|
Plagegeister aller Art und deren Bekämpfung: Maleware zeigt über 20 Bedrohungen an!Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
19.05.2014, 22:15 | #1 |
| Maleware zeigt über 20 Bedrohungen an! Hallo, ich habe mir irgend ein virus eingefangen. Habe mein Tablet (Windows)auf Werkseinstellung zurück gesetzt und neu installiert. Nun findet maleware bytes immer noch über 20 Bedrohungen. Was kann ich nun tun, muss ich die Warnungen ernst nehmen oder kann ich sie eventuell ignorieren. Wäre super dankbar wenn mir hier jemand helfen könnte. Bin ein wenig ratlos... Anbei noch die Textdatei von maleware bytes: Anhang 67055 Vielen Dank schonmal vorab Gruss ArianeM |
20.05.2014, 05:56 | #2 |
/// the machine /// TB-Ausbilder | Maleware zeigt über 20 Bedrohungen an! Hi,
__________________Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. Ich kann auf Arbeit keine Anhänge öffnen, danke. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
20.05.2014, 11:00 | #3 |
| Maleware zeigt über 20 Bedrohungen an!Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 19.05.2014 Suchlauf-Zeit: 22:50:37 Logdatei: malewarw.txt Administrator: Ja Version: 2.00.1.1004 Malware Datenbank: v2014.05.19.10 Rootkit Datenbank: v2014.03.27.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Chameleon: Deaktiviert Betriebssystem: Windows 8 CPU: x86 Dateisystem: NTFS Benutzer: Ariane Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 238384 Verstrichene Zeit: 15 Min, 42 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Shuriken: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 0 (No malicious items detected) Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 0 (No malicious items detected) Ordner: 6 PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe, , [7dc954ffe99272c415e95424f30fb34d], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe\0.1_0, , [7dc954ffe99272c415e95424f30fb34d], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd, , [76d0173c6e0d1d19eaafc8b1ff038b75], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0, , [76d0173c6e0d1d19eaafc8b1ff038b75], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl, , [d4725102c8b3b38302ad146522e010f0], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0, , [d4725102c8b3b38302ad146522e010f0], Dateien: 21 PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe\0.1_0\background.js, , [7dc954ffe99272c415e95424f30fb34d], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe\0.1_0\bookmarklet.js, , [7dc954ffe99272c415e95424f30fb34d], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe\0.1_0\icon-128.png, , [7dc954ffe99272c415e95424f30fb34d], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe\0.1_0\icon-16.png, , [7dc954ffe99272c415e95424f30fb34d], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe\0.1_0\icon-48.png, , [7dc954ffe99272c415e95424f30fb34d], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe\0.1_0\manifest.json, , [7dc954ffe99272c415e95424f30fb34d], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0\background.js, , [76d0173c6e0d1d19eaafc8b1ff038b75], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0\icon-128.png, , [76d0173c6e0d1d19eaafc8b1ff038b75], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0\icon-16.png, , [76d0173c6e0d1d19eaafc8b1ff038b75], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0\icon-48.png, , [76d0173c6e0d1d19eaafc8b1ff038b75], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0\manifest.json, , [76d0173c6e0d1d19eaafc8b1ff038b75], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd\0.1_0\script.js, , [76d0173c6e0d1d19eaafc8b1ff038b75], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\background.js, , [d4725102c8b3b38302ad146522e010f0], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\extension.js, , [d4725102c8b3b38302ad146522e010f0], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\icon-128.png, , [d4725102c8b3b38302ad146522e010f0], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\icon-16.png, , [d4725102c8b3b38302ad146522e010f0], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\icon-48.png, , [d4725102c8b3b38302ad146522e010f0], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\jquery-1.11.0.min.js, , [d4725102c8b3b38302ad146522e010f0], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\jquery.bpopup.min.js, , [d4725102c8b3b38302ad146522e010f0], PUP.Optional.CrossRider.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\imonhoeiopfgoncjdldhhfjgocghkbbl\0.1_0\manifest.json, , [d4725102c8b3b38302ad146522e010f0], PUP.Optional.Speedial.A, C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Preferences, Gut: (), Schlecht: ( "startup_urls": [ "", "hxxp://www.google.de/", "hxxp://speedial.com/?f=1&a=spd_dsites02_14_19_ch&cd=2XzuyEtN2Y1L1Qzu0FyC0ByB0EtBzy0F0CzytB0BtBtA0CtDtN0D0Tzu0SzzyCtCtN1L2XzutBtFtBtDtFzytFtCtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StA0E0E0FyD0E0AzztG0CzyzzyBtG0Bzy0ByBtGtAtDzy0FtGyB0D0EyCzyyC0EyCzyyDtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0CyEtDtCyCzytCtGyD0A0EyBtGyDtB0C0EtG0DtB0C0FtGtD0FyE0D0EyC0B0FyD0BtDtD2Q&cr=2020589313&ir=", "hxxp://istart.webssearches.com/?type=hp&ts=1399742337&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399742997&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743112&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743250&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399744726&from=tugs&uid=3219782655_198225_30DD23C0" ],), ,[95b131222853270f9ed04337fc08ac54] Physische Sektoren: 0 (No malicious items detected) (end) Danke nochmal ! ) |
21.05.2014, 07:41 | #4 |
/// the machine /// TB-Ausbilder | Maleware zeigt über 20 Bedrohungen an! hi, Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
26.05.2014, 09:34 | #5 |
| Maleware zeigt über 20 Bedrohungen an! Hi Schrauber, hast du meine Nachricht mit der FRST.txt un der Addition.txt nicht bekommen? gruß ArianeM |
26.05.2014, 19:59 | #6 |
/// the machine /// TB-Ausbilder | Maleware zeigt über 20 Bedrohungen an! Wo was nachricht? poste die logs hier in den Thread.
__________________ --> Maleware zeigt über 20 Bedrohungen an! |
26.05.2014, 20:43 | #7 |
| Maleware zeigt über 20 Bedrohungen an! Anbei meine Antwort auf 2mal da ea sonst zu lang ist FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:25-05-2014 02 Ran by Ariane (administrator) on LENOVO-PC on 26-05-2014 21:18:42 Running from C:\Users\Ariane\Downloads Platform: Microsoft Windows 8.1 Pro (X86) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Lenovo.) C:\Windows\System32\ibmpmsvc.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe (Intel Corporation) C:\Windows\System32\DptfParticipantDisplayService.exe (Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe (Lenovo Group Limited) C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\SystemAgent\SystemAgentService.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\CamMute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe (Nitro PDF Software) C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe (Nalpeiron Ltd.) C:\Windows\System32\NLSSRV32.EXE (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe (Wistron Corp.) C:\Program Files\DPR\WisLMSvc.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\QuickSnipService\QuickSnipService.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe () C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe () C:\Program Files\Lenovo\System Update\SUService.exe (Lenovo) C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe (Lenovo) C:\Program Files\Lenovo\QuickSnipService\QuickSnipInput.exe (PARTRON) C:\Program Files\TrackPoint\TrackPointApp.exe () C:\Program Files\Lenovo\LocationAware\lpdagent.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x86__8wekyb3d8bbwe\livecomm.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Windows\System32\RuntimeBroker.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\extapsup.exe (Wistron Corp.) C:\Program Files\DPR\DPR.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe (Primax Electronics Ltd.) C:\Windows\System32\ico.exe () C:\Windows\System32\FSRremoS.EXE (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTStackServer.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [LenovoOptMouseUpdate] => C:\Program Files\Lenovo\HOTKEY\extapsup.exe [244728 2013-06-20] (Lenovo Group Limited) HKLM\...\Run: [{E13C0407-3243-448C-BF1D-DC7C7E02C358}] => C:\Program Files\DPR\DPR.exe [409352 2013-10-30] (Wistron Corp.) HKLM\...\Run: [RtkNGUI] => C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe [2646016 2013-04-25] (Realtek Semiconductor) HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [937976 2013-09-11] (Lenovo) HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\LibStartStub.dll [74288 2014-03-04] (Lenovo Corporation) HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [65536 2013-09-10] (Intel Corporation) HKLM\...\Run: [Mouse Suite 98 Daemon] => C:\WINDOWS\system32\ICO.EXE [57344 2004-07-14] (Primax Electronics Ltd.) HKU\S-1-5-21-514152167-946714269-2836888378-1001\...\Run: [GoogleChromeAutoLaunch_26D5B9356F0B1AFCAD759453B0B4C2ED] => C:\Program Files\Google\Chrome\Application\chrome.exe [860488 2014-05-14] (Google Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13-comm.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad SearchScopes: HKLM - DefaultScope {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS SearchScopes: HKLM - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS SearchScopes: HKCU - DefaultScope {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = SearchScopes: HKCU - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF Plugin: @nitropdf.com/NitroPDF - C:\Program Files\Nitro\Pro 8\npnitromozilla.dll (Nitro PDF) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) Chrome: ======= CHR HomePage: CHR StartupUrls: "", "hxxp://www.google.de/", "hxxp://speedial.com/?f=1&a=spd_dsites02_14_19_ch&cd=2XzuyEtN2Y1L1Qzu0FyC0ByB0EtBzy0F0CzytB0BtBtA0CtDtN0D0Tzu0SzzyCtCtN1L2XzutBtFtBtDtFzytFtCtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StA0E0E0FyD0E0AzztG0CzyzzyBtG0Bzy0ByBtGtAtDzy0FtGyB0D0EyCzyyC0EyCzyyDtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0CyEtDtCyCzytCtGyD0A0EyBtGyDtB0C0EtG0DtB0C0FtGtD0FyE0D0EyC0B0FyD0BtDtD2Q&cr=2020589313&ir=", "hxxp://istart.webssearches.com/?type=hp&ts=1399742337&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399742997&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743112&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743250&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399744726&from=tugs&uid=3219782655_198225_30DD23C0" CHR Extension: (Koji NISHIDA) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\acganlmcjehnfmehkmlimgkaloifodlf [2014-05-19] CHR Extension: (Google Docs) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-19] CHR Extension: (Google Drive) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-19] CHR Extension: (YouTube) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-19] CHR Extension: (Google Cast) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2014-05-19] CHR Extension: (Google-Suche) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-19] CHR Extension: (Gmail offline) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2014-05-19] CHR Extension: (Google Kalender) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-05-19] CHR Extension: (Google Kalender (von Google)) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2014-05-19] CHR Extension: (LastPass: Free Password Manager) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2014-05-19] CHR Extension: (Google Play Music) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2014-05-19] CHR Extension: (Google Mail-Checker) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-05-19] CHR Extension: (Google Wallet) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-19] CHR Extension: (Google Chrome to Phone Extension) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco [2014-05-19] CHR Extension: (Google Mail) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-19] ========================== Services (Whitelisted) ================= R3 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [573488 2014-03-04] (Lenovo Corporation) R2 DptfParticipantDisplayService; C:\WINDOWS\system32\DptfParticipantDisplayService.exe [97792 2013-09-10] (Intel Corporation) R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [69632 2013-09-10] (Intel Corporation) R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [56832 2013-09-10] (Intel Corporation) S2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [75776 2013-09-10] (Intel Corporation) R2 Lenovo QuickSnip Service; C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe [204176 2012-10-08] (LENOVO INCORPORATED.) R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2085184 2014-03-10] (Lenovo Group Limited) R2 Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [549776 2012-11-10] (LENOVO INCORPORATED.) R2 LENOVO.CAMMUTE; C:\Program Files\Lenovo\Communications Utility\CamMute.exe [512048 2014-03-04] (Lenovo Corporation) R2 LENOVO.MICMUTE; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [110128 2014-04-07] (Lenovo Group Limited) R2 LENOVO.TPKNRSVC; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [527920 2014-03-04] (Lenovo Group Limited) R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [702512 2014-03-04] (Lenovo Corporation) R2 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [467960 2013-09-11] (Lenovo) R2 LocationTaskManager; C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe [468288 2013-12-11] () R2 NitroDriverReadSpool8; C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe [196616 2012-11-18] (Nitro PDF Software) S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [105472 2013-08-22] (Microsoft Corporation) R3 SUService; C:\Program Files\Lenovo\System Update\SUService.exe [24120 2014-02-21] () R2 TPHKLOAD; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [115248 2014-04-01] (Lenovo Group Limited) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [279784 2014-05-20] (Microsoft Corporation) S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2013-08-22] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22224 2014-05-20] (Microsoft Corporation) R2 WisLMSvc; C:\Program Files\DPR\WisLMSvc.exe [119608 2013-10-30] (Wistron Corp.) S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1210368 2014-05-20] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-03-18] (Microsoft Corporation) R3 BcmGnssBus; C:\WINDOWS\System32\drivers\BcmGnssBus.sys [77384 2012-10-29] (Broadcom Corporation) R3 BcmNfcIc; C:\WINDOWS\System32\drivers\BcmNfcIc.sys [65816 2013-03-04] (Broadcom Corporation.) R3 BCMSDH43XX; C:\WINDOWS\system32\DRIVERS\bcmdhd63.sys [858904 2012-10-19] (Broadcom) R3 BthLEEnum; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [186880 2014-03-18] (Microsoft Corporation) R3 BthMini; C:\WINDOWS\System32\Drivers\BTHMINI.sys [24064 2013-08-22] (Microsoft Corporation) S3 btwampfl; C:\WINDOWS\System32\drivers\btwampfl.sys [140152 2013-03-04] (Broadcom Corporation.) R3 BtwSerialBus; C:\WINDOWS\System32\drivers\BtwSerialBus.sys [114968 2013-03-04] (Broadcom Corporation.) R3 camera; C:\WINDOWS\system32\DRIVERS\camera.sys [207872 2013-09-10] (Intel Corporation) R0 ChaabiDriver; C:\WINDOWS\System32\drivers\ChaabiDriver.sys [74256 2013-09-10] (Intel Corporation) R0 clvpep; C:\WINDOWS\System32\drivers\clvpep.sys [81648 2012-10-24] (Intel Corporation) R3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [44256 2013-09-10] (Intel Corporation) R3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [49888 2013-09-10] (Intel Corporation) R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [69344 2013-09-10] (Intel Corporation) R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [163552 2013-09-10] (Intel Corporation) S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation) R3 GPIOCLV; C:\WINDOWS\System32\drivers\GPIOCLV.sys [22016 2013-09-10] (Intel Corporation) R3 GpioVirtual; C:\WINDOWS\System32\drivers\GpioVirtual.sys [11264 2013-09-10] (Windows (R) Win 7 DDK provider) R3 igdperf32; C:\WINDOWS\system32\DRIVERS\igdperf32.sys [4096 2013-11-14] () R0 inteli2c; C:\WINDOWS\System32\drivers\inteli2c.sys [48880 2013-09-10] (Intel Corporation) R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [237056 2013-04-10] (Intel(R) Corporation) R0 Lm3554; C:\WINDOWS\System32\drivers\lm3554.sys [34816 2013-09-10] (Intel Corporation) R0 LNWIPC; C:\WINDOWS\System32\drivers\LNWIPC.sys [25840 2013-09-10] (Intel Corporation) R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [16112 2013-09-10] (Intel Corporation) R3 MbmLowExt; C:\WINDOWS\System32\Drivers\MbmLowExt.sys [29696 2012-12-07] (Ericsson AB) R3 MbmUsbSerial; C:\WINDOWS\System32\Drivers\MbmUsbSerial.sys [62464 2012-07-03] (Ericsson AB) R3 MkBusFilter; C:\WINDOWS\System32\drivers\MbmDeviceFilter.sys [35080 2012-12-05] (Ericsson AB) R3 MSICReg; C:\WINDOWS\System32\drivers\MSICReg.sys [17408 2013-09-10] (Intel Corporation) R3 mxtBootBridge; C:\WINDOWS\System32\drivers\mxtBootBridge.sys [25088 2012-09-11] (Windows (R) Win 7 DDK provider) R3 ov2720; C:\WINDOWS\System32\drivers\ov2720.sys [46592 2013-09-10] (Intel Corporation) R3 ov8830; C:\WINDOWS\System32\drivers\ov8830.sys [63488 2013-09-10] (Intel Corporation) S3 pelmouse; C:\WINDOWS\system32\DRIVERS\pelmouse.sys [16384 2003-01-10] (Primax Electronics Ltd.) S3 pelusblf; C:\WINDOWS\system32\DRIVERS\pelusblf.sys [9216 2003-02-11] (Primax Electronics Ltd.) R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [138312 2013-05-06] (Realtek Semiconductor Corp.) R3 SensorsHIDClassDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 spi; C:\WINDOWS\System32\drivers\spi.sys [46592 2013-09-10] (Intel Corporation) R3 Uart16550pc; C:\WINDOWS\System32\drivers\Uart16550pc.sys [40960 2013-09-10] (Intel Corporation) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [92504 2014-05-20] (Microsoft Corporation) R3 wmbclass; C:\WINDOWS\system32\DRIVERS\wmbclass.sys [224256 2014-03-18] (Microsoft Corporation) R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-05-20] (Microsoft Corporation) R3 WUDFSensorLP; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-26 21:18 - 2014-05-26 21:18 - 00017973 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-05-26 21:12 - 2014-05-26 21:13 - 01056256 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-05-23 17:52 - 2014-05-23 17:54 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-22 19:20 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ico.exe 2014-05-21 18:10 - 2014-05-26 21:18 - 00000000 ____D () C:\FRST 2014-05-21 18:09 - 2014-05-21 18:09 - 00000925 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FRST.lnk 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 17:57 - 2006-01-16 14:40 - 00073728 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELHOOKS.DLL 2014-05-21 17:57 - 2005-12-30 13:36 - 00126976 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELSCRLL.DLL 2014-05-21 17:57 - 2005-11-25 20:06 - 00229376 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINST.EXE 2014-05-21 17:57 - 2005-09-12 22:22 - 00135168 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELMICED.EXE 2014-05-21 17:57 - 2005-05-20 16:15 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELPPM.DLL 2014-05-21 17:57 - 2005-01-27 11:29 - 00282624 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELWHEEL.DLL 2014-05-21 17:57 - 2005-01-27 10:31 - 00458126 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELBDO.DLL 2014-05-21 17:57 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ICONSPY.EXE 2014-05-21 17:57 - 2004-03-26 14:17 - 00036864 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINNT.EXE 2014-05-21 17:57 - 2004-02-20 10:43 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELUTIL.DLL 2014-05-21 17:57 - 2004-02-20 10:37 - 00049152 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELCOMM.DLL 2014-05-21 17:57 - 2003-11-06 15:51 - 00020480 _____ () C:\WINDOWS\system32\FSRremoS.EXE 2014-05-21 17:57 - 2003-10-28 21:46 - 00024576 _____ () C:\WINDOWS\system32\FSRremoC.DLL 2014-05-21 17:57 - 2003-05-21 13:11 - 00090112 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELZOOM.DLL 2014-05-21 17:57 - 2003-02-11 13:25 - 00009216 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\pelusblf.sys 2014-05-21 17:57 - 2003-01-10 13:55 - 00016384 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\PELMOUSE.SYS 2014-05-21 17:57 - 2001-11-15 17:03 - 00024576 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Pelsetup.dll 2014-05-21 17:57 - 2001-10-04 17:34 - 00019456 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMO32R.DLL 2014-05-21 17:57 - 2001-08-07 17:23 - 00045056 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELRESS.DLL 2014-05-21 17:57 - 2001-07-04 17:46 - 00439003 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMBDO.DLL 2014-05-21 17:57 - 2000-10-13 10:07 - 00075776 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMILG.DLL 2014-05-21 17:57 - 1999-11-19 15:20 - 00065536 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMIBM.DLL 2014-05-21 17:57 - 1999-07-12 16:12 - 00061952 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMRESHP.DLL 2014-05-21 06:56 - 2014-04-08 20:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll 2014-05-21 06:56 - 2014-04-08 20:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:34 - 2013-05-06 19:54 - 00138312 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\rtii2sac.sys 2014-05-20 23:34 - 2013-04-10 15:51 - 00640436 _____ () C:\WINDOWS\system32\Drivers\realtek_fw_sst.bin 2014-05-20 23:34 - 2013-04-10 15:51 - 00237056 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\isstrtc.sys 2014-05-20 23:34 - 2013-04-10 15:51 - 00000166 _____ () C:\WINDOWS\system32\Drivers\RTKIDSPEXT3.DAT 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:30 - 2014-05-21 18:04 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-20 23:28 - 2013-12-17 18:00 - 00056664 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmsvc.exe 2014-05-20 23:28 - 2013-12-17 18:00 - 00036696 _____ (Lenovo.) C:\WINDOWS\system32\tpinspm.dll 2014-05-20 23:28 - 2013-12-17 17:59 - 00060760 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmctl.exe 2014-05-20 23:28 - 2013-12-17 17:59 - 00045880 _____ (Lenovo.) C:\WINDOWS\system32\Drivers\ibmpmdrv.sys 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2013-11-14 16:45 - 09083392 _____ (Intel Corporation) C:\WINDOWS\system32\igfxress.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 02966016 _____ (Intel Corporation) C:\WINDOWS\system32\igdogl32.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 01584128 _____ (Intel Corporation) C:\WINDOWS\system32\GfxRes.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 01012736 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd32.sys 2014-05-20 23:25 - 2013-11-14 16:45 - 00722432 _____ (Intel Corporation) C:\WINDOWS\system32\IntelInvokePanel.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00498176 _____ (Intel Corporation) C:\WINDOWS\system32\igfxresn.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00498176 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrell.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497664 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrus.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497664 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfra.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrom.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptg.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrplk.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnld.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrita.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcsy.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsve.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsky.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhun.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhrv.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfin.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtrk.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrslv.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptb.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnor.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00495616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtha.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00495616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrdan.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00494592 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrheb.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00494592 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrara.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00491520 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrjpn.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00489984 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrkor.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00488960 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcht.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00488448 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrchs.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00406528 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igddim32.sys 2014-05-20 23:25 - 2013-11-14 16:45 - 00378880 _____ (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00344576 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrenu.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00309248 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpph.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00301056 _____ (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00291328 _____ (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00288768 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00265728 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00229888 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcpl.cpl 2014-05-20 23:25 - 2013-11-14 16:45 - 00209920 _____ (Intel Corporation) C:\WINDOWS\system32\gfxSrvcWin8.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00092160 _____ () C:\WINDOWS\system32\pvrscopeservices.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00009216 _____ ( ) C:\WINDOWS\system32\IGFXDEVLib.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00008700 _____ () C:\WINDOWS\system32\igddim32.vp 2014-05-20 23:25 - 2013-11-14 16:45 - 00004096 _____ () C:\WINDOWS\system32\Drivers\igdperf32.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00745472 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCameraPlugin.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00207872 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\camera.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00163552 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfManager.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00116736 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV2720_11P2SF211.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00109568 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSocYuvCopy.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00107520 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV8830_11P2BA849.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00101888 _____ (Intel(R) Corporation) C:\WINDOWS\system32\hsmon.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00097792 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantDisplayService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00075776 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00074256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ChaabiDriver.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00069632 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantProcessorService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00069344 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevProc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00065536 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00063488 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov8830.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00056832 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyCriticalService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00049888 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevGen.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00048880 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\inteli2c.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\spi.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov2720.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00044256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevDisplay.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00040960 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Uart16550pc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00034816 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\lm3554.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00025840 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\LNWIPC.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00022016 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\GPIOCLV.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00017408 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MSICReg.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00016112 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MBI.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00011264 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\GpioVirtual.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Video_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Primary_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005823 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00002056 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00001980 _____ () C:\WINDOWS\system32\Video_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:11 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-20 23:11 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:59 - 2014-05-25 11:04 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:16 - 2014-05-23 18:00 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 21:04 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2014-05-20 20:31 - 2014-05-26 21:15 - 01654784 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:21 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:24 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:31 - 2014-05-20 20:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-19 22:50 - 2014-05-19 22:50 - 00007109 _____ () C:\malewarw.txt 2014-05-19 22:34 - 2014-05-25 15:25 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-19 22:33 - 2014-05-20 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-19 22:33 - 2014-05-19 22:33 - 00001071 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-19 22:32 - 2014-05-19 22:33 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:32 - 2014-04-03 09:51 - 00073432 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-05-19 22:32 - 2014-04-03 09:51 - 00051416 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2014-05-19 22:32 - 2014-04-03 09:50 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 22:26 - 2014-05-23 18:00 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-19 22:21 - 2014-03-04 12:50 - 00067120 _____ (Lenovo Corporation) C:\WINDOWS\system32\LibDriverMftStart.dll 2014-05-19 22:17 - 2013-12-24 10:22 - 02038832 _____ (Lenovo Group Limited) C:\WINDOWS\system32\SettingsDriverHelper.dll 2014-05-19 22:16 - 2012-11-26 15:34 - 02146160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WudfUpdate_01011.dll 2014-05-19 21:47 - 2014-05-25 21:49 - 00002152 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-19 21:47 - 2014-05-20 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-19 21:44 - 2014-05-26 20:49 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-19 21:44 - 2014-05-25 21:49 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-19 21:44 - 2014-05-19 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:44 - 2014-05-19 21:46 - 00000000 ____D () C:\Program Files\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:55 - 2014-05-19 19:57 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-19 19:55 - 2014-05-04 17:14 - 90547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-18 22:06 - 2014-01-19 09:32 - 00231584 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-05-25 11:04 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:45 - 2013-05-04 06:10 - 00014848 ____N (Microsoft) C:\WINDOWS\system32\rars.rs 2014-05-18 21:45 - 2012-07-30 21:00 - 00002122 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo QuickSnip Toasts.lnk 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt ==================== One Month Modified Files and Folders ======= 2014-05-26 21:18 - 2014-05-26 21:18 - 00017973 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-05-26 21:18 - 2014-05-21 18:10 - 00000000 ____D () C:\FRST 2014-05-26 21:15 - 2014-05-20 20:31 - 01654784 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-26 21:13 - 2014-05-26 21:12 - 01056256 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-05-26 20:49 - 2014-05-19 21:44 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-26 20:13 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-05-25 21:49 - 2014-05-19 21:47 - 00002152 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-25 21:49 - 2014-05-19 21:44 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-25 15:25 - 2014-05-19 22:34 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-25 11:04 - 2014-05-20 22:59 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-05-25 11:04 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-05-23 18:06 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-05-23 18:04 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-05-23 18:00 - 2014-05-20 21:16 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-23 18:00 - 2014-05-19 22:26 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-23 17:57 - 2014-03-18 10:04 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-05-23 17:54 - 2014-05-23 17:52 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-23 17:53 - 2014-03-18 01:54 - 00002628 _____ () C:\WINDOWS\PFRO.log 2014-05-23 17:53 - 2013-08-22 09:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-05-23 17:53 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-05-21 18:09 - 2014-05-21 18:09 - 00000925 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FRST.lnk 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 18:04 - 2014-05-20 23:30 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-21 18:04 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Help 2014-05-21 18:04 - 2013-03-04 01:07 - 00000000 ___HD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools 2014-05-21 18:04 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Lenovo 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:35 - 2013-08-22 09:23 - 00289077 _____ () C:\WINDOWS\setupact.log 2014-05-20 23:35 - 2013-03-04 00:48 - 00002265 _____ () C:\RtkI2SSetup.log 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:33 - 2013-03-04 00:48 - 00000000 ____D () C:\Program Files\DPR 2014-05-20 23:33 - 2013-03-03 17:14 - 00000000 ____D () C:\ProgramData\lenovo 2014-05-20 23:30 - 2013-03-04 01:11 - 00000000 ____D () C:\WINDOWS\Downloaded Installations 2014-05-20 23:28 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\restore 2014-05-20 23:28 - 2013-03-04 00:48 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2014-05-20 20:21 - 00000000 ____D () C:\Users\Ariane 2014-05-20 23:25 - 2013-03-04 00:51 - 00000000 ____D () C:\Program Files\Intel 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:24 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Common Files\Lenovo 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:07 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\LogFiles 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:15 - 2013-08-22 10:17 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows Defender 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:10 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Drivers\de-DE 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 20:33 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\rescache 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:31 - 2014-05-20 19:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Registration 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows NT 2014-05-20 20:31 - 2013-08-22 08:21 - 00000000 __RHD () C:\Users\Default 2014-05-20 20:31 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RSD () C:\WINDOWS\Media 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RHD () C:\Users\Public\Libraries 2014-05-20 20:29 - 2013-08-22 08:21 - 00000000 ___RD () C:\Users\Public 2014-05-20 20:27 - 2013-08-22 09:22 - 00333576 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-05-20 20:26 - 2014-05-19 22:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-20 20:26 - 2014-05-19 21:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-20 20:26 - 2013-08-22 10:18 - 00004893 _____ () C:\WINDOWS\DtcInstall.log 2014-05-20 20:26 - 2013-03-04 01:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel AppUp(SM) center 2014-05-20 20:26 - 2012-07-26 06:43 - 00000000 ____D () C:\Users\Default.migrated 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\winrm 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\WCN 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\slmgr 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Printing_Admin_Scripts 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\WinStore 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\spool 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\MUI 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\IME 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\de-DE 2014-05-20 20:24 - 2014-05-20 20:18 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:24 - 2014-03-18 09:45 - 00000000 ____D () C:\Program Files\Windows Journal 2014-05-20 20:24 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\DigitalLocker 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 __SHD () C:\Program Files\Windows Sidebar 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\IME 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-05-20 20:24 - 2012-10-11 19:41 - 00000000 ____D () C:\ProgramData\PRICache 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:22 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\Recovery 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:19 - 2013-08-22 09:23 - 00000084 _____ () C:\WINDOWS\setuperr.log 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:55 - 2013-03-04 01:13 - 01352732 _____ () C:\WINDOWS\WindowsUpdate (1).log 2014-05-20 19:50 - 2012-07-26 08:53 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2014-05-19 22:50 - 2014-05-19 22:50 - 00007109 _____ () C:\malewarw.txt 2014-05-19 22:33 - 2014-05-19 22:33 - 00001071 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-19 22:33 - 2014-05-19 22:32 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 21:47 - 2014-05-19 21:44 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:46 - 2014-05-19 21:44 - 00000000 ____D () C:\Program Files\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:57 - 2014-05-19 19:55 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:47 - 2013-03-04 10:15 - 00055561 _____ () C:\WINDOWS\modules.log 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt 2014-05-06 05:25 - 2014-05-20 23:11 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-06 04:10 - 2014-05-20 23:11 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-04 17:14 - 2014-05-19 19:55 - 90547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-01 22:30 - 2013-08-22 10:18 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-05-01 22:30 - 2013-08-22 10:18 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl Files to move or delete: ==================== C:\ProgramData\Lenovo-23270.vbs ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe => MD5 is legit C:\WINDOWS\system32\winlogon.exe => MD5 is legit C:\WINDOWS\system32\wininit.exe => MD5 is legit C:\WINDOWS\system32\svchost.exe => MD5 is legit C:\WINDOWS\system32\services.exe [2014-05-20 21:09] - [2014-05-20 21:09] - 0328984 ____A (Microsoft Corporation) BE8FB66895B5475B09F5907D875CD47D C:\WINDOWS\system32\User32.dll => MD5 is legit C:\WINDOWS\system32\userinit.exe => MD5 is legit C:\WINDOWS\system32\rpcss.dll => MD5 is legit C:\WINDOWS\system32\Drivers\volsnap.sys [2014-05-20 21:09] - [2014-05-20 21:09] - 0264536 ____A (Microsoft Corporation) F4138DC230FC3DFE9E31201561D0491B LastRegBack: 2014-05-20 20:17 ==================== End Of Log ============================ |
26.05.2014, 20:44 | #8 |
| Maleware zeigt über 20 Bedrohungen an! 2.Teil: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version:25-05-2014 02 Ran by Ariane at 2014-05-26 21:19:56 Running from C:\Users\Ariane\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== Anzeige am Bildschirm (HKLM\...\OnScreenDisplay) (Version: 8.30.00 - ) DPR (HKLM\...\{E13C0407-3243-448C-BF1D-DC7C7E02C358}) (Version: 1.06.000 - ) Google Chrome (HKLM\...\Google Chrome) (Version: 35.0.1916.114 - Google Inc.) Google Update Helper (Version: 1.3.24.7 - Google Inc.) Hidden Intel AppUp(SM) center (HKLM\...\Intel AppUp(SM) center 33057) (Version: 3.6.1.33057.10 - Intel) Intel(R) Dynamic Platform & Thermal Framework (HKLM\...\FFD10ECE-F715-4a86-9BD8-F6F47DA5DA1C) (Version: 7.0.0.0412 - Intel Corporation) Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 9.14.3.1099 - Intel Corporation) Lenovo Dependency Package (HKLM\...\Lenovo Dependency Package_is1) (Version: 1.05.0010 - Lenovo Group Limited) Lenovo Patch Utility (HKLM\...\{AD32F5E9-6BDD-480A-8B7B-95571D04691C}) (Version: 1.3.1.1 - Lenovo Group Limited) Lenovo Patch Utility (Version: 1.4.0.4 - Lenovo Group Limited) Hidden Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.67.04.05 - ) Lenovo Settings - Camera Audio (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: 4.2.2.0 - Lenovo Corporation) Lenovo Settings - Location Awareness (HKLM\...\{C79D4402-E622-4922-9C02-89F9080BF081}_is1) (Version: 1.3.0.10 - Lenovo Group Limited) Lenovo Settings Dependency Package (HKLM\...\{3694BA2E-BE31-4B7E-886B-A0B559E69D4D}_is1) (Version: 2.0.0.16 - Lenovo Group Limited) Lenovo Settings Mobile Hotspot (HKLM\...\{42603F7D-B08D-436B-B0D8-3E2DEF1AFD41}_is1) (Version: 1.2.0.82 - Lenovo) Lenovo Settings UMDF driver (HKLM\...\{2BDC7413-65EA-4B99-8C4B-02F11075BE6D}_is1) (Version: 1.1.0.5 - Lenovo Group Limited) Lenovo System Update (HKLM\...\{25C64847-B900-48AD-A164-1B4F9B774650}) (Version: 5.05.0009 - Lenovo) Lenovo User Guide (HKLM\...\{13F59938-C595-479C-B479-F171AB9AF64F}) (Version: 1.0.0008.00 - Ihr Firmenname) Lenovo Warranty Information (HKLM\...\{FD4EC278-C1B1-4496-99ED-C0BE1B0AA521}) (Version: 1.0.0007.00 - Lenovo) Malwarebytes Anti-Malware Version 2.0.1.1004 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation) Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x86__8wekyb3d8bbwe (x86) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft Office (HKLM\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Mobile Broadband Drivers (HKLM\...\{68D0E8C7-E4F8-424E-A6D6-97A06A323FFE}) (Version: 8.0.9.3 - Ericsson AB) Mouse Suite (HKLM\...\MouseSuite98) (Version: - ) Nitro Pro 8 (HKLM\...\{CEEEFC2B-7E96-42CC-B19D-051BEAFE71DE}) (Version: 8.0.7.3 - Nitro) Realtek I2S Audio (HKLM\...\{89A448AA-3301-46AA-AFC3-34F2D7C670E8}) (Version: 6.2.9200.3067 - Realtek Semiconductor Corp.) SMSC LAN9500 Device Driver (HKLM\...\{789D6991-AE19-45AE-B1CF-4F6522FBD03B}) (Version: 2.6.0.4 - SMSC) SugarSync Manager (HKLM\...\SugarSync) (Version: 1.9.61.90905 - SugarSync, Inc.) ThinkPad Bluetooth with Enhanced Data Rate Software (HKLM\...\{C6D9ED03-6FCF-4410-9CB7-45CA285F9E11}) (Version: 12.0.0.3800 - Broadcom Corporation) ThinkPad Optical TrackPoint Driver (HKLM\...\ThinkPad Optical TrackPoint Driver) (Version: 1.2.09-12491 - Partron) Windows-Treiberpaket - Atmel Corp (mxtBootBridge) HardwarePatchDriver (09/11/2012 6.2.9200.16384) (HKLM\...\700BCBB8787B6CE4474A610C5DE9CE3C95ACC556) (Version: 09/11/2012 6.2.9200.16384 - Atmel Corp) Windows-Treiberpaket - Broadcom (bcmfn2) System (08/30/2012 20.43.14.119) (HKLM\...\8ACEFA31AC73553F5EEFA5785AD8D4D0E850401F) (Version: 08/30/2012 20.43.14.119 - Broadcom) Windows-Treiberpaket - Broadcom (BcmNfcIc) System (09/14/2012 1.0.0.3200) (HKLM\...\224AD2D1E6F09DA401DC97D6B47CD8E4F8AA600E) (Version: 09/14/2012 1.0.0.3200 - Broadcom) Windows-Treiberpaket - Broadcom (BCMSDH43XX) Net (10/18/2012 5.93.97.83) (HKLM\...\D59220782B6FD496B699CCA87DD2D1AE74E18663) (Version: 10/18/2012 5.93.97.83 - Broadcom) Windows-Treiberpaket - Broadcom (BtwSerialBus) System (10/16/2012 12.0.0.3320) (HKLM\...\1080E59EFECB29ECA25B046AF1205496C742A8BD) (Version: 10/16/2012 12.0.0.3320 - Broadcom) Windows-Treiberpaket - Broadcom (WUDFRd) Proximity (09/14/2012 1.0.0.3200) (HKLM\...\BE580BC2157E57C9CF4EBC0810A39C122E0612C2) (Version: 09/14/2012 1.0.0.3200 - Broadcom) Windows-Treiberpaket - Intel Corporation (camera) Image (10/19/2012 6.2.9200.24722) (HKLM\...\2CB05254229E9DCC8DDD568B7690BFB58707A27B) (Version: 10/19/2012 6.2.9200.24722 - Intel Corporation) Windows-Treiberpaket - Intel Corporation (FlashLed) System (10/19/2012 6.2.9200.24722) (HKLM\...\A7A806AF0E8576FDBCC68B0E6C969DC75032BABA) (Version: 10/19/2012 6.2.9200.24722 - Intel Corporation) Windows-Treiberpaket - Intel Corporation (imx175) System (10/19/2012 6.2.9200.24722) (HKLM\...\F3293093CFAB6A179961B2E848076A9E32AC9302) (Version: 10/19/2012 6.2.9200.24722 - Intel Corporation) Windows-Treiberpaket - Intel Corporation (Lm3554) System (10/19/2012 6.2.9200.24722) (HKLM\...\A469BF3C31141065CC76DE6E0A5A0822037906FC) (Version: 10/19/2012 6.2.9200.24722 - Intel Corporation) Windows-Treiberpaket - Intel Corporation (mt9e013) System (10/19/2012 6.2.9200.24722) (HKLM\...\435337F05D5069260B5EEDFB425F4E8AF3BAD35D) (Version: 10/19/2012 6.2.9200.24722 - Intel Corporation) Windows-Treiberpaket - Intel Corporation (ov2720) System (10/19/2012 6.2.9200.24722) (HKLM\...\DF8E163CF1D6D335F2FDBFF52B139DBEAE5093FB) (Version: 10/19/2012 6.2.9200.24722 - Intel Corporation) Windows-Treiberpaket - Intel Corporation (ov8830) System (10/19/2012 6.2.9200.24722) (HKLM\...\31F3276AE3EB5F23FFF65CA6F833C7614C685603) (Version: 10/19/2012 6.2.9200.24722 - Intel Corporation) Windows-Treiberpaket - Lenovo 1.66.00.17 (10/09/2012 1.66.00.17) (HKLM\...\7E9A68EF5A742D0A96318732F882C31EFF4B2A0B) (Version: 10/09/2012 1.66.00.17 - Lenovo) ==================== Restore Points ========================= 20-05-2014 21:28:29 Installed Lenovo Power Management Driver ==================== Hosts content: ========================== 2013-08-22 08:13 - 2013-08-22 08:13 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {00BC77BF-3352-4FE8-9617-4F1B27BEC19A} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {01BCC00A-C6A8-474C-BA2D-3076F3CE544D} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\WINDOWS\system32\cleanmgr.exe [2014-03-18] (Microsoft Corporation) Task: {02B97B27-29F3-4F0D-B9D9-1A218C58AD6F} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics Task: {02D29311-EB5B-40FB-922B-4EC5DA0D88FF} - System32\Tasks\TVT\LenovoWERMonitor => C:\Program Files\Common Files\lenovo\SUP\sup_wermonitor.exe [2014-01-21] (Microsoft) Task: {03F00483-DFF0-469F-88A0-E7C9E3D9F4A7} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation Task: {17233BE9-87E9-40B0-B003-AE9D2B92CBBE} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {1D9462F8-766F-4CE4-BF4D-80B04C1C4EA7} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files\Lenovo\System Update\tvsuShim.exe [2014-02-21] () Task: {1F9DBDBA-7960-44B2-9995-D829719C8734} - System32\Tasks\Lenovo\Lenovo Settings Power => Rundll32.exe "C:\Program Files\ThinkPad\Utilities\PWMTR32V.dll",PwrMgrBkGndMonitor Task: {247BD142-0549-4E91-84B0-172C25563718} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {2BE65564-89D1-4396-A5CC-D7D9283FC4A1} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {309EEC83-1070-415D-8E95-9E1FE2AE64AD} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv Task: {392EB017-207C-42BF-A061-F3BE721F456C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {4B7EF56A-8A42-4BD2-BB5C-7C389AC54A37} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {5700ACE8-D0AF-4BA7-98B6-1033521A877A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {5FCFC60F-536A-490F-8C3F-CFB7670A2390} - System32\Tasks\TrackPointSchedule => C:\Program Files\TrackPoint\TrackPointApp.exe [2012-12-03] (PARTRON) Task: {64E9E43E-C1E2-4DC0-9344-50C972C8B715} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2014-02-13] (Lenovo) Task: {6E84A59B-1863-4B21-8BD8-C9B20FD15484} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {7276DEEA-6ED2-4091-AF19-079E9B8C56C7} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management Task: {7C7CF1DA-F461-4850-96B2-ADCA8A67E59C} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {8B5819AE-7B44-478B-A3D3-8846AF160A8F} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {92ED6570-4654-4BFA-9A6C-1084C6939C16} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {997C8BBD-710B-4E66-B5BC-CC09575A58D2} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {A5D45ED3-F524-4574-8F39-527F3729D1E2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\WINDOWS\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {AF8D09D4-5886-4733-9C3E-E4E9F3B571FE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-05-19] (Google Inc.) Task: {C0D0F7C4-419F-41B3-90A2-FE79270B828A} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {CBEF431B-E764-4358-A95E-214BED31B96A} - System32\Tasks\Intel\Intel Service Manager => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe Task: {CF5A1DDC-D14D-4D59-AD49-A19A645B087B} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {DCF55BED-B1DF-4ABF-8D85-6542C7007799} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {E4C8774A-2818-45A4-8A6D-11DDF6348886} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {EDA08D07-22DC-4FC7-9920-DE2EE1491D0C} - System32\Tasks\Lenovo\Lenovo-23270 => C:\ProgramData\Lenovo-23270.vbs [2013-03-04] () Task: {F4B69B8E-D33B-4D22-8065-D6BC3937E90D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2014-05-19] (Google Inc.) Task: {FAB49829-3EE7-4234-BE84-277862F2A57C} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2012-10-26 14:50 - 2012-10-26 14:50 - 00042872 _____ () C:\Program Files\ThinkPad\Bluetooth Software\btwleapi.dll 2013-03-04 01:11 - 2013-11-14 15:50 - 02201088 _____ () C:\Program Files\Lenovo\Communications Utility\cxcore210.dll 2013-03-04 01:11 - 2013-11-14 15:50 - 02085888 _____ () C:\Program Files\Lenovo\Communications Utility\cv210.dll 2014-05-19 22:18 - 2014-03-07 07:44 - 00108032 _____ () C:\Program Files\ThinkPad\Utilities\GR\PWMRT32V.dll 2014-05-23 18:05 - 2014-05-23 18:05 - 00797696 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Windows.Networking\66db718389f1cd2503053c09b3de857f\Windows.Networking.ni.dll 2012-10-26 17:44 - 2013-12-11 15:36 - 00468288 _____ () C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe 2014-05-20 23:15 - 2014-02-21 13:39 - 00024120 _____ () C:\Program Files\Lenovo\System Update\SUService.exe 2014-05-20 23:15 - 2014-02-21 13:40 - 00050744 _____ () C:\Program Files\Lenovo\System Update\TvsuServiceCommon.dll 2014-02-21 13:40 - 2014-02-21 13:40 - 00104504 _____ () C:\Program Files\Lenovo\System Update\tvsutil.dll 2012-12-03 07:52 - 2012-12-03 07:52 - 00439584 _____ () C:\Program Files\TrackPoint\TrackPointDll.DLL 2012-10-26 17:44 - 2013-12-11 15:36 - 00013120 _____ () C:\Program Files\Lenovo\LocationAware\lpdagent.exe 2014-05-23 17:55 - 2014-05-23 17:55 - 00143360 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x86__8wekyb3d8bbwe\ErrorReporting.dll 2014-05-19 22:18 - 2014-03-07 07:44 - 00108032 _____ () C:\Program Files\ThinkPad\Utilities\GR\PWMRT32V.DLL 2014-05-23 14:42 - 2014-05-14 01:40 - 00716616 _____ () C:\Program Files\Google\Chrome\Application\35.0.1916.114\libglesv2.dll 2014-05-23 14:42 - 2014-05-14 01:40 - 00126280 _____ () C:\Program Files\Google\Chrome\Application\35.0.1916.114\libegl.dll 2014-05-23 14:43 - 2014-05-14 01:40 - 04217672 _____ () C:\Program Files\Google\Chrome\Application\35.0.1916.114\pdf.dll 2014-05-23 14:44 - 2014-05-14 01:40 - 00414536 _____ () C:\Program Files\Google\Chrome\Application\35.0.1916.114\ppGoogleNaClPluginChrome.dll 2014-05-23 14:41 - 2014-05-14 01:40 - 01732424 _____ () C:\Program Files\Google\Chrome\Application\35.0.1916.114\ffmpegsumo.dll 2014-05-21 17:57 - 2003-11-06 15:51 - 00020480 _____ () C:\Windows\System32\FSRremoS.EXE ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\Ariane\OneDrive:ms-properties ==================== Safe Mode (whitelisted) =================== HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\gpioclv.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\inteli2c.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\lnwipc.sys => ""="Driver" ==================== EXE Association (whitelisted) ============= ==================== Disabled items from MSCONFIG ============== ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (05/26/2014 09:08:40 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (05/25/2014 10:27:13 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: WUDFHost.exe, Version: 6.3.9600.16384, Zeitstempel: 0x52157bc6 Name des fehlerhaften Moduls: MbmDevExt.dll_unloaded, Version: 8.0.8.2, Zeitstempel: 0x50bf4115 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00006e72 ID des fehlerhaften Prozesses: 0x958 Startzeit der fehlerhaften Anwendung: 0xWUDFHost.exe0 Pfad der fehlerhaften Anwendung: WUDFHost.exe1 Pfad des fehlerhaften Moduls: WUDFHost.exe2 Berichtskennung: WUDFHost.exe3 Vollständiger Name des fehlerhaften Pakets: WUDFHost.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: WUDFHost.exe5 Error: (05/25/2014 03:24:13 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (05/22/2014 08:10:11 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (05/22/2014 07:20:28 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (05/20/2014 11:28:29 PM) (Source: VSS) (EventID: 8194) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Abfragen nach der Schnittstelle "IVssWriterCallback" ist ein unerwarteter Fehler aufgetreten. hr = 0x80070005, Zugriff verweigert . Die Ursache hierfür ist oft eine falsche Sicherheitseinstellung im Schreib- oder Anfrageprozess. Vorgang: Generatordaten werden gesammelt Kontext: Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220} Generatorname: System Writer Generatorinstanz-ID: {3c3f1cce-260d-416b-a78b-3187df3d2ebf} Error: (05/20/2014 10:58:34 PM) (Source: DptfPolicyLpmServiceHelper) (EventID: 1) (User: ) Description: DptfPolicyLpmServiceHelperCreateSharedMemory: CreateFileMapping() failed.Last error = [0x00000005] Error: (05/20/2014 06:13:05 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (05/20/2014 05:26:54 PM) (Source: DptfPolicyLpmServiceHelper) (EventID: 1) (User: ) Description: DptfPolicyLpmServiceHelperCreateSharedMemory: CreateFileMapping() failed.Last error = [0x00000005] Error: (05/20/2014 05:26:53 PM) (Source: LocationTaskManager) (EventID: 0) (User: ) Description: Fehler beim Verarbeiten von Sitzungsänderung. System.NullReferenceException: Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt. bei LocationTaskManager.AgentObject.InitFileSync() bei LocationTaskManager.AgentObject.RequestUserFolder() bei LocationTaskManager.AgentObject.PerformTasks(String ssid) bei LocationTaskManager.AgentObjectManager.PerformTasks(String ssid) bei LocationTaskManager.LocationTaskManager.PerformTask(String ssid) bei LocationTaskManager.LocationTaskManager.UserChanged(UInt32 sessionID) bei LocationTaskManager.LocationTaskManager.OnSessionChange(SessionChangeDescription changeDescription) bei System.ServiceProcess.ServiceBase.DeferredSessionChange(Int32 eventType, IntPtr eventData) System errors: ============= Error: (05/26/2014 01:07:28 PM) (Source: DCOM) (EventID: 10005) (User: NT-AUTORITÄT) Description: 1053gupdate/comsvc{4EB61BAC-A3B6-4760-9581-655041EF4D69} Error: (05/26/2014 01:07:28 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Google Update-Dienst (gupdate)" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (05/26/2014 01:07:28 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Google Update-Dienst (gupdate) erreicht. Error: (05/26/2014 04:49:56 AM) (Source: DCOM) (EventID: 10005) (User: NT-AUTORITÄT) Description: 1053gupdate/comsvc{4EB61BAC-A3B6-4760-9581-655041EF4D69} Error: (05/26/2014 04:49:56 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Google Update-Dienst (gupdate)" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (05/26/2014 04:49:56 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Google Update-Dienst (gupdate) erreicht. Error: (05/26/2014 02:51:22 AM) (Source: DCOM) (EventID: 10005) (User: NT-AUTORITÄT) Description: 1053gupdate/comsvc{4EB61BAC-A3B6-4760-9581-655041EF4D69} Error: (05/26/2014 02:51:22 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Google Update-Dienst (gupdate)" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (05/26/2014 02:51:22 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Google Update-Dienst (gupdate) erreicht. Error: (05/25/2014 09:52:29 PM) (Source: DCOM) (EventID: 10010) (User: LENOVO-PC) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Microsoft Office Sessions: ========================= Error: (05/26/2014 09:08:40 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (05/25/2014 10:27:13 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: WUDFHost.exe6.3.9600.1638452157bc6MbmDevExt.dll_unloaded8.0.8.250bf4115c000000500006e7295801cf769f25947772C:\Windows\System32\WUDFHost.exeMbmDevExt.dllf4053d57-e44a-11e3-afa9-f4b7e29fc92c Error: (05/25/2014 03:24:13 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (05/22/2014 08:10:11 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (05/22/2014 07:20:28 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (05/20/2014 11:28:29 PM) (Source: VSS) (EventID: 8194) (User: ) Description: 0x80070005, Zugriff verweigert Vorgang: Generatordaten werden gesammelt Kontext: Generatorklassen-ID: {e8132975-6f93-4464-a53e-1050253ae220} Generatorname: System Writer Generatorinstanz-ID: {3c3f1cce-260d-416b-a78b-3187df3d2ebf} Error: (05/20/2014 10:58:34 PM) (Source: DptfPolicyLpmServiceHelper) (EventID: 1) (User: ) Description: DptfPolicyLpmServiceHelperCreateSharedMemory: CreateFileMapping() failed.Last error = [0x00000005] Error: (05/20/2014 06:13:05 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (05/20/2014 05:26:54 PM) (Source: DptfPolicyLpmServiceHelper) (EventID: 1) (User: ) Description: DptfPolicyLpmServiceHelperCreateSharedMemory: CreateFileMapping() failed.Last error = [0x00000005] Error: (05/20/2014 05:26:53 PM) (Source: LocationTaskManager) (EventID: 0) (User: ) Description: Fehler beim Verarbeiten von Sitzungsänderung. System.NullReferenceException: Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt. bei LocationTaskManager.AgentObject.InitFileSync() bei LocationTaskManager.AgentObject.RequestUserFolder() bei LocationTaskManager.AgentObject.PerformTasks(String ssid) bei LocationTaskManager.AgentObjectManager.PerformTasks(String ssid) bei LocationTaskManager.LocationTaskManager.PerformTask(String ssid) bei LocationTaskManager.LocationTaskManager.UserChanged(UInt32 sessionID) bei LocationTaskManager.LocationTaskManager.OnSessionChange(SessionChangeDescription changeDescription) bei System.ServiceProcess.ServiceBase.DeferredSessionChange(Int32 eventType, IntPtr eventData) ==================== Memory info =========================== Percentage of memory in use: 67% Total physical RAM: 1986.67 MB Available physical RAM: 653.39 MB Total Pagefile: 3138.67 MB Available Pagefile: 1361.07 MB Total Virtual: 2047.88 MB Available Virtual: 1921.05 MB ==================== Drives ================================ Drive c: (Windows8_OS) (Fixed) (Total:48.98 GB) (Free:33.86 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 58 GB) (Disk ID: 439FDFEE) Partition: GPT Partition Type. ==================== End Of Log ============================ |
27.05.2014, 18:19 | #9 |
/// the machine /// TB-Ausbilder | Maleware zeigt über 20 Bedrohungen an! Funde mit MBAM löschen lassen. Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
27.05.2014, 18:47 | #10 |
| Maleware zeigt über 20 Bedrohungen an! hier doe adwcleaner.txt: Code:
ATTFilter # AdwCleaner v3.211 - Bericht erstellt am 27/05/2014 um 19:25:08 # Aktualisiert 26/05/2014 von Xplode # Betriebssystem : Windows 8.1 Pro (32 bits) # Benutzername : Ariane - LENOVO-PC # Gestartet von : C:\Users\Ariane\Downloads\adwcleaner_3.211.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17037 -\\ Google Chrome v35.0.1916.114 [ Datei : C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gelöscht [Search Provider] : hxxp://istart.webssearches.com/web/?type=ds&ts=1399742337&from=tugs&uid=3219782655_198225_30DD23C0&q={searchTerms} Gelöscht [Search Provider] : hxxp://istart.webssearches.com/web/?type=dspp&ts=1399742452&from=tugs&uid=3219782655_198225_30DD23C0&q={searchTerms} Gelöscht [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=AVR-4&o=APN10261&locale=de_DE&apn_uid=4c5a445e-e60b-428f-9384-66528d624d89&apn_ptnrs=%5EAGS&apn_sauid=986A7C7C-0403-45BB-BEC4-697F027935DF&apn_dtid=%5EYYYYYY%5EYY%5EDE&q={searchTerms} Gelöscht [Search Provider] : hxxp://istart.webssearches.com/web/?type=dspp&ts=1399744726&from=tugs&uid=3219782655_198225_30DD23C0&q={searchTerms} Gelöscht [Startup_urls] : hxxp://istart.webssearches.com/?type=hp&ts=1399742337&from=tugs&uid=3219782655_198225_30DD23C0 Gelöscht [Startup_urls] : hxxp://istart.webssearches.com/?type=hppp&ts=1399742997&from=tugs&uid=3219782655_198225_30DD23C0 Gelöscht [Startup_urls] : hxxp://istart.webssearches.com/?type=hppp&ts=1399743112&from=tugs&uid=3219782655_198225_30DD23C0 Gelöscht [Startup_urls] : hxxp://istart.webssearches.com/?type=hppp&ts=1399743250&from=tugs&uid=3219782655_198225_30DD23C0 Gelöscht [Startup_urls] : hxxp://istart.webssearches.com/?type=hppp&ts=1399744726&from=tugs&uid=3219782655_198225_30DD23C0 Gelöscht [Extension] : aaipilfmheplbcghignccoiiebekkdhe Gelöscht [Extension] : majjphhgppkndjjkmhhnbgafooenebhd ************************* AdwCleaner[R0].txt - [1577 octets] - [27/05/2014 19:23:38] AdwCleaner[S0].txt - [2205 octets] - [27/05/2014 19:25:08] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2265 octets] ########## Code:
ATTFilter # AdwCleaner v3.211 - Bericht erstellt am 27/05/2014 um 19:25:08 # Aktualisiert 26/05/2014 von Xplode # Betriebssystem : Windows 8.1 Pro (32 bits) # Benutzername : Ariane - LENOVO-PC # Gestartet von : C:\Users\Ariane\Downloads\adwcleaner_3.211.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17037 -\\ Google Chrome v35.0.1916.114 [ Datei : C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gelöscht [Search Provider] : hxxp://istart.webssearches.com/web/?type=ds&ts=1399742337&from=tugs&uid=3219782655_198225_30DD23C0&q={searchTerms} Gelöscht [Search Provider] : hxxp://istart.webssearches.com/web/?type=dspp&ts=1399742452&from=tugs&uid=3219782655_198225_30DD23C0&q={searchTerms} Gelöscht [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=AVR-4&o=APN10261&locale=de_DE&apn_uid=4c5a445e-e60b-428f-9384-66528d624d89&apn_ptnrs=%5EAGS&apn_sauid=986A7C7C-0403-45BB-BEC4-697F027935DF&apn_dtid=%5EYYYYYY%5EYY%5EDE&q={searchTerms} Gelöscht [Search Provider] : hxxp://istart.webssearches.com/web/?type=dspp&ts=1399744726&from=tugs&uid=3219782655_198225_30DD23C0&q={searchTerms} Gelöscht [Startup_urls] : hxxp://istart.webssearches.com/?type=hp&ts=1399742337&from=tugs&uid=3219782655_198225_30DD23C0 Gelöscht [Startup_urls] : hxxp://istart.webssearches.com/?type=hppp&ts=1399742997&from=tugs&uid=3219782655_198225_30DD23C0 Gelöscht [Startup_urls] : hxxp://istart.webssearches.com/?type=hppp&ts=1399743112&from=tugs&uid=3219782655_198225_30DD23C0 Gelöscht [Startup_urls] : hxxp://istart.webssearches.com/?type=hppp&ts=1399743250&from=tugs&uid=3219782655_198225_30DD23C0 Gelöscht [Startup_urls] : hxxp://istart.webssearches.com/?type=hppp&ts=1399744726&from=tugs&uid=3219782655_198225_30DD23C0 Gelöscht [Extension] : aaipilfmheplbcghignccoiiebekkdhe Gelöscht [Extension] : majjphhgppkndjjkmhhnbgafooenebhd ************************* AdwCleaner[R0].txt - [1577 octets] - [27/05/2014 19:23:38] AdwCleaner[S0].txt - [2205 octets] - [27/05/2014 19:25:08] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2265 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 8.1 Pro x86 Ran by Ariane on 27.05.2014 at 19:30:11,08 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 27.05.2014 at 19:35:52,99 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ vielen dank! FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:25-05-2014 02 Ran by Ariane (administrator) on LENOVO-PC on 27-05-2014 19:40:16 Running from C:\Users\Ariane\Downloads Platform: Microsoft Windows 8.1 Pro (X86) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Lenovo.) C:\Windows\System32\ibmpmsvc.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\WTabletServiceISD.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe (Intel Corporation) C:\Windows\System32\DptfParticipantDisplayService.exe (Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe (Lenovo Group Limited) C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\SystemAgent\SystemAgentService.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\CamMute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe (Nitro PDF Software) C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe (Nalpeiron Ltd.) C:\Windows\System32\NLSSRV32.EXE (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe (Wistron Corp.) C:\Program Files\DPR\WisLMSvc.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe (PARTRON) C:\Program Files\TrackPoint\TrackPointApp.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\ISD_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\ISD\WacomHost.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x86__8wekyb3d8bbwe\livecomm.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\ISD_Tablet.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Microsoft Corporation) C:\Windows\System32\RuntimeBroker.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\extapsup.exe (Wistron Corp.) C:\Program Files\DPR\DPR.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe (Primax Electronics Ltd.) C:\Windows\System32\ico.exe () C:\Windows\System32\FSRremoS.EXE (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTStackServer.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\QuickSnipService\QuickSnipService.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe (Lenovo) C:\Program Files\Lenovo\QuickSnipService\QuickSnipInput.exe () C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe () C:\Program Files\Lenovo\LocationAware\lpdagent.exe () C:\Program Files\Lenovo\System Update\SUService.exe (Lenovo) C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [LenovoOptMouseUpdate] => C:\Program Files\Lenovo\HOTKEY\extapsup.exe [244728 2013-06-20] (Lenovo Group Limited) HKLM\...\Run: [{E13C0407-3243-448C-BF1D-DC7C7E02C358}] => C:\Program Files\DPR\DPR.exe [409352 2013-10-30] (Wistron Corp.) HKLM\...\Run: [RtkNGUI] => C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe [2646016 2013-04-25] (Realtek Semiconductor) HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [937976 2013-09-11] (Lenovo) HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\LibStartStub.dll [74288 2014-03-04] (Lenovo Corporation) HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [65536 2013-09-10] (Intel Corporation) HKLM\...\Run: [Mouse Suite 98 Daemon] => C:\WINDOWS\system32\ICO.EXE [57344 2004-07-14] (Primax Electronics Ltd.) HKU\S-1-5-21-514152167-946714269-2836888378-1001\...\Run: [GoogleChromeAutoLaunch_26D5B9356F0B1AFCAD759453B0B4C2ED] => C:\Program Files\Google\Chrome\Application\chrome.exe [860488 2014-05-14] (Google Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13-comm.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS SearchScopes: HKCU - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF Plugin: @nitropdf.com/NitroPDF - C:\Program Files\Nitro\Pro 8\npnitromozilla.dll (Nitro PDF) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) Chrome: ======= CHR HomePage: CHR StartupUrls: "", "hxxp://www.google.de/", "hxxp://speedial.com/?f=1&a=spd_dsites02_14_19_ch&cd=2XzuyEtN2Y1L1Qzu0FyC0ByB0EtBzy0F0CzytB0BtBtA0CtDtN0D0Tzu0SzzyCtCtN1L2XzutBtFtBtDtFzytFtCtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StA0E0E0FyD0E0AzztG0CzyzzyBtG0Bzy0ByBtGtAtDzy0FtGyB0D0EyCzyyC0EyCzyyDtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0CyEtDtCyCzytCtGyD0A0EyBtGyDtB0C0EtG0DtB0C0FtGtD0FyE0D0EyC0B0FyD0BtDtD2Q&cr=2020589313&ir=", "hxxp://istart.webssearches.com/?type=hp&ts=1399742337&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399742997&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743112&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743250&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399744726&from=tugs&uid=3219782655_198225_30DD23C0" CHR Extension: (Collate Links) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe [2014-05-27] CHR Extension: (Koji NISHIDA) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\acganlmcjehnfmehkmlimgkaloifodlf [2014-05-19] CHR Extension: (Google Docs) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-19] CHR Extension: (Google Drive) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-19] CHR Extension: (YouTube) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-19] CHR Extension: (Google Cast) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2014-05-19] CHR Extension: (Google-Suche) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-19] CHR Extension: (Gmail offline) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2014-05-19] CHR Extension: (Google Kalender) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-05-19] CHR Extension: (Google Kalender (von Google)) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2014-05-19] CHR Extension: (LastPass: Free Password Manager) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2014-05-19] CHR Extension: (Google Play Music) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2014-05-19] CHR Extension: (Text Highlighter) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd [2014-05-27] CHR Extension: (Google Mail-Checker) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-05-19] CHR Extension: (Google Wallet) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-19] CHR Extension: (Google Chrome to Phone Extension) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco [2014-05-19] CHR Extension: (Google Mail) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-19] ========================== Services (Whitelisted) ================= S3 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [573488 2014-03-04] (Lenovo Corporation) R2 DptfParticipantDisplayService; C:\WINDOWS\system32\DptfParticipantDisplayService.exe [97792 2013-09-10] (Intel Corporation) R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [69632 2013-09-10] (Intel Corporation) R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [56832 2013-09-10] (Intel Corporation) S2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [75776 2013-09-10] (Intel Corporation) R2 Lenovo QuickSnip Service; C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe [204176 2012-10-08] (LENOVO INCORPORATED.) R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2085184 2014-03-10] (Lenovo Group Limited) R2 Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [549776 2012-11-10] (LENOVO INCORPORATED.) R2 LENOVO.CAMMUTE; C:\Program Files\Lenovo\Communications Utility\CamMute.exe [512048 2014-03-04] (Lenovo Corporation) R2 LENOVO.MICMUTE; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [110128 2014-04-07] (Lenovo Group Limited) R2 LENOVO.TPKNRSVC; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [527920 2014-03-04] (Lenovo Group Limited) R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [702512 2014-03-04] (Lenovo Corporation) R2 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [467960 2013-09-11] (Lenovo) R2 LocationTaskManager; C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe [468288 2013-12-11] () R2 NitroDriverReadSpool8; C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe [196616 2012-11-18] (Nitro PDF Software) S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [105472 2013-08-22] (Microsoft Corporation) R3 SUService; C:\Program Files\Lenovo\System Update\SUService.exe [24120 2014-02-21] () R2 TPHKLOAD; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [115248 2014-04-01] (Lenovo Group Limited) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [279784 2014-05-20] (Microsoft Corporation) S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2013-08-22] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22224 2014-05-20] (Microsoft Corporation) R2 WisLMSvc; C:\Program Files\DPR\WisLMSvc.exe [119608 2013-10-30] (Wistron Corp.) S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1210368 2014-05-20] (Microsoft Corporation) R2 WTabletServiceISD; C:\Program Files\Tablet\ISD\WTabletServiceISD.exe [500024 2013-11-06] (Wacom Technology, Corp.) ==================== Drivers (Whitelisted) ==================== R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-03-18] (Microsoft Corporation) R3 BcmGnssBus; C:\WINDOWS\System32\drivers\BcmGnssBus.sys [77384 2012-10-29] (Broadcom Corporation) R3 BcmNfcIc; C:\WINDOWS\System32\drivers\BcmNfcIc.sys [65816 2013-03-04] (Broadcom Corporation.) R3 BCMSDH43XX; C:\WINDOWS\system32\DRIVERS\bcmdhd63.sys [858904 2012-10-19] (Broadcom) R3 BthLEEnum; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [186880 2014-03-18] (Microsoft Corporation) R3 BthMini; C:\WINDOWS\System32\Drivers\BTHMINI.sys [24064 2013-08-22] (Microsoft Corporation) S3 btwampfl; C:\WINDOWS\System32\drivers\btwampfl.sys [140152 2013-03-04] (Broadcom Corporation.) R3 BtwSerialBus; C:\WINDOWS\System32\drivers\BtwSerialBus.sys [114968 2013-03-04] (Broadcom Corporation.) R3 camera; C:\WINDOWS\system32\DRIVERS\camera.sys [207872 2013-09-10] (Intel Corporation) R0 ChaabiDriver; C:\WINDOWS\System32\drivers\ChaabiDriver.sys [74256 2013-09-10] (Intel Corporation) R0 clvpep; C:\WINDOWS\System32\drivers\clvpep.sys [81648 2012-10-24] (Intel Corporation) R3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [44256 2013-09-10] (Intel Corporation) R3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [49888 2013-09-10] (Intel Corporation) R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [69344 2013-09-10] (Intel Corporation) R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [163552 2013-09-10] (Intel Corporation) S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation) R3 GPIOCLV; C:\WINDOWS\System32\drivers\GPIOCLV.sys [22016 2013-09-10] (Intel Corporation) R3 GpioVirtual; C:\WINDOWS\System32\drivers\GpioVirtual.sys [11264 2013-09-10] (Windows (R) Win 7 DDK provider) R3 igdperf32; C:\WINDOWS\system32\DRIVERS\igdperf32.sys [4096 2013-11-14] () R0 inteli2c; C:\WINDOWS\System32\drivers\inteli2c.sys [48880 2013-09-10] (Intel Corporation) R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [237056 2013-04-10] (Intel(R) Corporation) R0 Lm3554; C:\WINDOWS\System32\drivers\lm3554.sys [34816 2013-09-10] (Intel Corporation) R0 LNWIPC; C:\WINDOWS\System32\drivers\LNWIPC.sys [25840 2013-09-10] (Intel Corporation) R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [16112 2013-09-10] (Intel Corporation) R3 MbmLowExt; C:\WINDOWS\System32\Drivers\MbmLowExt.sys [29696 2012-12-07] (Ericsson AB) R3 MbmUsbSerial; C:\WINDOWS\System32\Drivers\MbmUsbSerial.sys [62464 2012-07-03] (Ericsson AB) R3 MkBusFilter; C:\WINDOWS\System32\drivers\MbmDeviceFilter.sys [35080 2012-12-05] (Ericsson AB) R3 MSICReg; C:\WINDOWS\System32\drivers\MSICReg.sys [17408 2013-09-10] (Intel Corporation) R3 mxtBootBridge; C:\WINDOWS\System32\drivers\mxtBootBridge.sys [25088 2012-09-11] (Windows (R) Win 7 DDK provider) R3 ov2720; C:\WINDOWS\System32\drivers\ov2720.sys [46592 2013-09-10] (Intel Corporation) R3 ov8830; C:\WINDOWS\System32\drivers\ov8830.sys [63488 2013-09-10] (Intel Corporation) S3 pelmouse; C:\WINDOWS\system32\DRIVERS\pelmouse.sys [16384 2003-01-10] (Primax Electronics Ltd.) S3 pelusblf; C:\WINDOWS\system32\DRIVERS\pelusblf.sys [9216 2003-02-11] (Primax Electronics Ltd.) R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [138312 2013-05-06] (Realtek Semiconductor Corp.) R3 SensorsHIDClassDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 spi; C:\WINDOWS\System32\drivers\spi.sys [46592 2013-09-10] (Intel Corporation) R3 Uart16550pc; C:\WINDOWS\System32\drivers\Uart16550pc.sys [40960 2013-09-10] (Intel Corporation) R3 WacHidRouter; C:\WINDOWS\System32\drivers\wachidrouter.sys [76600 2013-11-01] (Wacom Technology) R3 wacomrouterfilter; C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [13112 2013-11-01] (Wacom Technology) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [92504 2014-05-20] (Microsoft Corporation) R3 wmbclass; C:\WINDOWS\system32\DRIVERS\wmbclass.sys [224256 2014-03-18] (Microsoft Corporation) R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-05-20] (Microsoft Corporation) R3 WUDFSensorLP; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-27 19:40 - 2014-05-27 19:40 - 00018388 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-05-27 19:39 - 2014-05-27 19:40 - 01056256 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-05-27 19:35 - 2014-05-27 19:35 - 00000619 _____ () C:\Users\Ariane\Desktop\JRT.txt 2014-05-27 19:30 - 2014-05-27 19:30 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-05-27 19:29 - 2014-05-27 19:29 - 01016261 _____ (Thisisu) C:\Users\Ariane\Downloads\JRT.exe 2014-05-27 19:27 - 2014-05-27 19:27 - 00002345 _____ () C:\Users\Ariane\Desktop\AdwCleaner[S0].txt 2014-05-27 19:24 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\system32\sqlite3.dll 2014-05-27 19:23 - 2014-05-27 19:25 - 00000000 ____D () C:\AdwCleaner 2014-05-27 19:22 - 2014-05-27 19:22 - 01327971 _____ () C:\Users\Ariane\Downloads\adwcleaner_3.211.exe 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\WTablet 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Program Files\Tablet 2014-05-26 22:04 - 2013-11-06 14:50 - 01604408 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\ISD_Tablet.dll 2014-05-26 22:04 - 2013-11-06 14:50 - 01597240 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\ISD_Touch_Tablet.dll 2014-05-26 22:04 - 2013-11-06 14:50 - 01483064 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\Wintab32.dll 2014-05-26 22:04 - 2013-11-01 10:41 - 00076600 _____ (Wacom Technology) C:\WINDOWS\system32\Drivers\wachidrouter.sys 2014-05-26 22:04 - 2013-11-01 10:41 - 00013112 _____ (Wacom Technology) C:\WINDOWS\system32\Drivers\wacomrouterfilter.sys 2014-05-26 22:04 - 2012-04-11 14:34 - 01461992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wdfcoinstaller01009.dll 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieUserList 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieSiteList 2014-05-23 17:52 - 2014-05-23 17:54 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-22 19:20 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ico.exe 2014-05-21 18:10 - 2014-05-27 19:40 - 00000000 ____D () C:\FRST 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 17:57 - 2006-01-16 14:40 - 00073728 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELHOOKS.DLL 2014-05-21 17:57 - 2005-12-30 13:36 - 00126976 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELSCRLL.DLL 2014-05-21 17:57 - 2005-11-25 20:06 - 00229376 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINST.EXE 2014-05-21 17:57 - 2005-09-12 22:22 - 00135168 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELMICED.EXE 2014-05-21 17:57 - 2005-05-20 16:15 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELPPM.DLL 2014-05-21 17:57 - 2005-01-27 11:29 - 00282624 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELWHEEL.DLL 2014-05-21 17:57 - 2005-01-27 10:31 - 00458126 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELBDO.DLL 2014-05-21 17:57 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ICONSPY.EXE 2014-05-21 17:57 - 2004-03-26 14:17 - 00036864 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINNT.EXE 2014-05-21 17:57 - 2004-02-20 10:43 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELUTIL.DLL 2014-05-21 17:57 - 2004-02-20 10:37 - 00049152 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELCOMM.DLL 2014-05-21 17:57 - 2003-11-06 15:51 - 00020480 _____ () C:\WINDOWS\system32\FSRremoS.EXE 2014-05-21 17:57 - 2003-10-28 21:46 - 00024576 _____ () C:\WINDOWS\system32\FSRremoC.DLL 2014-05-21 17:57 - 2003-05-21 13:11 - 00090112 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELZOOM.DLL 2014-05-21 17:57 - 2003-02-11 13:25 - 00009216 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\pelusblf.sys 2014-05-21 17:57 - 2003-01-10 13:55 - 00016384 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\PELMOUSE.SYS 2014-05-21 17:57 - 2001-11-15 17:03 - 00024576 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Pelsetup.dll 2014-05-21 17:57 - 2001-10-04 17:34 - 00019456 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMO32R.DLL 2014-05-21 17:57 - 2001-08-07 17:23 - 00045056 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELRESS.DLL 2014-05-21 17:57 - 2001-07-04 17:46 - 00439003 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMBDO.DLL 2014-05-21 17:57 - 2000-10-13 10:07 - 00075776 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMILG.DLL 2014-05-21 17:57 - 1999-11-19 15:20 - 00065536 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMIBM.DLL 2014-05-21 17:57 - 1999-07-12 16:12 - 00061952 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMRESHP.DLL 2014-05-21 06:56 - 2014-04-08 20:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll 2014-05-21 06:56 - 2014-04-08 20:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:34 - 2013-05-06 19:54 - 00138312 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\rtii2sac.sys 2014-05-20 23:34 - 2013-04-10 15:51 - 00640436 _____ () C:\WINDOWS\system32\Drivers\realtek_fw_sst.bin 2014-05-20 23:34 - 2013-04-10 15:51 - 00237056 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\isstrtc.sys 2014-05-20 23:34 - 2013-04-10 15:51 - 00000166 _____ () C:\WINDOWS\system32\Drivers\RTKIDSPEXT3.DAT 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:30 - 2014-05-21 18:04 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-20 23:28 - 2013-12-17 18:00 - 00056664 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmsvc.exe 2014-05-20 23:28 - 2013-12-17 18:00 - 00036696 _____ (Lenovo.) C:\WINDOWS\system32\tpinspm.dll 2014-05-20 23:28 - 2013-12-17 17:59 - 00060760 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmctl.exe 2014-05-20 23:28 - 2013-12-17 17:59 - 00045880 _____ (Lenovo.) C:\WINDOWS\system32\Drivers\ibmpmdrv.sys 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2013-11-14 16:45 - 09083392 _____ (Intel Corporation) C:\WINDOWS\system32\igfxress.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 02966016 _____ (Intel Corporation) C:\WINDOWS\system32\igdogl32.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 01584128 _____ (Intel Corporation) C:\WINDOWS\system32\GfxRes.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 01012736 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd32.sys 2014-05-20 23:25 - 2013-11-14 16:45 - 00722432 _____ (Intel Corporation) C:\WINDOWS\system32\IntelInvokePanel.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00498176 _____ (Intel Corporation) C:\WINDOWS\system32\igfxresn.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00498176 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrell.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497664 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrus.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497664 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfra.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrom.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptg.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrplk.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnld.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrita.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcsy.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsve.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsky.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhun.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhrv.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfin.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtrk.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrslv.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptb.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnor.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00495616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtha.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00495616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrdan.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00494592 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrheb.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00494592 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrara.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00491520 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrjpn.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00489984 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrkor.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00488960 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcht.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00488448 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrchs.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00406528 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igddim32.sys 2014-05-20 23:25 - 2013-11-14 16:45 - 00378880 _____ (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00344576 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrenu.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00309248 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpph.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00301056 _____ (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00291328 _____ (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00288768 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00265728 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00229888 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcpl.cpl 2014-05-20 23:25 - 2013-11-14 16:45 - 00209920 _____ (Intel Corporation) C:\WINDOWS\system32\gfxSrvcWin8.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00092160 _____ () C:\WINDOWS\system32\pvrscopeservices.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00009216 _____ ( ) C:\WINDOWS\system32\IGFXDEVLib.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00008700 _____ () C:\WINDOWS\system32\igddim32.vp 2014-05-20 23:25 - 2013-11-14 16:45 - 00004096 _____ () C:\WINDOWS\system32\Drivers\igdperf32.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00745472 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCameraPlugin.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00207872 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\camera.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00163552 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfManager.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00116736 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV2720_11P2SF211.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00109568 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSocYuvCopy.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00107520 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV8830_11P2BA849.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00101888 _____ (Intel(R) Corporation) C:\WINDOWS\system32\hsmon.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00097792 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantDisplayService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00075776 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00074256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ChaabiDriver.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00069632 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantProcessorService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00069344 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevProc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00065536 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00063488 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov8830.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00056832 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyCriticalService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00049888 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevGen.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00048880 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\inteli2c.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\spi.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov2720.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00044256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevDisplay.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00040960 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Uart16550pc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00034816 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\lm3554.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00025840 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\LNWIPC.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00022016 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\GPIOCLV.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00017408 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MSICReg.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00016112 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MBI.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00011264 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\GpioVirtual.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Video_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Primary_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005823 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00002056 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00001980 _____ () C:\WINDOWS\system32\Video_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:11 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-20 23:11 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:59 - 2014-05-27 19:32 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:16 - 2014-05-23 18:00 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 21:04 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2014-05-20 20:31 - 2014-05-27 19:39 - 01802875 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:21 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:24 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:31 - 2014-05-20 20:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-19 22:50 - 2014-05-19 22:50 - 00007109 _____ () C:\malewarw.txt 2014-05-19 22:34 - 2014-05-27 18:31 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-19 22:33 - 2014-05-20 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-19 22:33 - 2014-05-19 22:33 - 00001071 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-19 22:32 - 2014-05-19 22:33 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:32 - 2014-04-03 09:51 - 00073432 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-05-19 22:32 - 2014-04-03 09:51 - 00051416 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2014-05-19 22:32 - 2014-04-03 09:50 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 22:26 - 2014-05-23 18:00 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-19 22:21 - 2014-03-04 12:50 - 00067120 _____ (Lenovo Corporation) C:\WINDOWS\system32\LibDriverMftStart.dll 2014-05-19 22:17 - 2013-12-24 10:22 - 02038832 _____ (Lenovo Group Limited) C:\WINDOWS\system32\SettingsDriverHelper.dll 2014-05-19 22:16 - 2012-11-26 15:34 - 02146160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WudfUpdate_01011.dll 2014-05-19 21:47 - 2014-05-27 19:28 - 00002152 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-19 21:47 - 2014-05-20 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-19 21:44 - 2014-05-27 19:26 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-19 21:44 - 2014-05-27 18:49 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-19 21:44 - 2014-05-19 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:44 - 2014-05-19 21:46 - 00000000 ____D () C:\Program Files\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:55 - 2014-05-19 19:57 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-19 19:55 - 2014-05-04 17:14 - 90547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-18 22:06 - 2014-01-19 09:32 - 00231584 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-05-27 12:36 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:45 - 2013-05-04 06:10 - 00014848 ____N (Microsoft) C:\WINDOWS\system32\rars.rs 2014-05-18 21:45 - 2012-07-30 21:00 - 00002122 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo QuickSnip Toasts.lnk 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt ==================== One Month Modified Files and Folders ======= 2014-05-27 19:40 - 2014-05-27 19:40 - 00018388 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-05-27 19:40 - 2014-05-27 19:39 - 01056256 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-05-27 19:40 - 2014-05-21 18:10 - 00000000 ____D () C:\FRST 2014-05-27 19:39 - 2014-05-20 20:31 - 01802875 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-27 19:36 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-05-27 19:35 - 2014-05-27 19:35 - 00000619 _____ () C:\Users\Ariane\Desktop\JRT.txt 2014-05-27 19:32 - 2014-05-20 22:59 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-05-27 19:30 - 2014-05-27 19:30 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-05-27 19:30 - 2014-03-18 10:04 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-05-27 19:29 - 2014-05-27 19:29 - 01016261 _____ (Thisisu) C:\Users\Ariane\Downloads\JRT.exe 2014-05-27 19:28 - 2014-05-19 21:47 - 00002152 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-27 19:27 - 2014-05-27 19:27 - 00002345 _____ () C:\Users\Ariane\Desktop\AdwCleaner[S0].txt 2014-05-27 19:26 - 2014-05-19 21:44 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-27 19:26 - 2014-03-18 01:54 - 00002938 _____ () C:\WINDOWS\PFRO.log 2014-05-27 19:26 - 2013-08-22 09:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-05-27 19:25 - 2014-05-27 19:23 - 00000000 ____D () C:\AdwCleaner 2014-05-27 19:25 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-05-27 19:22 - 2014-05-27 19:22 - 01327971 _____ () C:\Users\Ariane\Downloads\adwcleaner_3.211.exe 2014-05-27 18:49 - 2014-05-19 21:44 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-27 18:31 - 2014-05-19 22:34 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-27 12:36 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\WTablet 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Program Files\Tablet 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieUserList 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieSiteList 2014-05-23 18:06 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-05-23 18:04 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-05-23 18:00 - 2014-05-20 21:16 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-23 18:00 - 2014-05-19 22:26 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-23 17:54 - 2014-05-23 17:52 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 18:04 - 2014-05-20 23:30 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-21 18:04 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Help 2014-05-21 18:04 - 2013-03-04 01:07 - 00000000 ___HD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools 2014-05-21 18:04 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Lenovo 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:35 - 2013-08-22 09:23 - 00289077 _____ () C:\WINDOWS\setupact.log 2014-05-20 23:35 - 2013-03-04 00:48 - 00002265 _____ () C:\RtkI2SSetup.log 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:33 - 2013-03-04 00:48 - 00000000 ____D () C:\Program Files\DPR 2014-05-20 23:33 - 2013-03-03 17:14 - 00000000 ____D () C:\ProgramData\lenovo 2014-05-20 23:30 - 2013-03-04 01:11 - 00000000 ____D () C:\WINDOWS\Downloaded Installations 2014-05-20 23:28 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\restore 2014-05-20 23:28 - 2013-03-04 00:48 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2014-05-20 20:21 - 00000000 ____D () C:\Users\Ariane 2014-05-20 23:25 - 2013-03-04 00:51 - 00000000 ____D () C:\Program Files\Intel 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:24 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Common Files\Lenovo 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:07 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\LogFiles 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:15 - 2013-08-22 10:17 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows Defender 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:10 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Drivers\de-DE 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 20:33 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\rescache 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:31 - 2014-05-20 19:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Registration 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows NT 2014-05-20 20:31 - 2013-08-22 08:21 - 00000000 __RHD () C:\Users\Default 2014-05-20 20:31 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RSD () C:\WINDOWS\Media 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RHD () C:\Users\Public\Libraries 2014-05-20 20:29 - 2013-08-22 08:21 - 00000000 ___RD () C:\Users\Public 2014-05-20 20:27 - 2013-08-22 09:22 - 00333576 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-05-20 20:26 - 2014-05-19 22:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-20 20:26 - 2014-05-19 21:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-20 20:26 - 2013-08-22 10:18 - 00004893 _____ () C:\WINDOWS\DtcInstall.log 2014-05-20 20:26 - 2013-03-04 01:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel AppUp(SM) center 2014-05-20 20:26 - 2012-07-26 06:43 - 00000000 ____D () C:\Users\Default.migrated 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\winrm 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\WCN 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\slmgr 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Printing_Admin_Scripts 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\WinStore 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\spool 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\MUI 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\IME 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\de-DE 2014-05-20 20:24 - 2014-05-20 20:18 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:24 - 2014-03-18 09:45 - 00000000 ____D () C:\Program Files\Windows Journal 2014-05-20 20:24 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\DigitalLocker 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 __SHD () C:\Program Files\Windows Sidebar 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\IME 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-05-20 20:24 - 2012-10-11 19:41 - 00000000 ____D () C:\ProgramData\PRICache 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:22 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\Recovery 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:19 - 2013-08-22 09:23 - 00000084 _____ () C:\WINDOWS\setuperr.log 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:55 - 2013-03-04 01:13 - 01352732 _____ () C:\WINDOWS\WindowsUpdate (1).log 2014-05-20 19:50 - 2012-07-26 08:53 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2014-05-19 22:50 - 2014-05-19 22:50 - 00007109 _____ () C:\malewarw.txt 2014-05-19 22:33 - 2014-05-19 22:33 - 00001071 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-19 22:33 - 2014-05-19 22:32 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 21:47 - 2014-05-19 21:44 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:46 - 2014-05-19 21:44 - 00000000 ____D () C:\Program Files\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:57 - 2014-05-19 19:55 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:47 - 2013-03-04 10:15 - 00055561 _____ () C:\WINDOWS\modules.log 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt 2014-05-06 05:25 - 2014-05-20 23:11 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-06 04:10 - 2014-05-20 23:11 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-04 17:14 - 2014-05-19 19:55 - 90547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-01 22:30 - 2013-08-22 10:18 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-05-01 22:30 - 2013-08-22 10:18 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl Files to move or delete: ==================== C:\ProgramData\Lenovo-23270.vbs Some content of TEMP: ==================== C:\Users\Ariane\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe => MD5 is legit C:\WINDOWS\system32\winlogon.exe => MD5 is legit C:\WINDOWS\system32\wininit.exe => MD5 is legit C:\WINDOWS\system32\svchost.exe => MD5 is legit C:\WINDOWS\system32\services.exe [2014-05-20 21:09] - [2014-05-20 21:09] - 0328984 ____A (Microsoft Corporation) BE8FB66895B5475B09F5907D875CD47D C:\WINDOWS\system32\User32.dll => MD5 is legit C:\WINDOWS\system32\userinit.exe => MD5 is legit C:\WINDOWS\system32\rpcss.dll => MD5 is legit C:\WINDOWS\system32\Drivers\volsnap.sys [2014-05-20 21:09] - [2014-05-20 21:09] - 0264536 ____A (Microsoft Corporation) F4138DC230FC3DFE9E31201561D0491B LastRegBack: 2014-05-20 20:17 ==================== End Of Log ============================ --- --- --- |
27.05.2014, 18:49 | #11 |
| Maleware zeigt über 20 Bedrohungen an! so und nun noch der frst log. vielen dank! FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:25-05-2014 02 Ran by Ariane (administrator) on LENOVO-PC on 27-05-2014 19:40:16 Running from C:\Users\Ariane\Downloads Platform: Microsoft Windows 8.1 Pro (X86) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Lenovo.) C:\Windows\System32\ibmpmsvc.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\WTabletServiceISD.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe (Intel Corporation) C:\Windows\System32\DptfParticipantDisplayService.exe (Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe (Lenovo Group Limited) C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\SystemAgent\SystemAgentService.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\CamMute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe (Nitro PDF Software) C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe (Nalpeiron Ltd.) C:\Windows\System32\NLSSRV32.EXE (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe (Wistron Corp.) C:\Program Files\DPR\WisLMSvc.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe (PARTRON) C:\Program Files\TrackPoint\TrackPointApp.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\ISD_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\ISD\WacomHost.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x86__8wekyb3d8bbwe\livecomm.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\ISD_Tablet.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Microsoft Corporation) C:\Windows\System32\RuntimeBroker.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\extapsup.exe (Wistron Corp.) C:\Program Files\DPR\DPR.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe (Primax Electronics Ltd.) C:\Windows\System32\ico.exe () C:\Windows\System32\FSRremoS.EXE (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTStackServer.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\QuickSnipService\QuickSnipService.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe (Lenovo) C:\Program Files\Lenovo\QuickSnipService\QuickSnipInput.exe () C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe () C:\Program Files\Lenovo\LocationAware\lpdagent.exe () C:\Program Files\Lenovo\System Update\SUService.exe (Lenovo) C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [LenovoOptMouseUpdate] => C:\Program Files\Lenovo\HOTKEY\extapsup.exe [244728 2013-06-20] (Lenovo Group Limited) HKLM\...\Run: [{E13C0407-3243-448C-BF1D-DC7C7E02C358}] => C:\Program Files\DPR\DPR.exe [409352 2013-10-30] (Wistron Corp.) HKLM\...\Run: [RtkNGUI] => C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe [2646016 2013-04-25] (Realtek Semiconductor) HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [937976 2013-09-11] (Lenovo) HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\LibStartStub.dll [74288 2014-03-04] (Lenovo Corporation) HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [65536 2013-09-10] (Intel Corporation) HKLM\...\Run: [Mouse Suite 98 Daemon] => C:\WINDOWS\system32\ICO.EXE [57344 2004-07-14] (Primax Electronics Ltd.) HKU\S-1-5-21-514152167-946714269-2836888378-1001\...\Run: [GoogleChromeAutoLaunch_26D5B9356F0B1AFCAD759453B0B4C2ED] => C:\Program Files\Google\Chrome\Application\chrome.exe [860488 2014-05-14] (Google Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13-comm.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS SearchScopes: HKCU - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF Plugin: @nitropdf.com/NitroPDF - C:\Program Files\Nitro\Pro 8\npnitromozilla.dll (Nitro PDF) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) Chrome: ======= CHR HomePage: CHR StartupUrls: "", "hxxp://www.google.de/", "hxxp://speedial.com/?f=1&a=spd_dsites02_14_19_ch&cd=2XzuyEtN2Y1L1Qzu0FyC0ByB0EtBzy0F0CzytB0BtBtA0CtDtN0D0Tzu0SzzyCtCtN1L2XzutBtFtBtDtFzytFtCtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StA0E0E0FyD0E0AzztG0CzyzzyBtG0Bzy0ByBtGtAtDzy0FtGyB0D0EyCzyyC0EyCzyyDtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0CyEtDtCyCzytCtGyD0A0EyBtGyDtB0C0EtG0DtB0C0FtGtD0FyE0D0EyC0B0FyD0BtDtD2Q&cr=2020589313&ir=", "hxxp://istart.webssearches.com/?type=hp&ts=1399742337&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399742997&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743112&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743250&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399744726&from=tugs&uid=3219782655_198225_30DD23C0" CHR Extension: (Collate Links) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaipilfmheplbcghignccoiiebekkdhe [2014-05-27] CHR Extension: (Koji NISHIDA) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\acganlmcjehnfmehkmlimgkaloifodlf [2014-05-19] CHR Extension: (Google Docs) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-19] CHR Extension: (Google Drive) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-19] CHR Extension: (YouTube) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-19] CHR Extension: (Google Cast) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2014-05-19] CHR Extension: (Google-Suche) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-19] CHR Extension: (Gmail offline) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2014-05-19] CHR Extension: (Google Kalender) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-05-19] CHR Extension: (Google Kalender (von Google)) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2014-05-19] CHR Extension: (LastPass: Free Password Manager) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2014-05-19] CHR Extension: (Google Play Music) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2014-05-19] CHR Extension: (Text Highlighter) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\majjphhgppkndjjkmhhnbgafooenebhd [2014-05-27] CHR Extension: (Google Mail-Checker) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-05-19] CHR Extension: (Google Wallet) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-19] CHR Extension: (Google Chrome to Phone Extension) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco [2014-05-19] CHR Extension: (Google Mail) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-19] ========================== Services (Whitelisted) ================= S3 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [573488 2014-03-04] (Lenovo Corporation) R2 DptfParticipantDisplayService; C:\WINDOWS\system32\DptfParticipantDisplayService.exe [97792 2013-09-10] (Intel Corporation) R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [69632 2013-09-10] (Intel Corporation) R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [56832 2013-09-10] (Intel Corporation) S2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [75776 2013-09-10] (Intel Corporation) R2 Lenovo QuickSnip Service; C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe [204176 2012-10-08] (LENOVO INCORPORATED.) R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2085184 2014-03-10] (Lenovo Group Limited) R2 Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [549776 2012-11-10] (LENOVO INCORPORATED.) R2 LENOVO.CAMMUTE; C:\Program Files\Lenovo\Communications Utility\CamMute.exe [512048 2014-03-04] (Lenovo Corporation) R2 LENOVO.MICMUTE; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [110128 2014-04-07] (Lenovo Group Limited) R2 LENOVO.TPKNRSVC; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [527920 2014-03-04] (Lenovo Group Limited) R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [702512 2014-03-04] (Lenovo Corporation) R2 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [467960 2013-09-11] (Lenovo) R2 LocationTaskManager; C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe [468288 2013-12-11] () R2 NitroDriverReadSpool8; C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe [196616 2012-11-18] (Nitro PDF Software) S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [105472 2013-08-22] (Microsoft Corporation) R3 SUService; C:\Program Files\Lenovo\System Update\SUService.exe [24120 2014-02-21] () R2 TPHKLOAD; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [115248 2014-04-01] (Lenovo Group Limited) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [279784 2014-05-20] (Microsoft Corporation) S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2013-08-22] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22224 2014-05-20] (Microsoft Corporation) R2 WisLMSvc; C:\Program Files\DPR\WisLMSvc.exe [119608 2013-10-30] (Wistron Corp.) S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1210368 2014-05-20] (Microsoft Corporation) R2 WTabletServiceISD; C:\Program Files\Tablet\ISD\WTabletServiceISD.exe [500024 2013-11-06] (Wacom Technology, Corp.) ==================== Drivers (Whitelisted) ==================== R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-03-18] (Microsoft Corporation) R3 BcmGnssBus; C:\WINDOWS\System32\drivers\BcmGnssBus.sys [77384 2012-10-29] (Broadcom Corporation) R3 BcmNfcIc; C:\WINDOWS\System32\drivers\BcmNfcIc.sys [65816 2013-03-04] (Broadcom Corporation.) R3 BCMSDH43XX; C:\WINDOWS\system32\DRIVERS\bcmdhd63.sys [858904 2012-10-19] (Broadcom) R3 BthLEEnum; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [186880 2014-03-18] (Microsoft Corporation) R3 BthMini; C:\WINDOWS\System32\Drivers\BTHMINI.sys [24064 2013-08-22] (Microsoft Corporation) S3 btwampfl; C:\WINDOWS\System32\drivers\btwampfl.sys [140152 2013-03-04] (Broadcom Corporation.) R3 BtwSerialBus; C:\WINDOWS\System32\drivers\BtwSerialBus.sys [114968 2013-03-04] (Broadcom Corporation.) R3 camera; C:\WINDOWS\system32\DRIVERS\camera.sys [207872 2013-09-10] (Intel Corporation) R0 ChaabiDriver; C:\WINDOWS\System32\drivers\ChaabiDriver.sys [74256 2013-09-10] (Intel Corporation) R0 clvpep; C:\WINDOWS\System32\drivers\clvpep.sys [81648 2012-10-24] (Intel Corporation) R3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [44256 2013-09-10] (Intel Corporation) R3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [49888 2013-09-10] (Intel Corporation) R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [69344 2013-09-10] (Intel Corporation) R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [163552 2013-09-10] (Intel Corporation) S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation) R3 GPIOCLV; C:\WINDOWS\System32\drivers\GPIOCLV.sys [22016 2013-09-10] (Intel Corporation) R3 GpioVirtual; C:\WINDOWS\System32\drivers\GpioVirtual.sys [11264 2013-09-10] (Windows (R) Win 7 DDK provider) R3 igdperf32; C:\WINDOWS\system32\DRIVERS\igdperf32.sys [4096 2013-11-14] () R0 inteli2c; C:\WINDOWS\System32\drivers\inteli2c.sys [48880 2013-09-10] (Intel Corporation) R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [237056 2013-04-10] (Intel(R) Corporation) R0 Lm3554; C:\WINDOWS\System32\drivers\lm3554.sys [34816 2013-09-10] (Intel Corporation) R0 LNWIPC; C:\WINDOWS\System32\drivers\LNWIPC.sys [25840 2013-09-10] (Intel Corporation) R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [16112 2013-09-10] (Intel Corporation) R3 MbmLowExt; C:\WINDOWS\System32\Drivers\MbmLowExt.sys [29696 2012-12-07] (Ericsson AB) R3 MbmUsbSerial; C:\WINDOWS\System32\Drivers\MbmUsbSerial.sys [62464 2012-07-03] (Ericsson AB) R3 MkBusFilter; C:\WINDOWS\System32\drivers\MbmDeviceFilter.sys [35080 2012-12-05] (Ericsson AB) R3 MSICReg; C:\WINDOWS\System32\drivers\MSICReg.sys [17408 2013-09-10] (Intel Corporation) R3 mxtBootBridge; C:\WINDOWS\System32\drivers\mxtBootBridge.sys [25088 2012-09-11] (Windows (R) Win 7 DDK provider) R3 ov2720; C:\WINDOWS\System32\drivers\ov2720.sys [46592 2013-09-10] (Intel Corporation) R3 ov8830; C:\WINDOWS\System32\drivers\ov8830.sys [63488 2013-09-10] (Intel Corporation) S3 pelmouse; C:\WINDOWS\system32\DRIVERS\pelmouse.sys [16384 2003-01-10] (Primax Electronics Ltd.) S3 pelusblf; C:\WINDOWS\system32\DRIVERS\pelusblf.sys [9216 2003-02-11] (Primax Electronics Ltd.) R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [138312 2013-05-06] (Realtek Semiconductor Corp.) R3 SensorsHIDClassDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 spi; C:\WINDOWS\System32\drivers\spi.sys [46592 2013-09-10] (Intel Corporation) R3 Uart16550pc; C:\WINDOWS\System32\drivers\Uart16550pc.sys [40960 2013-09-10] (Intel Corporation) R3 WacHidRouter; C:\WINDOWS\System32\drivers\wachidrouter.sys [76600 2013-11-01] (Wacom Technology) R3 wacomrouterfilter; C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [13112 2013-11-01] (Wacom Technology) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [92504 2014-05-20] (Microsoft Corporation) R3 wmbclass; C:\WINDOWS\system32\DRIVERS\wmbclass.sys [224256 2014-03-18] (Microsoft Corporation) R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-05-20] (Microsoft Corporation) R3 WUDFSensorLP; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-27 19:40 - 2014-05-27 19:40 - 00018388 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-05-27 19:39 - 2014-05-27 19:40 - 01056256 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-05-27 19:35 - 2014-05-27 19:35 - 00000619 _____ () C:\Users\Ariane\Desktop\JRT.txt 2014-05-27 19:30 - 2014-05-27 19:30 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-05-27 19:29 - 2014-05-27 19:29 - 01016261 _____ (Thisisu) C:\Users\Ariane\Downloads\JRT.exe 2014-05-27 19:27 - 2014-05-27 19:27 - 00002345 _____ () C:\Users\Ariane\Desktop\AdwCleaner[S0].txt 2014-05-27 19:24 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\system32\sqlite3.dll 2014-05-27 19:23 - 2014-05-27 19:25 - 00000000 ____D () C:\AdwCleaner 2014-05-27 19:22 - 2014-05-27 19:22 - 01327971 _____ () C:\Users\Ariane\Downloads\adwcleaner_3.211.exe 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\WTablet 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Program Files\Tablet 2014-05-26 22:04 - 2013-11-06 14:50 - 01604408 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\ISD_Tablet.dll 2014-05-26 22:04 - 2013-11-06 14:50 - 01597240 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\ISD_Touch_Tablet.dll 2014-05-26 22:04 - 2013-11-06 14:50 - 01483064 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\Wintab32.dll 2014-05-26 22:04 - 2013-11-01 10:41 - 00076600 _____ (Wacom Technology) C:\WINDOWS\system32\Drivers\wachidrouter.sys 2014-05-26 22:04 - 2013-11-01 10:41 - 00013112 _____ (Wacom Technology) C:\WINDOWS\system32\Drivers\wacomrouterfilter.sys 2014-05-26 22:04 - 2012-04-11 14:34 - 01461992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wdfcoinstaller01009.dll 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieUserList 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieSiteList 2014-05-23 17:52 - 2014-05-23 17:54 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-22 19:20 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ico.exe 2014-05-21 18:10 - 2014-05-27 19:40 - 00000000 ____D () C:\FRST 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 17:57 - 2006-01-16 14:40 - 00073728 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELHOOKS.DLL 2014-05-21 17:57 - 2005-12-30 13:36 - 00126976 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELSCRLL.DLL 2014-05-21 17:57 - 2005-11-25 20:06 - 00229376 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINST.EXE 2014-05-21 17:57 - 2005-09-12 22:22 - 00135168 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELMICED.EXE 2014-05-21 17:57 - 2005-05-20 16:15 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELPPM.DLL 2014-05-21 17:57 - 2005-01-27 11:29 - 00282624 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELWHEEL.DLL 2014-05-21 17:57 - 2005-01-27 10:31 - 00458126 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELBDO.DLL 2014-05-21 17:57 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ICONSPY.EXE 2014-05-21 17:57 - 2004-03-26 14:17 - 00036864 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINNT.EXE 2014-05-21 17:57 - 2004-02-20 10:43 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELUTIL.DLL 2014-05-21 17:57 - 2004-02-20 10:37 - 00049152 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELCOMM.DLL 2014-05-21 17:57 - 2003-11-06 15:51 - 00020480 _____ () C:\WINDOWS\system32\FSRremoS.EXE 2014-05-21 17:57 - 2003-10-28 21:46 - 00024576 _____ () C:\WINDOWS\system32\FSRremoC.DLL 2014-05-21 17:57 - 2003-05-21 13:11 - 00090112 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELZOOM.DLL 2014-05-21 17:57 - 2003-02-11 13:25 - 00009216 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\pelusblf.sys 2014-05-21 17:57 - 2003-01-10 13:55 - 00016384 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\PELMOUSE.SYS 2014-05-21 17:57 - 2001-11-15 17:03 - 00024576 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Pelsetup.dll 2014-05-21 17:57 - 2001-10-04 17:34 - 00019456 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMO32R.DLL 2014-05-21 17:57 - 2001-08-07 17:23 - 00045056 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELRESS.DLL 2014-05-21 17:57 - 2001-07-04 17:46 - 00439003 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMBDO.DLL 2014-05-21 17:57 - 2000-10-13 10:07 - 00075776 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMILG.DLL 2014-05-21 17:57 - 1999-11-19 15:20 - 00065536 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMIBM.DLL 2014-05-21 17:57 - 1999-07-12 16:12 - 00061952 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMRESHP.DLL 2014-05-21 06:56 - 2014-04-08 20:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll 2014-05-21 06:56 - 2014-04-08 20:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:34 - 2013-05-06 19:54 - 00138312 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\rtii2sac.sys 2014-05-20 23:34 - 2013-04-10 15:51 - 00640436 _____ () C:\WINDOWS\system32\Drivers\realtek_fw_sst.bin 2014-05-20 23:34 - 2013-04-10 15:51 - 00237056 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\isstrtc.sys 2014-05-20 23:34 - 2013-04-10 15:51 - 00000166 _____ () C:\WINDOWS\system32\Drivers\RTKIDSPEXT3.DAT 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:30 - 2014-05-21 18:04 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-20 23:28 - 2013-12-17 18:00 - 00056664 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmsvc.exe 2014-05-20 23:28 - 2013-12-17 18:00 - 00036696 _____ (Lenovo.) C:\WINDOWS\system32\tpinspm.dll 2014-05-20 23:28 - 2013-12-17 17:59 - 00060760 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmctl.exe 2014-05-20 23:28 - 2013-12-17 17:59 - 00045880 _____ (Lenovo.) C:\WINDOWS\system32\Drivers\ibmpmdrv.sys 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2013-11-14 16:45 - 09083392 _____ (Intel Corporation) C:\WINDOWS\system32\igfxress.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 02966016 _____ (Intel Corporation) C:\WINDOWS\system32\igdogl32.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 01584128 _____ (Intel Corporation) C:\WINDOWS\system32\GfxRes.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 01012736 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd32.sys 2014-05-20 23:25 - 2013-11-14 16:45 - 00722432 _____ (Intel Corporation) C:\WINDOWS\system32\IntelInvokePanel.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00498176 _____ (Intel Corporation) C:\WINDOWS\system32\igfxresn.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00498176 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrell.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497664 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrus.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497664 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfra.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrom.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptg.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrplk.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnld.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrita.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcsy.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsve.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsky.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhun.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhrv.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfin.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtrk.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrslv.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptb.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnor.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00495616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtha.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00495616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrdan.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00494592 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrheb.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00494592 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrara.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00491520 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrjpn.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00489984 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrkor.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00488960 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcht.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00488448 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrchs.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00406528 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igddim32.sys 2014-05-20 23:25 - 2013-11-14 16:45 - 00378880 _____ (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00344576 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrenu.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00309248 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpph.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00301056 _____ (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00291328 _____ (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00288768 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00265728 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00229888 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcpl.cpl 2014-05-20 23:25 - 2013-11-14 16:45 - 00209920 _____ (Intel Corporation) C:\WINDOWS\system32\gfxSrvcWin8.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00092160 _____ () C:\WINDOWS\system32\pvrscopeservices.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00009216 _____ ( ) C:\WINDOWS\system32\IGFXDEVLib.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00008700 _____ () C:\WINDOWS\system32\igddim32.vp 2014-05-20 23:25 - 2013-11-14 16:45 - 00004096 _____ () C:\WINDOWS\system32\Drivers\igdperf32.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00745472 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCameraPlugin.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00207872 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\camera.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00163552 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfManager.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00116736 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV2720_11P2SF211.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00109568 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSocYuvCopy.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00107520 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV8830_11P2BA849.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00101888 _____ (Intel(R) Corporation) C:\WINDOWS\system32\hsmon.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00097792 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantDisplayService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00075776 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00074256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ChaabiDriver.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00069632 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantProcessorService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00069344 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevProc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00065536 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00063488 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov8830.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00056832 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyCriticalService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00049888 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevGen.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00048880 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\inteli2c.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\spi.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov2720.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00044256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevDisplay.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00040960 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Uart16550pc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00034816 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\lm3554.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00025840 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\LNWIPC.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00022016 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\GPIOCLV.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00017408 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MSICReg.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00016112 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MBI.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00011264 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\GpioVirtual.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Video_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Primary_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005823 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00002056 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00001980 _____ () C:\WINDOWS\system32\Video_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:11 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-20 23:11 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:59 - 2014-05-27 19:32 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:16 - 2014-05-23 18:00 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 21:04 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2014-05-20 20:31 - 2014-05-27 19:39 - 01802875 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:21 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:24 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:31 - 2014-05-20 20:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-19 22:50 - 2014-05-19 22:50 - 00007109 _____ () C:\malewarw.txt 2014-05-19 22:34 - 2014-05-27 18:31 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-19 22:33 - 2014-05-20 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-19 22:33 - 2014-05-19 22:33 - 00001071 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-19 22:32 - 2014-05-19 22:33 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:32 - 2014-04-03 09:51 - 00073432 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-05-19 22:32 - 2014-04-03 09:51 - 00051416 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2014-05-19 22:32 - 2014-04-03 09:50 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 22:26 - 2014-05-23 18:00 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-19 22:21 - 2014-03-04 12:50 - 00067120 _____ (Lenovo Corporation) C:\WINDOWS\system32\LibDriverMftStart.dll 2014-05-19 22:17 - 2013-12-24 10:22 - 02038832 _____ (Lenovo Group Limited) C:\WINDOWS\system32\SettingsDriverHelper.dll 2014-05-19 22:16 - 2012-11-26 15:34 - 02146160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WudfUpdate_01011.dll 2014-05-19 21:47 - 2014-05-27 19:28 - 00002152 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-19 21:47 - 2014-05-20 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-19 21:44 - 2014-05-27 19:26 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-19 21:44 - 2014-05-27 18:49 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-19 21:44 - 2014-05-19 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:44 - 2014-05-19 21:46 - 00000000 ____D () C:\Program Files\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:55 - 2014-05-19 19:57 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-19 19:55 - 2014-05-04 17:14 - 90547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-18 22:06 - 2014-01-19 09:32 - 00231584 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-05-27 12:36 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:45 - 2013-05-04 06:10 - 00014848 ____N (Microsoft) C:\WINDOWS\system32\rars.rs 2014-05-18 21:45 - 2012-07-30 21:00 - 00002122 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo QuickSnip Toasts.lnk 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt ==================== One Month Modified Files and Folders ======= 2014-05-27 19:40 - 2014-05-27 19:40 - 00018388 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-05-27 19:40 - 2014-05-27 19:39 - 01056256 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-05-27 19:40 - 2014-05-21 18:10 - 00000000 ____D () C:\FRST 2014-05-27 19:39 - 2014-05-20 20:31 - 01802875 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-27 19:36 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-05-27 19:35 - 2014-05-27 19:35 - 00000619 _____ () C:\Users\Ariane\Desktop\JRT.txt 2014-05-27 19:32 - 2014-05-20 22:59 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-05-27 19:30 - 2014-05-27 19:30 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-05-27 19:30 - 2014-03-18 10:04 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-05-27 19:29 - 2014-05-27 19:29 - 01016261 _____ (Thisisu) C:\Users\Ariane\Downloads\JRT.exe 2014-05-27 19:28 - 2014-05-19 21:47 - 00002152 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-27 19:27 - 2014-05-27 19:27 - 00002345 _____ () C:\Users\Ariane\Desktop\AdwCleaner[S0].txt 2014-05-27 19:26 - 2014-05-19 21:44 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-27 19:26 - 2014-03-18 01:54 - 00002938 _____ () C:\WINDOWS\PFRO.log 2014-05-27 19:26 - 2013-08-22 09:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-05-27 19:25 - 2014-05-27 19:23 - 00000000 ____D () C:\AdwCleaner 2014-05-27 19:25 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-05-27 19:22 - 2014-05-27 19:22 - 01327971 _____ () C:\Users\Ariane\Downloads\adwcleaner_3.211.exe 2014-05-27 18:49 - 2014-05-19 21:44 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-27 18:31 - 2014-05-19 22:34 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-27 12:36 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\WTablet 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Program Files\Tablet 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieUserList 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieSiteList 2014-05-23 18:06 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-05-23 18:04 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-05-23 18:00 - 2014-05-20 21:16 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-23 18:00 - 2014-05-19 22:26 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-23 17:54 - 2014-05-23 17:52 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 18:04 - 2014-05-20 23:30 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-21 18:04 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Help 2014-05-21 18:04 - 2013-03-04 01:07 - 00000000 ___HD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools 2014-05-21 18:04 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Lenovo 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:35 - 2013-08-22 09:23 - 00289077 _____ () C:\WINDOWS\setupact.log 2014-05-20 23:35 - 2013-03-04 00:48 - 00002265 _____ () C:\RtkI2SSetup.log 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:33 - 2013-03-04 00:48 - 00000000 ____D () C:\Program Files\DPR 2014-05-20 23:33 - 2013-03-03 17:14 - 00000000 ____D () C:\ProgramData\lenovo 2014-05-20 23:30 - 2013-03-04 01:11 - 00000000 ____D () C:\WINDOWS\Downloaded Installations 2014-05-20 23:28 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\restore 2014-05-20 23:28 - 2013-03-04 00:48 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2014-05-20 20:21 - 00000000 ____D () C:\Users\Ariane 2014-05-20 23:25 - 2013-03-04 00:51 - 00000000 ____D () C:\Program Files\Intel 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:24 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Common Files\Lenovo 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:07 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\LogFiles 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:15 - 2013-08-22 10:17 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows Defender 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:10 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Drivers\de-DE 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 20:33 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\rescache 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:31 - 2014-05-20 19:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Registration 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows NT 2014-05-20 20:31 - 2013-08-22 08:21 - 00000000 __RHD () C:\Users\Default 2014-05-20 20:31 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RSD () C:\WINDOWS\Media 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RHD () C:\Users\Public\Libraries 2014-05-20 20:29 - 2013-08-22 08:21 - 00000000 ___RD () C:\Users\Public 2014-05-20 20:27 - 2013-08-22 09:22 - 00333576 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-05-20 20:26 - 2014-05-19 22:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-20 20:26 - 2014-05-19 21:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-20 20:26 - 2013-08-22 10:18 - 00004893 _____ () C:\WINDOWS\DtcInstall.log 2014-05-20 20:26 - 2013-03-04 01:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel AppUp(SM) center 2014-05-20 20:26 - 2012-07-26 06:43 - 00000000 ____D () C:\Users\Default.migrated 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\winrm 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\WCN 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\slmgr 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Printing_Admin_Scripts 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\WinStore 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\spool 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\MUI 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\IME 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\de-DE 2014-05-20 20:24 - 2014-05-20 20:18 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:24 - 2014-03-18 09:45 - 00000000 ____D () C:\Program Files\Windows Journal 2014-05-20 20:24 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\DigitalLocker 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 __SHD () C:\Program Files\Windows Sidebar 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\IME 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-05-20 20:24 - 2012-10-11 19:41 - 00000000 ____D () C:\ProgramData\PRICache 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:22 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\Recovery 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:19 - 2013-08-22 09:23 - 00000084 _____ () C:\WINDOWS\setuperr.log 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:55 - 2013-03-04 01:13 - 01352732 _____ () C:\WINDOWS\WindowsUpdate (1).log 2014-05-20 19:50 - 2012-07-26 08:53 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2014-05-19 22:50 - 2014-05-19 22:50 - 00007109 _____ () C:\malewarw.txt 2014-05-19 22:33 - 2014-05-19 22:33 - 00001071 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-19 22:33 - 2014-05-19 22:32 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 21:47 - 2014-05-19 21:44 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:46 - 2014-05-19 21:44 - 00000000 ____D () C:\Program Files\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:57 - 2014-05-19 19:55 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:47 - 2013-03-04 10:15 - 00055561 _____ () C:\WINDOWS\modules.log 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt 2014-05-06 05:25 - 2014-05-20 23:11 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-06 04:10 - 2014-05-20 23:11 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-04 17:14 - 2014-05-19 19:55 - 90547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-01 22:30 - 2013-08-22 10:18 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-05-01 22:30 - 2013-08-22 10:18 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl Files to move or delete: ==================== C:\ProgramData\Lenovo-23270.vbs Some content of TEMP: ==================== C:\Users\Ariane\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe => MD5 is legit C:\WINDOWS\system32\winlogon.exe => MD5 is legit C:\WINDOWS\system32\wininit.exe => MD5 is legit C:\WINDOWS\system32\svchost.exe => MD5 is legit C:\WINDOWS\system32\services.exe [2014-05-20 21:09] - [2014-05-20 21:09] - 0328984 ____A (Microsoft Corporation) BE8FB66895B5475B09F5907D875CD47D C:\WINDOWS\system32\User32.dll => MD5 is legit C:\WINDOWS\system32\userinit.exe => MD5 is legit C:\WINDOWS\system32\rpcss.dll => MD5 is legit C:\WINDOWS\system32\Drivers\volsnap.sys [2014-05-20 21:09] - [2014-05-20 21:09] - 0264536 ____A (Microsoft Corporation) F4138DC230FC3DFE9E31201561D0491B LastRegBack: 2014-05-20 20:17 ==================== End Of Log ============================ |
28.05.2014, 12:05 | #12 |
/// the machine /// TB-Ausbilder | Maleware zeigt über 20 Bedrohungen an!ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
30.05.2014, 20:31 | #13 |
| Maleware zeigt über 20 Bedrohungen an! Hi Schrauber, danke für die Tipps. Anbei die Logs: Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7587 # api_version=3.0.2 # EOSSerial=2da95d7cb5bbfa48b4544f11bb1d597f # engine=18480 # end=finished # remove_checked=false # archives_checked=false # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2014-05-30 07:04:27 # local_time=2014-05-30 09:04:27 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 113081 2575620 0 0 # scanned=92876 # found=0 # cleaned=0 # scan_time=3865 Code:
ATTFilter Results of screen317's Security Check version 0.99.83 x86 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Defender WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Google Chrome 34.0.1847.137 Google Chrome 35.0.1916.114 ````````Process Check: objlist.exe by Laurent```````` Windows Defender MSMpEng.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C:: ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:30-05-2014 Ran by Ariane (administrator) on LENOVO-PC on 30-05-2014 21:26:53 Running from C:\Users\Ariane\Downloads Platform: Microsoft Windows 8.1 Pro (X86) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Lenovo.) C:\Windows\System32\ibmpmsvc.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\WTabletServiceISD.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe (Intel Corporation) C:\Windows\System32\DptfParticipantDisplayService.exe (Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe (Lenovo Group Limited) C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\SystemAgent\SystemAgentService.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\CamMute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe (Nitro PDF Software) C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe (Nalpeiron Ltd.) C:\Windows\System32\NLSSRV32.EXE (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe (Wistron Corp.) C:\Program Files\DPR\WisLMSvc.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\QuickSnipService\QuickSnipService.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe () C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe (Lenovo) C:\Program Files\Lenovo\QuickSnipService\QuickSnipInput.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe (PARTRON) C:\Program Files\TrackPoint\TrackPointApp.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\ISD_TabletUser.exe () C:\Program Files\Lenovo\LocationAware\lpdagent.exe (Wacom Technology) C:\Program Files\Tablet\ISD\WacomHost.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x86__8wekyb3d8bbwe\livecomm.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\ISD_Tablet.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Microsoft Corporation) C:\Windows\System32\RuntimeBroker.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\extapsup.exe (Wistron Corp.) C:\Program Files\DPR\DPR.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe (Primax Electronics Ltd.) C:\Windows\System32\ico.exe () C:\Windows\System32\FSRremoS.EXE (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Primax Electronics Ltd.) C:\Windows\System32\PELMICED.EXE (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTStackServer.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe () C:\Program Files\Lenovo\System Update\SUService.exe (Lenovo) C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe () C:\Users\Ariane\Downloads\SecurityCheck.exe (Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [LenovoOptMouseUpdate] => C:\Program Files\Lenovo\HOTKEY\extapsup.exe [244728 2013-06-20] (Lenovo Group Limited) HKLM\...\Run: [{E13C0407-3243-448C-BF1D-DC7C7E02C358}] => C:\Program Files\DPR\DPR.exe [409352 2013-10-30] (Wistron Corp.) HKLM\...\Run: [RtkNGUI] => C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe [2646016 2013-04-25] (Realtek Semiconductor) HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [937976 2013-09-11] (Lenovo) HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\LibStartStub.dll [74288 2014-03-04] (Lenovo Corporation) HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [65536 2013-09-10] (Intel Corporation) HKLM\...\Run: [Mouse Suite 98 Daemon] => C:\WINDOWS\system32\ICO.EXE [57344 2004-07-14] (Primax Electronics Ltd.) HKU\S-1-5-21-514152167-946714269-2836888378-1001\...\Run: [GoogleChromeAutoLaunch_26D5B9356F0B1AFCAD759453B0B4C2ED] => C:\Program Files\Google\Chrome\Application\chrome.exe [860488 2014-05-14] (Google Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13-comm.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS SearchScopes: HKCU - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF Plugin: @nitropdf.com/NitroPDF - C:\Program Files\Nitro\Pro 8\npnitromozilla.dll (Nitro PDF) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) Chrome: ======= CHR HomePage: CHR StartupUrls: "", "hxxp://www.google.de/", "hxxp://speedial.com/?f=1&a=spd_dsites02_14_19_ch&cd=2XzuyEtN2Y1L1Qzu0FyC0ByB0EtBzy0F0CzytB0BtBtA0CtDtN0D0Tzu0SzzyCtCtN1L2XzutBtFtBtDtFzytFtCtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StA0E0E0FyD0E0AzztG0CzyzzyBtG0Bzy0ByBtGtAtDzy0FtGyB0D0EyCzyyC0EyCzyyDtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0CyEtDtCyCzytCtGyD0A0EyBtGyDtB0C0EtG0DtB0C0FtGtD0FyE0D0EyC0B0FyD0BtDtD2Q&cr=2020589313&ir=", "hxxp://istart.webssearches.com/?type=hp&ts=1399742337&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399742997&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743112&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743250&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399744726&from=tugs&uid=3219782655_198225_30DD23C0" CHR Extension: (Koji NISHIDA) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\acganlmcjehnfmehkmlimgkaloifodlf [2014-05-19] CHR Extension: (Google Docs) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-19] CHR Extension: (Google Drive) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-19] CHR Extension: (YouTube) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-19] CHR Extension: (Google Cast) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2014-05-19] CHR Extension: (Google-Suche) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-19] CHR Extension: (Gmail offline) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2014-05-19] CHR Extension: (Google Kalender) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-05-19] CHR Extension: (Google Kalender (von Google)) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2014-05-19] CHR Extension: (LastPass: Free Password Manager) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2014-05-19] CHR Extension: (Google Play Music) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2014-05-19] CHR Extension: (Google Mail-Checker) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-05-19] CHR Extension: (Google Wallet) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-19] CHR Extension: (Google Chrome to Phone Extension) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco [2014-05-19] CHR Extension: (Google Mail) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-19] ========================== Services (Whitelisted) ================= S3 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [573488 2014-03-04] (Lenovo Corporation) R2 DptfParticipantDisplayService; C:\WINDOWS\system32\DptfParticipantDisplayService.exe [97792 2013-09-10] (Intel Corporation) R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [69632 2013-09-10] (Intel Corporation) R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [56832 2013-09-10] (Intel Corporation) S2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [75776 2013-09-10] (Intel Corporation) R2 Lenovo QuickSnip Service; C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe [204176 2012-10-08] (LENOVO INCORPORATED.) R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2085184 2014-03-10] (Lenovo Group Limited) R2 Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [549776 2012-11-10] (LENOVO INCORPORATED.) R2 LENOVO.CAMMUTE; C:\Program Files\Lenovo\Communications Utility\CamMute.exe [512048 2014-03-04] (Lenovo Corporation) R2 LENOVO.MICMUTE; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [110128 2014-04-07] (Lenovo Group Limited) R2 LENOVO.TPKNRSVC; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [527920 2014-03-04] (Lenovo Group Limited) R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [702512 2014-03-04] (Lenovo Corporation) R2 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [467960 2013-09-11] (Lenovo) R2 LocationTaskManager; C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe [468288 2013-12-11] () R2 NitroDriverReadSpool8; C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe [196616 2012-11-18] (Nitro PDF Software) S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [105472 2013-08-22] (Microsoft Corporation) R3 SUService; C:\Program Files\Lenovo\System Update\SUService.exe [24120 2014-02-21] () R2 TPHKLOAD; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [115248 2014-04-01] (Lenovo Group Limited) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [279784 2014-05-20] (Microsoft Corporation) S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2013-08-22] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22224 2014-05-20] (Microsoft Corporation) R2 WisLMSvc; C:\Program Files\DPR\WisLMSvc.exe [119608 2013-10-30] (Wistron Corp.) S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1210368 2014-05-20] (Microsoft Corporation) R2 WTabletServiceISD; C:\Program Files\Tablet\ISD\WTabletServiceISD.exe [500024 2013-11-06] (Wacom Technology, Corp.) ==================== Drivers (Whitelisted) ==================== R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-03-18] (Microsoft Corporation) R3 BcmGnssBus; C:\WINDOWS\System32\drivers\BcmGnssBus.sys [77384 2012-10-29] (Broadcom Corporation) R3 BcmNfcIc; C:\WINDOWS\System32\drivers\BcmNfcIc.sys [65816 2013-03-04] (Broadcom Corporation.) R3 BCMSDH43XX; C:\WINDOWS\system32\DRIVERS\bcmdhd63.sys [858904 2012-10-19] (Broadcom) R3 BthLEEnum; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [186880 2014-03-18] (Microsoft Corporation) R3 BthMini; C:\WINDOWS\System32\Drivers\BTHMINI.sys [24064 2013-08-22] (Microsoft Corporation) S3 btwampfl; C:\WINDOWS\System32\drivers\btwampfl.sys [140152 2013-03-04] (Broadcom Corporation.) R3 BtwSerialBus; C:\WINDOWS\System32\drivers\BtwSerialBus.sys [114968 2013-03-04] (Broadcom Corporation.) R3 camera; C:\WINDOWS\system32\DRIVERS\camera.sys [207872 2013-09-10] (Intel Corporation) R0 ChaabiDriver; C:\WINDOWS\System32\drivers\ChaabiDriver.sys [74256 2013-09-10] (Intel Corporation) R0 clvpep; C:\WINDOWS\System32\drivers\clvpep.sys [81648 2012-10-24] (Intel Corporation) R3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [44256 2013-09-10] (Intel Corporation) R3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [49888 2013-09-10] (Intel Corporation) R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [69344 2013-09-10] (Intel Corporation) R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [163552 2013-09-10] (Intel Corporation) S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation) R3 GPIOCLV; C:\WINDOWS\System32\drivers\GPIOCLV.sys [22016 2013-09-10] (Intel Corporation) R3 GpioVirtual; C:\WINDOWS\System32\drivers\GpioVirtual.sys [11264 2013-09-10] (Windows (R) Win 7 DDK provider) R3 igdperf32; C:\WINDOWS\system32\DRIVERS\igdperf32.sys [4096 2013-11-14] () R0 inteli2c; C:\WINDOWS\System32\drivers\inteli2c.sys [48880 2013-09-10] (Intel Corporation) R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [237056 2013-04-10] (Intel(R) Corporation) R0 Lm3554; C:\WINDOWS\System32\drivers\lm3554.sys [34816 2013-09-10] (Intel Corporation) R0 LNWIPC; C:\WINDOWS\System32\drivers\LNWIPC.sys [25840 2013-09-10] (Intel Corporation) R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [16112 2013-09-10] (Intel Corporation) R3 MbmLowExt; C:\WINDOWS\System32\Drivers\MbmLowExt.sys [29696 2012-12-07] (Ericsson AB) R3 MbmUsbSerial; C:\WINDOWS\System32\Drivers\MbmUsbSerial.sys [62464 2012-07-03] (Ericsson AB) R3 MkBusFilter; C:\WINDOWS\System32\drivers\MbmDeviceFilter.sys [35080 2012-12-05] (Ericsson AB) R3 MSICReg; C:\WINDOWS\System32\drivers\MSICReg.sys [17408 2013-09-10] (Intel Corporation) R3 mxtBootBridge; C:\WINDOWS\System32\drivers\mxtBootBridge.sys [25088 2012-09-11] (Windows (R) Win 7 DDK provider) R3 ov2720; C:\WINDOWS\System32\drivers\ov2720.sys [46592 2013-09-10] (Intel Corporation) R3 ov8830; C:\WINDOWS\System32\drivers\ov8830.sys [63488 2013-09-10] (Intel Corporation) R3 pelmouse; C:\WINDOWS\system32\DRIVERS\pelmouse.sys [16384 2003-01-10] (Primax Electronics Ltd.) R3 pelusblf; C:\WINDOWS\system32\DRIVERS\pelusblf.sys [9216 2003-02-11] (Primax Electronics Ltd.) R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [138312 2013-05-06] (Realtek Semiconductor Corp.) R3 SensorsHIDClassDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 spi; C:\WINDOWS\System32\drivers\spi.sys [46592 2013-09-10] (Intel Corporation) R3 Uart16550pc; C:\WINDOWS\System32\drivers\Uart16550pc.sys [40960 2013-09-10] (Intel Corporation) R3 WacHidRouter; C:\WINDOWS\System32\drivers\wachidrouter.sys [76600 2013-11-01] (Wacom Technology) R3 wacomrouterfilter; C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [13112 2013-11-01] (Wacom Technology) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [92504 2014-05-20] (Microsoft Corporation) R3 wmbclass; C:\WINDOWS\system32\DRIVERS\wmbclass.sys [224256 2014-03-18] (Microsoft Corporation) R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-05-20] (Microsoft Corporation) R3 WUDFSensorLP; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-30 21:26 - 2014-05-30 21:27 - 00018485 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-05-30 21:26 - 2014-05-30 21:26 - 01056256 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-05-30 21:26 - 2014-05-30 21:26 - 00000000 ____D () C:\FRST 2014-05-30 21:20 - 2014-05-30 21:20 - 00854367 _____ () C:\Users\Ariane\Downloads\SecurityCheck.exe 2014-05-30 19:54 - 2014-05-30 19:54 - 02347384 _____ (ESET) C:\Users\Ariane\Downloads\esetsmartinstaller_deu.exe 2014-05-27 19:30 - 2014-05-27 19:30 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-05-27 19:24 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\system32\sqlite3.dll 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\WTablet 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Program Files\Tablet 2014-05-26 22:04 - 2013-11-06 14:50 - 01604408 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\ISD_Tablet.dll 2014-05-26 22:04 - 2013-11-06 14:50 - 01597240 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\ISD_Touch_Tablet.dll 2014-05-26 22:04 - 2013-11-06 14:50 - 01483064 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\Wintab32.dll 2014-05-26 22:04 - 2013-11-01 10:41 - 00076600 _____ (Wacom Technology) C:\WINDOWS\system32\Drivers\wachidrouter.sys 2014-05-26 22:04 - 2013-11-01 10:41 - 00013112 _____ (Wacom Technology) C:\WINDOWS\system32\Drivers\wacomrouterfilter.sys 2014-05-26 22:04 - 2012-04-11 14:34 - 01461992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wdfcoinstaller01009.dll 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieUserList 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieSiteList 2014-05-23 17:52 - 2014-05-23 17:54 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-22 19:20 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ico.exe 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 17:57 - 2006-01-16 14:40 - 00073728 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELHOOKS.DLL 2014-05-21 17:57 - 2005-12-30 13:36 - 00126976 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELSCRLL.DLL 2014-05-21 17:57 - 2005-11-25 20:06 - 00229376 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINST.EXE 2014-05-21 17:57 - 2005-09-12 22:22 - 00135168 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELMICED.EXE 2014-05-21 17:57 - 2005-05-20 16:15 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELPPM.DLL 2014-05-21 17:57 - 2005-01-27 11:29 - 00282624 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELWHEEL.DLL 2014-05-21 17:57 - 2005-01-27 10:31 - 00458126 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELBDO.DLL 2014-05-21 17:57 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ICONSPY.EXE 2014-05-21 17:57 - 2004-03-26 14:17 - 00036864 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINNT.EXE 2014-05-21 17:57 - 2004-02-20 10:43 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELUTIL.DLL 2014-05-21 17:57 - 2004-02-20 10:37 - 00049152 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELCOMM.DLL 2014-05-21 17:57 - 2003-11-06 15:51 - 00020480 _____ () C:\WINDOWS\system32\FSRremoS.EXE 2014-05-21 17:57 - 2003-10-28 21:46 - 00024576 _____ () C:\WINDOWS\system32\FSRremoC.DLL 2014-05-21 17:57 - 2003-05-21 13:11 - 00090112 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELZOOM.DLL 2014-05-21 17:57 - 2003-02-11 13:25 - 00009216 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\pelusblf.sys 2014-05-21 17:57 - 2003-01-10 13:55 - 00016384 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\PELMOUSE.SYS 2014-05-21 17:57 - 2001-11-15 17:03 - 00024576 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Pelsetup.dll 2014-05-21 17:57 - 2001-10-04 17:34 - 00019456 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMO32R.DLL 2014-05-21 17:57 - 2001-08-07 17:23 - 00045056 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELRESS.DLL 2014-05-21 17:57 - 2001-07-04 17:46 - 00439003 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMBDO.DLL 2014-05-21 17:57 - 2000-10-13 10:07 - 00075776 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMILG.DLL 2014-05-21 17:57 - 1999-11-19 15:20 - 00065536 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMIBM.DLL 2014-05-21 17:57 - 1999-07-12 16:12 - 00061952 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMRESHP.DLL 2014-05-21 06:56 - 2014-04-08 20:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll 2014-05-21 06:56 - 2014-04-08 20:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:34 - 2013-05-06 19:54 - 00138312 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\rtii2sac.sys 2014-05-20 23:34 - 2013-04-10 15:51 - 00640436 _____ () C:\WINDOWS\system32\Drivers\realtek_fw_sst.bin 2014-05-20 23:34 - 2013-04-10 15:51 - 00237056 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\isstrtc.sys 2014-05-20 23:34 - 2013-04-10 15:51 - 00000166 _____ () C:\WINDOWS\system32\Drivers\RTKIDSPEXT3.DAT 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:30 - 2014-05-21 18:04 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-20 23:28 - 2013-12-17 18:00 - 00056664 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmsvc.exe 2014-05-20 23:28 - 2013-12-17 18:00 - 00036696 _____ (Lenovo.) C:\WINDOWS\system32\tpinspm.dll 2014-05-20 23:28 - 2013-12-17 17:59 - 00060760 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmctl.exe 2014-05-20 23:28 - 2013-12-17 17:59 - 00045880 _____ (Lenovo.) C:\WINDOWS\system32\Drivers\ibmpmdrv.sys 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2013-11-14 16:45 - 09083392 _____ (Intel Corporation) C:\WINDOWS\system32\igfxress.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 02966016 _____ (Intel Corporation) C:\WINDOWS\system32\igdogl32.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 01584128 _____ (Intel Corporation) C:\WINDOWS\system32\GfxRes.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 01012736 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd32.sys 2014-05-20 23:25 - 2013-11-14 16:45 - 00722432 _____ (Intel Corporation) C:\WINDOWS\system32\IntelInvokePanel.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00498176 _____ (Intel Corporation) C:\WINDOWS\system32\igfxresn.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00498176 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrell.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497664 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrus.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497664 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfra.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrom.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptg.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrplk.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnld.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrita.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcsy.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsve.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsky.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhun.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhrv.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfin.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtrk.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrslv.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptb.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnor.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00495616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtha.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00495616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrdan.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00494592 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrheb.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00494592 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrara.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00491520 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrjpn.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00489984 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrkor.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00488960 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcht.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00488448 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrchs.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00406528 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igddim32.sys 2014-05-20 23:25 - 2013-11-14 16:45 - 00378880 _____ (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00344576 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrenu.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00309248 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpph.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00301056 _____ (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00291328 _____ (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00288768 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00265728 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00229888 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcpl.cpl 2014-05-20 23:25 - 2013-11-14 16:45 - 00209920 _____ (Intel Corporation) C:\WINDOWS\system32\gfxSrvcWin8.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00092160 _____ () C:\WINDOWS\system32\pvrscopeservices.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00009216 _____ ( ) C:\WINDOWS\system32\IGFXDEVLib.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00008700 _____ () C:\WINDOWS\system32\igddim32.vp 2014-05-20 23:25 - 2013-11-14 16:45 - 00004096 _____ () C:\WINDOWS\system32\Drivers\igdperf32.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00745472 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCameraPlugin.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00207872 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\camera.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00163552 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfManager.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00116736 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV2720_11P2SF211.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00109568 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSocYuvCopy.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00107520 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV8830_11P2BA849.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00101888 _____ (Intel(R) Corporation) C:\WINDOWS\system32\hsmon.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00097792 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantDisplayService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00075776 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00074256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ChaabiDriver.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00069632 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantProcessorService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00069344 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevProc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00065536 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00063488 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov8830.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00056832 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyCriticalService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00049888 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevGen.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00048880 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\inteli2c.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\spi.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov2720.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00044256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevDisplay.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00040960 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Uart16550pc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00034816 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\lm3554.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00025840 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\LNWIPC.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00022016 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\GPIOCLV.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00017408 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MSICReg.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00016112 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MBI.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00011264 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\GpioVirtual.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Video_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Primary_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005823 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00002056 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00001980 _____ () C:\WINDOWS\system32\Video_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:11 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-20 23:11 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:59 - 2014-05-30 21:18 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:16 - 2014-05-23 18:00 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 21:04 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2014-05-20 20:31 - 2014-05-30 21:03 - 01122867 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:21 - 2014-05-30 21:27 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Temp 2014-05-20 20:21 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:24 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:31 - 2014-05-20 20:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-19 22:34 - 2014-05-27 19:53 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-19 22:33 - 2014-05-20 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-19 22:33 - 2014-05-19 22:33 - 00001071 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-19 22:32 - 2014-05-19 22:33 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:32 - 2014-04-03 09:51 - 00073432 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-05-19 22:32 - 2014-04-03 09:51 - 00051416 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2014-05-19 22:32 - 2014-04-03 09:50 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 22:26 - 2014-05-23 18:00 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-19 22:21 - 2014-03-04 12:50 - 00067120 _____ (Lenovo Corporation) C:\WINDOWS\system32\LibDriverMftStart.dll 2014-05-19 22:17 - 2013-12-24 10:22 - 02038832 _____ (Lenovo Group Limited) C:\WINDOWS\system32\SettingsDriverHelper.dll 2014-05-19 22:16 - 2012-11-26 15:34 - 02146160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WudfUpdate_01011.dll 2014-05-19 21:47 - 2014-05-30 21:18 - 00002152 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-19 21:47 - 2014-05-20 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-19 21:44 - 2014-05-30 21:18 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-19 21:44 - 2014-05-30 20:51 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-19 21:44 - 2014-05-19 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:44 - 2014-05-19 21:46 - 00000000 ____D () C:\Program Files\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:55 - 2014-05-19 19:57 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-19 19:55 - 2014-05-04 17:14 - 90547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-18 22:06 - 2014-01-19 09:32 - 00231584 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-05-30 21:18 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:45 - 2013-05-04 06:10 - 00014848 ____N (Microsoft) C:\WINDOWS\system32\rars.rs 2014-05-18 21:45 - 2012-07-30 21:00 - 00002122 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo QuickSnip Toasts.lnk 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt ==================== One Month Modified Files and Folders ======= 2014-05-30 21:27 - 2014-05-30 21:26 - 00018485 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-05-30 21:27 - 2014-05-20 20:21 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Temp 2014-05-30 21:26 - 2014-05-30 21:26 - 01056256 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-05-30 21:26 - 2014-05-30 21:26 - 00000000 ____D () C:\FRST 2014-05-30 21:20 - 2014-05-30 21:20 - 00854367 _____ () C:\Users\Ariane\Downloads\SecurityCheck.exe 2014-05-30 21:20 - 2014-03-18 10:04 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-05-30 21:18 - 2014-05-20 22:59 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-05-30 21:18 - 2014-05-19 21:47 - 00002152 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-30 21:18 - 2014-05-19 21:44 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-30 21:18 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-05-30 21:15 - 2013-08-22 09:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-05-30 21:15 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-05-30 21:03 - 2014-05-20 20:31 - 01122867 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-30 21:00 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-05-30 20:53 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\rescache 2014-05-30 20:51 - 2014-05-19 21:44 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-30 20:18 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-05-30 20:03 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-05-30 19:54 - 2014-05-30 19:54 - 02347384 _____ (ESET) C:\Users\Ariane\Downloads\esetsmartinstaller_deu.exe 2014-05-27 19:53 - 2014-05-19 22:34 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-27 19:30 - 2014-05-27 19:30 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-05-27 19:26 - 2014-03-18 01:54 - 00002938 _____ () C:\WINDOWS\PFRO.log 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\WTablet 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Program Files\Tablet 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieUserList 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieSiteList 2014-05-23 18:00 - 2014-05-20 21:16 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-23 18:00 - 2014-05-19 22:26 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-23 17:54 - 2014-05-23 17:52 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-23 17:52 - 2012-07-26 08:43 - 00000000 ____D () C:\WINDOWS\CbsTemp 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 18:04 - 2014-05-20 23:30 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-21 18:04 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Help 2014-05-21 18:04 - 2013-03-04 01:07 - 00000000 ___HD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools 2014-05-21 18:04 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Lenovo 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:35 - 2013-08-22 09:23 - 00289077 _____ () C:\WINDOWS\setupact.log 2014-05-20 23:35 - 2013-03-04 00:48 - 00002265 _____ () C:\RtkI2SSetup.log 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:33 - 2013-03-04 00:48 - 00000000 ____D () C:\Program Files\DPR 2014-05-20 23:33 - 2013-03-03 17:14 - 00000000 ____D () C:\ProgramData\lenovo 2014-05-20 23:30 - 2013-03-04 01:11 - 00000000 ____D () C:\WINDOWS\Downloaded Installations 2014-05-20 23:28 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\restore 2014-05-20 23:28 - 2013-03-04 00:48 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2014-05-20 20:21 - 00000000 ____D () C:\Users\Ariane 2014-05-20 23:25 - 2013-03-04 00:51 - 00000000 ____D () C:\Program Files\Intel 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:24 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Common Files\Lenovo 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:07 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\LogFiles 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:15 - 2013-08-22 10:17 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows Defender 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:10 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Drivers\de-DE 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:31 - 2014-05-20 19:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Registration 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows NT 2014-05-20 20:31 - 2013-08-22 08:21 - 00000000 __RHD () C:\Users\Default 2014-05-20 20:31 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RSD () C:\WINDOWS\Media 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RHD () C:\Users\Public\Libraries 2014-05-20 20:29 - 2013-08-22 08:21 - 00000000 ___RD () C:\Users\Public 2014-05-20 20:27 - 2013-08-22 09:22 - 00333576 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-05-20 20:26 - 2014-05-19 22:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-20 20:26 - 2014-05-19 21:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-20 20:26 - 2013-08-22 10:18 - 00004893 _____ () C:\WINDOWS\DtcInstall.log 2014-05-20 20:26 - 2013-03-04 01:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel AppUp(SM) center 2014-05-20 20:26 - 2012-07-26 06:43 - 00000000 ____D () C:\Users\Default.migrated 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\winrm 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\WCN 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\slmgr 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Printing_Admin_Scripts 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\WinStore 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\spool 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\MUI 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\IME 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\de-DE 2014-05-20 20:24 - 2014-05-20 20:18 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:24 - 2014-03-18 09:45 - 00000000 ____D () C:\Program Files\Windows Journal 2014-05-20 20:24 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\DigitalLocker 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 __SHD () C:\Program Files\Windows Sidebar 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\IME 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-05-20 20:24 - 2012-10-11 19:41 - 00000000 ____D () C:\ProgramData\PRICache 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:22 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\Recovery 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:19 - 2013-08-22 09:23 - 00000084 _____ () C:\WINDOWS\setuperr.log 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:55 - 2013-03-04 01:13 - 01352732 _____ () C:\WINDOWS\WindowsUpdate (1).log 2014-05-20 19:50 - 2012-07-26 08:53 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2014-05-19 22:33 - 2014-05-19 22:33 - 00001071 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-19 22:33 - 2014-05-19 22:32 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 21:47 - 2014-05-19 21:44 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:46 - 2014-05-19 21:44 - 00000000 ____D () C:\Program Files\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:57 - 2014-05-19 19:55 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:47 - 2013-03-04 10:15 - 00055561 _____ () C:\WINDOWS\modules.log 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt 2014-05-06 05:25 - 2014-05-20 23:11 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-06 04:10 - 2014-05-20 23:11 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-04 17:14 - 2014-05-19 19:55 - 90547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-01 22:30 - 2013-08-22 10:18 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-05-01 22:30 - 2013-08-22 10:18 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl Files to move or delete: ==================== C:\ProgramData\Lenovo-23270.vbs Some content of TEMP: ==================== C:\Users\Ariane\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe => MD5 is legit C:\WINDOWS\system32\winlogon.exe => MD5 is legit C:\WINDOWS\system32\wininit.exe => MD5 is legit C:\WINDOWS\system32\svchost.exe => MD5 is legit C:\WINDOWS\system32\services.exe [2014-05-20 21:09] - [2014-05-20 21:09] - 0328984 ____A (Microsoft Corporation) BE8FB66895B5475B09F5907D875CD47D C:\WINDOWS\system32\User32.dll => MD5 is legit C:\WINDOWS\system32\userinit.exe => MD5 is legit C:\WINDOWS\system32\rpcss.dll => MD5 is legit C:\WINDOWS\system32\Drivers\volsnap.sys [2014-05-20 21:09] - [2014-05-20 21:09] - 0264536 ____A (Microsoft Corporation) F4138DC230FC3DFE9E31201561D0491B LastRegBack: 2014-05-30 20:18 ==================== End Of Log ============================ --- --- --- |
30.05.2014, 21:00 | #14 |
| Maleware zeigt über 20 Bedrohungen an! und hier noch der FRST log FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:30-05-2014 Ran by Ariane (administrator) on LENOVO-PC on 30-05-2014 21:26:53 Running from C:\Users\Ariane\Downloads Platform: Microsoft Windows 8.1 Pro (X86) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Lenovo.) C:\Windows\System32\ibmpmsvc.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\WTabletServiceISD.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe (Intel Corporation) C:\Windows\System32\DptfParticipantDisplayService.exe (Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe (Lenovo Group Limited) C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\SystemAgent\SystemAgentService.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\CamMute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe (Nitro PDF Software) C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe (Nalpeiron Ltd.) C:\Windows\System32\NLSSRV32.EXE (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe (Wistron Corp.) C:\Program Files\DPR\WisLMSvc.exe (Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\QuickSnipService\QuickSnipService.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe () C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe (Lenovo) C:\Program Files\Lenovo\QuickSnipService\QuickSnipInput.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tposd.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe (PARTRON) C:\Program Files\TrackPoint\TrackPointApp.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\ISD_TabletUser.exe () C:\Program Files\Lenovo\LocationAware\lpdagent.exe (Wacom Technology) C:\Program Files\Tablet\ISD\WacomHost.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20498_x86__8wekyb3d8bbwe\livecomm.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\ISD\ISD_Tablet.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Microsoft Corporation) C:\Windows\System32\RuntimeBroker.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\extapsup.exe (Wistron Corp.) C:\Program Files\DPR\DPR.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe (Primax Electronics Ltd.) C:\Windows\System32\ico.exe () C:\Windows\System32\FSRremoS.EXE (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Primax Electronics Ltd.) C:\Windows\System32\PELMICED.EXE (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTStackServer.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe (Lenovo Corporation) C:\Program Files\Lenovo\Communications Utility\vcamsvchlpr.exe () C:\Program Files\Lenovo\System Update\SUService.exe (Lenovo) C:\Program Files\ThinkPad\Utilities\PWMDBSVC.exe () C:\Users\Ariane\Downloads\SecurityCheck.exe (Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [LenovoOptMouseUpdate] => C:\Program Files\Lenovo\HOTKEY\extapsup.exe [244728 2013-06-20] (Lenovo Group Limited) HKLM\...\Run: [{E13C0407-3243-448C-BF1D-DC7C7E02C358}] => C:\Program Files\DPR\DPR.exe [409352 2013-10-30] (Wistron Corp.) HKLM\...\Run: [RtkNGUI] => C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe [2646016 2013-04-25] (Realtek Semiconductor) HKLM\...\Run: [LnvMobHotspotClient] => C:\Program Files\Lenovo\Lenovo Mobile Hotspot\MobileHotspotclient.exe [937976 2013-09-11] (Lenovo) HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\LibStartStub.dll [74288 2014-03-04] (Lenovo Corporation) HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [65536 2013-09-10] (Intel Corporation) HKLM\...\Run: [Mouse Suite 98 Daemon] => C:\WINDOWS\system32\ICO.EXE [57344 2004-07-14] (Primax Electronics Ltd.) HKU\S-1-5-21-514152167-946714269-2836888378-1001\...\Run: [GoogleChromeAutoLaunch_26D5B9356F0B1AFCAD759453B0B4C2ED] => C:\Program Files\Google\Chrome\Application\chrome.exe [860488 2014-05-14] (Google Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13-comm.msn.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MALCJS SearchScopes: HKCU - {5CA3E323-C3FA-4856-AC0B-61117E090EDC} URL = Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF Plugin: @nitropdf.com/NitroPDF - C:\Program Files\Nitro\Pro 8\npnitromozilla.dll (Nitro PDF) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) Chrome: ======= CHR HomePage: CHR StartupUrls: "", "hxxp://www.google.de/", "hxxp://speedial.com/?f=1&a=spd_dsites02_14_19_ch&cd=2XzuyEtN2Y1L1Qzu0FyC0ByB0EtBzy0F0CzytB0BtBtA0CtDtN0D0Tzu0SzzyCtCtN1L2XzutBtFtBtDtFzytFtCtN1L1CzutCyEtDtAtDyD1V1TtN1L1G1B1V1N2Y1L1Qzu2StA0E0E0FyD0E0AzztG0CzyzzyBtG0Bzy0ByBtGtAtDzy0FtGyB0D0EyCzyyC0EyCzyyDtD0F2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0CyEtDtCyCzytCtGyD0A0EyBtGyDtB0C0EtG0DtB0C0FtGtD0FyE0D0EyC0B0FyD0BtDtD2Q&cr=2020589313&ir=", "hxxp://istart.webssearches.com/?type=hp&ts=1399742337&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399742997&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743112&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399743250&from=tugs&uid=3219782655_198225_30DD23C0", "hxxp://istart.webssearches.com/?type=hppp&ts=1399744726&from=tugs&uid=3219782655_198225_30DD23C0" CHR Extension: (Koji NISHIDA) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\acganlmcjehnfmehkmlimgkaloifodlf [2014-05-19] CHR Extension: (Google Docs) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-05-19] CHR Extension: (Google Drive) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-05-19] CHR Extension: (YouTube) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-05-19] CHR Extension: (Google Cast) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2014-05-19] CHR Extension: (Google-Suche) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-05-19] CHR Extension: (Gmail offline) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2014-05-19] CHR Extension: (Google Kalender) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2014-05-19] CHR Extension: (Google Kalender (von Google)) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2014-05-19] CHR Extension: (LastPass: Free Password Manager) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2014-05-19] CHR Extension: (Google Play Music) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2014-05-19] CHR Extension: (Google Mail-Checker) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-05-19] CHR Extension: (Google Wallet) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-05-19] CHR Extension: (Google Chrome to Phone Extension) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\oadboiipflhobonjjffjbfekfjcgkhco [2014-05-19] CHR Extension: (Google Mail) - C:\Users\Ariane\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-05-19] ========================== Services (Whitelisted) ================= S3 AVControlCenter; C:\Program Files\Lenovo\Communications Utility\AVControlCenter32.exe [573488 2014-03-04] (Lenovo Corporation) R2 DptfParticipantDisplayService; C:\WINDOWS\system32\DptfParticipantDisplayService.exe [97792 2013-09-10] (Intel Corporation) R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [69632 2013-09-10] (Intel Corporation) R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [56832 2013-09-10] (Intel Corporation) S2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [75776 2013-09-10] (Intel Corporation) R2 Lenovo QuickSnip Service; C:\Program Files\lenovo\QuickSnipService\QuickSnipService.exe [204176 2012-10-08] (LENOVO INCORPORATED.) R2 Lenovo Settings Service; C:\Program Files\Lenovo\SettingsDependency\SettingsService.exe [2085184 2014-03-10] (Lenovo Group Limited) R2 Lenovo System Agent Service; C:\Program Files\lenovo\SystemAgent\SystemAgentService.exe [549776 2012-11-10] (LENOVO INCORPORATED.) R2 LENOVO.CAMMUTE; C:\Program Files\Lenovo\Communications Utility\CamMute.exe [512048 2014-03-04] (Lenovo Corporation) R2 LENOVO.MICMUTE; C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe [110128 2014-04-07] (Lenovo Group Limited) R2 LENOVO.TPKNRSVC; C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe [527920 2014-03-04] (Lenovo Group Limited) R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [702512 2014-03-04] (Lenovo Corporation) R2 LnvHotSpotSvc; C:\Program Files\Lenovo\Lenovo Mobile Hotspot\LnvHotSpotSvc.exe [467960 2013-09-11] (Lenovo) R2 LocationTaskManager; C:\Program Files\Lenovo\LocationAware\loctaskmgr.exe [468288 2013-12-11] () R2 NitroDriverReadSpool8; C:\Program Files\Nitro\Pro 8\NitroPDFDriverService8.exe [196616 2012-11-18] (Nitro PDF Software) S3 ScDeviceEnum; C:\WINDOWS\System32\ScDeviceEnum.dll [105472 2013-08-22] (Microsoft Corporation) R3 SUService; C:\Program Files\Lenovo\System Update\SUService.exe [24120 2014-02-21] () R2 TPHKLOAD; C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe [115248 2014-04-01] (Lenovo Group Limited) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [279784 2014-05-20] (Microsoft Corporation) S3 WEPHOSTSVC; C:\WINDOWS\system32\wephostsvc.dll [20992 2013-08-22] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [22224 2014-05-20] (Microsoft Corporation) R2 WisLMSvc; C:\Program Files\DPR\WisLMSvc.exe [119608 2013-10-30] (Wistron Corp.) S3 workfolderssvc; C:\WINDOWS\system32\workfolderssvc.dll [1210368 2014-05-20] (Microsoft Corporation) R2 WTabletServiceISD; C:\Program Files\Tablet\ISD\WTabletServiceISD.exe [500024 2013-11-06] (Wacom Technology, Corp.) ==================== Drivers (Whitelisted) ==================== R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [25600 2014-03-18] (Microsoft Corporation) R3 BcmGnssBus; C:\WINDOWS\System32\drivers\BcmGnssBus.sys [77384 2012-10-29] (Broadcom Corporation) R3 BcmNfcIc; C:\WINDOWS\System32\drivers\BcmNfcIc.sys [65816 2013-03-04] (Broadcom Corporation.) R3 BCMSDH43XX; C:\WINDOWS\system32\DRIVERS\bcmdhd63.sys [858904 2012-10-19] (Broadcom) R3 BthLEEnum; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [186880 2014-03-18] (Microsoft Corporation) R3 BthMini; C:\WINDOWS\System32\Drivers\BTHMINI.sys [24064 2013-08-22] (Microsoft Corporation) S3 btwampfl; C:\WINDOWS\System32\drivers\btwampfl.sys [140152 2013-03-04] (Broadcom Corporation.) R3 BtwSerialBus; C:\WINDOWS\System32\drivers\BtwSerialBus.sys [114968 2013-03-04] (Broadcom Corporation.) R3 camera; C:\WINDOWS\system32\DRIVERS\camera.sys [207872 2013-09-10] (Intel Corporation) R0 ChaabiDriver; C:\WINDOWS\System32\drivers\ChaabiDriver.sys [74256 2013-09-10] (Intel Corporation) R0 clvpep; C:\WINDOWS\System32\drivers\clvpep.sys [81648 2012-10-24] (Intel Corporation) R3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [44256 2013-09-10] (Intel Corporation) R3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [49888 2013-09-10] (Intel Corporation) R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [69344 2013-09-10] (Intel Corporation) R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [163552 2013-09-10] (Intel Corporation) S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2013-07-23] (Intel Corporation) R3 GPIOCLV; C:\WINDOWS\System32\drivers\GPIOCLV.sys [22016 2013-09-10] (Intel Corporation) R3 GpioVirtual; C:\WINDOWS\System32\drivers\GpioVirtual.sys [11264 2013-09-10] (Windows (R) Win 7 DDK provider) R3 igdperf32; C:\WINDOWS\system32\DRIVERS\igdperf32.sys [4096 2013-11-14] () R0 inteli2c; C:\WINDOWS\System32\drivers\inteli2c.sys [48880 2013-09-10] (Intel Corporation) R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [237056 2013-04-10] (Intel(R) Corporation) R0 Lm3554; C:\WINDOWS\System32\drivers\lm3554.sys [34816 2013-09-10] (Intel Corporation) R0 LNWIPC; C:\WINDOWS\System32\drivers\LNWIPC.sys [25840 2013-09-10] (Intel Corporation) R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [16112 2013-09-10] (Intel Corporation) R3 MbmLowExt; C:\WINDOWS\System32\Drivers\MbmLowExt.sys [29696 2012-12-07] (Ericsson AB) R3 MbmUsbSerial; C:\WINDOWS\System32\Drivers\MbmUsbSerial.sys [62464 2012-07-03] (Ericsson AB) R3 MkBusFilter; C:\WINDOWS\System32\drivers\MbmDeviceFilter.sys [35080 2012-12-05] (Ericsson AB) R3 MSICReg; C:\WINDOWS\System32\drivers\MSICReg.sys [17408 2013-09-10] (Intel Corporation) R3 mxtBootBridge; C:\WINDOWS\System32\drivers\mxtBootBridge.sys [25088 2012-09-11] (Windows (R) Win 7 DDK provider) R3 ov2720; C:\WINDOWS\System32\drivers\ov2720.sys [46592 2013-09-10] (Intel Corporation) R3 ov8830; C:\WINDOWS\System32\drivers\ov8830.sys [63488 2013-09-10] (Intel Corporation) R3 pelmouse; C:\WINDOWS\system32\DRIVERS\pelmouse.sys [16384 2003-01-10] (Primax Electronics Ltd.) R3 pelusblf; C:\WINDOWS\system32\DRIVERS\pelusblf.sys [9216 2003-02-11] (Primax Electronics Ltd.) R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [138312 2013-05-06] (Realtek Semiconductor Corp.) R3 SensorsHIDClassDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 SensorsServiceDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) R3 spi; C:\WINDOWS\System32\drivers\spi.sys [46592 2013-09-10] (Intel Corporation) R3 Uart16550pc; C:\WINDOWS\System32\drivers\Uart16550pc.sys [40960 2013-09-10] (Intel Corporation) R3 WacHidRouter; C:\WINDOWS\System32\drivers\wachidrouter.sys [76600 2013-11-01] (Wacom Technology) R3 wacomrouterfilter; C:\WINDOWS\System32\drivers\wacomrouterfilter.sys [13112 2013-11-01] (Wacom Technology) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [92504 2014-05-20] (Microsoft Corporation) R3 wmbclass; C:\WINDOWS\system32\DRIVERS\wmbclass.sys [224256 2014-03-18] (Microsoft Corporation) R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [138584 2014-05-20] (Microsoft Corporation) R3 WUDFSensorLP; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [187392 2013-08-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-30 21:26 - 2014-05-30 21:27 - 00018485 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-05-30 21:26 - 2014-05-30 21:26 - 01056256 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-05-30 21:26 - 2014-05-30 21:26 - 00000000 ____D () C:\FRST 2014-05-30 21:20 - 2014-05-30 21:20 - 00854367 _____ () C:\Users\Ariane\Downloads\SecurityCheck.exe 2014-05-30 19:54 - 2014-05-30 19:54 - 02347384 _____ (ESET) C:\Users\Ariane\Downloads\esetsmartinstaller_deu.exe 2014-05-27 19:30 - 2014-05-27 19:30 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-05-27 19:24 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\WINDOWS\system32\sqlite3.dll 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\WTablet 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Program Files\Tablet 2014-05-26 22:04 - 2013-11-06 14:50 - 01604408 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\ISD_Tablet.dll 2014-05-26 22:04 - 2013-11-06 14:50 - 01597240 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\ISD_Touch_Tablet.dll 2014-05-26 22:04 - 2013-11-06 14:50 - 01483064 _____ (Wacom Technology, Corp.) C:\WINDOWS\system32\Wintab32.dll 2014-05-26 22:04 - 2013-11-01 10:41 - 00076600 _____ (Wacom Technology) C:\WINDOWS\system32\Drivers\wachidrouter.sys 2014-05-26 22:04 - 2013-11-01 10:41 - 00013112 _____ (Wacom Technology) C:\WINDOWS\system32\Drivers\wacomrouterfilter.sys 2014-05-26 22:04 - 2012-04-11 14:34 - 01461992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wdfcoinstaller01009.dll 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieUserList 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieSiteList 2014-05-23 17:52 - 2014-05-23 17:54 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-22 19:20 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ico.exe 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 17:57 - 2006-01-16 14:40 - 00073728 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELHOOKS.DLL 2014-05-21 17:57 - 2005-12-30 13:36 - 00126976 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELSCRLL.DLL 2014-05-21 17:57 - 2005-11-25 20:06 - 00229376 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINST.EXE 2014-05-21 17:57 - 2005-09-12 22:22 - 00135168 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELMICED.EXE 2014-05-21 17:57 - 2005-05-20 16:15 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELPPM.DLL 2014-05-21 17:57 - 2005-01-27 11:29 - 00282624 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELWHEEL.DLL 2014-05-21 17:57 - 2005-01-27 10:31 - 00458126 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELBDO.DLL 2014-05-21 17:57 - 2004-07-14 15:36 - 00057344 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\ICONSPY.EXE 2014-05-21 17:57 - 2004-03-26 14:17 - 00036864 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMUNINNT.EXE 2014-05-21 17:57 - 2004-02-20 10:43 - 00217088 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELUTIL.DLL 2014-05-21 17:57 - 2004-02-20 10:37 - 00049152 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELCOMM.DLL 2014-05-21 17:57 - 2003-11-06 15:51 - 00020480 _____ () C:\WINDOWS\system32\FSRremoS.EXE 2014-05-21 17:57 - 2003-10-28 21:46 - 00024576 _____ () C:\WINDOWS\system32\FSRremoC.DLL 2014-05-21 17:57 - 2003-05-21 13:11 - 00090112 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELZOOM.DLL 2014-05-21 17:57 - 2003-02-11 13:25 - 00009216 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\pelusblf.sys 2014-05-21 17:57 - 2003-01-10 13:55 - 00016384 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Drivers\PELMOUSE.SYS 2014-05-21 17:57 - 2001-11-15 17:03 - 00024576 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\Pelsetup.dll 2014-05-21 17:57 - 2001-10-04 17:34 - 00019456 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMO32R.DLL 2014-05-21 17:57 - 2001-08-07 17:23 - 00045056 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PELRESS.DLL 2014-05-21 17:57 - 2001-07-04 17:46 - 00439003 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMBDO.DLL 2014-05-21 17:57 - 2000-10-13 10:07 - 00075776 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMMILG.DLL 2014-05-21 17:57 - 1999-11-19 15:20 - 00065536 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMIBM.DLL 2014-05-21 17:57 - 1999-07-12 16:12 - 00061952 _____ (Primax Electronics Ltd.) C:\WINDOWS\system32\PMRESHP.DLL 2014-05-21 06:56 - 2014-04-08 20:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll 2014-05-21 06:56 - 2014-04-08 20:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:34 - 2013-05-06 19:54 - 00138312 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\rtii2sac.sys 2014-05-20 23:34 - 2013-04-10 15:51 - 00640436 _____ () C:\WINDOWS\system32\Drivers\realtek_fw_sst.bin 2014-05-20 23:34 - 2013-04-10 15:51 - 00237056 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Drivers\isstrtc.sys 2014-05-20 23:34 - 2013-04-10 15:51 - 00000166 _____ () C:\WINDOWS\system32\Drivers\RTKIDSPEXT3.DAT 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:30 - 2014-05-21 18:04 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-20 23:28 - 2013-12-17 18:00 - 00056664 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmsvc.exe 2014-05-20 23:28 - 2013-12-17 18:00 - 00036696 _____ (Lenovo.) C:\WINDOWS\system32\tpinspm.dll 2014-05-20 23:28 - 2013-12-17 17:59 - 00060760 _____ (Lenovo.) C:\WINDOWS\system32\ibmpmctl.exe 2014-05-20 23:28 - 2013-12-17 17:59 - 00045880 _____ (Lenovo.) C:\WINDOWS\system32\Drivers\ibmpmdrv.sys 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2013-11-14 16:45 - 09083392 _____ (Intel Corporation) C:\WINDOWS\system32\igfxress.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 02966016 _____ (Intel Corporation) C:\WINDOWS\system32\igdogl32.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 01584128 _____ (Intel Corporation) C:\WINDOWS\system32\GfxRes.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 01012736 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igdkmd32.sys 2014-05-20 23:25 - 2013-11-14 16:45 - 00722432 _____ (Intel Corporation) C:\WINDOWS\system32\IntelInvokePanel.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00498176 _____ (Intel Corporation) C:\WINDOWS\system32\igfxresn.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00498176 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrell.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497664 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrus.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497664 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfra.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrrom.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptg.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrplk.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnld.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrita.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00497152 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcsy.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsve.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrsky.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhun.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrhrv.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496640 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrfin.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtrk.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrslv.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrptb.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00496128 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrnor.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00495616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrtha.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00495616 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrdan.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00494592 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrheb.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00494592 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrara.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00491520 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrjpn.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00489984 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrkor.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00488960 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrcht.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00488448 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrchs.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00406528 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\igddim32.sys 2014-05-20 23:25 - 2013-11-14 16:45 - 00378880 _____ (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00344576 _____ (Intel Corporation) C:\WINDOWS\system32\igfxrenu.lrc 2014-05-20 23:25 - 2013-11-14 16:45 - 00309248 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpph.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00301056 _____ (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00291328 _____ (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00288768 _____ (Intel Corporation) C:\WINDOWS\system32\igfxext.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00265728 _____ (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe 2014-05-20 23:25 - 2013-11-14 16:45 - 00229888 _____ (Intel Corporation) C:\WINDOWS\system32\igfxcpl.cpl 2014-05-20 23:25 - 2013-11-14 16:45 - 00209920 _____ (Intel Corporation) C:\WINDOWS\system32\gfxSrvcWin8.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00092160 _____ () C:\WINDOWS\system32\pvrscopeservices.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00009216 _____ ( ) C:\WINDOWS\system32\IGFXDEVLib.dll 2014-05-20 23:25 - 2013-11-14 16:45 - 00008700 _____ () C:\WINDOWS\system32\igddim32.vp 2014-05-20 23:25 - 2013-11-14 16:45 - 00004096 _____ () C:\WINDOWS\system32\Drivers\igdperf32.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00745472 _____ (Intel Corporation) C:\WINDOWS\system32\IntelCameraPlugin.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00207872 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\camera.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00163552 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfManager.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00116736 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV2720_11P2SF211.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00109568 _____ (Intel Corporation) C:\WINDOWS\system32\IntelSocYuvCopy.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00107520 _____ (Intel Corporation) C:\WINDOWS\system32\PRMLibraryOV8830_11P2BA849.dll 2014-05-20 23:25 - 2013-09-10 10:13 - 00101888 _____ (Intel(R) Corporation) C:\WINDOWS\system32\hsmon.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00097792 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantDisplayService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00075776 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00074256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ChaabiDriver.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00069632 _____ (Intel Corporation) C:\WINDOWS\system32\DptfParticipantProcessorService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00069344 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevProc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00065536 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00063488 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov8830.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00056832 _____ (Intel Corporation) C:\WINDOWS\system32\DptfPolicyCriticalService.exe 2014-05-20 23:25 - 2013-09-10 10:13 - 00049888 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevGen.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00048880 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\inteli2c.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\spi.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00046592 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ov2720.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00044256 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\DptfDevDisplay.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00040960 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Uart16550pc.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00034816 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\lm3554.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00025840 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\LNWIPC.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00022016 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\GPIOCLV.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00017408 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MSICReg.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00016112 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\MBI.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00011264 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\GpioVirtual.sys 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Video_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005909 _____ () C:\WINDOWS\system32\Primary_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00005823 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV8830_11P2BA849.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00002056 _____ () C:\WINDOWS\system32\Preview_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:25 - 2013-09-10 10:13 - 00001980 _____ () C:\WINDOWS\system32\Video_UserParameter_OV2720_11P2SF211.prm 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:16 - 2013-12-11 18:40 - 00002092 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Update Search.lnk 2014-05-20 23:11 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-20 23:11 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:59 - 2014-05-30 21:18 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:16 - 2014-05-23 18:00 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 21:04 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-05-20 21:04 - 2013-08-03 06:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2014-05-20 20:31 - 2014-05-30 21:03 - 01122867 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:21 - 2014-05-30 21:27 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Temp 2014-05-20 20:21 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:21 - 2014-05-20 20:31 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:21 - 2014-05-20 20:22 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2014-05-20 20:21 - 2014-03-18 10:08 - 00000369 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-05-20 20:21 - 2013-08-22 10:17 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:24 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:31 - 2014-05-20 20:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-19 22:34 - 2014-05-27 19:53 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-19 22:33 - 2014-05-20 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-19 22:33 - 2014-05-19 22:33 - 00001071 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-19 22:32 - 2014-05-19 22:33 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:32 - 2014-04-03 09:51 - 00073432 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-05-19 22:32 - 2014-04-03 09:51 - 00051416 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2014-05-19 22:32 - 2014-04-03 09:50 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 22:26 - 2014-05-23 18:00 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-19 22:21 - 2014-03-04 12:50 - 00067120 _____ (Lenovo Corporation) C:\WINDOWS\system32\LibDriverMftStart.dll 2014-05-19 22:17 - 2013-12-24 10:22 - 02038832 _____ (Lenovo Group Limited) C:\WINDOWS\system32\SettingsDriverHelper.dll 2014-05-19 22:16 - 2012-11-26 15:34 - 02146160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WudfUpdate_01011.dll 2014-05-19 21:47 - 2014-05-30 21:18 - 00002152 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-19 21:47 - 2014-05-20 20:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-19 21:44 - 2014-05-30 21:18 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-19 21:44 - 2014-05-30 20:51 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-19 21:44 - 2014-05-19 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:44 - 2014-05-19 21:46 - 00000000 ____D () C:\Program Files\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:55 - 2014-05-19 19:57 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-19 19:55 - 2014-05-04 17:14 - 90547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-18 22:06 - 2014-01-19 09:32 - 00231584 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-05-30 21:18 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:45 - 2013-05-04 06:10 - 00014848 ____N (Microsoft) C:\WINDOWS\system32\rars.rs 2014-05-18 21:45 - 2012-07-30 21:00 - 00002122 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo QuickSnip Toasts.lnk 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt ==================== One Month Modified Files and Folders ======= 2014-05-30 21:27 - 2014-05-30 21:26 - 00018485 _____ () C:\Users\Ariane\Downloads\FRST.txt 2014-05-30 21:27 - 2014-05-20 20:21 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Temp 2014-05-30 21:26 - 2014-05-30 21:26 - 01056256 _____ (Farbar) C:\Users\Ariane\Downloads\FRST.exe 2014-05-30 21:26 - 2014-05-30 21:26 - 00000000 ____D () C:\FRST 2014-05-30 21:20 - 2014-05-30 21:20 - 00854367 _____ () C:\Users\Ariane\Downloads\SecurityCheck.exe 2014-05-30 21:20 - 2014-03-18 10:04 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-05-30 21:18 - 2014-05-20 22:59 - 00000000 __RDO () C:\Users\Ariane\OneDrive 2014-05-30 21:18 - 2014-05-19 21:47 - 00002152 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-05-30 21:18 - 2014-05-19 21:44 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-05-30 21:18 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Nitro PDF 2014-05-30 21:15 - 2013-08-22 09:23 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-05-30 21:15 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-05-30 21:03 - 2014-05-20 20:31 - 01122867 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-30 21:00 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-05-30 20:53 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\rescache 2014-05-30 20:51 - 2014-05-19 21:44 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-05-30 20:18 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-05-30 20:03 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-05-30 19:54 - 2014-05-30 19:54 - 02347384 _____ (ESET) C:\Users\Ariane\Downloads\esetsmartinstaller_deu.exe 2014-05-27 19:53 - 2014-05-19 22:34 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-27 19:30 - 2014-05-27 19:30 - 00000000 ____D () C:\WINDOWS\ERUNT 2014-05-27 19:26 - 2014-03-18 01:54 - 00002938 _____ () C:\WINDOWS\PFRO.log 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\WTablet 2014-05-26 22:04 - 2014-05-26 22:04 - 00000000 ____D () C:\Program Files\Tablet 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieUserList 2014-05-26 21:36 - 2014-05-26 21:36 - 00000000 __SHD () C:\Users\Ariane\AppData\Local\EmieSiteList 2014-05-23 18:00 - 2014-05-20 21:16 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-23 18:00 - 2014-05-19 22:26 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Lenovo 2014-05-23 17:54 - 2014-05-23 17:52 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-23 17:52 - 2012-07-26 08:43 - 00000000 ____D () C:\WINDOWS\CbsTemp 2014-05-21 18:04 - 2014-05-21 18:04 - 00000000 ____D () C:\WINDOWS\system32\appmgmt 2014-05-21 18:04 - 2014-05-20 23:30 - 00000006 _____ () C:\WINDOWS\systemtype.txt 2014-05-21 18:04 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Help 2014-05-21 18:04 - 2013-03-04 01:07 - 00000000 ___HD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo ThinkVantage Tools 2014-05-21 18:04 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Lenovo 2014-05-20 23:35 - 2014-05-20 23:35 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Tvsukernel 2014-05-20 23:35 - 2013-08-22 09:23 - 00289077 _____ () C:\WINDOWS\setupact.log 2014-05-20 23:35 - 2013-03-04 00:48 - 00002265 _____ () C:\RtkI2SSetup.log 2014-05-20 23:33 - 2014-05-20 23:33 - 00000146 _____ () C:\WINDOWS\launchpw.cmd 2014-05-20 23:33 - 2014-05-20 23:33 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\InstallShield 2014-05-20 23:33 - 2013-03-04 00:48 - 00000000 ____D () C:\Program Files\DPR 2014-05-20 23:33 - 2013-03-03 17:14 - 00000000 ____D () C:\ProgramData\lenovo 2014-05-20 23:30 - 2013-03-04 01:11 - 00000000 ____D () C:\WINDOWS\Downloaded Installations 2014-05-20 23:28 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\restore 2014-05-20 23:28 - 2013-03-04 00:48 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2014-05-20 23:25 - 2014-05-20 23:25 - 00000000 ____D () C:\Users\Ariane\Intel 2014-05-20 23:25 - 2014-05-20 20:21 - 00000000 ____D () C:\Users\Ariane 2014-05-20 23:25 - 2013-03-04 00:51 - 00000000 ____D () C:\Program Files\Intel 2014-05-20 23:24 - 2014-05-20 23:24 - 00000030 _____ () C:\WINDOWS\success32.log 2014-05-20 23:24 - 2013-03-04 00:47 - 00000000 ____D () C:\Program Files\Common Files\Lenovo 2014-05-20 23:16 - 2014-05-20 23:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-05-20 23:07 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\LogFiles 2014-05-20 23:00 - 2014-05-20 23:00 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-05-20 22:57 - 2014-05-20 22:57 - 00001461 _____ () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-20 22:57 - 2014-05-20 22:57 - 00000020 ___SH () C:\Users\Ariane\ntuser.ini 2014-05-20 21:17 - 2014-05-20 21:17 - 00000000 __SHD () C:\Recovery 2014-05-20 21:15 - 2013-08-22 10:17 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-05-20 21:14 - 2014-05-20 21:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-20 21:14 - 2014-05-20 21:14 - 00219992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00092504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-20 21:14 - 2014-05-20 21:14 - 00030224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 21:14 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows Defender 2014-05-20 21:13 - 2014-05-20 21:13 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01679704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01326936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01092896 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 01037504 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00863552 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00491008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00444928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdmTmpl.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-20 21:13 - 2014-05-20 21:13 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-20 21:13 - 2014-05-20 21:13 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00321880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00283992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-20 21:13 - 2014-05-20 21:13 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00138584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-20 21:13 - 2014-05-20 21:13 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-20 21:13 - 2014-05-20 21:13 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-20 21:13 - 2014-05-20 21:13 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-20 21:11 - 2014-05-20 21:11 - 02818048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 01634304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-20 21:11 - 2014-05-20 21:11 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00049544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-20 21:11 - 2014-05-20 21:11 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-20 21:10 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Drivers\de-DE 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-05-20 21:10 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates 2014-05-20 21:09 - 2014-05-20 21:09 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05786968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03563008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 03497472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 02825216 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 02130432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01871704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01309184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01210368 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01167360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01159520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01089536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 01016320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00970240 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00672256 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpprefcl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00560128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00482416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-05-20 21:09 - 2014-05-20 21:09 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00333656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00328984 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00311128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00294744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00286040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-20 21:09 - 2014-05-20 21:09 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00271192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00264704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00264536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00240472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00229344 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00194752 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-20 21:09 - 2014-05-20 21:09 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\tscfgwmi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00147800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-05-20 21:09 - 2014-05-20 21:09 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2014-05-20 21:09 - 2014-05-20 21:09 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-20 21:06 - 2014-05-20 21:06 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\WINDOWS\system32\XPSViewer 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-20 21:05 - 2014-05-20 21:05 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:31 - 2014-05-20 20:31 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagwrn.xml 2014-05-20 20:31 - 2014-05-20 20:21 - 00020958 _____ () C:\WINDOWS\diagerr.xml 2014-05-20 20:31 - 2014-05-20 19:31 - 00006607 _____ () C:\WINDOWS\comsetup.log 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\Registration 2014-05-20 20:31 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Windows NT 2014-05-20 20:31 - 2013-08-22 08:21 - 00000000 __RHD () C:\Users\Default 2014-05-20 20:31 - 2013-08-22 08:13 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-05-20 20:30 - 2014-05-20 20:30 - 00021532 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RSD () C:\WINDOWS\Media 2014-05-20 20:29 - 2013-08-22 10:17 - 00000000 __RHD () C:\Users\Public\Libraries 2014-05-20 20:29 - 2013-08-22 08:21 - 00000000 ___RD () C:\Users\Public 2014-05-20 20:27 - 2013-08-22 09:22 - 00333576 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-05-20 20:26 - 2014-05-19 22:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-20 20:26 - 2014-05-19 21:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-05-20 20:26 - 2013-08-22 10:18 - 00004893 _____ () C:\WINDOWS\DtcInstall.log 2014-05-20 20:26 - 2013-03-04 01:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel AppUp(SM) center 2014-05-20 20:26 - 2012-07-26 06:43 - 00000000 ____D () C:\Users\Default.migrated 2014-05-20 20:25 - 2014-05-20 20:25 - 00001515 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\winrm 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\WCN 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\slmgr 2014-05-20 20:25 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\system32\Printing_Admin_Scripts 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\WinStore 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\spool 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\MUI 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\IME 2014-05-20 20:25 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\de-DE 2014-05-20 20:24 - 2014-05-20 20:18 - 00000000 ____D () C:\ProgramData\Broadcom 2014-05-20 20:24 - 2014-03-18 09:45 - 00000000 ____D () C:\Program Files\Windows Journal 2014-05-20 20:24 - 2014-03-18 09:30 - 00000000 ____D () C:\WINDOWS\DigitalLocker 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 __SHD () C:\Program Files\Windows Sidebar 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\IME 2014-05-20 20:24 - 2013-08-22 10:17 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-05-20 20:24 - 2012-10-11 19:41 - 00000000 ____D () C:\ProgramData\PRICache 2014-05-20 20:22 - 2014-05-20 20:22 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-20 20:22 - 2014-05-20 20:21 - 00000000 ___RD () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-20 20:22 - 2013-08-22 10:17 - 00000000 ____D () C:\WINDOWS\system32\Recovery 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Startmenü 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Netzwerkumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Druckumgebung 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Musik 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\Documents\Eigene Bilder 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-20 20:21 - 2014-05-20 20:21 - 00000000 _SHDL () C:\Users\Ariane\AppData\Local\Verlauf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsServiceDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_SensorsHIDClassDriver_01_11_00.Wdf 2014-05-20 20:19 - 2014-05-20 20:19 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_MbmDevExt_01_11_00.Wdf 2014-05-20 20:19 - 2013-08-22 09:23 - 00000084 _____ () C:\WINDOWS\setuperr.log 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_BcmGnssLocationSensor_01_11_00.Wdf 2014-05-20 20:18 - 2014-05-20 20:18 - 00000000 ____D () C:\Program Files\Common Files\Intel 2014-05-20 19:55 - 2013-03-04 01:13 - 01352732 _____ () C:\WINDOWS\WindowsUpdate (1).log 2014-05-20 19:50 - 2012-07-26 08:53 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2014-05-19 22:33 - 2014-05-19 22:33 - 00001071 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-05-19 22:33 - 2014-05-19 22:32 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 2014-05-19 22:32 - 2014-05-19 22:32 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-19 22:31 - 2014-05-19 22:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ariane\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-19 21:47 - 2014-05-19 21:44 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Google 2014-05-19 21:46 - 2014-05-19 21:44 - 00000000 ____D () C:\Program Files\Google 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Macromedia 2014-05-19 21:42 - 2014-05-19 21:42 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Apps\2.0 2014-05-19 19:57 - 2014-05-19 19:55 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\Documents\Bluetooth-Exchange-Ordner 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Sierra Wireless 2014-05-18 21:48 - 2014-05-18 21:48 - 00000000 ____D () C:\Users\Ariane\AppData\Local\Broadcom 2014-05-18 21:47 - 2014-05-18 21:47 - 00000000 ____D () C:\Users\Ariane\AppData\Roaming\Adobe 2014-05-18 21:47 - 2013-03-04 10:15 - 00055561 _____ () C:\WINDOWS\modules.log 2014-05-18 21:46 - 2014-05-18 21:46 - 00000000 ____D () C:\Users\Ariane\AppData\Local\VirtualStore 2014-05-18 21:44 - 2014-05-18 21:44 - 00000000 ____D () C:\WINDOWS\CSC 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Netzwerkumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Druckumgebung 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Musik 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\Documents\Eigene Bilder 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Users\Default.migrated\AppData\Local\Verlauf 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-18 21:41 - 2014-05-18 21:41 - 00000000 _____ () C:\Recovery.txt 2014-05-06 05:25 - 2014-05-20 23:11 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-06 04:10 - 2014-05-20 23:11 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-04 17:14 - 2014-05-19 19:55 - 90547776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-01 22:30 - 2013-08-22 10:18 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-05-01 22:30 - 2013-08-22 10:18 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl Files to move or delete: ==================== C:\ProgramData\Lenovo-23270.vbs Some content of TEMP: ==================== C:\Users\Ariane\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe => MD5 is legit C:\WINDOWS\system32\winlogon.exe => MD5 is legit C:\WINDOWS\system32\wininit.exe => MD5 is legit C:\WINDOWS\system32\svchost.exe => MD5 is legit C:\WINDOWS\system32\services.exe [2014-05-20 21:09] - [2014-05-20 21:09] - 0328984 ____A (Microsoft Corporation) BE8FB66895B5475B09F5907D875CD47D C:\WINDOWS\system32\User32.dll => MD5 is legit C:\WINDOWS\system32\userinit.exe => MD5 is legit C:\WINDOWS\system32\rpcss.dll => MD5 is legit C:\WINDOWS\system32\Drivers\volsnap.sys [2014-05-20 21:09] - [2014-05-20 21:09] - 0264536 ____A (Microsoft Corporation) F4138DC230FC3DFE9E31201561D0491B LastRegBack: 2014-05-30 20:18 ==================== End Of Log ============================ --- --- --- maleware hat dies noch gefunden: Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 30.05.2014 Suchlauf-Zeit: 21:37:43 Logdatei: anti maleware.txt Administrator: Ja Version: 2.00.2.1012 Malware Datenbank: v2014.05.30.09 Rootkit Datenbank: v2014.05.21.01 Lizenz: Testversion Malware Schutz: Aktiviert Bösartiger Webseiten Schutz: Aktiviert Self-protection: Deaktiviert Betriebssystem: Windows 8.1 CPU: x86 Dateisystem: NTFS Benutzer: Ariane Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 270896 Verstrichene Zeit: 19 Min, 55 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 0 |
31.05.2014, 15:40 | #15 |
/// the machine /// TB-Ausbilder | Maleware zeigt über 20 Bedrohungen an! Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [65536 2013-09-10] (Intel Corporation) HKU\S-1-5-21-514152167-946714269-2836888378-1001\...\Run: [GoogleChromeAutoLaunch_26D5B9356F0B1AFCAD759453B0B4C2ED] => C:\Program Files\Google\Chrome\Application\chrome.exe [860488 2014-05-14] (Google Inc.) C:\ProgramData\Lenovo-23270.vbs Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Maleware zeigt über 20 Bedrohungen an! |
bedrohungen, bytes, dankbar, datei, ellung, ernst, gen, gesetzt, installier, irgend, maleware, neu, schonmal, super, tablet, textdatei, virus, warnungen, wenig, werkseinstellung, windows |