|
Mülltonne: Telekom mail und Zip Datei geöffnetWindows 7 Beiträge, die gegen unsere Regeln verstoßen haben, solche, die die Welt nicht braucht oder sonstiger Müll landet hier in der Mülltonne... |
04.06.2014, 17:40 | #1 |
| Telekom mail und Zip Datei geöffnet Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-06-2014 Ran by Ingo (administrator) on JUTTA on 04-06-2014 17:19:40 Running from C:\Users\Ingo\AppData\Local\Microsoft\Windows\INetCache\IE\53D6QFJD Platform: Windows 8.1 (Update 1) (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ Download link for 64-Bit Version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (Dritek System INC.) C:\Windows\RfBtnSvc64.exe (AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\ToolbarUpdater.exe () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\loggingserver.exe (Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Intel Corporation) C:\Windows\System32\igfxext.exe () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Microsoft Corporation) E:\JuttaHandy\ZuneLauncher.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe (Garmin Ltd or its subsidiaries) C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe (Microsoft Corporation) C:\Windows\BrowserChoice\browserchoice.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (Dolby Laboratories Inc.) C:\Dolby PCEE4\pcee4.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe () C:\Program Files (x86)\AVG Nation toolbar\vprot.exe (Microsoft Corporation) E:\Office\Office12\ONENOTEM.EXE (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe (Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8600\Bin\HPNetworkCommunicator.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe (WinZip International LLC ) C:\Users\Ingo\Downloads\wzmp_8.exe () C:\Users\Ingo\AppData\Local\Temp\is-K6PHP.tmp\wzmp_8.tmp (WinZip International LLC ) C:\Users\Ingo\Downloads\wzmp_8.exe () C:\Users\Ingo\AppData\Local\Temp\is-NTT1P.tmp\wzmp_8.tmp (Nico Mak Computing) C:\Program Files (x86)\WinZip Malware Protector\WinZipMalwareProtector.exe (Farbar) C:\Users\Ingo\AppData\Local\Microsoft\Windows\INetCache\IE\53D6QFJD\FRST64 (1).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2873744 2012-10-05] (ELAN Microelectronics Corp.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12937872 2012-07-27] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1214608 2012-07-10] (Realtek Semiconductor) HKLM\...\Run: [Zune Launcher] => E:\JuttaHandy\ZuneLauncher.exe [163552 2011-08-05] (Microsoft Corporation) HKLM-x32\...\Run: [LManager] => [X] HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Dolby PCEE4\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Nation toolbar\vprot.exe [2556744 2014-04-27] () HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5181456 2014-05-13] (AVG Technologies CZ, s.r.o.) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-01-28] ( (Atheros Communications)) HKU\S-1-5-21-3654940359-3345917933-1520160157-1001\...\Run: [HP Officejet Pro 8600 (NET)] => C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.) HKU\S-1-5-21-3654940359-3345917933-1520160157-1001\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [122200 2014-04-23] (Garmin Ltd or its subsidiaries) HKU\S-1-5-21-3654940359-3345917933-1520160157-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd) HKU\S-1-5-21-3654940359-3345917933-1520160157-1001\...\Run: [BrowserChoice] => C:\Windows\BrowserChoice\browserchoice.exe [86816 2013-08-22] (Microsoft Corporation) HKU\S-1-5-21-3654940359-3345917933-1520160157-1001\...\MountPoints2: {3b31d40f-d226-11e3-bf27-20689deb6b0d} - "H:\SETUP.EXE" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Acer Backup Manager Tray.lnk ShortcutTarget: Acer Backup Manager Tray.lnk -> C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (NTI Corporation) Startup: C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> E:\Office\Office12\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com SearchScopes: HKLM - DefaultScope {F56B15B9-FA6D-46F1-AF57-1BBAEA735B07} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM - {F56B15B9-FA6D-46F1-AF57-1BBAEA735B07} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - DefaultScope {F56B15B9-FA6D-46F1-AF57-1BBAEA735B07} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - {F56B15B9-FA6D-46F1-AF57-1BBAEA735B07} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKCU - DefaultScope {F56B15B9-FA6D-46F1-AF57-1BBAEA735B07} URL = SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://avg.nation.com/avgtbavg/search/web?cid={CE9FD0CC-9CCD-4D46-8364-A17C4CDFAA55}&mid=334e908c8f4a47d39dcaa11d94a2215b-abfa3a7e9cf83678d9e38a1ddb5ef2114371e50e&lang=de&ds=AVG&coid=avgtbavg&pr=fr&d=2013-09-30 14:26:28&v=17.0.1.12&pid=nation&sg=0&sap=dsp&q={searchTerms}&cmpid=0913b SearchScopes: HKCU - {F56B15B9-FA6D-46F1-AF57-1BBAEA735B07} URL = BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations) BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: AVG Nation toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Nation toolbar\18.1.0.443\AVG Nation toolbar_toolbar.dll (AVG Secure Search) BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.) Toolbar: HKLM-x32 - AVG Nation toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Nation toolbar\18.1.0.443\AVG Nation toolbar_toolbar.dll (AVG Secure Search) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.) DPF: HKLM-x32 {02BCC737-B171-4746-94C9-0D8A0B2C0089} hxxp://office.microsoft.com/_layouts/ClientBin/ieawsdc32.cab Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - E:\Office\Office15\MSOSB.DLL (Microsoft Corporation) Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.0\ViProtocol.dll (AVG Secure Search) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Ingo\AppData\Roaming\Mozilla\Firefox\Profiles\sqljj1z1.default FF Homepage: about:home FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.0\\npsitesafety.dll No File FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - E:\Office\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.) FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF StartMenuInternet: FIREFOX.EXE - E:\FireFox\firefox.exe Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR RestoreOnStartup: "hxxp://www.google.com/" CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\PepperFlash\pepflashplayer.dll No File CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\ppGoogleNaClPluginChrome.dll No File CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\31.0.1650.57\pdf.dll No File CHR Plugin: (AVG SiteSafety plugin) - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\17.0.12\\npsitesafety.dll (AVG Technologies) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Java(TM) Platform SE 7 U25) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll No File CHR Plugin: (WildTangent Games App V2 Presence Detector) - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll No File CHR Plugin: (Java Deployment Toolkit 7.0.250.17) - C:\Windows\SysWOW64\npDeployJava1.dll No File CHR Plugin: (McAfee SecurityCenter) - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL No File CHR Extension: (Google Docs) - C:\Users\Ingo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-11-23] CHR Extension: (Google Drive) - C:\Users\Ingo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-23] CHR Extension: (YouTube) - C:\Users\Ingo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-23] CHR Extension: (Google-Suche) - C:\Users\Ingo\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-23] CHR Extension: (SiteAdvisor) - C:\Users\Ingo\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2013-11-23] CHR Extension: (Google Wallet) - C:\Users\Ingo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-23] CHR Extension: (Google Mail) - C:\Users\Ingo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-23] ==================== Services (Whitelisted) ================= R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227456 2013-01-28] (Qualcomm Atheros Commnucations) R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3644432 2014-05-13] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [292424 2014-05-13] (AVG Technologies CZ, s.r.o.) R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2435728 2012-08-23] (Acer Incorporated) S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [468624 2012-08-23] (Acer Incorporated) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658576 2012-08-22] (Acer Incorporated) R2 Garmin Core Update Service; C:\Program Files (x86)\Garmin\Core Update Service\Garmin.Cartography.MapUpdate.CoreService.exe [436056 2014-04-23] (Garmin Ltd or its subsidiaries) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation) R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-08-23] (NTI Corporation) R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2012-11-22] (Dritek System INC.) S3 SXDS10; C:\Program Files (x86)\Common Files\soft Xpansion\sxds10.exe [234096 2013-07-17] (soft Xpansion) R2 vToolbarUpdater18.1.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\ToolbarUpdater.exe [1793536 2014-04-27] (AVG Secure Search) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [20496 2013-09-04] (AVG Technologies CZ, s.r.o.) R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [152344 2014-05-13] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [236312 2014-05-13] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [191768 2014-05-13] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [235800 2014-05-13] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [323352 2014-05-13] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [130328 2014-05-13] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-05-13] (AVG Technologies CZ, s.r.o.) R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50464 2014-04-27] (AVG Technologies) R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [274712 2014-03-31] (AVG Technologies CZ, s.r.o.) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-01-28] (Qualcomm Atheros) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-05-03] (Disc Soft Ltd) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2014-03-18] (Microsoft Corporation) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2012-11-22] (Dritek System Inc.) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924504 2014-03-18] (Microsoft Corporation) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2014-03-18] (Microsoft Corporation) S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2014-03-18] (Microsoft Corporation) S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) R0 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-05-10] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-04 17:19 - 2014-06-04 17:19 - 00000000 ____D () C:\FRST 2014-06-04 17:18 - 2014-06-04 17:18 - 02068992 _____ (Farbar) C:\Users\Ingo\Downloads\FRST64.exe 2014-06-04 16:59 - 2014-06-04 16:59 - 00000000 ____D () C:\Users\Ingo\AppData\Roaming\Nico Mak Computing 2014-06-04 15:51 - 2014-06-04 16:59 - 00003116 _____ () C:\WINDOWS\System32\Tasks\WinZip Malware Protector_startup 2014-06-04 15:50 - 2014-06-04 16:59 - 00001209 _____ () C:\Users\Public\Desktop\WinZip Malware Protector.lnk 2014-06-04 15:50 - 2014-06-04 16:59 - 00000000 ____D () C:\ProgramData\Nico Mak Computing 2014-06-04 15:50 - 2014-06-04 16:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip Malware Protector 2014-06-04 15:50 - 2014-06-04 16:59 - 00000000 ____D () C:\Program Files (x86)\WinZip Malware Protector 2014-06-04 15:50 - 2014-06-04 15:50 - 04892480 _____ (WinZip International LLC ) C:\Users\Ingo\Downloads\wzmp_8.exe 2014-06-04 15:50 - 2013-03-15 17:10 - 00020480 _____ () C:\WINDOWS\system32\wsusnative64.exe 2014-06-01 14:24 - 2014-06-01 14:25 - 00000000 __RDO () C:\Users\Ingo\OneDrive 2014-05-15 20:59 - 2013-08-22 08:57 - 00002143 ___RS () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Browser Choice.lnk 2014-05-15 20:56 - 2014-05-15 20:59 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-14 12:37 - 2014-05-14 12:37 - 00000000 ____D () C:\WINDOWS\PCHEALTH 2014-05-14 11:17 - 2014-03-24 04:30 - 00257880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-14 11:17 - 2014-03-24 04:30 - 00123224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-14 11:17 - 2014-03-24 04:27 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-14 11:17 - 2014-03-13 09:42 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-14 11:17 - 2014-03-13 08:51 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe 2014-05-14 11:13 - 2014-05-06 06:40 - 23544320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-14 11:13 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-05-14 11:13 - 2014-05-06 05:00 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-14 11:13 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2014-05-14 11:13 - 2014-04-11 12:03 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-14 11:13 - 2014-04-11 12:03 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-14 11:13 - 2014-04-11 10:25 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2014-05-14 11:13 - 2014-04-11 08:04 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-14 11:13 - 2014-04-11 07:53 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-14 11:13 - 2014-04-11 07:22 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2014-05-14 11:13 - 2014-04-11 05:54 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-14 11:13 - 2014-04-11 05:36 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2014-05-14 11:13 - 2014-04-11 05:24 - 13288960 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-14 11:13 - 2014-04-11 05:06 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2014-05-14 11:13 - 2014-04-11 05:05 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-14 11:13 - 2014-04-11 05:05 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2014-05-14 11:13 - 2014-04-11 05:02 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-14 11:13 - 2014-04-11 05:02 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-14 11:13 - 2014-04-11 05:01 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-14 11:13 - 2014-04-11 05:00 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2014-05-14 11:13 - 2014-04-11 04:59 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2014-05-14 11:13 - 2014-04-11 04:57 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-14 11:13 - 2014-04-11 04:56 - 00381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-14 11:13 - 2014-04-11 04:55 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-14 11:13 - 2014-04-11 04:53 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-14 11:13 - 2014-04-11 04:52 - 03464192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-14 11:13 - 2014-04-11 04:46 - 01705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-14 11:13 - 2014-04-11 04:36 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2014-05-14 11:13 - 2014-04-11 04:34 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2014-05-14 11:13 - 2014-04-11 04:29 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-14 11:13 - 2014-04-11 04:25 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-14 11:13 - 2014-04-09 00:46 - 00086688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll 2014-05-14 11:13 - 2014-04-09 00:46 - 00028320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll 2014-05-14 11:13 - 2014-04-08 20:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt_map.dll 2014-05-14 11:13 - 2014-04-08 20:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt100.dll 2014-05-14 11:12 - 2014-03-27 11:12 - 21225584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-14 11:12 - 2014-03-27 09:48 - 18679728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2014-05-13 14:20 - 2014-05-13 14:20 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgldx64.sys 2014-05-13 14:06 - 2014-05-13 14:06 - 00323352 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgloga.sys 2014-05-13 14:05 - 2014-05-13 14:05 - 00191768 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgidsha.sys 2014-05-13 14:05 - 2014-05-13 14:05 - 00152344 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgdiska.sys 2014-05-13 14:05 - 2014-05-13 14:05 - 00130328 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgmfx64.sys 2014-05-13 14:04 - 2014-05-13 14:04 - 00236312 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgidsdrivera.sys 2014-05-13 14:04 - 2014-05-13 14:04 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgrkx64.sys 2014-05-10 19:24 - 2014-06-03 17:42 - 00000000 ____D () C:\Users\Ingo\AppData\Local\Deployment 2014-05-10 17:07 - 2014-05-10 17:07 - 00000000 __SHD () C:\Users\Ingo\AppData\Local\EmieUserList 2014-05-10 17:07 - 2014-05-10 17:07 - 00000000 __SHD () C:\Users\Ingo\AppData\Local\EmieSiteList 2014-05-10 16:57 - 2014-05-10 16:57 - 00001458 _____ () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-10 16:57 - 2014-05-10 16:57 - 00000020 ___SH () C:\Users\Ingo\ntuser.ini 2014-05-10 15:36 - 2014-05-10 15:36 - 00000000 __SHD () C:\Recovery 2014-05-10 15:35 - 2014-05-10 16:58 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-10 15:34 - 2014-05-10 15:34 - 16875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 12732416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 08653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 06641152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 05833728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 05770752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 04268544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02900992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02641920 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02519384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 02479616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02373784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 02331000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02141912 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02133504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02013016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01557848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 01542768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01466864 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01339240 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01291200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01200296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01129472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01112536 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01066496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-10 15:34 - 2014-05-10 15:34 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00958464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00924160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00839168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00836096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-10 15:34 - 2014-05-10 15:34 - 00801792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00655360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00565536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00518552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00492256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00488280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00467800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-10 15:34 - 2014-05-10 15:34 - 00467504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00463264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00443392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-10 15:34 - 2014-05-10 15:34 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-10 15:34 - 2014-05-10 15:34 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00406512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00402944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00388408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-10 15:34 - 2014-05-10 15:34 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00379224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00360512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00356848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00337752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL 2014-05-10 15:34 - 2014-05-10 15:34 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00244888 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00180056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00157016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00136024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00113648 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00111616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\l2gpstore.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxproxy.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00033280 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-10 15:32 - 2014-05-10 15:32 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-05-10 15:32 - 2014-05-10 15:32 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-10 15:32 - 2014-05-10 15:32 - 00918528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-10 15:32 - 2014-05-10 15:32 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-05-10 15:31 - 2014-05-10 15:31 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-10 15:30 - 2014-05-10 15:30 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer 2014-05-10 15:30 - 2014-05-10 15:30 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-10 15:30 - 2014-05-10 15:30 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-10 15:30 - 2014-05-10 15:30 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies 2014-05-10 15:30 - 2014-05-10 15:30 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-05-10 15:29 - 2013-08-03 06:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2014-05-10 15:29 - 2013-08-03 06:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-05-10 15:29 - 2013-08-03 06:48 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2014-05-10 15:29 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2014-05-10 15:29 - 2013-08-03 06:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-05-10 15:29 - 2013-08-03 06:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2014-05-10 15:03 - 2014-06-04 16:42 - 01847659 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-05-10 15:02 - 2014-05-10 15:02 - 00022960 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-10 14:51 - 2014-05-10 14:51 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software 2014-05-10 14:51 - 2014-05-10 14:51 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Garmin 2014-05-10 14:51 - 2014-05-10 14:51 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-05-10 14:51 - 2014-05-10 14:51 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\TuneUp Software 2014-05-10 14:51 - 2014-05-10 14:51 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Garmin 2014-05-10 14:51 - 2014-05-10 14:51 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-05-10 14:50 - 2014-05-10 14:50 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-10 14:46 - 2014-05-10 14:46 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-10 14:44 - 2014-06-04 17:19 - 00000000 ____D () C:\Users\Ingo\AppData\Local\Temp 2014-05-10 14:44 - 2014-06-01 14:24 - 00000000 ____D () C:\Users\Ingo 2014-05-10 14:44 - 2014-05-10 15:03 - 00024768 _____ () C:\WINDOWS\diagwrn.xml 2014-05-10 14:44 - 2014-05-10 15:03 - 00024768 _____ () C:\WINDOWS\diagerr.xml 2014-05-10 14:44 - 2014-05-10 14:45 - 00000000 ___RD () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-10 14:44 - 2014-05-10 14:45 - 00000000 ___RD () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Vorlagen 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Startmenü 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Netzwerkumgebung 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Lokale Einstellungen 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Eigene Dateien 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Druckumgebung 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Documents\Eigene Musik 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Documents\Eigene Bilder 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\AppData\Local\Verlauf 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\AppData\Local\Anwendungsdaten 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Anwendungsdaten 2014-05-10 14:44 - 2014-03-18 12:11 - 00000369 _____ () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2014-05-10 14:44 - 2014-03-18 12:11 - 00000369 _____ () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2014-05-10 14:44 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-05-10 14:44 - 2013-08-22 17:36 - 00000000 ____D () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-10 14:38 - 2014-05-10 14:48 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-05-10 14:38 - 2014-05-10 14:38 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM 2014-05-10 14:38 - 2014-05-10 14:38 - 00000000 ____D () C:\Program Files\Realtek 2014-05-10 14:37 - 2014-05-10 14:48 - 00000000 ____D () C:\Program Files\Elantech 2014-05-10 12:11 - 2014-05-10 15:02 - 00006550 _____ () C:\WINDOWS\comsetup.log 2014-05-06 16:31 - 2014-05-10 14:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin 2014-05-06 16:31 - 2014-05-06 16:31 - 00001852 _____ () C:\Users\Public\Desktop\Garmin Express.lnk ==================== One Month Modified Files and Folders ======= 2014-06-04 17:19 - 2014-06-04 17:19 - 00000000 ____D () C:\FRST 2014-06-04 17:19 - 2014-05-10 14:44 - 00000000 ____D () C:\Users\Ingo\AppData\Local\Temp 2014-06-04 17:18 - 2014-06-04 17:18 - 02068992 _____ (Farbar) C:\Users\Ingo\Downloads\FRST64.exe 2014-06-04 17:11 - 2013-03-30 13:47 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3654940359-3345917933-1520160157-1001 2014-06-04 17:10 - 2013-06-09 14:49 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-06-04 17:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-06-04 16:59 - 2014-06-04 16:59 - 00000000 ____D () C:\Users\Ingo\AppData\Roaming\Nico Mak Computing 2014-06-04 16:59 - 2014-06-04 15:51 - 00003116 _____ () C:\WINDOWS\System32\Tasks\WinZip Malware Protector_startup 2014-06-04 16:59 - 2014-06-04 15:50 - 00001209 _____ () C:\Users\Public\Desktop\WinZip Malware Protector.lnk 2014-06-04 16:59 - 2014-06-04 15:50 - 00000000 ____D () C:\ProgramData\Nico Mak Computing 2014-06-04 16:59 - 2014-06-04 15:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip Malware Protector 2014-06-04 16:59 - 2014-06-04 15:50 - 00000000 ____D () C:\Program Files (x86)\WinZip Malware Protector 2014-06-04 16:46 - 2013-11-23 19:14 - 00001118 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-04 16:45 - 2013-11-23 19:14 - 00001114 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-04 16:42 - 2014-05-10 15:03 - 01847659 _____ () C:\WINDOWS\WindowsUpdate.log 2014-06-04 16:23 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-06-04 15:52 - 2013-03-30 14:46 - 00000000 ____D () C:\ProgramData\MFAData 2014-06-04 15:50 - 2014-06-04 15:50 - 04892480 _____ (WinZip International LLC ) C:\Users\Ingo\Downloads\wzmp_8.exe 2014-06-03 17:42 - 2014-05-10 19:24 - 00000000 ____D () C:\Users\Ingo\AppData\Local\Deployment 2014-06-01 18:33 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-06-01 14:25 - 2014-06-01 14:24 - 00000000 __RDO () C:\Users\Ingo\OneDrive 2014-06-01 14:24 - 2014-05-10 14:44 - 00000000 ____D () C:\Users\Ingo 2014-06-01 14:24 - 2013-03-30 13:39 - 00000000 ____D () C:\Users\Ingo\AppData\Local\Packages 2014-05-25 09:42 - 2014-03-18 12:03 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-05-25 09:42 - 2014-03-18 11:25 - 00765582 _____ () C:\WINDOWS\system32\perfh007.dat 2014-05-25 09:42 - 2014-03-18 11:25 - 00159366 _____ () C:\WINDOWS\system32\perfc007.dat 2014-05-25 09:38 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-05-24 21:13 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-05-21 11:14 - 2014-03-18 03:50 - 00002322 _____ () C:\WINDOWS\PFRO.log 2014-05-19 18:43 - 2013-10-26 09:57 - 00001001 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-05-19 18:43 - 2013-10-23 09:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-05-15 21:26 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-05-15 20:59 - 2014-05-15 20:56 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-15 20:59 - 2013-08-26 18:26 - 00000000 ___RD () C:\Users\Ingo\Podcasts 2014-05-15 20:59 - 2013-04-04 17:40 - 00003542 _____ () C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask 2014-05-15 20:59 - 2013-03-30 13:41 - 00000000 ___RD () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-15 20:59 - 2013-03-30 13:41 - 00000000 ___RD () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-05-15 20:56 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-05-15 20:56 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-15 20:56 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-15 20:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore 2014-05-15 20:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates 2014-05-15 20:56 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows Defender 2014-05-15 20:56 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-05-14 12:45 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp 2014-05-14 12:43 - 2013-03-30 14:24 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-05-14 12:41 - 2013-08-20 16:36 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-14 12:39 - 2013-04-01 20:06 - 93223848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-14 12:37 - 2014-05-14 12:37 - 00000000 ____D () C:\WINDOWS\PCHEALTH 2014-05-13 20:11 - 2013-06-09 14:49 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2014-05-13 14:20 - 2014-05-13 14:20 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgldx64.sys 2014-05-13 14:06 - 2014-05-13 14:06 - 00323352 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgloga.sys 2014-05-13 14:05 - 2014-05-13 14:05 - 00191768 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgidsha.sys 2014-05-13 14:05 - 2014-05-13 14:05 - 00152344 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgdiska.sys 2014-05-13 14:05 - 2014-05-13 14:05 - 00130328 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgmfx64.sys 2014-05-13 14:04 - 2014-05-13 14:04 - 00236312 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgidsdrivera.sys 2014-05-13 14:04 - 2014-05-13 14:04 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgrkx64.sys 2014-05-11 13:30 - 2013-04-03 17:06 - 00081512 _____ () C:\Users\Ingo\AppData\Local\GDIPFONTCACHEV1.DAT 2014-05-11 13:29 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2014-05-11 13:28 - 2013-08-22 16:46 - 00287294 _____ () C:\WINDOWS\setupact.log 2014-05-10 17:07 - 2014-05-10 17:07 - 00000000 __SHD () C:\Users\Ingo\AppData\Local\EmieUserList 2014-05-10 17:07 - 2014-05-10 17:07 - 00000000 __SHD () C:\Users\Ingo\AppData\Local\EmieSiteList 2014-05-10 17:01 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\restore 2014-05-10 16:58 - 2014-05-10 15:35 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-10 16:57 - 2014-05-10 16:57 - 00001458 _____ () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-10 16:57 - 2014-05-10 16:57 - 00000020 ___SH () C:\Users\Ingo\ntuser.ini 2014-05-10 15:36 - 2014-05-10 15:36 - 00000000 __SHD () C:\Recovery 2014-05-10 15:35 - 2013-08-22 17:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-05-10 15:34 - 2014-05-10 15:34 - 16875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 12732416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 08653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 06641152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 05833728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 05770752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 04268544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02900992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02641920 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02519384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 02479616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02373784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 02331000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02141912 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02133504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 02013016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01557848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 01542768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01466864 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01339240 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01291200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01200296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01129472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01112536 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01066496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-10 15:34 - 2014-05-10 15:34 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00958464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00924160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00839168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00836096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-10 15:34 - 2014-05-10 15:34 - 00801792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00655360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00565536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00518552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00492256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00488280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00467800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-10 15:34 - 2014-05-10 15:34 - 00467504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00463264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00443392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-10 15:34 - 2014-05-10 15:34 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-10 15:34 - 2014-05-10 15:34 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00406512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00402944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00388408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-10 15:34 - 2014-05-10 15:34 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00379224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00360512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00356848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00337752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL 2014-05-10 15:34 - 2014-05-10 15:34 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00244888 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00180056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00157016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00136024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00113648 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00111616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\l2gpstore.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-10 15:34 - 2014-05-10 15:34 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxproxy.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00033280 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-10 15:34 - 2014-05-10 15:34 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll 2014-05-10 15:34 - 2014-05-10 15:34 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-10 15:34 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\setup 2014-05-10 15:32 - 2014-05-10 15:32 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-05-10 15:32 - 2014-05-10 15:32 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-10 15:32 - 2014-05-10 15:32 - 00918528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-10 15:32 - 2014-05-10 15:32 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-05-10 15:31 - 2014-05-10 15:31 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-10 15:30 - 2014-05-10 15:30 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer 2014-05-10 15:30 - 2014-05-10 15:30 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-10 15:30 - 2014-05-10 15:30 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-10 15:30 - 2014-05-10 15:30 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies 2014-05-10 15:30 - 2014-05-10 15:30 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-05-10 15:30 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI 2014-05-10 15:30 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\MUI 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-10 15:03 - 2014-05-10 15:03 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-05-10 15:03 - 2014-05-10 14:44 - 00024768 _____ () C:\WINDOWS\diagwrn.xml 2014-05-10 15:03 - 2014-05-10 14:44 - 00024768 _____ () C:\WINDOWS\diagerr.xml 2014-05-10 15:03 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\Registration 2014-05-10 15:03 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows NT 2014-05-10 15:03 - 2013-08-22 15:36 - 00000000 __RHD () C:\Users\Default 2014-05-10 15:02 - 2014-05-10 15:02 - 00022960 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-10 15:02 - 2014-05-10 12:11 - 00006550 _____ () C:\WINDOWS\comsetup.log 2014-05-10 14:59 - 2013-08-22 17:36 - 00000000 __RSD () C:\WINDOWS\Media 2014-05-10 14:59 - 2013-08-22 17:36 - 00000000 __RHD () C:\Users\Public\Libraries 2014-05-10 14:54 - 2013-08-22 16:44 - 00375488 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-05-10 14:53 - 2014-05-06 16:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin 2014-05-10 14:53 - 2014-05-03 14:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-05-10 14:53 - 2014-05-03 14:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2014-05-10 14:53 - 2014-03-18 11:40 - 00000000 ____D () C:\WINDOWS\ShellNew 2014-05-10 14:53 - 2013-12-13 19:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mein CEWE FOTOBUCH 2014-05-10 14:53 - 2013-10-26 20:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-05-10 14:53 - 2013-08-22 17:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp 2014-05-10 14:53 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\Help 2014-05-10 14:53 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep 2014-05-10 14:53 - 2013-05-20 09:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2014-05-10 14:53 - 2013-04-28 10:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2014-05-10 14:53 - 2013-03-30 14:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2014-05-10 14:53 - 2012-11-22 11:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Media Maker 9 2014-05-10 14:53 - 2012-11-22 11:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby 2014-05-10 14:53 - 2012-11-22 10:57 - 00000000 ____D () C:\WINDOWS\SysWOW64\Atheros_L1e 2014-05-10 14:53 - 2012-11-22 10:46 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2014-05-10 14:53 - 2012-10-24 07:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink MediaEspresso 6.5 2014-05-10 14:53 - 2012-10-24 07:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EgisTec 2014-05-10 14:53 - 2012-10-24 07:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer 2014-05-10 14:51 - 2014-05-10 14:51 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software 2014-05-10 14:51 - 2014-05-10 14:51 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Garmin 2014-05-10 14:51 - 2014-05-10 14:51 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-05-10 14:51 - 2014-05-10 14:51 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\TuneUp Software 2014-05-10 14:51 - 2014-05-10 14:51 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Garmin 2014-05-10 14:51 - 2014-05-10 14:51 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-05-10 14:51 - 2013-08-22 17:37 - 00004893 _____ () C:\WINDOWS\DtcInstall.log 2014-05-10 14:51 - 2012-07-26 07:37 - 00000000 ____D () C:\Users\Default.migrated 2014-05-10 14:50 - 2014-05-10 14:50 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-10 14:50 - 2014-03-18 11:25 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN 2014-05-10 14:50 - 2014-03-18 11:25 - 00000000 ____D () C:\WINDOWS\SysWOW64\sysprep 2014-05-10 14:50 - 2014-03-18 11:25 - 00000000 ____D () C:\WINDOWS\system32\WCN 2014-05-10 14:50 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz 2014-05-10 14:50 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\IME 2014-05-10 14:50 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns 2014-05-10 14:50 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\spool 2014-05-10 14:50 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\IME 2014-05-10 14:50 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\SMI 2014-05-10 14:50 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\oobe 2014-05-10 14:50 - 2012-11-22 10:56 - 00000000 ____D () C:\WINDOWS\SysWOW64\sda 2014-05-10 14:48 - 2014-05-10 14:38 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-05-10 14:48 - 2014-05-10 14:37 - 00000000 ____D () C:\Program Files\Elantech 2014-05-10 14:48 - 2013-08-26 18:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zune 2014-05-10 14:48 - 2013-08-22 17:43 - 00000000 ____D () C:\WINDOWS\DigitalLocker 2014-05-10 14:48 - 2013-08-22 17:36 - 00000000 __SHD () C:\Program Files\Windows Sidebar 2014-05-10 14:48 - 2013-08-22 17:36 - 00000000 __SHD () C:\Program Files (x86)\Windows Sidebar 2014-05-10 14:48 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\IME 2014-05-10 14:48 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-05-10 14:48 - 2013-07-17 19:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemium 2014-05-10 14:48 - 2012-10-24 06:35 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-05-10 14:48 - 2012-10-24 06:16 - 00000000 ____D () C:\ProgramData\PRICache 2014-05-10 14:46 - 2014-05-10 14:46 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-10 14:46 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery 2014-05-10 14:45 - 2014-05-10 14:44 - 00000000 ___RD () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-10 14:45 - 2014-05-10 14:44 - 00000000 ___RD () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Vorlagen 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Startmenü 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Netzwerkumgebung 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Lokale Einstellungen 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Eigene Dateien 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Druckumgebung 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Documents\Eigene Musik 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Documents\Eigene Bilder 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\AppData\Local\Verlauf 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\AppData\Local\Anwendungsdaten 2014-05-10 14:44 - 2014-05-10 14:44 - 00000000 _SHDL () C:\Users\Ingo\Anwendungsdaten 2014-05-10 14:38 - 2014-05-10 14:38 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM 2014-05-10 14:38 - 2014-05-10 14:38 - 00000000 ____D () C:\Program Files\Realtek 2014-05-10 14:38 - 2013-08-22 16:46 - 00000924 _____ () C:\WINDOWS\setuperr.log 2014-05-10 14:05 - 2013-03-30 13:39 - 01375992 _____ () C:\WINDOWS\WindowsUpdate (1).log 2014-05-09 21:43 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2014-05-08 16:40 - 2013-11-23 19:14 - 00004090 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2014-05-08 16:40 - 2013-11-23 19:14 - 00003854 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2014-05-06 16:32 - 2013-07-17 19:27 - 00000000 ____D () C:\ProgramData\Package Cache 2014-05-06 16:31 - 2014-05-06 16:31 - 00001852 _____ () C:\Users\Public\Desktop\Garmin Express.lnk 2014-05-06 16:31 - 2014-03-20 19:17 - 00003556 _____ () C:\WINDOWS\System32\Tasks\GarminUpdaterTask 2014-05-06 16:31 - 2014-03-20 19:17 - 00000000 ____D () C:\ProgramData\Garmin 2014-05-06 16:31 - 2014-03-20 19:17 - 00000000 ____D () C:\Program Files (x86)\Garmin 2014-05-06 06:40 - 2014-05-14 11:13 - 23544320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-06 05:25 - 2014-05-14 11:13 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-05-06 05:00 - 2014-05-14 11:13 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-06 04:10 - 2014-05-14 11:13 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll Some content of TEMP: ==================== C:\Users\Ingo\AppData\Local\Temp\Checkupdate.exe C:\Users\Ingo\AppData\Local\Temp\Foxit Reader Updater.exe C:\Users\Ingo\AppData\Local\Temp\gcapi_dll.dll C:\Users\Ingo\AppData\Local\Temp\gtapi_signed.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-06-01 10:00 ==================== End Of Log ============================ |
Themen zu Telekom mail und Zip Datei geöffnet |
administrator, adobe, adobe flash player, avg, cid, defender, download, explorer, flash player, home, homepage, launch, malware, mozilla, officejet, pdf, realtek, registry, scan, secure search, services.exe, siteadvisor, software, svchost.exe, system, temp, vtoolbarupdater, windows, winlogon.exe, zip datei geöffnet |