|
Plagegeister aller Art und deren Bekämpfung: Windows Installer Version / RegCleanPro / Flackernder BildschirmWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
24.06.2014, 18:55 | #1 |
| Windows Installer Version / RegCleanPro / Flackernder Bildschirm Hallo ans Board und schon mal vielen Dank vorab. Ich scheine beim Updaten des Betriebssystems von 8.0 auf 8.1 irgendwo einen falschen Haken oder einen falschen Klick gemacht zu haben. Jedenfalls ist das Ergebnis ein zugemüllter Desktop, ewig startende Programme, die installiert werden wollen, sowie, bei Schließen der Programme der vollständige Explorer Absturz mit flackerndem Bildschirm und nur noch leerem Desktop. Einen Scan mit "FRST" habe ich gemacht.... an die Log-Datei komme ich wegen neuerlichem Systemabsturz nicht heran... bzw. kann sie nicht verkleinern, da ich eben den Ordner nicht aus der Oberfläche heraus öffnen kann. Die Addition füge ich bei Vielleicht gibt es ja eine ad hoc Lösung um zumindest wieder "etwas" aus dem Rechner entnehmen zu können... Beste Grüße |
24.06.2014, 18:58 | #2 |
/// the machine /// TB-Ausbilder | Windows Installer Version / RegCleanPro / Flackernder Bildschirm hi,
__________________geht einer der Safe Modes? Systemwiederherstellung? Startreparatur?
__________________ |
24.06.2014, 19:35 | #3 |
| Windows Installer Version / RegCleanPro / Flackernder Bildschirm Hi, ich bekomme keinen blauen Screen, d.h. ich kann, zumindest nicht wie ich das üblicherweise kenne, bei Neustart in den Safe Modus wechseln.
__________________Systemwiederherstellung und Startreparatur sind für mich böhmische Dörfer unter Windows 8. Zumal ich Schwierigkeiten habe überhaupt in die Systemsteuerung zu kommen. Ich habe die FRST jetzt im Editor auf (hat sich zum Glück nach Beendigung des Scans geöffnet) macht es Sinn die Log zu posten und wenn ja, wie? Hier dann die FRST, Teil 1 Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-06-2014 Ran by KaiDaniel (administrator) on 360GRAD-CAD on 24-06-2014 19:41:29 Running from C:\Users\KaiDaniel\Downloads Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (Just Develop It) C:\Program Files (x86)\MyPC Backup\BackupStack.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (CANON INC) C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwisam.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (CANON INC.) C:\Windows\System32\cnwiols6.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Shield Plus) C:\Users\KaiDaniel\AppData\Local\ShieldPlus\spprt\spsvc.exe (AGFEO ) C:\Program Files (x86)\AGFEO\Tk-Suite\tkserver\tksock.exe () C:\Users\KaiDaniel\AppData\Roaming\VOPackage\VOsrv.exe (AGFEO ) C:\Program Files (x86)\AGFEO\Tk-Suite\tkserver\tkmedia.exe (Shield Plus) C:\Users\KaiDaniel\AppData\Local\ShieldPlus\spprt\spprt.exe (Systweak) C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe (hxxp://yourfiledownloader.com) C:\Program Files (x86)\YourFileDownloader Updater\YourFileUpdater.exe (Systweak Inc) C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (CANON INC.) C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwida.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliType Pro\itype.exe (Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe (WIBU-SYSTEMS AG) C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe (Ask) C:\Program Files (x86)\Ask.com\Updater\Updater.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteUser.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [BeatsOSDApp] => C:\Program Files\IDT\WDM\beats64.exe [37888 2012-08-10] (Hewlett-Packard ) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-08-10] (IDT, Inc.) HKLM\...\Run: [CnwiDeviceAgent] => C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwida.exe [72024 2012-03-08] (CANON INC.) HKLM\...\Run: [itype] => c:\Program Files\Microsoft IntelliType Pro\itype.exe [1873256 2011-08-10] (Microsoft Corporation) HKLM\...\Run: [IntelliPoint] => c:\Program Files\Microsoft IntelliPoint\ipoint.exe [2417032 2011-08-01] (Microsoft Corporation) HKLM-x32\...\Run: [CLMLServer_For_P2G8] => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] => c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491120 2012-07-02] (CyberLink Corp.) HKLM-x32\...\Run: [AdobeCS4ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [37232 2008-06-12] (Adobe Systems Incorporated) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [640376 2008-06-11] (Adobe Systems Inc.) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-06] (Apple Inc.) HKLM-x32\...\Run: [AVP] => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\runner_avp.exe [24504 2012-10-25] (Kaspersky Lab ZAO) HKLM-x32\...\Run: [ApnUpdater] => C:\Program Files (x86)\Ask.com\Updater\Updater.exe [1646216 2013-03-31] (Ask) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [Nikon Message Center 2] => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [619008 2010-05-25] (Nikon Corporation) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.) HKLM-x32\...\Run: [Adobe_ID0ENQBO] => C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4Tray.exe [378224 2008-08-15] (Adobe Systems Incorporated) HKLM\...\RunOnce: [NCPluginUpdater] - "C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe" Update [21720 2014-06-10] (Hewlett-Packard) HKU\S-1-5-21-2079055139-1285045084-989151624-1001\...\Run: [BlockAndSurf] => C:\Program Files (x86)\-BlockAndSurfS\BlockAndSurf.exe [131072 2014-06-24] () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\imagePROGRAF Status Monitor.lnk ShortcutTarget: imagePROGRAF Status Monitor.lnk -> C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwism.exe (CANON INC.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Netzwerk Server.lnk ShortcutTarget: Netzwerk Server.lnk -> C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe (WIBU-SYSTEMS AG) Startup: C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk ShortcutTarget: MyPC Backup.lnk -> C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (MyPCBackup.com) ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => No File ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => No File ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => No File GroupPolicy: Group Policy on Chrome detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.buenosearch.com/?babsrc=HP_ss&mntrId=061220107A8E370A&affID=128236&tsp=5288 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPDSK13/4 HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = hxxp://www.holasearch.com/?babsrc=HP_ss&mntrId=061220107A8E370A&affID=121962&tsp=4921 HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = hxxp://g.uk.msn.com/HPDSK13/4 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPDSK13/4 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPDSK13/4 URLSearchHook: HKCU - UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF SearchScopes: HKLM - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF SearchScopes: HKLM - {BD29511F-F874-44DF-A0D9-801CBDD90D91} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS SearchScopes: HKLM-x32 - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF SearchScopes: HKLM-x32 - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF SearchScopes: HKLM-x32 - {BD29511F-F874-44DF-A0D9-801CBDD90D91} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=HPDTDFJS SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www.buenosearch.com/?q={searchTerms}&babsrc=SP_ss&mntrId=061220107A8E370A&affID=128236&tsp=5288 SearchScopes: HKCU - {1194E3B4-66A9-4249-8DA7-D105126C6DB9} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYDE&apn_uid=192DBEF6-9F3E-43E8-A206-2AB001396579&apn_sauid=C78BE97A-312D-4B5F-AF97-916BCAB557F0 SearchScopes: HKCU - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF SearchScopes: HKCU - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF SearchScopes: HKCU - {BD29511F-F874-44DF-A0D9-801CBDD90D91} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKCU - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO-x32: BlockAndSurf - {B951BB82-0755-4447-82A0-A97FB850CF59} - C:\Program Files (x86)\-BlockAndSurfS\174.dll () BHO-x32: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard) BHO-x32: buenosearch Helper Object - {F1C81E40-2485-4DB6-8C9D-04BD596B281E} - C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\bh\buenosearch.dll (Montiera Technologies LTD) BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask) Toolbar: HKLM-x32 - buenosearch Toolbar - {828DC97A-2277-4E10-92A9-4907FA0922A9} - C:\Program Files (x86)\buenosearch LTD\buenosearch\1.8.28.7\buenosearchTlbr.dll (Montiera Technologies LTD) Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\SYSTEM\OLE DB\msdaipp.dll (Microsoft Corporation) Tcpip\..\Interfaces\{B32F1E35-2A52-427E-8747-E141B6498B13}: [NameServer]192.168.0.254 FireFox: ======== FF ProfilePath: C:\Users\KaiDaniel\AppData\Roaming\Mozilla\Firefox\Profiles\mrod1io4.default FF NewTab: hxxp://www.buenosearch.com/?babsrc=NT_ss&mntrId=061220107A8E370A&affID=128236&tsp=5288 FF SearchEngineOrder.1: Hola Search FF SelectedSearchEngine: Google FF Homepage: hxxp://www.buenosearch.com/?babsrc=HP_ss&mntrId=061220107A8E370A&affID=128236&tsp=5288 FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF user.js: detected! => C:\Users\KaiDaniel\AppData\Roaming\Mozilla\Firefox\Profiles\mrod1io4.default\user.js FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFFICE.DLL (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.) FF SearchPlugin: C:\Users\KaiDaniel\AppData\Roaming\Mozilla\Firefox\Profiles\mrod1io4.default\searchplugins\babylon.xml FF SearchPlugin: C:\Users\KaiDaniel\AppData\Roaming\Mozilla\Firefox\Profiles\mrod1io4.default\searchplugins\BrowserDefender.xml FF SearchPlugin: C:\Users\KaiDaniel\AppData\Roaming\Mozilla\Firefox\Profiles\mrod1io4.default\searchplugins\buenosearch.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: BuenoSearch - C:\Users\KaiDaniel\AppData\Roaming\Mozilla\Firefox\Profiles\mrod1io4.default\Extensions\ffxtlbr@buenosearch.com [2014-06-24] FF Extension: TowerTilt - C:\Users\KaiDaniel\AppData\Roaming\Mozilla\Firefox\Profiles\mrod1io4.default\Extensions\{587cb346-a3d8-4884-b39b-f0ed918b6f96}.xpi [2014-04-19] FF HKLM-x32\...\Firefox\Extensions: - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com [2013-02-07] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com [2013-02-07] FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com [2013-02-07] FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com [2013-02-07] FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com [2013-02-07] FF HKCU\...\Firefox\Extensions: [{F9284789-64BB-F450-69FD-06C1A64698F6}] - C:\Program Files (x86)\-BlockAndSurfS\174.xpi FF Extension: BlockAndSurf - C:\Program Files (x86)\-BlockAndSurfS\174.xpi [2014-06-24] Chrome: ======= CHR HomePage: hxxp://www.buenosearch.com/?babsrc=HP_ss&mntrId=061220107A8E370A&affID=128236&tsp=5288 CHR StartupUrls: "hxxp://www.buenosearch.com/?babsrc=HP_ss&mntrId=061220107A8E370A&affID=128236&tsp=5288", "hxxp://www.holasearch.com/?babsrc=HP_ss&mntrId=061220107A8E370A&affID=121962&tsp=4921" CHR DefaultSearchKeyword: buenosearch.com CHR DefaultSearchProvider: Bueno Search CHR DefaultSearchURL: hxxp://www.buenosearch.com/?q={searchTerms}&babsrc=SP_ss&mntrId=061220107A8E370A&affID=128236&tsp=5288 CHR DefaultNewTabURL: CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll () CHR Plugin: (Norton Identity Safe) - C:\Users\KaiDaniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2013.2.0.18_0\npcoplgn.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Java Deployment Toolkit 6.0.230.5) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll No File CHR Plugin: (Java(TM) Platform SE 6 U23) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll No File CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Inc.) CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll No File CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll No File CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.124\npGoogleUpdate3.dll No File CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel® Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Shockwave Flash) - C:\windows\system32\Macromed\Flash\NPSWF32.dll No File CHR Extension: (Google Drive) - C:\Users\KaiDaniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2012-11-10] CHR Extension: (YouTube) - C:\Users\KaiDaniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-11-10] CHR Extension: (Google-Suche) - C:\Users\KaiDaniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-11-10] CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\KaiDaniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2013-02-14] CHR Extension: (hola Toolbar) - C:\Users\KaiDaniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\fagpjgjmoaccgkkpjeoinehnoaimnbla [2013-06-22] CHR Extension: (Sicherer Zahlungsverkehr) - C:\Users\KaiDaniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh [2013-02-14] CHR Extension: (Modul für das Blockieren gefährlicher Webseiten) - C:\Users\KaiDaniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail [2013-02-14] CHR Extension: (Virtuelle Tastatur) - C:\Users\KaiDaniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2013-02-14] CHR Extension: (Google Wallet) - C:\Users\KaiDaniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-26] CHR Extension: (Google Mail) - C:\Users\KaiDaniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-11-10] CHR Extension: (Anti-Banner) - C:\Users\KaiDaniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2013-02-14] CHR Extension: (BlockAndSurf) - C:\Users\KaiDaniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ponenflngpikgjedgkccpodbdheedeoh [2014-06-24] CHR HKLM-x32\...\Chrome\Extension: [aaaaojmikegpiepcfdkkjaplodkpfmlo] - C:\Users\KaiDaniel\AppData\Local\APN\GoogleCRXs\apnorjtoolbar.crx [2013-03-31] CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\urladvisor.crx [2012-10-25] CHR HKLM-x32\...\Chrome\Extension: [fagpjgjmoaccgkkpjeoinehnoaimnbla] - C:\Users\KaiDaniel\AppData\Roaming\BabSolution\CR\hola.crx [2013-06-22] CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\online_banking_chrome.crx [2012-10-25] CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\content_blocker_chrome.crx [2012-10-25] CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\virtkbd.crx [2012-10-25] CHR HKLM-x32\...\Chrome\Extension: [lpoimibckejjdjcfbdnajaicnklhfplh] - https://chrome.google.com/webstore/detail/lpoimibckejjdjcfbdnajaicnklhfplh [2012-10-25] CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\ab.crx [2012-10-25] ==================== Services (Whitelisted) ================= S3 Adobe Version Cue CS4; C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [284016 2008-08-15] (Adobe Systems Incorporated) R2 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [239616 2014-06-10] (AMD) [File not signed] R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356128 2013-10-09] (Kaspersky Lab ZAO) R2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [36424 2014-06-18] (Just Develop It) R2 Canon imagePROGRAF Status Monitor; C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwisam.exe [752472 2012-03-08] (CANON INC) R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed] R2 HPConnectedRemote; c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPConnectedRemoteService.exe [35232 2012-08-29] (Hewlett-Packard) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed] R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-18] (Intel Corporation) R2 iPFDeviceAgentService; C:\windows\system32\cnwiols6.exe [206848 2012-01-17] (CANON INC.) [File not signed] R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation) R2 Service; C:\Users\KaiDaniel\AppData\Local\ShieldPlus\spprt\spsvc.exe [134656 2014-06-12] (Shield Plus) [File not signed] S2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [321536 2012-08-10] (IDT, Inc.) [File not signed] R2 tksock; C:\Program Files (x86)\AGFEO\Tk-Suite\tkserver\tksock.exe [2220664 2013-08-20] (AGFEO ) R2 vosr; C:\Users\KaiDaniel\AppData\Roaming\VOPackage\VOsrv.exe [53248 2014-05-20] () [File not signed] S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-06-24] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-06-24] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-06-24] (Microsoft Corporation) Code:
ATTFilter ==================== Drivers (Whitelisted) ==================== S3 amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [13209088 2014-06-10] (Advanced Micro Devices, Inc.) [File not signed] S3 amdkmdap; C:\Windows\system32\DRIVERS\atikmpag.sys [626688 2014-06-10] (Advanced Micro Devices, Inc.) [File not signed] R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [98744 2014-02-28] (Advanced Micro Devices) [File not signed] R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink) R3 isdncapi; C:\Windows\system32\DRIVERS\isdncapi.sys [663744 2013-12-20] (AGFEO GmbH & Co. KG) R3 isdnusb; C:\Windows\system32\DRIVERS\isdnusb.sys [298560 2013-12-20] (AGFEO GmbH & Co. KG) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2013-12-10] (Kaspersky Lab ZAO) S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29616 2012-07-27] (Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [627296 2014-05-30] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\system32\DRIVERS\klim6.sys [30304 2013-12-10] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [29280 2013-10-09] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [29280 2013-10-09] (Kaspersky Lab ZAO) R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [50448 2013-04-22] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [178448 2013-04-22] (Kaspersky Lab ZAO) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-06-24] (Microsoft Corporation) R2 webinstr; C:\WINDOWS\system32\Drivers\webinstr.sys [57528 2014-06-08] (Corsica) R2 WIBUKEY; C:\Windows\System32\DRIVERS\WibuKey64.sys [103224 2009-12-03] (WIBU-SYSTEMS AG) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-06-24 19:41 - 2014-06-24 19:41 - 02082816 _____ (Farbar) C:\Users\KaiDaniel\Downloads\FRST64.exe 2014-06-24 19:41 - 2014-06-24 19:41 - 00034717 _____ () C:\Users\KaiDaniel\Downloads\FRST.txt 2014-06-24 19:41 - 2014-06-24 19:41 - 00000000 ____D () C:\FRST 2014-06-24 19:32 - 2014-06-24 19:32 - 01073152 _____ (Farbar) C:\Users\KaiDaniel\Downloads\FRST.exe 2014-06-24 17:17 - 2014-06-24 17:19 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-06-24 14:50 - 2014-05-19 08:31 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-06-24 14:50 - 2014-05-19 08:21 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-06-24 14:50 - 2014-05-19 07:23 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe 2014-06-24 13:34 - 2014-06-24 13:34 - 00985766 _____ () C:\Users\KaiDaniel\Downloads\setup.exe 2014-06-24 13:33 - 2014-06-24 13:33 - 00038064 _____ (Microsoft Corporation) C:\Users\KaiDaniel\Downloads\clearcompressionflag.exe 2014-06-24 13:15 - 2014-06-24 13:16 - 01251238 _____ () C:\Users\KaiDaniel\Downloads\Windows8.1-KB2939087-x64.msu 2014-06-24 12:46 - 2014-06-24 17:56 - 00001150 _____ () C:\Users\KaiDaniel\Desktop\Continue VuuPC Installation.lnk 2014-06-24 12:39 - 2014-06-24 19:33 - 00003120 _____ () C:\WINDOWS\System32\Tasks\Advanced System Protector_startup 2014-06-24 12:37 - 2014-06-24 12:37 - 00001983 _____ () C:\Users\KaiDaniel\Desktop\Sync Folder.lnk 2014-06-24 12:36 - 2014-06-24 15:01 - 00000308 _____ () C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job 2014-06-24 12:36 - 2014-06-24 12:51 - 00000000 ____D () C:\Program Files (x86)\MyPC Backup 2014-06-24 12:36 - 2014-06-24 12:50 - 00000316 _____ () C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job 2014-06-24 12:36 - 2014-06-24 12:36 - 00003408 _____ () C:\WINDOWS\System32\Tasks\EPUpdater 2014-06-24 12:36 - 2014-06-24 12:36 - 00003052 _____ () C:\WINDOWS\System32\Tasks\RegClean Pro_UPDATES 2014-06-24 12:36 - 2014-06-24 12:36 - 00002896 _____ () C:\WINDOWS\System32\Tasks\RegClean Pro_DEFAULT 2014-06-24 12:36 - 2014-06-24 12:36 - 00001215 _____ () C:\Users\Public\Desktop\Advanced System Protector.lnk 2014-06-24 12:36 - 2014-06-24 12:36 - 00001101 _____ () C:\Users\KaiDaniel\Desktop\MyPC Backup.lnk 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\VOPackage 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\buenosearch LTD 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Local\ShieldPlus 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\ProgramData\Systweak 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Program Files (x86)\buenosearch LTD 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Program Files (x86)\Advanced System Protector 2014-06-24 12:36 - 2012-07-25 12:03 - 00016896 _____ () C:\WINDOWS\system32\sasnative64.exe 2014-06-24 12:35 - 2014-06-24 19:34 - 00003108 _____ () C:\WINDOWS\System32\Tasks\RegClean Pro 2014-06-24 12:35 - 2014-06-24 19:31 - 00000450 _____ () C:\WINDOWS\Tasks\BlockAndSurf Update.job 2014-06-24 12:35 - 2014-06-24 19:31 - 00000428 _____ () C:\WINDOWS\Tasks\BlockAndSurf_wd.job 2014-06-24 12:35 - 2014-06-24 12:37 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\Systweak 2014-06-24 12:35 - 2014-06-24 12:35 - 00003098 _____ () C:\WINDOWS\System32\Tasks\BlockAndSurf Update 2014-06-24 12:35 - 2014-06-24 12:35 - 00003016 _____ () C:\WINDOWS\System32\Tasks\BlockAndSurf_wd 2014-06-24 12:35 - 2014-06-24 12:35 - 00001866 _____ () C:\Users\KaiDaniel\Desktop\Search.lnk 2014-06-24 12:35 - 2014-06-24 12:35 - 00001064 _____ () C:\Users\Public\Desktop\RegClean Pro.lnk 2014-06-24 12:35 - 2014-06-24 12:35 - 00000306 __RSH () C:\ProgramData\ntuser.pol 2014-06-24 12:35 - 2014-06-24 12:35 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_webinstr_01009.Wdf 2014-06-24 12:35 - 2014-06-24 12:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro 2014-06-24 12:35 - 2014-06-24 12:35 - 00000000 ____D () C:\ProgramData\DSearchLink 2014-06-24 12:35 - 2014-06-24 12:35 - 00000000 ____D () C:\Program Files (x86)\RegClean Pro 2014-06-24 12:35 - 2014-06-24 12:35 - 00000000 ____D () C:\Program Files (x86)\-BlockAndSurfS 2014-06-24 12:35 - 2014-06-08 15:38 - 00057528 _____ (Corsica) C:\WINDOWS\system32\Drivers\webinstr.sys 2014-06-24 11:32 - 2014-06-24 19:31 - 00000000 __RDO () C:\Users\KaiDaniel\OneDrive 2014-06-24 11:30 - 2014-06-24 11:30 - 00001452 _____ () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-06-24 11:30 - 2014-06-24 11:30 - 00000020 ___SH () C:\Users\KaiDaniel\ntuser.ini 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-06-24 11:22 - 2014-06-24 11:22 - 00022960 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-06-24 11:19 - 2014-06-24 11:31 - 00000000 ___DC () C:\WINDOWS\Panther 2014-06-24 11:19 - 2014-06-24 11:19 - 00000000 __SHD () C:\Recovery 2014-06-24 11:18 - 2014-06-24 11:18 - 23414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 17271296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 13522944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 11725312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 05782528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 04244992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-06-24 11:18 - 2014-06-24 11:18 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-06-24 11:18 - 2014-06-24 11:18 - 01790976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 01398272 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 01143296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-06-24 11:18 - 2014-06-24 11:18 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-06-24 11:18 - 2014-06-24 11:18 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe 2014-06-24 11:18 - 2014-06-24 11:18 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe 2014-06-24 11:18 - 2014-06-24 11:18 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-06-24 11:18 - 2014-06-24 11:18 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2014-06-24 11:18 - 2014-06-24 11:18 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00000000 ____D () C:\Windows.old 2014-06-24 11:17 - 2014-06-24 11:17 - 03118080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll 2014-06-24 11:17 - 2014-06-24 11:17 - 03048904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe 2014-06-24 11:17 - 2014-06-24 11:17 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll 2014-06-24 11:17 - 2014-06-24 11:17 - 02834944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll 2014-06-24 11:17 - 2014-06-24 11:17 - 02518872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-06-24 11:17 - 2014-06-24 11:17 - 02344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll 2014-06-24 11:17 - 2014-06-24 11:17 - 01336648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-06-24 11:17 - 2014-06-24 11:17 - 01064448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2014-06-24 11:17 - 2014-06-24 11:17 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-06-24 11:17 - 2014-06-24 11:17 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys 2014-06-24 11:17 - 2014-06-24 11:17 - 00055328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 02900992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02641920 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02479616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02373784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-06-24 11:16 - 2014-06-24 11:16 - 02331000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02141912 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02133504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2014-06-24 11:16 - 2014-06-24 11:16 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02013016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01557848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 01542768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01291200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01112536 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-06-24 11:16 - 2014-06-24 11:16 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00924160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00836096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-06-24 11:16 - 2014-06-24 11:16 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00655360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-06-24 11:16 - 2014-06-24 11:16 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00518552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00488280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00467800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-06-24 11:16 - 2014-06-24 11:16 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-06-24 11:16 - 2014-06-24 11:16 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-06-24 11:16 - 2014-06-24 11:16 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00379224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00360512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00356848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL 2014-06-24 11:16 - 2014-06-24 11:16 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spp.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00157016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00136024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00113648 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-06-24 11:16 - 2014-06-24 11:16 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe 2014-06-24 11:16 - 2014-06-24 11:16 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\l2gpstore.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxproxy.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 03464192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 03360256 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 02151424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 01975296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 01705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 01509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 01312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00086688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt_map.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-06-24 11:15 - 2014-06-24 11:15 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-06-24 11:15 - 2014-06-24 11:15 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-06-24 11:15 - 2014-06-24 11:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2014-06-24 11:15 - 2014-06-24 11:15 - 00028320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt100.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 21268952 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 16872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 08652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 07173120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 06645248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 04269056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-06-24 11:14 - 2014-06-24 11:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-06-24 11:14 - 2014-06-24 11:14 - 02688000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 02124840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01466856 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01403856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01308160 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01287168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01025024 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00955904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00918528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00881616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00805376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00765408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00718336 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00609448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00589656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00565536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00491744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-06-24 11:14 - 2014-06-24 11:14 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00467496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00463256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00407016 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00384856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2014-06-24 11:14 - 2014-06-24 11:14 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00360792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00337240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00324888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00310616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00307304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00275800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00263424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00257880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00244880 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00201920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00180056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00125496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00123224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srclient.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tlscsp.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00032600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00028408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-06-24 11:13 - 2014-06-24 11:13 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\x2gchax.inf_amd64_50469f484f0a51e2 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\wibukeyusb.inf_amd64_5fba4c38c57aa9da 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\usbaapl64.inf_amd64_ca639d07023cb608 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\type64.inf_amd64_11024cee28a7fa81 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\trans64.inf_amd64_77c46313d357e391 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\tixhcifilters.inf_amd64_165d6808e1d42418 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\rt630x64.inf_amd64_c75983774c53f229 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\prnxx005.inf_amd64_5371ccab1f1e28a0 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\point64.inf_amd64_b1cf5e889e918ca6 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\pantusb3.inf_amd64_9f6ebbc99ad3c1ad 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\pantusb.inf_amd64_e202f13feac690f3 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\pantsmb.inf_amd64_3dc673d098e4bc14 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\okb3f04j.inf_amd64_d7a7b5780f658a37 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\okb3c04j.inf_amd64_df287d738d1dae81 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\oemfxa5b.inf_amd64_18ccdf2e959f07f8 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\nuidfltr.inf_amd64_a071a87dc95c1c15 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\netr28x.inf_amd64_e61e7223869792f8 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\netr28x.inf_amd64_dbf5d6abb6ebcb05 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\netaapl64.inf_amd64_56f23639c9617984 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\klim6.inf_amd64_2ecffe9809c9d639 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\itpcdless.inf_amd64_f3417ba4359ff28e 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\itpcdless.inf_amd64_a48caa4e7850dd04 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\itpcdless.inf_amd64_a2c686c9ab29cacf 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\itpcdless.inf_amd64_393a7620d4d8b516 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\isdnusb.inf_amd64_575c1d3dc3565de9 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\isdncapi.inf_amd64_4ff45d7d705bddbc 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\ipcdless.inf_amd64_a27e8462c1f541a4 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\ipcdless.inf_amd64_635da1077258556d 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\ipcdless.inf_amd64_579438e14331de5e 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\ipcdless.inf_amd64_165412f37e9f9224 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\hp630x64.inf_amd64_06a0fdf35dac01f5 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\heci.inf_amd64_88551c2afe06d607 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\dc3du.inf_amd64_74c6c3670a9a8e89 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\dc3dh.inf_amd64_73d3d011f5a03306 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\cu171190.inf_amd64_0ac955a49dab3963 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\cougsmb.inf_amd64_aa127b372b0f77c8 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\c8158172.inf_amd64_4fda26e3713399a5 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\c8143426.inf_amd64_ef6b1e261f0c5c73 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\brwnbh9.inf_amd64_a2f3c199b2180fb7 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\atihdw86.inf_amd64_63d176b271e79adf 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\atihdw86.inf_amd64_61b2cda9ab95ec24 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\amdkmafd.inf_amd64_0fd0350fc7f9099a 2014-06-24 11:12 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\6wjf07m.inf_amd64_34a3402d890eef06 2014-06-24 11:11 - 2014-06-24 11:11 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2014-06-24 11:11 - 2014-06-24 11:11 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2014-06-24 11:11 - 2014-06-24 11:11 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer 2014-06-24 11:11 - 2014-06-24 11:11 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-06-24 11:11 - 2014-06-24 11:11 - 00000000 ____D () C:\Program Files\MSBuild 2014-06-24 11:11 - 2014-06-24 11:11 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies 2014-06-24 11:11 - 2014-06-24 11:11 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-06-24 11:11 - 2014-06-24 11:11 - 00000000 ____D () C:\inetpub 2014-06-24 11:11 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\stwrt64.inf_amd64_db6d31a104396580 2014-06-24 11:11 - 2014-06-24 10:20 - 00000000 ____D () C:\Users\Public\Desktop\prnms001.inf_amd64_0cd521d4577bd465 2014-06-24 11:11 - 2013-08-03 06:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2014-06-24 11:11 - 2013-08-03 06:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-06-24 11:11 - 2013-08-03 06:48 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2014-06-24 11:11 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2014-06-24 11:11 - 2013-08-03 06:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-06-24 11:11 - 2013-08-03 06:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2014-06-24 10:35 - 2014-06-24 10:35 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-06-24 10:35 - 2014-06-24 10:35 - 00000000 ____D () C:\Users\Default\Documents\hp.system.package.metadata 2014-06-24 10:35 - 2014-06-24 10:35 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-06-24 10:35 - 2014-06-24 10:35 - 00000000 ____D () C:\Users\Default User\Documents\hp.system.package.metadata 2014-06-24 10:35 - 2014-06-24 10:35 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-06-24 10:34 - 2014-06-24 19:29 - 01247743 _____ () C:\WINDOWS\WindowsUpdate.log 2014-06-24 10:29 - 2014-06-24 10:29 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-06-24 10:28 - 2014-06-24 19:29 - 00000000 ____D () C:\Users\KaiDaniel 2014-06-24 10:28 - 2014-06-24 11:23 - 00026673 _____ () C:\WINDOWS\diagwrn.xml 2014-06-24 10:28 - 2014-06-24 11:23 - 00026673 _____ () C:\WINDOWS\diagerr.xml 2014-06-24 10:28 - 2014-06-24 10:29 - 00000000 ___RD () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-06-24 10:28 - 2014-06-24 10:29 - 00000000 ___RD () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Vorlagen 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Startmenü 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Netzwerkumgebung 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Lokale Einstellungen 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Eigene Dateien 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Druckumgebung 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Documents\Eigene Musik 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Documents\Eigene Bilder 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\AppData\Local\Verlauf 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\AppData\Local\Anwendungsdaten 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Anwendungsdaten 2014-06-24 10:28 - 2014-03-18 12:11 - 00000369 _____ () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2014-06-24 10:28 - 2014-03-18 12:11 - 00000369 _____ () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2014-06-24 10:28 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-06-24 10:28 - 2013-08-22 17:36 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-06-24 10:23 - 2014-06-24 10:23 - 01914374 _____ () C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2014-06-24 10:22 - 2014-06-24 10:29 - 00012096 _____ () C:\WINDOWS\iis.log 2014-06-24 10:21 - 2014-06-24 10:21 - 00000000 ____D () C:\AMD 2014-06-24 10:21 - 2014-06-24 10:21 - 00000000 _____ () C:\WINDOWS\ativpsrm.bin 2014-06-24 10:20 - 2014-06-24 10:20 - 00000000 ____D () C:\Program Files\AMD 2014-06-24 09:59 - 2014-06-24 11:23 - 00006666 _____ () C:\WINDOWS\comsetup.log 2014-06-20 11:05 - 2014-06-20 11:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-06-19 09:03 - 2014-06-19 09:03 - 01058200 _____ (Adobe) C:\Users\KaiDaniel\Downloads\install_flashplayer14x32au_mssa_aaa_aih.exe 2014-06-16 15:37 - 2013-12-20 16:50 - 00663744 _____ (AGFEO GmbH & Co. KG) C:\WINDOWS\system32\Drivers\isdncapi.sys 2014-06-16 15:37 - 2013-12-20 16:50 - 00298560 _____ (AGFEO GmbH & Co. KG) C:\WINDOWS\system32\Drivers\isdnusb.sys 2014-06-16 15:37 - 2013-12-20 16:50 - 00175808 _____ (AGFEO GmbH & Co. KG) C:\WINDOWS\system32\isdnpp.dll 2014-06-16 15:37 - 2013-12-20 16:50 - 00138432 _____ (AGFEO GmbH & Co. KG) C:\WINDOWS\system32\capicoi.dll 2014-06-16 15:37 - 2013-12-20 16:50 - 00108224 _____ (AGFEO GmbH & Co. KG) C:\WINDOWS\capi2064.dll 2014-06-16 15:37 - 2013-12-20 16:50 - 00098496 _____ (AGFEO GmbH & Co. KG) C:\WINDOWS\SysWOW64\capi2032.dll 2014-06-16 15:37 - 2013-12-20 16:50 - 00058560 _____ (AGFEO GmbH & Co. KG) C:\WINDOWS\system32\isdnclsi.dll 2014-06-16 13:37 - 2014-06-16 13:37 - 00000000 ____D () C:\agfeo_usb_64bit 2014-06-16 13:36 - 2014-06-16 13:37 - 03720192 _____ () C:\Users\KaiDaniel\Downloads\AGFEO_USB64bit_1008.exe 2014-06-16 13:35 - 2014-06-24 10:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AGFEO TK-Suite 2014-06-16 13:35 - 2014-06-16 13:35 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\AGFEO 2014-06-16 13:34 - 2014-06-16 13:38 - 00000000 ____D () C:\Program Files (x86)\AGFEO 2014-06-16 13:34 - 2014-06-16 13:34 - 00000000 ____D () C:\AGFEO 2014-06-11 11:53 - 2014-06-11 11:58 - 245913417 _____ () C:\Users\KaiDaniel\Downloads\SSP-WBS.zip 2014-06-10 00:52 - 2014-06-10 00:52 - 29382144 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 26352128 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 24860160 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 22157824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 15716352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 14302208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 13209088 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys 2014-06-10 00:52 - 2014-06-10 00:52 - 09753752 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 08927704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 08406024 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 08287008 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 07751920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 06630232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 03461040 _____ () C:\WINDOWS\SysWOW64\atiumdva.cap 2014-06-10 00:52 - 2014-06-10 00:52 - 03426688 _____ () C:\WINDOWS\system32\atiumd6a.cap 2014-06-10 00:52 - 2014-06-10 00:52 - 01318552 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 01187342 _____ () C:\WINDOWS\system32\amdocl_as64.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 01144320 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 01100216 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 01061902 _____ () C:\WINDOWS\system32\amdocl_ld64.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00995342 _____ () C:\WINDOWS\SysWOW64\amdocl_as32.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00825344 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00798734 _____ () C:\WINDOWS\SysWOW64\amdocl_ld32.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00721296 _____ () C:\WINDOWS\system32\atiicdxx.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00626688 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys 2014-06-10 00:52 - 2014-06-10 00:52 - 00588288 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00550464 _____ () C:\WINDOWS\SysWOW64\atiapfxx.blb 2014-06-10 00:52 - 2014-06-10 00:52 - 00550464 _____ () C:\WINDOWS\system32\atiapfxx.blb 2014-06-10 00:52 - 2014-06-10 00:52 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00412672 _____ () C:\WINDOWS\system32\amdmiracast.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00239616 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00234036 _____ () C:\WINDOWS\system32\ativvaxy_cik.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00233776 _____ () C:\WINDOWS\system32\ativvaxy_cik_nd.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00230912 _____ () C:\WINDOWS\system32\clinfo.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00204952 _____ () C:\WINDOWS\SysWOW64\ativvsvl.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00204952 _____ () C:\WINDOWS\system32\ativvsvl.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00190976 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00157144 _____ () C:\WINDOWS\SysWOW64\ativvsva.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00157144 _____ () C:\WINDOWS\system32\ativvsva.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00143304 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00134656 _____ () C:\WINDOWS\system32\amdhdl64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00129536 _____ (AMD) C:\WINDOWS\system32\coinst_13.251.9001.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00123392 _____ () C:\WINDOWS\SysWOW64\amdhdl32.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atibtmon.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00115512 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00100352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00099840 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OpenVideo64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00098496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00096768 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00086528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OVDecode64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00083968 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OpenVideo.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00083552 _____ () C:\WINDOWS\system32\ativce02.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00074752 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00073728 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OVDecode.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00063488 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00057344 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00047887 _____ () C:\WINDOWS\atiogl.xml 2014-06-10 00:52 - 2014-06-10 00:52 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00031232 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00003917 _____ () C:\WINDOWS\SysWOW64\atipblag.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00003917 _____ () C:\WINDOWS\system32\atipblag.dat 2014-06-05 11:02 - 2014-06-23 10:50 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox.bak 2014-06-04 12:24 - 2014-06-04 12:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-06-04 12:17 - 2014-06-04 12:17 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\Windows Live Writer 2014-06-04 12:17 - 2014-06-04 12:17 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Local\Windows Live Writer 2014-06-04 12:15 - 2014-06-04 12:15 - 01245384 _____ (Microsoft Corporation) C:\Users\KaiDaniel\Downloads\wlsetup-web (1).exe 2014-06-04 12:13 - 2014-06-04 12:15 - 00000000 ____D () C:\Users\KaiDaniel\Tracing 2014-06-04 12:11 - 2014-06-24 10:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live 2014-06-04 12:11 - 2014-06-24 10:36 - 00000000 ____D () C:\WINDOWS\en 2014-06-04 12:11 - 2014-06-24 10:36 - 00000000 ____D () C:\WINDOWS\de 2014-06-04 12:11 - 2014-06-04 12:11 - 00001460 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk 2014-06-04 12:11 - 2014-06-04 12:11 - 00001376 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk 2014-06-04 12:11 - 2014-06-04 12:11 - 00001307 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk 2014-06-04 12:10 - 2014-06-04 12:10 - 00002488 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk 2014-06-04 12:10 - 2014-06-04 12:10 - 00000000 ____D () C:\Program Files\Windows Live 2014-06-04 12:09 - 2014-06-24 11:32 - 00000000 ___RD () C:\Users\KaiDaniel\OneDrive.old 2014-06-04 12:09 - 2014-06-04 12:09 - 00002223 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2014-06-04 12:09 - 2014-06-04 12:09 - 00002223 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2014-06-04 12:09 - 2014-06-04 12:09 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2014-06-04 12:09 - 2014-06-04 12:09 - 00000000 ____D () C:\Program Files (x86)\Microsoft OneDrive 2014-06-04 12:09 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_7.dll 2014-06-04 12:09 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_7.dll 2014-06-04 12:09 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_5.dll 2014-06-04 12:09 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_5.dll 2014-06-04 12:09 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_43.dll 2014-06-04 12:09 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_43.dll 2014-06-04 12:09 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll 2014-06-04 12:09 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll 2014-06-04 12:08 - 2014-06-04 12:24 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Local\Windows Live 2014-06-04 12:07 - 2014-06-04 12:08 - 01245384 _____ (Microsoft Corporation) C:\Users\KaiDaniel\Downloads\wlsetup-web.exe 2014-06-04 10:16 - 2014-06-04 10:16 - 00335006 _____ () C:\Users\KaiDaniel\Downloads\x-tend_mw40_randrohr.dxf 2014-06-04 10:15 - 2014-06-04 10:15 - 00057344 _____ () C:\Users\KaiDaniel\Downloads\x-tend-checklist.xls 2014-05-30 11:44 - 2014-05-30 11:44 - 00000521 _____ () C:\Users\KaiDaniel\Desktop\Netzwerk- und Freigabecenter - Verknüpfung.lnk ==================== One Month Modified Files and Folders ======= 2014-06-24 19:41 - 2014-06-24 19:41 - 02082816 _____ (Farbar) C:\Users\KaiDaniel\Downloads\FRST64.exe 2014-06-24 19:41 - 2014-06-24 19:41 - 00034717 _____ () C:\Users\KaiDaniel\Downloads\FRST.txt 2014-06-24 19:41 - 2014-06-24 19:41 - 00000000 ____D () C:\FRST 2014-06-24 19:36 - 2014-03-18 12:03 - 01989598 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-06-24 19:36 - 2014-03-18 11:25 - 00844836 _____ () C:\WINDOWS\system32\perfh007.dat 2014-06-24 19:36 - 2014-03-18 11:25 - 00192568 _____ () C:\WINDOWS\system32\perfc007.dat 2014-06-24 19:34 - 2014-06-24 12:35 - 00003108 _____ () C:\WINDOWS\System32\Tasks\RegClean Pro 2014-06-24 19:33 - 2014-06-24 12:39 - 00003120 _____ () C:\WINDOWS\System32\Tasks\Advanced System Protector_startup 2014-06-24 19:32 - 2014-06-24 19:32 - 01073152 _____ (Farbar) C:\Users\KaiDaniel\Downloads\FRST.exe 2014-06-24 19:32 - 2013-02-07 15:16 - 00000000 ____D () C:\ProgramData\Kaspersky Lab 2014-06-24 19:31 - 2014-06-24 12:35 - 00000450 _____ () C:\WINDOWS\Tasks\BlockAndSurf Update.job 2014-06-24 19:31 - 2014-06-24 12:35 - 00000428 _____ () C:\WINDOWS\Tasks\BlockAndSurf_wd.job 2014-06-24 19:31 - 2014-06-24 11:32 - 00000000 __RDO () C:\Users\KaiDaniel\OneDrive 2014-06-24 19:31 - 2012-11-10 14:48 - 00001136 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-06-24 19:30 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-06-24 19:29 - 2014-06-24 10:34 - 01247743 _____ () C:\WINDOWS\WindowsUpdate.log 2014-06-24 19:29 - 2014-06-24 10:28 - 00000000 ____D () C:\Users\KaiDaniel 2014-06-24 19:29 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-06-24 19:29 - 2012-11-02 21:22 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Local\Packages 2014-06-24 19:19 - 2012-11-10 14:48 - 00001140 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-06-24 19:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-06-24 18:57 - 2013-06-24 21:32 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-06-24 17:56 - 2014-06-24 12:46 - 00001150 _____ () C:\Users\KaiDaniel\Desktop\Continue VuuPC Installation.lnk 2014-06-24 17:19 - 2014-06-24 17:17 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-06-24 17:17 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp 2014-06-24 17:16 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\restore 2014-06-24 15:01 - 2014-06-24 12:36 - 00000308 _____ () C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job 2014-06-24 13:47 - 2012-11-03 12:22 - 00003194 _____ () |
24.06.2014, 19:36 | #4 |
| Windows Installer Version / RegCleanPro / Flackernder Bildschirm und Teil 3 Code:
ATTFilter C:\WINDOWS\System32\Tasks\HPCeeScheduleForKaiDaniel 2014-06-24 13:47 - 2012-11-03 12:22 - 00000372 _____ () C:\WINDOWS\Tasks\HPCeeScheduleForKaiDaniel.job 2014-06-24 13:34 - 2014-06-24 13:34 - 00985766 _____ () C:\Users\KaiDaniel\Downloads\setup.exe 2014-06-24 13:33 - 2014-06-24 13:33 - 00038064 _____ (Microsoft Corporation) C:\Users\KaiDaniel\Downloads\clearcompressionflag.exe 2014-06-24 13:30 - 2013-08-22 16:46 - 00288909 _____ () C:\WINDOWS\setupact.log 2014-06-24 13:16 - 2014-06-24 13:15 - 01251238 _____ () C:\Users\KaiDaniel\Downloads\Windows8.1-KB2939087-x64.msu 2014-06-24 12:51 - 2014-06-24 12:36 - 00000000 ____D () C:\Program Files (x86)\MyPC Backup 2014-06-24 12:50 - 2014-06-24 12:36 - 00000316 _____ () C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job 2014-06-24 12:49 - 2014-03-18 03:50 - 00008026 _____ () C:\WINDOWS\PFRO.log 2014-06-24 12:39 - 2012-12-08 13:55 - 00000000 _____ () C:\WINDOWS\system32\HP_ActiveX_Patch_NOT_DETECTED.txt 2014-06-24 12:39 - 2012-11-03 12:22 - 00000052 _____ () C:\WINDOWS\SysWOW64\DOErrors.log 2014-06-24 12:37 - 2014-06-24 12:37 - 00001983 _____ () C:\Users\KaiDaniel\Desktop\Sync Folder.lnk 2014-06-24 12:37 - 2014-06-24 12:35 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\Systweak 2014-06-24 12:36 - 2014-06-24 12:36 - 00003408 _____ () C:\WINDOWS\System32\Tasks\EPUpdater 2014-06-24 12:36 - 2014-06-24 12:36 - 00003052 _____ () C:\WINDOWS\System32\Tasks\RegClean Pro_UPDATES 2014-06-24 12:36 - 2014-06-24 12:36 - 00002896 _____ () C:\WINDOWS\System32\Tasks\RegClean Pro_DEFAULT 2014-06-24 12:36 - 2014-06-24 12:36 - 00001215 _____ () C:\Users\Public\Desktop\Advanced System Protector.lnk 2014-06-24 12:36 - 2014-06-24 12:36 - 00001101 _____ () C:\Users\KaiDaniel\Desktop\MyPC Backup.lnk 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\VOPackage 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\buenosearch LTD 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Local\ShieldPlus 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\ProgramData\Systweak 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Program Files (x86)\buenosearch LTD 2014-06-24 12:36 - 2014-06-24 12:36 - 00000000 ____D () C:\Program Files (x86)\Advanced System Protector 2014-06-24 12:35 - 2014-06-24 12:35 - 00003098 _____ () C:\WINDOWS\System32\Tasks\BlockAndSurf Update 2014-06-24 12:35 - 2014-06-24 12:35 - 00003016 _____ () C:\WINDOWS\System32\Tasks\BlockAndSurf_wd 2014-06-24 12:35 - 2014-06-24 12:35 - 00001866 _____ () C:\Users\KaiDaniel\Desktop\Search.lnk 2014-06-24 12:35 - 2014-06-24 12:35 - 00001064 _____ () C:\Users\Public\Desktop\RegClean Pro.lnk 2014-06-24 12:35 - 2014-06-24 12:35 - 00000306 __RSH () C:\ProgramData\ntuser.pol 2014-06-24 12:35 - 2014-06-24 12:35 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_webinstr_01009.Wdf 2014-06-24 12:35 - 2014-06-24 12:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro 2014-06-24 12:35 - 2014-06-24 12:35 - 00000000 ____D () C:\ProgramData\DSearchLink 2014-06-24 12:35 - 2014-06-24 12:35 - 00000000 ____D () C:\Program Files (x86)\RegClean Pro 2014-06-24 12:35 - 2014-06-24 12:35 - 00000000 ____D () C:\Program Files (x86)\-BlockAndSurfS 2014-06-24 12:35 - 2014-04-19 18:56 - 00003146 _____ () C:\WINDOWS\System32\Tasks\YourFile DownloaderUpdate 2014-06-24 12:35 - 2014-04-19 18:56 - 00001989 _____ () C:\Users\Public\Desktop\YourFile Downloader.lnk 2014-06-24 12:35 - 2014-04-19 18:56 - 00000000 ____D () C:\Program Files (x86)\YourFileDownloader Updater 2014-06-24 12:35 - 2014-04-19 18:56 - 00000000 ____D () C:\Program Files (x86)\YourFileDownloader 2014-06-24 12:35 - 2013-08-22 17:36 - 00000000 ___HD () C:\WINDOWS\system32\GroupPolicy 2014-06-24 12:35 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\GroupPolicy 2014-06-24 11:32 - 2014-06-04 12:09 - 00000000 ___RD () C:\Users\KaiDaniel\OneDrive.old 2014-06-24 11:32 - 2014-03-18 13:47 - 00000000 ___HD () C:\$Windows.~BT 2014-06-24 11:31 - 2014-06-24 11:19 - 00000000 ___DC () C:\WINDOWS\Panther 2014-06-24 11:30 - 2014-06-24 11:30 - 00001452 _____ () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-06-24 11:30 - 2014-06-24 11:30 - 00000020 ___SH () C:\Users\KaiDaniel\ntuser.ini 2014-06-24 11:24 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-06-24 11:23 - 2014-06-24 11:23 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-06-24 11:23 - 2014-06-24 10:28 - 00026673 _____ () C:\WINDOWS\diagwrn.xml 2014-06-24 11:23 - 2014-06-24 10:28 - 00026673 _____ () C:\WINDOWS\diagerr.xml 2014-06-24 11:23 - 2014-06-24 09:59 - 00006666 _____ () C:\WINDOWS\comsetup.log 2014-06-24 11:23 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\Registration 2014-06-24 11:23 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows NT 2014-06-24 11:23 - 2013-08-22 15:36 - 00000000 __RHD () C:\Users\Default 2014-06-24 11:22 - 2014-06-24 11:22 - 00022960 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-06-24 11:22 - 2013-08-22 17:36 - 00000000 __RSD () C:\WINDOWS\Media 2014-06-24 11:21 - 2013-08-22 17:36 - 00000000 __RHD () C:\Users\Public\Libraries 2014-06-24 11:19 - 2014-06-24 11:19 - 00000000 __SHD () C:\Recovery 2014-06-24 11:18 - 2014-06-24 11:18 - 23414784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 17271296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 13522944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 11725312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 05782528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 04244992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 02768384 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 02266112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 02179072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 02040832 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-06-24 11:18 - 2014-06-24 11:18 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-06-24 11:18 - 2014-06-24 11:18 - 01790976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 01398272 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 01143296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00846336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00704512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00631808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-06-24 11:18 - 2014-06-24 11:18 - 00592896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-06-24 11:18 - 2014-06-24 11:18 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe 2014-06-24 11:18 - 2014-06-24 11:18 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00242688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00139264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe 2014-06-24 11:18 - 2014-06-24 11:18 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe 2014-06-24 11:18 - 2014-06-24 11:18 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe 2014-06-24 11:18 - 2014-06-24 11:18 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollectorres.dll 2014-06-24 11:18 - 2014-06-24 11:18 - 00000000 ____D () C:\Windows.old 2014-06-24 11:18 - 2014-04-03 12:38 - 00000000 ____D () C:\ProgramData\OPFN 2014-06-24 11:18 - 2013-08-22 17:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-06-24 11:17 - 2014-06-24 11:17 - 03118080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll 2014-06-24 11:17 - 2014-06-24 11:17 - 03048904 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe 2014-06-24 11:17 - 2014-06-24 11:17 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll 2014-06-24 11:17 - 2014-06-24 11:17 - 02834944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll 2014-06-24 11:17 - 2014-06-24 11:17 - 02518872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-06-24 11:17 - 2014-06-24 11:17 - 02344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll 2014-06-24 11:17 - 2014-06-24 11:17 - 01336648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-06-24 11:17 - 2014-06-24 11:17 - 01064448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2014-06-24 11:17 - 2014-06-24 11:17 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-06-24 11:17 - 2014-06-24 11:17 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys 2014-06-24 11:17 - 2014-06-24 11:17 - 00055328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys 2014-06-24 11:17 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-06-24 11:17 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\setup 2014-06-24 11:16 - 2014-06-24 11:16 - 02900992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02641920 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02479616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02373784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-06-24 11:16 - 2014-06-24 11:16 - 02331000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02141912 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02133504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2014-06-24 11:16 - 2014-06-24 11:16 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 02013016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01557848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 01542768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01291200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01112536 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-06-24 11:16 - 2014-06-24 11:16 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00924160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00836096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-06-24 11:16 - 2014-06-24 11:16 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00655360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-06-24 11:16 - 2014-06-24 11:16 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00518552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00488280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00467800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-06-24 11:16 - 2014-06-24 11:16 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-06-24 11:16 - 2014-06-24 11:16 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-06-24 11:16 - 2014-06-24 11:16 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00379224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00360512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00356848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL 2014-06-24 11:16 - 2014-06-24 11:16 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spp.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00157016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00136024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00113648 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-06-24 11:16 - 2014-06-24 11:16 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe 2014-06-24 11:16 - 2014-06-24 11:16 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\l2gpstore.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxproxy.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-06-24 11:16 - 2014-06-24 11:16 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-06-24 11:16 - 2014-06-24 11:16 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 03464192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 03360256 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 02151424 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 01975296 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 01705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 01509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 01312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00086688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt_map.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-06-24 11:15 - 2014-06-24 11:15 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-06-24 11:15 - 2014-06-24 11:15 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-06-24 11:15 - 2014-06-24 11:15 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2014-06-24 11:15 - 2014-06-24 11:15 - 00028320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt100.dll 2014-06-24 11:15 - 2014-06-24 11:15 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2014-06-24 11:15 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore 2014-06-24 11:15 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates 2014-06-24 11:15 - 2013-08-22 16:44 - 03101640 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-06-24 11:14 - 2014-06-24 11:14 - 21268952 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 18755672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 16872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 13287936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 12711424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 08652800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 07173120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 06645248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 05833216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 05774848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 05104640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 04269056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 04190720 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-06-24 11:14 - 2014-06-24 11:14 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-06-24 11:14 - 2014-06-24 11:14 - 02688000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 02144984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 02124840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 02100736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01466856 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01436160 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSSVC.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01403856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01379064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01308160 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpsvc.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01287168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01222656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01209616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01200288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01126912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01029120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 01025024 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00955904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00918528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00881616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00805376 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00765408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00718336 _____ (Microsoft Corporation) C:\WINDOWS\system32\swprv.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00707048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00677376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00669856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00609448 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00589656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00565536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00518544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00491744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\GeofenceMonitorService.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2014-06-24 11:14 - 2014-06-24 11:14 - 00467968 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00467496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00463256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00407016 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00406504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00387896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00384856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00372568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2014-06-24 11:14 - 2014-06-24 11:14 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00360792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GeofenceMonitorService.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00337240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00324888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00310616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00307304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00285144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00275800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rstrui.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00263424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00257880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00250368 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpencom.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00244880 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00233912 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00230808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpencom.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00206848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00201920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpchttp.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00180056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00178184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpchttp.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00130144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00125496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00123224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00111528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00098584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmapi.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hdaudbus.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\srclient.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\srclient.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\tlscsp.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tlscsp.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-06-24 11:14 - 2014-06-24 11:14 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00032600 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00028408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe 2014-06-24 11:14 - 2014-06-24 11:14 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll 2014-06-24 11:14 - 2014-06-24 11:14 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-06-24 11:14 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2014-06-24 11:14 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-06-24 11:14 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-06-24 11:14 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\inetsrv 2014-06-24 11:14 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\inetsrv 2014-06-24 11:14 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows Defender 2014-06-24 11:14 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-06-24 11:13 - 2014-06-24 11:13 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-06-24 11:11 - 2014-06-24 11:11 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2014-06-24 11:11 - 2014-06-24 11:11 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2014-06-24 11:11 - 2014-06-24 11:11 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2014-06-24 11:11 - 2014-06-24 11:11 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer 2014-06-24 11:11 - 2014-06-24 11:11 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-06-24 11:11 - 2014-06-24 11:11 - 00000000 ____D () C:\Program Files\MSBuild 2014-06-24 11:11 - 2014-06-24 11:11 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies 2014-06-24 11:11 - 2014-06-24 11:11 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-06-24 11:11 - 2014-06-24 11:11 - 00000000 ____D () C:\inetpub 2014-06-24 11:11 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI 2014-06-24 11:11 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\MUI 2014-06-24 10:37 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-06-24 10:36 - 2014-06-16 13:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AGFEO TK-Suite 2014-06-24 10:36 - 2014-06-04 12:11 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live 2014-06-24 10:36 - 2014-06-04 12:11 - 00000000 ____D () C:\WINDOWS\en 2014-06-24 10:36 - 2014-06-04 12:11 - 00000000 ____D () C:\WINDOWS\de 2014-06-24 10:36 - 2014-04-19 18:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\YourFileDownloader 2014-06-24 10:36 - 2014-03-18 11:40 - 00000000 ____D () C:\WINDOWS\ShellNew 2014-06-24 10:36 - 2014-02-28 13:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-06-24 10:36 - 2014-02-28 13:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2014-06-24 10:36 - 2013-12-18 13:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth 2014-06-24 10:36 - 2013-12-10 12:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Message Center 2 2014-06-24 10:36 - 2013-12-10 12:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ViewNX 2 2014-06-24 10:36 - 2013-12-10 12:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Link to Nikon 2014-06-24 10:36 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep 2014-06-24 10:36 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-06-24 10:36 - 2013-08-21 11:22 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-06-24 10:36 - 2013-08-21 11:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-06-24 10:36 - 2013-06-26 14:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader 2014-06-24 10:36 - 2012-11-30 18:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAXON 2014-06-24 10:36 - 2012-11-11 12:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2014-06-24 10:36 - 2012-11-10 14:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-06-24 10:36 - 2012-11-05 18:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft-Maus 2014-06-24 10:36 - 2012-11-05 18:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft-Tastatur 2014-06-24 10:36 - 2012-11-04 16:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe 2014-06-24 10:36 - 2012-11-04 16:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Design Standard CS4 2014-06-24 10:36 - 2012-11-02 22:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WibuKey 2014-06-24 10:36 - 2012-11-02 21:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\imagePROGRAF Status Monitor 2014-06-24 10:36 - 2012-10-18 05:41 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools 2014-06-24 10:36 - 2012-10-18 05:38 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2014-06-24 10:35 - 2014-06-24 10:35 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-06-24 10:35 - 2014-06-24 10:35 - 00000000 ____D () C:\Users\Default\Documents\hp.system.package.metadata 2014-06-24 10:35 - 2014-06-24 10:35 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-06-24 10:35 - 2014-06-24 10:35 - 00000000 ____D () C:\Users\Default User\Documents\hp.system.package.metadata 2014-06-24 10:35 - 2014-06-24 10:35 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-06-24 10:35 - 2014-03-18 11:25 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN 2014-06-24 10:35 - 2014-03-18 11:25 - 00000000 ____D () C:\WINDOWS\SysWOW64\sysprep 2014-06-24 10:35 - 2014-03-18 11:25 - 00000000 ____D () C:\WINDOWS\system32\WCN 2014-06-24 10:35 - 2013-08-22 17:37 - 00004893 _____ () C:\WINDOWS\DtcInstall.log 2014-06-24 10:35 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz 2014-06-24 10:35 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\IME 2014-06-24 10:35 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns 2014-06-24 10:35 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\spool 2014-06-24 10:35 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2014-06-24 10:35 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\IME 2014-06-24 10:35 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\SMI 2014-06-24 10:35 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\oobe 2014-06-24 10:35 - 2012-11-04 16:59 - 00000000 ____D () C:\WINDOWS\SysWOW64\spool 2014-06-24 10:35 - 2012-07-26 07:37 - 00000000 ____D () C:\Users\Default.migrated 2014-06-24 10:34 - 2013-08-22 17:43 - 00000000 ____D () C:\WINDOWS\DigitalLocker 2014-06-24 10:34 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\IME 2014-06-24 10:34 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\Help 2014-06-24 10:32 - 2014-04-03 12:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Okidata 2014-06-24 10:32 - 2014-02-28 14:17 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-06-24 10:32 - 2013-08-22 17:36 - 00000000 __SHD () C:\Program Files\Windows Sidebar 2014-06-24 10:32 - 2013-08-22 17:36 - 00000000 __SHD () C:\Program Files (x86)\Windows Sidebar 2014-06-24 10:32 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-06-24 10:32 - 2012-11-02 22:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Graphisoft 2014-06-24 10:32 - 2012-11-02 21:24 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services 2014-06-24 10:32 - 2012-10-18 05:39 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection 2014-06-24 10:32 - 2012-08-01 19:06 - 00000000 ____D () C:\ProgramData\PRICache 2014-06-24 10:29 - 2014-06-24 10:29 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-06-24 10:29 - 2014-06-24 10:28 - 00000000 ___RD () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-06-24 10:29 - 2014-06-24 10:28 - 00000000 ___RD () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-06-24 10:29 - 2014-06-24 10:22 - 00012096 _____ () C:\WINDOWS\iis.log 2014-06-24 10:29 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Vorlagen 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Startmenü 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Netzwerkumgebung 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Lokale Einstellungen 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Eigene Dateien 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Druckumgebung 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Documents\Eigene Musik 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Documents\Eigene Bilder 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\AppData\Local\Verlauf 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\AppData\Local\Anwendungsdaten 2014-06-24 10:28 - 2014-06-24 10:28 - 00000000 _SHDL () C:\Users\KaiDaniel\Anwendungsdaten 2014-06-24 10:23 - 2014-06-24 10:23 - 01914374 _____ () C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2014-06-24 10:21 - 2014-06-24 10:21 - 00000000 ____D () C:\AMD 2014-06-24 10:21 - 2014-06-24 10:21 - 00000000 _____ () C:\WINDOWS\ativpsrm.bin 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\x2gchax.inf_amd64_50469f484f0a51e2 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\wibukeyusb.inf_amd64_5fba4c38c57aa9da 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\usbaapl64.inf_amd64_ca639d07023cb608 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\type64.inf_amd64_11024cee28a7fa81 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\trans64.inf_amd64_77c46313d357e391 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\tixhcifilters.inf_amd64_165d6808e1d42418 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\rt630x64.inf_amd64_c75983774c53f229 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\prnxx005.inf_amd64_5371ccab1f1e28a0 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\point64.inf_amd64_b1cf5e889e918ca6 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\pantusb3.inf_amd64_9f6ebbc99ad3c1ad 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\pantusb.inf_amd64_e202f13feac690f3 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\pantsmb.inf_amd64_3dc673d098e4bc14 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\okb3f04j.inf_amd64_d7a7b5780f658a37 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\okb3c04j.inf_amd64_df287d738d1dae81 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\oemfxa5b.inf_amd64_18ccdf2e959f07f8 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\nuidfltr.inf_amd64_a071a87dc95c1c15 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\netr28x.inf_amd64_e61e7223869792f8 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\netr28x.inf_amd64_dbf5d6abb6ebcb05 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\netaapl64.inf_amd64_56f23639c9617984 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\klim6.inf_amd64_2ecffe9809c9d639 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\itpcdless.inf_amd64_f3417ba4359ff28e 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\itpcdless.inf_amd64_a48caa4e7850dd04 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\itpcdless.inf_amd64_a2c686c9ab29cacf 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\itpcdless.inf_amd64_393a7620d4d8b516 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\isdnusb.inf_amd64_575c1d3dc3565de9 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\isdncapi.inf_amd64_4ff45d7d705bddbc 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\ipcdless.inf_amd64_a27e8462c1f541a4 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\ipcdless.inf_amd64_635da1077258556d 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\ipcdless.inf_amd64_579438e14331de5e 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\ipcdless.inf_amd64_165412f37e9f9224 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\hp630x64.inf_amd64_06a0fdf35dac01f5 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\heci.inf_amd64_88551c2afe06d607 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\dc3du.inf_amd64_74c6c3670a9a8e89 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\dc3dh.inf_amd64_73d3d011f5a03306 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\cu171190.inf_amd64_0ac955a49dab3963 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\cougsmb.inf_amd64_aa127b372b0f77c8 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\c8158172.inf_amd64_4fda26e3713399a5 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\c8143426.inf_amd64_ef6b1e261f0c5c73 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\brwnbh9.inf_amd64_a2f3c199b2180fb7 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\atihdw86.inf_amd64_63d176b271e79adf 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\atihdw86.inf_amd64_61b2cda9ab95ec24 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\amdkmafd.inf_amd64_0fd0350fc7f9099a 2014-06-24 10:20 - 2014-06-24 11:12 - 00000000 ____D () C:\Users\Public\Desktop\6wjf07m.inf_amd64_34a3402d890eef06 2014-06-24 10:20 - 2014-06-24 11:11 - 00000000 ____D () C:\Users\Public\Desktop\stwrt64.inf_amd64_db6d31a104396580 2014-06-24 10:20 - 2014-06-24 11:11 - 00000000 ____D () C:\Users\Public\Desktop\prnms001.inf_amd64_0cd521d4577bd465 2014-06-24 10:20 - 2014-06-24 10:20 - 00000000 ____D () C:\Program Files\AMD 2014-06-24 10:06 - 2012-11-02 21:22 - 02080646 _____ () C:\WINDOWS\WindowsUpdate (1).log 2014-06-24 09:39 - 2012-11-02 21:31 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2079055139-1285045084-989151624-1001 2014-06-24 09:32 - 2012-11-02 22:59 - 00000000 ____D () C:\Users\KaiDaniel\Graphisoft 2014-06-24 09:25 - 2013-06-22 21:32 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-06-24 09:24 - 2013-07-10 22:33 - 00000000 ____D () C:\Program Files (x86)\Brother 2014-06-23 10:51 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2014-06-23 10:50 - 2014-06-05 11:02 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox.bak 2014-06-20 11:05 - 2014-06-20 11:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-06-20 10:14 - 2012-11-10 14:48 - 00004112 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2014-06-20 10:14 - 2012-11-10 14:48 - 00003876 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2014-06-19 09:03 - 2014-06-19 09:03 - 01058200 _____ (Adobe) C:\Users\KaiDaniel\Downloads\install_flashplayer14x32au_mssa_aaa_aih.exe 2014-06-17 16:55 - 2013-06-20 13:33 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-06-17 14:01 - 2012-11-04 16:57 - 00000000 ____D () C:\ProgramData\Adobe 2014-06-16 13:38 - 2014-06-16 13:34 - 00000000 ____D () C:\Program Files (x86)\AGFEO 2014-06-16 13:37 - 2014-06-16 13:37 - 00000000 ____D () C:\agfeo_usb_64bit 2014-06-16 13:37 - 2014-06-16 13:36 - 03720192 _____ () C:\Users\KaiDaniel\Downloads\AGFEO_USB64bit_1008.exe 2014-06-16 13:35 - 2014-06-16 13:35 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\AGFEO 2014-06-16 13:34 - 2014-06-16 13:34 - 00000000 ____D () C:\AGFEO 2014-06-16 13:33 - 2012-11-02 21:22 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Local\VirtualStore 2014-06-13 15:31 - 2012-11-11 12:13 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-06-13 15:30 - 2013-08-15 10:29 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-06-13 15:29 - 2012-12-13 04:06 - 95414520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-06-11 11:58 - 2014-06-11 11:53 - 245913417 _____ () C:\Users\KaiDaniel\Downloads\SSP-WBS.zip 2014-06-10 00:52 - 2014-06-10 00:52 - 29382144 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdocl64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 26352128 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atio6axx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 24860160 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\amdocl.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 22157824 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atioglxx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 15716352 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticaldd64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 14302208 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticaldd.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 13209088 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmdag.sys 2014-06-10 00:52 - 2014-06-10 00:52 - 09753752 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atidxx64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 08927704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd6a.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 08406024 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atidxx32.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 08287008 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdva.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 07751920 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiumd64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 06630232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiumdag.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 03461040 _____ () C:\WINDOWS\SysWOW64\atiumdva.cap 2014-06-10 00:52 - 2014-06-10 00:52 - 03426688 _____ () C:\WINDOWS\system32\atiumd6a.cap 2014-06-10 00:52 - 2014-06-10 00:52 - 01318552 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 01187342 _____ () C:\WINDOWS\system32\amdocl_as64.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 01144320 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 01100216 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 01061902 _____ () C:\WINDOWS\system32\amdocl_ld64.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00995342 _____ () C:\WINDOWS\SysWOW64\amdocl_as32.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00825344 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00798734 _____ () C:\WINDOWS\SysWOW64\amdocl_ld32.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00721296 _____ () C:\WINDOWS\system32\atiicdxx.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00626688 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\atikmpag.sys 2014-06-10 00:52 - 2014-06-10 00:52 - 00588288 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00550464 _____ () C:\WINDOWS\SysWOW64\atiapfxx.blb 2014-06-10 00:52 - 2014-06-10 00:52 - 00550464 _____ () C:\WINDOWS\system32\atiapfxx.blb 2014-06-10 00:52 - 2014-06-10 00:52 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00412672 _____ () C:\WINDOWS\system32\amdmiracast.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiapfxx.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00332800 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODE.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00239616 _____ (AMD) C:\WINDOWS\system32\atiesrxx.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00234036 _____ () C:\WINDOWS\system32\ativvaxy_cik.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00233776 _____ () C:\WINDOWS\system32\ativvaxy_cik_nd.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00230912 _____ () C:\WINDOWS\system32\clinfo.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00204952 _____ () C:\WINDOWS\SysWOW64\ativvsvl.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00204952 _____ () C:\WINDOWS\system32\ativvsvl.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00190976 _____ (AMD) C:\WINDOWS\system32\atitmm64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00157144 _____ () C:\WINDOWS\SysWOW64\ativvsva.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00157144 _____ () C:\WINDOWS\system32\ativvsva.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00143304 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiuxp64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00134656 _____ () C:\WINDOWS\system32\amdhdl64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00129536 _____ (AMD) C:\WINDOWS\system32\coinst_13.251.9001.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiuxpag.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00123392 _____ () C:\WINDOWS\SysWOW64\amdhdl32.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00118784 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atibtmon.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00115512 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiu9p64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00100352 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00099840 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OpenVideo64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00098496 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiu9pag.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00096768 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00086528 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\OVDecode64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00083968 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OpenVideo.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00083552 _____ () C:\WINDOWS\system32\ativce02.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00074752 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6pxx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00073728 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\OVDecode.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atiglpxx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atiglpxx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00063488 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00062464 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalrt64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00057344 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00055808 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\aticalcl64.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00052224 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalrt.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00051200 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ATIODCLI.exe 2014-06-10 00:52 - 2014-06-10 00:52 - 00049152 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\SysWOW64\aticalcl.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00047887 _____ () C:\WINDOWS\atiogl.xml 2014-06-10 00:52 - 2014-06-10 00:52 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Drivers\ati2erec.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00031232 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll 2014-06-10 00:52 - 2014-06-10 00:52 - 00003917 _____ () C:\WINDOWS\SysWOW64\atipblag.dat 2014-06-10 00:52 - 2014-06-10 00:52 - 00003917 _____ () C:\WINDOWS\system32\atipblag.dat 2014-06-08 15:38 - 2014-06-24 12:35 - 00057528 _____ (Corsica) C:\WINDOWS\system32\Drivers\webinstr.sys 2014-06-06 15:17 - 2012-12-02 19:48 - 00120760 _____ () C:\Users\KaiDaniel\AppData\Local\GDIPFONTCACHEV1.DAT 2014-06-05 12:37 - 2013-05-24 14:23 - 00000000 ____D () C:\Users\KaiDaniel\Desktop\alice 2014-06-05 11:06 - 2012-07-26 07:26 - 00000167 _____ () C:\WINDOWS\win.ini 2014-06-04 15:56 - 2012-11-11 12:15 - 00000000 ____D () C:\Program Files (x86)\Microsoft Works 2014-06-04 12:24 - 2014-06-04 12:24 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2014-06-04 12:24 - 2014-06-04 12:08 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Local\Windows Live 2014-06-04 12:17 - 2014-06-04 12:17 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Roaming\Windows Live Writer 2014-06-04 12:17 - 2014-06-04 12:17 - 00000000 ____D () C:\Users\KaiDaniel\AppData\Local\Windows Live Writer 2014-06-04 12:15 - 2014-06-04 12:15 - 01245384 _____ (Microsoft Corporation) C:\Users\KaiDaniel\Downloads\wlsetup-web (1).exe 2014-06-04 12:15 - 2014-06-04 12:13 - 00000000 ____D () C:\Users\KaiDaniel\Tracing 2014-06-04 12:11 - 2014-06-04 12:11 - 00001460 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk 2014-06-04 12:11 - 2014-06-04 12:11 - 00001376 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk 2014-06-04 12:11 - 2014-06-04 12:11 - 00001307 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk 2014-06-04 12:11 - 2012-10-18 05:48 - 00000000 ____D () C:\Program Files (x86)\Windows Live 2014-06-04 12:10 - 2014-06-04 12:10 - 00002488 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk 2014-06-04 12:10 - 2014-06-04 12:10 - 00000000 ____D () C:\Program Files\Windows Live 2014-06-04 12:09 - 2014-06-04 12:09 - 00002223 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2014-06-04 12:09 - 2014-06-04 12:09 - 00002223 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2014-06-04 12:09 - 2014-06-04 12:09 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2014-06-04 12:09 - 2014-06-04 12:09 - 00000000 ____D () C:\Program Files (x86)\Microsoft OneDrive 2014-06-04 12:09 - 2012-10-18 05:47 - 00000586 _____ () C:\WINDOWS\DirectX.log 2014-06-04 12:08 - 2014-06-04 12:07 - 01245384 _____ (Microsoft Corporation) C:\Users\KaiDaniel\Downloads\wlsetup-web.exe 2014-06-04 10:16 - 2014-06-04 10:16 - 00335006 _____ () C:\Users\KaiDaniel\Downloads\x-tend_mw40_randrohr.dxf 2014-06-04 10:15 - 2014-06-04 10:15 - 00057344 _____ () C:\Users\KaiDaniel\Downloads\x-tend-checklist.xls 2014-06-03 10:57 - 2013-06-24 21:32 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2014-05-31 07:13 - 2013-08-22 17:38 - 00703992 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-05-31 07:13 - 2013-08-22 17:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-05-30 11:44 - 2014-05-30 11:44 - 00000521 _____ () C:\Users\KaiDaniel\Desktop\Netzwerk- und Freigabecenter - Verknüpfung.lnk 2014-05-30 11:25 - 2013-02-07 15:16 - 00627296 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klif.sys 2014-05-30 11:25 - 2013-02-07 15:16 - 00092768 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\klflt.sys Files to move or delete: ==================== C:\ProgramData\PKP_DLes.DAT C:\ProgramData\PKP_DLet.DAT C:\ProgramData\PKP_DLev.DAT C:\Users\KaiDaniel\jfp_cirali_ext.dll Some content of TEMP: ==================== C:\Users\KaiDaniel\AppData\Local\Temp\BackupSetup.exe C:\Users\KaiDaniel\AppData\Local\Temp\htmlayout.dll C:\Users\KaiDaniel\AppData\Local\Temp\RegClean2.exe C:\Users\KaiDaniel\AppData\Local\Temp\toolbar405706.exe C:\Users\KaiDaniel\AppData\Local\Temp\toolbar406546.exe C:\Users\KaiDaniel\AppData\Local\Temp\toolbar414574.exe C:\Users\KaiDaniel\AppData\Local\Temp\toolbar417137.exe C:\Users\KaiDaniel\AppData\Local\Temp\toolbar428871.exe C:\Users\KaiDaniel\AppData\Local\Temp\update374656.exe C:\Users\KaiDaniel\AppData\Local\Temp\vcredist_x64.exe C:\Users\KaiDaniel\AppData\Local\Temp\vp.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-24 10:19 ==================== End Of Log ============================ |
24.06.2014, 19:41 | #5 |
| Windows Installer Version / RegCleanPro / Flackernder Bildschirm Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-06-2014 Ran by KaiDaniel at 2014-06-24 19:42:20 Running from C:\Users\KaiDaniel\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Kaspersky Internet Security (Enabled - Up to date) {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Kaspersky Internet Security (Enabled - Up to date) {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} FW: Kaspersky Internet Security (Enabled) {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E} ==================== Installed Programs ====================== 2007 Microsoft Office system (HKLM-x32\...\PROHYBRIDR) (Version: 12.0.6612.1000 - Microsoft Corporation) Acrobat.com (HKLM-x32\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.2.443 - Adobe Systems Incorporated) Acrobat.com (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden Adobe Acrobat 9 Pro - English, Français, Deutsch (x32 Version: 9.0.0 - Adobe Systems) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.1.0.5790 - Adobe Systems Inc.) Adobe AIR (x32 Version: 1.1.0.5790 - Adobe Systems Inc.) Hidden Adobe Anchor Service CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Anchor Service x64 CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Asset Services CS4 (x32 Version: 4 - Adobe Systems Incorporated) Hidden Adobe Bridge CS4 (x32 Version: 3 - Adobe Systems Incorporated) Hidden Adobe CMaps CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe CMaps x64 CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color - Photoshop Specific CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color EU Recommended Settings CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color JA Extra Settings CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color NA Extra Settings CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color Video Profiles CS CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Creative Suite 4 Design Standard (HKLM-x32\...\Adobe_1e3ba55b33b1e8227645fb9c82acca3) (Version: 4.0 - Adobe Systems Incorporated) Adobe Creative Suite 4 Design Standard (x32 Version: 4.0 - Adobe Systems Incorporated) Hidden Adobe CSI CS4 (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe CSI CS4 x64 (Version: 1 - Adobe Systems Incorporated) Hidden Adobe Default Language CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Device Central CS4 (x32 Version: 2 - Adobe Systems Incorporated) Hidden Adobe Drive CS4 (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe Drive CS4 x64 (Version: 1 - Adobe Systems Incorporated) Hidden Adobe ExtendScript Toolkit CS4 (x32 Version: 3.0.0 - Adobe Systems Incorporated) Hidden Adobe Extension Manager CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated) Adobe Fonts All (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Fonts All x64 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Illustrator CS4 (x32 Version: 14.0 - Adobe Systems Incorporated) Hidden Adobe InDesign CS4 (x32 Version: 6.0 - Adobe Systems Incorporated) Hidden Adobe InDesign CS4 Application Feature Set Files (Roman) (x32 Version: 6.0 - Adobe Systems Incorporated) Hidden Adobe InDesign CS4 Common Base Files (x32 Version: 6.0 - Adobe Systems Incorporated) Hidden Adobe InDesign CS4 Icon Handler (x32 Version: 6.0 - Adobe Systems Incorporated) Hidden Adobe InDesign CS4 Icon Handler x64 (Version: 6.0 - Adobe Systems Incorporated) Hidden Adobe Linguistics CS4 (x32 Version: 4.0.0 - Adobe Systems Incorporated) Hidden Adobe Linguistics CS4 x64 (Version: 4.0.0 - Adobe Systems Incorporated) Hidden Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1 - Adobe Systems Incorporated) Adobe Media Player (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden Adobe Output Module (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe PDF Library Files CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe PDF Library Files x64 CS4 (Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS4 (64 Bit) (Version: 11.0 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS4 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS4 Support (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) Adobe Search for Help (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Service Manager Extension (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Setup (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe SGM CS4 (x32 Version: 3.0 - Adobe Systems Incorporated) Hidden Adobe SING CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Type Support CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe Type Support x64 CS4 (Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe Update Manager CS4 (x32 Version: 6.0.0 - Adobe Systems Incorporated) Hidden Adobe Version Cue CS4 Server (x32 Version: 4.0 - Adobe Systems Incorporated) Hidden Adobe WinSoft Linguistics Plugin (x32 Version: 1.1 - Adobe Systems Incorporated) Hidden Adobe WinSoft Linguistics Plugin x64 (Version: 1.1 - Adobe Systems Incorporated) Hidden Adobe XMP Panels CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden AdobeColorCommonSetCMYK (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden AdobeColorCommonSetRGB (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Advanced System Protector (HKLM-x32\...\00212D92-C5D8-4ff4-AE50-B20F0F85C40A_Systweak_Ad~B9F029BF_is1) (Version: 2.1.1000.13627 - Systweak Software) <==== ATTENTION Agfeo ISDN Driver (HKLM\...\{9CD6D175-052D-4D70-9467-C2F209012E7F}) (Version: 1.0.8 - AGFEO GmbH & Co. KG) AGFEO TK-Suite Server (HKLM-x32\...\tksuite_tksuite_server) (Version: 4.4.13 - AGFEO GmbH & Co. KG) AMD APP SDK Runtime (Version: 10.0.938.2 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (HKLM\...\{425D8EBC-EDEE-A047-63BA-F02A2D3D531E}) (Version: 8.0.911.0 - Advanced Micro Devices, Inc.) Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ArchiCAD 15 R1 GER (HKLM\...\001FFF2FFF15FF00FF0201F01F02F000-R1) (Version: 15.0 - Graphisoft) Ask Toolbar (HKLM-x32\...\{86D4B82A-ABED-442A-BE86-96357B70F4FE}) (Version: 1.15.23.0 - Ask.com) <==== ATTENTION Ask Toolbar Updater (HKCU\...\{79A765E1-C399-405B-85AF-466F52E918B0}) (Version: 1.2.5.36191 - Ask.com) <==== ATTENTION BDE (HKLM-x32\...\{B15A6CF1-1F9F-4BC0-9B58-B37CCC42A7A6}) (Version: 5.20.0000 - HEITKER GmbH) BitGuard (HKLM-x32\...\{15D2D75C-9CB2-4efd-BAD7-B9B4CB4BC693}) (Version: - MediaTechSoft Inc.) <==== ATTENTION BlockAndSurf (HKLM-x32\...\B23A0018-AB1D-5B31-E69D-80D1059F638B) (Version: - BlockAndSurf-software) <==== ATTENTION Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Bueno Chrome Toolbar (HKLM-x32\...\Bueno Chrome Toolbar) (Version: - BuenoSearch) <==== ATTENTION buenosearch toolbar (HKLM-x32\...\buenosearch) (Version: 1.8.28.7 - Montiera technologies LTD) <==== ATTENTION Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2012.0704.2139.36919 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2013.0515.725.11427 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2012.0704.2139.36919 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Profiles Desktop (x32 Version: 2012.0704.2139.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2012.0704.2138.36919 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2012.0704.2139.36919 - Advanced Micro Devices, Inc.) Hidden CINEMA 4D 11.514 (HKLM\...\MAXONB6EC381C) (Version: 11.514 - MAXON Computer GmbH) Connect (x32 Version: 1.0.0.1 - Adobe Systems Incorporated) Hidden Connected Music powered by Universal Music Group version 1.0 (HKLM-x32\...\{46037DC7-F927-46DF-935F-D6F122BDD34B}_is1) (Version: 1.0 - Snowite) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1.5510 - CyberLink Corp.) CyberLink LabelPrint (x32 Version: 2.5.1.5510 - CyberLink Corp.) Hidden CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.1.1916 - CyberLink Corp.) CyberLink Media Suite 10 (x32 Version: 10.0.1.1916 - CyberLink Corp.) Hidden CyberLink PhotoDirector (HKLM-x32\...\InstallShield_{4862344A-A39C-4897-ACD4-A1BED5163C5A}) (Version: 2.0.1.3109 - CyberLink Corp.) CyberLink PhotoDirector (x32 Version: 2.0.1.3109 - CyberLink Corp.) Hidden CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.1.1902 - CyberLink Corp.) CyberLink Power2Go 8 (x32 Version: 8.0.1.1902 - CyberLink Corp.) Hidden CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.1.1925 - CyberLink Corp.) CyberLink PowerDirector 10 (x32 Version: 10.0.1.1925 - CyberLink Corp.) Hidden CyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.1.4319 - CyberLink Corp.) CyberLink PowerDVD (x32 Version: 10.0.1.4319 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Feature Update Service (YFD) (HKCU\...\YourFileDownloaderUpdater) (Version: 2.14.26 - ) <==== ATTENTION Fotogalerie (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.0.3.524 - Foxit Corporation) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.) Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden hola Chrome Toolbar (HKLM-x32\...\hola Chrome Toolbar) (Version: - hola) HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: v1.0 - Meridian Audio Ltd) HP Connected Remote (HKLM-x32\...\{F243A34B-AB7F-4065-B770-B85B767C247C}) (Version: 1.0.1206 - Hewlett-Packard) HP Customer Experience Enhancements (x32 Version: 6.0.1.7 - Hewlett-Packard) Hidden HP Postscript Converter (Version: 3.1.3591 - Hewlett-Packard) Hidden HP Registration Service (HKLM\...\{E4D6CCF2-0AAF-4B9C-9DE5-893EDC9B4BAA}) (Version: 1.0.5976.4186 - Hewlett-Packard) HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company) HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 12.00.0000 - Hewlett-Packard) HydraVision (x32 Version: 4.2.236.0 - Advanced Micro Devices, Inc.) Hidden IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6418.0 - IDT) imagePROGRAF Status Monitor (HKLM-x32\...\{66392B7C-C522-450D-97B7-B3E41E170C3B}) (Version: 25.21 - Canon) Installer (HKLM-x32\...\VOPackage) (Version: 1.0.0.0 - ) <==== ATTENTION Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.24.388.1 - Intel Corporation) Hidden iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: 11.1.5.5 - Apple Inc.) Java 7 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.250 - Oracle) Java Auto Updater (x32 Version: 2.1.9.5 - Sun Microsystems, Inc.) Hidden Junk Mail filter update (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Kaspersky Internet Security 2013 (HKLM-x32\...\InstallWIX_{560985FB-4B76-4121-9189-7A2CDC7886D6}) (Version: 13.0.1.4190 - Kaspersky Lab) Kaspersky Internet Security 2013 (x32 Version: 13.0.1.4190 - Kaspersky Lab) Hidden kuler (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft IntelliPoint 8.2 (HKLM\...\Microsoft IntelliPoint 8.2) (Version: 8.20.468.0 - Microsoft Corporation) Microsoft IntelliPoint 8.2 (Version: 8.20.468.0 - Microsoft Corporation) Hidden Microsoft IntelliType Pro 8.2 (HKLM\...\Microsoft IntelliType Pro 8.2) (Version: 8.20.469.0 - Microsoft Corporation) Microsoft IntelliType Pro 8.2 (Version: 8.20.469.0 - Microsoft Corporation) Hidden Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0407-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0409-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation) Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Hybrid 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Project Professional 2003 (HKLM-x32\...\{903B0409-6000-11D3-8CFE-0150048383C9}) (Version: 11.0.8173.0 - Microsoft Corporation) Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft OneDrive (HKCU\...\OneDriveSetup.exe) (Version: 17.0.4041.0512 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Mozilla Firefox 30.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 de)) (Version: 30.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MyPC Backup (HKLM\...\MyPC Backup) (Version: - JDi Backup Ltd) <==== ATTENTION NET Render Client 11.514 (HKLM\...\MAXONF02E79F8) (Version: 11.514 - MAXON Computer GmbH) Nikon Message Center 2 (HKLM-x32\...\{B014EE44-9197-4513-9613-71E6EB1B514E}) (Version: 2.0.1 - Nikon) OKI Color Swatch-Dienstprogramm (HKLM-x32\...\{A344F95E-E51A-450C-8F84-C940BF61903E}) (Version: 2.1.10 - Okidata) OKI Network Extension (HKLM-x32\...\{38ADB9A6-798C-11D6-A855-00105A80791C}) (Version: 1.00.000 - Okidata) PDF Settings CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden Photo Gallery (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Photoshop Camera Raw (x32 Version: 5.0 - Adobe Systems Incorporated) Hidden Photoshop Camera Raw_x64 (Version: 5.0 - Adobe Systems Incorporated) Hidden Picture Control Utility (HKLM-x32\...\{87441A59-5E64-4096-A170-14EFE67200C3}) (Version: 1.2.2 - Nikon) QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) Ralink 802.11n Wireless LAN Card (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 5.0.0.0 - Ralink) Recovery Manager (x32 Version: 5.5.0.5530 - CyberLink Corp.) Hidden RegClean Pro (HKLM-x32\...\RegClean Pro_is1) (Version: 6.21 - Systweak Inc) <==== ATTENTION Shield Plus (HKLM-x32\...\spprt) (Version: - ShieldPlus.) Suite Shared Configuration CS4 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden TI xHCI Filter Driver 1.0.0.4 (HKLM-x32\...\TI xHCI Filter Driver) (Version: 1.0.0.4 - Texas Instruments Inc.) TowerTilt (HKLM\...\TowerTilt) (Version: 2014.04.19.003602 - TowerTilt) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM-x32\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_PROHYBRIDR_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_PROHYBRIDR_{EA54F104-79D2-48CC-9ABC-91A63C43D353}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM-x32\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2881065) 32-Bit Edition (HKLM-x32\...\{91120000-0031-0000-0000-0000000FF1CE}_PROHYBRIDR_{B7EF38F7-1D58-4085-A9A4-0F6C69A5AA1E}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_PROHYBRIDR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_PROHYBRIDR_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_PROHYBRIDR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_PROHYBRIDR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) ViewNX 2 (HKLM-x32\...\{DDD62492-32A7-412B-8AF1-2CF032AD42E3}) (Version: 2.1.2 - Nikon) WibuKey Setup (WibuKey Remove) (HKLM\...\{00060000-0000-1004-8002-0000C06B5161}) (Version: Version 6.00b of 2011-Jan-12 (Build 132) (Setup) - WIBU-SYSTEMS AG) Windows Live Communications Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Messenger (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 16.4.3528.0331 - Microsoft Corporation) Hidden Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH) YourFileDownloader (HKCU\...\YourFileDownloader) (Version: 2.14.26 - hxxp://www.yourfiledownloader.com/) <==== ATTENTION ==================== Restore Points ========================= 24-06-2014 15:16:55 Windows Update ==================== Hosts content: ========================== 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {035792A1-D4EF-4A78-BF9A-AA9628C281A3} - System32\Tasks\Microsoft\Windows\Setup\SetupCleanupTask Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {0C8ADB53-2F94-4CE3-B291-7EFED877A617} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => c:\Program Files\Microsoft IntelliPoint\IPoint.exe [2011-08-01] (Microsoft Corporation) Task: {147107AE-6E1B-4A16-BB8C-276A37E89777} - System32\Tasks\RegClean Pro_UPDATES => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe [2013-07-11] (Systweak Inc) <==== ATTENTION Task: {1C331053-C715-4A87-8FDF-AB278FE7FE53} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload Task: {1D71BE4D-A2E1-4257-8341-33376263DB1E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-10] (Google Inc.) Task: {1DE0CA86-2FC0-42EE-B3E5-675AE49C6571} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {2559CBD2-D54B-411A-84C9-E2A689E2115A} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [2014-03-18] (Microsoft Corporation) Task: {2BC8C068-90B7-471A-9E15-3A058DC5EC23} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-03] (Adobe Systems Incorporated) Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation) Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation) Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance Task: {5BCF3916-C85F-4FB6-9351-82DB7703E11F} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files (x86)\Ask.com\UpdateTask.exe [2013-03-31] () <==== ATTENTION Task: {65648666-E48B-46D1-A926-BF7A86D9BD9B} - System32\Tasks\Advanced System Protector_startup => C:\Program Files (x86)\Advanced System Protector\AdvancedSystemProtector.exe [2014-06-17] (Systweak) <==== ATTENTION Task: {691399AD-5C83-45B9-8B8D-259C664525AE} - System32\Tasks\Microsoft\Windows\SetupSQMTask => C:\WINDOWS\SYSTEM32\OOBE\SETUPSQM.EXE [2013-08-22] (Microsoft Corporation) Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {7ADB171A-87CB-4348-B725-548AF31DEB60} - System32\Tasks\HPCeeScheduleForKaiDaniel => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard) Task: {7B36110B-DFEC-4991-AF5E-D3F338CB4DF9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-03-21] (Hewlett-Packard) Task: {7BB1EC61-3140-48A7-9245-3DD56ECC42BA} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management Task: {7CF80F91-854E-4623-A44A-7C221A9C6FF0} - System32\Tasks\RegClean Pro => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe [2013-07-11] (Systweak Inc) <==== ATTENTION Task: {8541B1E8-B427-40EB-9245-11FC0E92C80A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company) Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {8DAC6EAA-3B70-4A78-8322-1B1CB1670E1C} - System32\Tasks\EPUpdater => C:\Users\KaiDaniel\AppData\Roaming\BabSolution\Shared\BabMaint.exe [2013-12-12] () <==== ATTENTION Task: {8E0655E7-4D05-4EA1-8CBC-19972B397820} - System32\Tasks\YourFile DownloaderUpdate => C:\Program Files (x86)\YourFileDownloader Updater\YourFileUpdater.exe [2014-06-24] (hxxp://yourfiledownloader.com) <==== ATTENTION Task: {9E05C9A6-1FAC-4F4C-8CE6-F5EFF6B00C5F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work Task: {A78CD1C8-8E9A-4443-8BB7-5E78D6EF52FE} - System32\Tasks\Microsoft_Hardware_Launch_IType_exe => c:\Program Files\Microsoft IntelliType Pro\IType.exe [2011-08-10] (Microsoft Corporation) Task: {B0782E77-686C-466A-9A12-81AAA28FEF72} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-11-10] (Google Inc.) Task: {B07D0BA1-BAB0-4094-A00C-1865304395AE} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start With Network => Sc.exe start wuauserv Task: {BEB73C81-CADC-4F79-81A0-B647549DCA5A} - System32\Tasks\RegClean Pro_DEFAULT => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe [2013-07-11] (Systweak Inc) <==== ATTENTION Task: {CA2D1801-E07B-493B-8FF1-DF49187D7223} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {CD0D7B55-B6A8-42B7-A239-D18B45F394F1} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\windows\system32\MRT.exe [2014-06-13] (Microsoft Corporation) Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask Task: {D4F1838F-B2D1-4B45-AEF2-FB800DF0E0ED} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {D8D97EEB-FD62-4974-85AF-0AD297A72D42} - System32\Tasks\BitGuard => Sc.exe start BitGuard <==== ATTENTION Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization Task: {DC51A8FA-1989-4F6D-9321-7E3C529356F6} - System32\Tasks\BlockAndSurf Update => C:\Program Files (x86)\-BlockAndSurfS\appBlockAndSurfQ58.exe [2014-06-24] () <==== ATTENTION Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE Task: {E98A2B18-ACA9-467D-99D4-BF8F0AFBA813} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company) Task: {F00195C0-D90B-4D3F-B603-DAA39D5D7847} - System32\Tasks\BlockAndSurf_wd => C:\Program Files (x86)\-BlockAndSurfS\wdBlockAndSurfX.exe [2014-06-24] () <==== ATTENTION Task: {FD4DC8A8-D807-4E4F-820D-EC22A771FB2F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2014-03-21] (Hewlett-Packard) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\BlockAndSurf Update.job => C:\Program Files (x86)\-BlockAndSurfS\appBlockAndSurfQ58.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\BlockAndSurf_wd.job => C:\Program Files (x86)\-BlockAndSurfS\wdBlockAndSurfX.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForKaiDaniel.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\WINDOWS\Tasks\RegClean Pro_DEFAULT.job => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe <==== ATTENTION Task: C:\WINDOWS\Tasks\RegClean Pro_UPDATES.job => C:\Program Files (x86)\RegClean Pro\RegCleanPro.exe <==== ATTENTION ==================== Loaded Modules (whitelisted) ============= 2014-06-18 12:12 - 2014-06-18 12:12 - 01102336 _____ () C:\Program Files (x86)\MyPC Backup\x64\System.Data.SQLite.dll 2014-05-20 11:18 - 2014-05-20 11:18 - 00053248 _____ () C:\Users\KaiDaniel\AppData\Roaming\VOPackage\VOsrv.exe 2012-08-29 11:02 - 2012-08-29 11:02 - 00120224 _____ () c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPItunesModule.dll 2012-08-29 11:02 - 2012-08-29 11:02 - 00048544 _____ () c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\HPItunesProxy.dll 2012-08-29 11:02 - 2012-08-29 11:02 - 00180224 _____ () c:\Program Files (x86)\Hewlett-Packard\HP Connected Remote\zxing.dll 2014-06-24 11:31 - 2014-06-24 11:31 - 00120224 _____ () C:\Users\KaiDaniel\AppData\Local\assembly\dl3\P91E8PE7.BMJ\JEYCJNWG.LWM\605660fb\00af4ffb_c485cd01\HPItunesModule.DLL 2014-02-06 01:52 - 2014-02-06 01:52 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-02-06 01:52 - 2014-02-06 01:52 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2012-08-17 22:39 - 2013-02-07 15:21 - 01310136 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\kpcengine.2.2.dll 2013-08-20 18:48 - 2013-08-20 18:48 - 00024576 _____ () C:\Program Files (x86)\AGFEO\Tk-Suite\tkserver\tkmedia_lib.dll 2013-08-20 18:48 - 2013-08-20 18:48 - 00028672 _____ () C:\Program Files (x86)\AGFEO\Tk-Suite\tkserver\tkmedia_capi.dll 2013-08-20 18:48 - 2013-08-20 18:48 - 00011776 _____ () C:\Program Files (x86)\AGFEO\Tk-Suite\tkserver\tkmedia_serial.dll 2013-08-20 18:48 - 2013-08-20 18:48 - 00012288 _____ () C:\Program Files (x86)\AGFEO\Tk-Suite\tkserver\tkmedia_xport.dll 2014-06-24 12:36 - 2012-07-25 12:03 - 00886272 _____ () C:\Program Files (x86)\Advanced System Protector\System.Data.SQLite.dll 2014-06-24 12:36 - 2014-06-17 18:43 - 01730928 _____ () C:\Program Files (x86)\Advanced System Protector\aspsys.dll 2012-10-18 05:43 - 2012-06-08 05:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2012-06-08 12:34 - 2012-06-08 12:34 - 00016400 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll 2012-08-17 22:38 - 2012-08-17 22:38 - 00479160 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\dblite.dll 2014-06-17 10:15 - 2014-06-05 15:58 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libglesv2.dll 2014-06-17 10:15 - 2014-06-05 15:58 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libegl.dll 2014-06-17 10:15 - 2014-06-05 15:58 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll 2014-06-17 10:15 - 2014-06-05 15:58 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll 2014-06-17 10:15 - 2014-06-05 15:58 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ffmpegsumo.dll 2014-06-17 10:15 - 2014-06-05 15:58 - 14612296 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\PepperFlash\pepflashplayer.dll 2012-10-18 05:36 - 2012-07-18 10:50 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll ==================== Alternate Data Streams (whitelisted) ========= AlternateDataStreams: C:\Users\KaiDaniel\OneDrive:ms-properties ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= HKLM\...\StartupApproved\Run32: => "APSDaemon" HKCU\...\StartupApproved\StartupFolder: => "MyPC Backup.lnk" HKCU\...\StartupApproved\Run: => "BlockAndSurf" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (06/24/2014 07:31:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: wdBlockAndSurfX.exe, Version: 1.174.0.0, Zeitstempel: 0x53a7ed9b Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00000000 ID des fehlerhaften Prozesses: 0xf64 Startzeit der fehlerhaften Anwendung: 0xwdBlockAndSurfX.exe0 Pfad der fehlerhaften Anwendung: wdBlockAndSurfX.exe1 Pfad des fehlerhaften Moduls: wdBlockAndSurfX.exe2 Berichtskennung: wdBlockAndSurfX.exe3 Vollständiger Name des fehlerhaften Pakets: wdBlockAndSurfX.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: wdBlockAndSurfX.exe5 Error: (06/24/2014 07:30:10 PM) (Source: STacSV) (EventID: 32767) (User: NT-AUTORITÄT) Description: Connection to the Storage interface failed Error: (06/24/2014 07:29:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: explorer.exe, Version: 6.3.9600.17039, Zeitstempel: 0x53156588 Name des fehlerhaften Moduls: IDTNC64.cpl, Version: 1.0.6418.0, Zeitstempel: 0x500e5e3d Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000001154 ID des fehlerhaften Prozesses: 0x164c Startzeit der fehlerhaften Anwendung: 0xexplorer.exe0 Pfad der fehlerhaften Anwendung: explorer.exe1 Pfad des fehlerhaften Moduls: explorer.exe2 Berichtskennung: explorer.exe3 Vollständiger Name des fehlerhaften Pakets: explorer.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: explorer.exe5 Error: (06/24/2014 07:29:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: explorer.exe, Version: 6.3.9600.17039, Zeitstempel: 0x53156588 Name des fehlerhaften Moduls: IDTNC64.cpl, Version: 1.0.6418.0, Zeitstempel: 0x500e5e3d Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000001154 ID des fehlerhaften Prozesses: 0x38c Startzeit der fehlerhaften Anwendung: 0xexplorer.exe0 Pfad der fehlerhaften Anwendung: explorer.exe1 Pfad des fehlerhaften Moduls: explorer.exe2 Berichtskennung: explorer.exe3 Vollständiger Name des fehlerhaften Pakets: explorer.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: explorer.exe5 Error: (06/24/2014 07:29:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: explorer.exe, Version: 6.3.9600.17039, Zeitstempel: 0x53156588 Name des fehlerhaften Moduls: IDTNC64.cpl, Version: 1.0.6418.0, Zeitstempel: 0x500e5e3d Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000001154 ID des fehlerhaften Prozesses: 0x1044 Startzeit der fehlerhaften Anwendung: 0xexplorer.exe0 Pfad der fehlerhaften Anwendung: explorer.exe1 Pfad des fehlerhaften Moduls: explorer.exe2 Berichtskennung: explorer.exe3 Vollständiger Name des fehlerhaften Pakets: explorer.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: explorer.exe5 Error: (06/24/2014 07:29:15 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: explorer.exe, Version: 6.3.9600.17039, Zeitstempel: 0x53156588 Name des fehlerhaften Moduls: IDTNC64.cpl, Version: 1.0.6418.0, Zeitstempel: 0x500e5e3d Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000001154 ID des fehlerhaften Prozesses: 0x660 Startzeit der fehlerhaften Anwendung: 0xexplorer.exe0 Pfad der fehlerhaften Anwendung: explorer.exe1 Pfad des fehlerhaften Moduls: explorer.exe2 Berichtskennung: explorer.exe3 Vollständiger Name des fehlerhaften Pakets: explorer.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: explorer.exe5 Error: (06/24/2014 07:29:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: explorer.exe, Version: 6.3.9600.17039, Zeitstempel: 0x53156588 Name des fehlerhaften Moduls: IDTNC64.cpl, Version: 1.0.6418.0, Zeitstempel: 0x500e5e3d Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000001154 ID des fehlerhaften Prozesses: 0x108c Startzeit der fehlerhaften Anwendung: 0xexplorer.exe0 Pfad der fehlerhaften Anwendung: explorer.exe1 Pfad des fehlerhaften Moduls: explorer.exe2 Berichtskennung: explorer.exe3 Vollständiger Name des fehlerhaften Pakets: explorer.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: explorer.exe5 Error: (06/24/2014 07:29:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: explorer.exe, Version: 6.3.9600.17039, Zeitstempel: 0x53156588 Name des fehlerhaften Moduls: IDTNC64.cpl, Version: 1.0.6418.0, Zeitstempel: 0x500e5e3d Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000001154 ID des fehlerhaften Prozesses: 0x604 Startzeit der fehlerhaften Anwendung: 0xexplorer.exe0 Pfad der fehlerhaften Anwendung: explorer.exe1 Pfad des fehlerhaften Moduls: explorer.exe2 Berichtskennung: explorer.exe3 Vollständiger Name des fehlerhaften Pakets: explorer.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: explorer.exe5 Error: (06/24/2014 07:29:14 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: explorer.exe, Version: 6.3.9600.17039, Zeitstempel: 0x53156588 Name des fehlerhaften Moduls: IDTNC64.cpl, Version: 1.0.6418.0, Zeitstempel: 0x500e5e3d Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000001154 ID des fehlerhaften Prozesses: 0x11b8 Startzeit der fehlerhaften Anwendung: 0xexplorer.exe0 Pfad der fehlerhaften Anwendung: explorer.exe1 Pfad des fehlerhaften Moduls: explorer.exe2 Berichtskennung: explorer.exe3 Vollständiger Name des fehlerhaften Pakets: explorer.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: explorer.exe5 Error: (06/24/2014 07:29:13 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: explorer.exe, Version: 6.3.9600.17039, Zeitstempel: 0x53156588 Name des fehlerhaften Moduls: IDTNC64.cpl, Version: 1.0.6418.0, Zeitstempel: 0x500e5e3d Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000001154 ID des fehlerhaften Prozesses: 0x968 Startzeit der fehlerhaften Anwendung: 0xexplorer.exe0 Pfad der fehlerhaften Anwendung: explorer.exe1 Pfad des fehlerhaften Moduls: explorer.exe2 Berichtskennung: explorer.exe3 Vollständiger Name des fehlerhaften Pakets: explorer.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: explorer.exe5 System errors: ============= Error: (06/24/2014 07:29:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x800706be fehlgeschlagen: AD2F1837.HPConnectedPhotopoweredbySnapfish Error: (06/24/2014 07:29:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x800706be fehlgeschlagen: Microsoft.BingFoodAndDrink Error: (06/24/2014 07:29:31 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070002 fehlgeschlagen: Microsoft.BingMaps Error: (06/24/2014 07:29:30 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070490 fehlgeschlagen: AD2F1837.GettingStartedwithWindows8 Error: (06/24/2014 07:29:26 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x800706be fehlgeschlagen: Microsoft.BingFinance Error: (06/24/2014 07:29:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x800706be fehlgeschlagen: Microsoft.ZuneMusic Error: (06/24/2014 07:29:20 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x800706be fehlgeschlagen: Microsoft.BingNews Error: (06/24/2014 07:29:20 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x800706be fehlgeschlagen: Microsoft.SkypeApp Error: (06/24/2014 07:29:20 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x800706be fehlgeschlagen: Microsoft.ZuneVideo Error: (06/24/2014 07:29:20 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x800706be fehlgeschlagen: microsoft.windowscommunicationsapps Microsoft Office Sessions: ========================= Error: (04/09/2014 03:08:12 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 5 seconds with 0 seconds of active time. This session ended with a crash. Error: (04/09/2014 03:07:52 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 15 seconds with 0 seconds of active time. This session ended with a crash. Error: (03/05/2014 09:59:18 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 193 seconds with 0 seconds of active time. This session ended with a crash. Error: (11/22/2013 05:34:23 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 14 seconds with 0 seconds of active time. This session ended with a crash. Error: (10/24/2013 10:00:27 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 325 seconds with 240 seconds of active time. This session ended with a crash. Error: (10/20/2013 06:28:33 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 70 seconds with 60 seconds of active time. This session ended with a crash. Error: (10/17/2013 00:35:04 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 16 seconds with 0 seconds of active time. This session ended with a crash. Error: (10/14/2013 10:20:46 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 23 seconds with 0 seconds of active time. This session ended with a crash. Error: (09/24/2013 11:15:25 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 7251 seconds with 600 seconds of active time. This session ended with a crash. Error: (09/03/2013 11:46:21 AM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: ) Description: ID: 1, Application Name: Microsoft Office Excel, Application Version: 12.0.4518.1014, Microsoft Office Version: 12.0.4518.1014. This session lasted 17 seconds with 0 seconds of active time. This session ended with a crash. CodeIntegrity Errors: =================================== Date: 2014-06-24 19:30:04.004 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-06-24 17:26:19.160 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-06-24 17:18:42.988 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-06-24 13:42:00.973 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-06-24 13:36:54.785 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-06-24 13:29:11.754 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-06-24 13:12:20.020 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-06-24 13:09:17.785 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-06-24 12:56:09.098 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. Date: 2014-06-24 12:49:54.832 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\atikmpag.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Percentage of memory in use: 31% Total physical RAM: 8145 MB Available physical RAM: 5547.54 MB Total Pagefile: 10065 MB Available Pagefile: 7245.49 MB Total Virtual: 131072 MB Available Virtual: 131071.79 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:1850.08 GB) (Free:1778.27 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (Recovery Image) (Fixed) (Total:11.02 GB) (Free:1.34 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 1863 GB) (Disk ID: 901D9150) Partition: GPT Partition Type. ==================== End Of Log ============================ |
25.06.2014, 18:04 | #6 |
/// the machine /// TB-Ausbilder | Windows Installer Version / RegCleanPro / Flackernder Bildschirm Adware & Co. deinstallieren
Solltest Du ein Programm nicht finden oder nicht deinstallieren können, mache bitte mit dem nächsten Schritt weiter: Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ --> Windows Installer Version / RegCleanPro / Flackernder Bildschirm |
Themen zu Windows Installer Version / RegCleanPro / Flackernder Bildschirm |
absturz, bildschirm, board, desktop, ergebnis, explorer, falsche, installer, installiert, klick, log-datei, lösung, oberfläche, ordner, programme, rechner, scan, schließe, schließen, systemabsturz, update, updaten, version, windows, windows installer, öffnen |