (PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (ArcSoft, Inc.) C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (DigitalPersona, Inc.) c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Advanced Micro Devices, Inc.) C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe (Microsoft Corporation) c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (DigitalPersona, Inc.) c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe (Microsoft Corporation) C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Portrait Displays, Inc) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe (Hewlett-Packard Development Company, L.P.) c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2887440 2012-03-09] (Synaptics Incorporated) HKLM\...\Run: [NUSB3MON] - C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe [97280 2012-04-11] (Advanced Micro Devices, Inc.) HKLM\...\Run: [HPPowerAssistant] - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [3488640 2012-03-14] (Hewlett-Packard Company) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-03-05] (IDT, Inc.) HKLM\...\Run: [MfeEpePcMonitor] - "C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe" [x] HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1436736 2011-06-15] (Microsoft Corporation) HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe, HKLM-x32\...\Run: [PDF Complete] - C:\Program Files (x86)\PDF Complete\pdfsty.exe [684024 2012-03-07] (PDF Complete Inc) HKLM-x32\...\Run: [QLBController] - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [319360 2012-03-14] (Hewlett-Packard Company) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [630952 2012-07-09] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [AMD AVT] - C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe [12288 2012-04-20] () HKLM-x32\...\Run: [DTRun] - c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [517456 2010-11-24] (ArcSoft Inc.) HKLM-x32\...\Run: [HPConnectionManager] - c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [184704 2012-03-16] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [BtTray] - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [364032 2012-08-16] (IVT Corporation) HKLM-x32\...\Run: [File Sanitizer] - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [12310616 2012-03-22] (Hewlett-Packard) Lsa: [Notification Packages] DPPassFilter scecli ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCOM/10 HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.bing.com SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO-x32: File Sanitizer for HP ProtectTools - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard) BHO-x32: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] 83.169.185.225 83.169.185.161 FireFox: ======== FF ProfilePath: C:\Users\Chris\AppData\Roaming\Mozilla\Firefox\Profiles\ljtjfzlm.default FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt\ FF Extension: DigitalPersona Extension - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt\ ==================== Services (Whitelisted) ================= S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1578496 2012-08-14] (IVT Corporation) R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [138752 2012-08-14] (IVT Corporation) R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [493904 2012-03-15] (DigitalPersona, Inc.) S3 FLCDLOCK; c:\windows\SysWOW64\flcdlock.exe [477056 2012-11-19] (Hewlett-Packard Company) R2 HPAuto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [682040 2011-02-17] (Hewlett-Packard) R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [365440 2012-03-14] (Hewlett-Packard Company) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [1327104 2012-03-22] () R2 MsMpSvc; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [12784 2011-04-28] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [288272 2011-04-28] (Microsoft Corporation) R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1134584 2012-03-07] (PDF Complete Inc) R2 uArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [498352 2012-04-05] (ArcSoft, Inc.) ==================== Drivers (Whitelisted) ==================== R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [31872 2012-01-31] (Advanced Micro Devices, Inc.) R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [42816 2012-02-03] (ArcSoft, Inc.) R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23104 2011-08-13] (Ralink Corporation) S3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [51776 2012-04-03] (Ralink Corporation) S3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48320 2012-03-05] (Ralink Corporation) S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [64832 2012-11-09] (Hewlett-Packard Company) R3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R0 MfeEpeOpal; C:\Windows\System32\Drivers\MfeEpeOpal.sys [93640 2012-03-22] (McAfee, Inc.) R0 MfeEpePc; C:\Windows\System32\Drivers\MfeEpePc.sys [158792 2012-03-22] (McAfee, Inc.) R1 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [189440 2011-04-18] (Microsoft Corporation) R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [84864 2011-04-28] (Microsoft Corporation) R3 rtbth; C:\Windows\System32\DRIVERS\rtbth.sys [685152 2012-06-14] (Ralink Technology, Corp.) R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [1064184 2012-09-22] (Sunplus) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-20 19:52 - 2013-08-20 19:55 - 00000000 ____D C:\AdwCleaner 2013-08-20 19:50 - 2013-08-20 19:51 - 00975858 _____ C:\Users\Chris\Desktop\adwcleaner.exe 2013-08-20 19:36 - 2013-08-20 19:36 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Malwarebytes 2013-08-20 19:35 - 2013-08-20 19:35 - 00001113 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-20 19:35 - 2013-08-20 19:35 - 00001113 _____ C:\ProgramData\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-20 19:35 - 2013-08-20 19:35 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-20 19:34 - 2013-08-20 19:35 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-20 19:34 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys 2013-08-20 19:33 - 2013-08-20 19:33 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Chris\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-19 18:46 - 2013-08-19 18:47 - 00000000 ____D C:\Users\Chris\Desktop\Scan Tool 2013-08-19 18:38 - 2013-08-19 18:38 - 00000000 ____D C:\FRST 2013-08-19 00:30 - 2013-08-19 00:30 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Mozilla 2013-08-19 00:29 - 2013-08-19 00:29 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-08-19 00:29 - 2013-08-19 00:29 - 00001151 _____ C:\ProgramData\Desktop\Mozilla Firefox.lnk 2013-08-19 00:29 - 2013-08-19 00:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-19 00:28 - 2013-08-19 00:29 - 22240760 _____ (Mozilla) C:\Users\Chris\Downloads\Firefox_Setup_23.0.1.exe 2013-08-19 00:26 - 2013-08-19 00:26 - 02828552 _____ (AVAST Software) C:\Users\Chris\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-08-18 23:54 - 2013-08-18 23:54 - 00792704 _____ (AMD) C:\Users\Chris\Downloads\amddriverdownloader.exe 2013-08-18 23:54 - 2013-08-18 23:54 - 00000000 ____D C:\AMD 2013-08-18 23:37 - 2013-08-18 23:37 - 00000000 ____D C:\windows\system32\appmgmt 2013-08-18 23:24 - 2013-08-18 23:24 - 00000000 ____D C:\Users\Chris\Documents\Diablo III 2013-08-18 22:07 - 2013-08-18 23:23 - 00000000 ____D C:\Program Files (x86)\Diablo III 2013-08-18 22:07 - 2013-08-18 22:38 - 00001162 _____ C:\Users\Public\Desktop\Diablo III.lnk 2013-08-18 22:07 - 2013-08-18 22:38 - 00001162 _____ C:\ProgramData\Desktop\Diablo III.lnk 2013-08-18 22:07 - 2013-08-18 22:38 - 00000000 ____D C:\ProgramData\Blizzard Entertainment 2013-08-18 22:06 - 2013-08-18 22:07 - 00000000 ____D C:\ProgramData\Battle.net 2013-08-18 21:18 - 2013-08-19 00:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-14 23:51 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2013-08-14 23:51 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2013-08-14 23:51 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2013-08-14 23:51 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2013-08-14 23:51 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2013-08-14 23:51 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll 2013-08-14 23:51 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll 2013-08-14 23:51 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll 2013-08-14 23:51 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll 2013-08-14 23:51 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb 2013-08-14 23:51 - 2013-07-26 04:39 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe 2013-08-14 23:51 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe 2013-08-14 23:44 - 2013-08-14 23:46 - 00000000 ____D C:\windows\system32\MRT 2013-08-14 20:13 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL 2013-08-14 20:13 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMVDECOD.DLL 2013-08-14 20:13 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll 2013-08-14 20:13 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll 2013-08-14 20:13 - 2013-07-09 08:03 - 05550528 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe 2013-08-14 20:13 - 2013-07-09 07:54 - 01732032 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll 2013-08-14 20:13 - 2013-07-09 07:53 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll 2013-08-14 20:13 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll 2013-08-14 20:13 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll 2013-08-14 20:13 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll 2013-08-14 20:13 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll 2013-08-14 20:13 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll 2013-08-14 20:13 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe 2013-08-14 20:13 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe 2013-08-14 20:13 - 2013-07-09 06:53 - 01292192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll 2013-08-14 20:13 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll 2013-08-14 20:13 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll 2013-08-14 20:13 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll 2013-08-14 20:13 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll 2013-08-14 20:13 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptnet.dll 2013-08-14 20:13 - 2013-07-09 04:49 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll 2013-08-14 20:12 - 2013-07-09 06:52 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll 2013-08-14 20:12 - 2013-07-09 04:49 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe 2013-08-14 20:12 - 2013-07-09 04:49 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe 2013-08-14 20:12 - 2013-07-09 04:49 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe 2013-08-14 20:12 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys 2013-08-14 20:12 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys 2013-08-11 21:17 - 2013-08-20 00:04 - 00003182 _____ C:\windows\System32\Tasks\HPCeeScheduleForChris 2013-08-11 21:17 - 2013-08-20 00:04 - 00000332 _____ C:\windows\Tasks\HPCeeScheduleForChris.job 2013-08-11 13:04 - 2013-08-11 21:33 - 00000000 ____D C:\ProgramData\VirtualizedApplications 2013-08-11 11:01 - 2013-08-11 11:01 - 00000000 __RHD C:\MSOCache 2013-08-11 10:54 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Roaming\SoftGrid Client 2013-08-11 10:54 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Local\SoftGrid Client 2013-08-11 10:53 - 2013-08-12 17:55 - 00000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client 2013-08-11 10:53 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Roaming\TP 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\windows\PCHEALTH 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\Program Files\Microsoft Office 2013-08-11 10:52 - 2013-08-11 10:52 - 00009079 _____ C:\Users\Chris\Downloads\für Chris.xlsx 2013-08-05 21:23 - 2013-08-05 21:23 - 00000000 ____D C:\windows\system32\Macromed 2013-08-05 21:23 - 2013-08-05 21:23 - 00000000 ____D C:\Users\Chris\AppData\Local\Macromedia 2013-08-05 21:22 - 2013-08-05 21:23 - 00000000 ____D C:\Users\Chris\AppData\Local\Adobe 2013-08-05 18:09 - 2013-04-17 09:02 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll 2013-08-05 18:09 - 2013-04-17 08:24 - 01424384 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll 2013-08-04 23:33 - 2013-08-14 23:44 - 78161360 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2013-08-04 23:25 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\windows\SysWOW64\DWrite.dll 2013-08-04 23:25 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll 2013-08-04 21:54 - 2012-07-26 06:55 - 00785512 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Wdf01000.sys 2013-08-04 21:54 - 2012-07-26 06:55 - 00054376 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdfLdr.sys 2013-08-04 21:54 - 2012-07-26 04:36 - 00009728 _____ (Microsoft Corporation) C:\windows\system32\Wdfres.dll 2013-08-04 21:54 - 2012-06-02 16:35 - 00000003 _____ C:\windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2013-08-04 21:29 - 2013-08-04 21:29 - 01509376 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2013-08-04 21:29 - 2013-08-04 21:29 - 01441280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl 2013-08-04 21:29 - 2013-08-04 21:29 - 01400416 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat 2013-08-04 21:29 - 2013-08-04 21:29 - 01400416 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat 2013-08-04 21:29 - 2013-08-04 21:29 - 01054720 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00905728 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00719360 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00629248 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00523264 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\html.iec 2013-08-04 21:29 - 2013-08-04 21:29 - 00361984 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec 2013-08-04 21:29 - 2013-08-04 21:29 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00270848 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00242200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\url.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00232960 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00204800 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00185344 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00173568 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00150528 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\occache.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00138752 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00125440 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00110592 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00097280 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00079872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx 2013-08-04 21:29 - 2013-08-04 21:29 - 00073728 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx 2013-08-04 21:29 - 2013-08-04 21:29 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe 2013-08-04 21:24 - 2013-08-04 21:24 - 03928064 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 03419136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02776576 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02284544 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01988096 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01682432 _____ (Microsoft Corporation) C:\windows\system32\XpsPrint.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01238528 _____ (Microsoft Corporation) C:\windows\system32\d3d10.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01175552 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01158144 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsPrint.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01080832 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00648192 _____ (Microsoft Corporation) C:\windows\system32\d3d10level9.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00604160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10level9.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00522752 _____ (Microsoft Corporation) C:\windows\system32\XpsGdiConverter.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00465920 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00417792 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00364544 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsGdiConverter.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00363008 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00333312 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\d3d10core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00293376 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxgi.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00249856 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00245248 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecsExt.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00207872 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecsExt.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00194560 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00187392 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIAnimation.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00161792 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00010752 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00010752 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00009728 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00009728 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00002560 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00002560 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-04 21:22 - 2013-08-04 21:52 - 00016471 _____ C:\windows\IE10_main.log 2013-08-04 21:15 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\windows\system32\browserchoice.exe 2013-08-04 20:53 - 2012-12-16 19:11 - 00046080 _____ (Adobe Systems) C:\windows\system32\atmlib.dll 2013-08-04 20:53 - 2012-12-16 16:45 - 00367616 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll 2013-08-04 20:53 - 2012-12-16 16:13 - 00295424 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll 2013-08-04 20:53 - 2012-12-16 16:13 - 00034304 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll 2013-08-04 20:52 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\windows\system32\WUDFx.dll 2013-08-04 20:52 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\windows\system32\WUDFHost.exe 2013-08-04 20:52 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\windows\system32\WUDFPlatform.dll 2013-08-04 20:52 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\windows\system32\WUDFSvc.dll 2013-08-04 20:52 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\windows\system32\WUDFCoinstaller.dll 2013-08-04 20:52 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WUDFRd.sys 2013-08-04 20:52 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WUDFPf.sys 2013-08-04 20:52 - 2012-06-02 16:57 - 00000003 _____ C:\windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2013-08-04 20:33 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fs_rec.sys 2013-08-04 20:33 - 2012-03-01 08:33 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\imagehlp.dll 2013-08-04 20:33 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\windows\system32\wmi.dll 2013-08-04 20:33 - 2012-03-01 07:33 - 00159232 _____ (Microsoft Corporation) C:\windows\SysWOW64\imagehlp.dll 2013-08-04 20:33 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmi.dll 2013-08-04 20:09 - 2013-04-10 07:24 - 00983912 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys 2013-08-04 20:09 - 2013-04-10 07:24 - 00265064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms1.sys 2013-08-04 20:09 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\windows\system32\tsgqec.dll 2013-08-04 20:09 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll 2013-08-04 20:09 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\windows\system32\aaclient.dll 2013-08-04 20:09 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll 2013-08-04 20:09 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\windows\SysWOW64\aaclient.dll 2013-08-04 20:09 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\windows\SysWOW64\tsgqec.dll 2013-08-04 20:09 - 2013-01-03 08:00 - 00288088 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS 2013-08-04 20:09 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\windows\system32\dhcpcore6.dll 2013-08-04 20:09 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\windows\system32\dhcpcsvc6.dll 2013-08-04 20:09 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\windows\SysWOW64\dhcpcore6.dll 2013-08-04 20:09 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\windows\SysWOW64\dhcpcsvc6.dll 2013-08-04 20:09 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\windows\system32\poqexec.exe 2013-08-04 20:09 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\windows\SysWOW64\poqexec.exe 2013-08-04 20:08 - 2013-04-12 16:45 - 01656680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys 2013-08-04 20:08 - 2013-03-19 07:53 - 00230400 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll 2013-08-04 20:08 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\wwanprotdim.dll 2013-08-04 20:08 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\windows\system32\consent.exe 2013-08-04 20:08 - 2013-02-27 07:52 - 14172672 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll 2013-08-04 20:08 - 2013-02-27 07:52 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll 2013-08-04 20:08 - 2013-02-27 07:48 - 01930752 _____ (Microsoft Corporation) C:\windows\system32\authui.dll 2013-08-04 20:08 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\windows\system32\appinfo.dll 2013-08-04 20:08 - 2013-02-27 06:55 - 12872704 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll 2013-08-04 20:08 - 2013-02-27 06:55 - 00180224 _____ (Microsoft Corporation) C:\windows\SysWOW64\shdocvw.dll 2013-08-04 20:08 - 2013-02-27 06:49 - 01796096 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll 2013-08-04 20:08 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usb8023.sys 2013-08-04 20:08 - 2012-11-01 07:43 - 02002432 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll 2013-08-04 20:08 - 2012-11-01 07:43 - 01882624 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll 2013-08-04 20:08 - 2012-11-01 06:47 - 01389568 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll 2013-08-04 20:08 - 2012-11-01 06:47 - 01236992 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00303104 _____ (Microsoft Corporation) C:\windows\system32\nlasvc.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\windows\system32\netcorehc.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\windows\system32\ncsi.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\windows\system32\nlaapi.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\windows\system32\netevent.dll 2013-08-04 20:08 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\windows\system32\iphlpsvc.dll 2013-08-04 20:08 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\windows\SysWOW64\netcorehc.dll 2013-08-04 20:08 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncsi.dll 2013-08-04 20:08 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\windows\SysWOW64\netevent.dll 2013-08-04 20:08 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpipreg.sys 2013-08-04 20:08 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys 2013-08-04 20:08 - 2012-08-22 20:12 - 00376688 _____ (Microsoft Corporation) C:\windows\system32\Drivers\netio.sys 2013-08-04 20:08 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\Drivers\RNDISMP.sys 2013-08-04 20:08 - 2012-06-02 07:50 - 00458704 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys 2013-08-04 20:08 - 2012-06-02 07:48 - 00151920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys 2013-08-04 20:08 - 2012-06-02 07:48 - 00095600 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys 2013-08-04 20:08 - 2012-06-02 07:45 - 00340992 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll 2013-08-04 20:08 - 2012-06-02 06:40 - 00225280 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll 2013-08-04 20:08 - 2012-06-02 06:40 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll 2013-08-04 20:08 - 2012-06-02 06:34 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll 2013-08-04 20:08 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\rdpcorekmts.dll 2013-08-04 20:08 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\rdpwsx.dll 2013-08-04 20:08 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\windows\system32\rdrmemptylst.exe 2013-08-04 20:08 - 2012-01-13 09:12 - 00052224 _____ (Microsoft Corporation) C:\windows\SysWOW64\nlaapi.dll 2013-08-04 20:08 - 2010-06-26 05:55 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll 2013-08-04 20:08 - 2010-06-26 05:24 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3r.dll 2013-08-04 20:07 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll 2013-08-04 20:07 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll 2013-08-04 20:07 - 2013-01-04 07:46 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll 2013-08-04 20:07 - 2012-11-20 07:48 - 00307200 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll 2013-08-04 20:07 - 2012-11-20 06:51 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll 2013-08-04 20:07 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\windows\system32\dpnet.dll 2013-08-04 20:07 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\windows\SysWOW64\dpnet.dll 2013-08-04 20:07 - 2012-05-01 07:40 - 00209920 _____ (Microsoft Corporation) C:\windows\system32\profsvc.dll 2013-08-04 20:06 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\Wpc.dll 2013-08-04 20:06 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\windows\system32\gameux.dll 2013-08-04 20:06 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\windows\SysWOW64\Wpc.dll 2013-08-04 20:06 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\windows\SysWOW64\gameux.dll 2013-08-04 20:06 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\windows\system32\oflc-nz.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\windows\system32\pegibbfc.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\windows\system32\csrr.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\windows\system32\usk.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\windows\system32\oflc.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\windows\system32\pegi-pt.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\windows\system32\pegi-fi.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\windows\system32\cero.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\windows\system32\esrb.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\windows\system32\fpb.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\windows\system32\cob-au.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\windows\system32\grb.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\windows\system32\pegi.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\windows\system32\djctq.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\windows\SysWOW64\cero.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\windows\SysWOW64\esrb.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\windows\SysWOW64\fpb.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\windows\SysWOW64\oflc-nz.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\windows\SysWOW64\pegibbfc.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\windows\SysWOW64\csrr.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\windows\SysWOW64\cob-au.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\windows\SysWOW64\usk.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\windows\SysWOW64\oflc.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\windows\SysWOW64\grb.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\windows\SysWOW64\pegi-pt.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\windows\SysWOW64\pegi-fi.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\windows\SysWOW64\pegi.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\windows\SysWOW64\djctq.rs 2013-08-04 20:06 - 2012-11-22 07:44 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll 2013-08-04 20:06 - 2012-11-22 06:45 - 00626688 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll 2013-08-04 20:06 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\windows\system32\OxpsConverter.exe 2013-08-04 20:05 - 2012-08-11 02:56 - 00715776 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll 2013-08-04 20:05 - 2012-08-11 01:56 - 00542208 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll 2013-08-04 20:05 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpwd.sys 2013-08-04 20:05 - 2012-04-07 14:31 - 03216384 _____ (Microsoft Corporation) C:\windows\system32\msi.dll 2013-08-04 20:05 - 2012-04-07 13:26 - 02342400 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll 2013-08-04 20:05 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\windows\system32\Drivers\partmgr.sys 2013-08-04 20:04 - 2012-11-30 07:45 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll 2013-08-04 20:04 - 2012-11-30 07:45 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll 2013-08-04 20:04 - 2012-11-30 07:43 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll 2013-08-04 20:04 - 2012-11-30 07:41 - 01161216 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll 2013-08-04 20:04 - 2012-11-30 07:41 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:53 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll 2013-08-04 20:04 - 2012-11-30 06:53 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 05:23 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe 2013-08-04 20:04 - 2012-11-30 04:38 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 04:38 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 04:38 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 04:38 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 01:17 - 00420064 _____ C:\windows\SysWOW64\locale.nls 2013-08-04 20:04 - 2012-11-30 01:15 - 00420064 _____ C:\windows\system32\locale.nls 2013-08-04 20:03 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys 2013-08-04 20:03 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\certenc.dll 2013-08-04 20:03 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\windows\system32\certutil.exe 2013-08-04 20:03 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\windows\SysWOW64\certutil.exe 2013-08-04 20:03 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\certenc.dll 2013-08-04 20:03 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\cryptdlg.dll 2013-08-04 20:03 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptdlg.dll 2013-08-04 20:03 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\windows\system32\win32spl.dll 2013-08-04 20:03 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32spl.dll 2013-08-04 20:03 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fvevol.sys 2013-08-04 20:03 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\windows\system32\taskhost.exe 2013-08-04 20:03 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\windows\SysWOW64\synceng.dll 2013-08-04 20:03 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\windows\system32\synceng.dll 2013-08-04 20:03 - 2012-07-06 22:07 - 00552960 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bthport.sys 2013-08-04 20:03 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\netapi32.dll 2013-08-04 20:03 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\browser.dll 2013-08-04 20:03 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\windows\system32\browcli.dll 2013-08-04 20:03 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\netapi32.dll 2013-08-04 20:03 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\browcli.dll 2013-08-04 20:03 - 2012-05-05 10:36 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll 2013-08-04 20:03 - 2012-05-05 09:46 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll 2013-08-04 20:02 - 2013-04-26 01:30 - 01505280 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d11.dll 2013-08-04 20:02 - 2013-04-01 00:52 - 01887232 _____ (Microsoft Corporation) C:\windows\system32\d3d11.dll 2013-08-04 20:02 - 2013-03-19 07:46 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll 2013-08-04 20:02 - 2013-03-19 06:47 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll 2013-08-04 20:02 - 2013-03-19 05:06 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe 2013-08-04 20:02 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\windows\system32\cdosys.dll 2013-08-04 20:02 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\windows\SysWOW64\cdosys.dll 2013-08-04 20:02 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll 2013-08-04 20:02 - 2012-02-11 08:36 - 00559104 _____ (Microsoft Corporation) C:\windows\system32\spoolsv.exe 2013-08-04 20:02 - 2012-02-11 08:36 - 00067072 _____ (Microsoft Corporation) C:\windows\splwow64.exe 2013-08-04 19:57 - 2013-08-19 21:04 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Skype 2013-08-04 19:57 - 2013-08-04 19:57 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-08-04 19:54 - 2013-08-04 19:55 - 32782192 _____ (Skype Technologies S.A.) C:\Users\Chris\Downloads\SkypeSetupFull_6.7.102.exe 2013-08-04 19:40 - 2013-08-04 19:40 - 00000000 ____D C:\Users\Chris\AppData\Local\Mozilla 2013-08-04 19:40 - 2013-08-04 19:40 - 00000000 ____D C:\ProgramData\Mozilla 2013-08-04 19:38 - 2013-08-04 19:39 - 21703480 _____ (Mozilla) C:\Users\Chris\Downloads\Firefox_Setup_22.0.exe 2013-08-03 10:32 - 2013-08-03 10:36 - 108422648 _____ C:\Users\Chris\Downloads\avira_free_antivirus884_de.exe 2013-08-03 10:30 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll 2013-08-03 10:30 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll 2013-08-03 10:30 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe 2013-08-03 10:30 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll 2013-08-03 10:30 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\windows\system32\wups.dll 2013-08-03 10:30 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll 2013-08-03 10:30 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll 2013-08-03 10:30 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll 2013-08-03 10:30 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe 2013-08-03 10:22 - 2013-08-03 10:22 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Macromedia 2013-08-03 09:53 - 2013-08-11 21:17 - 00000000 ____D C:\Users\Chris\AppData\Local\Hewlett-Packard 2013-08-03 09:51 - 2013-08-04 23:19 - 00058016 _____ C:\Users\Chris\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Roaming\ATI 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Adobe 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Local\ATI 2013-08-03 09:50 - 2013-08-20 18:12 - 00003930 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{8F644E91-0779-4744-ACD3-D6E802ACE2A0} 2013-08-03 09:50 - 2013-08-13 18:40 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Hewlett-Packard 2013-08-03 09:50 - 2013-08-04 23:19 - 00001425 _____ C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-03 09:50 - 2013-08-04 23:19 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-08-03 09:50 - 2013-08-04 23:19 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\Documents\Bluetooth 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Synaptics 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Local\PDFC 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Local\bluesoleil 2013-08-03 09:49 - 2013-08-03 09:49 - 00000000 ____D C:\Users\Chris\AppData\Local\VirtualStore 2013-08-03 09:48 - 2013-08-13 18:40 - 00003760 _____ C:\windows\System32\Tasks\Registration 2013-08-03 09:48 - 2013-08-03 09:48 - 00000000 ____D C:\Users\Chris\AppData\Local\RemEngine 2013-08-03 09:48 - 2013-08-03 09:48 - 00000000 ____D C:\Users\Chris\AppData\Local\Hewlett-Packard_Company 2013-08-03 09:46 - 2013-08-03 09:46 - 00000000 __RSH C:\windows\SysWOW64\Drivers\103C_HP_bNB_ProBook 4545s_Y5336AN_0U_Q2CE31614KQ_E669319-A41_4A_I17ED_SHP_V54.1E_B68CPD F.40_T130308_W748-1_L407_M3533_J500_7AMD_8F01_92.50_#120420_N10EC8168;18143290_(H5V74EA#ABD)_XMOBILE_CN10_Z_2A1019D1103.MRK 2013-08-03 09:46 - 2013-08-03 09:46 - 00000000 __RSH C:\windows\system32\Drivers\103C_HP_bNB_ProBook 4545s_Y5336AN_0U_Q2CE31614KQ_E669319-A41_4A_I17ED_SHP_V54.1E_B68CPD F.40_T130308_W748-1_L407_M3533_J500_7AMD_8F01_92.50_#120420_N10EC8168;18143290_(H5V74EA#ABD)_XMOBILE_CN10_Z_2A1019D1103.MRK 2013-08-03 09:45 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Roaming\hpqLog 2013-08-03 09:45 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Roaming\DigitalPersona 2013-08-03 09:45 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Local\DigitalPersona 2013-08-03 09:44 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Vorlagen 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Startmenü 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Netzwerkumgebung 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Lokale Einstellungen 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Eigene Dateien 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Druckumgebung 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Documents\Eigene Musik 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Documents\Eigene Bilder 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Local\Verlauf 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Local\Anwendungsdaten 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Anwendungsdaten 2013-08-03 09:44 - 2011-02-11 07:19 - 00000020 ___SH C:\Users\Chris\ntuser.ini 2013-08-03 09:44 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-08-03 09:44 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance ==================== One Month Modified Files and Folders ======= 2013-08-20 20:01 - 2013-08-20 20:01 - 01576208 _____ (Farbar) C:\Users\Chris\Desktop\FRST64.exe 2013-08-20 20:01 - 2012-04-21 05:11 - 00699422 _____ C:\windows\system32\perfh007.dat 2013-08-20 20:01 - 2012-04-21 05:11 - 00149328 _____ C:\windows\system32\perfc007.dat 2013-08-20 20:01 - 2009-07-14 07:13 - 01620564 _____ C:\windows\system32\PerfStringBackup.INI 2013-08-20 19:57 - 2012-08-16 02:46 - 00000787 _____ C:\windows\SysWOW64\bscs.ini 2013-08-20 19:57 - 2012-04-21 07:43 - 00000000 ____D C:\ProgramData\PDFC 2013-08-20 19:57 - 2009-07-14 07:08 - 00000006 ____H C:\windows\Tasks\SA.DAT 2013-08-20 19:57 - 2009-07-14 06:51 - 00053256 _____ C:\windows\setupact.log 2013-08-20 19:56 - 2013-04-20 17:40 - 01452984 _____ C:\windows\WindowsUpdate.log 2013-08-20 19:55 - 2013-08-20 19:52 - 00000000 ____D C:\AdwCleaner 2013-08-20 19:55 - 2009-07-14 06:45 - 00031312 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-20 19:55 - 2009-07-14 06:45 - 00031312 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-20 19:51 - 2013-08-20 19:50 - 00975858 _____ C:\Users\Chris\Desktop\adwcleaner.exe 2013-08-20 19:47 - 2010-11-21 05:47 - 00037100 _____ C:\windows\PFRO.log 2013-08-20 19:38 - 2012-04-21 07:44 - 00000830 _____ C:\windows\Tasks\Adobe Flash Player Updater.job 2013-08-20 19:36 - 2013-08-20 19:36 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Malwarebytes 2013-08-20 19:35 - 2013-08-20 19:35 - 00001113 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-20 19:35 - 2013-08-20 19:35 - 00001113 _____ C:\ProgramData\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-20 19:35 - 2013-08-20 19:35 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-20 19:35 - 2013-08-20 19:34 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-20 19:33 - 2013-08-20 19:33 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Chris\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-20 18:12 - 2013-08-03 09:50 - 00003930 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{8F644E91-0779-4744-ACD3-D6E802ACE2A0} 2013-08-20 00:04 - 2013-08-11 21:17 - 00003182 _____ C:\windows\System32\Tasks\HPCeeScheduleForChris 2013-08-20 00:04 - 2013-08-11 21:17 - 00000332 _____ C:\windows\Tasks\HPCeeScheduleForChris.job 2013-08-19 21:04 - 2013-08-04 19:57 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Skype 2013-08-19 18:47 - 2013-08-19 18:46 - 00000000 ____D C:\Users\Chris\Desktop\Scan Tool 2013-08-19 18:38 - 2013-08-19 18:38 - 00000000 ____D C:\FRST 2013-08-19 00:30 - 2013-08-19 00:30 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Mozilla 2013-08-19 00:29 - 2013-08-19 00:29 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-08-19 00:29 - 2013-08-19 00:29 - 00001151 _____ C:\ProgramData\Desktop\Mozilla Firefox.lnk 2013-08-19 00:29 - 2013-08-19 00:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-19 00:29 - 2013-08-19 00:28 - 22240760 _____ (Mozilla) C:\Users\Chris\Downloads\Firefox_Setup_23.0.1.exe 2013-08-19 00:29 - 2013-08-18 21:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-19 00:26 - 2013-08-19 00:26 - 02828552 _____ (AVAST Software) C:\Users\Chris\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-08-18 23:54 - 2013-08-18 23:54 - 00792704 _____ (AMD) C:\Users\Chris\Downloads\amddriverdownloader.exe 2013-08-18 23:54 - 2013-08-18 23:54 - 00000000 ____D C:\AMD 2013-08-18 23:37 - 2013-08-18 23:37 - 00000000 ____D C:\windows\system32\appmgmt 2013-08-18 23:24 - 2013-08-18 23:24 - 00000000 ____D C:\Users\Chris\Documents\Diablo III 2013-08-18 23:23 - 2013-08-18 22:07 - 00000000 ____D C:\Program Files (x86)\Diablo III 2013-08-18 22:38 - 2013-08-18 22:07 - 00001162 _____ C:\Users\Public\Desktop\Diablo III.lnk 2013-08-18 22:38 - 2013-08-18 22:07 - 00001162 _____ C:\ProgramData\Desktop\Diablo III.lnk 2013-08-18 22:38 - 2013-08-18 22:07 - 00000000 ____D C:\ProgramData\Blizzard Entertainment 2013-08-18 22:07 - 2013-08-18 22:06 - 00000000 ____D C:\ProgramData\Battle.net 2013-08-15 21:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\rescache 2013-08-14 23:46 - 2013-08-14 23:44 - 00000000 ____D C:\windows\system32\MRT 2013-08-14 23:44 - 2013-08-04 23:33 - 78161360 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2013-08-14 17:38 - 2013-04-20 18:22 - 00004524 _____ C:\windows\SysWOW64\LOCALSERVICE.INI 2013-08-14 17:38 - 2013-04-20 18:22 - 00000043 _____ C:\windows\SysWOW64\LOCALDEVICE.INI 2013-08-13 18:40 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Hewlett-Packard 2013-08-13 18:40 - 2013-08-03 09:48 - 00003760 _____ C:\windows\System32\Tasks\Registration 2013-08-12 17:55 - 2013-08-11 10:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client 2013-08-12 17:55 - 2012-04-21 07:24 - 01648182 _____ C:\windows\SysWOW64\PerfStringBackup.INI 2013-08-11 21:33 - 2013-08-11 13:04 - 00000000 ____D C:\ProgramData\VirtualizedApplications 2013-08-11 21:17 - 2013-08-03 09:53 - 00000000 ____D C:\Users\Chris\AppData\Local\Hewlett-Packard 2013-08-11 11:01 - 2013-08-11 11:01 - 00000000 __RHD C:\MSOCache 2013-08-11 10:54 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Roaming\SoftGrid Client 2013-08-11 10:54 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Local\SoftGrid Client 2013-08-11 10:54 - 2013-08-11 10:53 - 00000000 ____D C:\Users\Chris\AppData\Roaming\TP 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\windows\PCHEALTH 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\Program Files\Microsoft Office 2013-08-11 10:53 - 2012-04-21 07:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-08-11 10:53 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2013-08-11 10:52 - 2013-08-11 10:52 - 00009079 _____ C:\Users\Chris\Downloads\für Chris.xlsx 2013-08-07 00:39 - 2012-04-21 04:53 - 00000000 ____D C:\Program Files\Windows Journal 2013-08-07 00:39 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\winrm 2013-08-07 00:39 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\sysprep 2013-08-07 00:39 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\slmgr 2013-08-07 00:39 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-07 00:39 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-07 00:39 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System 2013-08-07 00:38 - 2012-04-21 05:03 - 00000000 ____D C:\windows\SysWOW64\XPSViewer 2013-08-07 00:38 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\WCN 2013-08-07 00:38 - 2010-11-21 09:06 - 00000000 ____D C:\windows\system32\winrm 2013-08-07 00:38 - 2010-11-21 09:06 - 00000000 ____D C:\windows\system32\WCN 2013-08-07 00:38 - 2010-11-21 09:06 - 00000000 ____D C:\windows\system32\slmgr 2013-08-07 00:38 - 2009-07-14 07:37 - 00000000 ____D C:\windows\DigitalLocker 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\Setup 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\MUI 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\Dism 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\sysprep 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\Setup 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\oobe 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\MUI 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\migwiz 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\Dism 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\IME 2013-08-07 00:37 - 2010-11-21 09:06 - 00000000 ____D C:\windows\system32\Printing_Admin_Scripts 2013-08-07 00:37 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\com 2013-08-07 00:36 - 2012-04-21 05:19 - 00000000 ____D C:\windows\SysWOW64\it 2013-08-07 00:36 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\Printing_Admin_Scripts 2013-08-07 00:36 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-08-07 00:36 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2013-08-07 00:36 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2013-08-07 00:36 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2013-08-07 00:36 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\oobe 2013-08-07 00:36 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\migwiz 2013-08-07 00:36 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\com 2013-08-07 00:36 - 2009-07-14 05:20 - 00000000 ____D C:\windows\servicing 2013-08-07 00:35 - 2009-07-14 07:32 - 00000000 ____D C:\windows\system32\WinBioPlugIns 2013-08-07 00:34 - 2012-04-21 05:19 - 00000000 ____D C:\windows\system32\it 2013-08-07 00:33 - 2012-04-21 05:03 - 00000000 ____D C:\windows\SysWOW64\fr 2013-08-07 00:32 - 2012-04-21 05:03 - 00000000 ____D C:\windows\system32\fr 2013-08-07 00:32 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\DVD Maker 2013-08-05 21:38 - 2012-04-21 07:44 - 00692104 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe 2013-08-05 21:38 - 2012-04-21 07:44 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-08-05 21:38 - 2012-04-21 07:44 - 00003768 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater 2013-08-05 21:23 - 2013-08-05 21:23 - 00000000 ____D C:\windows\system32\Macromed 2013-08-05 21:23 - 2013-08-05 21:23 - 00000000 ____D C:\Users\Chris\AppData\Local\Macromedia 2013-08-05 21:23 - 2013-08-05 21:22 - 00000000 ____D C:\Users\Chris\AppData\Local\Adobe 2013-08-04 23:19 - 2013-08-03 09:51 - 00058016 _____ C:\Users\Chris\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-04 23:19 - 2013-08-03 09:50 - 00001425 _____ C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-04 23:19 - 2013-08-03 09:50 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-08-04 23:19 - 2013-08-03 09:50 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-08-04 23:16 - 2009-07-14 06:45 - 00275856 _____ C:\windows\system32\FNTCACHE.DAT 2013-08-04 23:13 - 2009-07-14 05:20 - 00000000 ____D C:\windows\PolicyDefinitions 2013-08-04 23:12 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\zh-HK 2013-08-04 23:12 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\tr-TR 2013-08-04 23:12 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\zh-HK 2013-08-04 23:12 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\tr-TR 2013-08-04 21:52 - 2013-08-04 21:22 - 00016471 _____ C:\windows\IE10_main.log 2013-08-04 21:29 - 2013-08-04 21:29 - 01509376 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2013-08-04 21:29 - 2013-08-04 21:29 - 01441280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl 2013-08-04 21:29 - 2013-08-04 21:29 - 01400416 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat 2013-08-04 21:29 - 2013-08-04 21:29 - 01400416 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat 2013-08-04 21:29 - 2013-08-04 21:29 - 01054720 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00905728 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00719360 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00629248 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00523264 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\html.iec 2013-08-04 21:29 - 2013-08-04 21:29 - 00361984 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec 2013-08-04 21:29 - 2013-08-04 21:29 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00270848 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00242200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\url.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00232960 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00204800 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00185344 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00173568 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00150528 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\occache.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00138752 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00125440 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00110592 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00097280 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00079872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx 2013-08-04 21:29 - 2013-08-04 21:29 - 00073728 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx 2013-08-04 21:29 - 2013-08-04 21:29 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe 2013-08-04 21:24 - 2013-08-04 21:24 - 03928064 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 03419136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02776576 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02284544 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01988096 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01682432 _____ (Microsoft Corporation) C:\windows\system32\XpsPrint.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01238528 _____ (Microsoft Corporation) C:\windows\system32\d3d10.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01175552 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01158144 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsPrint.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01080832 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00648192 _____ (Microsoft Corporation) C:\windows\system32\d3d10level9.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00604160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10level9.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00522752 _____ (Microsoft Corporation) C:\windows\system32\XpsGdiConverter.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00465920 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00417792 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00364544 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsGdiConverter.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00363008 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00333312 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\d3d10core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00293376 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxgi.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00249856 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00245248 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecsExt.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00207872 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecsExt.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00194560 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00187392 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIAnimation.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00161792 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00010752 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00010752 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00009728 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00009728 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00002560 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00002560 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-04 19:57 - 2013-08-04 19:57 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-08-04 19:57 - 2013-04-20 18:10 - 00000000 ____D C:\ProgramData\Skype 2013-08-04 19:55 - 2013-08-04 19:54 - 32782192 _____ (Skype Technologies S.A.) C:\Users\Chris\Downloads\SkypeSetupFull_6.7.102.exe 2013-08-04 19:40 - 2013-08-04 19:40 - 00000000 ____D C:\Users\Chris\AppData\Local\Mozilla 2013-08-04 19:40 - 2013-08-04 19:40 - 00000000 ____D C:\ProgramData\Mozilla 2013-08-04 19:39 - 2013-08-04 19:38 - 21703480 _____ (Mozilla) C:\Users\Chris\Downloads\Firefox_Setup_22.0.exe 2013-08-03 10:36 - 2013-08-03 10:32 - 108422648 _____ C:\Users\Chris\Downloads\avira_free_antivirus884_de.exe 2013-08-03 10:22 - 2013-08-03 10:22 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Macromedia 2013-08-03 09:59 - 2013-04-20 18:19 - 00001945 _____ C:\windows\epplauncher.mif 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Roaming\ATI 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Adobe 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Local\ATI 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\Documents\Bluetooth 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Synaptics 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Local\PDFC 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Local\bluesoleil 2013-08-03 09:50 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Roaming\hpqLog 2013-08-03 09:50 - 2013-08-03 09:44 - 00000000 ____D C:\Users\Chris 2013-08-03 09:50 - 2012-04-21 07:28 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2013-08-03 09:49 - 2013-08-03 09:49 - 00000000 ____D C:\Users\Chris\AppData\Local\VirtualStore 2013-08-03 09:48 - 2013-08-03 09:48 - 00000000 ____D C:\Users\Chris\AppData\Local\RemEngine 2013-08-03 09:48 - 2013-08-03 09:48 - 00000000 ____D C:\Users\Chris\AppData\Local\Hewlett-Packard_Company 2013-08-03 09:48 - 2013-04-20 18:03 - 00000000 ___RD C:\Program Files (x86)\Online Services 2013-08-03 09:48 - 2011-07-29 19:38 - 00000000 ___HD C:\SYSTEM.SAV 2013-08-03 09:48 - 2011-07-29 01:51 - 00000000 ____D C:\swsetup 2013-08-03 09:48 - 2009-07-14 07:32 - 00000000 ____D C:\windows\system32\restore 2013-08-03 09:46 - 2013-08-03 09:46 - 00000000 __RSH C:\windows\SysWOW64\Drivers\103C_HP_bNB_ProBook 4545s_Y5336AN_0U_Q2CE31614KQ_E669319-A41_4A_I17ED_SHP_V54.1E_B68CPD F.40_T130308_W748-1_L407_M3533_J500_7AMD_8F01_92.50_#120420_N10EC8168;18143290_(H5V74EA#ABD)_XMOBILE_CN10_Z_2A1019D1103.MRK 2013-08-03 09:46 - 2013-08-03 09:46 - 00000000 __RSH C:\windows\system32\Drivers\103C_HP_bNB_ProBook 4545s_Y5336AN_0U_Q2CE31614KQ_E669319-A41_4A_I17ED_SHP_V54.1E_B68CPD F.40_T130308_W748-1_L407_M3533_J500_7AMD_8F01_92.50_#120420_N10EC8168;18143290_(H5V74EA#ABD)_XMOBILE_CN10_Z_2A1019D1103.MRK 2013-08-03 09:46 - 2011-02-11 07:14 - 00000000 ____D C:\windows\Panther 2013-08-03 09:45 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Roaming\DigitalPersona 2013-08-03 09:45 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Local\DigitalPersona 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Vorlagen 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Startmenü 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Netzwerkumgebung 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Lokale Einstellungen 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Eigene Dateien 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Druckumgebung 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Documents\Eigene Musik 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Documents\Eigene Bilder 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Local\Verlauf 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Local\Anwendungsdaten 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Anwendungsdaten 2013-08-03 09:44 - 2011-02-11 07:19 - 00000000 __SHD C:\Recovery 2013-08-03 09:44 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\Recovery 2013-07-26 07:13 - 2013-08-14 23:51 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2013-07-26 07:13 - 2013-08-14 23:51 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2013-07-26 07:13 - 2013-08-14 23:51 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2013-07-26 07:12 - 2013-08-14 23:51 - 19239424 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 15405056 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 03958784 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 02647040 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2013-07-26 05:35 - 2013-08-14 23:51 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2013-07-26 05:13 - 2013-08-14 23:51 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll 2013-07-26 05:13 - 2013-08-14 23:51 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 14329344 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 02877440 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 02048512 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00039936 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll 2013-07-26 05:11 - 2013-08-14 23:51 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll 2013-07-26 05:11 - 2013-08-14 23:51 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll 2013-07-26 04:49 - 2013-08-14 23:51 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb 2013-07-26 04:39 - 2013-08-14 23:51 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe 2013-07-26 03:59 - 2013-08-14 23:51 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-25 11:25 - 2013-08-14 20:13 - 01888768 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL 2013-07-25 10:57 - 2013-08-14 20:13 - 01620992 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMVDECOD.DLL ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-12 19:17 ==================== End Of Log ============================ Vielen Dank schon mal für deine Mühe! Gruß, Spoo |
21.08.2013, 09:19 | #6 |
/// the machine /// TB-Ausbilder | Delta Search ProblemESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ --> Delta Search Problem |
21.08.2013, 18:42 | #7 |
| Delta Search Problem Und wieder die logs: Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=666563c055eedf41b6466096f04f7b20 # engine=14854 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-08-21 05:28:40 # local_time=2013-08-21 07:28:40 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=5892 16777213 100 100 10631335 73948190 0 0 # scanned=135690 # found=0 # cleaned=0 # scan_time=7368 Code:
ATTFilter Results of screen317's Security Check version 0.99.72 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` Microsoft Security Essentials Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 Adobe Flash Player 11.8.800.94 Mozilla Firefox (23.0.1) ````````Process Check: objlist.exe by Laurent```````` Microsoft Security Essentials msseces.exe Windows Defender MSMpEng.exe Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbamgui.exe Microsoft Security Client Antimalware MsMpEng.exe Malwarebytes' Anti-Malware mbamscheduler.exe Microsoft Security Client Antimalware NisSrv.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-08-2013 Ran by Chris (administrator) on 21-08-2013 19:40:01 Running from C:\Users\Chris\Desktop Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation) c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe (DigitalPersona, Inc.) c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe (AMD) C:\windows\system32\atiesrxx.exe (IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe (Hewlett-Packard Company) C:\windows\system32\Hpservice.exe (AMD) C:\windows\system32\atieclxx.exe (Validity Sensors, Inc.) C:\windows\system32\vcsFPService.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe () C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe (PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (ArcSoft, Inc.) C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe (Microsoft Corporation) c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Service.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (DigitalPersona, Inc.) c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Advanced Micro Devices, Inc.) C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe (IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpConnectionManager.exe (Hewlett-Packard Development Company, L.P.) c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\hpCMSrv.exe (Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE (DigitalPersona, Inc.) c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe (Portrait Displays, Inc) C:\Program Files (x86)\Common Files\Portrait Displays\Drivers\SDKCOMServer.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2887440 2012-03-09] (Synaptics Incorporated) HKLM\...\Run: [NUSB3MON] - C:\Program Files (x86)\ATI Technologies\AMDUSB3DeviceDetector\nusb3mon.exe [97280 2012-04-11] (Advanced Micro Devices, Inc.) HKLM\...\Run: [HPPowerAssistant] - C:\Program Files\Hewlett-Packard\HP Power Assistant\HPPA_Main.exe [3488640 2012-03-14] (Hewlett-Packard Company) HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-03-05] (IDT, Inc.) HKLM\...\Run: [MfeEpePcMonitor] - "C:\Program Files\Hewlett-Packard\Drive Encryption\EpePcMonitor.exe" [x] HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [1436736 2011-06-15] (Microsoft Corporation) HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe, HKLM-x32\...\Run: [PDF Complete] - C:\Program Files (x86)\PDF Complete\pdfsty.exe [684024 2012-03-07] (PDF Complete Inc) HKLM-x32\...\Run: [QLBController] - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [319360 2012-03-14] (Hewlett-Packard Company) HKLM-x32\...\Run: [] - [x] HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [630952 2012-07-09] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [AMD AVT] - C:\Program Files (x86)\AMD AVT\bin\kdbsync.exe [12288 2012-04-20] () HKLM-x32\...\Run: [DTRun] - c:\Program Files (x86)\ArcSoft\TotalMedia Suite\TotalMedia Theatre 3\uDTRun.exe [517456 2010-11-24] (ArcSoft Inc.) HKLM-x32\...\Run: [HPConnectionManager] - c:\Program Files (x86)\Hewlett-Packard\HP Connection Manager\HPCMDelayStart.exe [184704 2012-03-16] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [BtTray] - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [364032 2012-08-16] (IVT Corporation) HKLM-x32\...\Run: [File Sanitizer] - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [12310616 2012-03-22] (Hewlett-Packard) Lsa: [Notification Packages] DPPassFilter scecli ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPCOM/10 HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.bing.com SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=CMNTDF&pc=CMNTDF&src=IE-SearchBox BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) BHO-x32: File Sanitizer for HP ProtectTools - {3134413B-49B4-425C-98A5-893C1F195601} - C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (Hewlett-Packard) BHO-x32: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] 83.169.185.225 83.169.185.161 FireFox: ======== FF ProfilePath: C:\Users\Chris\AppData\Roaming\Mozilla\Firefox\Profiles\ljtjfzlm.default FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: [otis@digitalpersona.com] c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt\ FF Extension: DigitalPersona Extension - c:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\FirefoxExt\ ==================== Services (Whitelisted) ================= S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1578496 2012-08-14] (IVT Corporation) R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [138752 2012-08-14] (IVT Corporation) R2 DpHost; c:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [493904 2012-03-15] (DigitalPersona, Inc.) S3 FLCDLOCK; c:\windows\SysWOW64\flcdlock.exe [477056 2012-11-19] (Hewlett-Packard Company) R2 HPAuto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [682040 2011-02-17] (Hewlett-Packard) R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [365440 2012-03-14] (Hewlett-Packard Company) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 McAfee Endpoint Encryption Agent; C:\Program Files\Hewlett-Packard\Drive Encryption\EEAgent\MfeEpeHost.exe [1327104 2012-03-22] () R2 MsMpSvc; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [12784 2011-04-28] (Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [288272 2011-04-28] (Microsoft Corporation) R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1134584 2012-03-07] (PDF Complete Inc) R2 uArcCapture; C:\windows\SysWow64\ArcVCapRender\uArcCapture.exe [498352 2012-04-05] (ArcSoft, Inc.) ==================== Drivers (Whitelisted) ==================== R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [31872 2012-01-31] (Advanced Micro Devices, Inc.) R3 ARCVCAM; C:\Windows\System32\DRIVERS\ArcSoftVCapture.sys [42816 2012-02-03] (ArcSoft, Inc.) R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23104 2011-08-13] (Ralink Corporation) S3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [51776 2012-04-03] (Ralink Corporation) S3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48320 2012-03-05] (Ralink Corporation) S3 DAMDrv; C:\Windows\System32\DRIVERS\DAMDrv64.sys [64832 2012-11-09] (Hewlett-Packard Company) R3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R0 MfeEpeOpal; C:\Windows\System32\Drivers\MfeEpeOpal.sys [93640 2012-03-22] (McAfee, Inc.) R0 MfeEpePc; C:\Windows\System32\Drivers\MfeEpePc.sys [158792 2012-03-22] (McAfee, Inc.) R1 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [189440 2011-04-18] (Microsoft Corporation) R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [84864 2011-04-28] (Microsoft Corporation) R3 rtbth; C:\Windows\System32\DRIVERS\rtbth.sys [685152 2012-06-14] (Ralink Technology, Corp.) R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [1064184 2012-09-22] (Sunplus) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-21 19:35 - 2013-08-21 19:35 - 00891115 _____ C:\Users\Chris\Desktop\SecurityCheck.exe 2013-08-20 20:09 - 2013-08-20 20:09 - 00000000 ____D C:\Users\Chris\Desktop\Scan Tools Schritt 2 2013-08-20 19:52 - 2013-08-20 19:55 - 00000000 ____D C:\AdwCleaner 2013-08-20 19:36 - 2013-08-20 19:36 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Malwarebytes 2013-08-20 19:35 - 2013-08-20 19:35 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-20 19:34 - 2013-08-20 19:35 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-20 19:34 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys 2013-08-20 19:33 - 2013-08-20 19:33 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Chris\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-19 18:46 - 2013-08-19 18:47 - 00000000 ____D C:\Users\Chris\Desktop\Scan Tool 2013-08-19 18:38 - 2013-08-19 18:38 - 00000000 ____D C:\FRST 2013-08-19 00:30 - 2013-08-19 00:30 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Mozilla 2013-08-19 00:29 - 2013-08-19 00:29 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-08-19 00:29 - 2013-08-19 00:29 - 00001151 _____ C:\ProgramData\Desktop\Mozilla Firefox.lnk 2013-08-19 00:29 - 2013-08-19 00:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-19 00:28 - 2013-08-19 00:29 - 22240760 _____ (Mozilla) C:\Users\Chris\Downloads\Firefox_Setup_23.0.1.exe 2013-08-19 00:26 - 2013-08-19 00:26 - 02828552 _____ (AVAST Software) C:\Users\Chris\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-08-18 23:54 - 2013-08-18 23:54 - 00792704 _____ (AMD) C:\Users\Chris\Downloads\amddriverdownloader.exe 2013-08-18 23:54 - 2013-08-18 23:54 - 00000000 ____D C:\AMD 2013-08-18 23:37 - 2013-08-18 23:37 - 00000000 ____D C:\windows\system32\appmgmt 2013-08-18 23:24 - 2013-08-18 23:24 - 00000000 ____D C:\Users\Chris\Documents\Diablo III 2013-08-18 22:07 - 2013-08-18 23:23 - 00000000 ____D C:\Program Files (x86)\Diablo III 2013-08-18 22:07 - 2013-08-18 22:38 - 00001162 _____ C:\Users\Public\Desktop\Diablo III.lnk 2013-08-18 22:07 - 2013-08-18 22:38 - 00001162 _____ C:\ProgramData\Desktop\Diablo III.lnk 2013-08-18 22:07 - 2013-08-18 22:38 - 00000000 ____D C:\ProgramData\Blizzard Entertainment 2013-08-18 22:06 - 2013-08-18 22:07 - 00000000 ____D C:\ProgramData\Battle.net 2013-08-18 21:18 - 2013-08-19 00:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-14 23:51 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2013-08-14 23:51 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2013-08-14 23:51 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2013-08-14 23:51 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2013-08-14 23:51 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2013-08-14 23:51 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2013-08-14 23:51 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll 2013-08-14 23:51 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll 2013-08-14 23:51 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll 2013-08-14 23:51 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll 2013-08-14 23:51 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll 2013-08-14 23:51 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb 2013-08-14 23:51 - 2013-07-26 04:39 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe 2013-08-14 23:51 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe 2013-08-14 23:44 - 2013-08-14 23:46 - 00000000 ____D C:\windows\system32\MRT 2013-08-14 20:13 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL 2013-08-14 20:13 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMVDECOD.DLL 2013-08-14 20:13 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll 2013-08-14 20:13 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll 2013-08-14 20:13 - 2013-07-09 08:03 - 05550528 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe 2013-08-14 20:13 - 2013-07-09 07:54 - 01732032 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll 2013-08-14 20:13 - 2013-07-09 07:53 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll 2013-08-14 20:13 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll 2013-08-14 20:13 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll 2013-08-14 20:13 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll 2013-08-14 20:13 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll 2013-08-14 20:13 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll 2013-08-14 20:13 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe 2013-08-14 20:13 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe 2013-08-14 20:13 - 2013-07-09 06:53 - 01292192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll 2013-08-14 20:13 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll 2013-08-14 20:13 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll 2013-08-14 20:13 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll 2013-08-14 20:13 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll 2013-08-14 20:13 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptnet.dll 2013-08-14 20:13 - 2013-07-09 04:49 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll 2013-08-14 20:12 - 2013-07-09 06:52 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll 2013-08-14 20:12 - 2013-07-09 04:49 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe 2013-08-14 20:12 - 2013-07-09 04:49 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe 2013-08-14 20:12 - 2013-07-09 04:49 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe 2013-08-14 20:12 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys 2013-08-14 20:12 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys 2013-08-11 21:17 - 2013-08-20 00:04 - 00003182 _____ C:\windows\System32\Tasks\HPCeeScheduleForChris 2013-08-11 21:17 - 2013-08-20 00:04 - 00000332 _____ C:\windows\Tasks\HPCeeScheduleForChris.job 2013-08-11 13:04 - 2013-08-11 21:33 - 00000000 ____D C:\ProgramData\VirtualizedApplications 2013-08-11 11:01 - 2013-08-11 11:01 - 00000000 __RHD C:\MSOCache 2013-08-11 10:54 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Roaming\SoftGrid Client 2013-08-11 10:54 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Local\SoftGrid Client 2013-08-11 10:53 - 2013-08-12 17:55 - 00000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client 2013-08-11 10:53 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Roaming\TP 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\windows\PCHEALTH 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\Program Files\Microsoft Office 2013-08-11 10:52 - 2013-08-11 10:52 - 00009079 _____ C:\Users\Chris\Downloads\für Chris.xlsx 2013-08-05 21:23 - 2013-08-05 21:23 - 00000000 ____D C:\windows\system32\Macromed 2013-08-05 21:23 - 2013-08-05 21:23 - 00000000 ____D C:\Users\Chris\AppData\Local\Macromedia 2013-08-05 21:22 - 2013-08-05 21:23 - 00000000 ____D C:\Users\Chris\AppData\Local\Adobe 2013-08-05 18:09 - 2013-04-17 09:02 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll 2013-08-05 18:09 - 2013-04-17 08:24 - 01424384 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll 2013-08-04 23:33 - 2013-08-14 23:44 - 78161360 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2013-08-04 23:25 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\windows\SysWOW64\DWrite.dll 2013-08-04 23:25 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll 2013-08-04 21:54 - 2012-07-26 06:55 - 00785512 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Wdf01000.sys 2013-08-04 21:54 - 2012-07-26 06:55 - 00054376 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WdfLdr.sys 2013-08-04 21:54 - 2012-07-26 04:36 - 00009728 _____ (Microsoft Corporation) C:\windows\system32\Wdfres.dll 2013-08-04 21:54 - 2012-06-02 16:35 - 00000003 _____ C:\windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2013-08-04 21:29 - 2013-08-04 21:29 - 01509376 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2013-08-04 21:29 - 2013-08-04 21:29 - 01441280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl 2013-08-04 21:29 - 2013-08-04 21:29 - 01400416 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat 2013-08-04 21:29 - 2013-08-04 21:29 - 01400416 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat 2013-08-04 21:29 - 2013-08-04 21:29 - 01054720 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00905728 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00719360 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00629248 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00523264 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\html.iec 2013-08-04 21:29 - 2013-08-04 21:29 - 00361984 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec 2013-08-04 21:29 - 2013-08-04 21:29 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00270848 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00242200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\url.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00232960 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00204800 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00185344 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00173568 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00150528 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\occache.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00138752 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00125440 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00110592 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00097280 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00079872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx 2013-08-04 21:29 - 2013-08-04 21:29 - 00073728 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx 2013-08-04 21:29 - 2013-08-04 21:29 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe 2013-08-04 21:24 - 2013-08-04 21:24 - 03928064 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 03419136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02776576 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02284544 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01988096 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01682432 _____ (Microsoft Corporation) C:\windows\system32\XpsPrint.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01238528 _____ (Microsoft Corporation) C:\windows\system32\d3d10.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01175552 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01158144 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsPrint.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01080832 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00648192 _____ (Microsoft Corporation) C:\windows\system32\d3d10level9.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00604160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10level9.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00522752 _____ (Microsoft Corporation) C:\windows\system32\XpsGdiConverter.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00465920 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00417792 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00364544 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsGdiConverter.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00363008 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00333312 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\d3d10core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00293376 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxgi.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00249856 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00245248 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecsExt.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00207872 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecsExt.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00194560 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00187392 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIAnimation.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00161792 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00010752 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00010752 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00009728 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00009728 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00002560 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00002560 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-04 21:22 - 2013-08-04 21:52 - 00016471 _____ C:\windows\IE10_main.log 2013-08-04 21:15 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\windows\system32\browserchoice.exe 2013-08-04 20:53 - 2012-12-16 19:11 - 00046080 _____ (Adobe Systems) C:\windows\system32\atmlib.dll 2013-08-04 20:53 - 2012-12-16 16:45 - 00367616 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll 2013-08-04 20:53 - 2012-12-16 16:13 - 00295424 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\atmfd.dll 2013-08-04 20:53 - 2012-12-16 16:13 - 00034304 _____ (Adobe Systems) C:\windows\SysWOW64\atmlib.dll 2013-08-04 20:52 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\windows\system32\WUDFx.dll 2013-08-04 20:52 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\windows\system32\WUDFHost.exe 2013-08-04 20:52 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\windows\system32\WUDFPlatform.dll 2013-08-04 20:52 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\windows\system32\WUDFSvc.dll 2013-08-04 20:52 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\windows\system32\WUDFCoinstaller.dll 2013-08-04 20:52 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WUDFRd.sys 2013-08-04 20:52 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\windows\system32\Drivers\WUDFPf.sys 2013-08-04 20:52 - 2012-06-02 16:57 - 00000003 _____ C:\windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2013-08-04 20:33 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fs_rec.sys 2013-08-04 20:33 - 2012-03-01 08:33 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\imagehlp.dll 2013-08-04 20:33 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\windows\system32\wmi.dll 2013-08-04 20:33 - 2012-03-01 07:33 - 00159232 _____ (Microsoft Corporation) C:\windows\SysWOW64\imagehlp.dll 2013-08-04 20:33 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmi.dll 2013-08-04 20:09 - 2013-04-10 07:24 - 00983912 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys 2013-08-04 20:09 - 2013-04-10 07:24 - 00265064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms1.sys 2013-08-04 20:09 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\windows\system32\tsgqec.dll 2013-08-04 20:09 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll 2013-08-04 20:09 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\windows\system32\aaclient.dll 2013-08-04 20:09 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll 2013-08-04 20:09 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\windows\SysWOW64\aaclient.dll 2013-08-04 20:09 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\windows\SysWOW64\tsgqec.dll 2013-08-04 20:09 - 2013-01-03 08:00 - 00288088 _____ (Microsoft Corporation) C:\windows\system32\Drivers\FWPKCLNT.SYS 2013-08-04 20:09 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\windows\system32\dhcpcore6.dll 2013-08-04 20:09 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\windows\system32\dhcpcsvc6.dll 2013-08-04 20:09 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\windows\SysWOW64\dhcpcore6.dll 2013-08-04 20:09 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\windows\SysWOW64\dhcpcsvc6.dll 2013-08-04 20:09 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\windows\system32\poqexec.exe 2013-08-04 20:09 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\windows\SysWOW64\poqexec.exe 2013-08-04 20:08 - 2013-04-12 16:45 - 01656680 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys 2013-08-04 20:08 - 2013-03-19 07:53 - 00230400 _____ (Microsoft Corporation) C:\windows\system32\wwansvc.dll 2013-08-04 20:08 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\wwanprotdim.dll 2013-08-04 20:08 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\windows\system32\consent.exe 2013-08-04 20:08 - 2013-02-27 07:52 - 14172672 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll 2013-08-04 20:08 - 2013-02-27 07:52 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll 2013-08-04 20:08 - 2013-02-27 07:48 - 01930752 _____ (Microsoft Corporation) C:\windows\system32\authui.dll 2013-08-04 20:08 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\windows\system32\appinfo.dll 2013-08-04 20:08 - 2013-02-27 06:55 - 12872704 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll 2013-08-04 20:08 - 2013-02-27 06:55 - 00180224 _____ (Microsoft Corporation) C:\windows\SysWOW64\shdocvw.dll 2013-08-04 20:08 - 2013-02-27 06:49 - 01796096 _____ (Microsoft Corporation) C:\windows\SysWOW64\authui.dll 2013-08-04 20:08 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usb8023.sys 2013-08-04 20:08 - 2012-11-01 07:43 - 02002432 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll 2013-08-04 20:08 - 2012-11-01 07:43 - 01882624 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll 2013-08-04 20:08 - 2012-11-01 06:47 - 01389568 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll 2013-08-04 20:08 - 2012-11-01 06:47 - 01236992 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00303104 _____ (Microsoft Corporation) C:\windows\system32\nlasvc.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\windows\system32\netcorehc.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\windows\system32\ncsi.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\windows\system32\nlaapi.dll 2013-08-04 20:08 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\windows\system32\netevent.dll 2013-08-04 20:08 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\windows\system32\iphlpsvc.dll 2013-08-04 20:08 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\windows\SysWOW64\netcorehc.dll 2013-08-04 20:08 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncsi.dll 2013-08-04 20:08 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\windows\SysWOW64\netevent.dll 2013-08-04 20:08 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpipreg.sys 2013-08-04 20:08 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys 2013-08-04 20:08 - 2012-08-22 20:12 - 00376688 _____ (Microsoft Corporation) C:\windows\system32\Drivers\netio.sys 2013-08-04 20:08 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\windows\system32\Drivers\RNDISMP.sys 2013-08-04 20:08 - 2012-06-02 07:50 - 00458704 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys 2013-08-04 20:08 - 2012-06-02 07:48 - 00151920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys 2013-08-04 20:08 - 2012-06-02 07:48 - 00095600 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys 2013-08-04 20:08 - 2012-06-02 07:45 - 00340992 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll 2013-08-04 20:08 - 2012-06-02 06:40 - 00225280 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll 2013-08-04 20:08 - 2012-06-02 06:40 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll 2013-08-04 20:08 - 2012-06-02 06:34 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll 2013-08-04 20:08 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\rdpcorekmts.dll 2013-08-04 20:08 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\rdpwsx.dll 2013-08-04 20:08 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\windows\system32\rdrmemptylst.exe 2013-08-04 20:08 - 2012-01-13 09:12 - 00052224 _____ (Microsoft Corporation) C:\windows\SysWOW64\nlaapi.dll 2013-08-04 20:08 - 2010-06-26 05:55 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\msxml3r.dll 2013-08-04 20:08 - 2010-06-26 05:24 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3r.dll 2013-08-04 20:07 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll 2013-08-04 20:07 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll 2013-08-04 20:07 - 2013-01-04 07:46 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll 2013-08-04 20:07 - 2012-11-20 07:48 - 00307200 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll 2013-08-04 20:07 - 2012-11-20 06:51 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll 2013-08-04 20:07 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\windows\system32\dpnet.dll 2013-08-04 20:07 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\windows\SysWOW64\dpnet.dll 2013-08-04 20:07 - 2012-05-01 07:40 - 00209920 _____ (Microsoft Corporation) C:\windows\system32\profsvc.dll 2013-08-04 20:06 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\Wpc.dll 2013-08-04 20:06 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\windows\system32\gameux.dll 2013-08-04 20:06 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\windows\SysWOW64\Wpc.dll 2013-08-04 20:06 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\windows\SysWOW64\gameux.dll 2013-08-04 20:06 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\windows\system32\oflc-nz.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\windows\system32\pegibbfc.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\windows\system32\csrr.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\windows\system32\usk.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\windows\system32\oflc.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\windows\system32\pegi-pt.rs 2013-08-04 20:06 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\windows\system32\pegi-fi.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\windows\system32\cero.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\windows\system32\esrb.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\windows\system32\fpb.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\windows\system32\cob-au.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\windows\system32\grb.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\windows\system32\pegi.rs 2013-08-04 20:06 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\windows\system32\djctq.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\windows\SysWOW64\cero.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\windows\SysWOW64\esrb.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\windows\SysWOW64\fpb.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\windows\SysWOW64\oflc-nz.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\windows\SysWOW64\pegibbfc.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\windows\SysWOW64\csrr.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\windows\SysWOW64\cob-au.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\windows\SysWOW64\usk.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\windows\SysWOW64\oflc.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\windows\SysWOW64\grb.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\windows\SysWOW64\pegi-pt.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\windows\SysWOW64\pegi-fi.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\windows\SysWOW64\pegi.rs 2013-08-04 20:06 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\windows\SysWOW64\djctq.rs 2013-08-04 20:06 - 2012-11-22 07:44 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\usp10.dll 2013-08-04 20:06 - 2012-11-22 06:45 - 00626688 _____ (Microsoft Corporation) C:\windows\SysWOW64\usp10.dll 2013-08-04 20:06 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\windows\system32\OxpsConverter.exe 2013-08-04 20:05 - 2012-08-11 02:56 - 00715776 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll 2013-08-04 20:05 - 2012-08-11 01:56 - 00542208 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll 2013-08-04 20:05 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpwd.sys 2013-08-04 20:05 - 2012-04-07 14:31 - 03216384 _____ (Microsoft Corporation) C:\windows\system32\msi.dll 2013-08-04 20:05 - 2012-04-07 13:26 - 02342400 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll 2013-08-04 20:05 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\windows\system32\Drivers\partmgr.sys 2013-08-04 20:04 - 2012-11-30 07:45 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll 2013-08-04 20:04 - 2012-11-30 07:45 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll 2013-08-04 20:04 - 2012-11-30 07:43 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll 2013-08-04 20:04 - 2012-11-30 07:41 - 01161216 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll 2013-08-04 20:04 - 2012-11-30 07:41 - 00424448 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 07:38 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:53 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll 2013-08-04 20:04 - 2012-11-30 06:53 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 06:45 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 05:23 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe 2013-08-04 20:04 - 2012-11-30 04:38 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 04:38 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 04:38 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 04:38 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2013-08-04 20:04 - 2012-11-30 01:17 - 00420064 _____ C:\windows\SysWOW64\locale.nls 2013-08-04 20:04 - 2012-11-30 01:15 - 00420064 _____ C:\windows\system32\locale.nls 2013-08-04 20:03 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys 2013-08-04 20:03 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\certenc.dll 2013-08-04 20:03 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\windows\system32\certutil.exe 2013-08-04 20:03 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\windows\SysWOW64\certutil.exe 2013-08-04 20:03 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\certenc.dll 2013-08-04 20:03 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\windows\system32\cryptdlg.dll 2013-08-04 20:03 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptdlg.dll 2013-08-04 20:03 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\windows\system32\win32spl.dll 2013-08-04 20:03 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32spl.dll 2013-08-04 20:03 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fvevol.sys 2013-08-04 20:03 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\windows\system32\taskhost.exe 2013-08-04 20:03 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\windows\SysWOW64\synceng.dll 2013-08-04 20:03 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\windows\system32\synceng.dll 2013-08-04 20:03 - 2012-07-06 22:07 - 00552960 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bthport.sys 2013-08-04 20:03 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\netapi32.dll 2013-08-04 20:03 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\browser.dll 2013-08-04 20:03 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\windows\system32\browcli.dll 2013-08-04 20:03 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\netapi32.dll 2013-08-04 20:03 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\browcli.dll 2013-08-04 20:03 - 2012-05-05 10:36 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll 2013-08-04 20:03 - 2012-05-05 09:46 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll 2013-08-04 20:02 - 2013-04-26 01:30 - 01505280 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d11.dll 2013-08-04 20:02 - 2013-04-01 00:52 - 01887232 _____ (Microsoft Corporation) C:\windows\system32\d3d11.dll 2013-08-04 20:02 - 2013-03-19 07:46 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll 2013-08-04 20:02 - 2013-03-19 06:47 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll 2013-08-04 20:02 - 2013-03-19 05:06 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe 2013-08-04 20:02 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\windows\system32\cdosys.dll 2013-08-04 20:02 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\windows\SysWOW64\cdosys.dll 2013-08-04 20:02 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll 2013-08-04 20:02 - 2012-02-11 08:36 - 00559104 _____ (Microsoft Corporation) C:\windows\system32\spoolsv.exe 2013-08-04 20:02 - 2012-02-11 08:36 - 00067072 _____ (Microsoft Corporation) C:\windows\splwow64.exe 2013-08-04 19:57 - 2013-08-20 21:38 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Skype 2013-08-04 19:57 - 2013-08-04 19:57 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-08-04 19:54 - 2013-08-04 19:55 - 32782192 _____ (Skype Technologies S.A.) C:\Users\Chris\Downloads\SkypeSetupFull_6.7.102.exe 2013-08-04 19:40 - 2013-08-04 19:40 - 00000000 ____D C:\Users\Chris\AppData\Local\Mozilla 2013-08-04 19:40 - 2013-08-04 19:40 - 00000000 ____D C:\ProgramData\Mozilla 2013-08-04 19:38 - 2013-08-04 19:39 - 21703480 _____ (Mozilla) C:\Users\Chris\Downloads\Firefox_Setup_22.0.exe 2013-08-03 10:32 - 2013-08-03 10:36 - 108422648 _____ C:\Users\Chris\Downloads\avira_free_antivirus884_de.exe 2013-08-03 10:30 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll 2013-08-03 10:30 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll 2013-08-03 10:30 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe 2013-08-03 10:30 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll 2013-08-03 10:30 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\windows\system32\wups.dll 2013-08-03 10:30 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll 2013-08-03 10:30 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll 2013-08-03 10:30 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll 2013-08-03 10:30 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe 2013-08-03 10:22 - 2013-08-03 10:22 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Macromedia 2013-08-03 09:53 - 2013-08-11 21:17 - 00000000 ____D C:\Users\Chris\AppData\Local\Hewlett-Packard 2013-08-03 09:51 - 2013-08-04 23:19 - 00058016 _____ C:\Users\Chris\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Roaming\ATI 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Adobe 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Local\ATI 2013-08-03 09:50 - 2013-08-20 18:12 - 00003930 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{8F644E91-0779-4744-ACD3-D6E802ACE2A0} 2013-08-03 09:50 - 2013-08-13 18:40 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Hewlett-Packard 2013-08-03 09:50 - 2013-08-04 23:19 - 00001425 _____ C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-03 09:50 - 2013-08-04 23:19 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-08-03 09:50 - 2013-08-04 23:19 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\Documents\Bluetooth 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Synaptics 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Local\PDFC 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Local\bluesoleil 2013-08-03 09:49 - 2013-08-03 09:49 - 00000000 ____D C:\Users\Chris\AppData\Local\VirtualStore 2013-08-03 09:48 - 2013-08-13 18:40 - 00003760 _____ C:\windows\System32\Tasks\Registration 2013-08-03 09:48 - 2013-08-03 09:48 - 00000000 ____D C:\Users\Chris\AppData\Local\RemEngine 2013-08-03 09:48 - 2013-08-03 09:48 - 00000000 ____D C:\Users\Chris\AppData\Local\Hewlett-Packard_Company 2013-08-03 09:46 - 2013-08-03 09:46 - 00000000 __RSH C:\windows\SysWOW64\Drivers\103C_HP_bNB_ProBook 4545s_Y5336AN_0U_Q2CE31614KQ_E669319-A41_4A_I17ED_SHP_V54.1E_B68CPD F.40_T130308_W748-1_L407_M3533_J500_7AMD_8F01_92.50_#120420_N10EC8168;18143290_(H5V74EA#ABD)_XMOBILE_CN10_Z_2A1019D1103.MRK 2013-08-03 09:46 - 2013-08-03 09:46 - 00000000 __RSH C:\windows\system32\Drivers\103C_HP_bNB_ProBook 4545s_Y5336AN_0U_Q2CE31614KQ_E669319-A41_4A_I17ED_SHP_V54.1E_B68CPD F.40_T130308_W748-1_L407_M3533_J500_7AMD_8F01_92.50_#120420_N10EC8168;18143290_(H5V74EA#ABD)_XMOBILE_CN10_Z_2A1019D1103.MRK 2013-08-03 09:45 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Roaming\hpqLog 2013-08-03 09:45 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Roaming\DigitalPersona 2013-08-03 09:45 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Local\DigitalPersona 2013-08-03 09:44 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Vorlagen 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Startmenü 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Netzwerkumgebung 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Lokale Einstellungen 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Eigene Dateien 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Druckumgebung 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Documents\Eigene Musik 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Documents\Eigene Bilder 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Local\Verlauf 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Local\Anwendungsdaten 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Anwendungsdaten 2013-08-03 09:44 - 2011-02-11 07:19 - 00000020 ___SH C:\Users\Chris\ntuser.ini 2013-08-03 09:44 - 2009-07-14 06:54 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-08-03 09:44 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance ==================== One Month Modified Files and Folders ======= 2013-08-21 19:39 - 2013-08-21 19:39 - 01576164 _____ (Farbar) C:\Users\Chris\Desktop\FRST64.exe 2013-08-21 19:38 - 2012-04-21 07:44 - 00000830 _____ C:\windows\Tasks\Adobe Flash Player Updater.job 2013-08-21 19:35 - 2013-08-21 19:35 - 00891115 _____ C:\Users\Chris\Desktop\SecurityCheck.exe 2013-08-21 17:38 - 2012-04-21 07:44 - 00692104 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe 2013-08-21 17:38 - 2012-04-21 07:44 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-08-21 17:38 - 2012-04-21 07:44 - 00003768 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater 2013-08-21 17:14 - 2013-04-20 17:40 - 01495228 _____ C:\windows\WindowsUpdate.log 2013-08-21 17:09 - 2009-07-14 06:45 - 00031312 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-21 17:09 - 2009-07-14 06:45 - 00031312 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-21 17:06 - 2012-04-21 05:11 - 00699422 _____ C:\windows\system32\perfh007.dat 2013-08-21 17:06 - 2012-04-21 05:11 - 00149328 _____ C:\windows\system32\perfc007.dat 2013-08-21 17:06 - 2009-07-14 07:13 - 01620564 _____ C:\windows\system32\PerfStringBackup.INI 2013-08-21 17:02 - 2012-04-21 07:43 - 00000000 ____D C:\ProgramData\PDFC 2013-08-21 17:01 - 2012-08-16 02:46 - 00000787 _____ C:\windows\SysWOW64\bscs.ini 2013-08-21 17:01 - 2009-07-14 07:08 - 00000006 ____H C:\windows\Tasks\SA.DAT 2013-08-21 17:01 - 2009-07-14 06:51 - 00053312 _____ C:\windows\setupact.log 2013-08-20 21:38 - 2013-08-04 19:57 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Skype 2013-08-20 20:09 - 2013-08-20 20:09 - 00000000 ____D C:\Users\Chris\Desktop\Scan Tools Schritt 2 2013-08-20 19:55 - 2013-08-20 19:52 - 00000000 ____D C:\AdwCleaner 2013-08-20 19:47 - 2010-11-21 05:47 - 00037100 _____ C:\windows\PFRO.log 2013-08-20 19:36 - 2013-08-20 19:36 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Malwarebytes 2013-08-20 19:35 - 2013-08-20 19:35 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-20 19:35 - 2013-08-20 19:34 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-20 19:33 - 2013-08-20 19:33 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Chris\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-20 18:12 - 2013-08-03 09:50 - 00003930 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{8F644E91-0779-4744-ACD3-D6E802ACE2A0} 2013-08-20 00:04 - 2013-08-11 21:17 - 00003182 _____ C:\windows\System32\Tasks\HPCeeScheduleForChris 2013-08-20 00:04 - 2013-08-11 21:17 - 00000332 _____ C:\windows\Tasks\HPCeeScheduleForChris.job 2013-08-19 18:47 - 2013-08-19 18:46 - 00000000 ____D C:\Users\Chris\Desktop\Scan Tool 2013-08-19 18:38 - 2013-08-19 18:38 - 00000000 ____D C:\FRST 2013-08-19 00:30 - 2013-08-19 00:30 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Mozilla 2013-08-19 00:29 - 2013-08-19 00:29 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-08-19 00:29 - 2013-08-19 00:29 - 00001151 _____ C:\ProgramData\Desktop\Mozilla Firefox.lnk 2013-08-19 00:29 - 2013-08-19 00:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-19 00:29 - 2013-08-19 00:28 - 22240760 _____ (Mozilla) C:\Users\Chris\Downloads\Firefox_Setup_23.0.1.exe 2013-08-19 00:29 - 2013-08-18 21:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-19 00:26 - 2013-08-19 00:26 - 02828552 _____ (AVAST Software) C:\Users\Chris\Downloads\avast-browser-cleanup_8.0.1484.29.exe 2013-08-18 23:54 - 2013-08-18 23:54 - 00792704 _____ (AMD) C:\Users\Chris\Downloads\amddriverdownloader.exe 2013-08-18 23:54 - 2013-08-18 23:54 - 00000000 ____D C:\AMD 2013-08-18 23:37 - 2013-08-18 23:37 - 00000000 ____D C:\windows\system32\appmgmt 2013-08-18 23:24 - 2013-08-18 23:24 - 00000000 ____D C:\Users\Chris\Documents\Diablo III 2013-08-18 23:23 - 2013-08-18 22:07 - 00000000 ____D C:\Program Files (x86)\Diablo III 2013-08-18 22:38 - 2013-08-18 22:07 - 00001162 _____ C:\Users\Public\Desktop\Diablo III.lnk 2013-08-18 22:38 - 2013-08-18 22:07 - 00001162 _____ C:\ProgramData\Desktop\Diablo III.lnk 2013-08-18 22:38 - 2013-08-18 22:07 - 00000000 ____D C:\ProgramData\Blizzard Entertainment 2013-08-18 22:07 - 2013-08-18 22:06 - 00000000 ____D C:\ProgramData\Battle.net 2013-08-15 21:06 - 2009-07-14 05:20 - 00000000 ____D C:\windows\rescache 2013-08-14 23:46 - 2013-08-14 23:44 - 00000000 ____D C:\windows\system32\MRT 2013-08-14 23:44 - 2013-08-04 23:33 - 78161360 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2013-08-14 17:38 - 2013-04-20 18:22 - 00004524 _____ C:\windows\SysWOW64\LOCALSERVICE.INI 2013-08-14 17:38 - 2013-04-20 18:22 - 00000043 _____ C:\windows\SysWOW64\LOCALDEVICE.INI 2013-08-13 18:40 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Hewlett-Packard 2013-08-13 18:40 - 2013-08-03 09:48 - 00003760 _____ C:\windows\System32\Tasks\Registration 2013-08-12 17:55 - 2013-08-11 10:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client 2013-08-12 17:55 - 2012-04-21 07:24 - 01648182 _____ C:\windows\SysWOW64\PerfStringBackup.INI 2013-08-11 21:33 - 2013-08-11 13:04 - 00000000 ____D C:\ProgramData\VirtualizedApplications 2013-08-11 21:17 - 2013-08-03 09:53 - 00000000 ____D C:\Users\Chris\AppData\Local\Hewlett-Packard 2013-08-11 11:01 - 2013-08-11 11:01 - 00000000 __RHD C:\MSOCache 2013-08-11 10:54 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Roaming\SoftGrid Client 2013-08-11 10:54 - 2013-08-11 10:54 - 00000000 ____D C:\Users\Chris\AppData\Local\SoftGrid Client 2013-08-11 10:54 - 2013-08-11 10:53 - 00000000 ____D C:\Users\Chris\AppData\Roaming\TP 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\windows\PCHEALTH 2013-08-11 10:53 - 2013-08-11 10:53 - 00000000 ____D C:\Program Files\Microsoft Office 2013-08-11 10:53 - 2012-04-21 07:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-08-11 10:53 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2013-08-11 10:52 - 2013-08-11 10:52 - 00009079 _____ C:\Users\Chris\Downloads\für Chris.xlsx 2013-08-07 00:39 - 2012-04-21 04:53 - 00000000 ____D C:\Program Files\Windows Journal 2013-08-07 00:39 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\winrm 2013-08-07 00:39 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\sysprep 2013-08-07 00:39 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\slmgr 2013-08-07 00:39 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-08-07 00:39 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-08-07 00:39 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\System 2013-08-07 00:38 - 2012-04-21 05:03 - 00000000 ____D C:\windows\SysWOW64\XPSViewer 2013-08-07 00:38 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\WCN 2013-08-07 00:38 - 2010-11-21 09:06 - 00000000 ____D C:\windows\system32\winrm 2013-08-07 00:38 - 2010-11-21 09:06 - 00000000 ____D C:\windows\system32\WCN 2013-08-07 00:38 - 2010-11-21 09:06 - 00000000 ____D C:\windows\system32\slmgr 2013-08-07 00:38 - 2009-07-14 07:37 - 00000000 ____D C:\windows\DigitalLocker 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\Setup 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\MUI 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\Dism 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\sysprep 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\Setup 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\oobe 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\MUI 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\migwiz 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\Dism 2013-08-07 00:38 - 2009-07-14 05:20 - 00000000 ____D C:\windows\IME 2013-08-07 00:37 - 2010-11-21 09:06 - 00000000 ____D C:\windows\system32\Printing_Admin_Scripts 2013-08-07 00:37 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\com 2013-08-07 00:36 - 2012-04-21 05:19 - 00000000 ____D C:\windows\SysWOW64\it 2013-08-07 00:36 - 2010-11-21 09:06 - 00000000 ____D C:\windows\SysWOW64\Printing_Admin_Scripts 2013-08-07 00:36 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-08-07 00:36 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2013-08-07 00:36 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2013-08-07 00:36 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2013-08-07 00:36 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\oobe 2013-08-07 00:36 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\migwiz 2013-08-07 00:36 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\com 2013-08-07 00:36 - 2009-07-14 05:20 - 00000000 ____D C:\windows\servicing 2013-08-07 00:35 - 2009-07-14 07:32 - 00000000 ____D C:\windows\system32\WinBioPlugIns 2013-08-07 00:34 - 2012-04-21 05:19 - 00000000 ____D C:\windows\system32\it 2013-08-07 00:33 - 2012-04-21 05:03 - 00000000 ____D C:\windows\SysWOW64\fr 2013-08-07 00:32 - 2012-04-21 05:03 - 00000000 ____D C:\windows\system32\fr 2013-08-07 00:32 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\DVD Maker 2013-08-05 21:23 - 2013-08-05 21:23 - 00000000 ____D C:\windows\system32\Macromed 2013-08-05 21:23 - 2013-08-05 21:23 - 00000000 ____D C:\Users\Chris\AppData\Local\Macromedia 2013-08-05 21:23 - 2013-08-05 21:22 - 00000000 ____D C:\Users\Chris\AppData\Local\Adobe 2013-08-04 23:19 - 2013-08-03 09:51 - 00058016 _____ C:\Users\Chris\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-04 23:19 - 2013-08-03 09:50 - 00001425 _____ C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-04 23:19 - 2013-08-03 09:50 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-08-04 23:19 - 2013-08-03 09:50 - 00000000 ___RD C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-08-04 23:16 - 2009-07-14 06:45 - 00275856 _____ C:\windows\system32\FNTCACHE.DAT 2013-08-04 23:13 - 2009-07-14 05:20 - 00000000 ____D C:\windows\PolicyDefinitions 2013-08-04 23:12 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\zh-HK 2013-08-04 23:12 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\tr-TR 2013-08-04 23:12 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\zh-HK 2013-08-04 23:12 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\tr-TR 2013-08-04 21:52 - 2013-08-04 21:22 - 00016471 _____ C:\windows\IE10_main.log 2013-08-04 21:29 - 2013-08-04 21:29 - 01509376 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2013-08-04 21:29 - 2013-08-04 21:29 - 01441280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl 2013-08-04 21:29 - 2013-08-04 21:29 - 01400416 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat 2013-08-04 21:29 - 2013-08-04 21:29 - 01400416 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat 2013-08-04 21:29 - 2013-08-04 21:29 - 01054720 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00905728 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00719360 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00629248 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00523264 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\html.iec 2013-08-04 21:29 - 2013-08-04 21:29 - 00361984 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec 2013-08-04 21:29 - 2013-08-04 21:29 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00270848 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00242200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\url.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00232960 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00204800 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00185344 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00173568 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00150528 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\occache.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00138752 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00125440 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00110592 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00097280 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00079872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx 2013-08-04 21:29 - 2013-08-04 21:29 - 00073728 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx 2013-08-04 21:29 - 2013-08-04 21:29 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll 2013-08-04 21:29 - 2013-08-04 21:29 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe 2013-08-04 21:29 - 2013-08-04 21:29 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe 2013-08-04 21:24 - 2013-08-04 21:24 - 03928064 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 03419136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02776576 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 02284544 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01988096 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01682432 _____ (Microsoft Corporation) C:\windows\system32\XpsPrint.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01238528 _____ (Microsoft Corporation) C:\windows\system32\d3d10.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01175552 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01158144 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsPrint.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 01080832 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00648192 _____ (Microsoft Corporation) C:\windows\system32\d3d10level9.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00604160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10level9.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00522752 _____ (Microsoft Corporation) C:\windows\system32\XpsGdiConverter.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00465920 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00417792 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00364544 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsGdiConverter.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00363008 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00333312 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\d3d10core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00293376 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxgi.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00249856 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00245248 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecsExt.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10core.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00207872 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecsExt.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00194560 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00187392 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIAnimation.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00161792 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00010752 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00010752 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00009728 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00009728 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00002560 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-04 21:24 - 2013-08-04 21:24 - 00002560 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-08-04 19:57 - 2013-08-04 19:57 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-08-04 19:57 - 2013-04-20 18:10 - 00000000 ____D C:\ProgramData\Skype 2013-08-04 19:55 - 2013-08-04 19:54 - 32782192 _____ (Skype Technologies S.A.) C:\Users\Chris\Downloads\SkypeSetupFull_6.7.102.exe 2013-08-04 19:40 - 2013-08-04 19:40 - 00000000 ____D C:\Users\Chris\AppData\Local\Mozilla 2013-08-04 19:40 - 2013-08-04 19:40 - 00000000 ____D C:\ProgramData\Mozilla 2013-08-04 19:39 - 2013-08-04 19:38 - 21703480 _____ (Mozilla) C:\Users\Chris\Downloads\Firefox_Setup_22.0.exe 2013-08-03 10:36 - 2013-08-03 10:32 - 108422648 _____ C:\Users\Chris\Downloads\avira_free_antivirus884_de.exe 2013-08-03 10:22 - 2013-08-03 10:22 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Macromedia 2013-08-03 09:59 - 2013-04-20 18:19 - 00001945 _____ C:\windows\epplauncher.mif 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Roaming\ATI 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Adobe 2013-08-03 09:51 - 2013-08-03 09:51 - 00000000 ____D C:\Users\Chris\AppData\Local\ATI 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\Documents\Bluetooth 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Roaming\Synaptics 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Local\PDFC 2013-08-03 09:50 - 2013-08-03 09:50 - 00000000 ____D C:\Users\Chris\AppData\Local\bluesoleil 2013-08-03 09:50 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Roaming\hpqLog 2013-08-03 09:50 - 2013-08-03 09:44 - 00000000 ____D C:\Users\Chris 2013-08-03 09:50 - 2012-04-21 07:28 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2013-08-03 09:49 - 2013-08-03 09:49 - 00000000 ____D C:\Users\Chris\AppData\Local\VirtualStore 2013-08-03 09:48 - 2013-08-03 09:48 - 00000000 ____D C:\Users\Chris\AppData\Local\RemEngine 2013-08-03 09:48 - 2013-08-03 09:48 - 00000000 ____D C:\Users\Chris\AppData\Local\Hewlett-Packard_Company 2013-08-03 09:48 - 2013-04-20 18:03 - 00000000 ___RD C:\Program Files (x86)\Online Services 2013-08-03 09:48 - 2011-07-29 19:38 - 00000000 ___HD C:\SYSTEM.SAV 2013-08-03 09:48 - 2011-07-29 01:51 - 00000000 ____D C:\swsetup 2013-08-03 09:48 - 2009-07-14 07:32 - 00000000 ____D C:\windows\system32\restore 2013-08-03 09:46 - 2013-08-03 09:46 - 00000000 __RSH C:\windows\SysWOW64\Drivers\103C_HP_bNB_ProBook 4545s_Y5336AN_0U_Q2CE31614KQ_E669319-A41_4A_I17ED_SHP_V54.1E_B68CPD F.40_T130308_W748-1_L407_M3533_J500_7AMD_8F01_92.50_#120420_N10EC8168;18143290_(H5V74EA#ABD)_XMOBILE_CN10_Z_2A1019D1103.MRK 2013-08-03 09:46 - 2013-08-03 09:46 - 00000000 __RSH C:\windows\system32\Drivers\103C_HP_bNB_ProBook 4545s_Y5336AN_0U_Q2CE31614KQ_E669319-A41_4A_I17ED_SHP_V54.1E_B68CPD F.40_T130308_W748-1_L407_M3533_J500_7AMD_8F01_92.50_#120420_N10EC8168;18143290_(H5V74EA#ABD)_XMOBILE_CN10_Z_2A1019D1103.MRK 2013-08-03 09:46 - 2011-02-11 07:14 - 00000000 ____D C:\windows\Panther 2013-08-03 09:45 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Roaming\DigitalPersona 2013-08-03 09:45 - 2013-08-03 09:45 - 00000000 ____D C:\Users\Chris\AppData\Local\DigitalPersona 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Vorlagen 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Startmenü 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Netzwerkumgebung 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Lokale Einstellungen 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Eigene Dateien 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Druckumgebung 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Documents\Eigene Musik 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Documents\Eigene Bilder 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Local\Verlauf 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\AppData\Local\Anwendungsdaten 2013-08-03 09:44 - 2013-08-03 09:44 - 00000000 _SHDL C:\Users\Chris\Anwendungsdaten 2013-08-03 09:44 - 2011-02-11 07:19 - 00000000 __SHD C:\Recovery 2013-08-03 09:44 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\Recovery 2013-07-26 07:13 - 2013-08-14 23:51 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2013-07-26 07:13 - 2013-08-14 23:51 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2013-07-26 07:13 - 2013-08-14 23:51 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2013-07-26 07:12 - 2013-08-14 23:51 - 19239424 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 15405056 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 03958784 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 02647040 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2013-07-26 07:12 - 2013-08-14 23:51 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2013-07-26 05:35 - 2013-08-14 23:51 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2013-07-26 05:13 - 2013-08-14 23:51 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll 2013-07-26 05:13 - 2013-08-14 23:51 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 14329344 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 02877440 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 02048512 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll 2013-07-26 05:12 - 2013-08-14 23:51 - 00039936 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll 2013-07-26 05:11 - 2013-08-14 23:51 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll 2013-07-26 05:11 - 2013-08-14 23:51 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll 2013-07-26 04:49 - 2013-08-14 23:51 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb 2013-07-26 04:39 - 2013-08-14 23:51 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe 2013-07-26 03:59 - 2013-08-14 23:51 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-25 11:25 - 2013-08-14 20:13 - 01888768 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL 2013-07-25 10:57 - 2013-08-14 20:13 - 01620992 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMVDECOD.DLL ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-12 19:17 ==================== End Of Log ============================ Gruß, Spoo |
22.08.2013, 08:05 | #8 |
/// the machine /// TB-Ausbilder | Delta Search Problem Fertig Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
22.08.2013, 20:46 | #9 |
| Delta Search Problem hallo schrauber, vielen Dank für deine Hilfe! Eine Frage noch bezüglich des AntiVirenProgramms: Ist da das microsoft security essentials ausreichend oder würdest du da zusätzlich noch etwas anderes bzw. generell etwas anderes empfehlen? Ansonsten habe ich keine weitere Fragen mehr. Gruß, Spoo |
23.08.2013, 09:59 | #10 |
/// the machine /// TB-Ausbilder | Delta Search Problem Das ist ausreichend. Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Delta Search Problem |
aktuelle, aktuellen, avast, cleanup, delta, entfernt, funktioniert, gelöscht, installation, installieren, komplett, malware, problem, programme, pup.babylon.a, pup.optional.babsolution.a, pup.optional.babylon.a, pup.optional.datamngr, pup.optional.delta, pup.optional.delta.a, search, systemsteuerung, versucht, virus |