Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Mediyes.gen Trojaner entdeckt

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Antwort
Alt 20.11.2013, 16:25   #1
Sunzi
 
Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



Hallo liebes Forum,

der Echtzeit-Scanner von Avira hat bei mir einen Trojaner entdeckt. Das Problem trat schon letzte Woche auf. Ich habe versucht ihn in Quarantäne zu schieben und zu löschen, aber das hat nicht geholfen. Ich wäre sehr dankbar für eure Hilfe. Hier noch der Bericht:

Code:
ATTFilter
Avira Free Antivirus
Erstellungsdatum der Reportdatei: Mittwoch, 20. November 2013  15:30


Das Programm läuft als uneingeschränkte Vollversion.
Online-Dienste stehen zur Verfügung.

Lizenznehmer   : Avira Free Antivirus
Seriennummer   : 0000149996-ADJIE-0000001
Plattform      : Windows 8.1 Pro
Windowsversion : (plain)  [6.2.9200]
Boot Modus     : Normal gebootet
Benutzername   : SYSTEM
Computername   : DANIEL

Versionsinformationen:
BUILD.DAT      : 14.0.1.719     55392 Bytes  31.10.2013 19:25:00
AVSCAN.EXE     : 14.0.1.645   1030712 Bytes  14.11.2013 12:09:52
AVSCANRC.DLL   : 14.0.1.641     62008 Bytes  14.11.2013 12:09:52
LUKE.DLL       : 14.0.1.641     65080 Bytes  14.11.2013 12:10:11
AVSCPLR.DLL    : 14.0.1.641    124472 Bytes  14.11.2013 12:09:52
AVREG.DLL      : 14.0.1.641    250424 Bytes  14.11.2013 12:09:50
avlode.dll     : 14.0.1.681    517176 Bytes  14.11.2013 12:09:48
avlode.rdf     : 13.0.1.48      27867 Bytes  13.11.2013 19:29:37
VBASE000.VDF   : 7.11.70.0   66736640 Bytes  04.04.2013 17:14:08
VBASE001.VDF   : 7.11.74.226  2201600 Bytes  30.04.2013 17:14:08
VBASE002.VDF   : 7.11.80.60   2751488 Bytes  28.05.2013 17:14:08
VBASE003.VDF   : 7.11.85.214  2162688 Bytes  21.06.2013 17:14:08
VBASE004.VDF   : 7.11.91.176  3903488 Bytes  23.07.2013 17:14:08
VBASE005.VDF   : 7.11.98.186  6822912 Bytes  29.08.2013 17:14:08
VBASE006.VDF   : 7.11.103.230  2293248 Bytes  24.09.2013 17:14:08
VBASE007.VDF   : 7.11.111.18  3598336 Bytes  06.11.2013 10:48:07
VBASE008.VDF   : 7.11.111.19     2048 Bytes  06.11.2013 10:48:07
VBASE009.VDF   : 7.11.111.20     2048 Bytes  06.11.2013 10:48:07
VBASE010.VDF   : 7.11.111.21     2048 Bytes  06.11.2013 10:48:07
VBASE011.VDF   : 7.11.111.22     2048 Bytes  06.11.2013 10:48:07
VBASE012.VDF   : 7.11.111.23     2048 Bytes  06.11.2013 10:48:07
VBASE013.VDF   : 7.11.111.150   168448 Bytes  07.11.2013 21:10:10
VBASE014.VDF   : 7.11.112.47   247808 Bytes  08.11.2013 18:16:45
VBASE015.VDF   : 7.11.112.139   323584 Bytes  11.11.2013 22:59:34
VBASE016.VDF   : 7.11.113.39   221696 Bytes  13.11.2013 11:17:56
VBASE017.VDF   : 7.11.113.149   246272 Bytes  15.11.2013 07:35:25
VBASE018.VDF   : 7.11.113.243   220160 Bytes  17.11.2013 20:24:19
VBASE019.VDF   : 7.11.114.89   262144 Bytes  19.11.2013 12:49:33
VBASE020.VDF   : 7.11.114.157   190976 Bytes  20.11.2013 13:10:29
VBASE021.VDF   : 7.11.114.158     2048 Bytes  20.11.2013 13:10:29
VBASE022.VDF   : 7.11.114.159     2048 Bytes  20.11.2013 13:10:29
VBASE023.VDF   : 7.11.114.160     2048 Bytes  20.11.2013 13:10:29
VBASE024.VDF   : 7.11.114.161     2048 Bytes  20.11.2013 13:10:29
VBASE025.VDF   : 7.11.114.162     2048 Bytes  20.11.2013 13:10:29
VBASE026.VDF   : 7.11.114.163     2048 Bytes  20.11.2013 13:10:29
VBASE027.VDF   : 7.11.114.164     2048 Bytes  20.11.2013 13:10:29
VBASE028.VDF   : 7.11.114.165     2048 Bytes  20.11.2013 13:10:29
VBASE029.VDF   : 7.11.114.166     2048 Bytes  20.11.2013 13:10:29
VBASE030.VDF   : 7.11.114.167     2048 Bytes  20.11.2013 13:10:30
VBASE031.VDF   : 7.11.114.200   109568 Bytes  20.11.2013 13:10:30
Engineversion  : 8.2.12.144
AEVDF.DLL      : 8.1.3.4       102774 Bytes  10.10.2013 17:14:02
AESCRIPT.DLL   : 8.1.4.168     520574 Bytes  15.11.2013 07:35:27
AESCN.DLL      : 8.1.10.4      131446 Bytes  10.10.2013 17:14:02
AESBX.DLL      : 8.2.16.26    1245560 Bytes  10.10.2013 17:14:02
AERDL.DLL      : 8.2.0.128     688504 Bytes  10.10.2013 17:14:02
AEPACK.DLL     : 8.3.3.4       758136 Bytes  25.10.2013 16:17:58
AEOFFICE.DLL   : 8.1.2.76      205181 Bytes  10.10.2013 17:14:02
AEHEUR.DLL     : 8.1.4.758    6275450 Bytes  15.11.2013 07:35:26
AEHELP.DLL     : 8.1.27.8      266617 Bytes  07.11.2013 21:10:11
AEGEN.DLL      : 8.1.7.20      446839 Bytes  13.11.2013 19:29:37
AEEXP.DLL      : 8.4.1.100     369016 Bytes  02.11.2013 13:49:49
AEEMU.DLL      : 8.1.3.2       393587 Bytes  10.10.2013 17:14:02
AECORE.DLL     : 8.1.32.2      201081 Bytes  07.11.2013 21:10:10
AEBB.DLL       : 8.1.1.4        53619 Bytes  10.10.2013 17:14:02
AVWINLL.DLL    : 14.0.1.641     23608 Bytes  14.11.2013 12:09:24
AVPREF.DLL     : 14.0.1.641     48696 Bytes  14.11.2013 12:09:49
AVREP.DLL      : 14.0.1.641    175672 Bytes  14.11.2013 12:09:51
AVARKT.DLL     : 14.0.1.641    257080 Bytes  14.11.2013 12:09:45
AVEVTLOG.DLL   : 14.0.1.641    165944 Bytes  14.11.2013 12:09:46
SQLITE3.DLL    : 3.7.0.1       394824 Bytes  10.10.2013 17:14:07
AVSMTP.DLL     : 14.0.1.641     60472 Bytes  14.11.2013 12:09:53
NETNT.DLL      : 14.0.1.641     13368 Bytes  14.11.2013 12:10:12
RCIMAGE.DLL    : 14.0.1.641   4786744 Bytes  14.11.2013 12:09:24
RCTEXT.DLL     : 14.0.1.641     67128 Bytes  14.11.2013 12:09:24

Konfiguration für den aktuellen Suchlauf:
Job Name..............................: AVGuardAsyncScan
Konfigurationsdatei...................: C:\ProgramData\Avira\AntiVir Desktop\TEMP\AVGUARD_528cbbee\guard_slideup.avp
Protokollierung.......................: standard
Primäre Aktion........................: Interaktiv
Sekundäre Aktion......................: Quarantäne
Durchsuche Masterbootsektoren.........: ein
Durchsuche Bootsektoren...............: aus
Durchsuche aktive Programme...........: ein
Durchsuche Registrierung..............: aus
Suche nach Rootkits...................: aus
Integritätsprüfung von Systemdateien..: ein
Prüfe alle Dateien....................: Alle Dateien
Durchsuche Archive....................: ein
Rekursionstiefe einschränken..........: 20
Archiv Smart Extensions...............: ein
Makrovirenheuristik...................: ein
Dateiheuristik........................: Vollständig

Beginn des Suchlaufs: Mittwoch, 20. November 2013  15:30

Der Suchlauf über gestartete Prozesse wird begonnen:
Durchsuche Prozess 'ThumbnailExtractionHost.exe' - '24' Modul(e) wurden durchsucht
Durchsuche Prozess 'avscan.exe' - '101' Modul(e) wurden durchsucht
Durchsuche Prozess 'LiveComm.exe' - '50' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskhost.exe' - '38' Modul(e) wurden durchsucht
Durchsuche Prozess 'TiWorker.exe' - '67' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '30' Modul(e) wurden durchsucht
Durchsuche Prozess 'vssvc.exe' - '39' Modul(e) wurden durchsucht
Durchsuche Prozess 'TrustedInstaller.exe' - '22' Modul(e) wurden durchsucht
Durchsuche Prozess 'calc.exe' - '37' Modul(e) wurden durchsucht
Durchsuche Prozess 'FlashPlayerPlugin_11_9_900_152.exe' - '53' Modul(e) wurden durchsucht
Durchsuche Prozess 'FlashPlayerPlugin_11_9_900_152.exe' - '45' Modul(e) wurden durchsucht
Durchsuche Prozess 'plugin-container.exe' - '69' Modul(e) wurden durchsucht
Durchsuche Prozess 'RuntimeBroker.exe' - '58' Modul(e) wurden durchsucht
Durchsuche Prozess 'glcnd.exe' - '61' Modul(e) wurden durchsucht
Durchsuche Prozess 'firefox.exe' - '105' Modul(e) wurden durchsucht
Durchsuche Prozess 'CNMNSST.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'CNSEMAIN.EXE' - '62' Modul(e) wurden durchsucht
Durchsuche Prozess 'BJMYPRT.EXE' - '23' Modul(e) wurden durchsucht
Durchsuche Prozess 'jusched.exe' - '23' Modul(e) wurden durchsucht
Durchsuche Prozess 'avgnt.exe' - '89' Modul(e) wurden durchsucht
Durchsuche Prozess 'WUDFHost.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '32' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchIndexer.exe' - '59' Modul(e) wurden durchsucht
Durchsuche Prozess 'avshadow.exe' - '24' Modul(e) wurden durchsucht
Durchsuche Prozess 'Explorer.EXE' - '234' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskhostex.exe' - '47' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '41' Modul(e) wurden durchsucht
Durchsuche Prozess 'sqlwriter.exe' - '35' Modul(e) wurden durchsucht
Durchsuche Prozess 'avguard.exe' - '98' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '76' Modul(e) wurden durchsucht
Durchsuche Prozess 'sched.exe' - '53' Modul(e) wurden durchsucht
Durchsuche Prozess 'spoolsv.exe' - '80' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '87' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '94' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '47' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '183' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '84' Modul(e) wurden durchsucht
Durchsuche Prozess 'dwm.exe' - '36' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '48' Modul(e) wurden durchsucht
Durchsuche Prozess 'winlogon.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'lsass.exe' - '59' Modul(e) wurden durchsucht
Durchsuche Prozess 'wininit.exe' - '15' Modul(e) wurden durchsucht

Untersuchung der Systemdateien wird begonnen:
Signiert -> 'C:\Windows\system32\svchost.exe'
Signiert -> 'C:\Windows\system32\winlogon.exe'
Signiert -> 'C:\Windows\explorer.exe'
Signiert -> 'C:\Windows\system32\smss.exe'
Signiert -> 'C:\Windows\system32\wininet.DLL'
Signiert -> 'C:\Windows\system32\wsock32.DLL'
Signiert -> 'C:\Windows\system32\ws2_32.DLL'
Signiert -> 'C:\Windows\system32\services.exe'
Signiert -> 'C:\Windows\system32\lsass.exe'
Signiert -> 'C:\Windows\system32\csrss.exe'
Signiert -> 'C:\Windows\system32\drivers\kbdclass.sys'
Signiert -> 'C:\Windows\system32\spoolsv.exe'
Signiert -> 'C:\Windows\system32\alg.exe'
Signiert -> 'C:\Windows\system32\wuauclt.exe'
Signiert -> 'C:\Windows\system32\advapi32.DLL'
Signiert -> 'C:\Windows\system32\user32.DLL'
Signiert -> 'C:\Windows\system32\gdi32.DLL'
Signiert -> 'C:\Windows\system32\kernel32.DLL'
Signiert -> 'C:\Windows\system32\ntdll.DLL'
Signiert -> 'C:\Windows\system32\ntoskrnl.exe'
Signiert -> 'C:\Windows\system32\drivers\beep.sys'
Signiert -> 'C:\Windows\system32\ctfmon.exe'
Signiert -> 'C:\Windows\system32\imm32.dll'
Signiert -> 'C:\Windows\system32\dsound.dll'
Signiert -> 'C:\Windows\system32\aclui.dll'
Signiert -> 'C:\Windows\system32\msvcrt.dll'
Signiert -> 'C:\Windows\system32\d3d9.dll'
Signiert -> 'C:\Windows\system32\dnsapi.dll'
Signiert -> 'C:\Windows\system32\mshtml.dll'
Signiert -> 'C:\Windows\system32\regsvr32.exe'
Signiert -> 'C:\Windows\system32\rundll32.exe'
Signiert -> 'C:\Windows\system32\userinit.exe'
Signiert -> 'C:\Windows\system32\reg.exe'
Signiert -> 'C:\Windows\system32\ntvdm.exe'
Signiert -> 'C:\Windows\regedit.exe'
Die Systemdateien wurden durchsucht ('35' Dateien)

Der Suchlauf über die ausgewählten Dateien wird begonnen:

Beginne mit der Suche in 'C:\Windows\WinSxS\Temp\PendingRenames\e4249bc8fce5ce0185040000000d080c.x86_microsoft-windows-kernelstreaming_31bf3856ad364e35_6.3.9600.16395_none_ec16b73cb184e5d3_ks.sys_f36cc2f7'
C:\Windows\WinSxS\Temp\PendingRenames\e4249bc8fce5ce0185040000000d080c.x86_microsoft-windows-kernelstreaming_31bf3856ad364e35_6.3.9600.16395_none_ec16b73cb184e5d3_ks.sys_f36cc2f7
  [FUND]      Ist das Trojanische Pferd TR/Mediyes.Gen

Beginne mit der Desinfektion:
C:\Windows\WinSxS\Temp\PendingRenames\e4249bc8fce5ce0185040000000d080c.x86_microsoft-windows-kernelstreaming_31bf3856ad364e35_6.3.9600.16395_none_ec16b73cb184e5d3_ks.sys_f36cc2f7
  [FUND]      Ist das Trojanische Pferd TR/Mediyes.Gen
  [HINWEIS]   Die Datei wurde gelöscht.


Ende des Suchlaufs: Mittwoch, 20. November 2013  15:31
Benötigte Zeit: 00:06 Minute(n)

Der Suchlauf wurde vollständig durchgeführt.

      0 Verzeichnisse wurden überprüft
    663 Dateien wurden geprüft
      1 Viren bzw. unerwünschte Programme wurden gefunden
      0 Dateien wurden als verdächtig eingestuft
      1 Dateien wurden gelöscht
      0 Viren bzw. unerwünschte Programme wurden repariert
      0 Dateien wurden in die Quarantäne verschoben
      0 Dateien wurden umbenannt
      0 Dateien konnten nicht durchsucht werden
    662 Dateien ohne Befall
      0 Archive wurden durchsucht
      0 Warnungen
      1 Hinweise


Die Suchergebnisse werden an den Guard übermittelt.
         

Alt 20.11.2013, 16:34   #2
schrauber
/// the machine
/// TB-Ausbilder
 

Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________

__________________

Alt 20.11.2013, 22:41   #3
Sunzi
 
Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



FRST


FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-11-2013
Ran by Dan1el (administrator) on DANIEL on 20-11-2013 22:34:40
Running from C:\Users\Dan1el\Downloads
Microsoft Windows 8.1 Pro (X86) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(CANON INC.) C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE
(CANON INC.) C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE
(CANON INC.) C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9600.16422_x86__8wekyb3d8bbwe\glcnd.exe
(Microsoft Corporation) C:\Windows\System32\RuntimeBroker.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe
(Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.beta.2391\Agent.exe
(Blizzard Entertainment) C:\Program Files\Battle.net\Battle.net.3891\Battle.net.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [683576 2013-11-14] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [CanonMyPrinter] - C:\Program Files\Canon\MyPrinter\BJMYPRT.EXE [2565520 2011-03-14] (CANON INC.)
HKLM\...\Run: [CanonSolutionMenuEx] - C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE [1612920 2011-08-04] (CANON INC.)
HKLM\...\Run: [IJNetworkScannerSelectorEX] - C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [452016 2011-01-15] (CANON INC.)
HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [641704 2012-11-16] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [AMD AVT] - Cmd.exe /c start "AMD Accelerated Video Transcoding device initialization" /min "C:\Program Files\AMD AVT\bin\kdbsync.exe" aml
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
MountPoints2: {d11e8de4-3d86-11e3-9715-001f16a546fe} - "E:\vs_ultimate.exe" 

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x0F341FA496D1CE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Microsoft Web Test Recorder 10.0 Helper - {876d9f09-c6d6-4324-a2cc-04dd9a4de12f} - C:\Program Files\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 141.44.1.9 141.44.1.1

FireFox:
========
FF ProfilePath: C:\Users\Dan1el\AppData\Roaming\Mozilla\Firefox\Profiles\gigpqowz.default
FF DefaultSearchEngine: Google
FF SelectedSearchEngine: Google
FF Homepage: google.de
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
FF Plugin: @canon.com/EPPEX - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files\mozilla firefox\browser\searchplugins\yahoo-de.xml

========================== Services (Whitelisted) =================

R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [440376 2013-11-14] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-14] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\avwebg7.exe [1164360 2013-10-10] (Avira Operations GmbH & Co. KG)
S3 fussvc; C:\Program Files\Windows Kits\8.0\App Certification Kit\fussvc.exe [133632 2012-07-25] (Microsoft Corporation)
S3 ScDeviceEnum; C:\Windows\System32\ScDeviceEnum.dll [105472 2013-08-22] (Microsoft Corporation)
S3 Te.Service; C:\Program Files\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [94208 2012-07-25] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [278264 2013-08-22] (Microsoft Corporation)
S3 WEPHOSTSVC; C:\Windows\system32\wephostsvc.dll [20992 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22240 2013-08-22] (Microsoft Corporation)
S3 workfolderssvc; C:\Windows\system32\workfolderssvc.dll [1210368 2013-10-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

R3 athr; C:\Windows\system32\DRIVERS\athwn.sys [2795520 2013-06-18] (Qualcomm Atheros Communications, Inc.)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [90400 2013-11-14] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [137208 2013-11-14] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [37352 2013-10-10] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [67680 2013-10-10] (Avira Operations GmbH & Co. KG)
R1 BasicRender; C:\Windows\System32\drivers\BasicRender.sys [25600 2013-08-22] (Microsoft Corporation)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [242240 2013-10-25] (DT Soft Ltd)
S3 GPIO; C:\Windows\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation)
R3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation)
R1 ssmdrv; C:\Windows\system32\DRIVERS\ssmdrv.sys [28520 2013-10-10] (Avira GmbH)
S3 VSPerfDrv110; C:\Program Files\Microsoft Visual Studio 11.0\Team Tools\Performance Tools\VSPerfDrv110.sys [55416 2012-07-26] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [93024 2013-08-22] (Microsoft Corporation)
R3 WUDFWpdMtp; C:\Windows\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-11-20 22:34 - 2013-11-20 22:35 - 00008043 _____ C:\Users\Dan1el\Downloads\FRST.txt
2013-11-20 22:34 - 2013-11-20 22:34 - 00000000 ____D C:\FRST
2013-11-20 22:33 - 2013-11-20 22:33 - 01090881 _____ (Farbar) C:\Users\Dan1el\Downloads\FRST.exe
2013-11-20 14:42 - 2013-11-20 14:42 - 00675988 _____ C:\Users\Dan1el\Desktop\Minecraft.exe
2013-11-20 14:34 - 2013-11-20 14:34 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\ATI
2013-11-20 14:34 - 2013-11-20 14:34 - 00000000 ____D C:\Users\Dan1el\AppData\Local\ATI
2013-11-20 14:34 - 2013-11-20 14:34 - 00000000 ____D C:\ProgramData\ATI
2013-11-20 14:32 - 2013-11-20 14:32 - 00000000 ____D C:\Program Files\ATI.ACE
2013-11-20 14:30 - 2013-11-20 14:30 - 107116832 _____ (Advanced Micro Devices, Inc.) C:\Users\Dan1el\Downloads\13-1-legacy_vista_win7_win8_32_dd_ccc(1).exe
2013-11-20 14:09 - 2013-11-20 14:09 - 00791552 _____ (AMD) C:\Users\Dan1el\Downloads\amddriverdownloader(1).exe
2013-11-20 14:07 - 2013-11-20 14:07 - 00000000 ____D C:\ProgramData\McAfee
2013-11-20 14:01 - 2013-11-20 14:01 - 00000000 ____D C:\Program Files\Intel
2013-11-20 14:01 - 2009-07-08 16:34 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\system32\CSVer.dll
2013-11-20 13:59 - 2013-11-20 13:59 - 00000000 ____D C:\Users\Dan1el\AppData\Local\DriverTuner
2013-11-20 13:59 - 2013-11-20 13:59 - 00000000 ____D C:\Program Files\DriverTuner
2013-11-20 13:58 - 2013-11-20 13:58 - 02816072 _____ (LionSea SoftWare                                            ) C:\Users\Dan1el\Downloads\setup.exe
2013-11-20 13:39 - 2013-11-20 13:39 - 00000000 ____D C:\ProgramData\AMD
2013-11-20 13:39 - 2013-11-20 13:39 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2013-11-20 13:39 - 2013-11-20 13:39 - 00000000 ____D C:\Program Files\AMD AVT
2013-11-20 13:39 - 2013-11-20 13:39 - 00000000 ____D C:\Program Files\AMD APP
2013-11-20 13:38 - 2013-11-20 13:39 - 00000000 ____D C:\Program Files\ATI Technologies
2013-11-20 13:38 - 2013-11-20 13:38 - 00000000 ____D C:\Program Files\ATI
2013-11-20 13:38 - 2013-11-20 13:38 - 00000000 ____D C:\AMD
2013-11-20 13:37 - 2013-11-20 13:37 - 107116832 _____ (Advanced Micro Devices, Inc.) C:\Users\Dan1el\Downloads\13-1-legacy_vista_win7_win8_32_dd_ccc.exe
2013-11-20 13:34 - 2013-11-20 13:34 - 00791552 _____ (AMD) C:\Users\Dan1el\Downloads\amddriverdownloader.exe
2013-11-18 20:33 - 2013-11-18 20:33 - 00001368 _____ C:\Users\Dan1el\Desktop\aufgabe6.3.prf
2013-11-16 13:29 - 2013-11-16 13:29 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-16 12:34 - 2013-11-20 21:25 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\.minecraft
2013-11-15 23:15 - 2013-11-05 19:51 - 18642504 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2013-11-15 23:15 - 2013-11-05 17:20 - 13925888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2013-11-15 23:15 - 2013-11-05 15:30 - 11674112 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2013-11-15 23:15 - 2013-10-23 10:44 - 00104280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-11-15 23:15 - 2013-10-23 10:24 - 00142680 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_8086.dll
2013-11-15 23:15 - 2013-10-23 10:21 - 00044904 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2013-11-15 23:15 - 2013-10-23 06:04 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2013-11-15 23:15 - 2013-10-23 05:54 - 03422208 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2013-11-15 23:15 - 2013-10-23 05:46 - 00700928 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2013-11-15 23:15 - 2013-10-22 07:14 - 01033368 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2013-11-15 23:15 - 2013-10-22 07:13 - 00079192 _____ (Microsoft Corporation) C:\Windows\system32\embeddedapplauncher.exe
2013-11-15 23:15 - 2013-10-22 07:03 - 02065448 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2013-11-15 23:15 - 2013-10-22 05:04 - 00618496 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2013-11-15 23:15 - 2013-10-22 04:02 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2013-11-15 23:15 - 2013-10-22 03:52 - 00667136 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2013-11-15 23:15 - 2013-10-22 02:59 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2013-11-15 23:15 - 2013-10-22 02:51 - 01634304 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2013-11-15 23:15 - 2013-10-22 02:47 - 02295808 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2013-11-15 23:15 - 2013-10-22 02:40 - 01210368 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2013-11-15 23:15 - 2013-10-19 08:18 - 01307480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2013-11-15 23:15 - 2013-10-19 08:12 - 00380656 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2013-11-15 23:15 - 2013-10-19 06:20 - 03497472 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-11-15 23:15 - 2013-10-19 05:03 - 00531968 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2013-11-15 23:15 - 2013-10-19 04:28 - 01765376 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2013-11-15 23:15 - 2013-10-19 04:14 - 00888832 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2013-11-15 23:15 - 2013-10-17 15:04 - 01204968 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2013-11-15 23:15 - 2013-10-17 15:04 - 01155384 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2013-11-15 23:15 - 2013-10-16 10:34 - 00518656 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2013-11-15 23:15 - 2013-10-13 01:49 - 00207192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2013-11-15 23:15 - 2013-10-13 01:29 - 00706536 _____ (Microsoft Corporation) C:\Windows\system32\iuilp.dll
2013-11-15 23:15 - 2013-10-11 17:34 - 02038272 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2013-11-15 23:15 - 2013-10-11 15:22 - 01816576 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2013-11-15 23:15 - 2013-10-11 14:03 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2013-11-15 23:15 - 2013-10-10 15:53 - 00235960 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-11-15 23:15 - 2013-10-10 15:53 - 00088272 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2013-11-15 23:15 - 2013-10-10 15:53 - 00029528 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll
2013-11-15 23:15 - 2013-10-10 15:52 - 02872688 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll
2013-11-15 23:15 - 2013-10-10 12:21 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2013-11-15 23:15 - 2013-10-10 12:12 - 00184832 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2013-11-15 23:15 - 2013-10-10 12:05 - 01019392 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2013-11-15 23:15 - 2013-10-10 11:35 - 01128448 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2013-11-15 23:15 - 2013-10-10 11:27 - 00869888 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2013-11-15 23:15 - 2013-10-10 11:19 - 00734208 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2013-11-15 23:15 - 2013-10-09 06:40 - 00385528 _____ C:\Windows\system32\ApnDatabase.xml
2013-11-15 23:15 - 2013-10-08 10:11 - 00036696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2013-11-15 23:15 - 2013-10-08 09:49 - 00415576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2013-11-15 23:15 - 2013-10-08 09:26 - 01888088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-11-15 23:15 - 2013-10-08 06:58 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2013-11-15 23:15 - 2013-10-08 06:15 - 00492544 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2013-11-15 23:15 - 2013-10-08 06:14 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2013-11-15 23:15 - 2013-10-08 05:50 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2013-11-15 23:15 - 2013-10-08 05:40 - 00795648 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2013-11-15 23:15 - 2013-10-07 07:07 - 05753688 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-11-15 23:15 - 2013-10-07 07:07 - 00049544 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2013-11-15 23:15 - 2013-10-07 03:03 - 02833408 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2013-11-15 23:15 - 2013-10-05 13:30 - 00321368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2013-11-15 23:15 - 2013-10-05 13:30 - 00047960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2013-11-15 23:15 - 2013-10-05 13:05 - 00578952 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2013-11-15 23:15 - 2013-10-05 10:59 - 00336896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2013-11-15 23:15 - 2013-10-05 09:52 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2013-11-15 23:15 - 2013-10-05 09:40 - 00795648 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2013-11-15 23:15 - 2013-10-05 09:29 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2013-11-15 23:15 - 2013-10-05 09:24 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\miutils.dll
2013-11-15 23:15 - 2013-10-05 09:21 - 00920064 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2013-11-15 23:15 - 2013-10-05 09:00 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll
2013-11-15 23:15 - 2013-10-05 08:35 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2013-11-15 23:15 - 2013-10-05 08:32 - 05769728 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2013-11-15 23:15 - 2013-10-04 09:00 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2013-11-15 23:15 - 2013-09-19 05:34 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2013-11-15 23:15 - 2013-09-17 07:34 - 00870232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2013-11-15 23:15 - 2013-09-17 07:31 - 00883184 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2013-11-15 23:15 - 2013-09-17 07:31 - 00326024 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2013-11-15 23:15 - 2013-09-17 04:47 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\dafBth.dll
2013-11-15 23:15 - 2013-09-14 13:39 - 01799944 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2013-11-15 23:15 - 2013-09-14 13:33 - 00345552 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2013-11-15 23:15 - 2013-09-14 10:29 - 00284160 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2013-11-15 23:15 - 2013-09-14 09:54 - 00380928 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2013-11-15 23:15 - 2013-09-13 08:47 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2013-11-15 23:15 - 2013-09-12 09:02 - 00093184 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2013-11-15 23:15 - 2013-09-12 08:37 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2013-11-15 23:15 - 2013-09-12 08:37 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2013-11-15 23:15 - 2013-09-12 08:21 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2013-11-15 23:15 - 2013-09-12 08:17 - 00152576 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll
2013-11-15 23:15 - 2013-09-12 08:01 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2013-11-15 23:15 - 2013-09-11 12:21 - 00261464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2013-11-15 23:15 - 2013-09-10 05:34 - 03934208 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2013-11-15 23:15 - 2013-09-10 05:28 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\msched.dll
2013-11-15 19:20 - 2013-11-15 19:20 - 00001200 _____ C:\Users\Dan1el\Desktop\horner.txt
2013-11-14 13:57 - 2013-11-14 14:03 - 00000000 ____D C:\Users\Dan1el\Desktop\Logik
2013-11-14 13:00 - 2013-11-14 13:05 - 00000000 ____D C:\Windows\system32\MRT
2013-11-14 13:00 - 2013-11-07 15:50 - 80340640 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-11-14 12:14 - 2013-10-19 07:37 - 17142784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-14 12:14 - 2013-10-19 04:56 - 11220992 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-14 12:13 - 2013-10-19 05:52 - 02166272 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-14 12:13 - 2013-10-19 05:44 - 04240384 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-14 12:13 - 2013-10-19 05:43 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-11-14 12:13 - 2013-10-19 05:28 - 00208896 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-11-14 12:13 - 2013-10-19 04:55 - 01926656 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-14 12:13 - 2013-10-19 04:09 - 01818112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-14 12:13 - 2013-10-19 04:02 - 01156608 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-14 12:13 - 2013-10-16 14:54 - 01581968 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-11-14 12:13 - 2013-10-13 01:45 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2013-11-14 12:13 - 2013-10-12 22:14 - 00549888 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2013-11-14 12:13 - 2013-10-12 22:02 - 00730112 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2013-11-14 12:13 - 2013-10-05 13:05 - 01090808 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2013-11-09 14:10 - 2013-11-10 23:49 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Notepad++
2013-11-09 14:10 - 2013-11-09 14:10 - 07520740 _____ C:\Users\Dan1el\Downloads\npp.6.5.1.Installer.exe
2013-11-09 14:10 - 2013-11-09 14:10 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2013-11-09 14:10 - 2013-11-09 14:10 - 00000000 ____D C:\Program Files\Notepad++
2013-11-08 14:42 - 2013-11-08 14:42 - 00000000 ___HD C:\ProgramData\CanonIJEPPEX2
2013-11-08 14:42 - 2013-11-08 14:42 - 00000000 ___HD C:\ProgramData\CanonEPP
2013-11-08 14:42 - 2013-11-08 14:42 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Canon
2013-11-08 14:39 - 2013-11-08 14:39 - 00000000 ____D C:\ProgramData\Canon IJ Network Tool
2013-11-08 14:39 - 2011-03-31 10:07 - 00114688 _____ (CANON INC.) C:\Windows\system32\CNC_ATU.dll
2013-11-08 14:39 - 2011-03-31 10:05 - 00286720 _____ (CANON INC.) C:\Windows\system32\CNC_ATC.dll
2013-11-08 14:39 - 2011-03-31 10:05 - 00114688 _____ (CANON INC.) C:\Windows\system32\CNC_ATI.dll
2013-11-08 14:39 - 2011-03-30 12:54 - 00323584 _____ (CANON INC.) C:\Windows\system32\CNC_ATL.dll
2013-11-08 14:39 - 2010-11-12 11:13 - 00068096 _____ C:\Windows\system32\CNC1754D.TBL
2013-11-08 14:39 - 2008-08-25 18:02 - 00015872 _____ (CANON INC.) C:\Windows\system32\CNHMCA.dll
2013-11-08 14:38 - 2013-11-08 14:38 - 00000000 ____D C:\ProgramData\CanonIJWSpt
2013-11-08 14:38 - 2013-11-08 14:38 - 00000000 ____D C:\Program Files\Common Files\CANON
2013-11-08 14:35 - 2013-11-08 14:35 - 00002326 _____ C:\Users\Public\Desktop\Canon MG5300 series Online-Handbuch.lnk
2013-11-08 14:34 - 2013-11-08 14:34 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information
2013-11-08 14:34 - 2013-11-08 14:34 - 00000000 ___HD C:\ProgramData\CanonBJ
2013-11-08 14:32 - 2013-11-08 14:32 - 00000000 ___HD C:\Program Files\CanonBJ
2013-11-08 14:32 - 2013-11-08 14:32 - 00000000 ____D C:\Windows\system32\STRING
2013-11-08 14:32 - 2011-05-23 05:00 - 00310272 _____ (CANON INC.) C:\Windows\system32\CNMLMAT.DLL
2013-11-08 14:32 - 2011-02-03 01:20 - 00184320 _____ (CANON INC.) C:\Windows\system32\CNMIUAT.DLL
2013-11-08 14:32 - 2011-02-01 09:23 - 00035328 _____ (CANON INC.) C:\Windows\system32\CNMNPUI.DLL
2013-11-08 14:32 - 2011-02-01 09:22 - 00363008 _____ (CANON INC.) C:\Windows\system32\CNMNPPM.DLL
2013-11-08 14:29 - 2013-11-08 14:42 - 00000000 ____D C:\Program Files\Canon
2013-11-07 08:25 - 2013-09-01 16:16 - 00000000 ____D C:\Users\Dan1el\Downloads\Eloquent & Wun Two - Jazz Auf Gleich (2013) (320) by 720
2013-11-06 19:12 - 2013-11-06 19:12 - 09896644 _____ C:\Users\Dan1el\Downloads\marteria-bengalische_tiger.zip
2013-11-06 19:12 - 2013-11-06 09:57 - 00000000 ____D C:\Users\Dan1el\Downloads\__MACOSX
2013-11-06 14:53 - 2013-11-06 14:53 - 00001099 _____ C:\Users\Dan1el\Desktop\Studium.lnk
2013-11-05 22:00 - 2013-11-05 22:34 - 104519618 _____ C:\Users\Dan1el\Downloads\Elo & WuT - Jazz Auf Gleich (2013) (320) by 720.rar
2013-11-04 23:13 - 2013-09-25 23:41 - 00000000 ____D C:\Users\Dan1el\Downloads\eloQuent - Gebrochenes Deutsch (2012)
2013-11-04 22:56 - 2013-11-04 23:11 - 47942343 _____ C:\Users\Dan1el\Downloads\eloQuent - Gebrochenes Deutsch - NOiR.rar
2013-11-02 14:04 - 2013-11-02 14:04 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2013-10-31 22:20 - 2013-10-31 22:20 - 00001568 _____ C:\Users\Dan1el\Downloads\2.3.txt
2013-10-31 22:20 - 2013-10-31 22:20 - 00000813 _____ C:\Users\Dan1el\Downloads\2.4.txt
2013-10-31 22:19 - 2013-10-31 22:19 - 00000681 _____ C:\Users\Dan1el\Downloads\2.23.txt
2013-10-31 22:19 - 2013-10-31 22:19 - 00000327 _____ C:\Users\Dan1el\Downloads\2.22.txt
2013-10-31 09:33 - 2013-10-31 09:37 - 00000000 ___RD C:\Windows\BrowserChoice
2013-10-31 09:21 - 2013-10-31 09:21 - 142369107 _____ C:\Users\Dan1el\Downloads\lpl-software.tgz
2013-10-31 09:21 - 2009-10-12 09:14 - 29815262 _____ C:\Users\Dan1el\Downloads\LPL-2_7.dmg
2013-10-31 09:21 - 2009-10-12 09:13 - 03899196 _____ C:\Users\Dan1el\Downloads\TW-6_7_1.dmg
2013-10-31 09:21 - 2009-10-12 09:12 - 22403618 _____ (CSLI Publications                                           ) C:\Users\Dan1el\Downloads\LPL-2_7-setup.exe
2013-10-30 20:59 - 2013-10-30 20:59 - 00000000 ____D C:\Users\Dan1el\workspace
2013-10-30 20:58 - 2013-10-30 20:58 - 00000000 ____D C:\Users\Dan1el\.eclipse
2013-10-30 20:57 - 2013-10-30 20:57 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-10-30 20:57 - 2013-10-30 20:57 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-10-30 20:57 - 2013-10-30 20:57 - 00174504 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-10-30 20:57 - 2013-10-30 20:57 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2013-10-30 20:57 - 2013-10-30 20:57 - 00000000 ____D C:\ProgramData\Sun
2013-10-30 20:57 - 2013-10-30 20:57 - 00000000 ____D C:\ProgramData\Oracle
2013-10-30 20:57 - 2013-10-30 20:57 - 00000000 ____D C:\Program Files\Common Files\Java
2013-10-30 20:56 - 2013-10-30 20:57 - 00000000 ____D C:\Program Files\Java
2013-10-30 20:55 - 2013-10-30 20:55 - 00915368 _____ (Oracle Corporation) C:\Users\Dan1el\Downloads\jxpiinstall.exe
2013-10-30 20:54 - 2013-10-30 20:54 - 00000000 ____D C:\Users\Dan1el\Downloads\eclipse
2013-10-30 20:53 - 2013-10-30 21:04 - 00000540 _____ C:\Users\Dan1el\Downloads\Median.java
2013-10-30 20:53 - 2013-10-30 20:53 - 208687239 _____ C:\Users\Dan1el\Downloads\eclipse-standard-kepler-SR1-win32.zip
2013-10-30 20:53 - 2013-10-30 20:53 - 00000946 _____ C:\Users\Dan1el\Downloads\NPalindrome.java
2013-10-29 22:16 - 2013-10-29 22:16 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2013-10-29 22:15 - 2013-10-29 22:15 - 00000000 ____D C:\ProgramData\Battle.net
2013-10-29 18:25 - 2013-10-29 18:25 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Microsoft FxCop
2013-10-29 18:24 - 2013-10-29 18:24 - 00000000 ____D C:\ProgramData\Microsoft Visual Studio
2013-10-29 18:23 - 2013-10-29 18:23 - 02861491 _____ C:\Users\Dan1el\Downloads\Intro2D-02-Beispiel(1).zip
2013-10-29 18:23 - 2013-10-23 18:32 - 00000000 ____D C:\Users\Dan1el\Downloads\Intro2D-02-Beispiel
2013-10-29 18:07 - 2013-10-23 09:59 - 00698232 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2013-10-28 22:21 - 2013-10-28 22:21 - 00000000 ____D C:\Users\Dan1el\AppData\Local\Blizzard
2013-10-28 22:14 - 2013-10-28 22:21 - 00000000 ____D C:\Program Files\Hearthstone
2013-10-28 22:14 - 2013-10-28 22:14 - 00000870 _____ C:\Users\Public\Desktop\Hearthstone.lnk
2013-10-28 22:12 - 2013-11-20 22:35 - 00000000 ____D C:\Users\Dan1el\AppData\Local\Battle.net
2013-10-28 22:12 - 2013-10-29 00:25 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Battle.net
2013-10-28 22:12 - 2013-10-28 22:12 - 00000000 ____D C:\Users\Dan1el\AppData\Local\Blizzard Entertainment
2013-10-28 22:11 - 2013-11-12 20:02 - 00000000 ____D C:\Program Files\Battle.net
2013-10-28 22:11 - 2013-10-28 22:14 - 00000000 ____D C:\Program Files\Common Files\Blizzard Entertainment
2013-10-28 22:11 - 2013-10-28 22:11 - 05906904 _____ (Blizzard Entertainment) C:\Users\Dan1el\Downloads\Hearthstone-Beta-Setup-deDE.exe
2013-10-27 19:18 - 2013-11-20 13:51 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Skype
2013-10-27 19:18 - 2013-11-15 19:21 - 00000000 ___RD C:\Program Files\Skype
2013-10-27 19:18 - 2013-11-15 19:21 - 00000000 ____D C:\ProgramData\Skype
2013-10-27 19:18 - 2013-10-27 19:18 - 00002521 _____ C:\Users\Public\Desktop\Skype.lnk
2013-10-27 19:18 - 2013-10-27 19:18 - 00000000 ____D C:\Program Files\Common Files\Skype
2013-10-27 19:17 - 2013-10-27 19:17 - 01551008 _____ (Skype Technologies S.A.) C:\Users\Dan1el\Downloads\SkypeSetup.exe
2013-10-27 13:00 - 2013-09-29 08:48 - 01380632 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2013-10-27 13:00 - 2013-09-29 08:48 - 01270640 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2013-10-27 13:00 - 2013-09-29 08:48 - 01261320 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2013-10-27 13:00 - 2013-09-29 08:48 - 01159080 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2013-10-27 13:00 - 2013-09-26 07:52 - 00476672 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2013-10-27 13:00 - 2013-09-26 07:44 - 00552448 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2013-10-27 13:00 - 2013-09-26 07:34 - 00515072 _____ (Microsoft Corporation) C:\Windows\system32\MrmIndexer.dll
2013-10-27 13:00 - 2013-09-26 07:32 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2013-10-27 13:00 - 2013-09-26 07:29 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2013-10-27 12:59 - 2013-09-19 07:23 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersRes.dll
2013-10-27 12:59 - 2013-09-19 06:38 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\WorkFolders.exe
2013-10-27 12:59 - 2013-09-19 05:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2013-10-27 12:59 - 2013-09-12 08:17 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2013-10-27 12:58 - 2013-09-26 09:24 - 00553472 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-10-27 12:54 - 2013-10-03 13:54 - 00320856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2013-10-27 12:54 - 2013-10-03 13:53 - 01765384 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2013-10-27 12:54 - 2013-10-03 13:53 - 00406400 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2013-10-27 12:54 - 2013-10-03 10:02 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2013-10-27 12:54 - 2013-10-02 10:47 - 01018960 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2013-10-27 12:54 - 2013-10-01 04:36 - 00977408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2013-10-26 22:58 - 2013-07-01 14:45 - 00000000 ____D C:\Users\Dan1el\Downloads\Tufu - Haesslon
2013-10-26 22:58 - 2010-12-28 01:55 - 00000000 ____D C:\Users\Dan1el\Downloads\Tufu & Anthony Drawn - Seelenquantisierung
2013-10-26 22:58 - 2010-01-04 14:35 - 00000000 ____D C:\Users\Dan1el\Downloads\Die Symbolik des Mastschweins
2013-10-26 22:46 - 2013-11-15 08:41 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\vlc
2013-10-26 22:45 - 2013-10-26 22:45 - 00001044 _____ C:\Users\Public\Desktop\VLC media player.lnk
2013-10-26 22:45 - 2013-10-26 22:45 - 00000000 ____D C:\Program Files\VideoLAN
2013-10-26 22:44 - 2013-10-26 22:44 - 24278649 _____ C:\Users\Dan1el\Downloads\vlc-2.1.0-win32.exe
2013-10-26 22:24 - 2013-10-26 22:28 - 68357749 _____ C:\Users\Dan1el\Downloads\tufu_&_anthony_drawn_-_seelenquantisierung.rar
2013-10-26 22:20 - 2013-10-26 22:23 - 66430806 _____ C:\Users\Dan1el\Downloads\die_symbolik_des_mastschweins.rar
2013-10-26 22:16 - 2013-10-26 22:36 - 59048718 _____ C:\Users\Dan1el\Downloads\Tufu - Haesslon.rar
2013-10-26 22:02 - 2013-09-25 21:51 - 00000000 ____D C:\Users\Dan1el\Downloads\Tufu - Abdoom & Unraum (2013)
2013-10-26 13:15 - 2013-10-29 18:27 - 00000000 ____D C:\Users\Dan1el\Documents\Visual Studio 2012
2013-10-26 13:14 - 2013-10-26 13:14 - 00000000 ____D C:\ProgramData\Windows App Certification Kit
2013-10-26 13:14 - 2013-10-26 13:14 - 00000000 ____D C:\Program Files\Application Verifier
2013-10-26 13:12 - 2013-10-26 13:12 - 00000000 ____D C:\ProgramData\PreEmptive Solutions
2013-10-26 13:10 - 2013-10-26 13:10 - 00000000 ____D C:\Program Files\Microsoft Web Tools
2013-10-26 13:09 - 2013-10-26 13:09 - 00000000 ____D C:\Program Files\NuGet
2013-10-26 13:09 - 2013-10-26 13:09 - 00000000 ____D C:\Program Files\Microsoft WCF Data Services
2013-10-26 13:02 - 2013-10-26 13:02 - 00000000 ____D C:\Program Files\HTML Help Workshop
2013-10-26 13:02 - 2013-10-26 13:02 - 00000000 ____D C:\Program Files\Common Files\Designer
2013-10-26 12:57 - 2013-10-26 13:00 - 00000000 ____D C:\Program Files\Common Files\Merge Modules
2013-10-26 12:56 - 2013-10-26 13:14 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 11.0
2013-10-26 12:56 - 2013-10-26 12:56 - 00000000 ____D C:\Windows\symbols
2013-10-26 10:40 - 2013-10-26 10:40 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\WinRAR
2013-10-26 10:34 - 2013-10-26 10:34 - 02762898 _____ C:\Users\Dan1el\Downloads\SFML.Net-2.1-32bits.zip
2013-10-26 10:33 - 2013-10-26 10:59 - 77697037 _____ C:\Users\Dan1el\Downloads\Tufu - Abdoom & Unraum - NOiR.rar
2013-10-26 10:24 - 2013-10-26 10:24 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-10-26 10:24 - 2013-10-26 10:24 - 00000000 ____D C:\Program Files\WinRAR
2013-10-26 10:23 - 2013-10-26 10:23 - 02861491 _____ C:\Users\Dan1el\Downloads\Intro2D-02-Beispiel.zip
2013-10-26 10:23 - 2013-10-26 10:23 - 01865912 _____ C:\Users\Dan1el\Downloads\wrar500d.exe
2013-10-25 22:55 - 2013-10-25 22:55 - 00000000 ____D C:\Users\Dan1el\AppData\Local\Macromedia
2013-10-25 22:53 - 2013-11-20 14:07 - 00000000 ____D C:\Users\Dan1el\AppData\Local\Adobe
2013-10-25 17:22 - 2013-10-25 17:22 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Avira
2013-10-25 17:15 - 2013-11-14 13:10 - 00137208 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-10-25 17:15 - 2013-11-14 13:10 - 00090400 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-10-25 17:15 - 2013-10-25 17:15 - 00002032 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-10-25 17:15 - 2013-10-25 17:15 - 00000000 ____D C:\ProgramData\Avira
2013-10-25 17:15 - 2013-10-25 17:15 - 00000000 ____D C:\Program Files\Avira
2013-10-25 17:15 - 2013-10-10 18:14 - 00067680 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-10-25 17:15 - 2013-10-10 18:14 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-10-25 17:15 - 2013-10-10 18:14 - 00028520 _____ (Avira GmbH) C:\Windows\system32\Drivers\ssmdrv.sys
2013-10-25 17:09 - 2013-10-25 17:11 - 123853152 _____ C:\Users\Dan1el\Downloads\avira_free_antivirus_de.exe
2013-10-25 17:03 - 2013-10-25 17:04 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-25 17:01 - 2013-10-25 17:01 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2013-10-25 16:55 - 2013-10-26 13:11 - 00000000 ____D C:\Program Files\Microsoft ASP.NET
2013-10-25 16:54 - 2013-10-26 11:19 - 00000000 ____D C:\Program Files\IIS Express
2013-10-25 16:53 - 2013-10-26 11:18 - 00000000 ____D C:\Program Files\IIS
2013-10-25 16:52 - 2013-10-25 16:52 - 00000000 ____D C:\Program Files\Windows Kits
2013-10-25 16:52 - 2010-05-26 10:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2013-10-25 16:46 - 2013-10-25 16:46 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf
2013-10-25 16:45 - 2013-10-25 16:45 - 00000000 ____D C:\Program Files\Microsoft Help Viewer
2013-10-25 16:44 - 2013-10-26 13:05 - 00000000 ____D C:\Windows\system32\1031
2013-10-25 16:44 - 2013-10-26 11:04 - 00000000 ____D C:\Windows\system32\1033
2013-10-25 16:44 - 2013-10-25 17:01 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2013-10-25 16:42 - 2013-10-25 16:42 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-10-25 16:40 - 2013-10-26 13:01 - 00000000 ____D C:\Program Files\Microsoft SDKs
2013-10-25 16:40 - 2013-10-25 16:06 - 00000000 ____D C:\Windows\Panther
2013-10-25 16:39 - 2013-10-31 09:22 - 00000000 ____D C:\Program Files\Studium
2013-10-25 16:39 - 2013-10-26 13:12 - 00000000 ____D C:\Program Files\MSBuild
2013-10-25 16:39 - 2013-10-26 13:00 - 00000000 ____D C:\ProgramData\Package Cache
2013-10-25 16:36 - 2013-10-25 16:37 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\DAEMON Tools Lite
2013-10-25 16:36 - 2013-10-25 16:36 - 00242240 _____ (DT Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2013-10-25 16:36 - 2013-10-25 16:36 - 00000000 ____D C:\Program Files\DAEMON Tools Lite
2013-10-25 16:35 - 2013-10-25 16:37 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2013-10-25 16:31 - 2013-11-20 14:04 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-10-25 16:31 - 2013-10-26 09:53 - 00000000 ____D C:\Users\Dan1el\AppData\Local\Mozilla
2013-10-25 16:31 - 2013-10-25 16:32 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Mozilla
2013-10-25 16:31 - 2013-10-25 16:31 - 00001121 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-10-25 16:31 - 2013-10-25 16:31 - 00000000 ____D C:\ProgramData\Mozilla
2013-10-25 16:30 - 2013-10-25 16:30 - 22496512 _____ (Mozilla) C:\Users\Dan1el\Downloads\Firefox Setup 23.0_de.exe
2013-10-25 16:27 - 2013-10-25 16:27 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Macromedia
2013-10-25 16:12 - 2013-10-25 16:23 - 00000000 ____D C:\Users\Dan1el\Desktop\Daniel
2013-10-25 16:10 - 2013-11-20 14:44 - 01686150 _____ C:\Windows\system32\PerfStringBackup.INI
2013-10-25 16:09 - 2013-10-25 16:09 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-10-25 16:08 - 2013-10-25 16:08 - 00000000 _____ C:\Windows\system32\atiicdxx.dat
2013-10-25 16:08 - 2013-10-25 16:08 - 00000000 _____ C:\Windows\ativpsrm.bin
2013-10-25 16:06 - 2013-10-31 09:54 - 00000000 ____D C:\Users\Dan1el\AppData\Local\VirtualStore
2013-10-25 16:06 - 2013-10-25 16:06 - 00001454 _____ C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-10-25 16:06 - 2013-10-25 16:06 - 00000020 ___SH C:\Users\Dan1el\ntuser.ini
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\Startmenü
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\Netzwerkumgebung
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\Druckumgebung
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\Documents\Eigene Musik
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\Documents\Eigene Bilder
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\AppData\Local\Verlauf
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Adobe
2013-10-25 16:06 - 2013-08-22 09:17 - 00000000 ___RD C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2013-10-25 16:06 - 2013-08-22 09:17 - 00000000 ___RD C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-10-25 16:06 - 2013-08-22 09:17 - 00000000 ___RD C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2013-10-25 16:06 - 2013-08-22 09:17 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-10-25 16:05 - 2013-10-30 20:59 - 00000000 ____D C:\Users\Dan1el
2013-10-25 15:59 - 2013-11-20 22:19 - 01700901 _____ C:\Windows\WindowsUpdate.log
2013-10-25 15:59 - 2013-10-25 15:59 - 00000000 ____D C:\Windows\CSC
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\Startmenü
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\ProgramData\Startmenü
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\ProgramData\Dokumente
2013-10-25 15:43 - 2013-10-26 11:46 - 00100260 _____ C:\Windows\PFRO.log

==================== One Month Modified Files and Folders =======

2013-11-20 22:35 - 2013-11-20 22:34 - 00008043 _____ C:\Users\Dan1el\Downloads\FRST.txt
2013-11-20 22:35 - 2013-10-28 22:12 - 00000000 ____D C:\Users\Dan1el\AppData\Local\Battle.net
2013-11-20 22:34 - 2013-11-20 22:34 - 00000000 ____D C:\FRST
2013-11-20 22:33 - 2013-11-20 22:33 - 01090881 _____ (Farbar) C:\Users\Dan1el\Downloads\FRST.exe
2013-11-20 22:19 - 2013-10-25 15:59 - 01700901 _____ C:\Windows\WindowsUpdate.log
2013-11-20 22:00 - 2013-08-22 09:17 - 00000000 ____D C:\Windows\system32\sru
2013-11-20 21:25 - 2013-11-16 12:34 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\.minecraft
2013-11-20 15:56 - 2013-08-22 09:17 - 00000000 ____D C:\Windows\Microsoft.NET
2013-11-20 15:29 - 2013-08-22 09:17 - 00000000 ____D C:\Windows\AppReadiness
2013-11-20 14:44 - 2013-10-25 16:10 - 01686150 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-20 14:42 - 2013-11-20 14:42 - 00675988 _____ C:\Users\Dan1el\Desktop\Minecraft.exe
2013-11-20 14:40 - 2013-08-22 08:23 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-20 14:34 - 2013-11-20 14:34 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\ATI
2013-11-20 14:34 - 2013-11-20 14:34 - 00000000 ____D C:\Users\Dan1el\AppData\Local\ATI
2013-11-20 14:34 - 2013-11-20 14:34 - 00000000 ____D C:\ProgramData\ATI
2013-11-20 14:32 - 2013-11-20 14:32 - 00000000 ____D C:\Program Files\ATI.ACE
2013-11-20 14:30 - 2013-11-20 14:30 - 107116832 _____ (Advanced Micro Devices, Inc.) C:\Users\Dan1el\Downloads\13-1-legacy_vista_win7_win8_32_dd_ccc(1).exe
2013-11-20 14:09 - 2013-11-20 14:09 - 00791552 _____ (AMD) C:\Users\Dan1el\Downloads\amddriverdownloader(1).exe
2013-11-20 14:07 - 2013-11-20 14:07 - 00000000 ____D C:\ProgramData\McAfee
2013-11-20 14:07 - 2013-10-25 22:53 - 00000000 ____D C:\Users\Dan1el\AppData\Local\Adobe
2013-11-20 14:05 - 2013-08-22 08:22 - 00333664 _____ C:\Windows\system32\FNTCACHE.DAT
2013-11-20 14:04 - 2013-10-25 16:31 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-11-20 14:03 - 2013-08-22 09:17 - 00000000 ___RD C:\Windows\ToastData
2013-11-20 14:02 - 2013-08-22 09:17 - 00000000 ____D C:\Windows\WinStore
2013-11-20 14:02 - 2013-08-22 09:17 - 00000000 ____D C:\Windows\system32\de-DE
2013-11-20 14:01 - 2013-11-20 14:01 - 00000000 ____D C:\Program Files\Intel
2013-11-20 13:59 - 2013-11-20 13:59 - 00000000 ____D C:\Users\Dan1el\AppData\Local\DriverTuner
2013-11-20 13:59 - 2013-11-20 13:59 - 00000000 ____D C:\Program Files\DriverTuner
2013-11-20 13:58 - 2013-11-20 13:58 - 02816072 _____ (LionSea SoftWare                                            ) C:\Users\Dan1el\Downloads\setup.exe
2013-11-20 13:51 - 2013-10-27 19:18 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Skype
2013-11-20 13:39 - 2013-11-20 13:39 - 00000000 ____D C:\ProgramData\AMD
2013-11-20 13:39 - 2013-11-20 13:39 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2013-11-20 13:39 - 2013-11-20 13:39 - 00000000 ____D C:\Program Files\AMD AVT
2013-11-20 13:39 - 2013-11-20 13:39 - 00000000 ____D C:\Program Files\AMD APP
2013-11-20 13:39 - 2013-11-20 13:38 - 00000000 ____D C:\Program Files\ATI Technologies
2013-11-20 13:38 - 2013-11-20 13:38 - 00000000 ____D C:\Program Files\ATI
2013-11-20 13:38 - 2013-11-20 13:38 - 00000000 ____D C:\AMD
2013-11-20 13:37 - 2013-11-20 13:37 - 107116832 _____ (Advanced Micro Devices, Inc.) C:\Users\Dan1el\Downloads\13-1-legacy_vista_win7_win8_32_dd_ccc.exe
2013-11-20 13:34 - 2013-11-20 13:34 - 00791552 _____ (AMD) C:\Users\Dan1el\Downloads\amddriverdownloader.exe
2013-11-18 20:33 - 2013-11-18 20:33 - 00001368 _____ C:\Users\Dan1el\Desktop\aufgabe6.3.prf
2013-11-18 00:12 - 2013-08-22 09:17 - 00000000 ____D C:\Windows\rescache
2013-11-16 13:29 - 2013-11-16 13:29 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-15 19:21 - 2013-10-27 19:18 - 00000000 ___RD C:\Program Files\Skype
2013-11-15 19:21 - 2013-10-27 19:18 - 00000000 ____D C:\ProgramData\Skype
2013-11-15 19:20 - 2013-11-15 19:20 - 00001200 _____ C:\Users\Dan1el\Desktop\horner.txt
2013-11-15 08:41 - 2013-10-26 22:46 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\vlc
2013-11-15 08:22 - 2013-08-22 07:13 - 00262144 ___SH C:\Windows\system32\config\BBI
2013-11-14 14:03 - 2013-11-14 13:57 - 00000000 ____D C:\Users\Dan1el\Desktop\Logik
2013-11-14 13:57 - 2013-08-22 08:23 - 00013837 _____ C:\Windows\setupact.log
2013-11-14 13:10 - 2013-10-25 17:15 - 00137208 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-11-14 13:10 - 2013-10-25 17:15 - 00090400 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-11-14 13:05 - 2013-11-14 13:00 - 00000000 ____D C:\Windows\system32\MRT
2013-11-12 20:02 - 2013-10-28 22:11 - 00000000 ____D C:\Program Files\Battle.net
2013-11-10 23:49 - 2013-11-09 14:10 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Notepad++
2013-11-09 14:10 - 2013-11-09 14:10 - 07520740 _____ C:\Users\Dan1el\Downloads\npp.6.5.1.Installer.exe
2013-11-09 14:10 - 2013-11-09 14:10 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2013-11-09 14:10 - 2013-11-09 14:10 - 00000000 ____D C:\Program Files\Notepad++
2013-11-08 14:42 - 2013-11-08 14:42 - 00000000 ___HD C:\ProgramData\CanonIJEPPEX2
2013-11-08 14:42 - 2013-11-08 14:42 - 00000000 ___HD C:\ProgramData\CanonEPP
2013-11-08 14:42 - 2013-11-08 14:42 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Canon
2013-11-08 14:42 - 2013-11-08 14:29 - 00000000 ____D C:\Program Files\Canon
2013-11-08 14:39 - 2013-11-08 14:39 - 00000000 ____D C:\ProgramData\Canon IJ Network Tool
2013-11-08 14:39 - 2013-08-22 09:17 - 00000000 __RSD C:\Windows\Media
2013-11-08 14:39 - 2013-08-22 09:17 - 00000000 ____D C:\Windows\twain_32
2013-11-08 14:38 - 2013-11-08 14:38 - 00000000 ____D C:\ProgramData\CanonIJWSpt
2013-11-08 14:38 - 2013-11-08 14:38 - 00000000 ____D C:\Program Files\Common Files\CANON
2013-11-08 14:35 - 2013-11-08 14:35 - 00002326 _____ C:\Users\Public\Desktop\Canon MG5300 series Online-Handbuch.lnk
2013-11-08 14:34 - 2013-11-08 14:34 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information
2013-11-08 14:34 - 2013-11-08 14:34 - 00000000 ___HD C:\ProgramData\CanonBJ
2013-11-08 14:32 - 2013-11-08 14:32 - 00000000 ___HD C:\Program Files\CanonBJ
2013-11-08 14:32 - 2013-11-08 14:32 - 00000000 ____D C:\Windows\system32\STRING
2013-11-07 15:50 - 2013-11-14 13:00 - 80340640 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-11-06 19:12 - 2013-11-06 19:12 - 09896644 _____ C:\Users\Dan1el\Downloads\marteria-bengalische_tiger.zip
2013-11-06 14:53 - 2013-11-06 14:53 - 00001099 _____ C:\Users\Dan1el\Desktop\Studium.lnk
2013-11-06 09:57 - 2013-11-06 19:12 - 00000000 ____D C:\Users\Dan1el\Downloads\__MACOSX
2013-11-06 00:31 - 2013-08-22 09:18 - 00693240 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-11-06 00:31 - 2013-08-22 09:18 - 00105464 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-11-05 22:34 - 2013-11-05 22:00 - 104519618 _____ C:\Users\Dan1el\Downloads\Elo & WuT - Jazz Auf Gleich (2013) (320) by 720.rar
2013-11-05 19:51 - 2013-11-15 23:15 - 18642504 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2013-11-05 17:20 - 2013-11-15 23:15 - 13925888 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2013-11-05 15:30 - 2013-11-15 23:15 - 11674112 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2013-11-04 23:11 - 2013-11-04 22:56 - 47942343 _____ C:\Users\Dan1el\Downloads\eloQuent - Gebrochenes Deutsch - NOiR.rar
2013-11-02 14:04 - 2013-11-02 14:04 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2013-10-31 22:20 - 2013-10-31 22:20 - 00001568 _____ C:\Users\Dan1el\Downloads\2.3.txt
2013-10-31 22:20 - 2013-10-31 22:20 - 00000813 _____ C:\Users\Dan1el\Downloads\2.4.txt
2013-10-31 22:19 - 2013-10-31 22:19 - 00000681 _____ C:\Users\Dan1el\Downloads\2.23.txt
2013-10-31 22:19 - 2013-10-31 22:19 - 00000327 _____ C:\Users\Dan1el\Downloads\2.22.txt
2013-10-31 09:54 - 2013-10-25 16:06 - 00000000 ____D C:\Users\Dan1el\AppData\Local\VirtualStore
2013-10-31 09:37 - 2013-10-31 09:33 - 00000000 ___RD C:\Windows\BrowserChoice
2013-10-31 09:33 - 2013-08-22 09:17 - 00000000 ____D C:\Windows\Camera
2013-10-31 09:33 - 2013-08-22 09:17 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2013-10-31 09:22 - 2013-10-25 16:39 - 00000000 ____D C:\Program Files\Studium
2013-10-31 09:21 - 2013-10-31 09:21 - 142369107 _____ C:\Users\Dan1el\Downloads\lpl-software.tgz
2013-10-30 21:04 - 2013-10-30 20:53 - 00000540 _____ C:\Users\Dan1el\Downloads\Median.java
2013-10-30 20:59 - 2013-10-30 20:59 - 00000000 ____D C:\Users\Dan1el\workspace
2013-10-30 20:59 - 2013-10-25 16:05 - 00000000 ____D C:\Users\Dan1el
2013-10-30 20:58 - 2013-10-30 20:58 - 00000000 ____D C:\Users\Dan1el\.eclipse
2013-10-30 20:57 - 2013-10-30 20:57 - 00264616 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe
2013-10-30 20:57 - 2013-10-30 20:57 - 00175016 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe
2013-10-30 20:57 - 2013-10-30 20:57 - 00174504 _____ (Oracle Corporation) C:\Windows\system32\java.exe
2013-10-30 20:57 - 2013-10-30 20:57 - 00094632 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge.dll
2013-10-30 20:57 - 2013-10-30 20:57 - 00000000 ____D C:\ProgramData\Sun
2013-10-30 20:57 - 2013-10-30 20:57 - 00000000 ____D C:\ProgramData\Oracle
2013-10-30 20:57 - 2013-10-30 20:57 - 00000000 ____D C:\Program Files\Common Files\Java
2013-10-30 20:57 - 2013-10-30 20:56 - 00000000 ____D C:\Program Files\Java
2013-10-30 20:55 - 2013-10-30 20:55 - 00915368 _____ (Oracle Corporation) C:\Users\Dan1el\Downloads\jxpiinstall.exe
2013-10-30 20:54 - 2013-10-30 20:54 - 00000000 ____D C:\Users\Dan1el\Downloads\eclipse
2013-10-30 20:53 - 2013-10-30 20:53 - 208687239 _____ C:\Users\Dan1el\Downloads\eclipse-standard-kepler-SR1-win32.zip
2013-10-30 20:53 - 2013-10-30 20:53 - 00000946 _____ C:\Users\Dan1el\Downloads\NPalindrome.java
2013-10-29 22:16 - 2013-10-29 22:16 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2013-10-29 22:15 - 2013-10-29 22:15 - 00000000 ____D C:\ProgramData\Battle.net
2013-10-29 18:27 - 2013-10-26 13:15 - 00000000 ____D C:\Users\Dan1el\Documents\Visual Studio 2012
2013-10-29 18:25 - 2013-10-29 18:25 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Microsoft FxCop
2013-10-29 18:24 - 2013-10-29 18:24 - 00000000 ____D C:\ProgramData\Microsoft Visual Studio
2013-10-29 18:23 - 2013-10-29 18:23 - 02861491 _____ C:\Users\Dan1el\Downloads\Intro2D-02-Beispiel(1).zip
2013-10-29 00:25 - 2013-10-28 22:12 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Battle.net
2013-10-28 22:21 - 2013-10-28 22:21 - 00000000 ____D C:\Users\Dan1el\AppData\Local\Blizzard
2013-10-28 22:21 - 2013-10-28 22:14 - 00000000 ____D C:\Program Files\Hearthstone
2013-10-28 22:14 - 2013-10-28 22:14 - 00000870 _____ C:\Users\Public\Desktop\Hearthstone.lnk
2013-10-28 22:14 - 2013-10-28 22:11 - 00000000 ____D C:\Program Files\Common Files\Blizzard Entertainment
2013-10-28 22:12 - 2013-10-28 22:12 - 00000000 ____D C:\Users\Dan1el\AppData\Local\Blizzard Entertainment
2013-10-28 22:11 - 2013-10-28 22:11 - 05906904 _____ (Blizzard Entertainment) C:\Users\Dan1el\Downloads\Hearthstone-Beta-Setup-deDE.exe
2013-10-27 19:18 - 2013-10-27 19:18 - 00002521 _____ C:\Users\Public\Desktop\Skype.lnk
2013-10-27 19:18 - 2013-10-27 19:18 - 00000000 ____D C:\Program Files\Common Files\Skype
2013-10-27 19:17 - 2013-10-27 19:17 - 01551008 _____ (Skype Technologies S.A.) C:\Users\Dan1el\Downloads\SkypeSetup.exe
2013-10-26 22:45 - 2013-10-26 22:45 - 00001044 _____ C:\Users\Public\Desktop\VLC media player.lnk
2013-10-26 22:45 - 2013-10-26 22:45 - 00000000 ____D C:\Program Files\VideoLAN
2013-10-26 22:44 - 2013-10-26 22:44 - 24278649 _____ C:\Users\Dan1el\Downloads\vlc-2.1.0-win32.exe
2013-10-26 22:36 - 2013-10-26 22:16 - 59048718 _____ C:\Users\Dan1el\Downloads\Tufu - Haesslon.rar
2013-10-26 22:28 - 2013-10-26 22:24 - 68357749 _____ C:\Users\Dan1el\Downloads\tufu_&_anthony_drawn_-_seelenquantisierung.rar
2013-10-26 22:23 - 2013-10-26 22:20 - 66430806 _____ C:\Users\Dan1el\Downloads\die_symbolik_des_mastschweins.rar
2013-10-26 13:14 - 2013-10-26 13:14 - 00000000 ____D C:\ProgramData\Windows App Certification Kit
2013-10-26 13:14 - 2013-10-26 13:14 - 00000000 ____D C:\Program Files\Application Verifier
2013-10-26 13:14 - 2013-10-26 12:56 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 11.0
2013-10-26 13:12 - 2013-10-26 13:12 - 00000000 ____D C:\ProgramData\PreEmptive Solutions
2013-10-26 13:12 - 2013-10-25 16:39 - 00000000 ____D C:\Program Files\MSBuild
2013-10-26 13:11 - 2013-10-25 16:55 - 00000000 ____D C:\Program Files\Microsoft ASP.NET
2013-10-26 13:10 - 2013-10-26 13:10 - 00000000 ____D C:\Program Files\Microsoft Web Tools
2013-10-26 13:09 - 2013-10-26 13:09 - 00000000 ____D C:\Program Files\NuGet
2013-10-26 13:09 - 2013-10-26 13:09 - 00000000 ____D C:\Program Files\Microsoft WCF Data Services
2013-10-26 13:05 - 2013-10-25 16:44 - 00000000 ____D C:\Windows\system32\1031
2013-10-26 13:02 - 2013-10-26 13:02 - 00000000 ____D C:\Program Files\HTML Help Workshop
2013-10-26 13:02 - 2013-10-26 13:02 - 00000000 ____D C:\Program Files\Common Files\Designer
2013-10-26 13:01 - 2013-10-25 16:40 - 00000000 ____D C:\Program Files\Microsoft SDKs
2013-10-26 13:00 - 2013-10-26 12:57 - 00000000 ____D C:\Program Files\Common Files\Merge Modules
2013-10-26 13:00 - 2013-10-25 16:39 - 00000000 ____D C:\ProgramData\Package Cache
2013-10-26 13:00 - 2013-08-22 09:17 - 00000000 ____D C:\Program Files\Microsoft.NET
2013-10-26 12:56 - 2013-10-26 12:56 - 00000000 ____D C:\Windows\symbols
2013-10-26 12:49 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files (x86)
2013-10-26 11:46 - 2013-10-25 15:43 - 00100260 _____ C:\Windows\PFRO.log
2013-10-26 11:19 - 2013-10-25 16:54 - 00000000 ____D C:\Program Files\IIS Express
2013-10-26 11:18 - 2013-10-25 16:53 - 00000000 ____D C:\Program Files\IIS
2013-10-26 11:04 - 2013-10-25 16:44 - 00000000 ____D C:\Windows\system32\1033
2013-10-26 10:59 - 2013-10-26 10:33 - 77697037 _____ C:\Users\Dan1el\Downloads\Tufu - Abdoom & Unraum - NOiR.rar
2013-10-26 10:40 - 2013-10-26 10:40 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\WinRAR
2013-10-26 10:34 - 2013-10-26 10:34 - 02762898 _____ C:\Users\Dan1el\Downloads\SFML.Net-2.1-32bits.zip
2013-10-26 10:24 - 2013-10-26 10:24 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-10-26 10:24 - 2013-10-26 10:24 - 00000000 ____D C:\Program Files\WinRAR
2013-10-26 10:23 - 2013-10-26 10:23 - 02861491 _____ C:\Users\Dan1el\Downloads\Intro2D-02-Beispiel.zip
2013-10-26 10:23 - 2013-10-26 10:23 - 01865912 _____ C:\Users\Dan1el\Downloads\wrar500d.exe
2013-10-26 09:53 - 2013-10-25 16:31 - 00000000 ____D C:\Users\Dan1el\AppData\Local\Mozilla
2013-10-25 22:55 - 2013-10-25 22:55 - 00000000 ____D C:\Users\Dan1el\AppData\Local\Macromedia
2013-10-25 17:22 - 2013-10-25 17:22 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Avira
2013-10-25 17:15 - 2013-10-25 17:15 - 00002032 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-10-25 17:15 - 2013-10-25 17:15 - 00000000 ____D C:\ProgramData\Avira
2013-10-25 17:15 - 2013-10-25 17:15 - 00000000 ____D C:\Program Files\Avira
2013-10-25 17:11 - 2013-10-25 17:09 - 123853152 _____ C:\Users\Dan1el\Downloads\avira_free_antivirus_de.exe
2013-10-25 17:04 - 2013-10-25 17:03 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-10-25 17:01 - 2013-10-25 17:01 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2013-10-25 17:01 - 2013-10-25 16:44 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2013-10-25 16:52 - 2013-10-25 16:52 - 00000000 ____D C:\Program Files\Windows Kits
2013-10-25 16:46 - 2013-10-25 16:46 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf
2013-10-25 16:45 - 2013-10-25 16:45 - 00000000 ____D C:\Program Files\Microsoft Help Viewer
2013-10-25 16:42 - 2013-10-25 16:42 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-10-25 16:40 - 2013-08-22 09:17 - 00262144 _____ C:\Windows\system32\config\BCD-Template
2013-10-25 16:40 - 2012-05-26 11:44 - 00008192 __RSH C:\BOOTSECT.BAK
2013-10-25 16:37 - 2013-10-25 16:36 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\DAEMON Tools Lite
2013-10-25 16:37 - 2013-10-25 16:35 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite
2013-10-25 16:36 - 2013-10-25 16:36 - 00242240 _____ (DT Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2013-10-25 16:36 - 2013-10-25 16:36 - 00000000 ____D C:\Program Files\DAEMON Tools Lite
2013-10-25 16:32 - 2013-10-25 16:31 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Mozilla
2013-10-25 16:31 - 2013-10-25 16:31 - 00001121 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-10-25 16:31 - 2013-10-25 16:31 - 00000000 ____D C:\ProgramData\Mozilla
2013-10-25 16:30 - 2013-10-25 16:30 - 22496512 _____ (Mozilla) C:\Users\Dan1el\Downloads\Firefox Setup 23.0_de.exe
2013-10-25 16:27 - 2013-10-25 16:27 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Macromedia
2013-10-25 16:23 - 2013-10-25 16:12 - 00000000 ____D C:\Users\Dan1el\Desktop\Daniel
2013-10-25 16:09 - 2013-10-25 16:09 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-10-25 16:08 - 2013-10-25 16:08 - 00000000 _____ C:\Windows\system32\atiicdxx.dat
2013-10-25 16:08 - 2013-10-25 16:08 - 00000000 _____ C:\Windows\ativpsrm.bin
2013-10-25 16:06 - 2013-10-25 16:40 - 00000000 ____D C:\Windows\Panther
2013-10-25 16:06 - 2013-10-25 16:06 - 00001454 _____ C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-10-25 16:06 - 2013-10-25 16:06 - 00000020 ___SH C:\Users\Dan1el\ntuser.ini
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\Startmenü
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\Netzwerkumgebung
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\Druckumgebung
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\Documents\Eigene Musik
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\Documents\Eigene Bilder
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 _SHDL C:\Users\Dan1el\AppData\Local\Verlauf
2013-10-25 16:06 - 2013-10-25 16:06 - 00000000 ____D C:\Users\Dan1el\AppData\Roaming\Adobe
2013-10-25 16:06 - 2013-08-22 09:17 - 00000000 ___RD C:\Windows\ImmersiveControlPanel
2013-10-25 16:06 - 2013-08-22 09:17 - 00000000 ____D C:\Windows\FileManager
2013-10-25 15:59 - 2013-10-25 15:59 - 00000000 ____D C:\Windows\CSC
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\Startmenü
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\ProgramData\Startmenü
2013-10-25 15:57 - 2013-10-25 15:57 - 00000000 _SHDL C:\ProgramData\Dokumente
2013-10-25 15:57 - 2013-08-22 09:17 - 00000000 ____D C:\Program Files\Windows NT
2013-10-25 15:57 - 2013-08-22 07:21 - 00000000 __RHD C:\Users\Default
2013-10-25 15:46 - 2013-08-22 09:18 - 00001720 _____ C:\Windows\DtcInstall.log
2013-10-25 15:46 - 2013-08-22 09:17 - 00000000 ____D C:\Windows\system32\Recovery
2013-10-25 15:46 - 2012-05-26 10:54 - 00000000 __SHD C:\Recovery
2013-10-23 18:32 - 2013-10-29 18:23 - 00000000 ____D C:\Users\Dan1el\Downloads\Intro2D-02-Beispiel
2013-10-23 10:44 - 2013-11-15 23:15 - 00104280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-10-23 10:24 - 2013-11-15 23:15 - 00142680 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_8086.dll
2013-10-23 10:21 - 2013-11-15 23:15 - 00044904 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2013-10-23 09:59 - 2013-10-29 18:07 - 00698232 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2013-10-23 06:04 - 2013-11-15 23:15 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2013-10-23 05:54 - 2013-11-15 23:15 - 03422208 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2013-10-23 05:46 - 2013-11-15 23:15 - 00700928 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2013-10-22 07:14 - 2013-11-15 23:15 - 01033368 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2013-10-22 07:13 - 2013-11-15 23:15 - 00079192 _____ (Microsoft Corporation) C:\Windows\system32\embeddedapplauncher.exe
2013-10-22 07:03 - 2013-11-15 23:15 - 02065448 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2013-10-22 05:04 - 2013-11-15 23:15 - 00618496 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2013-10-22 04:02 - 2013-11-15 23:15 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2013-10-22 03:52 - 2013-11-15 23:15 - 00667136 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2013-10-22 02:59 - 2013-11-15 23:15 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2013-10-22 02:51 - 2013-11-15 23:15 - 01634304 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2013-10-22 02:47 - 2013-11-15 23:15 - 02295808 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2013-10-22 02:40 - 2013-11-15 23:15 - 01210368 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll

Some content of TEMP:
====================
C:\Users\Dan1el\AppData\Local\Temp\avgnt.exe
C:\Users\Dan1el\AppData\Local\Temp\fp_pl_pfs_installer-1.exe
C:\Users\Dan1el\AppData\Local\Temp\fp_pl_pfs_installer.exe
C:\Users\Dan1el\AppData\Local\Temp\MSETUP4.EXE
C:\Users\Dan1el\AppData\Local\Temp\uninstall.exe
C:\Users\Dan1el\AppData\Local\Temp\xmlUpdater.exe


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe
[2013-11-15 23:15] - [2013-10-22 07:03] - 2065448 ____A (Microsoft Corporation) 1A0BC9598E4A58FC84570FFF5A108E58

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-11-20 12:31

==================== End Of Log ============================
         
--- --- ---


Addition

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 18-11-2013
Ran by Dan1el at 2013-11-20 22:35:42
Running from C:\Users\Dan1el\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

 Tools for .Net 3.5 - DEU Lang Pack (Version: 3.11.50727)
 Tools for .Net 3.5 (Version: 3.11.50727)
Adobe Flash Player 11 Plugin (Version: 11.9.900.152)
AMD Accelerated Video Transcoding (Version: 12.5.100.21116)
AMD APP SDK Runtime (Version: 10.0.937.2)
AMD Catalyst Install Manager (Version: 8.0.877.0)
AMD Drag and Drop Transcoding (Version: 2.00.0000)
AMD Media Foundation Decoders (Version: 1.0.71116.1554)
Avira Free Antivirus (Version: 14.0.1.719)
Battle.net
Blend for Visual Studio 2012 (Version: 5.0.30709.0)
Blend for Visual Studio 2012 DEU resources (Version: 5.0.30709.0)
Canon Easy-PhotoPrint EX
Canon IJ Network Scanner Selector EX
Canon IJ Network Tool
Canon MG5300 series Benutzerregistrierung
Canon MG5300 series MP Drivers
Canon MG5300 series On-screen Manual
Canon MP Navigator EX 5.0
Canon My Printer
Canon Solution Menu EX
Catalyst Control Center - Branding (Version: 1.00.0000)
Catalyst Control Center (Version: 2012.1116.1515.27190)
Catalyst Control Center Graphics Previews Common (Version: 2012.1116.1515.27190)
Catalyst Control Center InstallProxy (Version: 2012.1116.1515.27190)
Catalyst Control Center Localization All (Version: 2012.1116.1515.27190)
CCC Help Chinese Standard (Version: 2012.1116.1514.27190)
CCC Help Chinese Traditional (Version: 2012.1116.1514.27190)
CCC Help Czech (Version: 2012.1116.1514.27190)
CCC Help Danish (Version: 2012.1116.1514.27190)
CCC Help Dutch (Version: 2012.1116.1514.27190)
CCC Help English (Version: 2012.1116.1514.27190)
CCC Help Finnish (Version: 2012.1116.1514.27190)
CCC Help French (Version: 2012.1116.1514.27190)
CCC Help German (Version: 2012.1116.1514.27190)
CCC Help Greek (Version: 2012.1116.1514.27190)
CCC Help Hungarian (Version: 2012.1116.1514.27190)
CCC Help Italian (Version: 2012.1116.1514.27190)
CCC Help Japanese (Version: 2012.1116.1514.27190)
CCC Help Korean (Version: 2012.1116.1514.27190)
CCC Help Norwegian (Version: 2012.1116.1514.27190)
CCC Help Polish (Version: 2012.1116.1514.27190)
CCC Help Portuguese (Version: 2012.1116.1514.27190)
CCC Help Russian (Version: 2012.1116.1514.27190)
CCC Help Spanish (Version: 2012.1116.1514.27190)
CCC Help Swedish (Version: 2012.1116.1514.27190)
CCC Help Thai (Version: 2012.1116.1514.27190)
CCC Help Turkish (Version: 2012.1116.1514.27190)
ccc-utility (Version: 2012.1116.1515.27190)
DAEMON Tools Lite (Version: 4.47.1.0333)
Devenv-Ressourcen für Microsoft Visual Studio 2012 (Version: 11.0.50727)
Dotfuscator and Analytics Community Edition (Version: 5.5.4521.29298)
Dotfuscator and Analytics Community Edition Language Pack (Version: 5.5.4521.29298)
DriverTuner 3.1.0.1 (Version: 3.1.0.1)
Entity Framework Designer für Visual Studio 2012 - DEU (Version: 11.1.20702.00)
Erforderliche Komponenten für SSDT  (Version: 11.0.2100.60)
Hearthstone
IIS 8.0 Express (Version: 8.0.1557)
IIS Express Application Compatibility Database for x86
Java 7 Update 45 (Version: 7.0.450)
Java Auto Updater (Version: 2.1.9.8)
LocalESPC (Version: 8.59.25584)
LocalESPCui for de-de (Version: 8.59.25584)
LPL Software 2.7 (Version: 2.7)
Microsoft .NET Framework 4 Multi-Targeting Pack (Version: 4.0.30319)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (Version: 4.5.50709)
Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (Version: 4.5.50709)
Microsoft .NET Framework 4.5 SDK (Version: 4.5.50709)
Microsoft ASP.NET MVC 3 - DEU (Version: 3.0.20105.0)
Microsoft ASP.NET MVC 3 - Visual Studio 2012 Tools Update - DEU (Version: 3.0.30710.0)
Microsoft ASP.NET MVC 3 - Visual Studio 2012 Tools Update (Version: 3.0.30710.0)
Microsoft ASP.NET MVC 3 (Version: 3.0.20105.0)
Microsoft ASP.NET MVC 4 - Visual Studio 2012 Tools - DEU (Version: 4.0.20710.0)
Microsoft ASP.NET MVC 4 - Visual Studio 2012 Tools (Version: 4.0.20710.0)
Microsoft ASP.NET MVC 4 Runtime - DEU (Version: 4.0.20710.0)
Microsoft ASP.NET MVC 4 Runtime (Version: 4.0.20710.0)
Microsoft ASP.NET Web Pages - DEU (Version: 1.0.20105.0)
Microsoft ASP.NET Web Pages - Visual Studio 2012 Tools - DEU (Version: 1.0.20710.0)
Microsoft ASP.NET Web Pages - Visual Studio 2012 Tools (Version: 1.0.20710.0)
Microsoft ASP.NET Web Pages (Version: 1.0.20105.0)
Microsoft ASP.NET Web Pages 2 - Visual Studio 2012 Tools - DEU (Version: 2.0.20710.0)
Microsoft ASP.NET Web Pages 2 - Visual Studio 2012 Tools (Version: 2.0.20710.0)
Microsoft ASP.NET Web Pages 2 Runtime - DEU (Version: 2.0.20710.0)
Microsoft ASP.NET Web Pages 2 Runtime (Version: 2.0.20710.0)
Microsoft Help Viewer 2.0 (Version: 2.0.50727)
Microsoft Help Viewer 2.0 Language Pack - DEU (Version: 2.0.50727)
Microsoft LightSwitch for Visual Studio 2012 Core (Version: 11.0.50727)
Microsoft LightSwitch für Visual Studio 2012 CoreRes - DEU (Version: 11.0.50727)
Microsoft NuGet - Visual Studio 2012 (Version: 2.0.30625.9003)
Microsoft Portable Library Multi-Targeting Pack (Version: 11.0.50709.17929)
Microsoft Portable Library Multi-Targeting Pack Language Pack - deu (Version: 11.0.50709.17929)
Microsoft Report Viewer Add-On for Visual Studio 2012 (Version: 11.1.2802.16)
Microsoft Report Viewer Add-On für Visual Studio 2012 (Version: 11.1.2802.16)
Microsoft Silverlight (Version: 5.1.10411.0)
Microsoft Silverlight 4 SDK - Deutsch (Version: 4.0.60310.0)
Microsoft Silverlight 5 SDK - DEU (Version: 5.0.61118.0)
Microsoft SQL Server 2012 Command Line Utilities  (Version: 11.0.2100.60)
Microsoft SQL Server 2012 Data-Tier App Framework  (Version: 11.0.2316.0)
Microsoft SQL Server 2012 Express LocalDB  (Version: 11.0.2100.60)
Microsoft SQL Server 2012 Management Objects (Version: 11.0.2100.60)
Microsoft SQL Server 2012 Native Client  (Version: 11.0.2100.60)
Microsoft SQL Server 2012 Transact-SQL Compiler Service  (Version: 11.0.2100.60)
Microsoft SQL Server 2012 Transact-SQL ScriptDom  (Version: 11.0.2100.60)
Microsoft SQL Server 2012 T-SQL Language Service  (Version: 11.0.2100.60)
Microsoft SQL Server Compact 4.0 SP1 DEU (Version: 4.0.8876.1)
Microsoft SQL Server Data Tools - DEU (11.1.20627.00) (Version: 11.1.20627.00)
Microsoft SQL Server Data Tools Build Utilities - DEU (11.1.20627.00) (Version: 11.1.20627.00)
Microsoft SQL Server System CLR Types (Version: 10.50.1600.1)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2012 Compilers - DEU Resources (Version: 11.0.50727)
Microsoft Visual C++ 2012 Compilers (Version: 11.0.50727)
Microsoft Visual C++ 2012 Core Libraries (Version: 11.0.50727)
Microsoft Visual C++ 2012 Extended Libraries (Version: 11.0.50727)
Microsoft Visual C++ 2012 Microsoft Foundation Class Libraries (Version: 11.0.50727)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (Version: 11.0.50727)
Microsoft Visual C++ 2012 x86 Debug Runtime - 11.0.50727 (Version: 11.0.50727)
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (Version: 11.0.50727)
Microsoft Visual Studio 2010 Office Developer Tools (x86) (Version: 11.0.50727)
Microsoft Visual Studio 2010 Office Developer Tools (x86) Language Pack - DEU (Version: 11.0.50727)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (Version: 10.0.31125)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) (Version: 10.0.31130)
Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - DEU (Version: 10.0.31125)
Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x86) Language Pack - DEU (Version: 10.0.31125)
Microsoft Visual Studio 2012 Devenv (Version: 11.0.50727)
Microsoft Visual Studio 2012 IntelliTrace Core x86 (Version: 11.0.50727)
Microsoft Visual Studio 2012 IntelliTrace Front End x86 (Version: 11.0.50727)
Microsoft Visual Studio 2012 IntelliTraceFrontEndLoc (Version: 11.0.50727)
Microsoft Visual Studio 2012 IntelliTraceLoc (Version: 11.0.50727)
Microsoft Visual Studio 2012 SharePoint Developer Tools (Version: 11.0.50727)
Microsoft Visual Studio 2012 SharePoint Developer Tools DEU Language Pack (Version: 11.0.50727)
Microsoft Visual Studio 2012 Shell (Minimum) (Version: 11.0.50727)
Microsoft Visual Studio 2012 Shell (Minimum) Interop Assemblies (Version: 11.0.50727)
Microsoft Visual Studio 2012 Shell-(Mindest)-Ressourcen (Version: 11.0.50727)
Microsoft Visual Studio 2012 Tools für SQL Server Compact 4.0 SP1 DEU (Version: 4.0.8876.1)
Microsoft Visual Studio 2012-Leistungserfassungstools - DEU (Version: 11.0.50727)
Microsoft Visual Studio 2012-Leistungserfassungstools (Version: 11.0.50727)
Microsoft Visual Studio 2012-Vorbereitung (Version: 11.0.50727)
Microsoft Visual Studio Premium 2012 - DEU (Version: 11.0.50727)
Microsoft Visual Studio Premium 2012 (Version: 11.0.50727)
Microsoft Visual Studio Professional 2012 - DEU (Version: 11.0.50727)
Microsoft Visual Studio Professional 2012 (Version: 11.0.50727)
Microsoft Visual Studio Team Foundation Server 2012 Object Model (Version: 11.0.50727)
Microsoft Visual Studio Team Foundation Server 2012 Object Model Language Pack - DEU (Version: 11.0.50727)
Microsoft Visual Studio Team Foundation Server 2012 Storyboarding (Version: 11.0.50727)
Microsoft Visual Studio Team Foundation Server 2012 Storyboarding Language Pack - DEU (Version: 11.0.50727)
Microsoft Visual Studio Team Foundation Server 2012 Team Explorer (Version: 11.0.50727)
Microsoft Visual Studio Team Foundation Server 2012 Team Explorer Language Pack - DEU (Version: 11.0.50727)
Microsoft Visual Studio Ultimate 2012 - DEU (Version: 11.0.50727)
Microsoft Visual Studio Ultimate 2012 (Version: 11.0.50727)
Microsoft Visual Studio Ultimate 2012 (Version: 11.0.50727.26)
Microsoft Visual Studio Ultimate 2012 XAML UI Designer Core (Version: 11.0.50727)
Microsoft Visual Studio Ultimate 2012 XAML UI Designer deu Resources (Version: 11.0.50727)
Microsoft Web Deploy 3.0 (Version: 3.1236.1631)
Microsoft Web Deploy dbSqlPackage Provider - DEU (Version: 10.3.20225.0)
Microsoft Web Developer Tools - Visual Studio 2012 - DEU (Version: 1.0.30710.0)
Microsoft Web Developer Tools - Visual Studio 2012 (Version: 1.0.30710.0)
Microsoft Web Platform Installer 4.0 (Version: 4.0.1622)
Microsoft-System-CLR-Typen für SQL Server 2012 (Version: 11.0.2100.60)
Mozilla Firefox 25.0.1 (x86 de) (Version: 25.0.1)
Mozilla Maintenance Service (Version: 25.0.1)
Notepad++ (Version: 6.5.1)
PreEmptive Analytics Client German Language Pack (Version: 1.0.2180.1)
PreEmptive Analytics Visual Studio Components (Version: 1.0.2180.1)
Skype™ 6.10 (Version: 6.10.104)
Update for  (KB2504637) (Version: 1)
Visual Studio Extensions for Windows Library for JavaScript (Version: 1.0.8514.0)
VLC media player 2.1.0 (Version: 2.1.0)
WCF Data Services 5.0 (for OData v3) DEU Language Pack (Version: 5.0.50628.0)
WCF Data Services 5.0 (for OData v3) Primary Components (Version: 5.0.50628.0)
WCF Data Services Tools for Microsoft Visual Studio 2012 (Version: 5.0.50710.0)
WCF Data Services Tools for Visual Studio 11 DEU Language Pack (Version: 5.0.50710.0)
WCF RIA Services V1.0 SP2 (Version: 4.1.61829.0)
Windows App Certification Kit Native Components (Version: 8.59.25584)
Windows App Certification Kit x86 (Version: 8.59.25584)
Windows Runtime Intellisense Content - de-de (Version: 8.59.25584)
Windows Software Development Kit (Version: 8.59.25584)
Windows Software Development Kit DirectX x86 Remote (Version: 8.59.25584)
Windows Software Development Kit for Windows Store Apps (Version: 8.59.25584)
Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (Version: 8.59.25584)
WinRAR 5.00 (32-Bit) (Version: 5.00.0)

==================== Restore Points  =========================

11-11-2013 19:30:03 Geplanter Prüfpunkt
16-11-2013 11:27:57 Windows Modules Installer
19-11-2013 18:37:43 Windows Update

==================== Hosts content: ==========================

2013-08-22 07:13 - 2013-08-22 07:13 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {00BC77BF-3352-4FE8-9617-4F1B27BEC19A} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {17233BE9-87E9-40B0-B003-AE9D2B92CBBE} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {247BD142-0549-4E91-84B0-172C25563718} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {2BE65564-89D1-4396-A5CC-D7D9283FC4A1} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {4B7EF56A-8A42-4BD2-BB5C-7C389AC54A37} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => C:\Windows\System32\AppXDeploymentClient.dll [2013-09-19] (Microsoft Corporation)
Task: {8B5819AE-7B44-478B-A3D3-8846AF160A8F} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {92ED6570-4654-4BFA-9A6C-1084C6939C16} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {997C8BBD-710B-4E66-B5BC-CC09575A58D2} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {A5D45ED3-F524-4574-8F39-527F3729D1E2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\System32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {C0D0F7C4-419F-41B3-90A2-FE79270B828A} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {CF5A1DDC-D14D-4D59-AD49-A19A645B087B} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {DCF55BED-B1DF-4ABF-8D85-6542C7007799} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {E4C8774A-2818-45A4-8A6D-11DDF6348886} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task

==================== Loaded Modules (whitelisted) =============

2012-06-18 16:24 - 2012-06-18 16:24 - 00260096 _____ () C:\Program Files\Notepad++\NppShell_05.dll
2013-11-16 13:29 - 2013-11-16 13:29 - 03363952 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
2013-11-20 14:07 - 2013-11-20 14:07 - 16237448 _____ () C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_152.dll
2013-11-12 20:02 - 2013-11-12 20:02 - 26118656 _____ () C:\Program Files\Battle.net\Battle.net.3891\libcef.dll
2013-11-12 20:02 - 2013-11-12 20:02 - 00739840 _____ () C:\Program Files\Battle.net\Battle.net.3891\libglesv2.dll
2013-11-12 20:02 - 2013-11-12 20:02 - 00130048 _____ () C:\Program Files\Battle.net\Battle.net.3891\libegl.dll

==================== Alternate Data Streams (whitelisted) =========


==================== Safe Mode (whitelisted) ===================


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (11/20/2013 03:42:23 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (11/20/2013 03:41:34 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (11/20/2013 02:41:33 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (11/20/2013 02:41:33 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (11/20/2013 02:06:45 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (11/20/2013 02:06:45 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (11/19/2013 10:42:11 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 25.0.1.5064, Zeitstempel: 0x5282f204
Name des fehlerhaften Moduls: xul.dll, Version: 25.0.1.5064, Zeitstempel: 0x5282f10e
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00118f87
ID des fehlerhaften Prozesses: 0x1524
Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0
Pfad der fehlerhaften Anwendung: firefox.exe1
Pfad des fehlerhaften Moduls: firefox.exe2
Berichtskennung: firefox.exe3
Vollständiger Name des fehlerhaften Pakets: firefox.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: firefox.exe5

Error: (11/19/2013 07:38:09 PM) (Source: Microsoft-Windows-CAPI2) (User: )
Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer".


Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert
.

Error: (11/18/2013 11:34:40 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (11/18/2013 11:32:15 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".


System errors:
=============
Error: (11/20/2013 04:37:14 PM) (Source: Microsoft-Windows-Kernel-Power) (User: )
Description: 4

Error: (11/20/2013 03:28:53 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070005 fehlgeschlagen: Update für Windows 8.1 (KB2883200)

Error: (11/20/2013 00:32:42 PM) (Source: Microsoft-Windows-Kernel-Power) (User: )
Description: 4

Error: (11/20/2013 00:32:15 PM) (Source: DCOM) (User: Daniel)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (11/20/2013 00:31:44 PM) (Source: DCOM) (User: Daniel)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}

Error: (11/20/2013 07:07:29 AM) (Source: Microsoft-Windows-Kernel-Power) (User: )
Description: 4

Error: (11/19/2013 10:42:34 PM) (Source: Microsoft-Windows-Kernel-Power) (User: )
Description: 4

Error: (11/19/2013 07:39:54 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070005 fehlgeschlagen: Update für Windows 8.1 (KB2883200)

Error: (11/19/2013 02:34:48 PM) (Source: DCOM) (User: Daniel)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (11/19/2013 02:34:17 PM) (Source: DCOM) (User: Daniel)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}


Microsoft Office Sessions:
=========================
Error: (11/20/2013 03:42:23 PM) (Source: SideBySide)(User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"C:\Program Files\DriverTuner\DPInst64.exe

Error: (11/20/2013 03:41:34 PM) (Source: SideBySide)(User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"c:\program files\Canon\mp navigator ex 5.0\mpnmlif64.exe

Error: (11/20/2013 02:41:33 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Canon\Solution Menu EX\MFC80U.DLL

Error: (11/20/2013 02:41:33 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Canon\Solution Menu EX\MFC80U.DLL

Error: (11/20/2013 02:06:45 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Canon\Solution Menu EX\MFC80U.DLL

Error: (11/20/2013 02:06:45 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files\Canon\Solution Menu EX\MFC80U.DLL

Error: (11/19/2013 10:42:11 PM) (Source: Application Error)(User: )
Description: firefox.exe25.0.1.50645282f204xul.dll25.0.1.50645282f10ec000000500118f87152401cee51f1262eb54C:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Mozilla Firefox\xul.dll71a20c50-5163-11e3-971c-001f16a546fe

Error: (11/19/2013 07:38:09 PM) (Source: Microsoft-Windows-CAPI2)(User: )
Description: 
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft-Verbindungsschichterkennungsprotokoll.

System Error:
Zugriff verweigert

Error: (11/18/2013 11:34:40 PM) (Source: SideBySide)(User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"c:\program files\Canon\mp navigator ex 5.0\mpnmlif64.exe

Error: (11/18/2013 11:32:15 PM) (Source: SideBySide)(User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"c:\program files\Canon\mp navigator ex 5.0\mpnmlif64.exe


==================== Memory info =========================== 

Percentage of memory in use: 38%
Total physical RAM: 3066.84 MB
Available physical RAM: 1900.86 MB
Total Pagefile: 4410.84 MB
Available Pagefile: 2949.24 MB
Total Virtual: 2047.88 MB
Available Virtual: 1870.38 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:288.32 GB) (Free:238.12 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive e: (VS2012_ULT_MSDN_DEU) (CDROM) (Total:1.54 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 8CF060DE)
Partition 1: (Not Active) - (Size=10 GB) - (Type=27)
Partition 2: (Active) - (Size=288 GB) - (Type=07 NTFS)

==================== End Of Log ============================
         
__________________

Alt 21.11.2013, 13:48   #4
schrauber
/// the machine
/// TB-Ausbilder
 

Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



Scheint erfolgreich geblockt.

Falls noch nicht vorhanden, lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop
  • Starte bitte die OTL.exe.
  • Kopiere nun den Inhalt aus der Codebox in die Textbox.
Code:
ATTFilter
HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Telephony\Providers
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanWorkstation /S
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache /S
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost
HKEY_LOCAL_MACHINE\SOFTWARE\Joosoft.com
%SystemRoot%\system32\*.tsp
C:\Windows\system32\*.dll /800
         
  • Schliesse bitte nun alle Programme. (Wichtig)
  • Klicke nun bitte auf den Quick Scan Button.
  • Kopiere nun den Inhalt aus OTL.txt und Extra.txt hier in Deinen Thread
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 21.11.2013, 21:50   #5
Sunzi
 
Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



Die Logs waren zu lang, also hab ich die Dateien als Anhang hinzugefügt.


Alt 22.11.2013, 16:33   #6
schrauber
/// the machine
/// TB-Ausbilder
 

Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



Hi,

Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen.


So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________
--> Mediyes.gen Trojaner entdeckt

Alt 22.11.2013, 22:55   #7
Sunzi
 
Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



Code:
ATTFilter
OTL logfile created on: 21.11.2013 21:34:49 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Dan1el\Desktop
 Professional  (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16438)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
2,99 Gb Total Physical Memory | 2,15 Gb Available Physical Memory | 71,82% Memory free
4,31 Gb Paging File | 2,96 Gb Available in Paging File | 68,80% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 288,32 Gb Total Space | 237,90 Gb Free Space | 82,51% Space Free | Partition Type: NTFS
Drive E: | 1,54 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
 
Computer Name: DANIEL | User Name: Dan1el | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - [2013.11.21 21:31:53 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Dan1el\Desktop\OTL.exe
PRC - [2013.11.14 13:10:14 | 000,440,376 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Programme\Avira\AntiVir Desktop\sched.exe
PRC - [2013.11.14 13:09:52 | 000,431,672 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Programme\Avira\AntiVir Desktop\avshadow.exe
PRC - [2013.11.14 13:09:47 | 000,683,576 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Programme\Avira\AntiVir Desktop\avgnt.exe
PRC - [2013.11.14 13:09:47 | 000,440,376 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Programme\Avira\AntiVir Desktop\avguard.exe
PRC - [2013.10.27 13:02:07 | 012,327,424 | ---- | M] (Microsoft Corporation) -- C:\Programme\WindowsApps\Microsoft.Reader_6.3.9600.16422_x86__8wekyb3d8bbwe\glcnd.exe
PRC - [2013.10.22 07:03:47 | 002,065,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2013.08.22 06:30:48 | 000,066,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhostex.exe
PRC - [2013.08.22 06:30:48 | 000,064,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2013.08.22 06:21:42 | 000,029,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\RuntimeBroker.exe
PRC - [2012.02.11 09:14:00 | 000,105,048 | ---- | M] (Microsoft Corporation) -- C:\Programme\Microsoft SQL Server\90\Shared\sqlwriter.exe
PRC - [2011.08.04 17:06:12 | 001,612,920 | ---- | M] (CANON INC.) -- C:\Programme\Canon\Solution Menu EX\CNSEMAIN.EXE
PRC - [2011.03.14 18:09:00 | 002,565,520 | ---- | M] (CANON INC.) -- C:\Programme\Canon\MyPrinter\BJMYPRT.EXE
PRC - [2011.01.15 16:48:44 | 000,452,016 | ---- | M] (CANON INC.) -- C:\Programme\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
 
 
========== Modules (No Company Name) ==========
 
MOD - [2012.06.18 16:24:30 | 000,260,096 | ---- | M] () -- C:\Programme\Notepad++\NppShell_05.dll
 
 
========== Services (SafeList) ==========
 
SRV - [2013.11.16 13:29:14 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.11.14 13:10:14 | 000,440,376 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Programme\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2013.11.14 13:09:47 | 000,440,376 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Programme\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2013.10.22 02:40:33 | 001,210,368 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\workfolderssvc.dll -- (workfolderssvc)
SRV - [2013.10.19 05:43:18 | 000,108,032 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV - [2013.10.10 18:14:05 | 001,164,360 | ---- | M] (Avira Operations GmbH & Co. KG) [Disabled | Stopped] -- C:\Programme\Avira\AntiVir Desktop\avwebg7.exe -- (AntiVirWebService)
SRV - [2013.10.10 15:52:58 | 002,872,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\WSService.dll -- (WSService)
SRV - [2013.10.10 11:35:11 | 001,128,448 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\AppXDeploymentServer.dll -- (AppXSvc)
SRV - [2013.10.04 09:00:53 | 000,409,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\AppReadiness.dll -- (AppReadiness)
SRV - [2013.09.05 10:34:30 | 000,171,680 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Programme\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013.08.22 16:02:28 | 000,075,104 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\System32\KeyboardFilterSvc.dll -- (MsKeyboardFilter)
SRV - [2013.08.22 16:02:25 | 001,778,176 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2013.08.22 16:02:21 | 000,174,080 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2013.08.22 06:18:20 | 000,278,264 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programme\Windows Defender\NisSrv.exe -- (WdNisSvc)
SRV - [2013.08.22 06:18:20 | 000,022,240 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programme\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV - [2013.08.22 06:17:49 | 002,407,936 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\spool\drivers\w32x86\3\PrintConfig.dll -- (PrintNotify)
SRV - [2013.08.22 05:03:29 | 000,020,992 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wephostsvc.dll -- (WEPHOSTSVC)
SRV - [2013.08.22 05:03:12 | 000,028,672 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\efssvc.dll -- (EFS)
SRV - [2013.08.22 04:56:08 | 000,052,736 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wiarpc.dll -- (WiaRpc)
SRV - [2013.08.22 04:55:35 | 000,018,944 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\StorSvc.dll -- (StorSvc)
SRV - [2013.08.22 04:54:45 | 000,011,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\svsvc.dll -- (svsvc)
SRV - [2013.08.22 04:50:48 | 000,098,304 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\fhsvc.dll -- (fhsvc)
SRV - [2013.08.22 04:10:39 | 000,141,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\NcaSvc.dll -- (NcaSvc)
SRV - [2013.08.22 04:05:56 | 000,417,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\icsvc.dll -- (vmicvss)
SRV - [2013.08.22 04:05:56 | 000,417,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\icsvc.dll -- (vmictimesync)
SRV - [2013.08.22 04:05:56 | 000,417,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\icsvc.dll -- (vmicshutdown)
SRV - [2013.08.22 04:05:56 | 000,417,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\icsvc.dll -- (vmicrdv)
SRV - [2013.08.22 04:05:56 | 000,417,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\icsvc.dll -- (vmickvpexchange)
SRV - [2013.08.22 04:05:56 | 000,417,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\icsvc.dll -- (vmicheartbeat)
SRV - [2013.08.22 04:05:56 | 000,417,792 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\icsvc.dll -- (vmicguestinterface)
SRV - [2013.08.22 03:59:51 | 001,122,816 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programme\Windows Media Player\wmpnetwk.exe -- (WMPNetworkSvc)
SRV - [2013.08.22 03:53:34 | 000,011,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\smphost.dll -- (smphost)
SRV - [2013.08.22 03:50:12 | 000,197,632 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
SRV - [2013.08.22 03:49:34 | 000,105,472 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\ScDeviceEnum.dll -- (ScDeviceEnum)
SRV - [2013.08.22 03:48:12 | 000,044,032 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\keyiso.dll -- (KeyIso)
SRV - [2013.08.22 03:45:36 | 000,173,056 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\TimeBrokerServer.dll -- (TimeBroker)
SRV - [2013.08.22 03:44:38 | 000,415,744 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\netprofmsvc.dll -- (netprofm)
SRV - [2013.08.22 03:41:55 | 000,124,928 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\ncbservice.dll -- (NcbService)
SRV - [2013.08.22 03:39:58 | 000,300,032 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\wcmsvc.dll -- (Wcmsvc)
SRV - [2013.08.22 03:39:05 | 000,196,608 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\vaultsvc.dll -- (VaultSvc)
SRV - [2013.08.22 03:38:43 | 000,306,176 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\System32\das.dll -- (DeviceAssociationService)
SRV - [2013.08.22 03:38:31 | 000,202,752 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\bisrv.dll -- (BrokerInfrastructure)
SRV - [2013.08.22 03:37:53 | 001,185,280 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\wlidsvc.dll -- (wlidsvc)
SRV - [2013.08.22 03:37:53 | 000,173,568 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
SRV - [2013.08.22 03:36:04 | 000,614,400 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\System32\lsm.dll -- (LSM)
SRV - [2013.08.22 03:35:39 | 000,357,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\GeofenceMonitorService.dll -- (lfsvc)
SRV - [2013.08.22 03:31:45 | 000,165,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\DeviceSetupManager.dll -- (DsmSvc)
SRV - [2013.08.22 03:21:32 | 000,064,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\NcdAutoSetup.dll -- (NcdAutoSetup)
SRV - [2012.07.25 18:04:02 | 000,094,208 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programme\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe -- (Te.Service)
SRV - [2012.07.25 17:20:50 | 000,133,632 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programme\Windows Kits\8.0\App Certification Kit\fussvc.exe -- (fussvc)
SRV - [2012.02.11 09:14:00 | 000,105,048 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Programme\Microsoft SQL Server\90\Shared\sqlwriter.exe -- (SQLWriter)
 
 
========== Driver Services (SafeList) ==========
 
DRV - [2013.11.14 13:10:18 | 000,137,208 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\System32\Drivers\avipbb.sys -- (avipbb)
DRV - [2013.11.14 13:10:18 | 000,090,400 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\Windows\System32\Drivers\avgntflt.sys -- (avgntflt)
DRV - [2013.10.25 16:36:27 | 000,242,240 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\System32\Drivers\dtsoftbus01.sys -- (dtsoftbus01)
DRV - [2013.10.13 01:45:41 | 000,069,464 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\wfplwfs.sys -- (WFPLWFS)
DRV - [2013.10.10 18:14:07 | 000,028,520 | ---- | M] (Avira GmbH) [Kernel | System | Running] -- C:\Windows\System32\Drivers\ssmdrv.sys -- (ssmdrv)
DRV - [2013.10.10 18:14:05 | 000,067,680 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | Auto | Running] -- C:\Windows\System32\Drivers\avnetflt.sys -- (avnetflt)
DRV - [2013.10.10 18:14:05 | 000,037,352 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\System32\Drivers\avkmgr.sys -- (avkmgr)
DRV - [2013.10.08 10:11:16 | 000,036,696 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\intelpep.sys -- (intelpep)
DRV - [2013.10.05 13:30:03 | 000,047,960 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\System32\Drivers\stornvme.sys -- (stornvme)
DRV - [2013.10.05 13:30:02 | 000,321,368 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\spaceport.sys -- (spaceport)
DRV - [2013.09.11 12:21:55 | 000,261,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\USBXHCI.SYS -- (USBXHCI)
DRV - [2013.08.22 16:02:30 | 000,019,680 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\kbldfltr.sys -- (kbldfltr)
DRV - [2013.08.22 16:02:28 | 000,023,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV - [2013.08.22 16:02:15 | 000,030,048 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\terminpt.sys -- (terminpt)
DRV - [2013.08.22 07:13:53 | 000,142,176 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\VerifierExt.sys -- (VerifierExt)
DRV - [2013.08.22 07:13:53 | 000,032,256 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\condrv.sys -- (condrv)
DRV - [2013.08.22 06:35:21 | 000,053,088 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\System32\Drivers\dam.sys -- (dam)
DRV - [2013.08.22 06:35:20 | 000,061,280 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\acpiex.sys -- (acpiex)
DRV - [2013.08.22 06:34:52 | 000,133,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\tpm.sys -- (TPM)
DRV - [2013.08.22 06:33:32 | 000,058,208 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\System32\Drivers\mvumis.sys -- (mvumis)
DRV - [2013.08.22 06:33:31 | 000,033,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\msgpiowin32.sys -- (msgpiowin32)
DRV - [2013.08.22 06:33:30 | 000,122,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\msgpioclx.sys -- (GPIOClx0101)
DRV - [2013.08.22 06:33:30 | 000,068,960 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\System32\Drivers\lsi_sas3.sys -- (LSI_SAS3)
DRV - [2013.08.22 06:33:29 | 000,069,472 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\System32\Drivers\lsi_sss.sys -- (LSI_SSS)
DRV - [2013.08.22 06:33:26 | 000,086,368 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\System32\Drivers\3ware.sys -- (3ware)
DRV - [2013.08.22 06:33:25 | 000,773,472 | ---- | M] (PMC-Sierra) [Kernel | Boot | Stopped] -- C:\Windows\System32\Drivers\adp80xx.sys -- (ADP80XX)
DRV - [2013.08.22 06:33:25 | 000,100,704 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\System32\Drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
DRV - [2013.08.22 06:33:24 | 000,073,568 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\System32\Drivers\EhStorClass.sys -- (EhStorClass)
DRV - [2013.08.22 06:33:01 | 000,276,832 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\System32\Drivers\VSTXRAID.SYS -- (VSTXRAID)
DRV - [2013.08.22 06:33:00 | 000,375,648 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\USBHUB3.SYS -- (USBHUB3)
DRV - [2013.08.22 06:32:57 | 000,163,680 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\UCX01000.SYS -- (UCX01000)
DRV - [2013.08.22 06:32:57 | 000,119,648 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\SerCx2.sys -- (SerCx2)
DRV - [2013.08.22 06:32:57 | 000,090,976 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\storahci.sys -- (storahci)
DRV - [2013.08.22 06:32:57 | 000,064,352 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\sdstor.sys -- (sdstor)
DRV - [2013.08.22 06:32:57 | 000,059,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\SpbCx.sys -- (SpbCx)
DRV - [2013.08.22 06:32:57 | 000,058,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\SerCx.sys -- (SerCx)
DRV - [2013.08.22 06:32:57 | 000,057,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\uaspstor.sys -- (UASPStor)
DRV - [2013.08.22 06:32:38 | 000,031,584 | ---- | M] (Microsoft Corporation) [Kernel | Disabled | Stopped] -- C:\Windows\System32\Drivers\cnghwassist.sys -- (cnghwassist)
DRV - [2013.08.22 06:25:43 | 000,077,152 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\pdc.sys -- (pdc)
DRV - [2013.08.22 06:25:38 | 000,046,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\wpcfltr.sys -- (wpcfltr)
DRV - [2013.08.22 06:25:37 | 000,284,000 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\Drivers\clfs.sys -- (CLFS)
DRV - [2013.08.22 06:24:56 | 000,023,904 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\uefi.sys -- (UEFI)
DRV - [2013.08.22 06:24:36 | 000,023,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\WpdUpFltr.sys -- (WpdUpFltr)
DRV - [2013.08.22 06:20:49 | 000,093,024 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\WdNisDrv.sys -- (WdNisDrv)
DRV - [2013.08.22 06:20:48 | 000,214,368 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\Drivers\WdFilter.sys -- (WdFilter)
DRV - [2013.08.22 06:20:22 | 000,093,248 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\System32\Drivers\vmbus.sys -- (vmbus)
DRV - [2013.08.22 06:20:22 | 000,045,376 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\System32\Drivers\vmstorfl.sys -- (storflt)
DRV - [2013.08.22 06:20:22 | 000,042,304 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\System32\Drivers\storvsc.sys -- (storvsc)
DRV - [2013.08.22 06:17:00 | 000,029,128 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\WdBoot.sys -- (WdBoot)
DRV - [2013.08.22 05:11:29 | 000,063,488 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\Drivers\ahcache.sys -- (ahcache)
DRV - [2013.08.22 05:11:04 | 000,043,520 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\Drivers\BasicDisplay.sys -- (BasicDisplay)
DRV - [2013.08.22 05:10:58 | 000,025,600 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\Drivers\BasicRender.sys -- (BasicRender)
DRV - [2013.08.22 05:10:45 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\HyperVideo.sys -- (HyperVideo)
DRV - [2013.08.22 05:10:37 | 000,008,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\mshidumdf.sys -- (mshidumdf)
DRV - [2013.08.22 05:10:28 | 000,008,704 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\acpitime.sys -- (acpitime)
DRV - [2013.08.22 05:10:21 | 000,009,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\acpipagr.sys -- (acpipagr)
DRV - [2013.08.22 05:10:04 | 000,018,432 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\System32\Drivers\npsvctrig.sys -- (npsvctrig)
DRV - [2013.08.22 05:10:01 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BthAvrcpTg.sys -- (BthAvrcpTg)
DRV - [2013.08.22 05:09:59 | 000,016,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\kdnic.sys -- (kdnic)
DRV - [2013.08.22 05:09:57 | 000,006,528 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\vms3cap.sys -- (s3cap)
DRV - [2013.08.22 05:09:50 | 000,011,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\vmgencounter.sys -- (gencounter)
DRV - [2013.08.22 05:09:37 | 000,023,808 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\BthhfHid.sys -- (bthhfhid)
DRV - [2013.08.22 05:09:23 | 000,064,000 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\winusb.sys -- (WinUsb)
DRV - [2013.08.22 05:09:15 | 000,050,688 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\bthhfenum.sys -- (BthHFEnum)
DRV - [2013.08.22 05:09:10 | 000,026,880 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\TsUsbGD.sys -- (TsUsbGD)
DRV - [2013.08.22 05:09:09 | 000,012,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\hyperkbd.sys -- (hyperkbd)
DRV - [2013.08.22 05:09:03 | 000,048,640 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2013.08.22 05:09:01 | 000,032,256 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\hidi2c.sys -- (hidi2c)
DRV - [2013.08.22 05:09:01 | 000,018,304 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\VMBusHID.sys -- (VMBusHID)
DRV - [2013.08.22 05:08:37 | 000,026,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\dmvsc.sys -- (dmvsc)
DRV - [2013.08.22 05:08:18 | 000,072,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\netvsc63.sys -- (netvsc)
DRV - [2013.08.22 05:08:06 | 000,013,312 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\NdisVirtualBus.sys -- (NdisVirtualBus)
DRV - [2013.08.22 05:07:57 | 000,109,568 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\NdisImPlatform.sys -- (NdisImPlatform)
DRV - [2013.08.22 05:07:55 | 000,057,344 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\mslldp.sys -- (MsLldp)
DRV - [2013.08.22 05:07:53 | 000,029,184 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\vwifimp.sys -- (vwifimp)
DRV - [2013.08.22 05:07:19 | 000,091,136 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\System32\Drivers\Ndu.sys -- (Ndu)
DRV - [2013.08.22 02:58:35 | 000,022,016 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\fxppm.sys -- (FxPPM)
DRV - [2013.08.22 02:42:19 | 000,377,344 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\k57nd60x.sys -- (k57nd60x)
DRV - [2013.08.13 00:25:32 | 000,016,088 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\bcmfn2.sys -- (bcmfn2)
DRV - [2013.08.10 01:39:44 | 000,524,784 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\System32\Drivers\iaStorAV.sys -- (iaStorAV)
DRV - [2013.07.23 22:18:30 | 000,061,936 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\iaioi2c.sys -- (iaioi2c)
DRV - [2013.07.23 22:18:30 | 000,022,016 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\Drivers\iaiogpio.sys -- (GPIO)
DRV - [2013.06.18 13:35:24 | 001,035,776 | ---- | M] (LSI Corp) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\AGRSM.sys -- (AgereSoftModem)
DRV - [2013.06.18 13:20:53 | 002,795,520 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\athwn.sys -- (athr)
DRV - [2012.07.26 13:38:00 | 000,055,416 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Programme\Microsoft Visual Studio 11.0\Team Tools\Performance Tools\VSPerfDrv110.sys -- (VSPerfDrv110)
DRV - [2012.06.19 05:09:14 | 000,290,304 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\atikmpag.sys -- (amdkmdap)
DRV - [2012.06.19 05:05:32 | 010,071,040 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\Drivers\atikmdag.sys -- (amdkmdag)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0F 34 1F A4 96 D1 CE 01  [binary data]
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
========== FireFox ==========
 
FF - prefs.js..browser.search.defaultenginename: "Google"
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.startup.homepage: "google.de"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:25.0.1
FF - user.js - File not found
 
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
FF - HKLM\Software\MozillaPlugins\@canon.com/EPPEX: C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.10411.0\npctrl.dll ( Microsoft Corporation)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 25.0.1\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
 
[2013.10.25 16:32:04 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Dan1el\AppData\Roaming\mozilla\Extensions
[2013.10.25 17:15:02 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Dan1el\AppData\Roaming\mozilla\Firefox\Profiles\gigpqowz.default\extensions
[2013.11.16 13:29:09 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\browser\extensions
[2013.11.16 13:29:15 | 000,000,000 | ---D | M] (Default) -- C:\Programme\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2013.11.16 13:29:09 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\distribution\extensions
[2013.11.16 13:29:10 | 000,000,000 | ---D | M] (Yahoo! Toolbar) -- C:\Programme\Mozilla Firefox\distribution\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
 
O1 HOSTS File: ([2013.08.22 07:13:55 | 000,000,824 | ---- | M]) - C:\Windows\System32\Drivers\etc\hosts
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Microsoft Web Test Recorder 10.0 Helper) - {876d9f09-c6d6-4324-a2cc-04dd9a4de12f} - C:\Programme\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O4 - HKLM..\Run: [AMD AVT] C:\Windows\System32\cmd.exe (Microsoft Corporation)
O4 - HKLM..\Run: [avgnt] C:\Program Files\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [CanonMyPrinter] C:\Program Files\Canon\MyPrinter\BJMyPrt.exe (CANON INC.)
O4 - HKLM..\Run: [CanonSolutionMenuEx] C:\Program Files\Canon\Solution Menu EX\CNSEMAIN.EXE (CANON INC.)
O4 - HKLM..\Run: [IJNetworkScannerSelectorEX] C:\Program Files\Canon\IJ Network Scanner Selector EX\CNMNSST.exe (CANON INC.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 141.44.1.9 141.44.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8281A7E6-10F4-4FDB-92D6-6202B59783C4}: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{F3FE3AD7-D125-40B6-AC01-018E2AAAE59F}: DhcpNameServer = 141.44.1.9 141.44.1.1
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013.08.22 09:16:34 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O32 - AutoRun File - [2013.05.03 06:27:26 | 000,000,058 | R--- | M] () - E:\autorun.inf -- [ CDFS ]
O33 - MountPoints2\{d11e8de4-3d86-11e3-9715-001f16a546fe}\Shell - "" = AutoRun
O33 - MountPoints2\{d11e8de4-3d86-11e3-9715-001f16a546fe}\Shell\AutoRun\command - "" = E:\vs_ultimate.exe -- [2013.05.03 09:49:04 | 000,995,640 | R--- | M] (Microsoft Corporation)
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2013.11.21 21:31:53 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Dan1el\Desktop\OTL.exe
[2013.11.21 13:26:28 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\Desktop\ex5
[2013.11.20 22:34:35 | 000,000,000 | ---D | C] -- C:\FRST
[2013.11.20 22:33:30 | 001,090,881 | ---- | C] (Farbar) -- C:\Users\Dan1el\Desktop\FRST.exe
[2013.11.20 14:44:04 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Local\Diagnostics
[2013.11.20 14:34:34 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\ATI
[2013.11.20 14:34:34 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Local\ATI
[2013.11.20 14:34:34 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2013.11.20 14:32:42 | 000,000,000 | ---D | C] -- C:\Program Files\ATI.ACE
[2013.11.20 14:07:43 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2013.11.20 14:01:01 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\System32\CSVer.dll
[2013.11.20 14:01:01 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2013.11.20 13:59:22 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Local\DriverTuner
[2013.11.20 13:59:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DriverTuner
[2013.11.20 13:59:14 | 000,000,000 | ---D | C] -- C:\Program Files\DriverTuner
[2013.11.20 13:39:39 | 000,000,000 | ---D | C] -- C:\ProgramData\AMD
[2013.11.20 13:39:38 | 000,000,000 | ---D | C] -- C:\Program Files\AMD AVT
[2013.11.20 13:39:37 | 000,000,000 | ---D | C] -- C:\Program Files\AMD APP
[2013.11.20 13:39:34 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
[2013.11.20 13:39:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
[2013.11.20 13:38:57 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2013.11.20 13:38:48 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2013.11.20 13:38:06 | 000,000,000 | ---D | C] -- C:\AMD
[2013.11.16 13:29:08 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2013.11.16 12:34:06 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\.minecraft
[2013.11.14 13:57:58 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\Desktop\Logik
[2013.11.14 13:00:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\MRT
[2013.11.09 14:10:56 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
[2013.11.09 14:10:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
[2013.11.09 14:10:53 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\Notepad++
[2013.11.09 14:10:53 | 000,000,000 | ---D | C] -- C:\Program Files\Notepad++
[2013.11.08 14:42:45 | 000,000,000 | -H-D | C] -- C:\ProgramData\CanonIJEPPEX2
[2013.11.08 14:42:45 | 000,000,000 | -H-D | C] -- C:\ProgramData\CanonEPP
[2013.11.08 14:42:44 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\Canon
[2013.11.08 14:39:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Canon IJ Network Tool
[2013.11.08 14:38:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG5300 series Benutzerregistrierung
[2013.11.08 14:38:11 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\CANON
[2013.11.08 14:38:03 | 000,000,000 | ---D | C] -- C:\ProgramData\CanonIJWSpt
[2013.11.08 14:35:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
[2013.11.08 14:35:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG5300 series Manual
[2013.11.08 14:34:50 | 000,000,000 | -H-D | C] -- C:\ProgramData\CanonBJ
[2013.11.08 14:34:31 | 000,000,000 | -H-D | C] -- C:\Windows\System32\CanonIJ Uninstaller Information
[2013.11.08 14:34:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon MG5300 series
[2013.11.08 14:32:40 | 000,000,000 | -H-D | C] -- C:\Program Files\CanonBJ
[2013.11.08 14:32:31 | 000,000,000 | ---D | C] -- C:\Windows\System32\STRING
[2013.11.08 14:29:59 | 000,000,000 | ---D | C] -- C:\Program Files\Canon
[2013.10.31 09:33:20 | 000,000,000 | R--D | C] -- C:\Windows\BrowserChoice
[2013.10.31 09:22:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LPL Software
[2013.10.30 20:59:14 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\workspace
[2013.10.30 20:58:43 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\.eclipse
[2013.10.30 20:57:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
[2013.10.30 20:57:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2013.10.30 20:57:29 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2013.10.30 20:57:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2013.10.30 20:56:59 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2013.10.29 22:16:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Blizzard Entertainment
[2013.10.29 22:15:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Battle.net
[2013.10.29 18:25:40 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\Microsoft FxCop
[2013.10.29 18:24:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Visual Studio
[2013.10.28 22:21:02 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Local\Blizzard
[2013.10.28 22:14:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone
[2013.10.28 22:14:11 | 000,000,000 | ---D | C] -- C:\Program Files\Hearthstone
[2013.10.28 22:12:12 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Local\Blizzard Entertainment
[2013.10.28 22:12:10 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\Battle.net
[2013.10.28 22:12:10 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Local\Battle.net
[2013.10.28 22:11:58 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Blizzard Entertainment
[2013.10.28 22:11:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
[2013.10.28 22:11:58 | 000,000,000 | ---D | C] -- C:\Program Files\Battle.net
[2013.10.27 19:18:49 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\Skype
[2013.10.27 19:18:42 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2013.10.27 19:18:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2013.10.27 19:18:42 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2013.10.27 19:18:34 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
[2013.10.26 22:46:24 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\vlc
[2013.10.26 22:45:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2013.10.26 22:45:25 | 000,000,000 | ---D | C] -- C:\Program Files\VideoLAN
[2013.10.26 13:15:44 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\Documents\Visual Studio 2012
[2013.10.26 13:14:11 | 000,000,000 | ---D | C] -- C:\Program Files\Application Verifier
[2013.10.26 13:14:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Windows App Certification Kit
[2013.10.26 13:13:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
[2013.10.26 13:12:47 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Microsoft
[2013.10.26 13:12:33 | 000,000,000 | ---D | C] -- C:\ProgramData\PreEmptive Solutions
[2013.10.26 13:10:12 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Web Tools
[2013.10.26 13:09:42 | 000,000,000 | ---D | C] -- C:\Program Files\NuGet
[2013.10.26 13:09:33 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft WCF Data Services
[2013.10.26 13:02:34 | 000,000,000 | ---D | C] -- C:\Program Files\HTML Help Workshop
[2013.10.26 13:02:24 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Designer
[2013.10.26 12:57:00 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Merge Modules
[2013.10.26 12:56:41 | 000,000,000 | ---D | C] -- C:\Windows\symbols
[2013.10.26 12:56:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2012
[2013.10.26 12:56:07 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 11.0
[2013.10.26 10:40:03 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\WinRAR
[2013.10.26 10:24:11 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2013.10.26 10:24:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2013.10.26 10:24:00 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2013.10.25 22:55:10 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Local\Macromedia
[2013.10.25 22:53:47 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Local\Adobe
[2013.10.25 17:22:29 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\Avira
[2013.10.25 17:15:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2013.10.25 17:15:31 | 000,028,520 | ---- | C] (Avira GmbH) -- C:\Windows\System32\drivers\ssmdrv.sys
[2013.10.25 17:15:23 | 000,137,208 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avipbb.sys
[2013.10.25 17:15:23 | 000,090,400 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avgntflt.sys
[2013.10.25 17:15:23 | 000,067,680 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avnetflt.sys
[2013.10.25 17:15:23 | 000,037,352 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avkmgr.sys
[2013.10.25 17:15:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2013.10.25 17:15:20 | 000,000,000 | ---D | C] -- C:\Program Files\Avira
[2013.10.25 17:04:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2013.10.25 17:03:55 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2013.10.25 17:03:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 5 SDK - Deutsch
[2013.10.25 17:03:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 4 SDK - Deutsch
[2013.10.25 17:01:29 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2013.10.25 16:55:45 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft ASP.NET
[2013.10.25 16:54:31 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft
[2013.10.25 16:54:20 | 000,000,000 | ---D | C] -- C:\Program Files\IIS Express
[2013.10.25 16:53:48 | 000,000,000 | ---D | C] -- C:\Program Files\IIS
[2013.10.25 16:52:20 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Kits
[2013.10.25 16:45:04 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Help Viewer
[2013.10.25 16:44:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\1033
[2013.10.25 16:44:15 | 000,000,000 | ---D | C] -- C:\Windows\System32\1031
[2013.10.25 16:44:03 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server
[2013.10.25 16:42:53 | 000,000,000 | ---D | C] -- C:\Program Files\Reference Assemblies
[2013.10.25 16:40:52 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2013.10.25 16:40:20 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SDKs
[2013.10.25 16:39:12 | 000,000,000 | ---D | C] -- C:\Program Files\Studium
[2013.10.25 16:39:12 | 000,000,000 | ---D | C] -- C:\Program Files\MSBuild
[2013.10.25 16:39:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache
[2013.10.25 16:36:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
[2013.10.25 16:36:27 | 000,242,240 | ---- | C] (DT Soft Ltd) -- C:\Windows\System32\drivers\dtsoftbus01.sys
[2013.10.25 16:36:22 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\DAEMON Tools Lite
[2013.10.25 16:36:19 | 000,000,000 | ---D | C] -- C:\Program Files\DAEMON Tools Lite
[2013.10.25 16:35:33 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite
[2013.10.25 16:31:59 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\Mozilla
[2013.10.25 16:31:59 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Local\Mozilla
[2013.10.25 16:31:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2013.10.25 16:31:53 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service
[2013.10.25 16:27:02 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\Macromedia
[2013.10.25 16:12:28 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\Desktop\Daniel
[2013.10.25 16:06:37 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2013.10.25 16:06:37 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\Searches
[2013.10.25 16:06:37 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2013.10.25 16:06:36 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\Contacts
[2013.10.25 16:06:25 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Local\VirtualStore
[2013.10.25 16:06:20 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Local\Packages
[2013.10.25 16:06:20 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\Adobe
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\Vorlagen
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\AppData\Local\Verlauf
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\AppData\Local\Temporary Internet Files
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\Startmenü
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\SendTo
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\Recent
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\Netzwerkumgebung
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\Lokale Einstellungen
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\Documents\Eigene Videos
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\Documents\Eigene Musik
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\Eigene Dateien
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\Documents\Eigene Bilder
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\Druckumgebung
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\Cookies
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\AppData\Local\Anwendungsdaten
[2013.10.25 16:06:02 | 000,000,000 | -HSD | C] -- C:\Users\Dan1el\Anwendungsdaten
[2013.10.25 16:06:01 | 000,000,000 | --SD | C] -- C:\Users\Dan1el\AppData\Roaming\Microsoft
[2013.10.25 16:06:01 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
[2013.10.25 16:06:01 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2013.10.25 16:06:01 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
[2013.10.25 16:06:01 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Local\Temp
[2013.10.25 16:06:01 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Local\Microsoft
[2013.10.25 16:06:01 | 000,000,000 | ---D | C] -- C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2013.10.25 16:06:00 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\Videos
[2013.10.25 16:06:00 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\Saved Games
[2013.10.25 16:06:00 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\Pictures
[2013.10.25 16:06:00 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\Music
[2013.10.25 16:06:00 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\Links
[2013.10.25 16:06:00 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\Favorites
[2013.10.25 16:06:00 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\Downloads
[2013.10.25 16:06:00 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\Documents
[2013.10.25 16:06:00 | 000,000,000 | R--D | C] -- C:\Users\Dan1el\Desktop
[2013.10.25 16:06:00 | 000,000,000 | -H-D | C] -- C:\Users\Dan1el\AppData
[2013.10.25 15:59:40 | 000,000,000 | ---D | C] -- C:\Windows\CSC
[2013.10.25 15:59:33 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2013.10.25 15:57:29 | 000,000,000 | -HSD | C] -- C:\Program Files\Gemeinsame Dateien
[2013.10.25 15:57:29 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos
[2013.10.25 15:57:29 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik
[2013.10.25 15:57:29 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder
[2013.10.25 15:57:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen
[2013.10.25 15:57:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü
[2013.10.25 15:57:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente
[2013.10.25 15:57:28 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten
[2013.10.25 15:44:23 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
 
========== Files - Modified Within 30 Days ==========
 
[2013.11.21 21:31:53 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Dan1el\Desktop\OTL.exe
[2013.11.21 19:26:22 | 000,004,893 | ---- | M] () -- C:\Users\Dan1el\Desktop\ex5.rar
[2013.11.21 19:05:22 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013.11.21 13:27:29 | 000,727,930 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2013.11.21 13:27:29 | 000,687,180 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2013.11.21 13:27:29 | 000,151,586 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2013.11.21 13:27:29 | 000,127,812 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2013.11.20 22:33:30 | 001,090,881 | ---- | M] (Farbar) -- C:\Users\Dan1el\Desktop\FRST.exe
[2013.11.20 14:42:02 | 000,675,988 | ---- | M] () -- C:\Users\Dan1el\Desktop\Minecraft.exe
[2013.11.20 14:40:21 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys
[2013.11.20 14:40:19 | 2572,648,448 | -HS- | M] () -- C:\hiberfil.sys
[2013.11.20 14:05:08 | 000,333,664 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2013.11.18 20:33:18 | 000,001,368 | ---- | M] () -- C:\Users\Dan1el\Desktop\aufgabe6.3.prf
[2013.11.14 13:10:18 | 000,137,208 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avipbb.sys
[2013.11.14 13:10:18 | 000,090,400 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\System32\drivers\avgntflt.sys
[2013.11.08 14:35:32 | 000,002,326 | ---- | M] () -- C:\Users\Public\Desktop\Canon MG5300 series Online-Handbuch.lnk
[2013.11.06 14:53:59 | 000,001,099 | ---- | M] () -- C:\Users\Dan1el\Desktop\Studium.lnk
[2013.11.02 14:04:47 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
[2013.10.28 22:14:13 | 000,000,870 | ---- | M] () -- C:\Users\Public\Desktop\Hearthstone.lnk
[2013.10.27 19:18:42 | 000,002,521 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2013.10.26 22:45:50 | 000,001,044 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2013.10.25 17:15:56 | 000,002,032 | ---- | M] () -- C:\Users\Public\Desktop\Avira Control Center.lnk
[2013.10.25 16:46:37 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf
[2013.10.25 16:40:39 | 000,008,192 | RHS- | M] () -- C:\BOOTSECT.BAK
[2013.10.25 16:36:27 | 000,242,240 | ---- | M] (DT Soft Ltd) -- C:\Windows\System32\drivers\dtsoftbus01.sys
[2013.10.25 16:31:54 | 000,001,121 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013.10.25 16:09:38 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_11_00.Wdf
[2013.10.25 16:08:32 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
[2013.10.25 16:08:32 | 000,000,000 | ---- | M] () -- C:\Windows\System32\atiicdxx.dat
[2013.10.25 15:46:13 | 000,055,502 | ---- | M] () -- C:\Windows\System32\license.rtf
 
========== Files Created - No Company Name ==========
 
[2013.11.21 19:26:22 | 000,004,893 | ---- | C] () -- C:\Users\Dan1el\Desktop\ex5.rar
[2013.11.20 14:42:01 | 000,675,988 | ---- | C] () -- C:\Users\Dan1el\Desktop\Minecraft.exe
[2013.11.18 20:33:18 | 000,001,368 | ---- | C] () -- C:\Users\Dan1el\Desktop\aufgabe6.3.prf
[2013.11.15 23:15:07 | 000,385,528 | ---- | C] () -- C:\Windows\System32\ApnDatabase.xml
[2013.11.08 14:39:22 | 000,068,096 | ---- | C] () -- C:\Windows\System32\CNC1754D.TBL
[2013.11.08 14:35:32 | 000,002,326 | ---- | C] () -- C:\Users\Public\Desktop\Canon MG5300 series Online-Handbuch.lnk
[2013.11.06 14:53:59 | 000,001,099 | ---- | C] () -- C:\Users\Dan1el\Desktop\Studium.lnk
[2013.11.02 14:04:47 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
[2013.10.31 09:37:35 | 000,002,143 | R-S- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Browser Choice.lnk
[2013.10.28 22:14:13 | 000,000,870 | ---- | C] () -- C:\Users\Public\Desktop\Hearthstone.lnk
[2013.10.27 19:18:42 | 000,002,521 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
[2013.10.26 22:45:50 | 000,001,044 | ---- | C] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2013.10.25 17:15:56 | 000,002,032 | ---- | C] () -- C:\Users\Public\Desktop\Avira Control Center.lnk
[2013.10.25 16:54:33 | 000,002,120 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Web Platform Installer.lnk
[2013.10.25 16:46:37 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_SensorsSimulatorDriver_01_11_00.Wdf
[2013.10.25 16:31:54 | 000,001,133 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2013.10.25 16:31:54 | 000,001,121 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013.10.25 16:09:38 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_11_00.Wdf
[2013.10.25 16:08:32 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2013.10.25 16:08:32 | 000,000,000 | ---- | C] () -- C:\Windows\System32\atiicdxx.dat
[2013.10.25 16:06:20 | 000,001,454 | ---- | C] () -- C:\Users\Dan1el\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2013.10.25 15:43:34 | 268,435,456 | -HS- | C] () -- C:\swapfile.sys
[2013.08.22 15:59:39 | 000,727,930 | ---- | C] () -- C:\Windows\System32\perfh007.dat
[2013.08.22 15:59:39 | 000,305,634 | ---- | C] () -- C:\Windows\System32\perfi007.dat
[2013.08.22 15:59:39 | 000,151,586 | ---- | C] () -- C:\Windows\System32\perfc007.dat
[2013.08.22 15:59:39 | 000,040,390 | ---- | C] () -- C:\Windows\System32\perfd007.dat
[2013.08.22 09:19:09 | 000,687,180 | ---- | C] () -- C:\Windows\System32\perfh009.dat
[2013.08.22 09:19:09 | 000,296,742 | ---- | C] () -- C:\Windows\System32\perfi009.dat
[2013.08.22 09:19:09 | 000,127,812 | ---- | C] () -- C:\Windows\System32\perfc009.dat
[2013.08.22 09:19:09 | 000,033,362 | ---- | C] () -- C:\Windows\System32\perfd009.dat
[2013.08.22 09:17:31 | 000,000,389 | ---- | C] () -- C:\Windows\System32\AutoWorkplace.exe.config
[2013.08.22 09:17:30 | 000,215,943 | ---- | C] () -- C:\Windows\System32\dssec.dat
[2013.08.22 09:17:29 | 000,000,741 | ---- | C] () -- C:\Windows\System32\NOISE.DAT
[2013.08.22 08:24:03 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2013.08.22 08:22:45 | 000,333,664 | ---- | C] () -- C:\Windows\System32\FNTCACHE.DAT
[2013.08.22 04:33:54 | 000,073,216 | ---- | C] () -- C:\Windows\System32\BthpanContextHandler.dll
[2013.08.22 04:32:36 | 000,046,080 | ---- | C] () -- C:\Windows\System32\BWContextHandler.dll
[2013.08.22 04:17:46 | 000,103,936 | ---- | C] () -- C:\Windows\System32\OEMLicense.dll
[2013.08.22 00:57:03 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2013.08.22 00:52:39 | 000,673,088 | ---- | C] () -- C:\Windows\System32\mlang.dat
[2013.08.22 00:52:35 | 001,520,828 | ---- | C] () -- C:\Windows\System32\WpcNBModel.bin
[2013.08.22 00:52:35 | 000,526,068 | ---- | C] () -- C:\Windows\System32\staticurllist.bin
[2013.08.22 00:50:57 | 000,008,192 | ---- | C] () -- C:\Windows\System32\settings.dat
[2013.08.22 00:48:14 | 000,049,963 | ---- | C] () -- C:\Windows\System32\srms.dat
[2012.11.16 17:01:04 | 000,159,232 | ---- | C] () -- C:\Windows\System32\clinfo.exe
[2012.04.18 19:39:06 | 000,028,672 | ---- | C] () -- C:\Windows\System32\kdbsdk32.dll
 
========== ZeroAccess Check ==========
 
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013.11.05 19:51:37 | 018,642,504 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2013.08.22 03:45:10 | 000,691,712 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2013.08.22 03:42:12 | 000,390,144 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
========== LOP Check ==========
 
[2013.11.20 21:25:28 | 000,000,000 | ---D | M] -- C:\Users\Dan1el\AppData\Roaming\.minecraft
[2013.10.29 00:25:38 | 000,000,000 | ---D | M] -- C:\Users\Dan1el\AppData\Roaming\Battle.net
[2013.11.08 14:42:44 | 000,000,000 | ---D | M] -- C:\Users\Dan1el\AppData\Roaming\Canon
[2013.10.25 16:37:10 | 000,000,000 | ---D | M] -- C:\Users\Dan1el\AppData\Roaming\DAEMON Tools Lite
[2013.11.10 23:49:05 | 000,000,000 | ---D | M] -- C:\Users\Dan1el\AppData\Roaming\Notepad++
 
========== Purity Check ==========
 
 
 
========== Custom Scans ==========
 
< HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Telephony\Providers >
"NextProviderID" = 4
"ProviderFileName1" = kmddsp.tsp -- [2013.08.22 05:04:36 | 000,039,424 | ---- | M] (Microsoft Corporation)
"ProviderID2" = 3
"ProviderID1" = 2
"ProviderFileName0" = unimdm.tsp -- [2013.08.22 04:57:46 | 000,277,504 | ---- | M] (Microsoft Corporation)
"ProviderID0" = 1
"ProviderFileName2" = hidphone.tsp -- [2013.08.22 05:02:49 | 000,032,256 | ---- | M] (Microsoft Corporation)
"NumProviders" = 3
 
< HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanWorkstation /S >
"DisplayName" = @%systemroot%\system32\wkssvc.dll,-100
"ErrorControl" = 1
"Group" = NetworkProvider
"ImagePath" = %SystemRoot%\System32\svchost.exe -k NetworkService -- [2013.08.22 06:30:58 | 000,031,552 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%systemroot%\system32\wkssvc.dll,-101
"DependOnService" = BowserMRxSmb20NSI [binary data]
"ObjectName" = NT AUTHORITY\NetworkService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeImperson [Binary data over 200 bytes]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 60 EA 00 00 01 00 00 00 C0 D4 01 00 00 00 00 00 00 00 00 00  [binary data]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Linkage]
"Bind" = \Device\Tcpip_{AC4155E4-C26E-4EF5- [Binary data over 200 bytes]
"Route" = "Tcpip" "{AC4155E4-C26E-4EF5-9936- [Binary data over 200 bytes]
"Export" = \Device\LanmanWorkstation_Tcpip_{A [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanWorkstation\NetworkProvider]
"DeviceName" = \Device\LanmanRedirector
"ProviderPath" = %SystemRoot%\System32\ntlanman.dll -- [2013.08.22 03:52:28 | 000,056,832 | ---- | M] (Microsoft Corporation)
"DisplayName" = @%systemroot%\system32\wkssvc.dll,-102
"Name" = Microsoft Windows Network
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanWorkstation\Parameters]
"ServiceDllUnloadOnStop" = 1
"RequireSecuritySignature" = 0
"EnableSecuritySignature" = 1
"EnablePlainTextPassword" = 0
"ServiceDll" = %SystemRoot%\System32\wkssvc.dll -- [2013.08.22 03:46:52 | 000,230,912 | ---- | M] (Microsoft Corporation)
"OtherDomains" =  [binary data]
 
< HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache /S >
"DisplayName" = @%SystemRoot%\System32\dnsapi.dll,-101
"ErrorControl" = 1
"Group" = TDI
"ImagePath" = %SystemRoot%\system32\svchost.exe -k NetworkService -- [2013.08.22 06:30:58 | 000,031,552 | ---- | M] (Microsoft Corporation)
"Start" = 2
"Type" = 32
"Description" = @%SystemRoot%\System32\dnsapi.dll,-102
"DependOnService" = Tdxnsi [binary data]
"ObjectName" = NT AUTHORITY\NetworkService
"ServiceSidType" = 1
"RequiredPrivileges" = SeChangeNotifyPrivilegeSeCreateGlobalPrivilege [binary data]
"FailureActions" = 80 51 01 00 00 00 00 00 00 00 00 00 03 00 00 00 14 00 00 00 01 00 00 00 C0 D4 01 00 01 00 00 00 E0 93 04 00 00 00 00 00 00 00 00 00  [binary data]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\InterfaceSpecificParameters]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Parameters]
"extension" = %SystemRoot%\System32\dnsext.dll -- [2013.08.22 03:49:41 | 000,011,264 | ---- | M] (Microsoft Corporation)
"ServiceDllUnloadOnStop" = 1
"ServiceDll" = %SystemRoot%\System32\dnsrslvr.dll -- [2013.10.08 06:14:47 | 000,186,880 | ---- | M] (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Parameters\Probe]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Parameters\Probe\{492a6ab4-83b6-4914-b73c-79b266708de3}]
"LastProbeTime" = 1384958476
"NetworkPerformsHijacking" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Parameters\Probe\{7f454124-cff3-4fa5-8872-3627aa50d707}]
"LastProbeTime" = 1384521293
"NetworkPerformsHijacking" = 0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Security]
"Security" = 01 00 14 80 10 01 00 00 1C 01 00 00 14 00 00 00 30 00 00 00 02 00 1C 00 01 00 00 00 02 80 14 00 FF 01 0F 00 01 01 00 00 00 00 00 01 00 00 00 00 02 00 E0 00 09 00 00 00 00 02 18 00 9D 01 02 00 01 02 00 00 00 00 00 05 20 00 00 00 21 02 00 00 00 02 18 00 FF 01 0F 00 01 02 00 00 00 00 00 05 20 00 00 00 20 02 00 00 00 02 14 00 FD 01 02 00 01 01 00 00 00 00 00 05 12 00 00 00 00 00 14 00 8D 01 02 00 01 01 00 00 00 00 00 05 04 00 00 00 00 02 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 14 00 00 00 00 02 14 00 8D 00 02 00 01 01 00 00 00 00 00 05 13 00 00 00 00 02 18 00 CD 00 02 00 01 02 00 00 00 00 00 05 20 00 00 00 2C 02 00 00 00 02 28 00 CD 01 02 00 01 06 00 00 00 00 00 05 50 00 00 00 04 C9 44 AF 94 D9 D3 E5 2B E1 B7 1C 17 84 87 13 6E 1A FA 65 00 02 18 00 9D 01 02 00 01 02 00 00 00 00 00 0F 02 00 00 00 01 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00 01 01 00 00 00 00 00 05 12 00 00 00  [Binary data over 200 bytes]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\TriggerInfo]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\TriggerInfo\0]
"Type" = 4
"Action" = 1
"GUID" = 07 9E 56 B7 21 84 E0 4E AD 10 86 91 5A FD AD 09  [binary data]
"Data0" = 5355UDP [binary data]
"DataType0" = 2
 
< HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost >
"RPCSS" = RpcEptMapperRpcSs [binary data]
"LocalService" = nsiWdiServiceHostw32timeEventSy [Binary data over 200 bytes]
"WepHostSvcGroup" = WepHostSvc [binary data] -- [2013.08.22 05:03:29 | 000,020,992 | ---- | M] (Microsoft Corporation)
"defragsvc" = defragsvc [binary data] -- [2013.08.22 03:38:37 | 000,357,888 | ---- | M] (Microsoft Corporation)
"DcomLaunch" = PowerBrokerInfrastructureLSMPlu [Binary data over 200 bytes]
"LocalServiceAndNoImpersonation" = TimeBrokerSSDPSRVupnphostSCardS [Binary data over 200 bytes]
"LocalSystemNetworkRestricted" = WdiSystemHostScDeviceEnumWiaRpc [Binary data over 200 bytes]
"netsvcs" = AeLookupSvcCertPropSvcSCPolicySv [Binary data over 200 bytes]
"WerSvcGroup" = wersvc [binary data] -- [2013.08.22 03:46:37 | 000,082,944 | ---- | M] (Microsoft Corporation)
"WbioSvcGroup" = WbioSrvc [binary data] -- [2013.08.22 03:47:57 | 000,314,368 | ---- | M] (Microsoft Corporation)
"LocalServiceNoNetwork" = DPSPLABFEmpssvcNcdAutoSetupWwanSvc [binary data]
"imgsvc" = StiSvc [binary data]
"termsvcs" = TermService [binary data]
"swprv" = swprv [binary data] -- [2013.08.22 03:27:38 | 000,352,256 | ---- | M] (Microsoft Corporation)
"smphost" = smphost [binary data] -- [2013.08.22 03:53:34 | 000,011,776 | ---- | M] (Microsoft Corporation)
"wsappx" = AppXSvcWSService [binary data]
"ICService" = vmicheartbeatvmicrdv [binary data]
"LocalServiceNetworkRestricted" = DHCPeventlogAudioSrvwscsvcLmHo [Binary data over 200 bytes]
"LocalServicePeerNet" = PNRPSvcp2pimsvcp2psvcPnrpAutoReg [binary data]
"NetworkServiceAndNoImpersonation" = KtmRm [binary data]
"regsvc" = RemoteRegistry [binary data]
"wcssvc" = WcsPlugInService [binary data] -- [2013.08.22 04:37:49 | 000,034,304 | ---- | M] (Microsoft Corporation)
"NetworkServiceNetworkRestricted" = PolicyAgent [binary data]
"AxInstSVGroup" = AxInstSV [binary data] -- [2013.08.22 04:06:00 | 000,088,064 | ---- | M] (Microsoft Corporation)
"AppReadiness" = AppReadiness [binary data] -- [2013.10.04 09:00:53 | 000,409,088 | ---- | M] (Microsoft Corporation)
"NetworkService" = CryptSvcnlasvclanmanworkstation [Binary data over 200 bytes]
"PeerDist" = PeerDistSvc [binary data] -- [2013.08.22 16:02:25 | 001,778,176 | ---- | M] (Microsoft Corporation)
"print" = PrintNotify [binary data]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\defragsvc]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\ICService]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\LocalService]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\LocalServiceAndNoImpersonation]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\LocalServiceNetworkRestricted]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\LocalServiceNoNetwork]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\LocalSystemNetworkRestricted]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\netsvcs]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\NetworkService]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\NetworkServiceRemoteDesktopHyperVAgent]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\NetworkServiceRemoteDesktopPublishing]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\print]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\swprv]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\termsvcs]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\wcssvc]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\WepHostSvcGroup]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\wercplsupport]
 
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\wsappx]
 
< HKEY_LOCAL_MACHINE\SOFTWARE\Joosoft.com >
         

Alt 22.11.2013, 22:58   #8
Sunzi
 
Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



Code:
ATTFilter
< %SystemRoot%\system32\*.tsp >
[2013.08.22 05:02:49 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hidphone.tsp
[2013.08.22 05:04:36 | 000,039,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kmddsp.tsp
[2013.08.22 04:31:04 | 000,085,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\remotesp.tsp
[2013.08.22 04:57:46 | 000,277,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\unimdm.tsp
 
< C:\Windows\system32\*.dll /800 >
[2013.08.22 04:20:58 | 003,793,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\accessibilitycpl.dll
[2013.08.22 05:16:58 | 000,039,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ACCTRES.dll
[2013.08.22 05:04:20 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\acledit.dll
[2013.08.22 04:19:14 | 000,887,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\aclui.dll
[2013.08.22 04:29:37 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\acppage.dll
[2013.08.22 04:58:15 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\acproxy.dll
[2013.08.22 04:15:00 | 000,828,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ActionCenter.dll
[2013.08.22 04:25:31 | 000,523,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ActionCenterCPL.dll
[2013.08.22 04:57:02 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ActionQueue.dll
[2013.08.22 03:20:52 | 000,205,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\activeds.dll
[2013.10.10 12:05:42 | 001,019,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\actxprxy.dll
[2013.08.22 03:53:32 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\adhapi.dll
[2013.08.22 03:36:11 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\adhsvc.dll
[2013.08.22 16:02:20 | 000,444,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AdmTmpl.dll
[2013.08.22 04:44:28 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\adprovider.dll
[2013.08.22 16:02:18 | 000,101,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\adrclient.dll
[2013.08.22 04:56:51 | 000,205,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\adsldp.dll
[2013.08.22 05:02:37 | 000,215,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\adsldpc.dll
[2013.08.22 04:49:56 | 000,079,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\adsmsext.dll
[2013.08.22 04:48:44 | 000,265,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\adsnt.dll
[2013.08.22 07:13:53 | 000,730,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\adtschema.dll
[2013.08.22 06:22:09 | 000,489,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\advapi32.dll
[2013.08.22 05:16:23 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\advapi32res.dll
[2013.08.22 04:43:23 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\advpack.dll
[2013.08.22 04:37:55 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\aecache.dll
[2013.08.22 05:16:00 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\aeevts.dll
[2013.08.22 04:37:11 | 000,438,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\aeinv.dll
[2013.08.22 05:03:23 | 000,181,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\aelupsvc.dll
[2013.08.22 03:00:19 | 000,518,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\aepdu.dll
[2013.08.22 04:41:33 | 000,084,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\aepic.dll
[2013.08.22 03:21:25 | 000,045,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AepRoam.dll
[2013.08.22 03:18:00 | 000,078,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AltTab.dll
[2012.11.16 16:59:40 | 013,008,384 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\system32\amdocl.dll
[2012.06.19 05:09:34 | 000,056,832 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\system32\amdpcom32.dll
[2013.08.22 04:53:29 | 000,065,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\amstream.dll
[2013.08.22 04:04:46 | 000,214,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\apds.dll
[2013.08.22 05:14:10 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-appmodel-identity-l1-1-0.dll
[2013.08.22 05:13:28 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-appmodel-runtime-internal-l1-1-0.dll
[2013.08.22 05:14:12 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-appmodel-runtime-l1-1-0.dll
[2013.08.22 05:14:13 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-appmodel-runtime-l1-1-1.dll
[2013.08.22 05:14:11 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-appmodel-state-l1-1-0.dll
[2013.08.22 05:14:11 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-appmodel-state-l1-1-1.dll
[2013.08.22 05:14:44 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-base-bootconfig-l1-1-0.dll
[2013.08.22 05:14:44 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-base-util-l1-1-0.dll
[2013.08.22 05:17:20 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-apiquery-l1-1-0.dll
[2013.08.22 05:17:18 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-appcompat-l1-1-0.dll
[2013.08.22 05:17:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-appcompat-l1-1-1.dll
[2013.08.22 05:17:35 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-appinit-l1-1-0.dll
[2013.08.22 05:17:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-atoms-l1-1-0.dll
[2013.08.22 05:17:20 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-bem-l1-1-0.dll
[2013.08.22 05:14:13 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-bicltapi-l1-1-0.dll
[2013.08.22 05:14:12 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-bicltapi-l1-1-1.dll
[2013.08.22 05:14:13 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-biplmapi-l1-1-0.dll
[2013.08.22 05:14:13 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-biplmapi-l1-1-1.dll
[2013.08.22 05:14:13 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-biptcltapi-l1-1-0.dll
[2013.08.22 05:14:12 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-biptcltapi-l1-1-1.dll
[2013.08.22 05:14:46 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-calendar-l1-1-0.dll
[2013.08.22 05:14:21 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-com-l1-1-0.dll
[2013.08.22 05:14:23 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-com-l1-1-1.dll
[2013.08.22 05:12:54 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-com-private-l1-1-0.dll
[2013.08.22 05:14:45 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-comm-l1-1-0.dll
[2013.08.22 05:14:48 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
[2013.08.22 05:14:45 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-console-l2-1-0.dll
[2013.08.22 05:17:34 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-crt-l1-1-0.dll
[2013.08.22 05:17:34 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-crt-l2-1-0.dll
[2013.08.22 05:17:22 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
[2013.08.22 05:17:23 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-datetime-l1-1-1.dll
[2013.08.22 05:17:23 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
[2013.08.22 05:17:20 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-debug-l1-1-1.dll
[2013.08.22 05:17:14 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
[2013.08.22 05:17:23 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-delayload-l1-1-1.dll
[2013.08.22 05:17:20 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
[2013.08.22 05:17:23 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-1.dll
[2013.08.22 05:17:23 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
[2013.08.22 05:17:22 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-fibers-l1-1-1.dll
[2013.08.22 05:17:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-fibers-l2-1-0.dll
[2013.08.22 05:17:19 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-fibers-l2-1-1.dll
[2013.08.22 05:17:23 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
[2013.08.22 05:17:23 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll
[2013.08.22 05:17:23 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-file-l1-2-1.dll
[2013.08.22 05:17:37 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll
[2013.08.22 05:17:36 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-file-l2-1-1.dll
[2013.08.22 05:17:36 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-firmware-l1-1-0.dll
[2013.08.22 05:17:23 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
[2013.08.22 05:17:23 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
[2013.08.22 05:17:24 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-heap-l1-2-0.dll
[2013.08.22 05:17:19 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-heap-obsolete-l1-1-0.dll
[2013.08.22 05:17:30 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
[2013.08.22 05:17:30 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-interlocked-l1-2-0.dll
[2013.08.22 05:17:31 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
[2013.08.22 05:17:24 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-io-l1-1-1.dll
[2013.08.22 05:17:20 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-job-l1-1-0.dll
[2013.08.22 05:17:35 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-job-l2-1-0.dll
[2013.08.22 05:17:15 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-kernel32-legacy-l1-1-0.dll
[2013.08.22 05:17:18 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-kernel32-legacy-l1-1-1.dll
[2013.08.22 05:15:42 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-kernel32-private-l1-1-0.dll
[2013.08.22 05:17:27 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
[2013.08.22 05:17:25 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-1.dll
[2013.08.22 05:17:24 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-libraryloader-l1-2-0.dll
[2013.08.22 05:17:20 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-libraryloader-private-l1-1-0.dll
[2013.08.22 05:17:28 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
[2013.08.22 05:17:32 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll
[2013.08.22 05:17:24 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-localization-l1-2-1.dll
[2013.08.22 05:17:35 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-localization-l2-1-0.dll
[2013.08.22 05:17:29 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-localization-obsolete-l1-1-0.dll
[2013.08.22 05:17:27 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-localization-obsolete-l1-2-0.dll
[2013.08.22 05:17:24 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-localization-private-l1-1-0.dll
[2013.08.22 05:17:14 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
[2013.08.22 05:17:25 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
[2013.08.22 05:17:24 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-memory-l1-1-1.dll
[2013.08.22 05:17:28 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-memory-l1-1-2.dll
[2013.08.22 05:17:35 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-multipleproviderrouter-l1-1-0.dll
[2013.08.22 05:17:32 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
[2013.08.22 05:17:25 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-namedpipe-l1-2-0.dll
[2013.08.22 05:17:35 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-namespace-l1-1-0.dll
[2013.08.22 05:17:35 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-normalization-l1-1-0.dll
[2013.08.22 05:17:35 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-path-l1-1-0.dll
[2013.08.22 05:17:19 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-privateprofile-l1-1-0.dll
[2013.08.22 05:17:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
[2013.08.22 05:17:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-processenvironment-l1-2-0.dll
[2013.08.22 05:17:15 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-processsecurity-l1-1-0.dll
[2013.08.22 05:17:25 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
[2013.08.22 05:17:29 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
[2013.08.22 05:17:31 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-2.dll
[2013.08.22 05:17:36 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-processtopology-l1-1-0.dll
[2013.08.22 05:17:36 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-processtopology-l1-2-0.dll
[2013.08.22 05:17:36 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-processtopology-obsolete-l1-1-0.dll
[2013.08.22 05:17:35 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-processtopology-private-l1-1-0.dll
[2013.08.22 05:17:26 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
[2013.08.22 05:17:35 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-psapi-ansi-l1-1-0.dll
[2013.08.22 05:17:36 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-psapi-l1-1-0.dll
[2013.08.22 05:17:36 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-psapi-obsolete-l1-1-0.dll
[2013.08.22 05:14:11 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-psm-app-l1-1-0.dll
[2013.08.22 05:14:11 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-psm-appnotify-l1-1-0.dll
[2013.08.22 05:14:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-psm-info-l1-1-0.dll
[2013.08.22 05:14:45 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-psm-key-l1-1-0.dll
[2013.08.22 05:13:29 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-psm-plm-l1-1-0.dll
[2013.08.22 05:13:28 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-psm-plm-l1-1-1.dll
[2013.08.22 05:17:14 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-quirks-l1-1-0.dll
[2013.08.22 05:17:29 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-realtime-l1-1-0.dll
[2013.08.22 05:17:13 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-registry-l1-1-0.dll
[2013.08.22 05:14:44 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-registry-l2-1-0.dll
[2013.08.22 05:14:44 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-registry-private-l1-1-0.dll
[2013.08.22 05:17:35 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-registryuserspecific-l1-1-0.dll
[2013.08.22 05:17:32 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
[2013.08.22 05:17:38 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-2-0.dll
[2013.08.22 05:17:36 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-shlwapi-legacy-l1-1-0.dll
[2013.08.22 05:17:36 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-shlwapi-obsolete-l1-1-0.dll
[2013.08.22 05:14:05 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-shutdown-l1-1-0.dll
[2013.08.22 05:17:35 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-sidebyside-l1-1-0.dll
[2013.08.22 05:17:14 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
[2013.08.22 05:17:36 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-string-l2-1-0.dll
[2013.08.22 05:17:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-string-obsolete-l1-1-0.dll
[2013.08.22 05:17:36 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-stringansi-l1-1-0.dll
[2013.08.22 05:17:34 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-stringloader-l1-1-0.dll
[2013.08.22 05:17:33 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-stringloader-l1-1-1.dll
[2013.08.22 05:17:34 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
[2013.08.22 05:17:34 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll
[2013.08.22 05:17:34 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
[2013.08.22 05:17:34 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-sysinfo-l1-2-0.dll
[2013.08.22 05:17:34 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-sysinfo-l1-2-1.dll
[2013.08.22 05:17:35 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-systemtopology-l1-1-0.dll
[2013.08.22 05:17:33 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
[2013.08.22 05:17:34 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-threadpool-l1-2-0.dll
[2013.08.22 05:17:33 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-threadpool-legacy-l1-1-0.dll
[2013.08.22 05:17:34 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-threadpool-private-l1-1-0.dll
[2013.08.22 05:17:33 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll
[2013.08.22 05:17:33 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-timezone-private-l1-1-0.dll
[2013.08.22 05:17:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-toolhelp-l1-1-0.dll
[2013.08.22 05:17:35 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-url-l1-1-0.dll
[2013.08.22 05:17:33 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
[2013.08.22 05:17:36 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-version-l1-1-0.dll
[2013.08.22 05:17:38 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-version-private-l1-1-0.dll
[2013.08.22 05:17:35 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-versionansi-l1-1-0.dll
[2013.08.22 05:17:35 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-windowserrorreporting-l1-1-0.dll
[2013.08.22 05:14:21 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-winrt-error-l1-1-0.dll
[2013.08.22 05:14:21 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-winrt-error-l1-1-1.dll
[2013.08.22 05:14:21 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-winrt-errorprivate-l1-1-0.dll
[2013.08.22 05:14:21 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-winrt-errorprivate-l1-1-1.dll
[2013.08.22 05:14:21 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-winrt-l1-1-0.dll
[2013.08.22 05:12:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-winrt-propertysetprivate-l1-1-0.dll
[2013.08.22 05:11:01 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-winrt-registration-l1-1-0.dll
[2013.08.22 05:14:21 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-winrt-robuffer-l1-1-0.dll
[2013.08.22 05:14:21 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-winrt-roparameterizediid-l1-1-0.dll
[2013.08.22 05:14:21 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-winrt-string-l1-1-0.dll
[2013.08.22 05:17:33 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-wow64-l1-1-0.dll
[2013.08.22 05:17:33 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
[2013.08.22 05:17:33 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-xstate-l1-1-1.dll
[2013.08.22 05:17:38 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll
[2013.08.22 05:14:45 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-devices-config-l1-1-0.dll
[2013.08.22 05:14:45 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-devices-config-l1-1-1.dll
[2013.08.22 05:17:38 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-devices-query-l1-1-0.dll
[2013.08.22 05:17:38 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-devices-query-l1-1-1.dll
[2013.08.22 05:17:37 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-devices-swdevice-l1-1-0.dll
[2013.08.22 05:17:37 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-devices-swdevice-l1-1-1.dll
[2013.08.22 05:17:19 | 000,006,656 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2013.08.22 05:14:49 | 000,007,168 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-1.dll
[2013.08.22 05:14:14 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2013.08.22 05:14:48 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-1.dll
[2013.08.22 05:14:48 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-advapi32-l3-1-0.dll
[2013.08.22 05:14:48 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-advapi32-l4-1-0.dll
[2013.08.22 05:14:49 | 000,020,992 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-kernel32-l1-1-0.dll
[2013.08.22 05:14:49 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-kernel32-l2-1-0.dll
[2013.08.22 05:14:49 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2013.08.22 05:14:21 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
[2013.08.22 05:14:43 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-1.dll
[2013.08.22 05:14:20 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
[2013.08.22 05:17:38 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2013.08.22 05:14:43 | 000,006,656 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-1.dll
[2013.08.22 05:14:21 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2013.08.22 05:14:43 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-1.dll
[2013.08.22 05:14:48 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
[2013.08.22 05:14:48 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-1.dll
[2013.08.22 05:14:48 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
[2013.08.22 05:14:48 | 000,006,656 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-dx-d3dkmt-l1-1-0.dll
[2013.08.22 05:17:18 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-eventing-classicprovider-l1-1-0.dll
[2013.08.22 05:17:19 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-eventing-consumer-l1-1-0.dll
[2013.08.22 05:17:19 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-eventing-controller-l1-1-0.dll
[2013.08.22 05:17:18 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-eventing-legacy-l1-1-0.dll
[2013.08.22 05:17:19 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-eventing-obsolete-l1-1-0.dll
[2013.08.22 05:17:36 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
[2013.08.22 05:17:37 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-eventlog-legacy-l1-1-0.dll
[2013.08.22 05:14:43 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-eventlog-private-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-gdi-dpiinfo-l1-1-0.dll
[2013.08.22 05:13:55 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-http-time-l1-1-0.dll
[2013.08.22 05:14:45 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-input-ie-interactioncontext-l1-1-0.dll
[2013.08.22 05:14:48 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-mm-joystick-l1-1-0.dll
[2013.08.22 05:14:48 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-mm-mci-l1-1-0.dll
[2013.08.22 05:14:22 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-mm-misc-l1-1-0.dll
[2013.08.22 05:14:21 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-mm-misc-l1-1-1.dll
[2013.08.22 05:14:21 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-mm-misc-l2-1-0.dll
[2013.08.22 05:14:48 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-mm-mme-l1-1-0.dll
[2013.08.22 05:14:48 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-mm-playsound-l1-1-0.dll
[2013.08.22 05:14:48 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-mm-time-l1-1-0.dll
[2013.08.22 05:13:56 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-net-isolation-l1-1-0.dll
[2013.08.22 05:14:01 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-net-isolation-l1-1-1.dll
[2013.08.22 05:14:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-ntuser-ie-message-l1-1-0.dll
[2013.08.22 05:14:15 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-ntuser-ie-window-l1-1-0.dll
[2013.08.22 05:14:48 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-ntuser-ie-wmpointer-l1-1-0.dll
[2013.08.22 05:17:38 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-oobe-notification-l1-1-0.dll
[2013.08.22 05:14:48 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-perf-legacy-l1-1-0.dll
[2013.08.22 05:17:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-power-base-l1-1-0.dll
[2013.08.22 05:17:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-power-setting-l1-1-0.dll
[2013.08.22 05:14:45 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-ro-typeresolution-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-rtcore-navigation-l1-1-0.dll
[2013.08.22 05:14:17 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-rtcore-ntuser-clipboard-l1-1-0.dll
[2013.08.22 05:14:16 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-rtcore-ntuser-private-l1-1-0.dll
[2013.08.22 05:14:17 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-rtcore-ntuser-synch-l1-1-0.dll
[2013.08.22 05:14:17 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-rtcore-ntuser-window-l1-1-0.dll
[2013.08.22 05:14:17 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-rtcore-ntuser-windowstation-l1-1-0.dll
[2013.08.22 05:14:19 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-rtcore-ntuser-winevent-l1-1-0.dll
[2013.08.22 05:14:17 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-rtcore-ntuser-wmpointer-l1-1-0.dll
[2013.08.22 05:14:16 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-rtcore-ole32-clipboard-l1-1-0.dll
[2013.08.22 05:14:16 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-rtcore-session-l1-1-0.dll
[2013.08.22 05:14:44 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-activedirectoryclient-l1-1-0.dll
[2013.08.22 05:17:14 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-appcontainer-l1-1-0.dll
[2013.08.22 05:14:05 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-audit-l1-1-0.dll
[2013.08.22 05:14:06 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-audit-l1-1-1.dll
[2013.08.22 05:13:17 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
[2013.08.22 05:14:22 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-base-l1-2-0.dll
[2013.08.22 05:13:33 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-base-private-l1-1-0.dll
[2013.08.22 05:13:33 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-base-private-l1-1-1.dll
[2013.08.22 05:14:05 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-credentials-l1-1-0.dll
[2013.08.22 05:14:05 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-credentials-l2-1-0.dll
[2013.08.22 05:14:05 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-cryptoapi-l1-1-0.dll
[2013.08.22 05:14:39 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-grouppolicy-l1-1-0.dll
[2013.08.22 05:13:55 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-logon-l1-1-0.dll
[2013.08.22 05:13:28 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-lsalookup-l1-1-0.dll
[2013.08.22 05:14:05 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-lsalookup-l1-1-1.dll
[2013.08.22 05:14:01 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-lsalookup-l2-1-0.dll
[2013.08.22 05:14:02 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-lsalookup-l2-1-1.dll
[2013.08.22 05:14:43 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-lsapolicy-l1-1-0.dll
[2013.08.22 05:14:03 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-provider-l1-1-0.dll
[2013.08.22 05:14:44 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-sddl-ansi-l1-1-0.dll
[2013.08.22 05:14:05 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-sddl-l1-1-0.dll
[2013.08.22 05:14:05 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-sddlparsecond-l1-1-0.dll
[2013.08.22 05:14:44 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-systemfunctions-l1-1-0.dll
[2013.08.22 05:14:03 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-trustee-l1-1-0.dll
[2013.08.22 05:14:03 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-security-trustee-l1-1-1.dll
[2013.08.22 05:13:15 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-service-core-l1-1-0.dll
[2013.08.22 05:13:33 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-service-core-l1-1-1.dll
[2013.08.22 05:13:33 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-service-management-l1-1-0.dll
[2013.08.22 05:13:32 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-service-management-l2-1-0.dll
[2013.08.22 05:13:20 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-service-private-l1-1-0.dll
[2013.08.22 05:13:22 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-service-winsvc-l1-1-0.dll
[2013.08.22 05:13:33 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-service-winsvc-l1-2-0.dll
[2013.08.22 05:14:20 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-shcore-comhelpers-l1-1-0.dll
[2013.08.22 05:14:20 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-shcore-obsolete-l1-1-0.dll
[2013.08.22 05:14:20 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-shcore-registry-l1-1-1.dll
[2013.08.22 05:14:20 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-shcore-scaling-l1-1-0.dll
[2013.08.22 05:14:20 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-shcore-scaling-l1-1-1.dll
[2013.08.22 05:14:20 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-shcore-stream-l1-1-0.dll
[2013.08.22 05:14:20 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-shcore-stream-winrt-l1-1-0.dll
[2013.08.22 05:14:20 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-shcore-sysinfo-l1-1-0.dll
[2013.08.22 05:14:20 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-shcore-thread-l1-1-0.dll
[2013.08.22 05:14:20 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-shcore-unicodeansi-l1-1-0.dll
[2013.08.22 05:14:41 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-shell-shellcom-l1-1-0.dll
[2013.08.22 05:14:41 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\api-ms-win-shell-shellfolders-l1-1-0.dll
[2013.08.22 06:21:53 | 000,070,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\apisetschema.dll
[2013.10.22 05:04:03 | 000,618,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\apphelp.dll
[2013.08.22 04:54:16 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Apphlpdm.dll
[2013.08.22 06:29:25 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\appidapi.dll
[2013.08.22 16:02:20 | 000,225,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AppIdPolicyEngineApi.dll
[2013.08.22 04:37:42 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\appidsvc.dll
[2013.08.22 05:05:55 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\appinfo.dll
[2013.08.22 16:02:29 | 000,151,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\appmgmts.dll
[2013.08.22 16:02:18 | 000,366,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\appmgr.dll
[2013.10.04 09:00:53 | 000,409,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AppReadiness.dll
[2013.08.22 04:19:50 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\apprepapi.dll
[2013.08.22 04:09:16 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\apprepsync.dll
[2013.08.22 03:52:05 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\appsruprov.dll
[2013.10.10 12:21:32 | 000,139,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AppxAllUserStore.dll
[2013.08.22 03:45:56 | 000,369,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AppxApplicabilityEngine.dll
[2013.09.19 05:26:47 | 000,198,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AppXDeploymentClient.dll
[2013.10.10 11:19:48 | 000,734,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AppXDeploymentExtensions.dll
[2013.10.10 11:35:11 | 001,128,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AppXDeploymentServer.dll
[2013.08.22 03:17:08 | 000,405,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AppxPackaging.dll
[2013.08.22 03:47:39 | 000,095,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AppxSip.dll
[2013.08.22 03:48:29 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AppxStreamingDataSourcePS.dll
[2013.08.22 03:25:44 | 000,040,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AppxSysprep.dll
[2013.08.22 05:16:45 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\asferror.dll
[2013.08.10 01:56:55 | 000,028,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\aspnet_counters.dll
[2013.08.22 04:54:40 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\asycfilt.dll
[2013.04.25 23:29:40 | 000,929,840 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\system32\aticfx32.dll
[2013.04.25 23:29:46 | 006,855,960 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\system32\atidxx32.dll
[2012.06.19 05:09:34 | 000,056,832 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\system32\atimpc32.dll
[2013.04.25 23:29:58 | 000,089,336 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\system32\atiu9pag.dll
[2013.04.25 23:30:04 | 006,283,768 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\system32\atiumdag.dll
[2013.04.25 23:30:10 | 004,782,528 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\system32\atiumdva.dll
[2013.04.25 23:30:22 | 000,115,080 | ---- | M] (Advanced Micro Devices, Inc. ) -- C:\Windows\system32\atiuxpag.dll
[2013.08.22 04:54:34 | 000,072,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\atl.dll
[2012.07.26 18:08:06 | 000,153,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\atl110.dll
[2013.08.22 05:12:28 | 000,297,984 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\system32\atmfd.dll
[2013.08.22 05:04:23 | 000,036,352 | ---- | M] (Adobe Systems) -- C:\Windows\system32\atmlib.dll
[2013.08.22 04:24:19 | 000,228,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\audiodev.dll
[2013.08.22 03:37:53 | 000,173,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AudioEndpointBuilder.dll
[2013.08.22 06:19:12 | 000,406,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AudioEng.dll
[2013.08.22 06:19:12 | 000,319,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AUDIOKSE.dll
[2013.09.17 07:31:45 | 000,326,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AudioSes.dll
[2013.08.22 03:27:49 | 000,622,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\audiosrv.dll
[2013.08.22 04:39:53 | 000,155,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\auditcse.dll
[2013.08.22 16:02:25 | 000,218,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AuditNativeSnapIn.dll
[2013.08.22 16:02:25 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AuditPolicyGPInterop.dll
[2013.08.22 16:02:25 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\auditpolmsg.dll
[2013.08.22 03:04:57 | 000,100,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AuthBroker.dll
[2013.08.22 04:12:30 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AuthExt.dll
[2013.08.22 03:42:25 | 000,359,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\authfwcfg.dll
[2013.08.22 04:39:08 | 000,298,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AuthFWGP.dll
[2013.08.22 06:24:56 | 005,120,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AuthFWSnapin.dll
[2013.08.22 06:24:55 | 000,114,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AuthFWWizFwk.dll
[2013.08.22 03:47:23 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AuthHostProxy.dll
[2013.10.22 02:47:12 | 002,295,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\authui.dll
[2013.08.22 03:53:21 | 000,176,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\authz.dll
[2013.08.22 04:27:09 | 000,135,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\autoplay.dll
[2013.08.22 05:06:45 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AutoWorkplaceN.dll
[2013.06.18 13:21:03 | 000,069,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\avicap.dll
[2013.08.22 04:59:58 | 000,065,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\avicap32.dll
[2013.08.22 04:53:46 | 000,089,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\avifil32.dll
[2013.06.18 13:21:03 | 000,109,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\avifile.dll
[2013.08.22 06:24:59 | 000,030,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\avrt.dll
[2013.08.22 04:06:00 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AxInstSv.dll
[2013.08.22 04:29:32 | 000,769,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\azroles.dll
[2013.08.22 04:21:04 | 000,314,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\azroleui.dll
[2013.08.22 04:58:10 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\AzSqlExt.dll
[2013.08.22 06:29:02 | 000,166,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\basecsp.dll
[2013.08.22 07:13:53 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\basesrv.dll
[2013.08.22 05:05:53 | 002,012,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\batmeter.dll
[2013.08.22 07:13:53 | 000,079,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bcd.dll
[2013.08.22 03:46:55 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bcdprov.dll
[2013.08.22 03:46:51 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bcdsrv.dll
[2013.08.22 03:52:09 | 000,276,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BCP47Langs.dll
[2013.08.22 06:29:26 | 000,125,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bcrypt.dll
[2013.08.22 07:13:51 | 000,330,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bcryptprimitives.dll
[2013.08.22 16:02:27 | 000,082,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BdeHdCfgLib.dll
[2013.08.22 05:06:00 | 000,038,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bderepair.dll
[2013.08.22 03:38:31 | 000,297,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bdesvc.dll
[2013.08.22 16:02:19 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BdeSysprep.dll
[2013.08.22 04:52:20 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bdeui.dll
[2013.10.12 22:14:23 | 000,549,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BFE.DLL
[2013.08.22 05:12:13 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bi.dll
[2013.08.22 04:46:55 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bidispl.dll
[2013.08.22 03:18:44 | 000,260,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BioCredProv.dll
[2013.08.22 03:38:31 | 000,202,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bisrv.dll
[2013.08.22 04:56:08 | 000,042,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bitsigd.dll
[2013.08.22 03:53:57 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bitsperf.dll
[2013.08.22 04:58:22 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bitsprx2.dll
[2013.08.22 05:01:03 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bitsprx3.dll
[2013.08.22 05:00:58 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bitsprx4.dll
[2013.08.22 05:01:03 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bitsprx5.dll
[2013.08.22 05:01:00 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bitsprx6.dll
[2013.08.22 05:01:01 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bitsprx7.dll
[2013.08.22 03:45:56 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\biwinrt.dll
[2013.08.22 04:46:48 | 000,601,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\blackbox.dll
[2013.08.22 05:16:07 | 000,077,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BlbEvents.dll
[2013.08.22 05:16:07 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\blbres.dll
[2013.08.22 05:05:21 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\blb_ps.dll
[2013.08.22 03:41:23 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BluetoothApis.dll
[2013.08.22 03:40:34 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BootMenuUX.dll
[2013.08.22 05:16:00 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bootstr.dll
[2013.08.22 03:17:44 | 003,278,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bootux.dll
[2013.08.22 06:25:36 | 000,023,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BOOTVID.DLL
[2013.08.22 04:24:36 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\brdgcfg.dll
[2013.08.22 05:16:58 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bridgeres.dll
[2013.08.22 03:53:10 | 000,087,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BrokerLib.dll
[2013.08.22 03:53:19 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\browcli.dll
[2013.08.22 03:52:33 | 000,105,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\browser.dll
[2013.08.22 05:06:48 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\browseui.dll
[2013.08.22 04:32:56 | 000,087,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bthci.dll
[2013.08.22 04:18:47 | 000,248,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BthHFSrv.dll
[2013.08.22 04:38:48 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BthMtpContextHandler.dll
[2013.08.22 04:54:27 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bthpanapi.dll
[2013.08.22 04:33:41 | 000,073,216 | ---- | M] () -- C:\Windows\system32\BthpanContextHandler.dll
[2013.08.22 04:47:51 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BthRadioMedia.dll
[2013.08.22 03:43:42 | 000,072,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\bthserv.dll
[2013.08.22 04:47:17 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\BthSQM.dll
[2013.08.22 04:30:44 | 000,070,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\btpanui.dll
[2013.08.22 04:32:26 | 000,046,080 | ---- | M] () -- C:\Windows\system32\BWContextHandler.dll
[2013.08.22 06:31:41 | 000,115,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cabinet.dll
[2013.08.22 04:36:30 | 000,132,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cabview.dll
[2013.08.22 03:52:50 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CallButtons.dll
[2013.08.22 03:47:26 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CallButtons.ProxyStub.dll
[2013.08.22 04:44:32 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\capiprovider.dll
[2013.08.22 05:00:53 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\capisp.dll
[2013.08.22 03:13:00 | 000,368,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\catsrv.dll
[2013.08.22 03:47:21 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\catsrvps.dll
[2013.08.22 03:11:11 | 000,367,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\catsrvut.dll
[2013.08.22 04:53:20 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cca.dll
[2013.08.22 06:22:26 | 000,178,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cdd.dll
[2013.08.22 04:05:40 | 000,808,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cdosys.dll
[2013.08.22 03:29:13 | 000,843,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\certca.dll
[2013.08.22 04:31:24 | 000,317,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\certcli.dll
[2013.08.22 03:40:13 | 000,337,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\certCredProvider.dll
[2013.08.22 04:52:28 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\certenc.dll
[2013.08.22 03:31:37 | 002,097,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CertEnroll.dll
[2013.08.22 04:03:45 | 000,278,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CertEnrollUI.dll
[2013.08.22 04:10:46 | 001,954,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\certmgr.dll
[2013.08.22 04:56:40 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CertPolEng.dll
[2013.08.22 04:41:28 | 000,128,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\certprop.dll
[2013.08.22 04:53:25 | 000,217,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cewmdm.dll
[2013.08.22 04:38:29 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cfgbkend.dll
[2013.08.22 06:31:40 | 000,237,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cfgmgr32.dll
[2013.08.22 03:47:02 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cfmifs.dll
[2013.08.22 03:46:55 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cfmifsproxy.dll
[2013.08.22 04:58:08 | 000,102,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\chartv.dll
[2013.08.22 04:47:04 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\chkwudrv.dll
[2013.08.22 04:52:30 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CHxReadingStringIME.dll
[2013.08.22 06:31:41 | 000,489,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ci.dll
[2013.08.22 04:58:05 | 000,157,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cic.dll
[2013.08.22 05:03:07 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CIRCoInst.dll
[2013.08.22 05:05:37 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\clb.dll
[2013.08.22 06:21:42 | 000,508,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\clbcatq.dll
[2013.08.22 05:12:23 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\clfsw32.dll
[2013.08.22 05:02:36 | 000,077,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cliconfg.dll
[2013.08.22 05:06:30 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\clrhost.dll
[2013.08.22 04:24:21 | 000,312,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\clusapi.dll
[2013.08.22 04:45:56 | 000,035,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cmcfg32.dll
[2013.08.22 04:55:49 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cmdext.dll
[2013.08.22 04:26:44 | 000,480,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cmdial32.dll
[2013.08.22 03:41:47 | 000,075,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cmifw.dll
[2013.08.22 07:13:51 | 000,189,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cmipnpinstall.dll
[2013.08.22 04:37:58 | 000,035,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cmlua.dll
[2013.08.22 05:05:54 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cmpbk32.dll
[2013.08.22 04:37:08 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cmstplua.dll
[2013.08.22 04:55:47 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cmutil.dll
[2013.08.22 03:47:23 | 000,100,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cngcredui.dll
[2013.08.22 04:44:42 | 000,055,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cngprovider.dll
[2013.08.22 05:05:59 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cnvfat.dll
[2013.08.22 04:56:49 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cofiredm.dll
[2013.08.22 03:45:30 | 000,065,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\colbact.dll
[2013.08.22 06:24:59 | 000,174,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\COLORCNV.DLL
[2013.08.22 04:27:51 | 000,604,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\colorui.dll
[2013.08.22 06:21:43 | 001,369,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\combase.dll
[2013.08.22 05:05:20 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\comcat.dll
[2013.08.22 05:07:58 | 000,535,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\comctl32.dll
[2013.10.19 05:03:41 | 000,531,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\comdlg32.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\COMMDLG.DLL
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\compobj.dll
[2013.08.22 06:19:11 | 000,018,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CompPkgSup.dll
[2013.08.22 04:55:56 | 000,289,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\compstui.dll
[2013.08.22 03:45:47 | 000,094,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\comrepl.dll
[2013.08.22 05:14:42 | 001,297,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\comres.dll
[2013.08.22 04:36:34 | 000,217,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\comsnap.dll
[2013.08.22 03:26:02 | 001,221,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\comsvcs.dll
[2013.08.22 04:29:37 | 000,601,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\comuid.dll
[2013.08.22 03:21:49 | 000,052,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ConfigureExpandedStorage.dll
[2013.08.22 04:10:25 | 001,287,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\connect.dll
[2013.08.22 04:34:38 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ConnectedAccountState.dll
[2013.08.22 03:20:06 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ConsentUX.dll
[2013.08.22 04:50:54 | 000,074,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\console.dll
[2013.08.22 05:16:40 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CoreMmRes.dll
[2013.08.22 04:37:02 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\correngine.dll
[2013.08.22 04:04:25 | 000,680,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CPFilters.dll
[2013.08.22 03:18:10 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CredentialMigrationHandler.dll
[2013.08.22 03:52:39 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\credssp.dll
[2013.08.22 04:26:03 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\credui.dll
[2013.06.18 13:38:24 | 000,149,019 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\crtdll.dll
[2013.10.16 14:54:17 | 001,581,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\crypt32.dll
[2013.08.22 07:13:54 | 000,030,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cryptbase.dll
[2013.08.22 03:43:04 | 000,106,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cryptcatsvc.dll
[2013.08.22 05:03:10 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cryptdlg.dll
[2013.08.22 06:29:26 | 000,071,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cryptdll.dll
[2013.08.22 04:32:52 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cryptext.dll
[2013.08.22 03:54:48 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cryptnet.dll
[2013.08.22 03:47:23 | 000,153,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CryptoWinRT.dll
[2013.08.22 06:29:26 | 000,095,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cryptsp.dll
[2013.08.22 03:52:30 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cryptsvc.dll
[2013.08.22 03:51:02 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\crypttpmeksvc.dll
[2013.08.22 03:12:09 | 000,557,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cryptui.dll
[2013.08.22 04:22:05 | 000,362,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cryptuiwizard.dll
[2013.08.22 06:29:26 | 000,098,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cryptxml.dll
[2013.08.22 03:52:25 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cscapi.dll
[2013.08.22 05:06:23 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cscdll.dll
[2013.08.22 16:02:25 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CscMig.dll
[2013.08.22 16:02:27 | 000,195,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cscobj.dll
[2013.08.22 16:02:26 | 000,642,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cscsvc.dll
[2013.08.22 16:02:23 | 000,552,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cscui.dll
[2013.08.22 07:13:53 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\csrsrv.dll
[2013.08.22 03:52:57 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\CSystemEventsBrokerClient.dll
[2013.06.18 13:38:24 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ctl3d32.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ctl3dv2.dll
[2012.07.25 19:31:56 | 000,021,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\cuzzapi.dll
[2013.08.22 03:54:33 | 000,224,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\C_G18030.DLL
[2013.08.22 03:54:32 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\C_IS2022.DLL
[2013.08.22 03:55:42 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\C_ISCII.DLL
[2013.09.10 05:34:13 | 003,934,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d2d1.dll
[2012.07.25 19:25:28 | 000,277,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d2d1debug1.dll
[2013.08.22 03:41:59 | 001,055,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d10.dll
[2013.08.22 03:46:09 | 000,285,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d10core.dll
[2013.10.05 13:05:35 | 000,578,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d10level9.dll
[2012.07.25 19:25:28 | 000,365,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d10ref.dll
[2012.07.25 19:25:28 | 000,461,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d10sdklayers.dll
[2013.08.22 03:53:28 | 002,071,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d10warp.dll
[2013.08.22 03:44:43 | 000,151,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d10_1.dll
[2013.08.22 03:46:16 | 000,318,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d10_1core.dll
[2013.10.03 13:53:53 | 001,765,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d11.dll
[2012.07.25 19:25:28 | 000,609,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d11ref.dll
[2012.07.25 19:25:28 | 000,590,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d11sdklayers.dll
[2012.07.25 19:25:28 | 000,713,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d11_1sdklayers.dll
[2013.08.22 04:57:54 | 001,007,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d8.dll
[2013.08.22 05:06:17 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d8thk.dll
[2013.09.14 13:39:23 | 001,799,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3d9.dll
[2013.08.22 03:44:35 | 003,452,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\D3DCompiler_47.dll
[2013.08.22 04:59:05 | 000,378,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3dim.dll
[2013.08.22 03:39:46 | 000,867,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3dim700.dll
[2013.08.22 05:06:33 | 000,690,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3dramp.dll
[2012.07.25 19:25:28 | 000,383,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3dref9.dll
[2013.08.22 04:54:38 | 000,055,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\d3dxof.dll
[2013.08.22 03:50:25 | 000,077,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dab.dll
[2013.08.22 03:55:32 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dabapi.dll
[2013.08.22 04:27:18 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DAConn.dll
[2013.09.17 04:47:31 | 000,080,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dafBth.dll
[2013.08.22 03:06:17 | 000,199,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DafPrintProvider.dll
[2013.08.22 03:35:40 | 000,113,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dafupnp.dll
[2013.08.22 04:17:04 | 000,094,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dafWCN.dll
[2013.09.12 08:17:25 | 000,152,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dafWfdProvider.dll
[2013.08.22 03:26:47 | 000,148,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DAFWSD.dll
[2013.08.22 04:38:39 | 000,101,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DAMM.dll
[2013.08.22 03:20:11 | 000,270,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DaOtpCredentialProvider.dll
[2013.08.22 03:38:43 | 000,306,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\das.dll
[2013.08.22 03:21:43 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dataclen.dll
[2013.08.22 03:21:50 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\datusage.dll
[2013.08.22 04:45:52 | 000,087,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\davclnt.dll
[2013.08.22 05:06:30 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\davhlpr.dll
[2013.08.22 04:46:28 | 002,872,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dbgeng.dll
[2013.08.22 03:46:23 | 001,237,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dbghelp.dll
[2013.08.22 05:04:12 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dbnetlib.dll
[2013.08.22 05:04:56 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dbnmpntw.dll
[2013.08.22 05:06:04 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dciman32.dll
[2013.08.22 06:24:54 | 000,235,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dcomp.dll
[2013.08.22 04:37:36 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DDACLSys.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DDEML.DLL
[2013.08.22 05:03:22 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DDOIProxy.dll
[2013.08.22 04:59:21 | 015,794,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DDORes.dll
[2013.08.22 16:02:30 | 000,166,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ddpchunk.dll
[2013.08.22 16:02:20 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ddptrace.dll
[2013.08.22 16:02:20 | 000,253,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ddputils.dll
[2013.08.22 16:02:20 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ddp_ps.dll
[2013.08.22 03:33:31 | 000,527,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ddraw.dll
[2013.08.22 03:46:37 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ddrawex.dll
[2013.08.22 04:40:02 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DefaultDeviceManager.dll
[2013.08.22 04:38:38 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DefaultPrinterProvider.dll
[2013.08.22 03:46:43 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\defragproxy.dll
[2013.08.22 05:14:43 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\defragres.dll
[2013.08.22 03:38:37 | 000,357,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\defragsvc.dll
[2013.08.22 03:47:06 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\delegatorprovider.dll
[2013.08.22 04:40:37 | 000,046,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\deskadp.dll
[2013.08.22 04:39:53 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\deskmon.dll
[2013.08.22 03:50:18 | 000,086,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DevDispItemProvider.dll
[2013.08.22 06:19:12 | 000,074,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\devenum.dll
[2013.08.22 03:44:10 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\deviceaccess.dll
[2013.08.22 03:52:58 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\deviceassociation.dll
[2013.08.22 04:19:03 | 000,482,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DeviceCenter.dll
[2013.08.22 04:53:36 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DeviceDisplayStatusManager.dll
[2013.08.22 04:29:13 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DeviceDriverRetrievalClient.dll
[2013.08.22 03:17:05 | 000,091,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DeviceElementSource.dll
[2013.08.22 04:16:58 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DeviceMetadataRetrievalClient.dll
[2013.08.22 04:12:10 | 000,457,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DevicePairing.dll
[2013.08.22 04:25:28 | 000,194,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DevicePairingFolder.dll
[2013.08.22 04:53:11 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DevicePairingProxy.dll
[2013.08.22 04:09:06 | 000,158,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\deviceregistration.dll
[2013.08.22 03:31:45 | 000,165,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DeviceSetupManager.dll
[2013.08.22 03:41:38 | 000,089,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DeviceSetupManagerAPI.dll
[2013.08.22 04:37:02 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DeviceSetupStatusProvider.dll
[2013.08.22 05:14:40 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DeviceUxRes.dll
[2013.08.22 04:13:25 | 000,313,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\devinv.dll
[2013.08.22 04:25:44 | 000,452,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\devmgr.dll
[2013.08.22 06:31:41 | 000,123,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\devobj.dll
[2013.08.22 04:46:44 | 000,095,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DevPropMgr.dll
[2013.08.22 03:53:47 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\devrtl.dll
[2013.08.22 16:02:29 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dfdts.dll
[2013.08.22 03:54:42 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dfscli.dll
[2013.08.22 04:26:05 | 001,220,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dfshim.dll
[2013.08.22 04:37:00 | 000,055,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DfsShlEx.dll
[2013.08.22 04:55:27 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dhcpcmonitor.dll
[2013.08.22 03:55:17 | 000,285,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dhcpcore.dll
[2013.08.22 03:55:13 | 000,229,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dhcpcore6.dll
[2013.08.22 03:55:09 | 000,062,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dhcpcsvc.dll
[2013.08.22 03:55:30 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dhcpcsvc6.dll
[2013.08.22 03:37:30 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DHCPQEC.DLL
[2013.08.22 04:59:46 | 000,141,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dhcpsapi.dll
[2013.08.22 04:18:56 | 000,996,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DiagCpl.dll
[2013.08.22 04:29:26 | 001,041,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\diagperf.dll
[2013.08.22 04:33:07 | 000,347,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\difxapi.dll
[2013.08.22 03:46:39 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dimsjob.dll
[2013.08.22 05:01:33 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dimsroam.dll
[2013.08.22 05:00:08 | 000,130,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dinput.dll
[2013.08.22 05:00:49 | 000,162,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dinput8.dll
[2013.08.22 04:48:36 | 000,159,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\discan.dll
[2013.08.22 04:50:54 | 001,502,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\diskcopy.dll
[2013.08.22 03:42:01 | 000,440,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DismApi.dll
[2013.08.22 04:44:12 | 000,052,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dispci.dll
[2013.08.22 05:02:08 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dispex.dll
[2013.10.11 15:22:11 | 001,816,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Display.dll
[2013.08.22 04:24:57 | 000,406,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dlnashext.dll
[2013.08.22 04:55:01 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmband.dll
[2013.08.22 04:54:34 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmcompos.dll
[2013.08.22 04:32:34 | 000,410,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmdlgs.dll
[2013.08.22 04:48:48 | 000,207,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmdskmgr.dll
[2013.08.22 05:16:08 | 000,372,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmdskres.dll
[2013.08.22 05:16:07 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmdskres2.dll
[2013.08.22 04:53:14 | 000,182,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmime.dll
[2013.08.22 05:02:19 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmintf.dll
[2013.08.22 04:55:19 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmloader.dll
[2013.08.22 05:05:27 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmocx.dll
[2013.08.22 04:54:46 | 000,085,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmscript.dll
[2013.08.22 04:54:37 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmstyle.dll
[2013.08.22 04:54:25 | 000,107,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmsynth.dll
[2013.08.22 04:50:48 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmusic.dll
[2013.08.22 05:06:18 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmutil.dll
[2013.08.22 04:26:03 | 000,151,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmvdsitf.dll
[2013.08.22 06:11:08 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dmvscres.dll
[2013.10.08 06:15:16 | 000,492,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dnsapi.dll
[2013.08.22 06:24:56 | 000,129,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dnscmmc.dll
[2013.08.22 03:49:41 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dnsext.dll
[2013.08.22 04:21:30 | 000,080,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dnshc.dll
[2013.10.08 06:14:47 | 000,186,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dnsrslvr.dll
[2013.08.22 04:40:35 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\docprop.dll
[2013.08.22 05:16:18 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DocumentPerformanceEvents.dll
[2013.08.22 04:55:13 | 000,070,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dot3api.dll
[2013.08.22 04:46:27 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dot3cfg.dll
[2013.08.22 04:48:44 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Dot3Conn.dll
[2013.08.22 04:57:05 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dot3dlg.dll
[2013.08.22 03:24:34 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dot3gpclnt.dll
[2013.08.22 04:45:02 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dot3gpui.dll
[2013.08.22 04:37:29 | 000,053,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dot3hc.dll
[2013.08.22 04:45:05 | 000,122,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dot3mm.dll
[2013.08.22 04:48:23 | 000,086,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dot3msm.dll
[2013.08.22 04:15:45 | 000,216,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dot3svc.dll
[2013.08.22 04:40:07 | 000,291,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dot3ui.dll
[2013.08.22 03:55:43 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dpapi.dll
[2013.08.22 04:42:56 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dpapiprovider.dll
[2013.08.22 03:42:04 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dpapisrv.dll
[2013.08.22 05:05:19 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dplayx.dll
[2013.08.22 05:05:19 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dpmodemx.dll
[2013.08.22 05:05:19 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dpnaddr.dll
[2013.08.22 05:05:19 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dpnathlp.dll
[2013.08.22 05:05:19 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dpnet.dll
[2013.08.22 05:05:19 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dpnhpast.dll
[2013.08.22 05:05:19 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dpnhupnp.dll
[2013.08.22 05:05:19 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dpnlobby.dll
[2013.08.22 03:47:01 | 000,145,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dps.dll
[2013.08.22 05:05:19 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dpwsockx.dll
[2013.08.22 03:33:49 | 000,253,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dpx.dll
[2013.08.22 04:07:14 | 000,275,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drmmgrtn.dll
[2013.08.22 06:19:01 | 000,842,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drmv2clt.dll
[2013.08.22 05:03:44 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drprov.dll
[2013.08.22 05:02:53 | 000,220,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drt.dll
[2013.08.22 04:59:41 | 000,058,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drtprov.dll
[2013.08.22 05:03:56 | 000,042,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drttransport.dll
[2013.08.22 03:51:30 | 000,599,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\drvstore.dll
[2013.06.18 13:19:16 | 000,004,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ds16gt.dLL
[2013.08.22 04:38:01 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ds32gt.dll
[2013.08.22 04:59:15 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dsauth.dll
[2013.08.22 03:16:13 | 000,160,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DscCore.dll
[2013.08.22 03:26:16 | 000,138,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DscCoreConfProv.dll
[2013.08.22 04:54:38 | 000,173,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dsdmo.dll
[2013.08.22 04:29:41 | 000,089,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dskquota.dll
[2013.08.22 04:40:11 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dskquoui.dll
[2013.08.22 04:50:39 | 000,485,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dsound.dll
[2013.08.22 03:53:39 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dsparse.dll
[2013.08.22 04:31:06 | 000,142,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dsprop.dll
[2013.08.22 04:24:47 | 000,396,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dsquery.dll
[2013.08.22 06:29:25 | 000,020,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dsrole.dll
[2013.08.22 04:48:58 | 000,045,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dssec.dll
[2013.08.22 06:29:26 | 000,157,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dssenh.dll
[2013.08.22 04:25:57 | 000,119,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Dsui.dll
[2013.08.22 04:07:07 | 000,668,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dsuiext.dll
[2013.08.22 04:55:00 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dswave.dll
[2013.08.22 04:49:08 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dtsh.dll
[2013.08.22 03:31:18 | 001,343,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dui70.dll
[2013.08.22 03:29:37 | 000,471,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\duser.dll
[2013.08.22 06:24:54 | 000,098,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dwmapi.dll
[2013.10.19 04:28:22 | 001,765,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dwmcore.dll
[2013.08.22 03:43:07 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dwmredir.dll
[2013.08.22 03:54:52 | 001,497,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DWrite.dll
[2013.08.22 04:13:49 | 000,258,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dxdiagn.dll
[2013.10.03 13:53:52 | 000,406,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dxgi.dll
[2012.07.25 19:25:28 | 000,102,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dxgidebug.dll
[2013.08.22 04:43:07 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dxgwdi.dll
[2013.08.22 05:06:56 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dxmasf.dll
[2013.08.22 04:06:20 | 000,389,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DXP.dll
[2013.08.22 05:02:03 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dxpps.dll
[2013.08.22 04:19:18 | 001,380,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\DxpTaskSync.dll
[2013.08.22 04:27:45 | 000,367,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dxtmsft.dll
[2013.08.22 04:11:59 | 000,244,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dxtrans.dll
[2013.08.22 06:24:57 | 000,103,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\dxva2.dll
[2013.09.12 08:37:32 | 000,245,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\eapp3hst.dll
[2013.09.12 08:01:28 | 000,272,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\eappcfg.dll
[2013.09.12 09:02:04 | 000,093,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\eappgnui.dll
[2013.09.12 08:21:08 | 000,262,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\eapphost.dll
[2013.08.22 03:45:24 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\eappprxy.dll
[2013.08.22 03:52:29 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\eapprovp.dll
[2013.08.22 03:43:05 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\EAPQEC.DLL
[2013.08.22 03:40:49 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\eapsvc.dll
[2013.08.22 05:00:53 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\easconsent.dll
[2013.08.22 05:01:14 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\easinvoker.proxystub.dll
[2013.08.22 04:41:44 | 000,140,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\easwrt.dll
[2013.08.22 04:03:49 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\efsadu.dll
[2013.08.22 04:32:45 | 000,318,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\efscore.dll
[2013.08.22 05:05:41 | 000,039,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\efslsaext.dll
[2013.08.22 05:03:12 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\efssvc.dll
[2013.08.22 05:05:38 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\efsutil.dll
[2013.08.22 03:07:07 | 000,102,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\efswrt.dll
[2013.08.22 04:33:39 | 000,118,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\EhStorAPI.dll
[2013.08.22 04:28:25 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\EhStorPwdMgr.dll
[2013.08.22 04:27:27 | 000,189,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\EhStorShell.dll
[2013.08.22 04:27:50 | 000,176,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\els.dll
[2013.08.22 03:46:53 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ELSCore.dll
[2013.08.22 04:45:00 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\elshyph.dll
[2013.08.22 03:53:26 | 000,589,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\elslad.dll
[2013.08.22 03:47:29 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\elsTrans.dll
[2013.08.22 16:02:26 | 000,036,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\EmbeddedAppLauncherConfig.dll
[2013.08.22 03:46:50 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\encapi.dll
[2013.08.22 04:01:17 | 000,408,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\EncDec.dll
[2013.08.22 06:19:11 | 000,106,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\EncDump.dll
[2013.08.22 03:42:51 | 000,345,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\energy.dll
[2013.08.22 03:50:52 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\energyprov.dll
[2013.08.22 03:21:53 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\energytask.dll
[2013.08.22 03:31:24 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\eqossnap.dll
[2013.08.22 03:38:29 | 000,329,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\es.dll
[2013.08.22 03:56:01 | 002,378,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\esent.dll
[2013.08.22 03:52:38 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\esentprf.dll
[2013.08.22 05:16:18 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ETWESEProviderResources.dll
[2013.08.22 03:52:57 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\EventAggregation.dll
[2013.08.22 04:49:37 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\eventcls.dll
[2013.08.22 06:19:12 | 000,540,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\evr.dll
[2013.08.22 05:13:19 | 002,428,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ExplorerFrame.dll
[2013.06.18 13:17:32 | 000,380,957 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\expsrv.dll
[2013.08.22 05:13:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-advapi32-auth-l1-1-0.dll
[2013.08.22 05:14:01 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-advapi32-encryptedfile-l1-1-0.dll
         

Alt 22.11.2013, 23:01   #9
Sunzi
 
Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



Code:
ATTFilter
[2013.08.22 05:14:05 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-advapi32-eventingcontroller-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-advapi32-eventlog-l1-1-0.dll
[2013.08.22 05:13:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-advapi32-idletask-l1-1-0.dll
[2013.08.22 05:13:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-advapi32-lsa-l1-1-0.dll
[2013.08.22 05:13:51 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-advapi32-msi-l1-1-0.dll
[2013.08.22 05:13:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-advapi32-ntmarta-l1-1-0.dll
[2013.08.22 05:13:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-advapi32-psm-app-l1-1-0.dll
[2013.08.22 05:13:30 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-advapi32-registry-l1-1-0.dll
[2013.08.22 05:13:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-advapi32-safer-l1-1-0.dll
[2013.08.22 05:13:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-advapi32-shutdown-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-appmodel-deployment-l1-1-0.dll
[2013.08.22 05:13:56 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-appxdeploymentclient-appxdeploy-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-audiocore-pal-l1-1-0.dll
[2013.08.22 05:13:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-authz-claimpolicies-l1-1-0.dll
[2013.08.22 05:14:05 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-authz-context-l1-1-0.dll
[2013.08.22 05:13:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-authz-remote-l1-1-0.dll
[2013.08.22 05:13:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-biometrics-winbio-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-bluetooth-deviceassociation-l1-1-0.dll
[2013.08.22 05:13:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-branding-winbrand-l1-1-0.dll
[2013.08.22 05:14:05 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-cluster-clusapi-l1-1-0.dll
[2013.08.22 05:14:01 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-cluster-clusapi-l1-1-1.dll
[2013.08.22 05:13:57 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-cluster-resutils-l1-1-0.dll
[2013.08.22 05:14:10 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-cmd-util-l1-1-0.dll
[2013.08.22 05:14:05 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-cng-rng-l1-1-0.dll
[2013.08.22 05:13:34 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-com-clbcatq-l1-1-0.dll
[2013.08.22 05:14:01 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-com-ole32-l1-1-0.dll
[2013.08.22 05:14:01 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-com-ole32-l1-1-1.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-com-psmregister-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-core-bi-service-l1-1-0.dll
[2013.08.22 05:12:57 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-core-psm-service-l1-1-0.dll
[2013.08.22 05:13:40 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-domainjoin-netjoin-l1-1-0.dll
[2013.08.22 05:13:23 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-firewallapi-webproxy-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-font-fontgroups-l1-1-0.dll
[2013.08.22 06:25:36 | 000,014,176 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-fs-clfs-l1-1-0.dll
[2013.08.22 05:14:10 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-fsutilext-ifsutil-l1-1-0.dll
[2013.08.22 05:14:10 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-fsutilext-ulib-l1-1-0.dll
[2013.08.22 05:13:27 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-fveapi-query-l1-1-0.dll
[2013.08.22 05:14:00 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gdi-dc-create-l1-1-0.dll
[2013.08.22 05:14:01 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gdi-dc-create-l1-1-1.dll
[2013.08.22 05:13:38 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gdi-dc-l1-2-0.dll
[2013.08.22 05:14:04 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gdi-draw-l1-1-0.dll
[2013.08.22 05:14:00 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gdi-draw-l1-1-1.dll
[2013.08.22 05:14:01 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gdi-font-l1-1-0.dll
[2013.08.22 05:14:00 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gdi-font-l1-1-1.dll
[2013.08.22 05:14:03 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gdi-metafile-l1-1-0.dll
[2013.08.22 05:14:00 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gdi-metafile-l1-1-1.dll
[2013.08.22 05:13:38 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gdi-path-l1-1-0.dll
[2013.08.22 05:13:37 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gdi-private-l1-1-0.dll
[2013.08.22 05:13:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gdi-render-l1-1-0.dll
[2013.08.22 05:13:38 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gdi-wcs-l1-1-0.dll
[2013.08.22 05:14:16 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-globalization-collation-l1-1-0.dll
[2013.08.22 05:14:16 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-globalization-input-l1-1-0.dll
[2013.08.22 05:13:03 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gpapi-grouppolicy-l1-1-0.dll
[2013.08.22 05:13:04 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gpsvc-grouppolicy-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-gui-uxinit-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-imm-l1-1-0.dll
[2013.08.22 05:13:35 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-appcompat-l1-1-0.dll
[2013.08.22 05:13:29 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-datetime-l1-1-0.dll
[2013.08.22 05:13:25 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-elevation-l1-1-0.dll
[2013.08.22 05:13:30 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-errorhandling-l1-1-0.dll
[2013.08.22 05:13:33 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-file-l1-1-0.dll
[2013.08.22 05:13:24 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-localization-l1-1-0.dll
[2013.08.22 05:13:24 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-package-current-l1-1-0.dll
[2013.08.22 05:13:27 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-package-l1-1-0.dll
[2013.08.22 05:13:27 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-package-l1-1-1.dll
[2013.08.22 05:13:27 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-quirks-l1-1-0.dll
[2013.08.22 05:13:30 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-registry-l1-1-0.dll
[2013.08.22 05:13:34 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-sidebyside-l1-1-0.dll
[2013.08.22 05:13:34 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-transacted-l1-1-0.dll
[2013.08.22 05:13:34 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernel32-windowserrorreporting-l1-1-0.dll
[2013.08.22 05:13:30 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-kernelbase-processthread-l1-1-0.dll
[2013.08.22 05:12:45 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-mm-msacm-l1-1-0.dll
[2013.08.22 05:12:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-mm-pehelper-l1-1-0.dll
[2013.08.22 05:12:41 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-mm-wmdrmsdk-l1-1-0.dll
[2013.08.22 05:13:35 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-mpr-multipleproviderrouter-l1-1-0.dll
[2013.08.22 05:13:29 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-mrmcorer-environment-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-MrmCoreR-ResManager-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-msa-ui-l1-1-0.dll
[2013.08.22 05:14:16 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-msa-user-l1-1-0.dll
[2013.08.22 05:13:25 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-msiltcfg-msi-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-net-isoext-l1-1-0.dll
[2013.08.22 05:12:57 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-networking-wcmapi-l1-1-0.dll
[2013.08.22 05:13:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-networking-winipsec-l1-1-0.dll
[2013.08.22 05:12:53 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-networking-wlanapi-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-newdev-config-l1-1-0.dll
[2013.08.22 05:13:27 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntdsa-activedirectoryserver-l1-1-0.dll
[2013.08.22 05:13:39 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntdsapi-activedirectoryclient-l1-1-0.dll
[2013.08.22 06:25:36 | 000,012,128 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntos-kcminitcfg-l1-1-0.dll
[2013.08.22 06:25:39 | 000,012,128 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntos-ksecurity-l1-1-0.dll
[2013.08.22 06:25:39 | 000,012,128 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntos-ksecurity-l1-1-1.dll
[2013.08.22 06:25:39 | 000,012,128 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntos-ksigningpolicy-l1-1-0.dll
[2013.08.22 06:25:39 | 000,012,640 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntos-ksr-l1-1-0.dll
[2013.08.22 06:25:39 | 000,012,640 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntos-pico-l1-1-0.dll
[2013.08.22 06:25:39 | 000,015,200 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntos-tm-l1-1-0.dll
[2013.08.22 06:25:39 | 000,012,640 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntos-werkernel-l1-1-0.dll
[2013.08.22 05:13:34 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-caret-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-chartranslation-l1-1-0.dll
[2013.08.22 05:13:58 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-dialogbox-l1-1-0.dll
[2013.08.22 05:14:01 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-dialogbox-l1-1-1.dll
[2013.08.22 05:13:58 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-draw-l1-1-0.dll
[2013.08.22 05:14:01 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-draw-l1-1-1.dll
[2013.08.22 05:14:01 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-gui-l1-1-0.dll
[2013.08.22 05:13:58 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-gui-l1-1-1.dll
[2013.08.22 05:13:58 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-keyboard-l1-1-0.dll
[2013.08.22 05:13:57 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-keyboard-l1-1-1.dll
[2013.08.22 05:14:00 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-menu-l1-1-0.dll
[2013.08.22 05:14:02 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-menu-l1-1-1.dll
[2013.08.22 05:14:00 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-message-l1-1-0.dll
[2013.08.22 05:13:58 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-message-l1-1-1.dll
[2013.08.22 05:14:00 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-misc-l1-1-0.dll
[2013.08.22 05:13:59 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-misc-l1-2-0.dll
[2013.08.22 05:13:35 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-mouse-l1-1-0.dll
[2013.08.22 05:13:35 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-powermanagement-l1-1-0.dll
[2013.08.22 05:14:00 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-private-l1-1-0.dll
[2013.08.22 05:13:58 | 000,008,192 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-private-l1-1-1.dll
[2013.08.22 05:13:38 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-rectangle-ext-l1-1-0.dll
[2013.08.22 05:13:35 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-rotationmanager-l1-1-0.dll
[2013.08.22 05:13:37 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-string-l1-1-0.dll
[2013.08.22 05:13:34 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-synch-l1-1-0.dll
[2013.08.22 05:14:17 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-touch-hittest-l1-1-0.dll
[2013.08.22 05:14:01 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-window-l1-1-0.dll
[2013.08.22 05:14:00 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-window-l1-1-1.dll
[2013.08.22 05:14:00 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-windowclass-l1-1-0.dll
[2013.08.22 05:14:00 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-windowclass-l1-1-1.dll
[2013.08.22 05:14:01 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-windowstation-l1-1-0.dll
[2013.08.22 05:14:01 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ntuser-windowstation-l1-1-1.dll
[2013.08.22 05:13:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ole32-bindctx-l1-1-0.dll
[2013.08.22 05:14:14 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ole32-ie-ext-l1-1-0.dll
[2013.08.22 05:13:34 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ole32-oleautomation-l1-1-0.dll
[2013.08.22 05:14:16 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-oleacc-l1-1-0.dll
[2013.08.22 05:13:27 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-printer-winspool-l1-1-0.dll
[2013.08.22 05:13:27 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-printer-winspool-l1-1-1.dll
[2013.08.22 05:13:39 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-profile-profsvc-l1-1-0.dll
[2013.08.22 05:13:55 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-profile-userenv-l1-1-0.dll
[2013.08.22 05:14:14 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ras-rasapi32-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ras-rasdlg-l1-1-0.dll
[2013.08.22 05:14:14 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ras-rasman-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-ras-tapi32-l1-1-0.dll
[2013.08.22 05:13:28 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-reinfo-query-l1-1-0.dll
[2013.08.22 05:14:01 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-rometadata-dispenser-l1-1-0.dll
[2013.08.22 05:13:57 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-rtcore-gdi-devcaps-l1-1-0.dll
[2013.08.22 05:13:38 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-rtcore-gdi-object-l1-1-0.dll
[2013.08.22 05:13:58 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-rtcore-gdi-rgn-l1-1-0.dll
[2013.08.22 05:14:01 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-rtcore-ntuser-dc-access-l1-1-0.dll
[2013.08.22 05:13:57 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-rtcore-ntuser-dpi-l1-1-0.dll
[2013.08.22 05:14:00 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-rtcore-ntuser-sysparams-l1-1-0.dll
[2013.08.22 05:13:28 | 000,005,120 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-samsrv-accountstore-l1-1-0.dll
[2013.08.22 05:13:50 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-scesrv-server-l1-1-0.dll
[2013.08.22 05:13:40 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-secur32-translatename-l1-1-0.dll
[2013.08.22 05:14:14 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-security-credui-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-security-cryptui-l1-1-0.dll
[2013.08.22 05:14:14 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-security-kerberos-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-security-vaultcli-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-session-userinit-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-session-usertoken-l1-1-0.dll
[2013.08.22 05:13:42 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-session-wininit-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-session-winlogon-l1-1-0.dll
[2013.08.22 05:13:25 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-session-winsta-l1-1-0.dll
[2013.08.22 05:13:04 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-session-wtsapi32-l1-1-0.dll
[2013.08.22 05:13:40 | 000,006,144 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-setupApi-cfgmgr32remote-l1-1-0.dll
[2013.08.22 05:13:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-setupapi-classinstallers-l1-1-0.dll
[2013.08.22 05:13:54 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-setupapi-inf-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-setupApi-logging-l1-1-0.dll
[2013.08.22 05:14:16 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-shell-propsys-l1-1-0.dll
[2013.08.22 05:14:16 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-shell-settingsync-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-shell-shell32-l1-2-0.dll
[2013.08.22 05:13:34 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-shell-shlwapi-l1-1-0.dll
[2013.08.22 05:13:57 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-shell32-shellcom-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-shell32-shellfolders-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-smbshare-browser-l1-1-0.dll
[2013.08.22 05:13:27 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-smbshare-sscore-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-spinf-inf-l1-1-0.dll
[2013.08.22 05:13:04 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-storage-iscsidsc-l1-1-0.dll
[2013.08.22 05:13:34 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-sxs-oleautomation-l1-1-0.dll
[2013.08.22 05:14:16 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-uiacore-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-umpoext-umpo-l1-1-0.dll
[2013.08.22 05:14:16 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-usp10-l1-1-0.dll
[2013.08.22 05:13:40 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-uxtheme-themes-l1-1-0.dll
[2013.08.22 05:13:54 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-webio-pal-l1-1-0.dll
[2013.08.22 05:13:34 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-wer-reporting-l1-1-0.dll
[2013.08.22 05:13:27 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-wevtapi-eventlog-l1-1-0.dll
[2013.08.22 05:14:16 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-winbici-l1-1-0.dll
[2013.08.22 05:13:39 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-winhttp-pal-l1-1-0.dll
[2013.08.22 05:13:39 | 000,004,608 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-wininet-pal-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-winlogon-mincreds-l1-1-0.dll
[2013.08.22 05:13:55 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-winrt-storage-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-wlan-grouppolicy-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-wlan-onexui-l1-1-0.dll
[2013.08.22 05:14:15 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-wlan-scard-l1-1-0.dll
[2013.08.22 05:13:39 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-wsclient-devlicense-l1-1-0.dll
[2013.08.22 05:14:14 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-wwan-wwapi-l1-1-0.dll
[2013.08.22 05:14:16 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-xaml-controls-l1-1-0.dll
[2013.08.22 05:14:16 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\system32\ext-ms-win-xaml-pal-l1-1-0.dll
[2013.08.22 05:14:23 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\f3ahvoas.dll
[2013.08.22 06:24:55 | 000,368,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Faultrep.dll
[2013.08.22 03:35:55 | 000,098,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fdBth.dll
[2013.08.22 03:53:57 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fdBthProxy.dll
[2013.08.22 04:33:09 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FdDevQuery.dll
[2013.08.22 04:37:06 | 000,126,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fde.dll
[2013.08.22 03:19:40 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fdeploy.dll
[2013.08.22 03:22:15 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fdPHost.dll
[2013.08.22 03:39:19 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fdPnp.dll
[2013.08.22 04:29:16 | 000,256,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fdprint.dll
[2013.08.22 03:48:06 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fdProxy.dll
[2013.08.22 03:41:18 | 000,029,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FDResPub.dll
[2013.08.22 03:43:05 | 000,087,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fdSSDP.dll
[2013.08.22 04:43:44 | 000,087,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fdWCN.dll
[2013.08.22 04:36:14 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fdWNet.dll
[2013.08.22 03:33:40 | 000,136,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fdWSD.dll
[2013.08.22 05:05:56 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\feclient.dll
[2013.08.22 04:39:28 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhautoplay.dll
[2013.08.22 04:33:21 | 000,189,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhcat.dll
[2013.08.22 04:04:57 | 000,316,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhcfg.dll
[2013.08.22 04:52:57 | 000,045,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhcleanup.dll
[2013.08.22 03:14:34 | 000,304,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhcpl.dll
[2013.08.22 04:50:36 | 000,181,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhengine.dll
[2013.08.22 04:54:04 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhevents.dll
[2013.08.22 04:27:33 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhlisten.dll
[2013.08.22 04:34:19 | 000,113,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhshl.dll
[2013.08.22 04:50:53 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhsrchapi.dll
[2013.08.22 04:52:43 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhsrchph.dll
[2013.08.22 04:50:48 | 000,098,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhsvc.dll
[2013.08.22 04:51:32 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhsvcctl.dll
[2013.08.22 04:37:52 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhtask.dll
[2013.08.22 06:25:37 | 000,133,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhuxadapter.dll
[2013.08.22 06:25:37 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhuxapi.dll
[2013.08.22 06:25:37 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhuxcommon.dll
[2013.08.22 06:25:37 | 000,077,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhuxgraphics.dll
[2013.08.22 06:25:37 | 000,924,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fhuxpresentation.dll
[2013.08.22 03:55:39 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FileAppxStreamingDataSource.dll
[2013.08.22 04:25:54 | 000,454,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\filemgmt.dll
[2013.08.22 04:25:39 | 000,054,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\findnetprinters.dll
[2013.08.22 03:44:29 | 000,515,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FirewallAPI.dll
[2013.08.22 03:16:26 | 000,855,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FirewallControlPanel.dll
[2013.08.22 03:53:49 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fltLib.dll
[2013.08.22 05:04:27 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fmapi.dll
[2013.08.22 03:51:45 | 000,046,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fmifs.dll
[2013.08.22 04:55:51 | 000,095,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fms.dll
[2013.08.22 03:52:30 | 001,041,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FntCache.dll
[2013.08.22 04:25:08 | 000,807,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fontext.dll
[2013.08.22 05:06:29 | 000,079,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fontsub.dll
[2013.08.22 04:45:21 | 000,091,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fphc.dll
[2013.08.22 03:46:11 | 000,207,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\framedyn.dll
[2013.08.22 03:46:39 | 000,235,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\framedynos.dll
[2013.08.22 04:31:56 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\frprov.dll
[2013.08.22 04:53:25 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fsutilext.dll
[2013.08.22 05:05:43 | 000,057,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fthsvc.dll
[2013.08.22 03:43:53 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fundisc.dll
[2013.08.22 03:36:41 | 000,569,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fveapi.dll
[2013.08.22 03:40:15 | 000,184,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fveapibase.dll
[2013.08.22 03:53:31 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fvecerts.dll
[2013.08.22 16:02:20 | 000,304,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fvecpl.dll
[2013.08.22 03:50:53 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fveskybackup.dll
[2013.08.22 04:18:59 | 000,255,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fveui.dll
[2013.08.22 16:02:20 | 000,761,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fvewiz.dll
[2013.08.22 03:39:57 | 000,090,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\fwcfg.dll
[2013.08.22 03:40:03 | 000,264,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FWPUCLNT.DLL
[2013.08.22 03:42:30 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FwRemoteSvr.dll
[2013.08.22 04:15:26 | 000,239,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSAPI.dll
[2013.08.22 04:22:20 | 000,074,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSCOM.dll
[2013.08.22 04:21:54 | 000,507,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSCOMEX.dll
[2013.08.22 04:04:03 | 000,345,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSCOMPOSE.dll
[2013.08.22 05:14:29 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSCOMPOSERES.dll
[2013.08.22 05:16:18 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSEVENT.dll
[2013.08.22 04:21:57 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSEXT32.dll
[2013.08.22 04:49:56 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSMON.dll
[2013.08.22 05:15:54 | 000,925,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSRESM.dll
[2013.08.22 04:12:54 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSROUTE.dll
[2013.08.22 04:20:18 | 000,849,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSST.dll
[2013.08.22 04:23:54 | 000,221,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXST30.dll
[2013.08.22 04:18:41 | 000,405,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSTIFF.dll
[2013.08.22 04:16:45 | 000,167,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSUTILITY.dll
[2013.08.22 04:14:03 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\FXSXP32.dll
[2013.08.22 04:53:23 | 000,045,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\gacinstall.dll
[2013.08.22 04:02:33 | 002,537,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\gameux.dll
[2013.08.22 05:16:04 | 004,237,824 | ---- | M] (Microsoft) -- C:\Windows\system32\GameUXLegacyGDFs.dll
[2013.08.22 04:50:05 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\gcdef.dll
[2013.10.05 13:05:35 | 001,090,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\gdi32.dll
[2013.08.22 03:42:11 | 001,352,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\GdiPlus.dll
[2013.08.22 03:35:39 | 000,357,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\GeofenceMonitorService.dll
[2013.08.22 05:06:13 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\getuname.dll
[2013.08.22 04:11:51 | 008,712,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\glcndFilter.dll
[2013.08.22 05:06:45 | 000,324,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\glmf32.dll
[2013.08.22 03:52:54 | 000,202,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\GlobCollationHost.dll
[2013.08.22 03:46:09 | 000,111,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\globinputhost.dll
[2013.08.22 05:05:58 | 000,136,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\glu32.dll
[2013.08.22 06:29:26 | 000,111,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\gpapi.dll
[2013.08.22 04:20:29 | 001,047,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\gpedit.dll
[2013.08.22 16:02:18 | 000,588,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\gpprefcl.dll
[2013.08.22 04:36:21 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\gpprnext.dll
[2013.08.22 16:02:28 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\gpscript.dll
[2013.08.22 03:35:48 | 001,165,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\gpsvc.dll
[2013.08.22 04:25:58 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\gptext.dll
[2013.08.22 04:04:44 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Groupinghc.dll
[2013.08.22 07:13:53 | 000,337,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hal.dll
[2013.08.22 06:19:43 | 000,017,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\HalExtIntcLpioDMA.dll
[2013.08.22 06:19:43 | 000,014,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\HalExtIntcUartDMA.dll
[2013.08.22 07:13:53 | 000,337,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\halmacpi.dll
[2013.08.22 03:53:58 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hbaapi.dll
[2013.08.22 04:37:03 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hcproviders.dll
[2013.08.22 04:23:21 | 000,045,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\HelpPaneProxy.dll
[2013.08.22 03:15:19 | 000,501,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hgcpl.dll
[2013.08.22 04:32:14 | 000,172,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hgprint.dll
[2011.12.12 10:56:08 | 000,843,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hha.dll
[2013.08.22 04:40:17 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hhsetup.dll
[2013.08.22 03:54:44 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hid.dll
[2013.08.22 05:05:54 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hidserv.dll
[2013.08.22 04:40:52 | 000,079,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hlink.dll
[2013.08.22 03:10:18 | 000,414,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hnetcfg.dll
[2013.08.22 04:54:42 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hnetmon.dll
[2013.08.22 04:30:23 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hotplug.dll
[2013.08.22 03:38:38 | 000,195,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\hotspotauth.dll
[2013.08.22 03:55:33 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\httpapi.dll
[2013.08.22 03:45:51 | 000,100,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\httpprxm.dll
[2013.08.22 03:53:28 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\httpprxp.dll
[2013.08.22 05:05:43 | 000,035,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\htui.dll
[2013.08.22 04:55:57 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ias.dll
[2013.08.22 04:48:45 | 000,080,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iasacct.dll
[2013.08.22 04:48:46 | 000,058,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iasads.dll
[2013.08.22 04:55:19 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iasdatastore.dll
[2013.08.22 04:46:45 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iashlpr.dll
[2013.08.22 04:25:58 | 000,506,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\IasMigPlugin.dll
[2013.08.22 04:48:13 | 000,168,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iasnap.dll
[2013.08.22 04:50:01 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iaspolcy.dll
[2013.08.22 04:48:26 | 000,197,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iasrad.dll
[2013.08.22 04:43:55 | 000,143,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iasrecst.dll
[2013.08.22 04:42:15 | 000,219,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iassam.dll
[2013.08.22 04:42:06 | 000,370,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iassdo.dll
[2013.08.22 04:49:08 | 000,137,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iassvcs.dll
[2013.08.22 05:03:38 | 000,084,992 | ---- | M] (Radius Inc.) -- C:\Windows\system32\iccvid.dll
[2013.08.22 03:18:47 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\icfupgd.dll
[2013.08.22 03:51:49 | 000,222,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\icm32.dll
[2013.08.22 05:14:43 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\icmp.dll
[2013.08.22 05:00:56 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\icmui.dll
[2013.08.22 05:03:14 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\IconCodecService.dll
[2013.08.22 04:37:44 | 000,204,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\icsigd.dll
[2013.08.22 04:05:56 | 000,417,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\icsvc.dll
[2013.08.22 03:11:03 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\IdCtrls.dll
[2013.08.22 04:12:36 | 000,155,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\IdListen.dll
[2013.08.22 05:06:38 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\idndl.dll
[2013.08.22 03:43:53 | 000,108,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\IDStore.dll
[2013.08.22 04:43:00 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\IEAdvpack.dll
[2013.08.22 03:14:00 | 000,703,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ieapfltr.dll
[2013.08.22 04:11:32 | 000,223,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iedkcs32.dll
[2013.08.22 05:16:20 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ieetwcollectorres.dll
[2013.08.22 04:55:00 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ieetwproxystub.dll
[2013.10.19 04:56:42 | 011,220,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ieframe.dll
[2013.08.22 04:12:13 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iepeers.dll
[2013.08.22 04:45:35 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iernonce.dll
[2013.10.19 05:52:57 | 002,166,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iertutil.dll
[2013.08.22 04:56:00 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iesetup.dll
[2013.08.22 04:19:26 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iesysprep.dll
[2013.08.22 04:42:13 | 000,440,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ieui.dll
[2013.08.22 03:35:37 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ifmon.dll
[2013.08.22 03:52:30 | 000,182,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ifsutil.dll
[2013.08.22 05:03:09 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ifsutilx.dll
[2013.08.22 04:43:00 | 000,065,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\igdDiag.dll
[2013.10.12 22:02:20 | 000,730,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\IKEEXT.DLL
[2013.08.22 07:13:51 | 000,070,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\imagehlp.dll
[2013.08.22 05:16:45 | 048,847,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\imageres.dll
[2013.08.22 05:16:57 | 000,705,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\imagesp1.dll
[2013.08.22 04:37:42 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\imapi.dll
[2013.08.22 04:32:30 | 000,409,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\imapi2.dll
[2013.08.22 04:28:16 | 000,727,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\imapi2fs.dll
[2013.08.22 03:35:09 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\imgutil.dll
[2013.08.22 06:24:54 | 000,146,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\imm32.dll
[2013.08.22 04:06:10 | 000,740,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\inetcomm.dll
[2013.08.22 03:41:45 | 000,053,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\inetmib1.dll
[2013.08.22 16:02:26 | 000,129,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\inetpp.dll
[2013.08.22 16:02:26 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\inetppui.dll
[2013.08.22 05:14:36 | 000,084,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\INETRES.dll
[2013.08.22 03:45:32 | 000,220,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\InkEd.dll
[2013.08.22 04:28:25 | 000,222,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\input.dll
[2013.08.22 03:12:39 | 000,185,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\InputSwitch.dll
[2013.08.22 04:18:56 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\inseng.dll
[2013.08.22 05:15:57 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iologmsg.dll
[2013.08.22 06:17:53 | 000,118,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\IPHLPAPI.DLL
[2013.10.08 05:40:31 | 000,795,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iphlpsvc.dll
[2013.09.14 09:54:46 | 000,380,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ipnathlp.dll
[2013.08.22 05:08:02 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iprop.dll
[2013.08.22 05:04:44 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iprtprio.dll
[2013.08.22 04:54:45 | 000,282,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iprtrmgr.dll
[2013.08.22 04:12:45 | 000,759,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ipsecsnp.dll
[2013.08.22 03:34:26 | 000,312,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\IPSECSVC.DLL
[2013.08.22 04:10:10 | 000,410,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ipsmsnap.dll
[2013.08.22 05:06:32 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ir32_32.dll
[2013.08.22 02:43:12 | 000,197,632 | ---- | M] (Intel(R) Corporation) -- C:\Windows\system32\ir32_32original.dll
[2013.08.22 02:43:10 | 000,839,680 | ---- | M] (Intel Corporation) -- C:\Windows\system32\ir41_32original.dll
[2013.08.22 05:06:32 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ir41_qc.dll
[2013.06.18 13:19:38 | 000,120,320 | ---- | M] (Intel Corporation.) -- C:\Windows\system32\ir41_qcoriginal.dll
[2013.08.22 05:06:32 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ir41_qcx.dll
[2013.06.18 13:19:38 | 000,338,432 | ---- | M] (Intel Corporation.) -- C:\Windows\system32\ir41_qcxoriginal.dll
[2013.08.22 05:06:34 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ir50_32.dll
[2013.08.22 02:43:10 | 000,746,496 | ---- | M] (Intel Corporation) -- C:\Windows\system32\ir50_32original.dll
[2013.08.22 05:06:33 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ir50_qc.dll
[2013.06.18 13:19:38 | 000,200,192 | ---- | M] (Intel Corporation.) -- C:\Windows\system32\ir50_qcoriginal.dll
[2013.08.22 05:06:34 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ir50_qcx.dll
[2013.06.18 13:19:38 | 000,183,808 | ---- | M] (Intel Corporation.) -- C:\Windows\system32\ir50_qcxoriginal.dll
[2013.08.22 05:01:22 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\irclass.dll
[2013.08.22 05:05:39 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\irmon.dll
[2013.08.22 04:41:27 | 000,215,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iscsicpl.dll
[2013.08.22 04:58:47 | 000,054,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iscsidsc.dll
[2013.08.22 05:04:35 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iscsied.dll
[2013.08.22 04:47:32 | 000,116,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iscsiexe.dll
[2013.08.22 05:16:22 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iscsilog.dll
[2013.08.22 04:58:04 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iscsium.dll
[2013.08.22 04:33:38 | 000,066,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iscsiwmi.dll
[2013.08.22 05:04:09 | 000,094,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iscsiwmiv2.dll
[2013.08.22 04:37:06 | 000,150,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\itircl.dll
[2013.08.22 04:18:23 | 000,139,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\itss.dll
[2013.10.13 01:29:44 | 000,706,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iuilp.dll
[2013.08.22 05:03:54 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\iyuv_32.dll
[2013.08.22 04:34:28 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\JavaScriptCollectionAgent.dll
[2013.08.22 16:02:19 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\jnwmon.dll
[2013.08.22 04:39:53 | 000,610,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\jscript.dll
[2013.10.19 05:44:46 | 004,240,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\jscript9.dll
[2013.09.26 09:24:43 | 000,553,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\jscript9diag.dll
[2013.08.22 04:46:19 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\jsproxy.dll
[2013.08.22 05:14:26 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbd101.dll
[2013.08.22 05:14:24 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbd101a.dll
[2013.08.22 05:14:25 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbd101b.dll
[2013.08.22 05:14:26 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbd101c.dll
[2013.08.22 05:14:26 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbd103.dll
[2013.08.22 05:14:24 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbd106.dll
[2013.08.22 05:14:26 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbd106n.dll
[2013.08.22 05:14:50 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDA1.DLL
[2013.08.22 05:14:54 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDA2.DLL
[2013.08.22 05:14:50 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDA3.DLL
[2013.08.22 05:15:00 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDAL.DLL
[2013.08.22 05:15:02 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDARME.DLL
[2013.08.22 05:14:53 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdarmph.dll
[2013.08.22 05:14:50 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdarmty.dll
[2013.08.22 05:14:50 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDARMW.DLL
[2013.08.22 05:14:24 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdax2.dll
[2013.08.22 05:14:53 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDAZE.DLL
[2013.08.22 05:14:50 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDAZEL.DLL
[2013.08.22 05:14:51 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDAZST.DLL
[2013.08.22 05:14:50 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDBASH.DLL
[2013.08.22 05:15:01 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDBE.DLL
[2013.08.22 05:15:04 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDBENE.DLL
[2013.08.22 05:15:03 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDBGPH.DLL
[2013.08.22 05:14:53 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDBGPH1.DLL
[2013.08.22 05:14:52 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDBHC.DLL
[2013.08.22 05:14:52 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDBLR.DLL
[2013.08.22 05:14:52 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDBR.DLL
[2013.08.22 05:15:02 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDBU.DLL
[2013.08.22 05:14:53 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDBUG.DLL
[2013.08.22 05:14:53 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDBULG.DLL
[2013.08.22 05:14:52 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDCA.DLL
[2013.08.22 05:14:53 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDCAN.DLL
[2013.08.22 05:14:53 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDCHER.DLL
[2013.08.22 05:14:53 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDCHERP.DLL
[2013.08.22 05:15:04 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDCR.DLL
[2013.08.22 05:14:54 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDCZ.DLL
[2013.08.22 05:14:53 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDCZ1.DLL
[2013.08.22 05:14:53 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDCZ2.DLL
[2013.08.22 05:14:53 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDDA.DLL
[2013.08.22 05:14:54 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDDIV1.DLL
[2013.08.22 05:15:04 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDDIV2.DLL
[2013.08.22 05:14:56 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDDV.DLL
[2013.08.22 05:14:56 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDES.DLL
[2013.08.22 05:14:56 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDEST.DLL
[2013.08.22 05:15:04 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDFA.DLL
[2013.08.22 05:14:58 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdfar.dll
[2013.08.22 05:14:59 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDFC.DLL
[2013.08.22 05:14:58 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDFI.DLL
[2013.08.22 05:14:58 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDFI1.DLL
[2013.08.22 05:14:58 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDFO.DLL
[2013.08.22 05:14:59 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDFR.DLL
[2013.08.22 05:15:01 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDFTHRK.DLL
[2013.08.22 05:15:01 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDGAE.DLL
[2013.08.22 05:15:04 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDGEO.DLL
[2013.08.22 05:15:04 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdgeoer.dll
[2013.08.22 05:15:04 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdgeome.dll
[2013.08.22 05:15:05 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdgeooa.dll
[2013.08.22 05:15:07 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdgeoqw.dll
[2013.08.22 05:15:06 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDGKL.DLL
[2013.08.22 05:15:07 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDGN.DLL
[2013.08.22 05:15:04 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDGR.DLL
[2013.08.22 05:15:09 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDGR1.DLL
[2013.08.22 05:15:17 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDGRLND.DLL
[2013.08.22 05:15:10 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDGTHC.DLL
[2013.08.22 05:15:06 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDHAU.DLL
[2013.08.22 05:15:24 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDHAW.DLL
[2013.08.22 05:15:11 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDHE.DLL
[2013.08.22 05:15:06 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDHE220.DLL
[2013.08.22 05:15:23 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDHE319.DLL
[2013.08.22 05:15:07 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDHEB.DLL
[2013.08.22 05:15:17 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdhebl3.dll
[2013.08.22 05:15:16 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDHELA2.DLL
[2013.08.22 05:15:16 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDHELA3.DLL
[2013.08.22 05:15:17 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDHEPT.DLL
[2013.08.22 05:15:07 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDHU.DLL
[2013.08.22 05:15:07 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDHU1.DLL
[2013.08.22 05:14:24 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdibm02.dll
[2013.08.22 05:15:07 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDIBO.DLL
[2013.08.22 05:15:07 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDIC.DLL
[2013.08.22 05:15:08 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINASA.DLL
[2013.08.22 05:15:35 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINBE1.DLL
[2013.08.22 05:15:08 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINBE2.DLL
[2013.08.22 05:15:08 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINBEN.DLL
[2013.08.22 05:15:09 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINDEV.DLL
[2013.08.22 05:15:10 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINEN.DLL
[2013.08.22 05:15:09 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINGUJ.DLL
[2013.08.22 05:15:09 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINHIN.DLL
[2013.08.22 05:15:09 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINKAN.DLL
[2013.08.22 05:15:09 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINMAL.DLL
[2013.08.22 05:15:17 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINMAR.DLL
[2013.08.22 05:15:10 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINORI.DLL
[2013.08.22 05:15:09 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINPUN.DLL
[2013.08.22 05:15:10 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINTAM.DLL
[2013.08.22 05:15:10 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINTEL.DLL
[2013.08.22 05:15:10 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDINUK2.DLL
[2013.08.22 05:15:10 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDIR.DLL
[2013.08.22 05:15:10 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDIT.DLL
[2013.08.22 05:15:10 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDIT142.DLL
[2013.08.22 05:15:10 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDIULAT.DLL
[2013.08.22 05:15:10 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDJAV.DLL
[2013.08.22 05:14:20 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDJPN.DLL
[2013.08.22 05:15:10 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDKAZ.DLL
[2013.08.22 05:15:11 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDKHMR.DLL
[2013.08.22 05:15:17 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDKNI.DLL
[2013.08.22 05:14:20 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDKOR.DLL
[2013.08.22 05:15:30 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDKURD.DLL
[2013.08.22 05:15:25 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDKYR.DLL
[2013.08.22 05:15:11 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDLA.DLL
[2013.08.22 05:15:11 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDLAO.DLL
[2013.08.22 05:15:11 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdlisub.dll
[2013.08.22 05:15:17 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdlisus.dll
[2013.08.22 05:14:26 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdlk41a.dll
[2013.08.22 05:15:15 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDLT.DLL
[2013.08.22 05:15:11 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDLT1.DLL
[2013.08.22 05:15:11 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDLT2.DLL
[2013.08.22 05:15:11 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDLV.DLL
[2013.08.22 05:15:11 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDLV1.DLL
[2013.08.22 05:15:16 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDLVST.DLL
[2013.08.22 05:15:18 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDMAC.DLL
[2013.08.22 05:15:16 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDMACST.DLL
[2013.08.22 05:15:17 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDMAORI.DLL
[2013.08.22 05:15:16 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDMLT47.DLL
[2013.08.22 05:15:17 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDMLT48.DLL
[2013.08.22 05:15:16 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDMON.DLL
[2013.08.22 05:15:16 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDMONMO.DLL
[2013.08.22 05:15:16 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDMONST.DLL
[2013.08.22 05:15:16 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDMYAN.DLL
[2013.08.22 05:15:16 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDNE.DLL
[2013.08.22 05:14:26 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdnec.dll
[2013.08.22 05:14:24 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdnec95.dll
[2013.08.22 05:14:24 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdnecat.dll
[2013.08.22 05:14:26 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdnecnt.dll
[2013.08.22 05:15:21 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDNEPR.DLL
[2013.08.22 05:15:17 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdnko.dll
[2013.08.22 05:15:23 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDNO.DLL
[2013.08.22 05:15:36 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDNO1.DLL
[2013.08.22 05:15:17 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDNSO.DLL
[2013.08.22 05:15:16 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDNTL.DLL
[2013.08.22 05:15:17 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDOGHAM.DLL
[2013.08.22 05:15:31 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDOLCH.DLL
[2013.08.22 05:15:36 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDOLDIT.DLL
[2013.08.22 05:15:17 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDOSM.DLL
[2013.08.22 05:15:17 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDPASH.DLL
[2013.08.22 05:15:34 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kbdphags.dll
[2013.08.22 05:15:17 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDPL.DLL
[2013.08.22 05:15:17 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDPL1.DLL
[2013.08.22 05:15:17 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDPO.DLL
[2013.08.22 05:15:34 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDRO.DLL
[2013.08.22 05:15:17 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDROPR.DLL
[2013.08.22 05:15:19 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDROST.DLL
[2013.08.22 05:15:34 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDRU.DLL
[2013.08.22 05:15:33 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDRU1.DLL
[2013.08.22 05:15:36 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDRUM.DLL
[2013.08.22 05:15:20 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSF.DLL
[2013.08.22 05:15:19 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSG.DLL
[2013.08.22 05:15:20 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSL.DLL
[2013.08.22 05:15:21 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSL1.DLL
[2013.08.22 05:15:25 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSMSFI.DLL
[2013.08.22 05:15:21 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSMSNO.DLL
[2013.08.22 05:15:22 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSN1.DLL
[2013.08.22 05:15:22 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSORA.DLL
[2013.08.22 05:15:23 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSOREX.DLL
[2013.08.22 05:15:24 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSORS1.DLL
[2013.08.22 05:15:26 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSORST.DLL
[2013.08.22 05:15:34 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSP.DLL
[2013.08.22 05:15:36 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSW.DLL
[2013.08.22 05:15:27 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSW09.DLL
[2013.08.22 05:15:36 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSYR1.DLL
[2013.08.22 05:15:26 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDSYR2.DLL
[2013.08.22 05:15:36 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTAILE.DLL
[2013.08.22 05:15:34 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTAJIK.DLL
[2013.08.22 05:15:31 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTAT.DLL
[2013.08.22 05:15:31 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTH0.DLL
[2013.08.22 05:15:31 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTH1.DLL
[2013.08.22 05:15:31 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTH2.DLL
[2013.08.22 05:15:36 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTH3.DLL
[2013.08.22 05:15:33 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTIFI.DLL
[2013.08.22 05:15:36 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTIFI2.DLL
[2013.08.22 05:15:33 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTIPRC.DLL
[2013.08.22 05:15:34 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTIPRD.DLL
[2013.08.22 05:15:34 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTT102.DLL
[2013.08.22 05:15:34 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTUF.DLL
[2013.08.22 05:15:34 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTUQ.DLL
[2013.08.22 05:15:36 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTURME.DLL
[2013.08.22 05:15:34 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDTZM.DLL
[2013.08.22 05:15:34 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDUGHR.DLL
[2013.08.22 05:15:36 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDUGHR1.DLL
[2013.08.22 05:15:34 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDUK.DLL
[2013.08.22 05:15:36 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDUKX.DLL
[2013.08.22 05:15:34 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDUR.DLL
[2013.08.22 05:15:34 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDUR1.DLL
[2013.08.22 05:15:35 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDURDU.DLL
[2013.08.22 07:13:53 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDUS.DLL
[2013.08.22 05:15:36 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDUSA.DLL
[2013.08.22 05:15:36 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDUSL.DLL
[2013.08.22 05:15:35 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDUSR.DLL
[2013.08.22 05:15:35 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDUSX.DLL
[2013.08.22 05:15:35 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDUZB.DLL
[2013.08.22 05:15:35 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDVNTC.DLL
[2013.08.22 05:15:35 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDWOL.DLL
[2013.08.22 05:15:35 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDYAK.DLL
[2013.08.22 05:15:35 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDYBA.DLL
[2013.08.22 05:15:36 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDYCC.DLL
[2013.08.22 05:15:36 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KBDYCL.DLL
[2013.08.22 07:13:53 | 000,013,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kd.dll
[2013.08.22 06:25:39 | 000,018,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kd1394.dll
[2012.04.18 19:39:06 | 000,028,672 | ---- | M] () -- C:\Windows\system32\kdbsdk32.dll
[2013.08.22 07:13:53 | 000,022,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kdcom.dll
[2013.08.22 06:21:13 | 000,018,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kdhv1394.dll
[2013.08.22 06:25:39 | 000,083,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kdnet.dll
[2013.08.22 03:54:46 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KdsCli.dll
[2013.08.22 06:25:40 | 000,013,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kdstub.dll
[2013.08.22 06:35:21 | 000,039,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kdusb.dll
[2013.08.22 06:25:40 | 000,024,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kd_02_10df.dll
[2013.08.22 06:25:42 | 000,248,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kd_02_10ec.dll
[2013.08.22 06:25:41 | 000,096,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kd_02_14e4.dll
[2013.08.22 06:25:42 | 000,033,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kd_02_1969.dll
[2013.08.22 06:25:41 | 000,024,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kd_02_19a2.dll
[2013.10.23 10:24:08 | 000,142,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kd_02_8086.dll
[2013.08.22 03:46:42 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\keepaliveprovider.dll
[2013.08.22 03:49:30 | 000,754,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kerberos.dll
[2013.08.22 06:31:40 | 000,029,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kernel.appcore.dll
[2013.10.22 07:14:06 | 001,033,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kernel32.dll
[2013.08.22 07:13:51 | 000,859,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KernelBase.dll
[2013.08.22 04:55:08 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\kernelceip.dll
[2013.08.22 16:02:27 | 000,034,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KeyboardFilterCore.dll
[2013.08.22 16:02:28 | 000,075,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KeyboardFilterSvc.dll
[2013.08.22 03:48:12 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\keyiso.dll
[2013.08.22 04:26:08 | 000,156,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\keymgr.dll
[2013.08.22 04:54:39 | 000,075,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\KMSVC.DLL
[2013.08.22 03:47:13 | 000,146,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\korwbrkr.dll
[2013.08.22 06:19:12 | 000,018,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ksuser.dll
[2013.08.22 05:13:05 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ktmw32.dll
[2013.08.22 05:01:25 | 000,058,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\l2gpstore.dll
[2013.08.22 04:37:19 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\l2nacp.dll
[2013.08.22 04:14:06 | 000,150,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\L2SecHC.dll
[2013.08.22 05:04:48 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\LangCleanupSysprepAction.dll
[2013.08.22 04:54:19 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\LAPRXY.DLL
[2013.08.22 04:29:07 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\licmgr10.dll
[2013.08.22 05:01:50 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\linkinfo.dll
[2013.08.22 03:19:09 | 000,223,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ListSvc.dll
[2013.08.22 03:48:27 | 000,270,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\livessp.dll
[2013.08.22 04:59:10 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\LldpNotify.dll
[2013.08.22 04:36:31 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\lltdapi.dll
[2013.08.22 05:16:58 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\lltdres.dll
[2013.08.22 04:30:41 | 000,201,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\lltdsvc.dll
[2013.08.22 05:12:23 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\lmhsvc.dll
[2013.08.22 03:53:48 | 000,100,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\loadperf.dll
[2013.08.22 04:24:13 | 000,443,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\localsec.dll
[2013.08.22 03:16:11 | 000,834,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\localspl.dll
[2013.08.22 05:02:29 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\localui.dll
[2013.08.22 03:34:30 | 000,262,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\LocationApi.dll
[2013.08.22 04:29:35 | 000,104,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\LockScreenContent.dll
[2013.08.22 04:31:32 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\LockScreenContentHost.dll
[2013.08.22 04:49:07 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\loghours.dll
[2013.08.22 03:53:27 | 000,172,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\logoncli.dll
[2013.08.22 05:14:31 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\lpk.dll
[2013.08.22 05:02:35 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\lpksetupproxyserv.dll
[2013.08.22 03:50:23 | 001,083,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\lsasrv.dll
[2013.08.22 03:36:04 | 000,614,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\lsm.dll
[2013.08.22 05:05:24 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\lsmproxy.dll
[2013.08.22 03:47:02 | 000,041,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\luainstall.dll
[2013.08.22 05:07:03 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\lz32.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\lzexpand.dll
[2013.08.22 04:58:24 | 000,041,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Magnification.dll
[2013.08.22 04:28:33 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MaintenanceUI.dll
[2013.08.22 04:58:30 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mapi32.dll
[2013.08.22 04:58:30 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mapistub.dll
[2013.08.22 03:19:14 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MbaeApi.dll
[2013.08.22 03:36:52 | 000,251,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MbaeApiPublic.dll
[2013.08.22 04:30:19 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MbaeXmlParser.dll
[2013.08.22 03:38:44 | 000,181,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mbsmsapi.dll
[2013.08.22 03:44:04 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mbussdapi.dll
[2013.06.18 13:29:43 | 000,312,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MCEWMDRMNDBootstrap.dll
[2013.08.22 05:05:36 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mciavi32.dll
[2013.08.22 05:03:58 | 000,039,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mcicda.dll
[2013.08.22 04:52:28 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mciqtz32.dll
[2013.08.22 05:06:52 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mciseq.dll
[2013.08.22 05:06:53 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mciwave.dll
[2013.08.22 06:35:20 | 000,076,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mcupdate_AuthenticAMD.dll
[2013.08.22 06:34:53 | 000,403,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mcupdate_GenuineIntel.dll
[2013.08.22 04:32:25 | 000,144,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\McxDriv.dll
[2013.08.22 04:32:52 | 000,203,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mdminst.dll
[2013.08.22 03:56:10 | 000,221,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mdmregistration.dll
[2013.08.22 04:54:10 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MemoryDiagnostic.dll
[2013.08.22 06:19:12 | 000,518,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mf.dll
[2013.08.22 05:06:53 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mf3216.dll
[2013.08.22 06:19:12 | 000,085,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfAACEnc.dll
[2013.09.17 07:31:42 | 000,883,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfasfsrcsnk.dll
[2012.07.26 18:08:06 | 004,411,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110.dll
[2012.07.26 18:08:06 | 000,046,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110chs.dll
[2012.07.26 18:08:06 | 000,046,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110cht.dll
[2012.07.26 18:08:06 | 008,164,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110d.dll
[2012.07.26 18:08:06 | 000,074,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110deu.dll
[2012.07.26 18:08:06 | 000,064,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110enu.dll
[2012.07.26 18:08:06 | 000,073,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110esn.dll
[2012.07.26 18:08:06 | 000,074,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110fra.dll
[2012.07.26 18:08:06 | 000,072,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110ita.dll
[2012.07.26 18:08:06 | 000,053,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110jpn.dll
[2012.07.26 18:08:06 | 000,053,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110kor.dll
[2012.07.26 18:08:06 | 000,070,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110rus.dll
[2012.07.26 18:08:06 | 004,446,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110u.dll
[2012.07.26 18:08:06 | 008,234,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc110ud.dll
[2013.08.22 00:35:15 | 000,924,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc40.dll
[2013.08.22 06:00:02 | 000,924,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc40u.dll
[2013.08.22 04:11:35 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc42.dll
[2013.08.22 04:12:37 | 001,059,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfc42u.dll
[2013.08.22 06:19:12 | 000,283,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MFCaptureEngine.dll
[2012.07.26 18:08:06 | 000,082,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfcm110.dll
[2012.07.26 18:08:06 | 000,111,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfcm110d.dll
[2012.07.26 18:08:06 | 000,082,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfcm110u.dll
[2012.07.26 18:08:06 | 000,110,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfcm110ud.dll
[2013.08.22 06:19:17 | 002,139,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfcore.dll
[2013.08.22 03:54:13 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfcsubs.dll
[2013.08.22 04:18:26 | 000,433,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfds.dll
[2013.08.22 04:48:59 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfdvdec.dll
[2013.08.22 05:15:48 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mferror.dll
[2013.08.22 05:23:01 | 000,501,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfh264enc.dll
[2013.08.22 03:21:42 | 000,802,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MFMediaEngine.dll
[2013.08.22 04:48:56 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfmjpegdec.dll
[2013.08.22 06:19:16 | 000,663,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfmp4srcsnk.dll
[2013.08.22 06:19:17 | 000,669,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfmpeg2srcsnk.dll
[2013.08.22 06:19:16 | 000,650,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfnetcore.dll
[2013.08.22 06:19:17 | 001,011,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfnetsrc.dll
[2013.10.23 09:59:16 | 000,698,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfplat.dll
[2013.08.22 06:19:18 | 000,240,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MFPlay.dll
[2013.08.22 06:19:17 | 000,104,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfps.dll
[2013.08.22 06:19:18 | 000,355,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfreadwrite.dll
[2013.08.22 06:19:18 | 000,753,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfsrcsnk.dll
[2013.10.19 08:12:06 | 000,380,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfsvr.dll
[2013.08.22 06:19:18 | 000,179,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mftranscode.dll
[2013.08.22 06:25:00 | 000,068,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mfvdsp.dll
[2013.08.22 04:11:31 | 000,744,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MFWMAAEC.DLL
[2013.08.22 05:05:42 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mgmtapi.dll
[2013.08.22 03:52:56 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mi.dll
[2013.08.22 03:50:36 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mibincodec.dll
[2013.08.22 05:16:01 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\microsoft-windows-battery-events.dll
[2013.08.22 05:16:00 | 000,006,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\microsoft-windows-hal-events.dll
[2013.08.22 05:16:00 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\microsoft-windows-kernel-pnp-events.dll
[2013.08.22 05:16:00 | 000,126,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\microsoft-windows-kernel-power-events.dll
[2013.08.22 05:16:00 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\microsoft-windows-kernel-processor-power-events.dll
[2013.08.22 05:16:01 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\microsoft-windows-pdc.dll
[2013.08.22 05:16:22 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\microsoft-windows-processor-aggregator-events.dll
[2013.08.22 05:16:00 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\microsoft-windows-sleepstudy-events.dll
[2013.08.22 05:16:00 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\microsoft-windows-storage-tiering-events.dll
[2013.08.22 05:16:00 | 000,241,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\microsoft-windows-system-events.dll
[2013.08.22 03:54:21 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Microsoft.Management.Infrastructure.Native.Unmanaged.dll
[2013.08.22 03:49:34 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MicrosoftAccountTokenProvider.dll
[2013.08.22 05:04:11 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\midimap.dll
[2013.08.22 04:53:27 | 000,237,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\migflt.dll
[2013.08.22 04:21:05 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\migisol.dll
[2013.08.22 05:06:45 | 000,183,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\miguiresource.dll
[2013.08.22 04:28:51 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mimefilt.dll
[2013.08.22 03:50:58 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mimofcodec.dll
[2013.08.22 03:51:01 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MirrorDrvCompat.dll
[2013.08.22 03:35:47 | 000,980,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mispace.dll
[2013.10.05 09:24:36 | 000,180,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\miutils.dll
[2013.08.22 03:42:35 | 000,182,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mlang.dll
[2013.08.22 04:50:55 | 000,304,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mmcbase.dll
[2013.08.22 04:49:20 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mmci.dll
[2013.08.22 05:02:48 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mmcico.dll
[2013.08.22 04:20:20 | 002,292,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mmcndmgr.dll
[2013.08.22 04:58:41 | 000,113,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mmcshext.dll
[2013.08.22 03:48:07 | 000,073,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mmcss.dll
[2013.08.22 06:19:18 | 000,290,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MMDevAPI.dll
[2013.08.22 05:16:41 | 009,576,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mmres.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MMSYSTEM.DLL
[2013.08.22 04:41:27 | 000,287,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\modemui.dll
[2013.08.22 04:44:15 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\montr_ci.dll
[2013.08.22 05:16:57 | 000,184,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\moricons.dll
[2013.08.22 06:24:59 | 000,092,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MP3DMOD.DLL
[2013.08.22 06:25:00 | 000,263,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MP43DECD.DLL
[2013.08.22 06:25:01 | 000,446,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MP4SDECD.DLL
[2013.08.22 06:25:01 | 000,263,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MPG4DECD.DLL
[2013.08.22 06:30:36 | 000,082,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mpr.dll
[2013.08.22 03:34:29 | 000,334,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mprapi.dll
[2013.08.22 04:34:15 | 000,312,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mprddm.dll
[2013.08.22 04:47:59 | 000,177,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mprdim.dll
[2013.08.22 03:55:37 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mprext.dll
[2013.08.22 03:54:33 | 000,113,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mprmsg.dll
[2013.08.22 03:28:34 | 000,654,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MPSSVC.dll
[2013.10.11 14:03:50 | 000,621,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MrmCoreR.dll
[2013.09.26 07:34:23 | 000,515,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MrmIndexer.dll
[2013.08.22 04:51:50 | 000,121,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msaatext.dll
[2013.08.22 04:25:43 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MSAC3ENC.DLL
[2013.06.18 13:21:27 | 000,061,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msacm.dll
[2013.08.22 06:19:22 | 000,086,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msacm32.dll
[2013.08.22 05:14:37 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msafd.dll
[2013.08.22 06:29:29 | 000,050,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msasn1.dll
[2013.08.22 06:25:01 | 000,998,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MSAudDecMFT.dll
[2013.08.22 07:13:53 | 000,153,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msaudite.dll
[2013.08.22 03:47:55 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msauserext.dll
[2013.08.22 04:38:24 | 000,215,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mscandui.dll
[2013.08.22 05:06:17 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mscat32.dll
[2013.09.10 05:28:02 | 000,105,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msched.dll
[2013.08.22 09:16:46 | 000,195,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msclmd.dll
[2013.08.22 03:38:00 | 000,477,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mscms.dll
[2013.08.22 04:40:54 | 000,330,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mscoree.dll
[2013.08.22 06:11:50 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mscorier.dll
[2013.08.17 01:06:32 | 000,081,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mscories.dll
[2013.08.22 05:17:09 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mscpx32r.dLL
[2013.08.22 05:06:09 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mscpxl32.dLL
[2013.10.02 10:47:07 | 001,018,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msctf.dll
[2013.08.22 04:52:00 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MsCtfMonitor.dll
[2013.08.22 04:58:44 | 000,090,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msctfp.dll
[2013.08.22 04:59:48 | 000,084,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msctfui.dll
[2013.08.22 03:18:21 | 000,695,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msctfuimanager.dll
[2013.08.22 05:05:25 | 000,156,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msdadiag.dll
[2013.08.22 04:37:42 | 000,105,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msdart.dll
[2013.08.22 03:48:15 | 000,381,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msdelta.dll
[2013.08.22 06:19:22 | 000,039,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msdmo.dll
[2013.08.22 04:13:12 | 000,414,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msdri.dll
[2013.08.22 03:27:50 | 000,423,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msdrm.dll
[2013.08.22 03:37:51 | 000,307,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msdtckrm.dll
[2013.08.22 03:44:52 | 000,097,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msdtclog.dll
[2013.08.22 03:18:03 | 000,642,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msdtcprx.dll
[2013.08.22 03:28:23 | 001,069,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msdtctm.dll
[2013.08.22 03:18:10 | 000,238,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msdtcuiu.dll
[2013.08.22 05:14:44 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msdtcVSp1res.dll
[2013.06.18 13:17:35 | 000,409,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msexch40.dll
[2013.06.18 13:17:36 | 000,339,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msexcl40.dll
[2013.08.22 04:01:52 | 000,523,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msfeeds.dll
[2013.08.22 04:15:25 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msfeedsbs.dll
[2013.08.22 03:41:01 | 002,266,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msftedit.dll
[2013.10.19 07:37:58 | 017,142,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mshtml.dll
[2013.08.22 04:53:57 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MshtmlDac.dll
[2013.08.22 04:13:20 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mshtmled.dll
[2013.08.22 05:16:57 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mshtmler.dll
[2013.08.22 04:39:45 | 003,258,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msi.dll
[2013.08.22 05:00:12 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MsiCofire.dll
[2013.08.22 05:06:00 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msidcrl40.dll
[2013.08.22 04:37:08 | 000,052,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msident.dll
[2013.08.22 03:54:39 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msidle.dll
[2013.08.22 05:14:28 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msidntld.dll
[2013.08.22 04:11:44 | 000,273,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msieftp.dll
[2013.08.22 04:43:00 | 000,281,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msihnd.dll
[2013.08.22 05:04:34 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msiltcfg.dll
[2013.08.22 03:55:04 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msimg32.dll
[2013.08.22 05:15:52 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msimsg.dll
[2013.08.22 03:43:30 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msimtf.dll
[2013.08.22 05:06:31 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msisip.dll
[2013.08.22 05:06:32 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msiwer.dll
[2013.06.18 13:17:38 | 001,589,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msjet40.dll
[2013.06.18 13:17:42 | 000,364,544 | ---- | M] () -- C:\Windows\system32\msjetoledb40.dll
[2013.06.18 13:17:45 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msjint40.dll
[2013.06.18 13:17:45 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msjter40.dll
[2013.06.18 13:17:45 | 000,290,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msjtes40.dll
[2013.08.22 03:54:40 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mskeyprotcli.dll
[2013.08.22 03:54:40 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mskeyprotect.dll
[2013.08.22 05:07:03 | 000,182,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msls31.dll
[2013.06.18 13:17:45 | 000,241,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msltus40.dll
[2013.08.22 06:25:01 | 001,456,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msmpeg2adec.dll
[2013.08.22 05:23:04 | 001,049,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MSMPEG2ENC.DLL
[2013.08.22 06:25:01 | 002,804,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msmpeg2vdec.dll
[2013.08.22 04:07:59 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msnetobj.dll
[2013.08.22 07:13:53 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msobjs.dll
[2013.08.22 04:08:19 | 000,174,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msoeacct.dll
[2013.08.22 04:05:14 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msoert2.dll
[2013.08.22 05:17:02 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msorc32r.dll
[2013.08.22 05:04:26 | 000,161,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msorcl32.dll
[2013.08.22 03:53:55 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mspatcha.dll
[2013.08.22 03:54:13 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mspatchc.dll
[2013.06.18 13:17:45 | 000,368,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mspbde40.dll
[2013.08.22 04:54:50 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msports.dll
[2013.08.22 05:16:18 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msprivs.dll
[2013.08.22 04:13:53 | 000,099,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msrahc.dll
[2013.08.22 04:16:18 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msrating.dll
[2013.06.18 13:17:45 | 000,319,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msrd2x40.dll
[2013.06.18 13:17:48 | 000,344,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msrd3x40.dll
[2013.08.22 04:21:00 | 000,163,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msrdc.dll
[2013.08.22 04:53:52 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MsRdpWebAccess.dll
[2013.06.18 13:17:49 | 000,643,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msrepl40.dll
[2013.08.22 05:04:14 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msrle32.dll
[2013.08.22 04:21:29 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msscntrs.dll
[2013.08.22 04:16:16 | 000,330,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msscp.dll
[2013.08.22 04:49:09 | 000,184,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mssha.dll
[2013.08.22 05:16:24 | 000,268,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msshavmsg.dll
[2013.08.22 03:21:42 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msshooks.dll
[2013.08.22 04:54:24 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mssign32.dll
[2013.08.22 05:06:17 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mssip32.dll
[2013.08.22 04:45:12 | 000,096,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mssitlb.dll
[2013.08.22 03:21:56 | 000,630,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MsSpellCheckingFacility.dll
[2013.08.22 04:14:44 | 000,372,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mssph.dll
[2013.08.22 04:13:51 | 000,217,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mssphtb.dll
[2013.08.22 03:21:43 | 000,046,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mssprxy.dll
[2013.08.22 03:17:42 | 001,717,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mssrch.dll
[2013.08.22 04:06:14 | 000,676,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mssvp.dll
[2013.08.22 03:21:12 | 000,215,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mstask.dll
[2013.06.18 13:17:51 | 000,282,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mstext40.dll
[2013.08.22 16:02:21 | 000,435,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msTextPrediction.dll
[2013.10.05 08:32:48 | 005,769,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mstscax.dll
[2013.08.22 05:03:33 | 000,395,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msutb.dll
[2013.08.22 06:29:02 | 000,330,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msv1_0.dll
[2013.06.18 13:37:50 | 001,386,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvbvm60.dll
[2013.08.22 05:14:42 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvcirt.dll
[2012.07.26 18:08:06 | 000,534,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvcp110.dll
[2012.07.26 18:08:06 | 000,821,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvcp110d.dll
[2013.08.10 01:56:56 | 000,536,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvcp120_clr0400.dll
[2013.08.22 05:14:45 | 000,410,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvcp60.dll
[2013.08.10 01:56:56 | 000,018,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvcr100_clr0400.dll
[2012.07.26 18:08:06 | 000,862,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvcr110.dll
[2012.07.26 18:08:06 | 001,678,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvcr110d.dll
[2013.08.10 01:56:56 | 000,876,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvcr120_clr0400.dll
[2013.08.22 07:13:53 | 000,780,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvcrt.dll
[2013.06.18 13:38:29 | 000,253,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvcrt20.dll
[2013.08.22 05:14:28 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvcrt40.dll
[2013.08.22 04:54:47 | 000,122,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvfw32.dll
[2013.08.22 05:04:14 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvidc32.dll
[2013.08.22 04:16:37 | 002,284,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MSVidCtl.dll
[2013.06.18 13:21:03 | 000,126,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvideo.dll
[2013.08.22 06:25:01 | 000,178,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MSVideoDSP.dll
[2013.08.22 06:19:23 | 000,312,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msvproc.dll
[2013.08.22 04:56:52 | 000,173,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MSWB7.dll
[2013.08.22 04:51:58 | 000,494,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MSWB70011.dll
[2013.08.22 04:51:58 | 000,494,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MSWB7001E.dll
[2013.08.22 04:51:58 | 000,494,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MSWB70404.dll
[2013.08.22 04:51:58 | 000,494,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MSWB70804.dll
[2013.06.18 13:17:51 | 000,856,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mswdat10.dll
[2013.08.22 04:32:23 | 000,322,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mswmdm.dll
[2013.08.22 03:55:25 | 000,270,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mswsock.dll
[2013.06.18 13:17:51 | 000,618,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mswstr10.dll
[2013.06.18 13:17:51 | 000,454,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msxbde40.dll
[2013.08.22 03:27:53 | 001,316,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msxml3.dll
[2013.08.22 05:16:34 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msxml3r.dll
[2013.08.22 06:28:06 | 001,721,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msxml6.dll
[2013.08.22 05:16:35 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msxml6r.dll
[2013.08.22 05:03:48 | 000,023,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\msyuv.dll
[2013.08.22 03:37:01 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mtxclu.dll
[2013.08.22 03:46:55 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mtxdm.dll
[2013.08.22 05:05:56 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mtxex.dll
[2013.08.22 03:46:40 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mtxlegih.dll
[2013.08.22 03:45:12 | 000,107,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mtxoci.dll
[2013.08.22 05:03:18 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\muifontsetup.dll
[2013.08.22 05:04:35 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\MUILanguageCleanup.dll
[2013.08.22 04:48:41 | 000,236,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mycomput.dll
[2013.08.22 04:39:29 | 000,146,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\mydocs.dll
[2013.08.22 06:24:57 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NAPCRYPT.DLL
[2013.08.22 04:39:08 | 000,068,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\napdsnap.dll
[2013.08.22 06:24:56 | 000,106,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NAPHLPR.DLL
[2013.08.22 05:03:46 | 000,053,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NapiNSP.dll
[2013.08.22 04:46:57 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\napipsec.dll
[2013.08.22 03:18:52 | 000,238,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NAPMONTR.DLL
[2013.08.22 03:21:32 | 000,852,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NaturalLanguage6.dll
[2013.08.22 04:45:17 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NcaApi.dll
[2013.08.22 04:10:39 | 000,141,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NcaSvc.dll
[2013.08.22 03:41:55 | 000,124,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ncbservice.dll
[2013.08.22 03:21:32 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NcdAutoSetup.dll
[2013.08.22 04:39:14 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NcdProp.dll
[2013.08.22 03:39:38 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nci.dll
[2013.08.22 03:52:28 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ncobjapi.dll
[2013.08.22 06:29:29 | 000,113,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ncrypt.dll
[2013.08.22 03:55:19 | 000,293,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ncryptprov.dll
[2013.10.10 15:53:55 | 000,088,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ncryptsslp.dll
[2013.08.22 05:02:01 | 000,270,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ncsi.dll
[2013.08.22 03:50:01 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ncuprov.dll
[2013.08.22 05:06:18 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nddeapi.dll
[2013.08.22 03:21:20 | 000,219,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ndfapi.dll
[2013.08.22 04:36:42 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ndfetw.dll
[2013.08.22 04:37:28 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ndfhcdiscovery.dll
[2013.08.22 03:31:58 | 000,046,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ndiscapCfg.dll
[2013.08.22 04:27:17 | 000,072,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ndishc.dll
[2013.08.22 04:47:09 | 000,097,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NdisImPlatform.dll
[2013.08.22 04:42:56 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ndproxystub.dll
[2013.08.22 03:47:09 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nduprov.dll
[2013.08.22 03:50:20 | 000,104,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\negoexts.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netapi.dll
[2013.08.22 06:29:29 | 000,066,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netapi32.dll
[2013.08.22 05:07:04 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netbios.dll
[2013.08.22 03:11:03 | 001,154,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netcenter.dll
[2013.08.22 06:30:39 | 000,394,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netcfgx.dll
[2013.08.22 04:07:55 | 000,168,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netcorehc.dll
[2013.08.22 04:14:48 | 000,222,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netdiagfx.dll
[2013.08.22 05:17:43 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netevent.dll
[2013.08.22 04:55:33 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netfxperf.dll
[2013.08.22 05:16:18 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\neth.dll
[2013.08.22 04:17:25 | 000,097,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netid.dll
[2013.08.22 03:32:37 | 000,167,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netiohlp.dll
[2013.08.22 03:52:14 | 000,271,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netjoin.dll
[2013.08.22 03:49:21 | 000,688,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netlogon.dll
[2013.08.22 03:16:41 | 000,202,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netman.dll
[2013.08.22 05:15:57 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netmsg.dll
[2013.08.22 03:20:02 | 000,154,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netplwiz.dll
[2013.08.22 03:44:06 | 000,190,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netprofm.dll
[2013.08.22 03:44:38 | 000,415,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netprofmsvc.dll
[2013.08.22 04:55:30 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netprovisionsp.dll
[2013.08.22 03:50:40 | 000,125,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NetSetupApi.dll
[2013.08.22 04:11:26 | 002,703,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netshell.dll
[2013.08.22 04:15:22 | 000,726,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nettrace.dll
[2013.08.22 06:29:29 | 000,036,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netutils.dll
[2013.08.22 04:54:32 | 000,049,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NetVscCoinstall.dll
[2013.08.22 06:11:13 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\netvscres.dll
[2013.08.22 04:07:01 | 001,664,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\networkexplorer.dll
[2013.08.22 04:20:19 | 000,041,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\networkitemfactory.dll
         

Alt 22.11.2013, 23:02   #10
Sunzi
 
Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



Code:
ATTFilter
[2013.08.22 03:22:51 | 000,072,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NetworkStatus.dll
[2013.08.22 04:23:41 | 000,304,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\newdev.dll
[2013.08.22 03:38:28 | 000,292,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ninput.dll
[2013.08.22 04:54:37 | 007,323,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NL7Data0011.dll
[2013.08.22 04:54:28 | 000,766,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NL7Data001E.dll
[2013.08.22 04:56:33 | 002,220,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NL7Data0404.dll
[2013.08.22 04:55:22 | 003,341,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NL7Data0804.dll
[2013.08.22 05:17:07 | 002,454,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NL7Lexicons0011.dll
[2013.08.22 05:17:07 | 000,200,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NL7Lexicons001E.dll
[2013.08.22 05:17:05 | 000,360,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NL7Lexicons0404.dll
[2013.08.22 05:17:05 | 000,409,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NL7Lexicons0804.dll
[2013.08.22 05:17:05 | 007,701,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NL7Models0011.dll
[2013.08.22 05:17:04 | 001,117,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NL7Models001E.dll
[2013.08.22 05:17:05 | 009,719,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NL7Models0404.dll
[2013.08.22 05:17:05 | 002,963,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NL7Models0804.dll
[2013.08.22 03:48:53 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nlaapi.dll
[2013.08.22 04:47:19 | 000,071,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nlahc.dll
[2013.08.22 03:34:50 | 000,307,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nlasvc.dll
[2013.08.22 04:20:40 | 000,132,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nlhtml.dll
[2013.08.22 04:37:50 | 000,153,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nlmgp.dll
[2013.08.22 03:47:20 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nlmproxy.dll
[2013.08.22 05:04:55 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nlmsprep.dll
[2013.08.22 05:17:09 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nlsbres.dll
[2013.08.22 04:37:26 | 001,543,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0000.dll
[2013.08.22 04:36:22 | 001,986,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0002.dll
[2013.08.22 04:35:41 | 001,986,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0003.dll
[2013.08.22 04:37:33 | 002,017,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0007.dll
[2013.08.22 04:37:15 | 004,924,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0009.dll
[2013.08.22 04:37:55 | 009,584,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData000a.dll
[2013.08.22 04:37:29 | 002,289,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData000c.dll
[2013.08.22 04:36:14 | 002,372,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData000d.dll
[2013.08.22 04:36:17 | 001,993,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData000f.dll
[2013.08.22 04:36:11 | 004,510,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0010.dll
[2013.08.22 04:35:47 | 001,986,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0018.dll
[2013.08.22 04:35:54 | 001,986,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData001a.dll
[2013.08.22 04:35:40 | 001,986,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData001b.dll
[2013.08.22 04:36:16 | 004,511,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData001d.dll
[2013.08.22 04:36:15 | 003,125,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0020.dll
[2013.08.22 04:35:28 | 001,819,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0021.dll
[2013.08.22 04:35:42 | 001,819,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0022.dll
[2013.08.22 04:35:42 | 001,986,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0024.dll
[2013.08.22 04:36:36 | 001,993,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0026.dll
[2013.08.22 04:35:42 | 001,988,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0027.dll
[2013.08.22 04:36:25 | 001,819,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData002a.dll
[2013.08.22 04:36:09 | 003,132,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0039.dll
[2013.08.22 04:35:41 | 001,819,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData003e.dll
[2013.08.22 04:35:43 | 003,125,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0045.dll
[2013.08.22 04:35:44 | 003,125,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0046.dll
[2013.08.22 04:35:33 | 003,125,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0047.dll
[2013.08.22 04:35:45 | 003,125,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0049.dll
[2013.08.22 04:35:30 | 003,125,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData004a.dll
[2013.08.22 04:36:18 | 003,125,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData004b.dll
[2013.08.22 04:35:54 | 003,125,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData004c.dll
[2013.08.22 04:36:03 | 003,125,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData004e.dll
[2013.08.22 04:36:09 | 004,510,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0414.dll
[2013.08.22 04:36:22 | 004,511,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0416.dll
[2013.08.22 04:36:30 | 004,510,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0816.dll
[2013.08.22 04:35:53 | 001,986,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData081a.dll
[2013.08.22 04:35:36 | 001,986,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsData0c1a.dll
[2013.08.22 05:06:30 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Nlsdl.dll
[2013.08.22 05:16:31 | 004,164,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0002.dll
[2013.08.22 05:16:27 | 001,452,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0003.dll
[2013.08.22 05:16:25 | 012,038,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0007.dll
[2013.08.22 05:16:27 | 002,628,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0009.dll
[2013.08.22 05:16:24 | 009,892,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons000a.dll
[2013.08.22 05:16:24 | 006,237,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons000c.dll
[2013.08.22 05:16:23 | 001,722,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons000d.dll
[2013.08.22 05:16:29 | 005,654,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons000f.dll
[2013.08.22 05:16:29 | 004,175,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0010.dll
[2013.08.22 05:16:30 | 003,331,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0018.dll
[2013.08.22 05:16:29 | 006,014,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons001a.dll
[2013.08.22 05:16:34 | 006,585,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons001b.dll
[2013.08.22 05:16:30 | 006,346,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons001d.dll
[2013.08.22 05:16:33 | 001,236,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0020.dll
[2013.08.22 05:16:29 | 002,136,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0021.dll
[2013.08.22 05:16:32 | 005,499,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0022.dll
[2013.08.22 05:16:34 | 007,964,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0024.dll
[2013.08.22 05:16:31 | 005,791,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0026.dll
[2013.08.22 05:16:28 | 006,224,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0027.dll
[2013.08.22 05:16:32 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons002a.dll
[2013.08.22 05:16:27 | 001,782,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0039.dll
[2013.08.22 05:16:28 | 004,045,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons003e.dll
[2013.08.22 05:16:29 | 001,793,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0045.dll
[2013.08.22 05:16:29 | 001,808,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0046.dll
[2013.08.22 05:16:23 | 001,411,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0047.dll
[2013.08.22 05:16:30 | 001,558,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0049.dll
[2013.08.22 05:16:31 | 003,419,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons004a.dll
[2013.08.22 05:16:32 | 001,702,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons004b.dll
[2013.08.22 05:16:32 | 004,093,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons004c.dll
[2013.08.22 05:16:32 | 001,972,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons004e.dll
[2013.08.22 05:16:28 | 004,616,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0414.dll
[2013.08.22 05:16:29 | 005,090,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0416.dll
[2013.08.22 05:16:31 | 005,031,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0816.dll
[2013.08.22 05:16:31 | 007,042,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons081a.dll
[2013.08.22 05:16:29 | 006,917,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\NlsLexicons0c1a.dll
[2013.08.22 05:06:42 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\normaliz.dll
[2013.08.22 05:02:28 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\npmproxy.dll
[2013.08.22 03:54:17 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nrpsrv.dll
[2013.08.22 03:54:37 | 000,031,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nshhttp.dll
[2013.08.22 04:40:46 | 000,377,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nshipsec.dll
[2013.08.22 03:19:05 | 000,566,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nshwfp.dll
[2013.08.22 07:13:54 | 000,019,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nsi.dll
[2013.08.22 07:13:54 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\nsisvc.dll
[2013.08.22 06:29:30 | 000,171,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ntasn1.dll
[2013.08.22 07:13:53 | 001,445,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ntdll.dll
[2013.08.22 03:52:04 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ntdsapi.dll
[2013.08.22 03:52:28 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ntlanman.dll
[2013.08.22 04:30:34 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ntlanui2.dll
[2013.08.22 06:29:29 | 000,147,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ntmarta.dll
[2013.08.22 03:22:32 | 000,306,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ntprint.dll
[2013.08.22 03:19:05 | 000,643,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ntshrui.dll
[2013.08.22 04:45:13 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ntvdmcpl.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ntvdmd.dll
[2013.08.22 04:14:18 | 000,553,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\objsel.dll
[2013.08.22 04:09:12 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\occache.dll
[2013.08.22 04:55:50 | 000,163,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ocsetapi.dll
[2013.06.18 13:19:16 | 000,026,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odbc16gt.dll
[2013.08.22 04:47:14 | 000,637,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odbc32.dll
[2013.08.22 04:37:50 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odbc32gt.dll
[2013.08.22 05:04:09 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odbcbcp.dll
[2013.08.22 04:36:20 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odbcconf.dll
[2013.08.22 04:49:24 | 000,107,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odbccp32.dll
[2013.08.22 04:36:43 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odbccr32.dll
[2013.08.22 04:36:37 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odbccu32.dll
[2013.08.22 05:16:36 | 000,224,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odbcint.dll
[2013.08.22 05:01:18 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odbcji32.dll
[2013.08.22 05:01:11 | 000,315,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odbcjt32.dll
[2013.08.22 04:37:10 | 000,137,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odbctrac.dll
[2013.08.22 05:01:10 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\oddbse32.dll
[2013.08.22 05:01:05 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odexl32.dll
[2013.08.22 05:01:09 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odfox32.dll
[2013.08.22 05:01:05 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odpdx32.dll
[2013.08.22 05:01:12 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\odtext32.dll
[2013.08.22 04:17:37 | 000,103,936 | ---- | M] () -- C:\Windows\system32\OEMLicense.dll
[2013.08.22 04:44:32 | 000,217,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\offfilt.dll
[2013.08.22 05:04:55 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\offreg.dll
[2013.08.22 04:50:44 | 001,060,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ogldrv.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ole2.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ole2disp.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ole2nls.dll
[2013.08.22 06:21:43 | 001,092,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ole32.dll
[2013.08.22 03:42:31 | 000,280,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\oleacc.dll
[2013.08.22 05:07:07 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\oleacchooks.dll
[2013.08.22 05:16:11 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\oleaccrc.dll
[2013.08.22 06:19:45 | 000,552,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\oleaut32.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\olecli.dll
[2013.08.22 04:54:58 | 000,079,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\olecli32.dll
[2013.08.22 04:54:38 | 000,103,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\oledlg.dll
[2013.08.22 04:20:37 | 000,102,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\oleprn.dll
[2013.08.22 04:54:15 | 000,080,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\olepro32.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\OLESVR.DLL
[2013.08.22 04:54:54 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\olesvr32.dll
[2013.08.22 04:39:57 | 000,079,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\olethk32.dll
[2013.08.22 03:53:48 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\OnDemandConnRouteHelper.dll
[2013.08.22 03:42:42 | 000,199,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\onex.dll
[2013.08.22 04:41:25 | 001,070,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\onexui.dll
[2013.08.22 05:06:56 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\OobeFldr.dll
[2013.08.22 04:12:59 | 001,372,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\OpcServices.dll
[2012.11.16 16:58:48 | 000,050,176 | ---- | M] (Khronos Group) -- C:\Windows\system32\OpenCL.dll
[2013.08.22 05:03:20 | 000,737,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\opengl32.dll
[2012.11.16 17:00:46 | 000,065,024 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\system32\OpenVideo.dll
[2013.08.22 05:04:51 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\osbaseln.dll
[2013.08.22 05:06:12 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\OskSupport.dll
[2013.08.22 05:06:42 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\osuninst.dll
[2012.11.16 17:00:36 | 000,056,320 | ---- | M] (Advanced Micro Devices Inc.) -- C:\Windows\system32\OVDecode.dll
[2013.08.22 03:25:22 | 000,173,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\P2P.dll
[2013.08.22 03:42:40 | 000,360,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\P2PGraph.dll
[2013.08.22 04:21:39 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\p2pnetsh.dll
[2013.08.22 03:17:38 | 000,359,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\p2psvc.dll
[2013.08.22 05:06:55 | 000,068,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\packager.dll
[2013.08.22 03:20:22 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PackageStateRoaming.dll
[2013.08.22 05:02:36 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\panmap.dll
[2013.08.22 03:45:11 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pautoenr.dll
[2013.08.22 05:03:31 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pcacli.dll
[2013.08.22 03:49:00 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pcadm.dll
[2013.08.22 05:15:52 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pcaevts.dll
[2013.08.22 03:28:46 | 000,380,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pcasvc.dll
[2013.08.22 04:46:48 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pcaui.dll
[2013.08.22 03:48:28 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PCPKsp.dll
[2013.08.22 03:52:52 | 000,341,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PCPTpm12.dll
[2013.10.05 09:00:56 | 000,220,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pcsvDevice.dll
[2013.08.22 05:13:22 | 000,035,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pcwum.dll
[2013.08.22 04:17:54 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pcwutl.dll
[2013.08.22 03:52:31 | 000,254,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pdh.dll
[2013.08.22 04:56:49 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pdhui.dll
[2013.08.22 16:02:25 | 000,163,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PeerDist.dll
[2013.08.22 16:02:25 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PeerDistAD.dll
[2013.08.22 16:02:29 | 000,805,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PeerDistCacheProvider.dll
[2013.08.22 16:02:25 | 000,400,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PeerDistCleaner.dll
[2013.08.22 16:02:25 | 000,045,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PeerDistHttpTrans.dll
[2013.08.22 16:02:29 | 001,165,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PeerDistSh.dll
[2013.08.22 16:02:25 | 001,778,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PeerDistSvc.dll
[2013.08.22 16:02:25 | 000,138,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PeerDistWSDDiscoProv.dll
[2013.08.22 03:47:23 | 000,041,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\perfctrs.dll
[2013.08.22 03:53:33 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\perfdisk.dll
[2013.08.22 03:53:52 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\perfnet.dll
[2013.08.22 03:53:17 | 000,035,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\perfos.dll
[2013.08.22 03:53:53 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\perfproc.dll
[2013.08.22 03:29:07 | 000,829,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\perftrack.dll
[2013.08.22 05:04:14 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\perfts.dll
[2013.08.22 03:39:44 | 000,345,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PhotoMetadataHandler.dll
[2013.08.22 04:06:43 | 000,282,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\photowiz.dll
[2013.08.22 05:00:41 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pid.dll
[2013.08.22 04:51:43 | 000,739,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pidgenx.dll
[2013.08.22 05:16:56 | 000,035,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pifmgr.dll
[2013.08.22 03:48:52 | 000,202,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pku2u.dll
[2013.08.22 04:18:45 | 001,477,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pla.dll
[2013.08.22 04:37:29 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\playlistfolder.dll
[2013.08.22 04:58:09 | 000,077,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PlaySndSrv.dll
[2013.08.22 03:17:03 | 000,204,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PlayToDevice.dll
[2013.08.22 03:25:56 | 000,137,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PlayToManager.dll
[2013.08.22 04:57:00 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PlayToStatusProvider.dll
[2013.10.10 15:53:39 | 000,029,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ploptin.dll
[2013.08.22 16:02:27 | 000,697,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pmcsnap.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pmspl.dll
[2013.08.22 04:59:15 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pngfilt.dll
[2013.08.22 03:12:28 | 000,560,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pnidui.dll
[2013.08.22 04:31:34 | 000,107,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pnpclean.dll
[2013.08.22 04:52:20 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pnppolicy.dll
[2013.08.22 05:04:41 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pnpts.dll
[2013.08.22 04:20:43 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pnpui.dll
[2013.08.22 04:34:31 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PNPXAssoc.dll
[2013.08.22 04:42:59 | 000,054,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PNPXAssocPrx.dll
[2013.08.22 03:44:32 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pnrpauto.dll
[2013.08.22 03:41:51 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Pnrphc.dll
[2013.08.22 03:52:11 | 000,068,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pnrpnsp.dll
[2013.08.22 03:32:47 | 000,326,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pnrpsvc.dll
[2013.08.22 03:51:04 | 000,286,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\polstore.dll
[2013.08.22 03:20:34 | 000,525,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PortableDeviceApi.dll
[2013.08.22 03:18:31 | 000,115,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PortableDeviceClassExtension.dll
[2013.08.22 03:38:08 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PortableDeviceConnectApi.dll
[2013.08.22 04:33:13 | 000,427,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PortableDeviceStatus.dll
[2013.08.22 04:30:23 | 000,130,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PortableDeviceSyncProvider.dll
[2013.08.22 03:18:35 | 000,148,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PortableDeviceTypes.dll
[2013.08.22 04:18:41 | 000,131,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PortableDeviceWiaCompat.dll
[2013.08.22 04:18:54 | 000,176,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PortableDeviceWMDRM.dll
[2013.08.22 03:52:06 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pots.dll
[2013.08.22 04:24:02 | 000,453,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\powercpl.dll
[2013.08.22 03:54:34 | 000,232,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PowerWmiProvider.dll
[2013.08.22 06:31:41 | 000,251,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\powrprof.dll
[2013.08.22 16:02:27 | 000,228,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ppcsnap.dll
[2013.08.22 04:15:47 | 000,046,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PresentationHostProxy.dll
[2013.08.22 05:17:43 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prflbmsg.dll
[2013.08.22 04:03:29 | 000,493,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PrintDialogs.dll
[2013.08.22 04:59:40 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\printfilterpipelineprxy.dll
[2013.08.22 03:21:27 | 000,035,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PrintIsolationProxy.dll
[2013.08.22 03:07:41 | 001,057,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\printui.dll
[2013.08.22 05:17:04 | 016,735,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prm0001.dll
[2013.08.22 05:17:04 | 006,472,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prm0005.dll
[2013.08.22 05:17:02 | 007,045,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prm0006.dll
[2013.08.22 05:17:04 | 011,601,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prm0007.dll
[2013.08.22 05:17:02 | 008,229,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prm0008.dll
[2013.08.22 05:17:03 | 005,738,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prm0009.dll
[2013.08.22 05:17:02 | 008,070,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prm000b.dll
[2013.08.22 05:17:05 | 010,402,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prm000e.dll
[2013.08.22 05:17:02 | 009,481,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prm0013.dll
[2013.08.22 05:17:02 | 007,849,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prm0015.dll
[2013.08.22 05:17:04 | 008,628,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prm0019.dll
[2013.08.22 05:17:02 | 014,328,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prm001f.dll
[2013.08.22 04:58:11 | 000,134,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prncache.dll
[2013.08.22 04:31:11 | 000,460,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prnfldr.dll
[2013.08.22 04:06:56 | 000,195,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prnntfy.dll
[2013.08.22 04:50:50 | 000,122,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prntvpt.dll
[2013.08.22 03:49:06 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\procinst.dll
[2013.08.22 07:13:53 | 000,051,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\profapi.dll
[2013.08.22 03:45:19 | 000,046,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\profext.dll
[2013.08.22 04:32:46 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\profprov.dll
[2013.10.10 12:12:19 | 000,184,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\profsvc.dll
[2013.08.22 03:19:57 | 000,101,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\profsvcext.dll
[2013.08.22 06:25:34 | 001,201,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\propsys.dll
[2013.08.22 03:34:38 | 000,608,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\provcore.dll
[2013.08.22 03:17:17 | 000,321,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\provsvc.dll
[2013.08.22 03:51:21 | 000,211,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\provthrd.dll
[2013.08.22 03:45:57 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ProximityCommon.dll
[2013.08.22 03:46:15 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ProximityCommonPal.dll
[2013.08.22 03:52:12 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ProximityRtapiPal.dll
[2013.08.22 03:40:16 | 000,241,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ProximityService.dll
[2013.08.22 03:40:26 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ProximityServicePal.dll
[2013.08.22 03:46:09 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\prvdmofcomp.dll
[2013.08.22 06:31:40 | 000,016,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\psapi.dll
[2013.08.22 07:13:53 | 000,059,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PSHED.DLL
[2013.08.22 04:29:48 | 000,457,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\psisdecd.dll
[2013.08.22 03:22:04 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PSModuleDiscoveryProvider.dll
[2013.09.19 05:34:37 | 000,104,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\psmsrv.dll
[2013.08.22 04:54:22 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pstask.dll
[2013.08.22 05:00:53 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pstorec.dll
[2013.08.22 03:20:04 | 000,162,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\puiapi.dll
[2013.08.22 04:13:30 | 000,327,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\puiobj.dll
[2013.08.22 04:00:51 | 000,667,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\PurchaseWindowsLicense.dll
[2013.08.22 04:19:12 | 000,305,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pwlauncher.dll
[2013.08.22 04:32:44 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pwrshplugin.dll
[2013.08.22 04:36:29 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\pwsso.dll
[2013.08.22 04:21:10 | 000,171,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\QAGENT.DLL
[2013.08.22 04:41:34 | 000,338,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\QAGENTRT.DLL
[2013.08.22 04:16:33 | 000,185,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\qasf.dll
[2013.08.22 04:50:04 | 000,179,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\qcap.dll
[2013.08.22 04:46:31 | 000,062,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\QCLIPROV.DLL
[2013.08.22 04:48:10 | 000,273,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\qdv.dll
[2013.08.22 04:47:29 | 000,469,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\qdvd.dll
[2013.08.22 04:28:12 | 000,488,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\qedit.dll
[2013.08.22 05:16:59 | 000,733,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\qedwipes.dll
[2013.08.22 04:05:38 | 000,801,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\qmgr.dll
[2013.08.22 04:58:22 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\qmgrprxy.dll
[2013.08.22 04:20:14 | 000,153,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\QSHVHOST.DLL
[2013.08.22 04:20:13 | 000,091,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\QSVRMGMT.DLL
[2013.08.22 04:18:28 | 001,352,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\quartz.dll
[2013.08.22 04:34:42 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Query.dll
[2013.08.22 04:47:52 | 000,077,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\QUTIL.DLL
[2013.08.22 03:41:13 | 000,256,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\qwave.dll
[2013.08.22 03:24:18 | 001,370,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RacEngn.dll
[2013.08.22 04:21:13 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\racpldlg.dll
[2013.08.22 05:04:37 | 000,091,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\radardt.dll
[2013.08.22 04:43:36 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\radarrs.dll
[2013.08.22 04:07:50 | 000,282,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RADCUI.dll
[2013.08.22 03:54:36 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasadhlp.dll
[2013.08.22 03:17:54 | 000,603,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasapi32.dll
[2013.08.22 04:55:59 | 000,093,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasauto.dll
[2013.08.22 03:19:38 | 000,161,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rascfg.dll
[2013.08.22 03:35:46 | 000,420,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\raschap.dll
[2013.08.22 03:45:37 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\raschapext.dll
[2013.08.22 05:04:41 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasctrs.dll
[2013.08.22 03:28:39 | 000,217,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rascustom.dll
[2013.08.22 04:32:22 | 000,060,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasdiag.dll
[2013.08.22 04:08:27 | 000,779,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasdlg.dll
[2013.08.22 03:59:02 | 000,835,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasgcw.dll
[2013.08.22 03:49:40 | 000,138,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasman.dll
[2013.08.22 03:23:26 | 000,456,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasmans.dll
[2013.08.22 03:45:41 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasmbmgr.dll
[2013.08.22 04:31:47 | 000,443,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RASMM.dll
[2013.08.22 04:22:39 | 000,251,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasmontr.dll
[2013.08.22 05:04:20 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasmxs.dll
[2013.08.22 04:46:27 | 000,396,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasplap.dll
[2013.08.22 04:39:13 | 000,183,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasppp.dll
[2013.08.22 05:04:22 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rasser.dll
[2013.08.22 03:52:14 | 000,208,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rastapi.dll
[2013.08.22 03:24:50 | 000,513,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rastls.dll
[2013.08.22 03:45:34 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rastlsext.dll
[2013.08.22 03:21:40 | 000,513,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rdbui.dll
[2013.08.22 05:06:12 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rdpcfgex.dll
[2013.08.22 03:58:01 | 003,083,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rdpcore.dll
[2013.08.22 16:02:28 | 002,823,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rdpcorets.dll
[2013.08.22 04:20:41 | 000,208,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rdpencom.dll
[2013.08.22 16:02:28 | 000,267,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rdpendp.dll
[2013.08.22 05:02:50 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RdpSaPs.dll
[2013.08.22 16:02:28 | 000,119,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rdpudd.dll
[2013.08.22 03:21:13 | 000,065,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RDSAppXHelper.dll
[2013.08.22 03:43:12 | 000,040,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rdsdwmdr.dll
[2013.08.22 04:16:49 | 000,855,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rdvidcrl.dll
[2013.08.22 04:13:07 | 000,066,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rdvvmtransport.dll
[2013.08.22 04:06:52 | 000,763,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ReAgent.dll
[2013.08.22 03:46:14 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ReAgentTask.dll
[2013.08.22 04:18:59 | 000,093,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\recovery.dll
[2013.08.22 05:02:36 | 000,075,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\regapi.dll
[2013.08.22 04:38:15 | 000,040,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RegCtrl.dll
[2013.08.22 05:07:08 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\regidle.dll
[2013.08.22 03:53:20 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\regsvc.dll
[2013.08.22 03:50:55 | 000,171,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ReInfo.dll
[2013.08.22 04:22:30 | 000,208,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\remotepg.dll
[2013.08.22 04:30:17 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RemoveDeviceContextHandler.dll
[2013.08.22 04:37:49 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RemoveDeviceElevated.dll
[2013.08.22 06:25:01 | 000,223,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RESAMPLEDMO.DLL
[2013.08.22 04:01:41 | 000,811,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\reseteng.dll
[2013.08.22 04:46:24 | 000,219,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\resutils.dll
[2013.08.22 16:02:28 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rfxvmt.dll
[2013.08.22 04:55:36 | 000,150,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rgb9rast.dll
[2013.08.22 05:04:54 | 000,513,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\riched20.dll
[2013.08.22 05:06:22 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\riched32.dll
[2013.08.22 03:46:25 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RMapi.dll
[2013.08.22 05:14:37 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rnr20.dll
[2013.08.22 03:43:38 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RoamingSecurity.dll
[2013.08.10 01:39:23 | 000,155,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rometadata.dll
[2013.08.22 16:02:22 | 000,039,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RotMgr.dll
[2013.08.22 07:13:54 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RpcEpMap.dll
[2013.08.22 05:03:05 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rpchttp.dll
[2013.08.22 05:03:29 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RpcNs4.dll
[2013.08.22 04:57:39 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rpcnsh.dll
[2013.08.22 07:13:53 | 000,802,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rpcrt4.dll
[2013.08.22 06:21:42 | 000,049,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RpcRtRemote.dll
[2013.08.22 03:44:30 | 000,594,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rpcss.dll
[2013.08.22 06:29:30 | 000,188,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rsaenh.dll
[2013.08.22 04:27:28 | 000,115,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rshx32.dll
[2013.08.22 04:30:25 | 000,149,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RstrtMgr.dll
[2013.08.22 04:20:37 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rtffilt.dll
[2013.08.22 05:03:14 | 000,122,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rtm.dll
[2013.08.22 03:54:38 | 000,040,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\rtutils.dll
[2013.08.22 06:19:23 | 000,096,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\RTWorkQ.dll
[2013.08.22 03:54:17 | 000,062,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\samcli.dll
[2013.08.22 03:54:33 | 000,062,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\samlib.dll
[2013.10.05 09:29:53 | 000,595,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\samsrv.dll
[2013.08.22 05:05:46 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sas.dll
[2013.08.22 04:09:54 | 000,726,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sbe.dll
[2013.08.22 04:01:34 | 000,141,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sbeio.dll
[2013.08.22 05:15:49 | 000,065,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sberes.dll
[2013.08.22 04:34:38 | 000,245,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\scansetting.dll
[2013.08.22 04:48:39 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SCardDlg.dll
[2013.08.22 04:53:37 | 000,140,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SCardSvr.dll
[2013.08.22 04:32:22 | 000,101,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\scavengeui.dll
[2013.08.22 05:01:21 | 000,065,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sccls.dll
[2013.08.22 03:49:34 | 000,105,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ScDeviceEnum.dll
[2013.08.22 03:48:17 | 000,207,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\scecli.dll
[2013.08.22 03:48:20 | 000,391,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\scesrv.dll
[2013.08.22 03:55:02 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\scext.dll
[2013.08.22 03:49:23 | 000,348,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\schannel.dll
[2013.08.22 03:53:19 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\schedcli.dll
[2013.08.22 03:17:54 | 000,976,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\schedsvc.dll
[2013.08.22 04:59:08 | 000,242,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\scksp.dll
[2013.08.22 04:45:01 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\scripto.dll
[2013.08.22 04:54:17 | 000,165,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\scrobj.dll
[2013.08.22 16:02:30 | 000,463,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\scrptadm.dll
[2013.08.22 04:54:35 | 000,156,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\scrrun.dll
[2013.08.22 03:54:30 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sdhcinst.dll
[2013.08.22 04:49:08 | 000,176,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sdiageng.dll
[2013.08.22 04:29:11 | 000,151,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sdiagprv.dll
[2013.08.22 04:53:36 | 000,043,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sdiagschd.dll
[2013.08.22 04:47:00 | 000,420,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sdohlp.dll
[2013.08.22 03:10:27 | 000,830,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SearchFolder.dll
[2013.08.22 07:13:54 | 000,252,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sechost.dll
[2013.08.22 05:03:44 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\seclogon.dll
[2013.08.22 03:42:32 | 000,334,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\secproc.dll
[2013.08.22 03:42:29 | 000,332,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\secproc_isv.dll
[2013.08.22 04:56:28 | 000,086,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\secproc_ssp.dll
[2013.08.22 04:56:28 | 000,086,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\secproc_ssp_isv.dll
[2013.08.22 03:55:53 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\secur32.dll
[2013.08.22 05:14:43 | 000,005,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\security.dll
[2013.08.22 04:24:59 | 000,066,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sendmail.dll
[2013.08.22 03:46:38 | 000,054,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Sens.dll
[2013.08.22 05:07:04 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SensApi.dll
[2013.08.22 16:02:29 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SensorPerformanceEvents.dll
[2013.08.22 16:02:18 | 000,185,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SensorsApi.dll
[2013.08.22 16:02:20 | 000,128,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SensorsClassExtension.dll
[2013.08.22 16:02:22 | 002,119,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SensorsCpl.dll
[2013.08.22 16:02:21 | 000,174,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sensrsvc.dll
[2013.08.22 04:48:16 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\serialui.dll
[2013.08.22 05:02:44 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\serwvdrv.dll
[2013.08.22 03:14:04 | 000,280,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SessEnv.dll
[2013.08.22 05:06:31 | 000,055,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\setbcdlocale.dll
[2013.08.22 04:34:50 | 000,035,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SetNetworkLocation.dll
[2013.08.22 04:24:37 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SetProxyCredential.dll
[2013.08.22 03:12:59 | 000,130,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SettingMonitor.dll
[2013.10.11 17:34:23 | 002,038,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SettingsHandlers.dll
[2013.08.22 03:04:04 | 000,454,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SettingSync.dll
[2013.09.26 07:32:36 | 000,584,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SettingSyncCore.dll
[2013.08.22 03:07:26 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SettingSyncPolicy.dll
[2013.08.22 06:31:42 | 001,766,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\setupapi.dll
[2013.08.22 05:00:12 | 000,076,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\setupcln.dll
[2013.08.22 05:16:00 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\setupetw.dll
[2013.08.22 05:13:28 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sfc.dll
[2013.08.22 05:06:58 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sfc_os.dll
[2013.08.22 03:18:24 | 000,137,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shacct.dll
[2013.08.22 04:09:13 | 000,340,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sharemediacpl.dll
[2013.08.22 06:25:37 | 000,476,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SHCore.dll
[2013.08.22 05:07:29 | 000,206,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shdocvw.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SHELL.DLL
[2013.11.05 19:51:37 | 018,642,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shell32.dll
[2013.08.22 05:16:24 | 000,517,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shellstyle.dll
[2013.08.22 05:02:27 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shfolder.dll
[2013.08.22 05:07:18 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shgina.dll
[2013.08.22 05:06:52 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shimeng.dll
[2013.08.22 04:21:25 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shimgvw.dll
[2013.08.22 06:25:37 | 000,263,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shlwapi.dll
[2013.08.22 04:38:08 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shpafact.dll
[2013.10.08 06:58:55 | 000,094,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shsetup.dll
[2013.08.22 03:27:04 | 000,564,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shsvcs.dll
[2013.08.22 05:06:32 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shunimpl.dll
[2013.08.22 04:14:54 | 000,416,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\shwebsvc.dll
[2013.08.22 04:23:25 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\signdrv.dll
[2013.08.22 03:41:13 | 000,119,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SimAuth.dll
[2013.08.22 03:28:40 | 000,141,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SimCfg.dll
[2013.08.22 05:05:45 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sisbkup.dll
[2013.08.22 03:15:55 | 000,055,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SkyDriveShell.dll
[2013.09.26 07:44:58 | 000,552,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SkyDriveTelemetry.dll
[2013.08.22 05:01:09 | 000,148,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\slc.dll
[2013.08.22 03:46:32 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\slcext.dll
[2012.01.23 13:29:14 | 000,122,880 | ---- | M] (Multicore Ware) -- C:\Windows\system32\SlotMaximizerAg.dll
[2012.01.23 13:29:14 | 002,478,592 | ---- | M] (Multicore Ware) -- C:\Windows\system32\SlotMaximizerBe.dll
[2013.08.22 03:27:30 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\slpts.dll
[2013.06.18 13:32:15 | 000,125,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\slr100.dll
[2013.08.22 05:01:16 | 000,075,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\slwga.dll
[2013.08.22 03:34:16 | 001,019,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SmartcardCredentialProvider.dll
[2013.08.22 04:48:01 | 000,467,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SmartCardSimulator.dll
[2013.08.22 04:27:36 | 000,083,968 | ---- | M] (Microsoft) -- C:\Windows\system32\SMBHelperClass.dll
[2013.08.22 03:45:05 | 000,163,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\smbwmiv2.dll
[2013.08.22 07:13:51 | 000,666,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SmiEngine.dll
[2013.08.22 03:53:34 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\smphost.dll
[2013.08.22 04:37:44 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SmsDeviceAccessRevocation.dll
[2013.08.22 04:25:17 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SMSRouter.dll
[2013.08.22 03:16:48 | 000,214,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SndVolSSO.dll
[2013.08.22 03:54:44 | 000,025,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\snmpapi.dll
[2013.08.22 16:02:28 | 000,214,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SNTSearch.dll
[2013.08.22 04:40:22 | 000,124,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\softkbd.dll
[2013.08.22 05:06:16 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\softpub.dll
[2013.08.22 05:06:32 | 000,042,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SortServer2003Compat.dll
[2013.08.22 05:06:41 | 000,041,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SortWindows61.dll
[2013.08.22 05:06:40 | 000,056,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SortWindows6Compat.dll
[2013.08.22 04:12:34 | 000,468,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SpaceControl.dll
[2013.08.22 05:03:55 | 000,068,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spbcd.dll
[2013.08.22 05:06:28 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spfileq.dll
[2013.08.22 05:06:19 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SPInf.dll
[2013.08.22 05:04:59 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spmpm.dll
[2013.08.22 05:02:38 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spnet.dll
[2013.08.22 05:06:29 | 000,046,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spoolss.dll
[2013.08.22 04:55:49 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spopk.dll
[2013.08.22 04:40:40 | 000,222,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spp.dll
[2013.08.22 04:59:43 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sppc.dll
[2013.08.22 04:43:39 | 000,421,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sppcext.dll
[2013.08.22 04:20:10 | 000,438,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sppcomapi.dll
[2013.08.22 04:22:29 | 000,298,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sppcommdlg.dll
[2013.08.22 03:33:25 | 000,555,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sppinst.dll
[2013.08.22 04:43:30 | 000,125,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sppnp.dll
[2013.08.22 06:29:30 | 001,129,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sppobjs.dll
[2013.08.22 06:29:31 | 000,197,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sppwinob.dll
[2013.08.22 04:49:54 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sppwmi.dll
[2013.08.22 05:04:21 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spwinsat.dll
[2013.08.22 04:23:20 | 000,353,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spwizeng.dll
[2013.08.22 05:16:47 | 005,864,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spwizimg.dll
[2013.08.22 05:16:45 | 000,007,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spwizres.dll
[2013.08.22 04:29:23 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\spwmp.dll
[2013.08.22 04:53:50 | 000,112,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sqlcecompact40.dll
[2013.08.22 04:53:53 | 000,160,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sqlceoledb40.dll
[2013.08.22 04:53:54 | 000,651,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sqlceqp40.dll
[2013.08.22 04:58:44 | 000,396,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sqlcese40.dll
[2012.02.11 09:00:10 | 003,005,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sqlncli11.dll
[2012.02.11 08:04:18 | 000,521,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SqlServerSpatial110.dll
[2013.08.22 04:53:58 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sqlsrv32.dll
[2013.06.18 13:19:11 | 000,188,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sqlunirl.dll
[2013.06.18 13:18:01 | 000,017,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sqlwid.dll
[2013.06.18 13:18:01 | 000,043,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sqlwoa.dll
[2013.08.22 06:24:54 | 000,231,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sqmapi.dll
[2013.08.22 04:26:28 | 000,307,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srchadmin.dll
[2013.08.22 04:30:06 | 000,058,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srclient.dll
[2013.08.22 04:26:03 | 000,388,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srcore.dll
[2013.08.22 05:16:07 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SrEvents.dll
[2013.08.22 04:21:37 | 001,740,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SRH.dll
[2013.08.22 04:25:25 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srhelper.dll
[2013.08.22 16:02:18 | 000,279,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srm.dll
[2013.08.22 16:02:18 | 000,935,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srmclient.dll
[2013.08.22 16:02:22 | 000,090,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srmlib.dll
[2013.08.22 16:02:18 | 000,470,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srmscan.dll
[2013.08.22 16:02:18 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srmshell.dll
[2013.08.22 16:02:18 | 000,197,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srmstormod.dll
[2013.08.22 16:02:18 | 000,068,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srmtrace.dll
[2013.08.22 16:02:18 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srm_ps.dll
[2013.08.22 16:02:24 | 000,304,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SrpUxNativeSnapIn.dll
[2013.08.22 04:25:54 | 000,235,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srrstr.dll
[2013.08.22 03:52:42 | 000,035,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srumapi.dll
[2013.08.22 03:45:10 | 000,144,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srumsvc.dll
[2013.08.22 06:29:31 | 000,108,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srvcli.dll
[2013.08.22 03:43:43 | 000,244,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srvsvc.dll
[2013.08.22 04:31:11 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\srwmi.dll
[2013.08.22 03:53:04 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sscore.dll
[2013.08.22 03:54:27 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sscoreext.dll
[2013.08.22 05:02:53 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ssdpapi.dll
[2013.08.22 03:35:57 | 000,182,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ssdpsrv.dll
[2013.08.22 07:13:54 | 000,134,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sspicli.dll
[2013.08.22 07:13:54 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sspisrv.dll
[2013.08.22 07:13:51 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SSShim.dll
[2013.08.22 03:44:14 | 000,128,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sstpsvc.dll
[2013.08.22 03:22:19 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Startupscan.dll
[2013.08.22 03:45:29 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\stclient.dll
[2013.08.22 04:43:55 | 000,218,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sti.dll
[2013.08.22 04:28:58 | 000,117,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sti_ci.dll
[2013.08.22 03:13:42 | 000,289,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\stobject.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\storage.dll
[2013.08.22 04:32:18 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\StorageContextHandler.dll
[2013.08.22 03:31:38 | 001,373,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\storagewmi.dll
[2013.08.22 03:46:56 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\storagewmi_passthru.dll
[2013.08.22 03:19:29 | 000,166,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\storewuauth.dll
[2013.08.22 04:42:56 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Storprop.dll
[2013.08.22 04:55:35 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\StorSvc.dll
[2013.08.22 06:32:57 | 000,023,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\streamci.dll
[2013.08.22 03:31:31 | 000,425,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\StructuredQuery.dll
[2013.08.22 03:47:45 | 000,064,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SubscriptionMgr.dll
[2013.08.22 04:26:31 | 000,592,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sud.dll
[2013.08.22 04:54:45 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\svsvc.dll
[2013.08.22 03:27:38 | 000,352,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\swprv.dll
[2013.08.22 04:56:11 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sxproxy.dll
[2013.08.22 07:13:51 | 000,488,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sxs.dll
[2013.08.22 03:44:36 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sxshared.dll
[2013.08.22 05:08:30 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sxssrv.dll
[2013.08.22 04:54:02 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sxsstore.dll
[2013.08.22 04:25:04 | 002,165,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SyncCenter.dll
[2013.08.22 04:47:37 | 000,074,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\synceng.dll
[2013.10.23 05:54:49 | 003,422,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SyncEngine.dll
[2013.08.22 05:02:02 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SyncHostps.dll
[2013.08.22 04:20:34 | 000,316,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SyncInfrastructure.dll
[2013.08.22 05:01:35 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SyncInfrastructureps.dll
[2013.08.22 04:52:26 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Syncreg.dll
[2013.08.22 05:07:10 | 000,156,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\syncui.dll
[2013.08.22 05:03:03 | 000,153,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sysclass.dll
[2013.08.22 04:34:44 | 000,336,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SysFxUI.dll
[2013.08.22 03:42:53 | 000,944,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sysmain.dll
[2013.08.22 03:53:39 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\sysntfy.dll
[2013.08.22 05:03:01 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\syssetup.dll
[2013.08.22 04:11:29 | 000,272,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\systemcpl.dll
[2013.08.22 03:53:30 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SystemEventsBrokerClient.dll
[2013.08.22 03:50:12 | 000,197,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SystemEventsBrokerServer.dll
[2013.08.22 03:21:19 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SystemSettings.DeviceEncryptionHandlers.dll
[2013.08.22 03:18:47 | 000,390,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SystemSettings.Handlers.dll
[2013.08.22 03:13:18 | 001,358,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SystemSettingsAdminFlowUI.dll
[2013.08.22 03:22:19 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\SystemSettingsDatabase.dll
[2013.08.22 05:03:52 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\t2embed.dll
[2013.08.22 04:38:47 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Tabbtn.dll
[2013.08.22 04:48:41 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TabbtnEx.dll
[2013.08.22 04:58:06 | 000,128,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TabSvc.dll
[2013.06.18 13:41:32 | 000,019,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tapi.dll
[2013.08.22 04:46:31 | 000,846,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tapi3.dll
[2013.08.22 04:42:27 | 000,196,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tapi32.dll
[2013.08.22 04:51:13 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tapilua.dll
[2013.08.22 04:38:33 | 000,044,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TapiMigPlugin.dll
[2013.08.22 05:04:40 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tapiperf.dll
[2013.08.22 04:33:38 | 000,248,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tapisrv.dll
[2013.08.22 04:56:06 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TapiSysprep.dll
[2013.08.22 05:16:18 | 000,108,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tapiui.dll
[2013.08.22 04:29:40 | 000,226,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\taskbarcpl.dll
[2013.08.22 03:20:11 | 000,385,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\taskcomp.dll
[2013.08.22 06:30:48 | 000,785,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\taskschd.dll
[2013.08.22 03:47:51 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TaskSchdPS.dll
[2013.08.22 03:54:13 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tbs.dll
[2013.08.22 04:12:06 | 000,178,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tcpipcfg.dll
[2013.08.22 03:55:00 | 000,008,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TcpipSetup.dll
[2013.08.22 04:56:27 | 000,031,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tcpmib.dll
[2013.08.22 03:21:24 | 000,163,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tcpmon.dll
[2013.08.22 04:31:46 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tcpmonui.dll
[2013.08.22 03:43:36 | 000,749,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tdh.dll
[2013.08.22 04:47:03 | 000,351,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\termmgr.dll
[2013.08.22 03:13:53 | 000,862,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\termsrv.dll
[2013.08.22 03:52:55 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TetheringIeProvider.dll
[2013.08.22 03:23:12 | 000,229,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TetheringMgr.dll
[2013.08.22 03:29:25 | 000,155,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TetheringStation.dll
[2013.08.22 04:16:51 | 002,544,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\themecpl.dll
[2013.08.22 03:51:40 | 000,037,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\themeservice.dll
[2013.08.22 04:24:17 | 002,810,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\themeui.dll
[2013.08.22 03:47:24 | 000,040,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\threadpoolwinrt.dll
[2013.08.22 03:19:14 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\thumbcache.dll
[2013.08.22 03:53:50 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TimeBrokerClient.dll
[2013.08.22 03:45:36 | 000,173,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TimeBrokerServer.dll
[2013.08.22 05:04:42 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TimeDateMUICallback.dll
[2013.08.22 03:47:22 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TimeSyncTask.dll
[2013.08.22 05:03:00 | 000,046,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tlscsp.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TOOLHELP.DLL
[2013.08.22 04:20:41 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tpmcompc.dll
[2013.08.22 03:38:45 | 000,140,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TpmTasks.dll
[2013.08.22 03:46:52 | 000,367,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tpmvsc.dll
[2013.08.22 03:45:21 | 002,633,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tquery.dll
[2013.08.22 04:58:09 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\traffic.dll
[2013.08.22 03:47:21 | 000,088,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\trkwks.dll
[2013.08.22 05:03:47 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tsbyuv.dll
[2013.08.22 16:02:24 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tscfgwmi.dll
[2013.08.22 05:02:01 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TSChannel.dll
[2013.08.22 05:12:14 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tsddd.dll
[2013.08.22 04:45:03 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tsgqec.dll
[2013.09.14 13:33:08 | 000,345,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tsmf.dll
[2013.08.22 03:50:19 | 000,077,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TSpkg.dll
[2013.08.22 04:37:26 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TsUsbGDCoInstaller.dll
[2013.08.22 05:01:37 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
[2013.10.05 09:40:54 | 000,795,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TSWorkspace.dll
[2013.08.22 03:38:53 | 000,161,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TtlsAuth.dll
[2013.08.22 03:32:30 | 000,231,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TtlsCfg.dll
[2013.08.22 03:46:43 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\TtlsExt.dll
[2013.08.22 04:37:38 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tvratings.dll
[2013.08.22 04:30:09 | 000,124,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\twext.dll
[2013.08.22 06:25:37 | 000,431,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\twinapi.appcore.dll
[2013.08.22 03:18:18 | 000,548,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\twinapi.dll
[2013.10.10 11:27:01 | 000,869,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\twinui.appcore.dll
[2013.11.05 15:30:00 | 011,674,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\twinui.dll
[2013.08.22 03:44:45 | 000,091,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\txflog.dll
[2013.08.22 05:12:25 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\txfw32.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\typelib.dll
[2013.08.22 05:17:10 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tzres.dll
[2013.08.22 05:16:46 | 000,003,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\tzsyncres.dll
[2013.08.22 03:49:54 | 000,158,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ubpm.dll
[2013.08.22 04:37:59 | 000,047,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ucmhc.dll
[2013.08.22 04:38:49 | 000,055,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\udhisapi.dll
[2013.08.22 03:20:50 | 000,609,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\uDWM.dll
[2013.08.22 03:52:13 | 000,070,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\uexfat.dll
[2013.08.22 03:52:13 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ufat.dll
[2013.08.22 03:41:38 | 000,223,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\UIAnimation.dll
[2013.10.05 09:21:38 | 000,920,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\UIAutomationCore.dll
[2013.08.22 05:16:10 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\UIAutomationCoreRes.dll
[2013.08.22 04:22:02 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\uicom.dll
[2013.08.22 04:32:27 | 000,165,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\uireng.dll
[2013.08.22 04:22:14 | 003,294,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\UIRibbon.dll
[2013.08.22 05:14:43 | 000,638,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\UIRibbonRes.dll
[2013.08.22 03:54:28 | 000,122,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ulib.dll
[2013.08.22 03:39:31 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\umb.dll
[2013.08.22 05:04:04 | 000,018,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\umdmxfrm.dll
[2013.08.22 05:07:22 | 000,101,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\umpnpmgr.dll
[2013.08.22 03:53:16 | 000,058,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\umpo.dll
[2013.08.22 03:37:30 | 000,039,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\umpoext.dll
[2013.08.22 03:43:13 | 000,046,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\umpowmi.dll
[2013.08.22 16:02:25 | 000,239,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\umrdp.dll
[2013.08.22 04:38:40 | 000,202,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\unattend.dll
[2013.08.22 05:03:51 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\unimdmat.dll
[2013.08.22 04:55:37 | 000,016,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\uniplat.dll
[2013.08.22 03:52:19 | 000,485,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\untfs.dll
[2013.08.22 04:41:24 | 000,304,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\upnp.dll
[2013.08.22 03:16:50 | 000,307,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\upnphost.dll
[2013.08.22 05:04:53 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ureg.dll
[2013.08.22 04:55:33 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\url.dll
[2013.10.19 04:02:46 | 001,156,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\urlmon.dll
[2013.08.22 04:54:47 | 000,114,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\usbceip.dll
[2013.08.22 04:47:40 | 000,225,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\usbmon.dll
[2013.08.22 05:03:22 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\usbperf.dll
[2013.08.22 04:47:08 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\usbui.dll
[2013.08.22 06:24:56 | 001,370,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\user32.dll
[2013.08.22 04:31:47 | 000,065,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\UserAccountControlSettings.dll
[2013.08.22 03:56:58 | 001,160,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\usercpl.dll
[2013.08.22 06:29:31 | 000,094,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\userenv.dll
[2013.08.22 03:52:07 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\userinitext.dll
[2013.08.22 03:48:51 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\UserLanguageProfileCallback.dll
[2013.08.22 03:32:32 | 000,559,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\UserLanguagesCpl.dll
[2013.08.22 05:12:40 | 000,076,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\usp10.dll
[2013.08.22 04:39:30 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ustprov.dll
[2013.08.22 06:20:02 | 000,038,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\utildll.dll
[2013.08.22 05:03:53 | 000,134,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\uudf.dll
[2013.08.22 05:01:06 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\UXInit.dll
[2013.08.22 04:40:32 | 000,122,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\uxlib.dll
[2013.08.22 05:16:45 | 000,002,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\uxlibres.dll
[2013.08.22 05:11:37 | 000,903,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\uxtheme.dll
[2013.08.22 04:16:41 | 000,437,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\VAN.dll
[2013.08.22 04:07:32 | 000,675,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Vault.dll
[2013.08.22 03:46:05 | 000,078,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vaultcli.dll
[2013.08.22 03:44:57 | 000,069,120 | ---- | M] (Microsoft) -- C:\Windows\system32\VaultRoaming.dll
[2013.08.22 03:39:05 | 000,196,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vaultsvc.dll
[2013.06.18 13:17:51 | 000,030,749 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vbajet32.dll
[2013.08.22 04:55:41 | 000,454,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vbscript.dll
[2012.07.26 18:08:06 | 000,320,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vcamp110.dll
[2012.07.26 18:08:06 | 000,837,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vcamp110d.dll
[2012.07.26 18:08:06 | 000,251,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vccorlib110.dll
[2012.07.26 18:08:06 | 000,729,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vccorlib110d.dll
[2012.07.26 18:08:06 | 000,115,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vcomp110.dll
[2012.07.26 18:08:06 | 000,144,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vcomp110d.dll
[2013.08.22 05:05:35 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vdmdbg.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vdmredir.dll
[2013.08.22 04:55:15 | 000,207,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vdsbas.dll
[2013.08.22 04:55:20 | 000,537,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vdsdyn.dll
[2013.08.22 04:47:46 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vdsutil.dll
[2013.08.22 04:49:09 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vdsvd.dll
[2013.08.22 05:05:21 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vds_ps.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ver.dll
[2013.08.22 06:31:44 | 000,334,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\verifier.dll
[2013.08.22 06:25:38 | 000,025,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\version.dll
[2012.07.25 19:31:56 | 000,353,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vfbasics.dll
[2012.07.25 19:31:56 | 000,087,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vfcompat.dll
[2012.07.25 19:31:56 | 000,052,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vfcuzz.dll
[2012.07.25 19:31:56 | 000,242,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vfluapriv.dll
[2012.07.25 19:31:56 | 000,081,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vfnet.dll
[2012.07.25 19:31:56 | 000,040,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vfntlmless.dll
[2012.07.25 19:31:56 | 000,061,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vfnws.dll
[2012.07.25 19:31:56 | 000,306,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vfprint.dll
[2012.07.25 19:31:56 | 000,367,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vfprintpthelper.dll
[2012.07.25 19:32:00 | 000,098,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vfrdvcompat.dll
[2013.08.22 04:49:22 | 000,053,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vfwwdm32.dll
[2013.08.22 06:25:01 | 000,167,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\VIDRESZR.DLL
[2013.08.22 03:53:34 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\virtdisk.dll
[2013.08.22 05:02:01 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\VmApplicationHealthMonitorProxy.dll
[2013.08.22 06:20:16 | 000,025,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vmbuspipe.dll
[2013.08.22 06:11:09 | 000,054,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vmbusres.dll
[2013.08.22 04:54:27 | 000,052,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\VmdCoinstall.dll
[2013.08.22 06:11:12 | 000,208,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vmicres.dll
[2013.08.22 04:41:59 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vmictimeprovider.dll
[2013.08.22 04:05:02 | 000,300,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vmrdvcore.dll
[2013.08.22 06:11:09 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vmstorfltres.dll
[2013.08.22 03:30:15 | 000,321,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vpnike.dll
[2013.08.22 03:53:48 | 000,028,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vpnikeapi.dll
[2012.07.25 19:32:00 | 000,164,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vrfcore.dll
[2013.08.22 04:58:50 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\VscMgrPS.dll
[2012.07.26 18:08:06 | 000,173,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\VSCover110.dll
[2012.07.25 19:25:44 | 000,059,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\VSD3DRefDebug.dll
[2012.07.26 18:08:06 | 002,203,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\VsGraphicsHelper.dll
[2012.07.26 18:08:06 | 000,216,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\VSPerf110.dll
[2013.08.22 03:25:20 | 001,117,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vssapi.dll
[2013.08.22 03:45:37 | 000,053,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vsstrace.dll
[2013.08.22 03:47:50 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\vss_ps.dll
[2013.08.22 03:50:51 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\w32time.dll
[2013.08.22 03:54:35 | 000,027,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\w32topl.dll
[2013.08.22 04:33:42 | 000,055,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WABSyncProvider.dll
[2013.08.22 04:25:07 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WavDest.dll
[2013.08.22 04:34:16 | 000,217,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wavemsp.dll
[2013.08.22 03:46:41 | 000,383,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wbemcomn.dll
[2013.08.22 03:47:57 | 000,314,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wbiosrvc.dll
[2013.08.22 03:55:43 | 000,239,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wcl.dll
[2013.08.22 03:55:12 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wclEtw.dll
[2013.08.22 03:55:25 | 000,109,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wclPowrProf.dll
[2013.08.22 03:55:42 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wclSqm.dll
[2013.08.22 03:55:43 | 000,124,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wclUnicode.dll
[2013.08.22 03:54:51 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wclWdi.dll
[2013.08.22 03:53:05 | 000,028,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wcmapi.dll
[2013.08.22 03:33:47 | 000,089,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wcmcsp.dll
[2013.08.22 03:39:58 | 000,300,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wcmsvc.dll
[2013.08.22 03:37:31 | 000,095,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WcnApi.dll
[2013.09.12 08:17:27 | 000,370,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wcncsvc.dll
[2013.08.22 03:51:28 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WcnEapAuthProxy.dll
[2013.08.22 03:51:57 | 000,023,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WcnEapPeerProxy.dll
[2013.08.22 04:21:05 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WcnNetsh.dll
[2013.08.22 03:12:24 | 001,224,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wcnwiz.dll
[2013.08.22 04:37:49 | 000,034,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WcsPlugInService.dll
[2013.08.22 04:02:07 | 001,277,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wdc.dll
[2013.08.22 07:13:53 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Wdfres.dll
[2013.08.22 03:47:21 | 000,080,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wdi.dll
[2013.08.22 04:59:16 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wdiasqmmodule.dll
[2013.08.22 03:55:10 | 000,189,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wdigest.dll
[2013.08.22 07:13:53 | 000,195,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wdscore.dll
[2013.08.22 03:59:12 | 000,813,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WebcamUi.dll
[2013.08.22 04:01:30 | 000,208,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\webcheck.dll
[2013.08.22 04:47:58 | 000,198,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WebClnt.dll
[2013.08.22 03:44:53 | 000,400,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\webio.dll
[2013.08.22 06:21:42 | 001,085,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\webservices.dll
[2013.08.22 03:54:00 | 000,035,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Websocket.dll
[2013.08.22 03:50:57 | 000,063,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wecapi.dll
[2013.08.22 03:34:25 | 000,157,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wecsvc.dll
[2013.08.22 05:03:29 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wephostsvc.dll
[2013.08.22 06:24:56 | 000,426,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wer.dll
[2013.08.22 04:03:12 | 001,096,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\werconcpl.dll
[2013.08.22 04:33:06 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wercplsupport.dll
[2013.08.22 05:05:39 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\werdiagcontroller.dll
[2013.08.22 03:46:37 | 000,082,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wersvc.dll
[2013.08.22 04:27:10 | 000,159,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\werui.dll
[2013.08.22 06:30:48 | 000,308,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wevtapi.dll
[2013.08.22 05:01:02 | 000,083,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wevtfwd.dll
[2013.08.22 03:41:06 | 001,280,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wevtsvc.dll
[2013.08.22 03:49:43 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wfapigp.dll
[2013.08.22 03:43:25 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wfdprov.dll
[2013.08.22 03:19:01 | 000,065,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WfHC.dll
[2013.08.22 05:15:57 | 000,669,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WFSR.dll
[2013.08.22 03:54:47 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\whealogr.dll
[2013.08.22 03:54:27 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\whhelper.dll
[2013.08.22 04:26:35 | 000,544,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wiaaut.dll
[2013.08.22 04:25:32 | 000,413,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wiadefui.dll
[2013.08.22 04:29:11 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wiadss.dll
[2013.08.22 04:56:08 | 000,052,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wiarpc.dll
[2013.08.22 04:26:10 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wiascanprofiles.dll
[2013.08.22 04:20:47 | 000,517,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wiaservc.dll
[2013.08.22 04:18:49 | 000,441,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wiashext.dll
[2013.08.22 05:06:44 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wiatrace.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WIFEMAN.DLL
[2013.09.12 08:37:16 | 000,084,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WiFiDisplay.dll
[2013.08.22 03:38:35 | 000,528,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wimgapi.dll
[2013.08.22 03:15:52 | 000,550,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\win32spl.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\win87em.dll
[2013.08.22 03:22:36 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winbici.dll
[2013.08.22 03:49:56 | 000,073,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winbio.dll
[2013.08.22 03:50:20 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winbrand.dll
[2013.08.22 03:49:03 | 000,256,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wincorlib.dll
[2013.08.22 04:44:29 | 000,036,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wincredprovider.dll
[2013.08.22 03:27:50 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.ApplicationModel.Background.SystemEventsBroker.dll
[2013.08.22 03:54:12 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.ApplicationModel.Background.TimeBroker.dll
[2013.08.22 03:23:06 | 000,264,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.ApplicationModel.dll
[2013.08.22 03:39:43 | 000,208,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.ApplicationModel.Store.dll
[2013.10.23 06:04:06 | 000,189,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
[2013.08.22 03:23:58 | 008,875,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Data.Pdf.dll
[2013.08.22 03:47:00 | 000,045,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.Background.dll
[2013.08.22 03:48:18 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.Background.ps.dll
[2013.08.22 03:35:36 | 000,439,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.Bluetooth.dll
[2013.08.22 03:47:05 | 000,052,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.Custom.dll
[2013.08.22 03:48:18 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.Custom.ps.dll
[2013.08.22 03:43:21 | 000,147,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.Enumeration.dll
[2013.08.22 03:48:14 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.Enumeration.ps.dll
[2013.08.22 03:49:08 | 000,202,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.Geolocation.dll
[2013.08.22 03:38:47 | 000,154,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.HumanInterfaceDevice.dll
         

Alt 22.11.2013, 23:05   #11
Sunzi
 
Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



Code:
ATTFilter
[2013.08.22 04:36:50 | 000,348,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.PointOfService.dll
[2013.08.22 03:47:00 | 000,030,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.Portable.dll
[2013.08.22 03:46:40 | 000,030,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.Printers.Extensions.dll
[2013.08.22 03:19:11 | 000,151,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.Scanners.dll
[2013.10.03 10:02:48 | 000,225,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.Sensors.dll
[2013.08.22 03:30:53 | 000,616,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.SmartCards.dll
[2013.08.22 04:13:35 | 000,288,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.Usb.dll
[2013.08.22 03:22:26 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Devices.WiFiDirect.dll
[2013.08.22 03:52:07 | 000,802,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Globalization.dll
[2013.08.22 03:51:28 | 000,041,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Globalization.Fontgroups.dll
[2013.08.22 03:33:06 | 000,217,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Graphics.dll
[2013.08.22 03:25:12 | 000,402,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Graphics.Printing.dll
[2013.08.22 06:22:00 | 000,163,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Help.Runtime.dll
[2013.08.22 03:38:05 | 000,078,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\windows.immersiveshell.serviceprovider.dll
[2013.08.22 04:48:32 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Management.Workplace.WorkplaceSettings.dll
[2013.08.22 03:45:05 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Media.Devices.dll
[2013.10.19 04:14:29 | 000,888,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Media.dll
[2013.08.22 06:25:01 | 000,162,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Media.MediaControl.dll
[2013.08.22 03:16:17 | 000,062,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Media.Renewal.dll
[2013.08.22 03:17:45 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Media.SpeechSynthesis.dll
[2013.10.01 04:36:12 | 000,977,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Media.Streaming.dll
[2013.08.22 05:01:43 | 000,106,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Media.Streaming.ps.dll
[2013.08.22 03:13:15 | 000,340,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
[2013.10.05 08:35:00 | 000,411,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
[2013.08.22 03:29:44 | 000,408,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Networking.Connectivity.dll
[2013.08.22 03:24:56 | 000,432,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Networking.dll
[2013.08.22 03:47:20 | 000,097,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Networking.HostName.dll
[2013.08.22 03:45:02 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
[2013.08.22 03:40:46 | 000,306,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Networking.Proximity.dll
[2013.08.22 03:46:38 | 000,059,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Networking.Sockets.PushEnabledApplication.dll
[2013.08.22 03:38:55 | 000,197,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Networking.Vpn.dll
[2013.08.22 03:30:39 | 000,543,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
[2013.08.22 06:29:32 | 000,069,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Security.Credentials.UI.CredentialPicker.dll
[2013.08.22 04:45:38 | 000,080,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Security.Credentials.UI.UserConsentVerifier.dll
[2013.08.22 06:31:44 | 000,151,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Storage.ApplicationData.dll
[2013.08.22 03:47:07 | 000,120,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Storage.Compression.dll
[2013.08.22 03:47:07 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.System.Display.dll
[2013.08.22 03:18:25 | 000,169,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.System.Profile.HardwareId.dll
[2013.08.22 03:46:48 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.System.Profile.SystemManufacturers.dll
[2013.08.22 03:47:23 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.System.RemoteDesktop.dll
[2013.08.22 03:30:52 | 000,335,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.UI.dll
[2013.08.22 03:07:23 | 001,492,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.UI.Immersive.dll
[2013.08.22 03:41:00 | 000,121,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.UI.Input.Inking.dll
[2013.08.22 03:11:07 | 004,919,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.UI.Search.dll
[2013.11.05 17:20:05 | 013,925,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.UI.Xaml.dll
[2013.08.22 03:14:17 | 000,514,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Web.dll
[2013.10.08 05:50:39 | 000,762,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Windows.Web.Http.dll
[2013.10.30 20:57:04 | 000,094,632 | ---- | M] (Oracle Corporation) -- C:\Windows\system32\WindowsAccessBridge.dll
[2013.08.22 06:24:59 | 001,370,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WindowsCodecs.dll
[2013.08.22 03:43:33 | 000,222,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WindowsCodecsExt.dll
[2013.08.22 03:26:55 | 000,174,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\windowslivelogin.dll
[2013.08.22 04:14:12 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winethc.dll
[2013.08.22 04:24:13 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WinFax.dll
[2013.08.22 03:39:08 | 000,589,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winhttp.dll
[2013.10.19 04:09:02 | 001,818,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wininet.dll
[2013.08.22 03:50:05 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wininitext.dll
[2013.08.22 03:49:54 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winipsec.dll
[2013.08.22 03:46:47 | 000,356,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Winlangdb.dll
[2013.08.22 03:49:41 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winlogonext.dll
[2013.10.17 15:04:13 | 001,204,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winmde.dll
[2013.08.22 06:19:23 | 000,128,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winmm.dll
[2013.08.22 06:19:23 | 000,128,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winmmbase.dll
[2013.08.22 04:39:55 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WinMsoIrmProtector.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WINNLS.DLL
[2013.08.22 07:13:54 | 000,025,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winnsi.dll
[2013.08.22 04:39:55 | 000,107,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WinOpcIrmProtector.dll
[2013.08.22 05:05:53 | 000,021,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winrnr.dll
[2013.08.22 03:32:26 | 000,095,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winrscmd.dll
[2013.08.22 05:16:56 | 000,001,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winrsmgr.dll
[2013.08.22 03:54:16 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winrssrv.dll
[2013.08.22 03:47:08 | 000,084,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WinRtTracing.dll
[2013.08.22 03:18:43 | 000,346,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WinSATAPI.dll
[2013.08.22 05:02:53 | 000,166,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WinSCard.dll
[2013.08.22 04:43:17 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WinSetupUI.dll
[2013.08.22 04:40:16 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winshfhc.dll
[2013.08.22 03:48:27 | 000,270,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winsku.dll
[2013.08.22 02:42:34 | 000,008,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WINSOCK.DLL
[2013.08.22 04:31:06 | 000,067,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winsockhc.dll
[2013.08.22 05:03:37 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WINSRPC.DLL
[2013.08.22 03:48:12 | 000,145,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winsrv.dll
[2013.08.22 06:20:03 | 000,265,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winsta.dll
[2013.08.22 03:45:23 | 000,528,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WinSync.dll
[2013.08.22 04:53:07 | 000,177,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WinSyncMetastore.dll
[2013.08.22 04:37:30 | 000,102,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WinSyncProviders.dll
[2013.10.10 15:53:54 | 000,235,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wintrust.dll
[2013.08.22 06:21:42 | 000,506,672 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WinTypes.dll
[2013.08.22 04:55:04 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\winusb.dll
[2013.08.22 04:50:14 | 000,210,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wisp.dll
[2013.08.22 04:37:54 | 000,026,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\witnesswmiv2provider.dll
[2013.08.22 06:29:34 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wkscli.dll
[2013.08.22 04:18:19 | 000,088,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wkspbrokerAx.dll
[2013.08.22 04:53:34 | 000,017,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wksprtPS.dll
[2013.08.22 03:46:52 | 000,230,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wkssvc.dll
[2013.08.22 03:36:23 | 000,229,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlanapi.dll
[2013.08.22 03:17:08 | 000,158,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlancfg.dll
[2013.08.22 03:58:48 | 000,392,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WLanConn.dll
[2013.08.22 04:17:43 | 000,186,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlandlg.dll
[2013.08.22 03:30:21 | 000,387,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlangpui.dll
[2013.08.22 04:16:09 | 000,161,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WLanHC.dll
[2013.08.22 05:14:36 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlanhlp.dll
[2013.08.22 04:53:00 | 000,020,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlaninst.dll
[2013.08.22 03:17:55 | 000,935,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WlanMM.dll
[2013.08.22 03:28:47 | 000,300,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlanmsm.dll
[2013.08.22 03:19:04 | 000,724,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlanpref.dll
[2013.08.22 03:46:25 | 000,050,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WlanRadioManager.dll
[2013.08.22 03:48:36 | 000,380,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlansec.dll
[2013.08.22 03:25:37 | 001,281,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlansvc.dll
[2013.08.22 03:50:02 | 000,014,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlansvcpal.dll
[2013.08.22 04:07:54 | 000,360,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlanui.dll
[2013.08.22 05:14:50 | 000,003,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlanutil.dll
[2013.08.22 03:55:36 | 000,293,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Wldap32.dll
[2013.10.23 10:21:21 | 000,044,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wldp.dll
[2013.08.22 03:47:50 | 000,093,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlgpclnt.dll
[2013.08.22 03:29:16 | 000,544,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlidcli.dll
[2013.08.22 03:21:21 | 000,185,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlidcredprov.dll
[2013.08.22 03:21:50 | 000,078,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlidfdp.dll
[2013.08.22 03:50:29 | 000,049,664 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlidnsp.dll
[2013.08.22 03:47:57 | 000,277,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlidprov.dll
[2013.08.22 05:14:40 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlidres.dll
[2013.08.22 03:37:53 | 001,185,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wlidsvc.dll
[2013.08.22 05:06:08 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WlS0WndH.dll
[2013.08.22 06:25:04 | 001,008,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMADMOD.DLL
[2013.08.22 06:25:04 | 000,799,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMADMOE.DLL
[2013.08.22 06:26:00 | 001,468,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMALFXGFXDSP.dll
[2013.08.22 06:26:54 | 000,212,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMASF.DLL
[2013.08.22 05:02:00 | 000,009,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmcodecdspps.dll
[2013.08.22 04:39:58 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmdmlog.dll
[2013.08.22 04:43:13 | 000,037,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmdmps.dll
[2013.08.22 06:19:23 | 000,429,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmdrmdev.dll
[2013.08.22 04:29:34 | 000,330,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmdrmnet.dll
[2013.08.22 04:01:49 | 000,467,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmdrmsdk.dll
[2013.08.22 05:15:59 | 000,002,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmerror.dll
[2013.08.22 07:13:51 | 000,005,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmi.dll
[2013.08.22 03:55:42 | 000,032,256 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmiclnt.dll
[2013.08.22 03:34:30 | 000,389,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmicmiplugin.dll
[2013.08.22 03:46:00 | 000,129,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmidcom.dll
[2013.08.22 04:15:40 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmidx.dll
[2013.08.22 04:47:40 | 000,024,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmiprop.dll
[2013.08.22 03:45:34 | 000,155,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmitomi.dll
[2013.08.22 04:11:37 | 000,954,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMNetMgr.dll
[2013.08.22 03:38:52 | 011,760,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmp.dll
[2013.08.22 04:45:42 | 000,269,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WmpDui.dll
[2013.08.22 03:56:04 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmpdxm.dll
[2013.08.22 06:25:05 | 000,308,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmpeffects.dll
[2013.08.22 03:43:01 | 000,350,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMPhoto.dll
[2013.08.22 05:14:49 | 009,374,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmploc.DLL
[2013.10.17 15:04:17 | 001,155,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmpmde.dll
[2013.08.22 06:25:04 | 000,149,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmpps.dll
[2013.08.22 03:56:08 | 000,106,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmpshell.dll
[2013.08.22 03:54:26 | 000,013,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmsgapi.dll
[2013.08.22 03:23:30 | 000,869,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMSPDMOD.DLL
[2013.08.22 04:42:00 | 001,415,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMSPDMOE.DLL
[2013.08.22 06:25:05 | 002,324,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMVCORE.DLL
[2013.08.22 06:25:05 | 002,410,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMVDECOD.DLL
[2013.08.22 04:48:35 | 000,146,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wmvdspa.dll
[2013.08.22 06:25:05 | 002,392,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMVENCOD.DLL
[2013.08.22 06:25:05 | 000,449,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMVSDECD.DLL
[2013.08.22 04:39:32 | 000,378,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMVSENCD.DLL
[2013.08.22 04:45:31 | 000,716,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WMVXENCD.DLL
[2013.08.22 05:12:14 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\workerdd.dll
[2013.10.22 03:52:29 | 000,667,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WorkfoldersControl.dll
[2013.08.22 04:38:11 | 000,052,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WorkFoldersGPExt.dll
[2013.09.19 07:23:46 | 000,117,760 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WorkFoldersRes.dll
[2013.10.22 04:02:04 | 000,166,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WorkFoldersShell.dll
[2013.10.22 02:40:33 | 001,210,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\workfolderssvc.dll
[2013.08.22 04:54:46 | 000,267,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wow32.dll
[2013.08.22 04:03:04 | 002,214,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Wpc.dll
[2013.08.22 03:09:15 | 002,299,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wpccpl.dll
[2013.08.22 03:52:30 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wpcsvc.dll
[2013.08.22 03:57:01 | 001,873,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WpcWebSync.dll
[2013.08.22 03:17:38 | 000,070,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wpdbusenum.dll
[2013.08.22 04:19:20 | 000,176,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WpdMtp.dll
[2013.08.22 04:19:20 | 000,107,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WpdMtpUS.dll
[2013.08.22 04:04:39 | 001,924,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wpdshext.dll
[2013.08.22 04:16:46 | 000,081,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WPDShServiceObj.dll
[2013.08.22 04:18:33 | 000,303,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WPDSp.dll
[2013.08.22 04:11:33 | 000,588,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wpd_ci.dll
[2013.08.22 03:45:46 | 000,262,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wpnapps.dll
[2013.08.22 03:28:41 | 000,478,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wpncore.dll
[2013.08.22 03:17:04 | 000,048,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wpninprc.dll
[2013.08.22 03:11:16 | 000,165,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wpnprv.dll
[2013.08.22 03:47:02 | 000,022,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wpnsruprov.dll
[2013.08.22 05:14:34 | 000,004,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ws2help.dll
[2013.08.22 07:13:54 | 000,313,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\ws2_32.dll
[2013.08.22 06:30:48 | 000,140,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wscapi.dll
[2013.08.22 03:37:54 | 000,110,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wscinterop.dll
[2013.08.22 04:56:36 | 000,019,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wscisvif.dll
[2013.08.22 03:20:40 | 000,179,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WSClient.dll
[2013.08.22 05:01:28 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wscproxystub.dll
[2013.08.22 03:20:27 | 000,097,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wscsvc.dll
[2013.08.22 03:33:58 | 000,507,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WSDApi.dll
[2013.08.22 03:43:59 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wsdchngr.dll
[2013.08.22 03:26:20 | 000,251,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WSDMon.dll
[2013.08.22 03:18:32 | 000,062,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WSDPrintProxy.DLL
[2013.08.22 04:26:02 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WSDScanProxy.dll
[2013.08.22 04:19:37 | 001,319,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wsecedit.dll
[2013.08.22 04:37:46 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wsepno.dll
[2013.08.22 03:46:42 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wshbth.dll
[2013.08.22 04:54:28 | 000,019,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wshcon.dll
[2013.08.22 04:51:16 | 000,016,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wshelper.dll
[2013.08.22 04:30:52 | 000,075,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wshext.dll
[2013.08.22 05:12:40 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wship6.dll
[2013.08.22 05:03:02 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wshirda.dll
[2013.08.22 05:03:56 | 000,012,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wshnetbs.dll
[2013.08.22 03:54:37 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wshqos.dll
[2013.08.22 05:03:57 | 000,015,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wshrm.dll
[2013.08.22 05:12:41 | 000,010,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WSHTCPIP.DLL
[2013.08.22 03:47:32 | 000,025,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WsmAgent.dll
[2013.08.22 04:06:24 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WSManMigrationPlugin.dll
[2013.08.22 04:39:26 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WsmAuto.dll
[2013.08.22 03:54:12 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wsmplpxy.dll
[2013.08.22 05:15:55 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WsmRes.dll
[2013.08.22 03:35:43 | 002,030,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WsmSvc.dll
[2013.08.22 03:32:35 | 000,227,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WsmWmiPl.dll
[2013.08.22 05:05:53 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wsnmp32.dll
[2013.08.22 05:05:51 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wsock32.dll
[2013.10.10 15:52:58 | 002,872,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WSService.dll
[2013.10.23 05:46:07 | 000,700,928 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WSShared.dll
[2013.08.22 03:38:02 | 000,189,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WSSync.dll
[2013.08.22 06:20:02 | 000,050,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wtsapi32.dll
[2013.08.22 03:47:00 | 000,015,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wuaext.dll
[2013.08.22 03:17:51 | 000,659,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wuapi.dll
[2013.10.07 03:03:12 | 002,833,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wuaueng.dll
[2013.10.22 02:51:53 | 001,634,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wucltux.dll
[2013.08.22 04:43:07 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WUDFCoinstaller.dll
[2013.08.22 03:47:38 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WUDFPlatform.dll
[2013.08.22 03:47:35 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WUDFSvc.dll
[2013.08.22 04:49:19 | 000,701,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WUDFx.dll
[2013.08.22 05:13:32 | 000,439,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WUDFx02000.dll
[2013.08.22 03:18:40 | 000,080,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wudriver.dll
[2013.08.22 05:02:40 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wups.dll
[2013.08.22 05:02:49 | 000,022,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wups2.dll
[2013.10.22 02:59:29 | 000,307,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WUSettingsProvider.dll
[2013.08.22 05:17:02 | 000,099,328 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wushareduxresources.dll
[2013.08.22 03:21:52 | 000,123,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wuwebv.dll
[2013.08.22 04:53:52 | 000,447,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wvc.dll
[2013.08.22 05:07:54 | 000,131,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WwaApi.dll
[2013.08.22 06:30:36 | 000,392,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WWanAPI.dll
[2013.08.22 05:12:30 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wwancfg.dll
[2013.08.22 03:11:19 | 000,351,744 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wwanconn.dll
[2013.08.22 04:50:57 | 000,054,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WWanHC.dll
[2013.08.22 03:38:23 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wwaninst.dll
[2013.08.22 03:18:23 | 001,100,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wwanmm.dll
[2013.08.22 04:37:49 | 000,041,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\Wwanpref.dll
[2013.08.22 04:59:18 | 000,064,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wwanprotdim.dll
[2013.08.22 04:51:40 | 000,047,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\WwanRadioManager.dll
[2013.08.22 03:27:56 | 000,424,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wwansvc.dll
[2013.08.22 06:30:36 | 000,050,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\wwapi.dll
[2013.08.22 03:35:50 | 000,327,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\XAudio2_8.dll
[2013.08.22 03:51:18 | 000,029,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\XInput1_4.dll
[2013.08.22 05:05:45 | 000,009,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\XInput9_1_0.dll
[2013.08.22 04:20:09 | 000,044,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\xmlfilter.dll
[2013.08.22 06:28:06 | 000,175,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\xmllite.dll
[2013.08.22 05:02:40 | 000,017,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\xmlprovi.dll
[2013.08.22 03:41:03 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\xolehlp.dll
[2013.08.22 04:13:03 | 000,634,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\XpsFilt.dll
[2013.08.22 04:29:03 | 000,336,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\XpsGdiConverter.dll
[2013.08.22 03:13:08 | 001,290,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\XpsPrint.dll
[2013.08.22 04:48:39 | 000,148,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\XpsRasterService.dll
[2013.08.22 03:15:28 | 002,178,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\xpsservices.dll
[2013.08.22 04:38:11 | 000,080,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\XPSSHHDR.dll
[2013.08.22 04:52:04 | 000,976,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\xpssvcs.dll
[2013.08.22 04:24:06 | 000,374,784 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\xwizards.dll
[2013.08.22 04:33:44 | 000,099,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\xwreg.dll
[2013.08.22 04:24:36 | 000,201,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\xwtpdui.dll
[2013.08.22 04:24:35 | 000,118,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\xwtpw32.dll
[2013.08.22 04:38:07 | 000,400,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\system32\zipfldr.dll
[2013.08.22 08:23:44 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT

< End of report >
         
Code:
ATTFilter
OTL Extras logfile created on: 21.11.2013 21:34:49 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\Dan1el\Desktop
 Professional  (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16438)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
2,99 Gb Total Physical Memory | 2,15 Gb Available Physical Memory | 71,82% Memory free
4,31 Gb Paging File | 2,96 Gb Available in Paging File | 68,80% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 288,32 Gb Total Space | 237,90 Gb Free Space | 82,51% Space Free | Partition Type: NTFS
Drive E: | 1,54 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
 
Computer Name: DANIEL | User Name: Dan1el | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\System32\control.exe (Microsoft Corporation)
.hlp [@ = hlpfile] -- C:\Windows\winhlp32.exe (Microsoft Corporation)
 
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
 
========== Shell Spawning ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
hlpfile [open] -- %SystemRoot%\winhlp32.exe %1 (Microsoft Corporation)
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\OpenWith.exe "%1" (Microsoft Corporation)
Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN)
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
========== Security Center Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = Reg Error: Unknown registry data type -- File not found
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Upgrade]
"UpgradeTime" = Reg Error: Unknown registry data type -- File not found
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
"DoNotAllowExceptions" = 0
 
========== Authorized Applications List ==========
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{19FE542B-2057-4832-9594-D1F0CB680A42}" = lport=6918 | protocol=6 | dir=in | app=c:\program files\microsoft visual studio 11.0\common7\ide\devenv.exe | 
"{26A025C1-E37D-4AFF-B767-227FA85BB7CF}" = lport=6920 | protocol=6 | dir=in | app=c:\program files\microsoft visual studio 11.0\common7\ide\devenv.exe | 
"{B602D8A0-C2F8-4D1E-948C-1C23947C2CE4}" = lport=6915 | protocol=6 | dir=in | app=c:\program files\microsoft visual studio 11.0\common7\ide\devenv.exe | 
"{C0079960-1F70-491A-84D6-4B756149186F}" = lport=3702 | protocol=17 | dir=in | app=c:\program files\microsoft visual studio 11.0\common7\ide\devenv.exe | 
"{D1DD6E40-ED8A-40C5-9ABA-911B8DCD8EEE}" = lport=6917 | protocol=6 | dir=in | app=c:\program files\microsoft visual studio 11.0\common7\ide\devenv.exe | 
"{DA29E049-A5A7-462F-AA40-B0CB7529EA55}" = lport=6919 | protocol=6 | dir=in | app=c:\program files\microsoft visual studio 11.0\common7\ide\devenv.exe | 
"{F36946B4-BC03-47FA-B58F-C6A411FD38EA}" = lport=6916 | protocol=6 | dir=in | app=c:\program files\microsoft visual studio 11.0\common7\ide\devenv.exe | 
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{01CB1368-2011-491F-A12D-559957A7D44C}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2328\agent.exe | 
"{04886019-1C69-4F5C-AE72-F78E3EAAC108}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | 
"{092065D5-BE93-4111-8905-17319FEFA26C}" = dir=out | name=@{microsoft.bingtravel_3.0.1.202_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingtravel/resources/apptitle} | 
"{0A0FA52F-9E88-4D92-ABAB-EF9672DD5E69}" = dir=in | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | 
"{24C91C38-DE10-4745-83D7-880815AFCB24}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe | 
"{2DF2E2B0-A588-4810-90EB-4C394CAB983F}" = dir=in | name=junipernetworks.junospulsevpn | 
"{331D3F10-92E3-4211-9259-CAF9D02FCE86}" = dir=out | name=junipernetworks.junospulsevpn | 
"{3BCA113C-30FF-4E5A-BB61-9F9BFCE6DBCE}" = dir=out | name=@{microsoft.zunemusic_2.2.214.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.zunemusic/resources/ids_manifest_music_app_name} | 
"{3E9773EB-678E-42F9-BC32-CF8961F35A39}" = protocol=17 | dir=in | app=c:\program files\hearthstone\hearthstone.exe | 
"{42CFB4AB-F720-4FC5-8EBB-6F18E7D9A7B9}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.2045\agent.exe | 
"{4C9EAC68-540C-4D68-8EF9-50C0C5063CBE}" = dir=in | name=@{microsoft.windowscommunicationsapps_17.5.9600.20315_x86__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | 
"{51C2EE22-0E84-4596-9102-FD4A7C4143BB}" = dir=in | name=skype | 
"{5AF01F34-CD26-4E26-AEEE-B36967E1ECE7}" = dir=out | name=skype | 
"{639B3E90-793D-4669-94BE-1A1C072DE9F6}" = dir=out | name=@{microsoft.bingweather_3.0.1.203_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingweather/resources/apptitle} | 
"{690D27EA-0E2A-4438-BCC1-3157900E8C83}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2359\agent.exe | 
"{72562E88-D1BC-4C65-9C8B-DB0FF476D975}" = protocol=6 | dir=in | app=c:\program files\battle.net\battle.net.exe | 
"{835E0E77-65D1-4FAA-AA5E-AC67565A94FB}" = dir=out | name=sonicwall.mobileconnect | 
"{8AAE52C8-AB48-4414-A4C6-805D1CD5E43A}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2293\agent.exe | 
"{98F8E3C9-5274-4C66-ABC0-846DE4CEBE7D}" = dir=in | name=@{microsoft.windowsreadinglist_6.3.9600.20311_x86__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | 
"{9ACBF072-42ED-4097-AC0F-1C8D0FA841DB}" = protocol=6 | dir=in | app=c:\program files\hearthstone\hearthstone.exe | 
"{A3C3B026-355E-4AAD-9853-612744E46D75}" = dir=out | name=@{browserchoice_6.2.0.0_neutral_neutral_cw5n1h2txyewy?ms-resource://browserchoice/resources/displayname} | 
"{A9080F4C-BE69-49F6-87CD-FAE444526D27}" = dir=out | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | 
"{AF4CD98F-A6B6-4B1C-8D65-661A94CE0BDE}" = dir=in | name=@{c:\windows\winstore\resources.pri?ms-resource://winstore/resources/displayname} | 
"{B03C386C-8107-4FCE-A227-25E590430120}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2328\agent.exe | 
"{B121A821-118D-4955-A57A-7291B8063879}" = dir=out | name=@{microsoft.binghealthandfitness_3.0.1.203_x86__8wekyb3d8bbwe?ms-resource://microsoft.binghealthandfitness/resources/apptitle} | 
"{B1C19159-C091-4DDE-9250-EDC243D605E7}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2359\agent.exe | 
"{B4353424-DC17-4354-A76A-E085FABE06D8}" = dir=out | name=@{microsoft.windowscommunicationsapps_17.5.9600.20315_x86__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/resources/communicationspackagename} | 
"{B619437A-D84F-4DD2-B0DF-BA4CEF34433D}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.2380\agent.exe | 
"{C6182E4B-10FC-4083-A766-458080D68E73}" = dir=in | name=f5.vpn.client | 
"{C6F6D951-2456-4B74-8F9B-DD5B7F6129E0}" = dir=out | name=@{microsoft.bingfoodanddrink_3.0.1.201_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfoodanddrink/resources/apptitlewithbranding} | 
"{C8DA0150-F15B-4B76-8C3F-2F029B084F92}" = dir=out | name=@{microsoft.bingmaps_2.0.2210.2401_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingmaps/resources/appdisplayname} | 
"{CCD5E25A-6641-403A-ADE4-7D646F6BA3F3}" = dir=out | name=@{microsoft.bingnews_3.0.1.285_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingnews/resources/apptitle} | 
"{CD39C783-3AA1-4CE5-8088-3306FBCC6DA8}" = dir=out | name=@{microsoft.bingfinance_3.0.1.203_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingfinance/resources/apptitle} | 
"{D08ED903-8BAD-4D12-B00B-010849263D64}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2293\agent.exe | 
"{D3FA4036-DA7D-4C79-B08D-6FCF9D18F9EE}" = dir=out | name=@{microsoft.xboxlivegames_2.0.139.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.xboxlivegames/resources/34150} | 
"{D58C0E6F-A601-4312-9A69-0A9E036E8E99}" = protocol=6 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2391\agent.exe | 
"{E02C1864-8CD9-45FB-AC69-5B6A30A78FF3}" = protocol=17 | dir=in | app=c:\programdata\battle.net\agent\agent.beta.2391\agent.exe | 
"{E20BB53A-3BDC-460D-BAEE-FFDC117AB485}" = dir=in | name=sonicwall.mobileconnect | 
"{E3FCCF06-237C-4D44-A550-B96AA2DCA60B}" = dir=out | name=@{microsoft.zunevideo_2.2.299.0_x86__8wekyb3d8bbwe?ms-resource://microsoft.zunevideo/resources/ids_manifest_video_app_name} | 
"{E6A4BE21-4183-455E-8C07-84C78011B261}" = dir=out | name=checkpoint.vpn | 
"{EC6E5428-E989-409F-B177-5EE22806C2AF}" = dir=out | name=@{microsoft.windowsreadinglist_6.3.9600.20311_x86__8wekyb3d8bbwe?ms-resource://microsoft.windowsreadinglist/resources/apppackagename} | 
"{F9249D15-AC29-4AAA-8313-A3BAD9C68B35}" = dir=out | name=@{microsoft.bingsports_3.0.1.203_x86__8wekyb3d8bbwe?ms-resource://microsoft.bingsports/resources/bingsports} | 
"{FA35BA80-EA4B-48FD-9FEF-74E9E0B3FEC7}" = dir=in | name=checkpoint.vpn | 
"{FE5EA256-AD54-4FD8-B211-1263089653FF}" = dir=out | name=f5.vpn.client | 
"{FF003BD9-DCED-4AA8-B93B-CF9B7BB24BCA}" = protocol=17 | dir=in | app=c:\program files\battle.net\battle.net.exe | 
"TCP Query User{7B03492C-31BA-44CC-893D-98AE512217CC}C:\program files\studium\eclipse\eclipse.exe" = protocol=6 | dir=in | app=c:\program files\studium\eclipse\eclipse.exe | 
"TCP Query User{C44B2EA5-BC00-4C7F-B7A5-92DE1646FAB5}C:\program files\skype\phone\skype.exe" = protocol=6 | dir=in | app=c:\program files\skype\phone\skype.exe | 
"UDP Query User{C79E35AC-D16C-4554-A423-37E7446F44B6}C:\program files\studium\eclipse\eclipse.exe" = protocol=17 | dir=in | app=c:\program files\studium\eclipse\eclipse.exe | 
"UDP Query User{E9E628D9-8A8E-4E00-B0AC-EF14742DC85D}C:\program files\skype\phone\skype.exe" = protocol=17 | dir=in | app=c:\program files\skype\phone\skype.exe | 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{00EC8ABC-3C5A-40F8-A8CB-E7DCD5ABFA05}" = Microsoft NuGet - Visual Studio 2012
"{046806D1-0A38-3FCA-AF84-F71C50A0C363}" = Microsoft Visual Studio Premium 2012
"{052ADE7E-CBF0-AC14-2F29-80DECF228427}" = Catalyst Control Center
"{07AC2D83-E795-4AD5-970D-B9BD14A1E411}" = Microsoft ASP.NET MVC 3 - DEU
"{093C9565-E907-4ED8-8201-4C1DD25D34DF}" = Devenv-Ressourcen für Microsoft Visual Studio 2012
"{094D6E27-97CC-447E-8660-56F75CFC1E00}" = Entity Framework Designer für Visual Studio 2012 - DEU
"{0A0B5A51-282D-49EA-48DA-14B2486E5B33}" = CCC Help Hungarian
"{0AF0419B-6603-5DDC-1C12-D4CE757C8345}" = CCC Help English
"{0BCC836F-0B28-4090-B58A-64883BAA3B2F}" = WCF Data Services 5.0 (for OData v3) Primary Components
"{0CB6074C-6CD0-C3E7-0633-896B4738C0D6}" = CCC Help German
"{0EEB6DAC-32D5-4D1A-B795-7023D6AB9F13}" = Blend for Visual Studio 2012 DEU resources
"{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5300_series" = Canon MG5300 series MP Drivers
"{1211AC7A-31C3-391D-BA7F-54C37DE0F262}" = CCC Help Greek
"{134D97F4-0ECC-4630-9D2C-3D98BFA5848F}" = Microsoft Visual Studio 2012 IntelliTraceFrontEndLoc
"{13BD574A-7F41-420A-B486-7A2D4CEB7F3B}" =  Tools for .Net 3.5 - DEU Lang Pack
"{148878BD-A2A5-4CF1-A103-2BA632F41953}" = WCF Data Services Tools for Microsoft Visual Studio 2012
"{1690CE56-2231-4E59-9006-A0876D949EA8}" =  Tools for .Net 3.5
"{182EBA66-E694-BF7F-09D7-B5433F5AA9FE}" = CCC Help Polish
"{1948E039-EC79-4591-951D-9867A8C14C90}" = Microsoft .NET Framework 4.5 SDK
"{1A380874-CB58-480D-9806-06C092C12921}" = Microsoft Visual Studio 2012 IntelliTraceLoc
"{1C163D33-33B3-33EB-A617-0D4D852BE8E1}" = Microsoft Visual C++ 2012 x86 Debug Runtime - 11.0.50727
"{1DB43E5A-2F24-4F51-92B0-A2C0EBF5C742}" = Microsoft Report Viewer Add-On for Visual Studio 2012
"{1E385309-0E29-3F4F-AE79-7EC7625CA478}" = Microsoft Visual Studio Team Foundation Server 2012 Object Model Language Pack - DEU
"{1F4DF099-EA5C-482D-9901-C0A8B539B417}" = Microsoft Web Platform Installer 4.0
"{1F8E06E2-BA93-40DC-B183-E024CBD853A8}" = Microsoft Visual C++ 2012 Compilers
"{20A3AAE7-B559-FBB1-92C6-AF3D5FED9E92}" = CCC Help Chinese Traditional
"{219611BE-3B5D-33EE-F3AD-9BD7282FE795}" = CCC Help Russian
"{23176E97-26CB-C72A-19EB-BFB21AC1D15A}" = Windows Software Development Kit DirectX x86 Remote
"{23A999B4-2696-39CF-A587-F89E414D5519}" = CCC Help Portuguese
"{26A24AE4-039D-4CA4-87B4-2F83217045FF}" = Java 7 Update 45
"{280A0282-7895-61C0-824F-A39AE1B71CDA}" = Catalyst Control Center Graphics Previews Common
"{28C7A4BB-3966-4373-8376-C11F38290630}" = Microsoft SQL Server 2012 T-SQL Language Service 
"{29675C9D-025B-43F2-BFEB-D5FADE06770F}" = Microsoft Visual Studio 2012-Vorbereitung
"{2A01368B-231F-3FF9-9CCB-03A99223E1CC}" = Microsoft Visual Studio Team Foundation Server 2012 Object Model
"{2A3CC014-FA33-4027-AECD-9A4845223209}" = Microsoft SQL Server 2012 Native Client 
"{2B231D3B-39B5-301A-9891-0847433885BC}" = Microsoft Visual Studio 2012 SharePoint Developer Tools DEU Language Pack
"{2B2F061B-CEB6-3DF9-AA8A-9907CFED93DB}" = CCC Help French
"{2C76E3DA-BA76-4FAD-B1B1-72B46D639028}" = PreEmptive Analytics Visual Studio Components
"{2CB523DF-A3C2-4A7C-8848-53898F6D6F87}" = PreEmptive Analytics Client German Language Pack
"{2e8b5d3e-04b1-40c7-ade4-487d5357ba8c}" = Microsoft Visual Studio Ultimate 2012
"{2ED1FE3E-B0C5-3990-A966-3B3999F63B38}" = Microsoft Visual C++ 2012 Microsoft Foundation Class Libraries
"{2F6CE32A-018D-4656-895B-9E5E20D7740A}" = Microsoft ASP.NET MVC 3 - Visual Studio 2012 Tools Update
"{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727
"{30640168-E261-4261-B8FF-7FA5E0F6A2F1}" = Microsoft SQL Server 2012 Transact-SQL ScriptDom 
"{3226C9CF-31C7-4FF4-8F41-D5A65795EE80}" = Microsoft ASP.NET MVC 4 Runtime - DEU
"{32AA0D69-0E45-4331-A435-74716E4EA0AC}" = Microsoft ASP.NET Web Pages - Visual Studio 2012 Tools - DEU
"{330E5D98-20D2-4CA4-AE51-FCB8AA80F634}" = Microsoft Visual Studio 2012 Devenv
"{372D17F6-A54E-4A01-B264-1314890FFE61}" = Dotfuscator and Analytics Community Edition
"{3A523AF9-D32F-4C85-8388-0335731F3405}" = WCF RIA Services V1.0 SP2
"{3C50988F-0533-D5A6-B46C-8B6BB5A92F74}" = CCC Help Norwegian
"{3DFE302B-20AE-324B-8E92-BC7F0F036191}" = Microsoft Visual Studio Team Foundation Server 2012 Storyboarding
"{3E24A4D9-7CA0-378E-A9EB-74A20A496F6E}" = Microsoft LightSwitch für Visual Studio 2012 CoreRes - DEU
"{3EB8DC65-D00F-B4E3-BA1E-131CB067D1B7}" = AMD Accelerated Video Transcoding
"{3FB583E8-0964-4421-847C-5FA285611C69}" = Microsoft ASP.NET MVC 4 - Visual Studio 2012 Tools - DEU
"{42F61556-29ED-8122-F39E-6F04EA5FF279}" = Windows Software Development Kit for Windows Store Apps DirectX x86 Remote
"{46537879-F1AB-0BFD-77F2-AD0F6719623A}" = CCC Help Danish
"{49A2AD60-9E15-297B-B502-FE5550CB1660}" = CCC Help Chinese Standard
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4C0B27C3-3E8F-4BD2-80FF-6E9E48EBD6D8}" = Microsoft-System-CLR-Typen für SQL Server 2012
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.10
"{520C1D80-935C-42B9-9340-E883849D804F}_is1" = DriverTuner 3.1.0.1
"{52E27109-C485-7E96-8B92-C7431FB9B511}" = CCC Help Turkish
"{57D782D7-49FD-48DE-AB47-A690A1519A2D}" = Microsoft ASP.NET Web Pages 2 - Visual Studio 2012 Tools
"{57F20F04-014D-453F-B6A3-AE9485C4DFAB}" = Blend for Visual Studio 2012
"{59D87F40-6C4B-4F80-A42B-FAA0E6EAFAB6}" = Microsoft ASP.NET MVC 4 - Visual Studio 2012 Tools
"{5CBB00A9-CAA2-406A-B149-65343CD6A86E}" = Microsoft SQL Server 2012 Transact-SQL Compiler Service 
"{5CBFF3F3-2D40-34EE-BCA5-A95BC19E400D}" = Microsoft .NET Framework 4.5 Multi-Targeting Pack
"{60B8C5F3-7B6B-48F8-ADA0-FB75DB4F4E19}" = Microsoft Visual Studio 2012-Leistungserfassungstools
"{60D5EF2A-4E0C-2C30-38F6-59C26E134F4A}" = Windows Software Development Kit
"{621CECEC-D21F-A2FC-C674-DF1902D11AB8}" = AMD Media Foundation Decoders
"{62A09364-9839-D02F-2565-6749CEAF08F4}" = CCC Help Spanish
"{631471BE-DEAB-454B-A9AC-CE3EB42C28B3}" = Microsoft ASP.NET Web Pages
"{6443DF74-8F5B-4113-560F-47CD142D3916}" = CCC Help Japanese
"{68E8ADB1-E290-366E-A810-CE434505EDDC}" = Microsoft Visual Studio Team Foundation Server 2012 Storyboarding Language Pack - DEU
"{690DBF2C-EE55-A95F-D7F2-9F1124267618}" = ccc-utility
"{6B5FEDC9-AC82-4F3F-AA55-F21881802F56}" = WCF Data Services 5.0 (for OData v3) DEU Language Pack
"{6B7B7E62-9F56-4C87-8664-0E20F2CAB03B}" = Microsoft SQL Server 2012 Management Objects
"{6D0F2ABB-E30F-9F89-6022-E3D581CB4155}" = AMD Catalyst Install Manager
"{6DAB46E3-D017-3E2B-85D8-F57A230384C0}" = Microsoft Visual Studio Team Foundation Server 2012 Team Explorer
"{6F066545-40A2-4C38-A8F7-78581CC5C442}" = Microsoft ASP.NET Web Pages - Visual Studio 2012 Tools
"{70D065C3-77E5-45E9-A75C-EEB2E84EA869}" = Erforderliche Komponenten für SSDT 
"{731C183B-86A0-3442-BE55-68A7C92581E9}" = Microsoft Visual C++ 2012 Extended Libraries
"{7437A4B9-314F-3B8F-827B-22909146E471}" = Microsoft LightSwitch for Visual Studio 2012 Core
"{77CBF305-64B5-CC66-673C-CAE5CACCA640}" = CCC Help Swedish
"{7CC4FADE-70AC-4560-9418-639D71A4767C}" = Microsoft SQL Server Compact 4.0 SP1 DEU
"{7D5CE450-30A2-35F6-A5B4-53847D2E3175}" = Microsoft Visual Studio 2010 Office Developer Tools (x86)
"{80054F6B-11DA-40F6-8306-F9AB2F9074EB}" = Microsoft Visual Studio 2012 Tools für SQL Server Compact 4.0 SP1 DEU
"{800F484E-9D69-492D-B656-7BAA32586142}" = Microsoft Visual Studio 2012 Shell (Minimum)
"{820C677A-41B2-48C3-8136-FEE35A052E73}" = Microsoft Visual Studio 2012 Shell (Minimum) Interop Assemblies
"{86756584-C41A-4CA3-B42D-4768C7720F56}" = Microsoft Web Deploy dbSqlPackage Provider - DEU
"{88B2ABCF-9C00-47C1-8FC4-369B98845DD7}" = Catalyst Control Center - Branding
"{89B4532E-19CE-4FA9-9692-10BFD5A38532}" = Visual Studio Extensions for Windows Library for JavaScript
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8A321693-B811-0ED5-4EF5-883EF841D2AB}" = AMD Drag and Drop Transcoding
"{8A79E320-5BCA-4A0F-A83B-D2D9783C7D53}" = Microsoft Visual C++ 2012 Compilers - DEU Resources
"{8BAB88C4-5024-3236-84B5-115054CD32B3}" = Microsoft Visual Studio Team Foundation Server 2012 Team Explorer Language Pack - DEU
"{8BF20A72-0286-4E87-B071-E33D4B43DA97}" = Microsoft Report Viewer Add-On für Visual Studio 2012
"{8EA792A5-38AA-4F0E-8DFE-D1BAF1145431}" = Microsoft Silverlight 4 SDK - Deutsch
"{90849941-4C23-3054-B575-3833700DF788}" = Microsoft Help Viewer 2.0 Language Pack - DEU
"{93489CA8-6656-33A0-A5AC-E0EDEDB17C3E}" = Microsoft Visual Studio Professional 2012
"{938526B1-772C-45E3-813A-2E15048DE74E}" = Dotfuscator and Analytics Community Edition Language Pack
"{93EEC4E9-EEFE-4027-ACD3-6E8C1D085975}" = Microsoft ASP.NET Web Pages - DEU
"{942CC691-5B98-42A3-8BC5-A246BA69D983}" = Microsoft ASP.NET MVC 4 Runtime
"{9611BFC7-0C25-48D9-927B-DB5D0D5562CB}" = Microsoft SQL Server 2012 Express LocalDB 
"{965EC534-B751-46E2-BB44-4653A33DD5CC}" = Microsoft Web Developer Tools - Visual Studio 2012 - DEU
"{989EF5D6-F20D-7D17-57CE-60ACD155CF13}" = CCC Help Finnish
"{98B45D1C-6EB1-460D-A87D-2B60678DC105}" = Microsoft .NET Framework 4.5 SDK - DEU Lang Pack
"{9921BC23-7252-3B3B-B3D5-7D120788ACAC}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - DEU
"{9CE13D8B-6288-4A2C-99D2-414D77B9A830}" = WCF Data Services Tools for Visual Studio 11 DEU Language Pack
"{A25FF1C0-80B6-4B8B-A551-DC525697A408}" = AMD APP SDK Runtime
"{A38310A9-0AAF-4815-856D-63DAE3D7DFF1}" = Microsoft SQL Server 2012 Command Line Utilities 
"{A3A6D5EA-B6B5-3C05-BDA8-EAB99C09CDDC}" = Microsoft Visual Studio 2012 SharePoint Developer Tools
"{A5A5ADA2-A13F-BE10-A38C-A20B0BD345C9}" = CCC Help Thai
"{A9D84363-82E3-4951-DEAF-BAEB62A55195}" = Catalyst Control Center Localization All
"{AAC80D3B-9F42-4E52-8357-7CB4A3EC7B80}" = Microsoft ASP.NET Web Pages 2 Runtime - DEU
"{AB639FD7-CC4E-E5BB-8951-D852ABB56D8E}" = LocalESPCui for de-de
"{AD17194D-3829-E59E-99A4-EC47097722CA}" = Windows App Certification Kit Native Components
"{AD1AEE2A-D9C0-3FAC-8D6B-B5E07B47257B}" = Microsoft Visual C++ 2012 Core Libraries
"{B1AC00A6-43D2-4F06-92F3-9B01529E5AD5}" = Microsoft ASP.NET Web Pages 2 - Visual Studio 2012 Tools - DEU
"{B33EA6ED-6F46-3BE1-98D2-F43D2A82EE39}" = Microsoft Visual Studio Ultimate 2012 XAML UI Designer deu Resources
"{B3533B84-A8DF-4A7A-8E95-B15F08B26E96}" = Microsoft Visual Studio 2012 IntelliTrace Core x86
"{B8FFB7D6-6ABD-47C3-8BAD-86FF5D8F3EDC}" = IIS 8.0 Express
"{B96FCD4F-6EDD-4258-8A6D-0FCEA8445E3E}" = Microsoft Web Developer Tools - Visual Studio 2012
"{BD87E147-2948-4E49-9FD9-890A4AE4300A}" = Microsoft Visual Studio 2012 Shell-(Mindest)-Ressourcen
"{BDBE5D2A-AAB7-77BD-7A0E-5006665CE7C6}" = LocalESPC
"{C1BE4600-7D15-3D1E-8AA2-B3241DB1D063}" = Microsoft Visual Studio Ultimate 2012 XAML UI Designer Core
"{C1ECF949-72E2-4084-82B2-FBD276DBC3B5}" = Microsoft Visual Studio 2012-Leistungserfassungstools - DEU
"{C226DDBF-A740-F6E2-9859-08D1581C7507}" = CCC Help Italian
"{C4CAD994-6EA2-3121-8352-DA593150B322}" = Microsoft Portable Library Multi-Targeting Pack
"{CEE1F4AA-FAAE-6574-8AE6-93727FD6C246}" = Windows App Certification Kit x86
"{CEEDB2C4-46BE-4340-BAB9-F30110D9BBB8}" = Microsoft SQL Server Data Tools Build Utilities - DEU (11.1.20627.00)
"{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}" = Microsoft .NET Framework 4 Multi-Targeting Pack
"{D11F66FF-82B3-DDB8-1146-525370552BE1}" = Windows Software Development Kit for Windows Store Apps
"{D3F1C46B-4DAD-439D-B940-E8144DD9B69A}" = Microsoft ASP.NET MVC 3 - Visual Studio 2012 Tools Update - DEU
"{D4008E9D-8A0A-E3CE-F987-5EEA38A6017F}" = CCC Help Czech
"{D434E072-F482-4F52-AB97-7B19DD5DAEB5}" = Microsoft SQL Server System CLR Types
"{D971780F-A609-4F78-92AA-B56FBC3955B9}" = Microsoft Visual Studio 2012 IntelliTrace Front End x86
"{DCDEC776-BADD-48B9-8F9A-DFF513C3D7FA}" = Microsoft ASP.NET MVC 3
"{DDC1078D-00E9-CB9D-EA5B-EE695A38D346}" = Windows Runtime Intellisense Content - de-de
"{E135A549-5A50-4EB0-05F9-C25F91485287}" = CCC Help Korean
"{E43AC95E-66B0-4CEC-AADD-C9BFEF5A4C0A}" = Microsoft Web Deploy 3.0
"{EA33215B-1391-314B-8752-C4C448304AC5}" = Microsoft Portable Library Multi-Targeting Pack Language Pack - deu
"{EBF7A5B3-8FF6-584F-22D8-517EB4A56FA0}" = Catalyst Control Center InstallProxy
"{ECB0B61B-5F85-3343-AF48-958B74376A94}" = Microsoft Visual Studio Ultimate 2012 - DEU
"{EFA87714-E75A-3BFC-A698-A3AABA5A8A0C}" = Microsoft Visual Studio Ultimate 2012
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F351AA2C-723C-4CFE-A7CB-8E43AB164F7F}" = Microsoft Silverlight 5 SDK - DEU
"{F3DE7631-3D3E-4B0D-F832-5A17A8138A69}" = CCC Help Dutch
"{F4FD5690-F64D-34C9-B728-B641DFDFEAE3}" = Microsoft Visual Studio Premium 2012 - DEU
"{F56A0341-F545-3EFB-A7B4-25CD67D04022}" = Microsoft Visual Studio Professional 2012 - DEU
"{F63B2C40-A153-38EC-880C-0A53EF24779A}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x86)
"{F6F1EE45-97E9-48A3-94B2-044B0A3C08D3}" = Microsoft SQL Server Data Tools - DEU (11.1.20627.00)
"{F803564F-1E23-313A-9162-18880B9D4FDF}" = Microsoft Visual Studio 2010 Office Developer Tools (x86) Language Pack - DEU
"{FBA6F90E-36EC-4FC9-9B25-3834E3BD46A8}" = Microsoft SQL Server 2012 Data-Tier App Framework 
"{FBBC8076-BB21-4E06-9FA0-309AEF6E35EE}" = Microsoft ASP.NET Web Pages 2 Runtime
"{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727
"{fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb" = IIS Express Application Compatibility Database for x86
"{FEB375AB-6EEC-3929-8FAF-188ED81DD8B5}" = Microsoft Help Viewer 2.0
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Avira AntiVir Desktop" = Avira Free Antivirus
"Battle.net" = Battle.net
"Canon MG5300 series Benutzerregistrierung" = Canon MG5300 series Benutzerregistrierung
"Canon MG5300 series On-screen Manual" = Canon MG5300 series On-screen Manual
"Canon_IJ_Network_Scanner_Selector_EX" = Canon IJ Network Scanner Selector EX
"Canon_IJ_Network_UTILITY" = Canon IJ Network Tool
"CanonMyPrinter" = Canon My Printer
"CanonSolutionMenuEX" = Canon Solution Menu EX
"DAEMON Tools Lite" = DAEMON Tools Lite
"Easy-PhotoPrint EX" = Canon Easy-PhotoPrint EX
"Hearthstone" = Hearthstone
"LPL Software_is1" = LPL Software 2.7
"Microsoft Help Viewer 2.0" = Microsoft Help Viewer 2.0
"Microsoft Help Viewer 2.0 Language Pack - DEU" = Microsoft Help Viewer 2.0 Language Pack - DEU
"Microsoft Visual Studio 2010 Tools for Office Runtime (x86)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x86)
"Microsoft Visual Studio 2010 Tools for Office Runtime (x86) Language Pack - DEU" = Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x86) Language Pack - DEU
"Mozilla Firefox 25.0.1 (x86 de)" = Mozilla Firefox 25.0.1 (x86 de)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"MP Navigator EX 5.0" = Canon MP Navigator EX 5.0
"Notepad++" = Notepad++
"VLC media player" = VLC media player 2.1.0
"WinRAR archiver" = WinRAR 5.00 (32-Bit)
 
========== Last 20 Event Log Errors ==========
 
[ Application Events ]
Error - 18.11.2013 18:32:15 | Computer Name = Daniel | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "c:\program files\Canon\mp
 navigator ex 5.0\mpnmlif64.exe".  Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 18.11.2013 18:34:40 | Computer Name = Daniel | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "c:\program files\Canon\mp
 navigator ex 5.0\mpnmlif64.exe".  Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 19.11.2013 14:38:09 | Computer Name = Daniel | Source = Microsoft-Windows-CAPI2 | ID = 513
Description = Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts
 "System Writer".  Details: AddLegacyDriverFiles: Unable to back up image of binary
 Microsoft-Verbindungsschichterkennungsprotokoll.  System Error: Zugriff verweigert
.
 
Error - 19.11.2013 17:42:11 | Computer Name = Daniel | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: firefox.exe, Version: 25.0.1.5064,
 Zeitstempel: 0x5282f204  Name des fehlerhaften Moduls: xul.dll, Version: 25.0.1.5064,
 Zeitstempel: 0x5282f10e  Ausnahmecode: 0xc0000005  Fehleroffset: 0x00118f87  ID des fehlerhaften
 Prozesses: 0x1524  Startzeit der fehlerhaften Anwendung: 0x01cee51f1262eb54  Pfad der
 fehlerhaften Anwendung: C:\Program Files\Mozilla Firefox\firefox.exe  Pfad des fehlerhaften
 Moduls: C:\Program Files\Mozilla Firefox\xul.dll  Berichtskennung: 71a20c50-5163-11e3-971c-001f16a546fe
Vollständiger
 Name des fehlerhaften Pakets:   Anwendungs-ID, die relativ zum fehlerhaften Paket
 ist: 
 
Error - 20.11.2013 09:06:45 | Computer Name = Daniel | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files\Canon\Solution
 Menu EX\MFC80U.DLL".  Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 20.11.2013 09:06:45 | Computer Name = Daniel | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files\Canon\Solution
 Menu EX\MFC80U.DLL".  Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 20.11.2013 09:41:33 | Computer Name = Daniel | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files\Canon\Solution
 Menu EX\MFC80U.DLL".  Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 20.11.2013 09:41:33 | Computer Name = Daniel | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files\Canon\Solution
 Menu EX\MFC80U.DLL".  Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 20.11.2013 10:41:34 | Computer Name = Daniel | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "c:\program files\Canon\mp
 navigator ex 5.0\mpnmlif64.exe".  Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
Error - 20.11.2013 10:42:23 | Computer Name = Daniel | Source = SideBySide | ID = 16842785
Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files\DriverTuner\DPInst64.exe".
Die
 abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0""
 konnte nicht gefunden werden.  Verwenden Sie für eine detaillierte Diagnose das Programm
 "sxstrace.exe".
 
[ System Events ]
Error - 20.11.2013 07:32:42 | Computer Name = Daniel | Source = Microsoft-Windows-Kernel-Power | ID = 137
Description = 
 
Error - 20.11.2013 10:28:53 | Computer Name = Daniel | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Installationsfehler: Die Installation des folgenden Updates ist mit
 Fehler 0x80070005 fehlgeschlagen: Update für Windows 8.1 (KB2883200)
 
Error - 20.11.2013 11:37:14 | Computer Name = Daniel | Source = Microsoft-Windows-Kernel-Power | ID = 137
Description = 
 
Error - 20.11.2013 18:13:33 | Computer Name = Daniel | Source = Microsoft-Windows-Kernel-Power | ID = 137
Description = 
 
Error - 21.11.2013 03:34:10 | Computer Name = Daniel | Source = Ntfs | ID = 55
Description = In der Dateisystemstruktur auf Volume "??" wurde eine Beschädigung
 erkannt.    Die Masterdateitabelle (MFT) beinhaltet einen beschädigten Dateidatensatz.
 Die Dateireferenznummer ist 0x9000000000009. Der Name der Datei ist "<Dateiname
 kann nicht bestimmt werden>".  
 
Error - 21.11.2013 03:39:20 | Computer Name = Daniel | Source = Microsoft-Windows-Kernel-Power | ID = 137
Description = 
 
Error - 21.11.2013 06:39:27 | Computer Name = Daniel | Source = Ntfs | ID = 55
Description = In der Dateisystemstruktur auf Volume "??" wurde eine Beschädigung
 erkannt.    Die Masterdateitabelle (MFT) beinhaltet einen beschädigten Dateidatensatz.
 Die Dateireferenznummer ist 0x9000000000009. Der Name der Datei ist "<Dateiname
 kann nicht bestimmt werden>".  
 
Error - 21.11.2013 09:35:37 | Computer Name = Daniel | Source = Microsoft-Windows-Kernel-Power | ID = 137
Description = 
 
Error - 21.11.2013 14:05:45 | Computer Name = Daniel | Source = DCOM | ID = 10010
Description = 
 
Error - 21.11.2013 15:03:13 | Computer Name = Daniel | Source = DCOM | ID = 10010
Description = 
 
 
< End of report >
         

Alt 23.11.2013, 08:17   #12
schrauber
/// the machine
/// TB-Ausbilder
 

Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



Fehlalarme von Antivir
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 23.11.2013, 13:14   #13
Sunzi
 
Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



Hey,

schonmal vielen Dank für die bisherige Hilfe. Kann man die Fehlalarme irgendwie unterbinden? Gestern kam wieder einer und es wäre ganz schön lästig, wenn das regelmäßig passiert.

Alt 24.11.2013, 08:31   #14
schrauber
/// the machine
/// TB-Ausbilder
 

Mediyes.gen Trojaner entdeckt - Standard

Mediyes.gen Trojaner entdeckt



In Avira gibt es die Option den Kram einzusenden
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu Mediyes.gen Trojaner entdeckt
avira, csrss.exe, datei, desktop, dnsapi.dll, explorer.exe, forum, free, livecomm.exe, lsass.exe, löschen, modul, ntdll.dll, ntoskrnl.exe, problem, programm, prozesse, rundll, rundll32.exe, services.exe, spoolsv.exe, svchost.exe, system32, taskhost.exe, temp, trojaner, windows, windows 8.1, winlogon.exe, wuauclt.exe




Ähnliche Themen: Mediyes.gen Trojaner entdeckt


  1. Trojaner Mediyes.Gen
    Plagegeister aller Art und deren Bekämpfung - 24.08.2015 (14)
  2. TR/Mediyes.J.1 und Netzwerkprobleme
    Log-Analyse und Auswertung - 26.08.2014 (7)
  3. Windows 8.1 TR/Mediyes.gen
    Log-Analyse und Auswertung - 28.01.2014 (3)
  4. TR/Mediyes.Gen gefunden!
    Plagegeister aller Art und deren Bekämpfung - 05.01.2014 (5)
  5. Windows7 64bit / Avira findet Trojaner TR/Mediyes.Gen6 und TR/Kryptik.avp.20
    Log-Analyse und Auswertung - 28.12.2013 (8)
  6. Trojaner Mediyes.Gen
    Log-Analyse und Auswertung - 29.11.2013 (10)
  7. Avira hat Trojaner tr/mediyes.gen gefunden
    Log-Analyse und Auswertung - 22.11.2013 (9)
  8. Trojaner Mediyes.Gen
    Plagegeister aller Art und deren Bekämpfung - 04.11.2013 (13)
  9. TR/Mediyes.gen entdeckt D:
    Plagegeister aller Art und deren Bekämpfung - 17.04.2013 (37)
  10. tr/mediyes.cd
    Log-Analyse und Auswertung - 09.07.2012 (1)
  11. TR/Mediyes.EB.1 & TR/ATRAPS.Gen
    Log-Analyse und Auswertung - 26.06.2012 (35)
  12. TR/mediyes.F.3
    Plagegeister aller Art und deren Bekämpfung - 26.06.2012 (32)
  13. generic28 HGR / Mediyes
    Log-Analyse und Auswertung - 08.05.2012 (1)
  14. TR/Mediyes.B.6.
    Plagegeister aller Art und deren Bekämpfung - 17.03.2012 (10)
  15. Trojaner entdeckt / gelöscht, am Folgetag neuen entdeckt (Trojan.Downloader, Trojan.Vundo)
    Plagegeister aller Art und deren Bekämpfung - 30.07.2010 (6)
  16. WinNT/Mediyes.A
    Plagegeister aller Art und deren Bekämpfung - 15.04.2010 (4)

Zum Thema Mediyes.gen Trojaner entdeckt - Hallo liebes Forum, der Echtzeit-Scanner von Avira hat bei mir einen Trojaner entdeckt. Das Problem trat schon letzte Woche auf. Ich habe versucht ihn in Quarantäne zu schieben und zu - Mediyes.gen Trojaner entdeckt...
Archiv
Du betrachtest: Mediyes.gen Trojaner entdeckt auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.