|
Plagegeister aller Art und deren Bekämpfung: Maleware zeigt über 20 Bedrohungen an!Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
01.06.2014, 20:20 | #16 |
| Maleware zeigt über 20 Bedrohungen an! Hi Schrauber, anbei die punkte wie gewünscht...danke nochmal! FRST: Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version:01-06-2014 01 Ran by Ariane at 2014-06-01 20:47:04 Run:1 Running from C:\Users\Ariane\Desktop Boot Mode: Normal ============================================== Content of fixlist: ***************** HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [65536 2013-09-10] (Intel Corporation) HKU\S-1-5-21-514152167-946714269-2836888378-1001\...\Run: [GoogleChromeAutoLaunch_26D5B9356F0B1AFCAD759453B0B4C2ED] => C:\Program Files\Google\Chrome\Application\chrome.exe [860488 2014-05-14] (Google Inc.) C:\ProgramData\Lenovo-23270.vbs ***************** HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\DptfPolicyLpmServiceHelper => Value deleted successfully. HKU\S-1-5-21-514152167-946714269-2836888378-1001\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_26D5B9356F0B1AFCAD759453B0B4C2ED => Value deleted successfully. C:\ProgramData\Lenovo-23270.vbs => Moved successfully. ==== End of Fixlog ==== Code:
ATTFilter # DelFix v10.7 - Datei am 01/06/2014 um 20:53:05 erstellt # Aktualisiert am 27/04/2014 von Xplode # Benutzer : Ariane - LENOVO-PC # Betriebssystem : Windows 8.1 Pro (32 bits) ~ Aktiviere die Benutzerkontensteuerung ... OK ~ Entferne die Bereinigungsprogramme ... Gelöscht : C:\FRST Gelöscht : C:\Users\Ariane\Desktop\Fixlog.txt Gelöscht : C:\Users\Ariane\Desktop\FRST.exe Gelöscht : C:\Users\Ariane\Downloads\esetsmartinstaller_deu.exe Gelöscht : C:\Users\Ariane\Downloads\SecurityCheck.exe Gelöscht : HKLM\SOFTWARE\AdwCleaner ~ Erstelle ein Backup der Registrierungsdatenbank ... OK ~ Lösche die Wiederherstellungspunkte ... Gelöscht : RP #3 [Installed Lenovo Power Management Driver | 05/20/2014 21:28:29] Gelöscht : RP #4 [Geplanter Prüfpunkt | 05/30/2014 18:16:55] Ein neuer Wiederherstellungspunkt wurde erstellt ! ~ Stelle die Systemeinstellungen wieder her ... OK ########## - EOF - ########## Code:
ATTFilter alwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 01.06.2014 Suchlauf-Zeit: 20:58:28 Logdatei: malwarebytes.txt Administrator: Ja Version: 2.00.2.1012 Malware Datenbank: v2014.06.01.07 Rootkit Datenbank: v2014.05.21.01 Lizenz: Testversion Malware Schutz: Aktiviert Bösartiger Webseiten Schutz: Aktiviert Self-protection: Deaktiviert Betriebssystem: Windows 8.1 CPU: x86 Dateisystem: NTFS Benutzer: Ariane Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 270292 Verstrichene Zeit: 16 Min, 12 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 0 (No malicious items detected) Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 0 (No malicious items detected) Ordner: 0 (No malicious items detected) Dateien: 1 PUP.Optional.Speedial.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Preferences, Gut: (), Schlecht: ( "startup_urls": [ "", "hxxp://www.google.de/", "hxxp://speedial.com/?f=1&a=spd_dsites02_14_19_ch&cd=2XzuyEtN2Y1L1Qzu0FyC0ByB0EtBzy0F0CzytB0BtBtA0CtDtN0D0Tzu0SzzyCtCtN1L2XzutBtFtBtDtFzytFtCtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StA0E0E0FyD0E0AzztG0CzyzzyBtG0Bzy0ByBtGtAtDzy0FtGyB0D0EyCzyyC0EyCzyyDtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0CyEtDtCyCzytCtGyD0A0EyBtGyDtB0C0EtG0DtB0C0FtGtD0FyE0D0EyC0B0FyD0BtDtD2Q&cr=2020589313&ir=", "hxxp://istart.webssearches.com/?type=hp&ts=1399742337&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399742997&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743112&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743250&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399744726&from=tugs&uid=3219782655_198225_30DD23C0" ],), Ersetzt,[55f6f87bdc9fe3535bace1acfa0a649c] Physische Sektoren: 0 (No malicious items detected) (end) |
02.06.2014, 18:36 | #17 |
/// the machine /// TB-Ausbilder | Maleware zeigt über 20 Bedrohungen an! Das ist noch ne Startseitenänderung. WIrd die nach entfernen nochmal gefunden?
__________________
__________________ |
02.06.2014, 19:12 | #18 |
| Maleware zeigt über 20 Bedrohungen an! Hi,
__________________ja hab den selben Fund nochmal!? Was nun? |
03.06.2014, 18:37 | #19 |
/// the machine /// TB-Ausbilder | Maleware zeigt über 20 Bedrohungen an! Revo Uninstaller - Download - Filepony damit Chrome deinstallieren, keine Daten behalten, Reste entfernen lassen, neu installieren. Dann: https://support.google.com/chrome/answer/3296214?hl=de
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
03.06.2014, 21:30 | #20 |
| Maleware zeigt über 20 Bedrohungen an! hi, also ich hab die 2 aktionen wie beschrieben ausgeführt. ohne chrome hatte ich keine funde bei malwarebytey, aber mit dem installierten chrome kam dann das. Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 03.06.2014 Suchlauf-Zeit: 21:55:56 Logdatei: malware.txt Administrator: Ja Version: 2.00.2.1012 Malware Datenbank: v2014.06.03.06 Rootkit Datenbank: v2014.06.02.01 Lizenz: Testversion Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Self-protection: Deaktiviert Betriebssystem: Windows 8.1 CPU: x86 Dateisystem: NTFS Benutzer: Ariane Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 272456 Verstrichene Zeit: 25 Min, 45 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 0 (No malicious items detected) Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 0 (No malicious items detected) Ordner: 4 PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd, In Quarantäne, [b0621460730889ad248e6e19b15129d7], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0, In Quarantäne, [b0621460730889ad248e6e19b15129d7], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl, In Quarantäne, [858d1a5adc9fb87ea91f4c3bb54d0ff1], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0, In Quarantäne, [858d1a5adc9fb87ea91f4c3bb54d0ff1], Dateien: 14 PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0\background.js, In Quarantäne, [b0621460730889ad248e6e19b15129d7], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0\icon-128.png, In Quarantäne, [b0621460730889ad248e6e19b15129d7], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0\icon-16.png, In Quarantäne, [b0621460730889ad248e6e19b15129d7], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0\icon-48.png, In Quarantäne, [b0621460730889ad248e6e19b15129d7], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0\manifest.json, In Quarantäne, [b0621460730889ad248e6e19b15129d7], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0\script.js, In Quarantäne, [b0621460730889ad248e6e19b15129d7], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\background.js, In Quarantäne, [858d1a5adc9fb87ea91f4c3bb54d0ff1], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\extension.js, In Quarantäne, [858d1a5adc9fb87ea91f4c3bb54d0ff1], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\icon-128.png, In Quarantäne, [858d1a5adc9fb87ea91f4c3bb54d0ff1], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\icon-16.png, In Quarantäne, [858d1a5adc9fb87ea91f4c3bb54d0ff1], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\icon-48.png, In Quarantäne, [858d1a5adc9fb87ea91f4c3bb54d0ff1], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\jquery-1.11.0.min.js, In Quarantäne, [858d1a5adc9fb87ea91f4c3bb54d0ff1], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\jquery.bpopup.min.js, In Quarantäne, [858d1a5adc9fb87ea91f4c3bb54d0ff1], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\manifest.json, In Quarantäne, [858d1a5adc9fb87ea91f4c3bb54d0ff1], Physische Sektoren: 0 (No malicious items detected) (end) |
04.06.2014, 18:45 | #21 |
/// the machine /// TB-Ausbilder | Maleware zeigt über 20 Bedrohungen an! Synchronisierst du Chrome mit einem Google Konto? Frisches FRST log bitte.
__________________ --> Maleware zeigt über 20 Bedrohungen an! |
04.06.2014, 19:23 | #22 |
| Maleware zeigt über 20 Bedrohungen an! Ja ich hab ein Google Konto. anbei dwr frst.log: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:02-06-2014 Ran by Ariane (administrator) on LENOVO-PC on 04-06-2014 20:20:30 Running from C:\Users\Ariane\Downloads Platform: Microsoft Windows 8.1 Pro (X86) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Lenovo.) C:\Windows\System32\ibmpmsvc.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\WTabletServiceISD.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe (Intel Corporation) C:\Windows\System32\DptfParticipantDisplayService.exe (Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe (Lenovo Group Limited) C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\SystemAgent\SystemAgentService.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\CamMute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe (Nitro PDF Software) C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe (Nalpeiron Ltd.) C:\Windows\System32\NLSSRV32.EXE (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe (Wistron Corp.) C:\Program Files\DPR\WisLMSvc.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (PARTRON) C:\Program Files\TrackPoint\TrackPointApp.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\ISD_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\ISD\WacomHost.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\ISD_Tablet.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Microsoft Corporation) C:\Windows\System32\RuntimeBroker.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\extapsup.exe (Wistron Corp.) C:\Program Files\DPR\DPR.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe (Primax Electronics Ltd.) C:\Windows\System32\ico.exe () C:\Windows\System32\FSRremoS.EXE (Primax Electronics Ltd.) C:\Windows\System32\PELMICED.EXE (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTStackServer.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Corporation) C:\Windows\WinStore\WSHost.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\QuickSnipService\QuickSnipService.exe (Lenovo) C:\Program Files\Lenovo\QuickSnipService\QuickSnipInput.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe () C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe () C:\Program Files\Lenovo\LocationAware\lpdagent.exe (Lenovo) C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\dfsvc.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [LenovoOptMouseUpdate] => C:\Program Files\Lenovo\HOTKEY\extapsup.exe [244728 2013-06-20] (Lenovo Group Limited) HKLM\...\Run: [{E13C0407-3243-448C-BF1D-DC7C7E02C358}] => C:\Program Files\DPR\DPR.exe [409352 2013-10-30] (Wistron Corp.) HKLM\...\Run: [RtkNGUI] => C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe [2891776 2013-10-07] (Realtek Semiconductor) HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [937976 2013-09-11] (Lenovo) HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\LibStartStub.dll [74288 2014-03-04] (Lenovo Corporation) HKLM\...\Run: [Mouse Suite 98 Daemon] => C:\WINDOWS\SYSTEM32\ICO.EXE [57344 2004-07-14] (Primax Electronics Ltd.) HKU\S-1-5-21-514152167-946714269-2836888378-1001\...\Run: [GoogleChromeAutoLaunch_26D5B9356F0B1AFCAD759453B0B4C2ED] => C:\Program Files\Google\Chrome\Application\chrome.exe [860488 2014-05-14] (Google Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13-comm.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS SearchScopes: HKCU - DefaultScope {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = SearchScopes: HKCU - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF Plugin: @nitropdf.com/NitroPDF - C:\Program Files\Nitro\Pro 8\npnitromozilla.dll (Nitro PDF) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) Chrome: ======= CHR HomePage: CHR StartupUrls: "", "hxxp://www.google.de/", "hxxp://speedial.com/?f=1&a=spd_dsites02_14_19_ch&cd=2XzuyEtN2Y1L1Qzu0FyC0ByB0EtBzy0F0CzytB0BtBtA0CtDtN0D0Tzu0SzzyCtCtN1L2XzutBtFtBtDtFzytFtCtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StA0E0E0FyD0E0AzztG0CzyzzyBtG0Bzy0ByBtGtAtDzy0FtGyB0D0EyCzyyC0EyCzyyDtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0CyEtDtCyCzytCtGyD0A0EyBtGyDtB0C0EtG0DtB0C0FtGtD0FyE0D0EyC0B0FyD0BtDtD2Q&cr=2020589313&ir=", "hxxp://istart.webssearches.com/?type=hp&ts=1399742337&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399742997&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743112&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743250&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399744726&from=tugs&uid=3219782655_198225_30DD23C0" CHR Extension: (Google Docs) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-03] CHR Extension: (Google Drive) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-03] CHR Extension: (YouTube) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-03] CHR Extension: (Google Cast) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2014-06-04] CHR Extension: (Google-Suche) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-03] CHR Extension: (Gmail offline) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2014-06-04] CHR Extension: (Google Kalender) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-06-04] CHR Extension: (Google Kalender (von Google)) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2014-06-04] CHR Extension: (LastPass: Free Password Manager) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2014-06-04] CHR Extension: (Google Play Music) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2014-06-04] CHR Extension: (Headline Count) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl [2014-06-04] CHR Extension: (Text Highlighter) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd [2014-06-04] CHR Extension: (Google Mail-Checker) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-06-04] CHR Extension: (Google Wallet) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-03] CHR Extension: (Google Chrome to Phone Extension) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco [2014-06-04] CHR Extension: (Google Mail) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-03] ========================== Services (Whitelisted) ================= S3 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [573488 2014-03-04] (Lenovo Corporation) S2 BcmBtRSupport; C:\WINDOWS\system32\BtwRSupportService.exe [1677016 2013-11-14] (Broadcom Corporation.) R2 DptfParticipantDisplayService; C:\WINDOWS\system32\DptfParticipantDisplayService.exe [97792 2013-09-10] (Intel Corporation) R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [69632 2013-09-10] (Intel Corporation) R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [56832 2013-09-10] (Intel Corporation) S2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [75776 2013-09-10] (Intel Corporation) R2 Lenovo QuickSnip Service; C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe [204176 2012-10-08] (LENOVO INCORPORATED.) R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2085184 2014-03-10] (Lenovo Group Limited) R2 Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [549776 2012-11-10] (LENOVO INCORPORATED.) R2 LENOVO.CAMMUTE; C:\Program Files\Lenovo\Communications Utility\CamMute.exe [512048 2014-03-04] (Lenovo Corporation) R2 LENOVO.MICMUTE; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [110128 2014-04-07] (Lenovo Group Limited) R2 LENOVO.TPKNRSVC; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [527920 2014-03-04] (Lenovo Group Limited) R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [702512 2014-03-04] (Lenovo Corporation) R2 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [467960 2013-09-11] (Lenovo) R2 LocationTaskManager; C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe [468288 2013-12-11] () R2 NitroDriverReadSpool8; C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe [196616 2012-11-18] (Nitro PDF Software) S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [105472 2013-08-22] (Microsoft Corporation) S3 SUService; C:\Program Files\Lenovo\System Update\SUService.exe [24120 2014-02-21] () R2 TPHKLOAD; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [115248 2014-04-01] (Lenovo Group Limited) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [279784 2014-05-20] (Microsoft Corporation) S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2013-08-22] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22224 2014-05-20] (Microsoft Corporation) R2 WisLMSvc; C:\Program Files\DPR\WisLMSvc.exe [119608 2013-10-30] (Wistron Corp.) S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1210368 2014-05-20] (Microsoft Corporation) R2 WTabletServiceISD; C:\Program Files\Tablet\ISD\WTabletServiceISD.exe [500024 2013-11-06] (Wacom Technology, Corp.) ==================== Drivers (Whitelisted) ==================== R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-03-18] (Microsoft Corporation) R3 BcmGnssBus; C:\WINDOWS\System32\drivers\BcmGnssBus.sys [77384 2012-10-29] (Broadcom Corporation) R3 BcmNfcIc; C:\WINDOWS\System32\drivers\BcmNfcIc.sys [66264 2014-06-01] (Broadcom Corporation.) R3 BCMSDH43XX; C:\WINDOWS\system32\DRIVERS\bcmdhd63.sys [521392 2014-06-01] (Broadcom) R3 BthLEEnum; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [186880 2014-03-18] (Microsoft Corporation) R3 BthMini; C:\WINDOWS\System32\Drivers\BTHMINI.sys [24064 2013-08-22] (Microsoft Corporation) R3 btwampfl; C:\WINDOWS\System32\drivers\btwampfl.sys [144600 2013-09-05] (Broadcom Corporation.) R3 BtwSerialBus; C:\WINDOWS\System32\drivers\BtwSerialBus.sys [130776 2013-09-10] (Broadcom Corporation.) R3 camera; C:\WINDOWS\system32\DRIVERS\camera.sys [207872 2013-09-10] (Intel Corporation) R0 ChaabiDriver; C:\WINDOWS\System32\drivers\ChaabiDriver.sys [74256 2013-09-10] (Intel Corporation) R0 clvpep; C:\WINDOWS\System32\drivers\clvpep.sys [81648 2012-10-24] (Intel Corporation) R3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [44256 2013-09-10] (Intel Corporation) R3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [49888 2013-09-10] (Intel Corporation) R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [69344 2013-09-10] (Intel Corporation) R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [163552 2013-09-10] (Intel Corporation) S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation) R3 GPIOCLV; C:\WINDOWS\System32\drivers\GPIOCLV.sys [22016 2013-09-10] (Intel Corporation) R3 GpioVirtual; C:\WINDOWS\System32\drivers\GpioVirtual.sys [11264 2013-09-10] (Windows (R) Win 7 DDK provider) R3 igdperf32; C:\WINDOWS\system32\DRIVERS\igdperf32.sys [4096 2013-11-20] () R0 inteli2c; C:\WINDOWS\System32\drivers\inteli2c.sys [48880 2013-09-10] (Intel Corporation) R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [237056 2013-04-10] (Intel(R) Corporation) R0 Lm3554; C:\WINDOWS\System32\drivers\lm3554.sys [34816 2013-09-10] (Intel Corporation) R0 LNWIPC; C:\WINDOWS\System32\drivers\LNWIPC.sys [25840 2013-09-10] (Intel Corporation) R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [16112 2013-09-10] (Intel Corporation) R3 MbmLowExt; C:\WINDOWS\System32\Drivers\MbmLowExt.sys [29696 2012-12-07] (Ericsson AB) R3 MbmUsbSerial; C:\WINDOWS\System32\Drivers\MbmUsbSerial.sys [62464 2012-07-03] (Ericsson AB) R3 MkBusFilter; C:\WINDOWS\System32\drivers\MbmDeviceFilter.sys [35080 2012-12-05] (Ericsson AB) R3 MSICReg; C:\WINDOWS\System32\drivers\MSICReg.sys [17408 2013-09-10] (Intel Corporation) R3 mxtBootBridge; C:\WINDOWS\System32\drivers\mxtBootBridge.sys [32064 2013-10-02] (Atmel Corporation) R3 ov2720; C:\WINDOWS\System32\drivers\ov2720.sys [46592 2013-09-10] (Intel Corporation) R3 ov8830; C:\WINDOWS\System32\drivers\ov8830.sys [63488 2013-09-10] (Intel Corporation) R3 pelmouse; C:\WINDOWS\system32\DRIVERS\pelmouse.sys [16384 2003-01-10] (Primax Electronics Ltd.) R3 pelusblf; C:\WINDOWS\system32\DRIVERS\pelusblf.sys [9216 2003-02-11] (Primax Electronics Ltd.) R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [143064 2013-11-05] (Realtek Semiconductor Corp.) R3 SensorsHIDClassDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 spi; C:\WINDOWS\System32\drivers\spi.sys [46592 2013-09-10] (Intel Corporation) R3 Uart16550pc; C:\WINDOWS\System32\drivers\Uart16550pc.sys [40960 2013-09-10] (Intel Corporation) R3 WacHidRouter; C:\WINDOWS\System32\drivers\wachidrouter.sys [76600 2013-11-01] (Wacom Technology) R3 wacomrouterfilter; C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [13112 2013-11-01] (Wacom Technology) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [92504 2014-05-20] (Microsoft Corporation) R3 wmbclass; C:\WINDOWS\system32\DRIVERS\wmbclass.sys [224256 2014-03-18] (Microsoft Corporation) R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-05-20] (Microsoft Corporation) R3 WUDFSensorLP; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-04 20:20 - 2014-06-04 20:20 - 00018085 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-06-04 20:20 - 2014-06-04 20:20 - 00000000 ____D () C:\FRST 2014-06-04 20:19 - 2014-06-04 20:20 - 01059840 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-06-04 20:07 - 2014-06-04 20:10 - 00002152 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-06-04 20:07 - 2014-06-04 20:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-06-04 20:05 - 2014-06-04 20:10 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-04 20:05 - 2014-06-04 20:10 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-04 20:05 - 2014-06-04 20:05 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Deployment 2014-06-03 20:24 - 2014-06-03 20:24 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Ariane\Downloads\revosetup95.exe 2014-06-03 20:24 - 2014-06-03 20:24 - 00001249 _____ () C:\Users\Ariane\Desktop\Revo Uninstaller.lnk 2014-06-03 20:24 - 2014-06-03 20:24 - 00000000 ____D () C:\Program Files\VS Revo Group 2014-06-02 20:27 - 2014-06-02 20:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek 2014-06-01 21:52 - 2014-06-02 20:27 - 00000000 ____D () C:\WINDOWS\LastGood 2014-06-01 21:37 - 2013-10-02 06:22 - 00032064 _____ (Atmel Corporation) C:\WINDOWS\system32\Drivers\mxtBootBridge.sys 2014-06-01 21:35 - 2013-12-11 22:53 - 00191192 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwavdt.sys 2014-06-01 21:35 - 2013-12-11 22:53 - 00158424 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwaudio.sys 2014-06-01 21:35 - 2013-12-11 22:53 - 00031448 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwrchid.sys 2014-06-01 21:35 - 2013-11-14 10:59 - 01677016 _____ (Broadcom Corporation.) C:\WINDOWS\system32\BtwRSupportService.exe 2014-06-01 21:35 - 2013-09-10 09:36 - 00130776 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\BtwSerialBus.sys 2014-06-01 21:35 - 2013-09-05 09:46 - 00144600 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwampfl.sys 2014-06-01 21:35 - 2013-07-03 01:10 - 00060120 _____ (Broadcom Corporation.) C:\WINDOWS\system32\btwdi.dll 2014-06-01 21:35 - 2012-07-27 07:48 - 00034616 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwl2cap.sys 2014-06-01 21:33 - 2014-06-01 21:33 - 00247512 _____ (Broadcom Corporation.) C:\WINDOWS\system32\BcmNfcRM.dll 2014-06-01 21:33 - 2014-06-01 21:33 - 00066264 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\BcmNfcIc.sys 2014-06-01 21:33 - 2014-06-01 21:33 - 00005526 _____ () C:\WINDOWS\system32\Drivers\BCM20791B3_002.004.010.0149.0151.ncd 2014-06-01 21:33 - 2014-06-01 21:33 - 00000522 _____ () C:\WINDOWS\system32\Drivers\BCM20791B3_002.004.010.0149.0150.ncd 2014-06-01 21:32 - 2014-06-01 21:36 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp 2014-06-01 21:32 - 2014-06-01 21:32 - 04354560 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvsrv.dll 2014-06-01 21:32 - 2014-06-01 21:32 - 03700736 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvui.dll 2014-06-01 21:32 - 2014-06-01 21:32 - 00521392 _____ (Broadcom) C:\WINDOWS\system32\Drivers\bcmdhd63.sys 2014-06-01 21:32 - 2014-06-01 21:32 - 00466880 _____ () C:\WINDOWS\system32\Drivers\43241b0rtecdc.bin 2014-06-01 21:32 - 2014-06-01 21:32 - 00405488 _____ () C:\WINDOWS\system32\Drivers\43241b4rtecdc.bin 2014-06-01 21:32 - 2014-06-01 21:32 - 00239820 _____ () C:\WINDOWS\system32\Drivers\4330b2rtecdc.bin 2014-06-01 21:32 - 2014-06-01 21:32 - 00016560 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\bcmfn2.sys 2014-06-01 21:32 - 2014-06-01 21:32 - 00001899 _____ () C:\WINDOWS\system32\Drivers\bcm943241ipaagb_p100-W085-0.txt 2014-06-01 21:32 - 2014-06-01 21:32 - 00000000 ____D () C:\Program Files\Broadcom 2014-06-01 20:53 - 2014-06-01 20:53 - 00000939 _____ () C:\DelFix.txt 2014-05-30 21:59 - 2014-05-30 21:59 - 00002222 _____ () C:\anti maleware.txt 2014-05-27 19:30 - 2014-06-01 20:53 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-05-27 19:24 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\system32\sqlite3.dll 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\WTablet 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Program Files\Tablet 2014-05-26 22:04 - 2013-11-06 14:50 - 01604408 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\ISD_Tablet.dll 2014-05-26 22:04 - 2013-11-06 14:50 - 01597240 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\ISD_Touch_Tablet.dll 2014-05-26 22:04 - 2013-11-06 14:50 - 01483064 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\Wintab32.dll 2014-05-26 22:04 - 2013-11-01 10:41 - 00076600 _____ (Wacom Technology) C:\WINDOWS\system32\Drivers\wachidrouter.sys 2014-05-26 22:04 - 2013-11-01 10:41 - 00013112 _____ (Wacom Technology) C:\WINDOWS\system32\Drivers\wacomrouterfilter.sys 2014-05-26 22:04 - 2012-04-11 14:34 - 01461992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wdfcoinstaller01009.dll 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieUserList 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieSiteList 2014-05-23 17:52 - 2014-05-23 17:54 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-22 19:20 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ico.exe 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 17:57 - 2006-01-16 14:40 - 00073728 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELHOOKS.DLL 2014-05-21 17:57 - 2005-12-30 13:36 - 00126976 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELSCRLL.DLL 2014-05-21 17:57 - 2005-11-25 20:06 - 00229376 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINST.EXE 2014-05-21 17:57 - 2005-09-12 22:22 - 00135168 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELMICED.EXE 2014-05-21 17:57 - 2005-05-20 16:15 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELPPM.DLL 2014-05-21 17:57 - 2005-01-27 11:29 - 00282624 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELWHEEL.DLL 2014-05-21 17:57 - 2005-01-27 10:31 - 00458126 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELBDO.DLL 2014-05-21 17:57 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ICONSPY.EXE 2014-05-21 17:57 - 2004-03-26 14:17 - 00036864 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINNT.EXE 2014-05-21 17:57 - 2004-02-20 10:43 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELUTIL.DLL 2014-05-21 17:57 - 2004-02-20 10:37 - 00049152 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELCOMM.DLL 2014-05-21 17:57 - 2003-11-06 15:51 - 00020480 _____ () C:\WINDOWS\system32\FSRremoS.EXE 2014-05-21 17:57 - 2003-10-28 21:46 - 00024576 _____ () C:\WINDOWS\system32\FSRremoC.DLL 2014-05-21 17:57 - 2003-05-21 13:11 - 00090112 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELZOOM.DLL 2014-05-21 17:57 - 2003-02-11 13:25 - 00009216 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\pelusblf.sys 2014-05-21 17:57 - 2003-01-10 13:55 - 00016384 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\PELMOUSE.SYS 2014-05-21 17:57 - 2001-11-15 17:03 - 00024576 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Pelsetup.dll 2014-05-21 17:57 - 2001-10-04 17:34 - 00019456 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMO32R.DLL 2014-05-21 17:57 - 2001-08-07 17:23 - 00045056 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELRESS.DLL 2014-05-21 17:57 - 2001-07-04 17:46 - 00439003 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMBDO.DLL 2014-05-21 17:57 - 2000-10-13 10:07 - 00075776 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMILG.DLL 2014-05-21 17:57 - 1999-11-19 15:20 - 00065536 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMIBM.DLL 2014-05-21 17:57 - 1999-07-12 16:12 - 00061952 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMRESHP.DLL 2014-05-21 06:56 - 2014-04-08 20:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll 2014-05-21 06:56 - 2014-04-08 20:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:34 - 2013-04-10 15:51 - 00640436 _____ () C:\WINDOWS\system32\Drivers\realtek_fw_sst.bin 2014-05-20 23:34 - 2013-04-10 15:51 - 00237056 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\isstrtc.sys 2014-05-20 23:34 - 2013-04-10 15:51 - 00000166 _____ () C:\WINDOWS\system32\Drivers\RTKIDSPEXT3.DAT 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:30 - 2014-05-21 18:04 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-20 23:28 - 2013-12-17 18:00 - 00056664 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmsvc.exe 2014-05-20 23:28 - 2013-12-17 18:00 - 00036696 _____ (Lenovo.) C:\WINDOWS\system32\tpinspm.dll 2014-05-20 23:28 - 2013-12-17 17:59 - 00060760 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmctl.exe 2014-05-20 23:28 - 2013-12-17 17:59 - 00045880 _____ (Lenovo.) C:\WINDOWS\system32\Drivers\ibmpmdrv.sys 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2013-11-05 17:44 - 00143064 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\rtii2sac.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00745472 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCameraPlugin.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00207872 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\camera.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00163552 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfManager.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00116736 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV2720_11P2SF211.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00109568 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSocYuvCopy.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00107520 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV8830_11P2BA849.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00101888 _____ (Intel(R) Corporation) C:\WINDOWS\system32\hsmon.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00097792 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantDisplayService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00075776 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00074256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ChaabiDriver.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00069632 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantProcessorService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00069344 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevProc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00065536 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00063488 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov8830.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00056832 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyCriticalService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00049888 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevGen.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00048880 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\inteli2c.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\spi.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov2720.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00044256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevDisplay.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00040960 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Uart16550pc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00034816 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\lm3554.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00025840 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\LNWIPC.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00022016 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\GPIOCLV.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00017408 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MSICReg.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00016112 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MBI.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00011264 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\GpioVirtual.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Video_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Primary_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005823 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00002056 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00001980 _____ () C:\WINDOWS\system32\Video_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:11 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-20 23:11 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:59 - 2014-06-04 19:27 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:16 - 2014-05-23 18:00 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 21:04 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2014-05-20 20:31 - 2014-06-04 20:19 - 01682305 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:21 - 2014-06-04 20:20 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Temp 2014-05-20 20:21 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:24 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:31 - 2014-05-20 20:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-19 22:34 - 2014-06-04 19:33 - 00110296 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-19 22:33 - 2014-05-30 21:36 - 00001083 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-19 22:33 - 2014-05-30 21:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-30 21:36 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:32 - 2014-05-12 07:26 - 00051928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2014-05-19 22:32 - 2014-05-12 07:25 - 00074456 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-05-19 22:32 - 2014-05-12 07:25 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 22:26 - 2014-05-23 18:00 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-19 22:21 - 2014-03-04 12:50 - 00067120 _____ (Lenovo Corporation) C:\WINDOWS\system32\LibDriverMftStart.dll 2014-05-19 22:17 - 2013-12-24 10:22 - 02038832 _____ (Lenovo Group Limited) C:\WINDOWS\system32\SettingsDriverHelper.dll 2014-05-19 22:16 - 2012-11-26 15:34 - 02146160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WudfUpdate_01011.dll 2014-05-19 21:44 - 2014-06-04 20:06 - 00000000 ____D () C:\Program Files\Google 2014-05-19 21:44 - 2014-05-19 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:55 - 2014-05-19 19:57 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-19 19:55 - 2014-05-04 17:14 - 90547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-18 22:06 - 2014-01-19 09:32 - 00231584 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-06-04 18:50 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:45 - 2013-05-04 06:10 - 00014848 ____N (Microsoft) C:\WINDOWS\system32\rars.rs 2014-05-18 21:45 - 2012-07-30 21:00 - 00002122 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo QuickSnip Toasts.lnk 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt ==================== One Month Modified Files and Folders ======= 2014-06-04 20:20 - 2014-06-04 20:20 - 00018085 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-06-04 20:20 - 2014-06-04 20:20 - 00000000 ____D () C:\FRST 2014-06-04 20:20 - 2014-06-04 20:19 - 01059840 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-06-04 20:20 - 2014-05-20 20:21 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Temp 2014-06-04 20:19 - 2014-05-20 20:31 - 01682305 _____ () C:\WINDOWS\WindowsUpdate.log 2014-06-04 20:10 - 2014-06-04 20:07 - 00002152 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-06-04 20:10 - 2014-06-04 20:05 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-04 20:10 - 2014-06-04 20:05 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-04 20:07 - 2014-06-04 20:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-06-04 20:06 - 2014-05-19 21:44 - 00000000 ____D () C:\Program Files\Google 2014-06-04 20:05 - 2014-06-04 20:05 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Deployment 2014-06-04 20:00 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-06-04 19:33 - 2014-05-19 22:34 - 00110296 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-06-04 19:31 - 2014-03-18 10:04 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-06-04 19:27 - 2014-05-20 22:59 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-06-04 19:27 - 2013-08-22 09:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-06-04 19:27 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-06-04 18:50 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-06-03 21:19 - 2014-03-18 01:54 - 00011674 _____ () C:\WINDOWS\PFRO.log 2014-06-03 20:45 - 2012-07-26 08:53 - 00000000 ____D () C:\WINDOWS\LiveKernelReports 2014-06-03 20:24 - 2014-06-03 20:24 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Ariane\Downloads\revosetup95.exe 2014-06-03 20:24 - 2014-06-03 20:24 - 00001249 _____ () C:\Users\Ariane\Desktop\Revo Uninstaller.lnk 2014-06-03 20:24 - 2014-06-03 20:24 - 00000000 ____D () C:\Program Files\VS Revo Group 2014-06-03 03:05 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-06-02 20:27 - 2014-06-02 20:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek 2014-06-02 20:27 - 2014-06-01 21:52 - 00000000 ____D () C:\WINDOWS\LastGood 2014-06-02 20:27 - 2013-08-22 09:23 - 00289155 _____ () C:\WINDOWS\setupact.log 2014-06-02 20:27 - 2013-03-04 00:48 - 00002345 _____ () C:\RtkI2SSetup.log 2014-06-01 21:36 - 2014-06-01 21:32 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp 2014-06-01 21:33 - 2014-06-01 21:33 - 00247512 _____ (Broadcom Corporation.) C:\WINDOWS\system32\BcmNfcRM.dll 2014-06-01 21:33 - 2014-06-01 21:33 - 00066264 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\BcmNfcIc.sys 2014-06-01 21:33 - 2014-06-01 21:33 - 00005526 _____ () C:\WINDOWS\system32\Drivers\BCM20791B3_002.004.010.0149.0151.ncd 2014-06-01 21:33 - 2014-06-01 21:33 - 00000522 _____ () C:\WINDOWS\system32\Drivers\BCM20791B3_002.004.010.0149.0150.ncd 2014-06-01 21:33 - 2013-03-04 00:45 - 00055724 _____ () C:\WINDOWS\DPINST.LOG 2014-06-01 21:32 - 2014-06-01 21:32 - 04354560 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvsrv.dll 2014-06-01 21:32 - 2014-06-01 21:32 - 03700736 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvui.dll 2014-06-01 21:32 - 2014-06-01 21:32 - 00521392 _____ (Broadcom) C:\WINDOWS\system32\Drivers\bcmdhd63.sys 2014-06-01 21:32 - 2014-06-01 21:32 - 00466880 _____ () C:\WINDOWS\system32\Drivers\43241b0rtecdc.bin 2014-06-01 21:32 - 2014-06-01 21:32 - 00405488 _____ () C:\WINDOWS\system32\Drivers\43241b4rtecdc.bin 2014-06-01 21:32 - 2014-06-01 21:32 - 00239820 _____ () C:\WINDOWS\system32\Drivers\4330b2rtecdc.bin 2014-06-01 21:32 - 2014-06-01 21:32 - 00016560 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\bcmfn2.sys 2014-06-01 21:32 - 2014-06-01 21:32 - 00001899 _____ () C:\WINDOWS\system32\Drivers\bcm943241ipaagb_p100-W085-0.txt 2014-06-01 21:32 - 2014-06-01 21:32 - 00000000 ____D () C:\Program Files\Broadcom 2014-06-01 20:53 - 2014-06-01 20:53 - 00000939 _____ () C:\DelFix.txt 2014-06-01 20:53 - 2014-05-27 19:30 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-05-30 21:59 - 2014-05-30 21:59 - 00002222 _____ () C:\anti maleware.txt 2014-05-30 21:36 - 2014-05-19 22:33 - 00001083 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-30 21:36 - 2014-05-19 22:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-30 21:36 - 2014-05-19 22:32 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-30 20:53 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\rescache 2014-05-30 20:03 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\WTablet 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Program Files\Tablet 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieUserList 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieSiteList 2014-05-23 18:00 - 2014-05-20 21:16 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-23 18:00 - 2014-05-19 22:26 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-23 17:54 - 2014-05-23 17:52 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-23 17:52 - 2012-07-26 08:43 - 00000000 ____D () C:\WINDOWS\CbsTemp 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 18:04 - 2014-05-20 23:30 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-21 18:04 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Help 2014-05-21 18:04 - 2013-03-04 01:07 - 00000000 ___HD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools 2014-05-21 18:04 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Lenovo 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:33 - 2013-03-04 00:48 - 00000000 ____D () C:\Program Files\DPR 2014-05-20 23:33 - 2013-03-03 17:14 - 00000000 ____D () C:\ProgramData\lenovo 2014-05-20 23:30 - 2013-03-04 01:11 - 00000000 ____D () C:\WINDOWS\Downloaded Installations 2014-05-20 23:28 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\restore 2014-05-20 23:28 - 2013-03-04 00:48 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2014-05-20 20:21 - 00000000 ____D () C:\Users\Ariane 2014-05-20 23:25 - 2013-03-04 00:51 - 00000000 ____D () C:\Program Files\Intel 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:24 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Common Files\Lenovo 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:07 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\LogFiles 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:15 - 2013-08-22 10:17 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows Defender 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:10 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Drivers\de-DE 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:31 - 2014-05-20 19:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Registration 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows NT 2014-05-20 20:31 - 2013-08-22 08:21 - 00000000 __RHD () C:\Users\Default 2014-05-20 20:31 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RSD () C:\WINDOWS\Media 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RHD () C:\Users\Public\Libraries 2014-05-20 20:29 - 2013-08-22 08:21 - 00000000 ___RD () C:\Users\Public 2014-05-20 20:27 - 2013-08-22 09:22 - 00333576 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-05-20 20:26 - 2013-08-22 10:18 - 00004893 _____ () C:\WINDOWS\DtcInstall.log 2014-05-20 20:26 - 2013-03-04 01:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel AppUp(SM) center 2014-05-20 20:26 - 2012-07-26 06:43 - 00000000 ____D () C:\Users\Default.migrated 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\winrm 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\WCN 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\slmgr 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Printing_Admin_Scripts 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\WinStore 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\spool 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\MUI 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\IME 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\de-DE 2014-05-20 20:24 - 2014-05-20 20:18 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:24 - 2014-03-18 09:45 - 00000000 ____D () C:\Program Files\Windows Journal 2014-05-20 20:24 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\DigitalLocker 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 __SHD () C:\Program Files\Windows Sidebar 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\IME 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-05-20 20:24 - 2012-10-11 19:41 - 00000000 ____D () C:\ProgramData\PRICache 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:22 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\Recovery 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:19 - 2013-08-22 09:23 - 00000084 _____ () C:\WINDOWS\setuperr.log 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:55 - 2013-03-04 01:13 - 01352732 _____ () C:\WINDOWS\WindowsUpdate (1).log 2014-05-20 19:50 - 2012-07-26 08:53 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 21:47 - 2014-05-19 21:44 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:57 - 2014-05-19 19:55 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:47 - 2013-03-04 10:15 - 00055561 _____ () C:\WINDOWS\modules.log 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt 2014-05-12 07:26 - 2014-05-19 22:32 - 00051928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2014-05-12 07:25 - 2014-05-19 22:32 - 00074456 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-05-12 07:25 - 2014-05-19 22:32 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-05-06 05:25 - 2014-05-20 23:11 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-06 04:10 - 2014-05-20 23:11 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll Some content of TEMP: ==================== C:\Users\Ariane\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe => MD5 is legit C:\WINDOWS\system32\winlogon.exe => MD5 is legit C:\WINDOWS\system32\wininit.exe => MD5 is legit C:\WINDOWS\system32\svchost.exe => MD5 is legit C:\WINDOWS\system32\services.exe [2014-05-20 21:09] - [2014-05-20 21:09] - 0328984 ____A (Microsoft Corporation) BE8FB66895B5475B09F5907D875CD47D C:\WINDOWS\system32\User32.dll => MD5 is legit C:\WINDOWS\system32\userinit.exe => MD5 is legit C:\WINDOWS\system32\rpcss.dll => MD5 is legit C:\WINDOWS\system32\Drivers\volsnap.sys [2014-05-20 21:09] - [2014-05-20 21:09] - 0264536 ____A (Microsoft Corporation) F4138DC230FC3DFE9E31201561D0491B LastRegBack: 2014-06-03 03:04 ==================== End Of Log ============================ |
05.06.2014, 19:13 | #23 |
/// the machine /// TB-Ausbilder | Maleware zeigt über 20 Bedrohungen an! Dann musst du mit dem Konto synchen, und dann in den EInstellungen von Chrome alles löschen was da ncht hingehört, sonst synct dir das KOnto immer wieder den Dreck in den Browser. Dann Chrome nochmal komplett zurücksetzen, dann frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
10.06.2014, 20:38 | #24 |
| Maleware zeigt über 20 Bedrohungen an! Hi, so hab alles so gemacht. anbei der frst.: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:09-06-2014 03 Ran by Ariane (administrator) on LENOVO-PC on 10-06-2014 21:27:46 Running from C:\Users\Ariane\Downloads Platform: Microsoft Windows 8.1 Pro (X86) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Lenovo.) C:\Windows\System32\ibmpmsvc.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\WTabletServiceISD.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe (Intel Corporation) C:\Windows\System32\DptfParticipantDisplayService.exe (Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe (Lenovo Group Limited) C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\SystemAgent\SystemAgentService.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\CamMute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe (Nitro PDF Software) C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe (Nalpeiron Ltd.) C:\Windows\System32\NLSSRV32.EXE (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe (Wistron Corp.) C:\Program Files\DPR\WisLMSvc.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe (PARTRON) C:\Program Files\TrackPoint\TrackPointApp.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\ISD_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\ISD\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\ISD_Tablet.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\extapsup.exe (Wistron Corp.) C:\Program Files\DPR\DPR.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe (Primax Electronics Ltd.) C:\Windows\System32\ico.exe () C:\Windows\System32\FSRremoS.EXE (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTStackServer.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\QuickSnipService\QuickSnipService.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe (Lenovo) C:\Program Files\Lenovo\QuickSnipService\QuickSnipInput.exe () C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe () C:\Program Files\Lenovo\LocationAware\lpdagent.exe (Lenovo) C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe (Microsoft Corporation) C:\Windows\System32\RuntimeBroker.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe (Primax Electronics Ltd.) C:\Windows\System32\PELMICED.EXE (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x86__8wekyb3d8bbwe\livecomm.exe (Microsoft Corporation) C:\Windows\WinSxS\x86_windowssearchengine_31bf3856ad364e35_7.0.9600.17031_none_77cf3ef9f9529da4\SearchProtocolHost.exe (Microsoft Corporation) C:\Windows\WinSxS\x86_windowssearchengine_31bf3856ad364e35_7.0.9600.17031_none_77cf3ef9f9529da4\SearchFilterHost.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [LenovoOptMouseUpdate] => C:\Program Files\Lenovo\HOTKEY\extapsup.exe [244728 2013-06-20] (Lenovo Group Limited) HKLM\...\Run: [{E13C0407-3243-448C-BF1D-DC7C7E02C358}] => C:\Program Files\DPR\DPR.exe [409352 2013-10-30] (Wistron Corp.) HKLM\...\Run: [RtkNGUI] => C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe [2891776 2013-10-07] (Realtek Semiconductor) HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [937976 2013-09-11] (Lenovo) HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\LibStartStub.dll [74288 2014-03-04] (Lenovo Corporation) HKLM\...\Run: [Mouse Suite 98 Daemon] => C:\WINDOWS\SYSTEM32\ICO.EXE [57344 2004-07-14] (Primax Electronics Ltd.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13-comm.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS SearchScopes: HKCU - DefaultScope {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = SearchScopes: HKCU - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF Plugin: @nitropdf.com/NitroPDF - C:\Program Files\Nitro\Pro 8\npnitromozilla.dll (Nitro PDF) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) Chrome: ======= CHR HomePage: CHR Extension: (Google Docs) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-06-03] CHR Extension: (Google Drive) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-06-03] CHR Extension: (YouTube) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-06-03] CHR Extension: (Google Cast) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2014-06-04] CHR Extension: (Google-Suche) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-06-03] CHR Extension: (Gmail offline) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2014-06-04] CHR Extension: (Google Kalender) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-06-04] CHR Extension: (Google Kalender (von Google)) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2014-06-04] CHR Extension: (LastPass: Free Password Manager) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2014-06-04] CHR Extension: (Google Play Music) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2014-06-04] CHR Extension: (Google Mail-Checker) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-06-04] CHR Extension: (Google Wallet) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-06-03] CHR Extension: (Google Chrome to Phone Extension) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco [2014-06-04] CHR Extension: (Google Mail) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-06-03] ========================== Services (Whitelisted) ================= R3 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [573488 2014-03-04] (Lenovo Corporation) S2 BcmBtRSupport; C:\WINDOWS\system32\BtwRSupportService.exe [1677016 2013-11-14] (Broadcom Corporation.) R2 DptfParticipantDisplayService; C:\WINDOWS\system32\DptfParticipantDisplayService.exe [97792 2013-09-10] (Intel Corporation) R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [69632 2013-09-10] (Intel Corporation) R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [56832 2013-09-10] (Intel Corporation) S2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [75776 2013-09-10] (Intel Corporation) R2 Lenovo QuickSnip Service; C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe [204176 2012-10-08] (LENOVO INCORPORATED.) R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2085184 2014-03-10] (Lenovo Group Limited) R2 Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [549776 2012-11-10] (LENOVO INCORPORATED.) R2 LENOVO.CAMMUTE; C:\Program Files\Lenovo\Communications Utility\CamMute.exe [512048 2014-03-04] (Lenovo Corporation) R2 LENOVO.MICMUTE; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [110128 2014-04-07] (Lenovo Group Limited) R2 LENOVO.TPKNRSVC; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [527920 2014-03-04] (Lenovo Group Limited) R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [702512 2014-03-04] (Lenovo Corporation) R2 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [467960 2013-09-11] (Lenovo) R2 LocationTaskManager; C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe [468288 2013-12-11] () R2 NitroDriverReadSpool8; C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe [196616 2012-11-18] (Nitro PDF Software) S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [105472 2013-08-22] (Microsoft Corporation) S3 SUService; C:\Program Files\Lenovo\System Update\SUService.exe [24120 2014-02-21] () R2 TPHKLOAD; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [115248 2014-04-01] (Lenovo Group Limited) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [279784 2014-05-20] (Microsoft Corporation) S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2013-08-22] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22224 2014-05-20] (Microsoft Corporation) R2 WisLMSvc; C:\Program Files\DPR\WisLMSvc.exe [119608 2013-10-30] (Wistron Corp.) S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1210368 2014-05-20] (Microsoft Corporation) R2 WTabletServiceISD; C:\Program Files\Tablet\ISD\WTabletServiceISD.exe [500024 2013-11-06] (Wacom Technology, Corp.) ==================== Drivers (Whitelisted) ==================== R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-03-18] (Microsoft Corporation) R3 BcmGnssBus; C:\WINDOWS\System32\drivers\BcmGnssBus.sys [77384 2012-10-29] (Broadcom Corporation) R3 BcmNfcIc; C:\WINDOWS\System32\drivers\BcmNfcIc.sys [66264 2014-06-01] (Broadcom Corporation.) R3 BCMSDH43XX; C:\WINDOWS\system32\DRIVERS\bcmdhd63.sys [521392 2014-06-01] (Broadcom) R3 BthLEEnum; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [186880 2014-03-18] (Microsoft Corporation) R3 BthMini; C:\WINDOWS\System32\Drivers\BTHMINI.sys [24064 2013-08-22] (Microsoft Corporation) R3 btwampfl; C:\WINDOWS\System32\drivers\btwampfl.sys [144600 2013-09-05] (Broadcom Corporation.) R3 BtwSerialBus; C:\WINDOWS\System32\drivers\BtwSerialBus.sys [130776 2013-09-10] (Broadcom Corporation.) R3 camera; C:\WINDOWS\system32\DRIVERS\camera.sys [207872 2013-09-10] (Intel Corporation) R0 ChaabiDriver; C:\WINDOWS\System32\drivers\ChaabiDriver.sys [74256 2013-09-10] (Intel Corporation) R0 clvpep; C:\WINDOWS\System32\drivers\clvpep.sys [81648 2012-10-24] (Intel Corporation) R3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [44256 2013-09-10] (Intel Corporation) R3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [49888 2013-09-10] (Intel Corporation) R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [69344 2013-09-10] (Intel Corporation) R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [163552 2013-09-10] (Intel Corporation) S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation) R3 GPIOCLV; C:\WINDOWS\System32\drivers\GPIOCLV.sys [22016 2013-09-10] (Intel Corporation) R3 GpioVirtual; C:\WINDOWS\System32\drivers\GpioVirtual.sys [11264 2013-09-10] (Windows (R) Win 7 DDK provider) R3 igdperf32; C:\WINDOWS\system32\DRIVERS\igdperf32.sys [4096 2013-11-20] () R0 inteli2c; C:\WINDOWS\System32\drivers\inteli2c.sys [48880 2013-09-10] (Intel Corporation) R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [237056 2013-04-10] (Intel(R) Corporation) R0 Lm3554; C:\WINDOWS\System32\drivers\lm3554.sys [34816 2013-09-10] (Intel Corporation) R0 LNWIPC; C:\WINDOWS\System32\drivers\LNWIPC.sys [25840 2013-09-10] (Intel Corporation) R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [16112 2013-09-10] (Intel Corporation) R3 MbmLowExt; C:\WINDOWS\System32\Drivers\MbmLowExt.sys [29696 2012-12-07] (Ericsson AB) R3 MbmUsbSerial; C:\WINDOWS\System32\Drivers\MbmUsbSerial.sys [62464 2012-07-03] (Ericsson AB) R3 MkBusFilter; C:\WINDOWS\System32\drivers\MbmDeviceFilter.sys [35080 2012-12-05] (Ericsson AB) R1 MpKsldaa3cdba; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{3BBF9625-F77F-4AA0-9B8F-9B5243B0A400}\MpKsldaa3cdba.sys [39464 2014-06-10] (Microsoft Corporation) R3 MSICReg; C:\WINDOWS\System32\drivers\MSICReg.sys [17408 2013-09-10] (Intel Corporation) R3 mxtBootBridge; C:\WINDOWS\System32\drivers\mxtBootBridge.sys [32064 2013-10-02] (Atmel Corporation) R3 ov2720; C:\WINDOWS\System32\drivers\ov2720.sys [46592 2013-09-10] (Intel Corporation) R3 ov8830; C:\WINDOWS\System32\drivers\ov8830.sys [63488 2013-09-10] (Intel Corporation) R3 pelmouse; C:\WINDOWS\system32\DRIVERS\pelmouse.sys [16384 2003-01-10] (Primax Electronics Ltd.) R3 pelusblf; C:\WINDOWS\system32\DRIVERS\pelusblf.sys [9216 2003-02-11] (Primax Electronics Ltd.) R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [143064 2013-11-05] (Realtek Semiconductor Corp.) R3 SensorsHIDClassDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 spi; C:\WINDOWS\System32\drivers\spi.sys [46592 2013-09-10] (Intel Corporation) R3 Uart16550pc; C:\WINDOWS\System32\drivers\Uart16550pc.sys [40960 2013-09-10] (Intel Corporation) R3 WacHidRouter; C:\WINDOWS\System32\drivers\wachidrouter.sys [76600 2013-11-01] (Wacom Technology) R3 wacomrouterfilter; C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [13112 2013-11-01] (Wacom Technology) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [92504 2014-05-20] (Microsoft Corporation) R3 wmbclass; C:\WINDOWS\system32\DRIVERS\wmbclass.sys [224256 2014-03-18] (Microsoft Corporation) R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-05-20] (Microsoft Corporation) R3 WUDFSensorLP; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-10 21:27 - 2014-06-10 21:27 - 00000000 ____D () C:\Users\Ariane\Downloads\FRST-OlderVersion 2014-06-10 17:15 - 2014-06-10 17:15 - 261812048 _____ () C:\WINDOWS\MEMORY.DMP 2014-06-10 17:15 - 2014-06-10 17:15 - 00146064 _____ () C:\WINDOWS\Minidump\061014-17218-01.dmp 2014-06-10 17:15 - 2014-06-10 17:15 - 00000000 ____D () C:\WINDOWS\Minidump 2014-06-10 16:56 - 2014-06-10 16:56 - 00001249 _____ () C:\Users\Ariane\Desktop\Revo Uninstaller.lnk 2014-06-04 20:20 - 2014-06-10 21:27 - 00016787 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-06-04 20:20 - 2014-06-10 21:27 - 00000000 ____D () C:\FRST 2014-06-04 20:19 - 2014-06-10 21:27 - 01177600 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-06-04 20:05 - 2014-06-10 21:10 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-04 20:05 - 2014-06-10 20:10 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-04 20:05 - 2014-06-04 20:05 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Deployment 2014-06-03 20:24 - 2014-06-10 16:56 - 00000000 ____D () C:\Program Files\VS Revo Group 2014-06-03 20:24 - 2014-06-03 20:24 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Ariane\Downloads\revosetup95.exe 2014-06-02 20:27 - 2014-06-02 20:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek 2014-06-01 21:52 - 2014-06-02 20:27 - 00000000 ____D () C:\WINDOWS\LastGood 2014-06-01 21:37 - 2013-10-02 06:22 - 00032064 _____ (Atmel Corporation) C:\WINDOWS\system32\Drivers\mxtBootBridge.sys 2014-06-01 21:35 - 2013-12-11 22:53 - 00191192 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwavdt.sys 2014-06-01 21:35 - 2013-12-11 22:53 - 00158424 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwaudio.sys 2014-06-01 21:35 - 2013-12-11 22:53 - 00031448 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwrchid.sys 2014-06-01 21:35 - 2013-11-14 10:59 - 01677016 _____ (Broadcom Corporation.) C:\WINDOWS\system32\BtwRSupportService.exe 2014-06-01 21:35 - 2013-09-10 09:36 - 00130776 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\BtwSerialBus.sys 2014-06-01 21:35 - 2013-09-05 09:46 - 00144600 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwampfl.sys 2014-06-01 21:35 - 2013-07-03 01:10 - 00060120 _____ (Broadcom Corporation.) C:\WINDOWS\system32\btwdi.dll 2014-06-01 21:35 - 2012-07-27 07:48 - 00034616 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwl2cap.sys 2014-06-01 21:33 - 2014-06-01 21:33 - 00247512 _____ (Broadcom Corporation.) C:\WINDOWS\system32\BcmNfcRM.dll 2014-06-01 21:33 - 2014-06-01 21:33 - 00066264 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\BcmNfcIc.sys 2014-06-01 21:33 - 2014-06-01 21:33 - 00005526 _____ () C:\WINDOWS\system32\Drivers\BCM20791B3_002.004.010.0149.0151.ncd 2014-06-01 21:33 - 2014-06-01 21:33 - 00000522 _____ () C:\WINDOWS\system32\Drivers\BCM20791B3_002.004.010.0149.0150.ncd 2014-06-01 21:32 - 2014-06-01 21:36 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp 2014-06-01 21:32 - 2014-06-01 21:32 - 04354560 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvsrv.dll 2014-06-01 21:32 - 2014-06-01 21:32 - 03700736 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvui.dll 2014-06-01 21:32 - 2014-06-01 21:32 - 00521392 _____ (Broadcom) C:\WINDOWS\system32\Drivers\bcmdhd63.sys 2014-06-01 21:32 - 2014-06-01 21:32 - 00466880 _____ () C:\WINDOWS\system32\Drivers\43241b0rtecdc.bin 2014-06-01 21:32 - 2014-06-01 21:32 - 00405488 _____ () C:\WINDOWS\system32\Drivers\43241b4rtecdc.bin 2014-06-01 21:32 - 2014-06-01 21:32 - 00239820 _____ () C:\WINDOWS\system32\Drivers\4330b2rtecdc.bin 2014-06-01 21:32 - 2014-06-01 21:32 - 00016560 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\bcmfn2.sys 2014-06-01 21:32 - 2014-06-01 21:32 - 00001899 _____ () C:\WINDOWS\system32\Drivers\bcm943241ipaagb_p100-W085-0.txt 2014-06-01 21:32 - 2014-06-01 21:32 - 00000000 ____D () C:\Program Files\Broadcom 2014-06-01 20:53 - 2014-06-01 20:53 - 00000939 _____ () C:\DelFix.txt 2014-05-30 21:59 - 2014-05-30 21:59 - 00002222 _____ () C:\anti maleware.txt 2014-05-27 19:30 - 2014-06-01 20:53 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-05-27 19:24 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\system32\sqlite3.dll 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\WTablet 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Program Files\Tablet 2014-05-26 22:04 - 2013-11-06 14:50 - 01604408 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\ISD_Tablet.dll 2014-05-26 22:04 - 2013-11-06 14:50 - 01597240 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\ISD_Touch_Tablet.dll 2014-05-26 22:04 - 2013-11-06 14:50 - 01483064 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\Wintab32.dll 2014-05-26 22:04 - 2013-11-01 10:41 - 00076600 _____ (Wacom Technology) C:\WINDOWS\system32\Drivers\wachidrouter.sys 2014-05-26 22:04 - 2013-11-01 10:41 - 00013112 _____ (Wacom Technology) C:\WINDOWS\system32\Drivers\wacomrouterfilter.sys 2014-05-26 22:04 - 2012-04-11 14:34 - 01461992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wdfcoinstaller01009.dll 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieUserList 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieSiteList 2014-05-23 17:52 - 2014-05-23 17:54 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-22 19:20 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ico.exe 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 17:57 - 2006-01-16 14:40 - 00073728 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELHOOKS.DLL 2014-05-21 17:57 - 2005-12-30 13:36 - 00126976 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELSCRLL.DLL 2014-05-21 17:57 - 2005-11-25 20:06 - 00229376 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINST.EXE 2014-05-21 17:57 - 2005-09-12 22:22 - 00135168 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELMICED.EXE 2014-05-21 17:57 - 2005-05-20 16:15 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELPPM.DLL 2014-05-21 17:57 - 2005-01-27 11:29 - 00282624 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELWHEEL.DLL 2014-05-21 17:57 - 2005-01-27 10:31 - 00458126 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELBDO.DLL 2014-05-21 17:57 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ICONSPY.EXE 2014-05-21 17:57 - 2004-03-26 14:17 - 00036864 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINNT.EXE 2014-05-21 17:57 - 2004-02-20 10:43 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELUTIL.DLL 2014-05-21 17:57 - 2004-02-20 10:37 - 00049152 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELCOMM.DLL 2014-05-21 17:57 - 2003-11-06 15:51 - 00020480 _____ () C:\WINDOWS\system32\FSRremoS.EXE 2014-05-21 17:57 - 2003-10-28 21:46 - 00024576 _____ () C:\WINDOWS\system32\FSRremoC.DLL 2014-05-21 17:57 - 2003-05-21 13:11 - 00090112 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELZOOM.DLL 2014-05-21 17:57 - 2003-02-11 13:25 - 00009216 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\pelusblf.sys 2014-05-21 17:57 - 2003-01-10 13:55 - 00016384 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\PELMOUSE.SYS 2014-05-21 17:57 - 2001-11-15 17:03 - 00024576 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Pelsetup.dll 2014-05-21 17:57 - 2001-10-04 17:34 - 00019456 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMO32R.DLL 2014-05-21 17:57 - 2001-08-07 17:23 - 00045056 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELRESS.DLL 2014-05-21 17:57 - 2001-07-04 17:46 - 00439003 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMBDO.DLL 2014-05-21 17:57 - 2000-10-13 10:07 - 00075776 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMILG.DLL 2014-05-21 17:57 - 1999-11-19 15:20 - 00065536 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMIBM.DLL 2014-05-21 17:57 - 1999-07-12 16:12 - 00061952 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMRESHP.DLL 2014-05-21 06:56 - 2014-04-08 20:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll 2014-05-21 06:56 - 2014-04-08 20:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:34 - 2013-04-10 15:51 - 00640436 _____ () C:\WINDOWS\system32\Drivers\realtek_fw_sst.bin 2014-05-20 23:34 - 2013-04-10 15:51 - 00237056 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\isstrtc.sys 2014-05-20 23:34 - 2013-04-10 15:51 - 00000166 _____ () C:\WINDOWS\system32\Drivers\RTKIDSPEXT3.DAT 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:30 - 2014-05-21 18:04 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-20 23:28 - 2013-12-17 18:00 - 00056664 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmsvc.exe 2014-05-20 23:28 - 2013-12-17 18:00 - 00036696 _____ (Lenovo.) C:\WINDOWS\system32\tpinspm.dll 2014-05-20 23:28 - 2013-12-17 17:59 - 00060760 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmctl.exe 2014-05-20 23:28 - 2013-12-17 17:59 - 00045880 _____ (Lenovo.) C:\WINDOWS\system32\Drivers\ibmpmdrv.sys 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2013-11-05 17:44 - 00143064 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\rtii2sac.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00745472 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCameraPlugin.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00207872 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\camera.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00163552 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfManager.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00116736 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV2720_11P2SF211.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00109568 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSocYuvCopy.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00107520 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV8830_11P2BA849.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00101888 _____ (Intel(R) Corporation) C:\WINDOWS\system32\hsmon.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00097792 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantDisplayService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00075776 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00074256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ChaabiDriver.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00069632 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantProcessorService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00069344 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevProc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00065536 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00063488 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov8830.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00056832 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyCriticalService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00049888 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevGen.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00048880 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\inteli2c.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\spi.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov2720.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00044256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevDisplay.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00040960 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Uart16550pc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00034816 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\lm3554.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00025840 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\LNWIPC.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00022016 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\GPIOCLV.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00017408 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MSICReg.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00016112 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MBI.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00011264 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\GpioVirtual.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Video_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Primary_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005823 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00002056 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00001980 _____ () C:\WINDOWS\system32\Video_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:11 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-20 23:11 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:59 - 2014-06-10 17:22 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:16 - 2014-05-23 18:00 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 21:04 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2014-05-20 20:31 - 2014-06-10 21:13 - 02011372 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:21 - 2014-06-10 21:28 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Temp 2014-05-20 20:21 - 2014-06-10 17:15 - 00000000 ____D () C:\Users\Ariane 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:24 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:31 - 2014-05-20 20:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-19 22:34 - 2014-06-10 21:09 - 00110296 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-19 22:33 - 2014-05-30 21:36 - 00001083 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-19 22:33 - 2014-05-30 21:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-30 21:36 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:32 - 2014-05-12 07:26 - 00051928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2014-05-19 22:32 - 2014-05-12 07:25 - 00074456 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-05-19 22:32 - 2014-05-12 07:25 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 22:26 - 2014-05-23 18:00 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-19 22:21 - 2014-03-04 12:50 - 00067120 _____ (Lenovo Corporation) C:\WINDOWS\system32\LibDriverMftStart.dll 2014-05-19 22:17 - 2013-12-24 10:22 - 02038832 _____ (Lenovo Group Limited) C:\WINDOWS\system32\SettingsDriverHelper.dll 2014-05-19 22:16 - 2012-11-26 15:34 - 02146160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WudfUpdate_01011.dll 2014-05-19 21:44 - 2014-06-04 20:06 - 00000000 ____D () C:\Program Files\Google 2014-05-19 21:44 - 2014-05-19 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:55 - 2014-05-19 19:57 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-19 19:55 - 2014-05-04 17:14 - 90547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-18 22:06 - 2014-01-19 09:32 - 00231584 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-06-10 16:52 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:45 - 2013-05-04 06:10 - 00014848 ____N (Microsoft) C:\WINDOWS\system32\rars.rs 2014-05-18 21:45 - 2012-07-30 21:00 - 00002122 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo QuickSnip Toasts.lnk 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt ==================== One Month Modified Files and Folders ======= 2014-06-10 21:29 - 2014-05-20 20:21 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Temp 2014-06-10 21:28 - 2014-06-04 20:20 - 00016787 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-06-10 21:27 - 2014-06-10 21:27 - 00000000 ____D () C:\Users\Ariane\Downloads\FRST-OlderVersion 2014-06-10 21:27 - 2014-06-04 20:20 - 00000000 ____D () C:\FRST 2014-06-10 21:27 - 2014-06-04 20:19 - 01177600 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-06-10 21:13 - 2014-05-20 20:31 - 02011372 _____ () C:\WINDOWS\WindowsUpdate.log 2014-06-10 21:10 - 2014-06-04 20:05 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-10 21:09 - 2014-05-19 22:34 - 00110296 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-06-10 21:00 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-06-10 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-06-10 20:10 - 2014-06-04 20:05 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-10 17:42 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-06-10 17:35 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-06-10 17:28 - 2014-03-18 10:04 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-06-10 17:22 - 2014-05-20 22:59 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-06-10 17:22 - 2013-08-22 09:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-06-10 17:21 - 2014-03-18 01:54 - 00012840 _____ () C:\WINDOWS\PFRO.log 2014-06-10 17:21 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-06-10 17:15 - 2014-06-10 17:15 - 261812048 _____ () C:\WINDOWS\MEMORY.DMP 2014-06-10 17:15 - 2014-06-10 17:15 - 00146064 _____ () C:\WINDOWS\Minidump\061014-17218-01.dmp 2014-06-10 17:15 - 2014-06-10 17:15 - 00000000 ____D () C:\WINDOWS\Minidump 2014-06-10 17:15 - 2014-05-20 20:21 - 00000000 ____D () C:\Users\Ariane 2014-06-10 16:56 - 2014-06-10 16:56 - 00001249 _____ () C:\Users\Ariane\Desktop\Revo Uninstaller.lnk 2014-06-10 16:56 - 2014-06-03 20:24 - 00000000 ____D () C:\Program Files\VS Revo Group 2014-06-10 16:52 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-06-04 20:06 - 2014-05-19 21:44 - 00000000 ____D () C:\Program Files\Google 2014-06-04 20:05 - 2014-06-04 20:05 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Deployment 2014-06-03 20:45 - 2012-07-26 08:53 - 00000000 ____D () C:\WINDOWS\LiveKernelReports 2014-06-03 20:24 - 2014-06-03 20:24 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Ariane\Downloads\revosetup95.exe 2014-06-02 20:27 - 2014-06-02 20:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek 2014-06-02 20:27 - 2014-06-01 21:52 - 00000000 ____D () C:\WINDOWS\LastGood 2014-06-02 20:27 - 2013-08-22 09:23 - 00289155 _____ () C:\WINDOWS\setupact.log 2014-06-02 20:27 - 2013-03-04 00:48 - 00002345 _____ () C:\RtkI2SSetup.log 2014-06-01 21:36 - 2014-06-01 21:32 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp 2014-06-01 21:33 - 2014-06-01 21:33 - 00247512 _____ (Broadcom Corporation.) C:\WINDOWS\system32\BcmNfcRM.dll 2014-06-01 21:33 - 2014-06-01 21:33 - 00066264 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\BcmNfcIc.sys 2014-06-01 21:33 - 2014-06-01 21:33 - 00005526 _____ () C:\WINDOWS\system32\Drivers\BCM20791B3_002.004.010.0149.0151.ncd 2014-06-01 21:33 - 2014-06-01 21:33 - 00000522 _____ () C:\WINDOWS\system32\Drivers\BCM20791B3_002.004.010.0149.0150.ncd 2014-06-01 21:33 - 2013-03-04 00:45 - 00055724 _____ () C:\WINDOWS\DPINST.LOG 2014-06-01 21:32 - 2014-06-01 21:32 - 04354560 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvsrv.dll 2014-06-01 21:32 - 2014-06-01 21:32 - 03700736 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvui.dll 2014-06-01 21:32 - 2014-06-01 21:32 - 00521392 _____ (Broadcom) C:\WINDOWS\system32\Drivers\bcmdhd63.sys 2014-06-01 21:32 - 2014-06-01 21:32 - 00466880 _____ () C:\WINDOWS\system32\Drivers\43241b0rtecdc.bin 2014-06-01 21:32 - 2014-06-01 21:32 - 00405488 _____ () C:\WINDOWS\system32\Drivers\43241b4rtecdc.bin 2014-06-01 21:32 - 2014-06-01 21:32 - 00239820 _____ () C:\WINDOWS\system32\Drivers\4330b2rtecdc.bin 2014-06-01 21:32 - 2014-06-01 21:32 - 00016560 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\bcmfn2.sys 2014-06-01 21:32 - 2014-06-01 21:32 - 00001899 _____ () C:\WINDOWS\system32\Drivers\bcm943241ipaagb_p100-W085-0.txt 2014-06-01 21:32 - 2014-06-01 21:32 - 00000000 ____D () C:\Program Files\Broadcom 2014-06-01 20:53 - 2014-06-01 20:53 - 00000939 _____ () C:\DelFix.txt 2014-06-01 20:53 - 2014-05-27 19:30 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-05-30 21:59 - 2014-05-30 21:59 - 00002222 _____ () C:\anti maleware.txt 2014-05-30 21:36 - 2014-05-19 22:33 - 00001083 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-30 21:36 - 2014-05-19 22:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-30 21:36 - 2014-05-19 22:32 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-30 20:53 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\rescache 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\WTablet 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Program Files\Tablet 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieUserList 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieSiteList 2014-05-23 18:00 - 2014-05-20 21:16 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-23 18:00 - 2014-05-19 22:26 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-23 17:54 - 2014-05-23 17:52 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-23 17:52 - 2012-07-26 08:43 - 00000000 ____D () C:\WINDOWS\CbsTemp 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 18:04 - 2014-05-20 23:30 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-21 18:04 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Help 2014-05-21 18:04 - 2013-03-04 01:07 - 00000000 ___HD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools 2014-05-21 18:04 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Lenovo 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:33 - 2013-03-04 00:48 - 00000000 ____D () C:\Program Files\DPR 2014-05-20 23:33 - 2013-03-03 17:14 - 00000000 ____D () C:\ProgramData\lenovo 2014-05-20 23:30 - 2013-03-04 01:11 - 00000000 ____D () C:\WINDOWS\Downloaded Installations 2014-05-20 23:28 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\restore 2014-05-20 23:28 - 2013-03-04 00:48 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2013-03-04 00:51 - 00000000 ____D () C:\Program Files\Intel 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:24 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Common Files\Lenovo 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:07 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\LogFiles 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:15 - 2013-08-22 10:17 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows Defender 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:10 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Drivers\de-DE 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:31 - 2014-05-20 19:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Registration 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows NT 2014-05-20 20:31 - 2013-08-22 08:21 - 00000000 __RHD () C:\Users\Default 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RSD () C:\WINDOWS\Media 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RHD () C:\Users\Public\Libraries 2014-05-20 20:29 - 2013-08-22 08:21 - 00000000 ___RD () C:\Users\Public 2014-05-20 20:27 - 2013-08-22 09:22 - 00333576 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-05-20 20:26 - 2013-08-22 10:18 - 00004893 _____ () C:\WINDOWS\DtcInstall.log 2014-05-20 20:26 - 2013-03-04 01:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel AppUp(SM) center 2014-05-20 20:26 - 2012-07-26 06:43 - 00000000 ____D () C:\Users\Default.migrated 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\winrm 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\WCN 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\slmgr 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Printing_Admin_Scripts 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\WinStore 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\spool 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\MUI 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\IME 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\de-DE 2014-05-20 20:24 - 2014-05-20 20:18 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:24 - 2014-03-18 09:45 - 00000000 ____D () C:\Program Files\Windows Journal 2014-05-20 20:24 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\DigitalLocker 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 __SHD () C:\Program Files\Windows Sidebar 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\IME 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-05-20 20:24 - 2012-10-11 19:41 - 00000000 ____D () C:\ProgramData\PRICache 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:22 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\Recovery 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:19 - 2013-08-22 09:23 - 00000084 _____ () C:\WINDOWS\setuperr.log 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:55 - 2013-03-04 01:13 - 01352732 _____ () C:\WINDOWS\WindowsUpdate (1).log 2014-05-20 19:50 - 2012-07-26 08:53 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 21:47 - 2014-05-19 21:44 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:57 - 2014-05-19 19:55 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:47 - 2013-03-04 10:15 - 00055561 _____ () C:\WINDOWS\modules.log 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt 2014-05-12 07:26 - 2014-05-19 22:32 - 00051928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2014-05-12 07:25 - 2014-05-19 22:32 - 00074456 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-05-12 07:25 - 2014-05-19 22:32 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys Some content of TEMP: ==================== C:\Users\Ariane\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\wininit.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-10 17:50 ==================== End Of Log ============================ |
11.06.2014, 20:06 | #25 |
/// the machine /// TB-Ausbilder | Maleware zeigt über 20 Bedrohungen an! noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
11.06.2014, 21:46 | #26 |
| Maleware zeigt über 20 Bedrohungen an! Hi Schrauber, so du hast es geschafft! Es ist nun alles wieder gut! Keine Funde! Yeah!! Vielen vielen Dank! Gruß Ariane P.S.: Das passiert mir echt nie nie wieder |
12.06.2014, 08:53 | #27 |
/// the machine /// TB-Ausbilder | Maleware zeigt über 20 Bedrohungen an! Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Maleware zeigt über 20 Bedrohungen an! |
bedrohungen, bytes, dankbar, datei, ellung, ernst, gen, gesetzt, installier, irgend, maleware, neu, schonmal, super, tablet, textdatei, virus, warnungen, wenig, werkseinstellung, windows |