![]() |
Log-Analyse und Auswertung: Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert?Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
![]() | #1 |
![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? Hallo, nach der letzten LAN-Party, auf der nicht alle mit der offiziellen Steam-Version von Counter-Strike 1.6 spielen konnten und wir so eine Version eingesetzt haben, die keinen Steam-Account benötigt. Heute habe ich mittels Clam-AV gescannt (warum siehe 2.) und die Counter-Strike.exe wurde als Virus identifiziert. Hier ist der Virus-Total Scan der Datei: https://www.virustotal.com/de/file/02711a0d6eb7b925ef6a05e0a042eab4c71321375e4b0962087b185a298d27ca/analysis/ (warum Clam-AV bei denen nichts gefunden hat weiß ich nicht, bei mir hat es sich gemeldet). 1. Ich hoffe ihr helft mir trotz der dubiosen und illegalen Quelle der Software. Zu meiner Verteidigung: Ich bin kein Dieb (glaube ich), ich habe eine Lizenz und habe diese Version nur für Kompatibilität mit meinen Freunden eingesetzt. 2. Da ich diese Datei ausgeführt habe bin ich natürlich besorgt, dass ich mich infiziert haben könnte. Ich habe allerdings keine gravierenden Symptome, außer, dass meine Internetverbindung in den letzten Tagen lahmt und vor 2 oder 3 Tagen, als es wirklich quälend langsam war, ein tracert nach spiegel.de ergeben hat, dass der Traffic nach blackhole.prolexic.com geroutet worden ist (da bekam ich Angst ich sei Teil eines Botnetzes das gerade jemanden DDoS'd, aber es war nur der traffic nach spiegel.de, ging genauso langsam, aber ich bin durchgekommen). Naja, ich habe keine Ahnung von sowas, aber ich mache mir halt sorgen, dass jetzt was im argen ist. defogger habe ich erst nach FRST laufen lassen bzw. hat mir FRST irgendwann keine Addition.txt mehr ausgespuckt, deswegen habe ich den ersten Durchlauf von FRST vor defogger gepostet - wenn ich nochmal laufen lassen soll einfach bescheid geben. Bei dem gmer-Scan war ich mir nicht sicher, ob ich die IAT/EAT und Show-All Haken nur rausmachen und den bei Quickscan setzen muss, wenn diese Fehlermeldung kommt, oder ob das immer der Fall ist. Wegen der Einrückung habe ich vermutet es ist immer der Fall. Wenn ich den Scan nochmal anders wiederholen soll mache ich das gerne. Nach den ganzen tutorials und strengen Hinweisen hier habe ich Angst irgendwas falsch gemacht zu haben. Falls das so ist, dann tut es mir leid und ich bitte um Entschuldigung. Danke, ponder |
![]() | #2 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? Hi,
__________________Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. Ich kann auf Arbeit keine Anhänge öffnen, danke. ![]() Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
![]() | #3 |
![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? Als ich es in Code-Tags posten wollte meinte er: Text zu lange, bitte als Archiv anhängen.
__________________FRST.txt hat 142k Zeichen, kommt in 2 Posts: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-09-2014 Ran by ponder (administrator) on PONDER-PC on 26-09-2014 11:32:58 Running from C:\Users\ponder\Desktop Loaded Profile: ponder (Available profiles: ponder) Platform: Windows 7 Professional N Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe () C:\Windows\DAODx.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7202520 2013-08-19] (Realtek Semiconductor) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-07-30] (Oracle Corporation) HKU\S-1-5-21-2905865783-2833438306-3931818635-1000\...\MountPoints2: {6a5fd1fa-39c3-11e4-ad43-806e6f6e6963} - D:\.\Bin\ASSETUP.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xB01F36CBD3CDCF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_20\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_20\bin\jp2ssv.dll (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] Tcpip\..\Interfaces\{A9CB66E2-0C47-4312-BDF5-8495ED16D516}: [NameServer], FireFox: ======== FF ProfilePath: C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll () FF Plugin: @java.com/DTPlugin,version=11.20.2 -> C:\Program Files\Java\jre1.8.0_20\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.20.2 -> C:\Program Files\Java\jre1.8.0_20\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: DownloadHelper - C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-12] FF Extension: Adblock Plus - C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-09-11] FF Extension: Tab Mix Plus - C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\Extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2014-09-12] FF Extension: DownThemAll! - C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2014-09-12] Chrome: ======= ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2013-09-17] () R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2013-09-17] (ASUSTeK Computer Inc.) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-02-17] (ASUSTeK Computer Inc.) R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe [1632256 2012-11-09] (ASUSTeK Computer Inc.) [File not signed] R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-09-15] () ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2013-01-15] () R3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-26 11:32 - 2014-09-26 11:33 - 00007346 _____ () C:\Users\ponder\Desktop\FRST.txt 2014-09-26 11:32 - 2014-09-26 11:33 - 00000000 ____D () C:\FRST 2014-09-26 11:32 - 2014-09-26 01:16 - 02108928 _____ (Farbar) C:\Users\ponder\Desktop\FRST64.exe 2014-09-25 09:36 - 2014-09-25 09:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-09-24 14:06 - 2014-09-10 00:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-09-24 14:06 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-09-23 10:28 - 2014-09-23 10:29 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Notepad++ 2014-09-23 10:28 - 2014-09-23 10:28 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ 2014-09-23 10:28 - 2014-09-23 10:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2014-09-23 10:28 - 2014-09-23 10:28 - 00000000 ____D () C:\Program Files (x86)\Notepad++ 2014-09-23 10:27 - 2014-09-23 10:33 - 00011587 _____ () C:\Users\ponder\Desktop\soilbase.sql 2014-09-23 10:27 - 2014-09-23 10:27 - 07945210 _____ () C:\Users\ponder\Downloads\npp.6.6.9.Installer.exe 2014-09-23 10:17 - 2014-09-23 10:31 - 00027117 _____ () C:\Users\ponder\Desktop\soilbase_model.mwb 2014-09-23 10:17 - 2014-09-23 10:24 - 00023539 _____ () C:\Users\ponder\Desktop\soilbase_model.mwb.bak 2014-09-23 08:56 - 2014-09-23 09:02 - 00000600 _____ () C:\Users\ponder\AppData\Local\PUTTY.RND 2014-09-23 08:36 - 2014-09-23 08:36 - 00002209 _____ () C:\Users\ponder\Desktop\MySQL Workbench 6.1 CE.lnk 2014-09-23 08:36 - 2014-09-23 08:36 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\MySQL 2014-09-23 08:36 - 2014-09-23 08:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL 2014-09-23 08:36 - 2014-09-23 08:36 - 00000000 ____D () C:\Program Files (x86)\MySQL 2014-09-23 08:34 - 2014-09-23 08:34 - 00495616 _____ (Simon Tatham) C:\Users\ponder\Desktop\putty.exe 2014-09-23 08:16 - 2014-09-25 09:41 - 00000000 ____D () C:\Users\ponder\.VirtualBox 2014-09-23 08:16 - 2014-09-23 08:16 - 00001080 _____ () C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2014-09-23 08:16 - 2014-09-23 08:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox 2014-09-23 08:16 - 2014-09-23 08:16 - 00000000 ____D () C:\Program Files\Oracle 2014-09-23 08:16 - 2014-09-09 17:29 - 00910920 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys 2014-09-23 08:16 - 2014-09-09 17:27 - 00129168 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys 2014-09-22 20:45 - 2014-09-22 20:45 - 00000000 ____D () C:\Users\ponder\AppData\Local\FalloutNV 2014-09-22 14:59 - 2014-09-22 15:07 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\InfraRecorder 2014-09-22 14:59 - 2014-09-22 14:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\InfraRecorder 2014-09-22 14:59 - 2014-09-22 14:59 - 00000000 ____D () C:\Program Files (x86)\InfraRecorder 2014-09-22 13:17 - 2014-09-22 13:18 - 00000000 ____D () C:\Users\ponder\.dia 2014-09-22 13:17 - 2014-09-22 13:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dia 2014-09-22 13:17 - 2014-09-22 13:17 - 00000000 ____D () C:\Program Files (x86)\Dia 2014-09-22 13:07 - 2014-09-22 13:37 - 1382989824 _____ () C:\Users\ponder\Downloads\linuxmint-17-cinnamon-64bit-v2.iso 2014-09-21 03:23 - 2014-09-21 03:23 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Soldat 2014-09-21 00:28 - 2014-09-21 03:52 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2014-09-20 20:38 - 2014-09-20 20:38 - 00000730 _____ () C:\Users\ponder\Desktop\Counter-Strike.exe - Verknüpfung.lnk 2014-09-19 10:28 - 2014-09-19 10:28 - 00000000 ____D () C:\Users\ponder\Desktop\Third Attempt 2014-09-19 10:27 - 2014-09-19 10:27 - 00001431 _____ () C:\Users\ponder\Desktop\.minecraft - Verknüpfung.lnk 2014-09-18 22:58 - 2014-09-23 11:45 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\.purple 2014-09-18 22:53 - 2014-09-18 22:53 - 00000987 _____ () C:\Users\Public\Desktop\Pidgin.lnk 2014-09-18 22:53 - 2014-09-18 22:53 - 00000000 ____D () C:\Program Files (x86)\Pidgin 2014-09-15 23:09 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-15 23:05 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-09-15 23:05 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-09-15 17:43 - 2014-09-15 17:43 - 00000000 ____D () C:\Users\ponder\AppData\Local\Skyrim 2014-09-15 17:01 - 2014-09-15 17:18 - 00290776 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-09-15 17:01 - 2014-09-15 17:01 - 00000000 ____D () C:\Users\ponder\AppData\Local\PunkBuster 2014-09-15 16:57 - 2014-09-15 16:57 - 00000000 ____D () C:\ProgramData\Package Cache 2014-09-15 16:56 - 2014-09-15 17:18 - 00290776 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-09-15 16:56 - 2014-09-15 17:01 - 00281288 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-09-15 16:56 - 2014-09-15 16:56 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-09-15 16:56 - 2014-09-15 16:56 - 00000000 __SHD () C:\Users\ponder\AppData\Local\EmieUserList 2014-09-15 16:56 - 2014-09-15 16:56 - 00000000 __SHD () C:\Users\ponder\AppData\Local\EmieSiteList 2014-09-15 08:35 - 2014-09-22 20:45 - 00000000 ____D () C:\Users\ponder\Documents\My Games 2014-09-15 08:35 - 2014-09-22 20:44 - 00062700 _____ () C:\Windows\DirectX.log 2014-09-15 08:35 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2014-09-15 08:35 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2014-09-15 08:35 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-09-15 08:35 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-09-15 08:35 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2014-09-15 08:35 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-09-15 08:35 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2014-09-15 08:35 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-09-15 08:35 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-09-15 08:35 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2014-09-15 08:35 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2014-09-15 08:35 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-09-15 08:35 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-09-15 08:35 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2014-09-15 08:35 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2014-09-15 08:35 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2014-09-15 08:35 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-09-15 08:35 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2014-09-15 08:35 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2014-09-15 08:35 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-09-15 08:35 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-09-15 08:35 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2014-09-15 08:35 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-09-15 08:35 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2014-09-15 08:35 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-09-15 08:35 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2014-09-15 08:35 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-09-15 08:35 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2014-09-15 08:35 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-09-15 08:35 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2014-09-15 08:35 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-09-15 08:35 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2014-09-15 08:35 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-09-15 08:35 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2014-09-15 08:35 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-09-15 08:35 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2014-09-15 08:35 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-09-15 08:35 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2014-09-15 08:35 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-09-15 08:35 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2014-09-15 08:35 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-09-15 08:35 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2014-09-15 08:35 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-09-15 08:35 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2014-09-15 08:35 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-09-15 08:35 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2014-09-15 08:35 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-09-15 08:35 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2014-09-15 08:35 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-09-15 08:35 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2014-09-15 08:35 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-09-15 08:35 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2014-09-15 08:35 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-09-15 08:35 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2014-09-15 08:35 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-09-15 08:35 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2014-09-15 08:35 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2014-09-15 08:35 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-09-15 08:35 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-09-15 08:35 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2014-09-15 08:35 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-09-15 08:35 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2014-09-15 08:35 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-09-15 08:35 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2014-09-15 08:35 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2014-09-15 08:35 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-09-15 08:35 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-09-15 08:35 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-09-15 08:35 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2014-09-15 08:35 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2014-09-15 08:35 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2014-09-15 08:35 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-09-15 08:35 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-09-15 08:35 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2014-09-15 08:35 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-09-15 08:35 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2014-09-15 08:35 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-09-15 08:35 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2014-09-15 08:35 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-09-15 08:35 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2014-09-15 08:35 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-09-15 08:35 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2014-09-15 08:35 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-09-15 08:35 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2014-09-15 08:35 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-09-15 08:35 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2014-09-15 08:35 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-09-15 08:35 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2014-09-15 08:35 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-09-15 08:35 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2014-09-15 08:35 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-09-15 08:35 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2014-09-15 08:35 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-09-15 08:35 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2014-09-15 04:59 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-09-15 04:59 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-09-15 04:59 - 2013-11-26 10:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-09-15 04:59 - 2013-11-23 20:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-09-15 04:59 - 2013-11-23 19:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-09-15 04:59 - 2013-11-23 00:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-09-15 04:58 - 2014-02-04 04:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-09-15 04:58 - 2014-02-04 04:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-09-15 03:30 - 2014-09-23 18:31 - 00002208 _____ () C:\Windows\MB.idx 2014-09-15 03:15 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2014-09-15 03:12 - 2014-09-15 03:12 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-09-15 03:11 - 2014-09-15 03:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-09-15 03:11 - 2014-09-15 03:11 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-09-15 03:11 - 2014-09-15 03:11 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-09-15 03:11 - 2014-09-15 03:11 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-09-15 03:11 - 2014-09-15 03:11 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-09-15 03:11 - 2014-09-15 03:11 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-09-15 03:11 - 2014-09-15 03:11 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-09-15 03:11 - 2014-09-15 03:11 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-09-15 03:11 - 2014-09-15 03:11 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-09-15 03:11 - 2014-09-15 03:11 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-09-15 03:09 - 2014-09-15 03:15 - 00011756 _____ () C:\Windows\IE11_main.log 2014-09-14 22:55 - 2014-09-14 22:55 - 00000222 _____ () C:\Users\ponder\Desktop\APB Reloaded.url 2014-09-14 20:50 - 2014-09-14 20:50 - 00000222 _____ () C:\Users\ponder\Desktop\Path of Exile.url 2014-09-14 12:29 - 2014-09-14 12:29 - 00000219 _____ () C:\Users\ponder\Desktop\Team Fortress 2.url 2014-09-14 12:29 - 2014-09-14 12:29 - 00000219 _____ () C:\Users\ponder\Desktop\Dota 2.url 2014-09-14 12:29 - 2014-09-14 12:29 - 00000218 _____ () C:\Users\ponder\Desktop\Counter-Strike.url 2014-09-14 12:29 - 2014-09-14 12:29 - 00000206 _____ () C:\Users\ponder\Desktop\Black Mesa.url 2014-09-13 11:50 - 2014-09-13 11:50 - 00000593 _____ () C:\Users\Public\Desktop\Guild Wars 2.lnk 2014-09-13 11:50 - 2014-09-13 11:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2 2014-09-13 11:47 - 2014-09-13 11:50 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Guild Wars 2 2014-09-13 08:01 - 2014-09-26 09:03 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-09-13 08:01 - 2014-09-13 08:01 - 00000000 ____D () C:\ProgramData\Mozilla 2014-09-12 14:29 - 2012-02-11 08:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2014-09-12 14:29 - 2012-02-11 08:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe 2014-09-12 14:29 - 2011-03-11 08:41 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys 2014-09-12 14:29 - 2011-03-11 08:41 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys 2014-09-12 14:29 - 2011-03-11 08:41 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys 2014-09-12 14:29 - 2011-03-11 08:41 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys 2014-09-12 14:29 - 2011-03-11 08:41 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys 2014-09-12 14:29 - 2011-03-11 08:33 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2014-09-12 14:29 - 2011-03-11 08:30 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe 2014-09-12 14:29 - 2011-03-11 07:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll 2014-09-12 14:29 - 2011-03-11 07:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe 2014-09-12 14:29 - 2011-03-11 06:37 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2014-09-12 14:29 - 2011-02-25 08:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2014-09-12 14:29 - 2011-02-25 07:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2014-09-12 12:26 - 2014-09-12 12:26 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\LibreOffice 2014-09-12 08:47 - 2014-09-12 08:52 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\SumatraPDF 2014-09-12 08:47 - 2014-09-12 08:47 - 00001937 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SumatraPDF.lnk 2014-09-12 08:47 - 2014-09-12 08:47 - 00000000 ____D () C:\Program Files (x86)\SumatraPDF 2014-09-12 08:46 - 2014-09-12 08:46 - 00007605 _____ () C:\Users\ponder\AppData\Local\Resmon.ResmonCfg 2014-09-12 08:45 - 2014-09-12 08:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.2 2014-09-12 08:45 - 2014-09-12 08:45 - 00000000 ____D () C:\Program Files (x86)\LibreOffice 4 2014-09-12 08:12 - 2014-09-12 08:12 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-09-12 00:25 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2014-09-11 20:15 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-09-11 20:15 - 2013-10-30 04:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-09-11 20:15 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-09-11 20:15 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-09-11 20:15 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2014-09-11 20:15 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-09-11 20:15 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2014-09-11 20:15 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2014-09-11 20:15 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-09-11 20:15 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-09-11 20:15 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-09-11 20:15 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-09-11 20:15 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-09-11 20:15 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-09-11 20:15 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2014-09-11 20:15 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2014-09-11 20:15 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2014-09-11 20:15 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2014-09-11 20:15 - 2011-10-26 07:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2014-09-11 20:15 - 2011-10-26 07:25 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-09-11 20:15 - 2011-10-26 06:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll 2014-09-11 20:15 - 2011-10-26 06:32 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-09-11 20:15 - 2011-06-16 07:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll 2014-09-11 20:15 - 2011-06-16 06:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll 2014-09-11 20:15 - 2011-06-15 12:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2014-09-11 20:15 - 2011-06-15 12:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll 2014-09-11 20:15 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2014-09-11 20:15 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll 2014-09-11 20:15 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-09-11 20:15 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-09-11 20:15 - 2010-12-23 12:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll 2014-09-11 20:15 - 2010-12-23 12:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2014-09-11 20:15 - 2010-12-23 12:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax 2014-09-11 20:15 - 2010-12-23 07:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll 2014-09-11 20:15 - 2010-12-23 07:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2014-09-11 20:15 - 2010-12-23 07:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax 2014-09-11 20:14 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-09-11 20:14 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-09-11 20:14 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-09-11 20:14 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-09-11 20:14 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-09-11 20:14 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-09-11 20:14 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-09-11 20:14 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-09-11 20:14 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-09-11 20:14 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-09-11 20:14 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-09-11 20:14 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-09-11 20:14 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2014-09-11 20:14 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-09-11 20:14 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-09-11 20:14 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-09-11 20:14 - 2014-01-01 01:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-09-11 20:14 - 2014-01-01 01:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-09-11 20:14 - 2013-11-26 13:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-09-11 20:14 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-09-11 20:14 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-09-11 20:14 - 2013-10-05 22:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll |
![]() | #4 |
![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? FRST.txt Fortsetzung: Code:
ATTFilter 2014-09-11 20:14 - 2013-10-05 21:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-09-11 20:14 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-09-11 20:14 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-09-11 20:14 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2014-09-11 20:14 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2014-09-11 20:14 - 2012-01-04 12:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2014-09-11 20:14 - 2012-01-04 10:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll 2014-09-11 20:14 - 2011-12-30 08:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2014-09-11 20:14 - 2011-12-30 07:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2014-09-11 20:14 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2014-09-11 20:14 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2014-09-11 20:14 - 2011-07-09 04:46 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2014-09-11 20:14 - 2011-05-04 07:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2014-09-11 20:14 - 2011-05-04 07:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2014-09-11 20:14 - 2011-05-04 07:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2014-09-11 20:14 - 2011-05-04 07:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2014-09-11 20:14 - 2011-05-04 06:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll 2014-09-11 20:14 - 2011-05-04 06:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2014-09-11 20:14 - 2011-05-04 06:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2014-09-11 20:14 - 2011-05-04 06:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2014-09-11 20:14 - 2011-04-27 04:40 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-09-11 20:14 - 2011-04-27 04:39 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2014-09-11 20:13 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-09-11 20:13 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-09-11 20:13 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-09-11 20:13 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-09-11 20:13 - 2013-12-04 04:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-09-11 20:13 - 2013-12-04 04:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-09-11 20:13 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-09-11 20:13 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-09-11 20:13 - 2013-12-04 04:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-09-11 20:13 - 2013-12-04 04:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-09-11 20:13 - 2013-12-04 04:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-09-11 20:13 - 2013-12-04 04:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-09-11 20:13 - 2013-12-04 04:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-09-11 20:13 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-09-11 20:13 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-09-11 20:13 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-09-11 20:13 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-09-11 20:13 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-09-11 20:13 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-09-11 20:13 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-09-11 20:13 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-09-11 20:13 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-09-11 20:13 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-09-11 20:13 - 2013-10-04 04:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2014-09-11 20:13 - 2013-10-04 04:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2014-09-11 20:13 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-09-11 20:13 - 2013-10-04 03:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2014-09-11 20:13 - 2013-10-04 03:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2014-09-11 20:13 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-09-11 20:13 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2014-09-11 20:13 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2014-09-11 20:13 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2014-09-11 20:13 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2014-09-11 20:13 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-09-11 20:13 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2014-09-11 20:13 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2014-09-11 20:13 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2014-09-11 20:13 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-09-11 20:13 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2014-09-11 20:13 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2014-09-11 20:13 - 2013-04-26 01:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2014-09-11 20:13 - 2013-04-01 00:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2014-09-11 20:13 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2014-09-11 20:13 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys 2014-09-11 20:13 - 2011-03-11 08:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2014-09-11 20:13 - 2011-03-11 08:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2014-09-11 20:13 - 2011-03-11 07:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll 2014-09-11 20:13 - 2011-03-11 07:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll 2014-09-11 20:12 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-09-11 20:12 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2014-09-11 20:12 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2014-09-11 20:12 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe 2014-09-11 20:09 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-09-11 20:09 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-09-11 20:09 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-09-11 20:09 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-09-11 20:09 - 2012-11-29 00:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2014-09-11 20:07 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2014-09-11 20:07 - 2012-10-03 19:44 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2014-09-11 20:07 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2014-09-11 20:07 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2014-09-11 20:07 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2014-09-11 20:07 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll 2014-09-11 20:07 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2014-09-11 20:07 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll 2014-09-11 20:07 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll 2014-09-11 20:07 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll 2014-09-11 20:07 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2014-09-11 20:07 - 2012-01-13 09:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2014-09-11 19:15 - 2014-09-15 17:00 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\NVIDIA 2014-09-11 19:13 - 2014-09-11 19:13 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\java 2014-09-11 19:11 - 2014-09-11 19:11 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-09-11 19:11 - 2014-09-11 19:11 - 00000000 ____D () C:\ProgramData\Sun 2014-09-11 19:11 - 2014-09-11 19:11 - 00000000 ____D () C:\ProgramData\Oracle 2014-09-11 19:11 - 2014-09-11 19:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-09-11 19:10 - 2014-09-11 19:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2014-09-11 19:10 - 2014-09-11 19:10 - 00000000 ____D () C:\Program Files\Java 2014-09-11 19:00 - 2014-09-11 19:00 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Macromedia 2014-09-11 19:00 - 2014-09-11 19:00 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Adobe 2014-09-11 19:00 - 2014-09-11 19:00 - 00000000 ____D () C:\Users\ponder\AppData\Local\Macromedia 2014-09-11 18:58 - 2014-09-11 18:58 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-11 18:58 - 2014-09-11 18:58 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-11 18:58 - 2014-09-11 18:58 - 00000000 ____D () C:\Windows\system32\Macromed 2014-09-11 18:57 - 2014-09-11 19:00 - 00000000 ____D () C:\Users\ponder\AppData\Local\Adobe 2014-09-11 18:46 - 2014-09-22 17:56 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\.minecraft 2014-09-11 18:46 - 2014-09-11 18:46 - 00675988 _____ () C:\Users\ponder\Desktop\Minecraft.exe 2014-09-11 18:36 - 2014-09-11 20:24 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-09-11 18:33 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-09-11 18:33 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-09-11 18:33 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2014-09-11 18:33 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-09-11 18:33 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-09-11 18:33 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-09-11 18:33 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2014-09-11 18:33 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-09-11 18:33 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-09-11 18:33 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-09-11 18:33 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-09-11 18:33 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-09-11 18:33 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-09-11 18:33 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-09-11 18:33 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-09-11 18:33 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-09-11 18:33 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-09-11 18:33 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2014-09-11 18:33 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2014-09-11 18:33 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-09-11 18:33 - 2013-07-04 14:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-09-11 18:33 - 2013-07-04 14:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2014-09-11 18:33 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2014-09-11 18:33 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2014-09-11 18:33 - 2013-07-04 12:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2014-09-11 18:33 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-09-11 18:33 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-09-11 18:33 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2014-09-11 18:33 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2014-09-11 18:33 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2014-09-11 18:33 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe 2014-09-11 18:33 - 2012-05-01 07:40 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2014-09-11 18:33 - 2011-03-03 08:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2014-09-11 18:33 - 2011-03-03 08:24 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2014-09-11 18:33 - 2011-03-03 08:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe 2014-09-11 18:33 - 2011-03-03 07:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2014-09-11 18:33 - 2011-03-03 07:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe 2014-09-11 18:32 - 2014-06-16 04:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-09-11 18:32 - 2013-09-08 04:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-09-11 18:32 - 2013-09-08 04:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2014-09-11 18:32 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-09-11 18:32 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2014-09-11 18:32 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2014-09-11 18:32 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2014-09-11 18:32 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2014-09-11 18:32 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2014-09-11 18:32 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs 2014-09-11 18:32 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-09-11 18:32 - 2011-08-17 07:26 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll 2014-09-11 18:32 - 2011-08-17 07:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax 2014-09-11 18:32 - 2011-08-17 06:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll 2014-09-11 18:32 - 2011-08-17 06:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax 2014-09-11 18:32 - 2011-04-29 05:06 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2014-09-11 18:32 - 2011-04-29 05:05 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2014-09-11 18:32 - 2011-04-29 05:05 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2014-09-11 18:32 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-09-11 18:30 - 2013-08-29 04:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-09-11 18:30 - 2013-08-29 04:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2014-09-11 18:30 - 2013-08-29 04:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-09-11 18:30 - 2013-08-29 03:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-09-11 18:30 - 2013-08-29 03:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2014-09-11 18:30 - 2013-08-29 03:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2014-09-11 18:30 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2014-09-11 18:29 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-09-11 18:29 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-09-11 18:29 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-09-11 18:29 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2014-09-11 18:29 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-09-11 18:29 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2014-09-11 18:29 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll 2014-09-11 18:29 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-09-11 18:29 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2014-09-11 18:29 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2014-09-11 18:29 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2014-09-11 18:29 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-09-11 18:29 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2014-09-11 18:29 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2014-09-11 18:29 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2014-09-11 18:29 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2014-09-11 18:29 - 2011-05-24 13:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2014-09-11 18:29 - 2011-05-24 12:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll 2014-09-11 18:29 - 2011-05-24 12:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll 2014-09-11 18:29 - 2011-05-24 12:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll 2014-09-11 18:29 - 2011-05-24 12:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2014-09-11 18:29 - 2011-02-05 19:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2014-09-11 18:29 - 2011-02-05 19:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll 2014-09-11 18:29 - 2011-02-05 19:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll 2014-09-11 18:29 - 2011-02-05 19:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll 2014-09-11 18:29 - 2011-02-05 19:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2014-09-11 18:29 - 2011-02-05 19:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2014-09-11 18:29 - 2011-02-05 19:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2014-09-11 18:28 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-09-11 18:28 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-09-11 18:28 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-09-11 18:28 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-09-11 18:28 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-09-11 18:28 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-09-11 18:28 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-09-11 18:28 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-09-11 18:28 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-09-11 18:28 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-09-11 18:28 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-09-11 18:28 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-09-11 18:28 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-09-11 18:28 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-09-11 18:28 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-09-11 18:28 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-09-11 18:28 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-09-11 18:28 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-09-11 18:28 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-09-11 18:28 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-09-11 18:28 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-09-11 18:28 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-09-11 18:28 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-09-11 18:28 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-09-11 18:28 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-09-11 18:28 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-09-11 18:28 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2014-09-11 18:28 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2014-09-11 18:28 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-09-11 18:28 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-09-11 18:28 - 2013-07-04 14:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-09-11 18:28 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-09-11 18:28 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-09-11 18:28 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2014-09-11 18:28 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2014-09-11 18:28 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2014-09-11 18:28 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2014-09-11 18:28 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2014-09-11 18:28 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2014-09-11 18:28 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll 2014-09-11 18:28 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll 2014-09-11 18:28 - 2012-05-05 10:36 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2014-09-11 18:28 - 2012-05-05 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2014-09-11 18:28 - 2011-12-16 10:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2014-09-11 18:28 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll 2014-09-11 18:28 - 2011-05-03 07:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2014-09-11 18:28 - 2011-05-03 06:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2014-09-11 18:28 - 2011-02-18 12:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe 2014-09-11 18:28 - 2011-02-18 07:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe 2014-09-11 18:28 - 2011-02-12 13:34 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe 2014-09-11 18:27 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-09-11 18:27 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-09-11 18:27 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-09-11 18:27 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-09-11 18:27 - 2011-10-15 08:31 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2014-09-11 18:27 - 2011-10-15 07:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2014-09-11 18:27 - 2011-08-27 07:37 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-09-11 18:27 - 2011-08-27 07:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll 2014-09-11 18:27 - 2011-08-27 06:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2014-09-11 18:27 - 2011-08-27 06:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll 2014-09-11 18:27 - 2011-02-23 06:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2014-09-11 18:26 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-11 18:26 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-11 18:23 - 2014-09-12 08:47 - 00071616 _____ () C:\Users\ponder\AppData\Local\GDIPFONTCACHEV1.DAT 2014-09-11 18:21 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2014-09-11 18:21 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll 2014-09-11 18:19 - 2014-09-25 21:06 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-09-11 18:19 - 2014-09-11 18:19 - 00000971 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-09-11 18:19 - 2014-09-11 18:19 - 00000861 _____ () C:\Users\ponder\Desktop\Downloads.lnk 2014-09-11 18:19 - 2014-09-11 18:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-09-11 18:19 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-09-11 18:19 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-09-11 18:19 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2014-09-11 18:19 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-09-11 18:19 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-09-11 18:19 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2014-09-11 18:19 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2014-09-11 18:19 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2014-09-11 18:19 - 2011-11-19 16:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-09-11 18:19 - 2011-11-19 16:01 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2014-09-11 18:00 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2014-09-11 18:00 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2014-09-11 18:00 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2014-09-11 18:00 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2014-09-11 18:00 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2014-09-11 18:00 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2014-09-11 18:00 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2014-09-11 18:00 - 2012-06-02 16:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2014-09-11 17:59 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2014-09-11 17:59 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2014-09-11 17:59 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2014-09-11 17:58 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2014-09-11 17:58 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll 2014-09-11 17:58 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2014-09-11 17:58 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-09-11 17:58 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2014-09-11 17:58 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2014-09-11 17:58 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe 2014-09-11 17:58 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll 2014-09-11 17:57 - 2014-09-11 17:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2014-09-11 17:57 - 2014-09-11 17:57 - 00000000 ____D () C:\Program Files\VideoLAN 2014-09-11 17:55 - 2014-09-23 00:18 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\foobar2000 2014-09-11 17:55 - 2014-09-11 17:55 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\foobar2000.lnk 2014-09-11 17:55 - 2014-09-11 17:55 - 00000000 ____D () C:\Program Files (x86)\foobar2000 2014-09-11 17:54 - 2014-09-26 11:31 - 00000000 _____ () C:\Windows\Path.idx 2014-09-11 17:54 - 2014-09-11 17:54 - 00002774 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-09-11 17:54 - 2014-09-11 17:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-09-11 17:54 - 2014-09-11 17:54 - 00000000 ____D () C:\Program Files\CCleaner 2014-09-11 17:53 - 2014-09-11 17:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2014-09-11 17:53 - 2014-09-11 17:53 - 00000000 ____D () C:\Program Files\7-Zip 2014-09-11 17:53 - 2014-09-11 17:53 - 00000000 _____ () C:\Windows\SysWOW64\Drivers\1043_ASUSTeK_M5A97 R2.0.alu 2014-09-11 17:53 - 2014-09-11 16:59 - 00000000 ____D () C:\Windows\Panther 2014-09-11 17:49 - 2014-09-26 11:26 - 01048576 _____ () C:\Windows\PE_Rom.dll 2014-09-11 17:46 - 2014-09-11 17:46 - 00000000 ____D () C:\Program Files\ASUS 2014-09-11 17:45 - 2014-09-11 17:45 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-09-11 17:45 - 2013-02-21 05:40 - 00032840 ____R (NT Kernel Resources) C:\Windows\system32\Drivers\ndisrd.sys 2014-09-11 17:44 - 2014-09-11 17:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS 2014-09-11 17:44 - 2008-12-02 20:05 - 00184320 _____ (ASUSTeK) C:\Windows\SysWOW64\Drivers\UpdateHelper.dll 2014-09-11 17:43 - 2014-09-11 17:43 - 00000000 ____D () C:\ProgramData\ASUS 2014-09-11 17:43 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2014-09-11 17:43 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2014-09-11 17:43 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2014-09-11 17:42 - 2014-09-11 17:44 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-09-11 17:42 - 2014-09-11 17:42 - 00000000 ____D () C:\Windows\SysWOW64\Drivers\MFDLL 2014-09-11 17:42 - 2012-08-22 11:54 - 00015232 ____R () C:\Windows\SysWOW64\Drivers\AsIO.sys 2014-09-11 17:42 - 2010-06-29 09:41 - 00028672 ____R (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll 2014-09-11 17:42 - 2008-01-04 07:34 - 00011832 ____N () C:\Windows\SysWOW64\Drivers\AsInsHelp64.sys 2014-09-11 17:40 - 2014-09-11 17:46 - 00015632 _____ () C:\Windows\DPINST.LOG 2014-09-11 17:40 - 2014-09-11 17:40 - 00000000 ____D () C:\Program Files (x86)\ASM104xUSB3 2014-09-11 17:36 - 2014-09-11 17:36 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-09-11 17:36 - 2014-09-11 17:36 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-09-11 17:36 - 2014-09-11 17:36 - 00000000 ____D () C:\Program Files\Realtek 2014-09-11 17:36 - 2013-08-21 06:50 - 03591000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-09-11 17:36 - 2013-08-20 14:17 - 02809048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-09-11 17:36 - 2013-08-20 14:17 - 02585304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-09-11 17:36 - 2013-08-20 12:48 - 00633381 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-09-11 17:36 - 2013-08-20 12:31 - 00148184 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-09-11 17:36 - 2013-08-20 07:51 - 31488000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-09-11 17:36 - 2013-08-20 04:02 - 04848920 _____ (ASUSTeKcomputer.Inc Inc) C:\Windows\system32\RTKSMlfx.dll 2014-09-11 17:36 - 2013-08-16 09:46 - 00818008 _____ (ASUSTeKcomputer.Inc Inc) C:\Windows\system32\RTKSMSettingsIPC.dll 2014-09-11 17:36 - 2013-08-14 10:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-09-11 17:36 - 2013-08-14 10:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-09-11 17:36 - 2013-08-12 23:21 - 01019136 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-09-11 17:36 - 2013-08-12 23:21 - 00899328 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-09-11 17:36 - 2013-08-12 23:21 - 00720128 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-09-11 17:36 - 2013-08-12 23:21 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-09-11 17:36 - 2013-08-07 11:34 - 00765184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-09-11 17:36 - 2013-08-06 03:47 - 00947248 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-09-11 17:36 - 2013-08-02 14:16 - 01005784 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-09-11 17:36 - 2013-08-01 04:59 - 05694760 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-09-11 17:36 - 2013-07-28 04:48 - 27518208 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-09-11 17:36 - 2013-07-26 08:05 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-09-11 17:36 - 2013-07-23 09:40 - 03610880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-09-11 17:36 - 2013-07-23 09:40 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-09-11 17:36 - 2013-07-23 09:39 - 14048512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-09-11 17:36 - 2013-07-23 09:39 - 01916672 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-09-11 17:36 - 2013-07-11 08:15 - 00557880 _____ () C:\Windows\system32\audioLibVc.dll 2014-09-11 17:36 - 2013-06-25 06:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-09-11 17:36 - 2013-06-25 06:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-09-11 17:36 - 2013-06-25 06:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-09-11 17:36 - 2013-04-24 11:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-09-11 17:36 - 2013-02-20 12:55 - 01284680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-09-11 17:36 - 2012-08-31 13:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-09-11 17:36 - 2012-08-31 13:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-09-11 17:36 - 2012-08-31 13:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-09-11 17:36 - 2012-08-31 13:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-09-11 17:36 - 2012-08-31 13:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-09-11 17:36 - 2012-01-30 05:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-09-11 17:36 - 2012-01-10 04:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-09-11 17:36 - 2011-12-20 09:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-09-11 17:36 - 2011-11-22 10:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-09-11 17:36 - 2011-09-02 08:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-09-11 17:36 - 2011-09-02 08:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-09-11 17:36 - 2011-09-02 08:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-09-11 17:36 - 2011-08-11 10:55 - 00001332 ____R () C:\Windows\system32\Drivers\DTSU2P.DAT 2014-09-11 17:36 - 2011-03-17 06:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-09-11 17:36 - 2011-03-07 11:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-09-11 17:36 - 2010-11-03 12:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-09-11 17:36 - 2010-07-22 10:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-09-11 17:36 - 2009-11-24 03:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-09-11 17:36 - 2009-11-24 03:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-09-11 17:36 - 2009-11-24 03:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-09-11 17:36 - 2009-11-24 03:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-09-11 17:35 - 2014-09-11 17:37 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-09-11 17:35 - 2013-08-14 10:36 - 01325312 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-09-11 17:35 - 2013-08-14 10:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-09-11 17:35 - 2013-08-14 10:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-09-11 17:35 - 2013-08-08 13:57 - 02080472 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-09-11 17:35 - 2013-08-07 11:41 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-09-11 17:35 - 2013-08-05 22:56 - 06219096 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-09-11 17:35 - 2013-08-05 22:56 - 01908568 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-09-11 17:35 - 2013-08-05 22:56 - 00312152 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-09-11 17:35 - 2013-08-05 22:56 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-09-11 17:35 - 2013-08-05 12:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-09-11 17:35 - 2013-07-24 04:07 - 02032896 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-09-11 17:35 - 2013-07-23 09:39 - 00922880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-09-11 17:35 - 2013-06-21 05:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-09-11 17:35 - 2013-06-05 15:42 - 00208072 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-09-11 17:35 - 2013-04-03 08:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-09-11 17:35 - 2012-10-02 08:41 - 00501192 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-09-11 17:35 - 2012-10-02 08:41 - 00487368 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-09-11 17:35 - 2012-10-02 08:41 - 00415688 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-09-11 17:35 - 2012-03-08 05:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-09-11 17:35 - 2011-08-23 11:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-09-11 17:35 - 2010-09-27 03:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-09-11 17:31 - 2014-09-15 23:07 - 01622000 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-09-11 17:31 - 2014-09-11 17:31 - 00000000 ____D () C:\Program Files (x86)\AMD APP 2014-09-11 17:31 - 2012-04-11 03:40 - 00082560 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_sata.sys 2014-09-11 17:31 - 2012-04-11 03:40 - 00042624 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_xata.sys 2014-09-11 17:28 - 2014-09-11 17:28 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-09-11 17:28 - 2014-09-11 17:28 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Mozilla 2014-09-11 17:28 - 2014-09-11 17:28 - 00000000 ____D () C:\Users\ponder\AppData\Local\Mozilla 2014-09-11 17:23 - 2014-09-11 17:23 - 00000000 ____D () C:\Program Files\ATI 2014-09-11 17:22 - 2014-09-11 17:22 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-09-11 17:21 - 2014-09-11 17:21 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll 2014-09-11 17:21 - 2011-02-25 08:25 - 00296320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2014-09-11 17:20 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-09-11 17:20 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2014-09-11 17:20 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-09-11 17:20 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-09-11 17:20 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-09-11 17:20 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-09-11 17:20 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2014-09-11 17:20 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-09-11 17:20 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2014-09-11 17:18 - 2014-09-11 17:46 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-09-11 17:18 - 2014-09-11 17:35 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-09-11 17:18 - 2012-12-26 19:26 - 00805088 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-09-11 17:18 - 2012-12-26 19:26 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2014-09-11 17:18 - 2012-12-26 19:26 - 00074344 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-09-11 17:17 - 2014-09-11 17:46 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS 2014-09-11 17:17 - 2014-09-11 17:39 - 00033596 _____ () C:\Windows\Ascd_tmp.ini 2014-09-11 17:17 - 2014-09-11 17:38 - 00001769 _____ () C:\Windows\Language_trs.ini 2014-09-11 17:17 - 2014-09-11 17:38 - 00000288 _____ () C:\Windows\As_Utilities.log 2014-09-11 17:17 - 2014-09-11 17:17 - 00000000 ____D () C:\Windows\AsDmiHtm 2014-09-11 17:11 - 2014-09-11 17:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-09-11 17:08 - 2014-09-26 11:26 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-09-11 17:08 - 2014-09-11 17:08 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-09-11 17:07 - 2014-09-11 17:08 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-09-11 17:07 - 2014-09-11 17:08 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-09-11 17:07 - 2014-02-08 19:42 - 06712608 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-09-11 17:07 - 2014-02-08 19:42 - 03498272 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-09-11 17:07 - 2014-02-08 19:42 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-09-11 17:07 - 2014-02-08 19:42 - 00923936 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-09-11 17:07 - 2014-02-08 19:42 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-09-11 17:07 - 2014-02-08 19:42 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-09-11 17:07 - 2014-02-08 18:18 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-09-11 17:07 - 2014-02-05 19:52 - 03573739 _____ () C:\Windows\system32\nvcoproc.bin 2014-09-11 17:06 - 2014-02-08 20:34 - 31432480 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 23683360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 18257576 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 17715784 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 15740232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 14669032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 12324640 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-09-11 17:06 - 2014-02-08 20:34 - 11636176 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 11589272 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 09728064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 09690424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 03142432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 03090184 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 02956576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 02782496 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 02713728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 02410784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433489.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433489.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00947296 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00892192 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00875296 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00863520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00844576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00832424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00483104 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00408352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00378656 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00353504 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00333600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00174296 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00148528 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00024544 _____ () C:\Windows\system32\nvinfo.pb 2014-09-11 17:06 - 2013-11-28 15:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-09-11 17:06 - 2013-11-28 15:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-09-11 17:06 - 2013-11-22 10:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-09-11 17:05 - 2014-09-11 17:07 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-09-11 17:05 - 2014-09-11 17:05 - 00000000 ____D () C:\NVIDIA 2014-09-11 17:02 - 2014-09-11 17:02 - 00001294 _____ () C:\Users\ponder\Desktop\Computer Management.lnk 2014-09-11 16:59 - 2014-09-26 11:31 - 01071664 _____ () C:\Windows\WindowsUpdate.log 2014-09-11 16:59 - 2014-09-23 08:18 - 00000000 ____D () C:\Users\ponder 2014-09-11 16:59 - 2014-09-21 03:23 - 00000000 ____D () C:\Users\ponder\AppData\Local\VirtualStore 2014-09-11 16:59 - 2014-09-15 03:36 - 00001429 _____ () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-09-11 16:59 - 2014-09-11 16:59 - 00000020 ___SH () C:\Users\ponder\ntuser.ini 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Vorlagen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Startmenü 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Netzwerkumgebung 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Lokale Einstellungen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Eigene Dateien 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Druckumgebung 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Documents\Eigene Musik 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Documents\Eigene Bilder 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\AppData\Local\Verlauf 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\AppData\Local\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 __SHD () C:\Recovery 2014-09-11 16:59 - 2009-07-14 06:59 - 00000000 ___RD () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-09-11 16:59 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-09-11 16:56 - 2014-09-11 16:56 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-09-09 17:27 - 2014-09-09 17:27 - 00157448 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetFlt.sys 2014-09-09 17:27 - 2014-09-09 17:27 - 00142528 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetAdp.sys 2014-09-09 17:26 - 2014-09-09 17:26 - 00205352 _____ (Oracle Corporation) C:\Windows\system32\VBoxNetFltNobj.dll 2014-08-27 23:38 - 2014-08-27 23:38 - 00773968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr100.dll 2014-08-27 23:38 - 2014-08-27 23:38 - 00421200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp100.dll ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-26 11:30 - 2011-04-12 10:14 - 00713958 _____ () C:\Windows\system32\perfh007.dat 2014-09-26 11:30 - 2011-04-12 10:14 - 00154074 _____ () C:\Windows\system32\perfc007.dat 2014-09-26 11:30 - 2009-07-14 07:12 - 01648656 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-09-26 11:26 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-09-26 11:26 - 2009-07-14 06:56 - 00026569 _____ () C:\Windows\setupact.log 2014-09-25 16:38 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-09-25 14:22 - 2009-07-14 06:50 - 00028144 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-09-25 14:22 - 2009-07-14 06:50 - 00028144 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-09-15 09:06 - 2010-11-21 05:27 - 00278152 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-09-15 08:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-09-15 03:35 - 2010-11-21 05:47 - 00021582 _____ () C:\Windows\PFRO.log 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-09-13 07:58 - 2009-07-14 06:50 - 00320976 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-09-12 08:12 - 2011-04-12 10:24 - 00000000 ____D () C:\Program Files\Windows Journal 2014-09-12 08:12 - 2009-07-14 07:38 - 00000000 ____D () C:\Program Files\Windows Defender 2014-09-12 08:12 - 2009-07-14 07:38 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-09-12 08:12 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2014-09-12 08:12 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism 2014-09-12 08:12 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\System 2014-09-11 17:53 - 2009-07-14 07:43 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-09-11 17:53 - 2009-07-14 07:38 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2014-09-11 17:18 - 2009-07-14 07:38 - 00000000 ____D () C:\Windows\system32\restore 2014-09-11 17:07 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help 2014-09-11 16:59 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-09-11 16:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-09-11 16:56 - 2009-07-14 06:51 - 00002790 _____ () C:\Windows\DtcInstall.log 2014-09-11 16:56 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-09-11 16:56 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-09-11 16:54 - 2011-04-12 10:24 - 00000000 ____D () C:\Windows\CSC Some content of TEMP: ==================== C:\Users\ponder\AppData\Local\Temp\fp_pl_pfs_installer.exe C:\Users\ponder\AppData\Local\Temp\Gw2.exe C:\Users\ponder\AppData\Local\Temp\xmlUpdater.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-09-16 15:48 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-09-2014 Ran by ponder at 2014-09-26 11:33:55 Running from C:\Users\ponder\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: - Igor Pavlov) Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: - Adobe Systems Incorporated) AI Suite II (HKLM-x32\...\{34D3688E-A737-44C5-9E2A-FF73618728E1}) (Version: 2.04.01 - ASUSTeK Computer Inc.) AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (HKLM\...\{5DDB9EF7-1BC0-C9C1-9829-6B9CF68AC357}) (Version: 8.0.903.0 - Advanced Micro Devices, Inc.) APB Reloaded (HKLM-x32\...\Steam App 113400) (Version: - Reloaded Productions) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: - Asmedia Technology) CCleaner (HKLM\...\CCleaner) (Version: 4.17 - Piriform) Dia (remove only) (HKLM-x32\...\Dia) (Version: - ) Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment) foobar2000 v1.3.3 (HKLM-x32\...\foobar2000) (Version: 1.3.3 - Peter Pawlowski) Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) InfraRecorder (HKLM-x32\...\InfraRecorder) (Version: - Christian Kindahl) Java 8 Update 20 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418020F0}) (Version: 8.0.200 - Oracle Corporation) Java Auto Updater (x32 Version: - Oracle Corporation) Hidden Java SE Development Kit 8 Update 20 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180200}) (Version: - Oracle Corporation) LibreOffice (HKLM-x32\...\{14DB1822-00B5-4820-86B5-EF893CA46B53}) (Version: - The Document Foundation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Mozilla Firefox 32.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 32.0.3 (x86 de)) (Version: 32.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 32.0.1 - Mozilla) MySQL Workbench 6.1 CE (HKLM-x32\...\{AD95295B-0279-43B6-A873-F12A1D1CD146}) (Version: 6.1.7 - Oracle Corporation) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.9 - Notepad++ Team) NVIDIA 3D Vision Controller-Treiber 334.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 334.89 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 334.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 334.89 - NVIDIA Corporation) NVIDIA Grafiktreiber 334.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 334.89 - NVIDIA Corporation) NVIDIA HD-Audiotreiber (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.147.1067 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 334.89 (Version: 334.89 - NVIDIA Corporation) Hidden Oracle VM VirtualBox 4.3.16 (HKLM\...\{D7FAEA32-7CE3-4D9F-9139-F7B87BCC50AF}) (Version: 4.3.16 - Oracle Corporation) Path of Exile (HKLM-x32\...\Steam App 238960) (Version: - Grinding Gear Games) Pidgin (HKLM-x32\...\Pidgin) (Version: 2.10.9 - ) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.67.1226.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.) Source SDK Base 2007 (HKLM-x32\...\Steam App 218) (Version: - Valve) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) SumatraPDF (HKLM-x32\...\SumatraPDF) (Version: 2.5.2 - Krzysztof Kowalczyk) Surface Tension Uncut 2.0 Final (HKLM-x32\...\Surface Tension Uncut) (Version: 2.0 Final - Text FAMGUY1) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 19-09-2014 07:06:30 Windows Update 22-09-2014 18:44:18 DirectX wurde installiert 23-09-2014 06:15:52 Installed Oracle VM VirtualBox 4.3.16 23-09-2014 06:35:51 Installed MySQL Workbench 6.1 CE 23-09-2014 07:05:05 Windows Update 25-09-2014 04:47:07 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0F62C242-E405-49B6-B4BA-C1459E9456FB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-08-21] (Piriform Ltd) Task: {3235D5BD-90EB-4DE1-BF2D-C02361DEEE01} - System32\Tasks\ASUS\RunDAOD => C:\Windows\DAODx.exe [2009-03-30] () Task: {53392DE2-7F19-4047-99E1-CC724528F5D4} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr.exe [2011-09-09] () Task: {97D18145-6B6D-4A1B-AA4E-F15BCF5C3F73} - System32\Tasks\ASUS\Easy Update => C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe [2013-01-14] () Task: {CAE26E7A-C232-4795-AB61-B39A65E2F4F9} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2012-03-13] (ASUSTeK Computer Inc.) Task: {F5B74B42-D1B6-4E91-8A35-035BF05DB185} - System32\Tasks\ASUS\ASUS Network iControl Help Execute => C:\Program Files (x86)\ASUS\AI Suite II\Network iControl\NetSvcHelp\NetSvcHelpEntry.exe [2013-02-07] (ASUSTeK Computer Inc.) ==================== Loaded Modules (whitelisted) ============= 2014-09-11 17:07 - 2014-02-08 19:42 - 00117024 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2009-03-30 08:32 - 2009-03-30 08:32 - 00032768 ____R () C:\Windows\DAODx.exe 2014-09-15 16:56 - 2014-09-15 16:56 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-05-12 11:49 - 2014-05-12 11:49 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_06.dll 2014-09-11 17:44 - 2013-01-14 16:37 - 01406776 _____ () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe 2013-09-17 12:58 - 2013-09-17 12:58 - 00920736 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe 2014-09-11 17:44 - 2013-01-14 17:16 - 05771136 _____ () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzULIB.dll 2014-09-11 17:44 - 2010-06-21 15:21 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\ImageHelper.dll 2014-09-11 17:42 - 2014-09-26 11:26 - 00033792 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll 2014-09-11 17:42 - 2010-06-29 04:58 - 00104448 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll 2014-09-11 17:46 - 2013-08-19 11:23 - 00043520 ____N () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\HookKey32.dll 2014-09-11 17:45 - 2013-08-19 17:21 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\pngio.dll 2014-09-25 09:36 - 2014-09-25 09:36 - 03715184 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-09-11 17:44 - 2011-07-12 19:14 - 00147456 _____ () C:\Program Files (x86)\ASUS\AI Suite II\AssistFunc.dll 2014-09-11 17:44 - 2010-10-05 08:22 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\pngio.dll 2014-09-11 17:44 - 2012-10-08 17:07 - 00972288 _____ () C:\Program Files (x86)\ASUS\AI Suite II\BarGadget\BarGadget.dll 2014-09-11 17:44 - 2013-01-15 15:30 - 01040896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EasyUpdt.dll 2014-09-11 17:45 - 2013-06-24 15:59 - 01173504 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Network iControl\Network iControl.dll 2014-09-11 17:45 - 2012-07-20 09:39 - 01047040 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Probe_II\ProbeII.dll 2014-09-11 17:44 - 2013-04-15 14:19 - 00883712 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\Sensor.dll 2014-09-11 17:44 - 2012-05-28 21:27 - 01622528 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor Graph\SensorGraph.dll 2014-09-11 17:44 - 2011-09-19 20:18 - 01243136 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Settings\Settings.dll 2014-09-11 17:44 - 2011-07-21 09:06 - 00846848 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Splitter\Splitter.dll 2014-09-11 17:44 - 2012-08-29 18:09 - 00875520 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TabGadget\TabGadget.dll 2014-09-11 17:42 - 2010-08-23 04:17 - 00662016 ____R () C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMLib.dll 2014-09-11 17:44 - 2010-10-05 08:22 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\ImageHelper.dll 2014-09-11 17:46 - 2012-01-19 09:39 - 00028672 _____ () C:\Program Files (x86)\ASUS\AI Suite II\USB BIOS Flashback\PEInfo.dll 2014-09-11 17:46 - 2010-09-23 11:51 - 00114688 _____ () C:\Program Files (x86)\ASUS\AI Suite II\USB BIOS Flashback\AsIdxParser.dll 2014-09-11 17:46 - 2010-02-25 14:01 - 00139264 _____ () C:\Program Files (x86)\ASUS\AI Suite II\USB BIOS Flashback\Aszip.dll 2014-09-11 17:44 - 2009-08-12 20:15 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\pngio.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-2905865783-2833438306-3931818635-500 - Disabled - Status: Degraded) Gast (S-1-5-21-2905865783-2833438306-3931818635-501 - Enabled - Status: OK) ponder (S-1-5-21-2905865783-2833438306-3931818635-1000 - Enabled - Status: OK) => C:\Users\ponder ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/26/2014 11:28:13 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/25/2014 02:17:24 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/25/2014 09:10:25 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/24/2014 02:04:07 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/23/2014 09:27:30 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: MySQLWorkbench.exe, Version:, Zeitstempel: 0x53a4907e Name des fehlerhaften Moduls: grt.dll, Version:, Zeitstempel: 0x53a489a2 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00001c26 ID des fehlerhaften Prozesses: 0xe44 Startzeit der fehlerhaften Anwendung: 0xMySQLWorkbench.exe0 Pfad der fehlerhaften Anwendung: MySQLWorkbench.exe1 Pfad des fehlerhaften Moduls: MySQLWorkbench.exe2 Berichtskennung: MySQLWorkbench.exe3 Error: (09/23/2014 09:27:29 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application: MySQLWorkbench.exe Framework Version: v4.0.30319 Description: The process was terminated due to an unhandled exception. Exception Info: System.AccessViolationException Stack: at <Module>.mforms.MenuItem.callback(mforms.MenuItem*) at MenuItemEventTarget.MenuItemClick(System.Object, System.EventArgs) at System.Windows.Forms.ToolStripItem.RaiseEvent(System.Object, System.EventArgs) at System.Windows.Forms.ToolStripMenuItem.OnClick(System.EventArgs) at System.Windows.Forms.ToolStripItem.HandleClick(System.EventArgs) at System.Windows.Forms.ToolStripItem.HandleMouseUp(System.Windows.Forms.MouseEventArgs) at System.Windows.Forms.ToolStripItem.FireEventInteractive(System.EventArgs, System.Windows.Forms.ToolStripItemEventType) at System.Windows.Forms.ToolStripItem.FireEvent(System.EventArgs, System.Windows.Forms.ToolStripItemEventType) at System.Windows.Forms.ToolStrip.OnMouseUp(System.Windows.Forms.MouseEventArgs) at System.Windows.Forms.ToolStripDropDown.OnMouseUp(System.Windows.Forms.MouseEventArgs) at System.Windows.Forms.Control.WmMouseUp(System.Windows.Forms.Message ByRef, System.Windows.Forms.MouseButtons, Int32) at System.Windows.Forms.Control.WndProc(System.Windows.Forms.Message ByRef) at System.Windows.Forms.ScrollableControl.WndProc(System.Windows.Forms.Message ByRef) at System.Windows.Forms.ToolStrip.WndProc(System.Windows.Forms.Message ByRef) at System.Windows.Forms.ToolStripDropDown.WndProc(System.Windows.Forms.Message ByRef) at System.Windows.Forms.Control+ControlNativeWindow.OnMessage(System.Windows.Forms.Message ByRef) at System.Windows.Forms.Control+ControlNativeWindow.WndProc(System.Windows.Forms.Message ByRef) at System.Windows.Forms.NativeWindow.Callback(IntPtr, Int32, IntPtr, IntPtr) at System.Windows.Forms.UnsafeNativeMethods.DispatchMessageW(MSG ByRef) at System.Windows.Forms.Application+ComponentManager.System.Windows.Forms.UnsafeNativeMethods.IMsoComponentManager.FPushMessageLoop(IntPtr, Int32, Int32) at System.Windows.Forms.Application+ThreadContext.RunMessageLoopInner(Int32, System.Windows.Forms.ApplicationContext) at System.Windows.Forms.Application+ThreadContext.RunMessageLoop(Int32, System.Windows.Forms.ApplicationContext) at System.Windows.Forms.Application.Run(System.Windows.Forms.ApplicationContext) at MySQL.GUI.Workbench.Program.Main(System.String[]) Error: (09/23/2014 08:12:54 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/23/2014 09:03:00 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/22/2014 01:18:06 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: dia-win-remote.exe, Version:, Zeitstempel: 0x4ef37a66 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea8e7 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0003332f ID des fehlerhaften Prozesses: 0xce8 Startzeit der fehlerhaften Anwendung: 0xdia-win-remote.exe0 Pfad der fehlerhaften Anwendung: dia-win-remote.exe1 Pfad des fehlerhaften Moduls: dia-win-remote.exe2 Berichtskennung: dia-win-remote.exe3 Error: (09/22/2014 00:56:07 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (09/25/2014 07:21:04 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (09/25/2014 07:21:04 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Error: (09/25/2014 05:44:25 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst lmhosts erreicht. Error: (09/25/2014 04:59:54 PM) (Source: Microsoft-Windows-HAL) (EventID: 12) (User: ) Description: Der Speicher wurde beim letzten Leistungsübergang des Systems von der Plattformfirmware beschädigt. Überprüfen Sie, ob für Ihr System aktualisierte Firmware verfügbar ist. Error: (09/24/2014 02:44:17 PM) (Source: Microsoft-Windows-HAL) (EventID: 12) (User: ) Description: Der Speicher wurde beim letzten Leistungsübergang des Systems von der Plattformfirmware beschädigt. Überprüfen Sie, ob für Ihr System aktualisierte Firmware verfügbar ist. Error: (09/23/2014 05:38:34 PM) (Source: bowser) (EventID: 8003) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "O2BOX", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{A9CB66E2-0C47-4312-BDF5-8495ED16D516}-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (09/23/2014 04:26:08 PM) (Source: bowser) (EventID: 8003) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "O2BOX", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{A9CB66E2-0C47-4312-BDF5-8495ED16D516}-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (09/23/2014 04:04:17 PM) (Source: bowser) (EventID: 8003) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "O2BOX", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{A9CB66E2-0C47-4312-BDF5-8495ED16D516}-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (09/23/2014 02:34:04 PM) (Source: bowser) (EventID: 8003) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "PONDER-NOTEBOOK", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{A9CB66E2-0C47-4312-BDF5-8495ED16D516}-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (09/23/2014 00:47:28 PM) (Source: bowser) (EventID: 8003) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "O2BOX", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{A9CB66E2-0C47-4312-BDF5-8495ED16D516}-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Microsoft Office Sessions: ========================= Error: (09/26/2014 11:28:13 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/25/2014 02:17:24 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/25/2014 09:10:25 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/24/2014 02:04:07 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/23/2014 09:27:30 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: MySQLWorkbench.exe6.1.7.1189153a4907egrt.dll0.0.0.053a489a2c000000500001c26e4401cfd6fd357e2737C:\Program Files (x86)\MySQL\MySQL Workbench 6.1 CE\MySQLWorkbench.exeC:\Program Files (x86)\MySQL\MySQL Workbench 6.1 CE\grt.dll12f9f5fa-42f3-11e4-ae6a-7824af4510b3 Error: (09/23/2014 09:27:29 AM) (Source: .NET Runtime) (EventID: 1026) (User: ) Description: Application: MySQLWorkbench.exe Framework Version: v4.0.30319 Description: The process was terminated due to an unhandled exception. Exception Info: System.AccessViolationException Stack: at <Module>.mforms.MenuItem.callback(mforms.MenuItem*) at MenuItemEventTarget.MenuItemClick(System.Object, System.EventArgs) at System.Windows.Forms.ToolStripItem.RaiseEvent(System.Object, System.EventArgs) at System.Windows.Forms.ToolStripMenuItem.OnClick(System.EventArgs) at System.Windows.Forms.ToolStripItem.HandleClick(System.EventArgs) at System.Windows.Forms.ToolStripItem.HandleMouseUp(System.Windows.Forms.MouseEventArgs) at System.Windows.Forms.ToolStripItem.FireEventInteractive(System.EventArgs, System.Windows.Forms.ToolStripItemEventType) at System.Windows.Forms.ToolStripItem.FireEvent(System.EventArgs, System.Windows.Forms.ToolStripItemEventType) at System.Windows.Forms.ToolStrip.OnMouseUp(System.Windows.Forms.MouseEventArgs) at System.Windows.Forms.ToolStripDropDown.OnMouseUp(System.Windows.Forms.MouseEventArgs) at System.Windows.Forms.Control.WmMouseUp(System.Windows.Forms.Message ByRef, System.Windows.Forms.MouseButtons, Int32) at System.Windows.Forms.Control.WndProc(System.Windows.Forms.Message ByRef) at System.Windows.Forms.ScrollableControl.WndProc(System.Windows.Forms.Message ByRef) at System.Windows.Forms.ToolStrip.WndProc(System.Windows.Forms.Message ByRef) at System.Windows.Forms.ToolStripDropDown.WndProc(System.Windows.Forms.Message ByRef) at System.Windows.Forms.Control+ControlNativeWindow.OnMessage(System.Windows.Forms.Message ByRef) at System.Windows.Forms.Control+ControlNativeWindow.WndProc(System.Windows.Forms.Message ByRef) at System.Windows.Forms.NativeWindow.Callback(IntPtr, Int32, IntPtr, IntPtr) at System.Windows.Forms.UnsafeNativeMethods.DispatchMessageW(MSG ByRef) at System.Windows.Forms.Application+ComponentManager.System.Windows.Forms.UnsafeNativeMethods.IMsoComponentManager.FPushMessageLoop(IntPtr, Int32, Int32) at System.Windows.Forms.Application+ThreadContext.RunMessageLoopInner(Int32, System.Windows.Forms.ApplicationContext) at System.Windows.Forms.Application+ThreadContext.RunMessageLoop(Int32, System.Windows.Forms.ApplicationContext) at System.Windows.Forms.Application.Run(System.Windows.Forms.ApplicationContext) at MySQL.GUI.Workbench.Program.Main(System.String[]) Error: (09/23/2014 08:12:54 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/23/2014 09:03:00 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (09/22/2014 01:18:06 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: dia-win-remote.exe0.0.0.04ef37a66ntdll.dll6.1.7601.18247521ea8e7c00000050003332fce801cfd656e15dedbeC:\Program Files (x86)\Dia\bin\dia-win-remote.exeC:\Windows\SysWOW64\ntdll.dll1fac5631-424a-11e4-97be-7824af4510b3 Error: (09/22/2014 00:56:07 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Processor: AMD FX(tm)-6300 Six-Core Processor Percentage of memory in use: 24% Total physical RAM: 8092.36 MB Available physical RAM: 6115.34 MB Total Pagefile: 16182.91 MB Available Pagefile: 13837.16 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: (WIN7) (Fixed) (Total:97.66 GB) (Free:44.74 GB) NTFS Drive d: () (Fixed) (Total:585.94 GB) (Free:412.38 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ==================== End Of Log ============================ Code:
ATTFilter defogger_disable by jpshortstuff ( Log created at 11:49 on 26/09/2014 (ponder) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- Code:
ATTFilter GMER 2.1.19357 - hxxp://www.gmer.net Rootkit scan 2014-09-26 12:05:09 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\00000066 ST1000DM rev.CC43 931,51GB Running: Gmer-19357.exe; Driver: C:\Users\ponder\AppData\Local\Temp\ufliapob.sys ---- User code sections - GMER 2.1 ---- .text C:\Windows\SysWOW64\PnkBstrA.exe[1968] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 322 0000000073931a22 2 bytes [93, 73] .text C:\Windows\SysWOW64\PnkBstrA.exe[1968] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 496 0000000073931ad0 2 bytes [93, 73] .text C:\Windows\SysWOW64\PnkBstrA.exe[1968] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 552 0000000073931b08 2 bytes [93, 73] .text C:\Windows\SysWOW64\PnkBstrA.exe[1968] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 730 0000000073931bba 2 bytes [93, 73] .text C:\Windows\SysWOW64\PnkBstrA.exe[1968] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 762 0000000073931bda 2 bytes [93, 73] .text C:\Windows\SysWOW64\PnkBstrA.exe[1968] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000075551465 2 bytes [55, 75] .text C:\Windows\SysWOW64\PnkBstrA.exe[1968] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000755514bb 2 bytes [55, 75] .text ... * 2 ---- Threads - GMER 2.1 ---- Thread C:\Windows\System32\svchost.exe [3664:3696] 000007fef7d09688 ---- Disk sectors - GMER 2.1 ---- Disk \Device\Harddisk0\DR0 unknown MBR code ---- EOF - GMER 2.1 ---- |
![]() | #5 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? hi, Downloade dir bitte ![]()
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #6 |
![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? Hast du was auffälliges in den Logs gefunden oder soll ich damit einfach auf gut Glück scannen? Würde gerne verstehen, wie du vorgehst ![]() Hier der Log von TDSSKiller: Code:
ATTFilter 18:17:19.0562 0x0e58 TDSS rootkit removing tool Jul 10 2014 12:37:58 18:17:19.0562 0x0e58 UEFI system 18:17:22.0712 0x0e58 ============================================================ 18:17:22.0712 0x0e58 Current date / time: 2014/09/26 18:17:22.0712 18:17:22.0712 0x0e58 SystemInfo: 18:17:22.0712 0x0e58 18:17:22.0712 0x0e58 OS Version: 6.1.7601 ServicePack: 1.0 18:17:22.0712 0x0e58 Product type: Workstation 18:17:22.0712 0x0e58 ComputerName: PONDER-PC 18:17:22.0712 0x0e58 UserName: ponder 18:17:22.0712 0x0e58 Windows directory: C:\Windows 18:17:22.0712 0x0e58 System windows directory: C:\Windows 18:17:22.0712 0x0e58 Running under WOW64 18:17:22.0712 0x0e58 Processor architecture: Intel x64 18:17:22.0712 0x0e58 Number of processors: 6 18:17:22.0712 0x0e58 Page size: 0x1000 18:17:22.0712 0x0e58 Boot type: Normal boot 18:17:22.0712 0x0e58 ============================================================ 18:17:22.0912 0x0e58 KLMD registered as C:\Windows\system32\drivers\60802011.sys 18:17:23.0102 0x0e58 System UUID: {17B04FF3-2A41-65D0-D57D-B7A3A8FD660D} 18:17:23.0442 0x0e58 Drive \Device\Harddisk0\DR0 - Size: 0xE8E0DB6000 ( 931.51 Gb ), SectorSize: 0x200, Cylinders: 0x1DB01, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 18:17:23.0452 0x0e58 ============================================================ 18:17:23.0452 0x0e58 \Device\Harddisk0\DR0: 18:17:23.0452 0x0e58 GPT partitions: 18:17:23.0452 0x0e58 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {692CE11B-8EBA-429E-BBA9-DBF4D6CCA26F}, Name: EFI system partition, StartLBA 0x800, BlocksNum 0x32000 18:17:23.0452 0x0e58 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {B0466DA7-22B5-4FAE-8E1A-A50C2B54BBDB}, Name: Microsoft reserved partition, StartLBA 0x32800, BlocksNum 0x40000 18:17:23.0452 0x0e58 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {863646F9-5B3A-41F0-BB5C-E855E24D7C3D}, Name: Basic data partition, StartLBA 0x72800, BlocksNum 0xC350000 18:17:23.0452 0x0e58 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {0AF940FE-C11C-434E-B7FB-021E4FACBC4D}, Name: , StartLBA 0xC3C2800, BlocksNum 0x493E0000 18:17:23.0452 0x0e58 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {0FC63DAF-8483-4772-8E79-3D69D8477DE4}, UniqueGUID: {FB1F35A7-BF55-4222-BE99-187916A43E31}, Name: , StartLBA 0x557A2800, BlocksNum 0x61A8000 18:17:23.0452 0x0e58 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {0657FD6D-A4AB-43C4-84E5-0933C84B4F4F}, UniqueGUID: {99BD544A-093E-459C-B42D-F7D48DC052F9}, Name: , StartLBA 0x5B94A800, BlocksNum 0xF42800 18:17:23.0452 0x0e58 \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {0FC63DAF-8483-4772-8E79-3D69D8477DE4}, UniqueGUID: {5A2B4D58-6994-4325-A6FA-D295B26151D1}, Name: , StartLBA 0x5C88D000, BlocksNum 0x17E79800 18:17:23.0452 0x0e58 MBR partitions: 18:17:23.0452 0x0e58 ============================================================ 18:17:23.0472 0x0e58 C: <-> \Device\Harddisk0\DR0\Partition3 18:17:23.0492 0x0e58 D: <-> \Device\Harddisk0\DR0\Partition4 18:17:23.0492 0x0e58 ============================================================ 18:17:23.0492 0x0e58 Initialize success 18:17:23.0492 0x0e58 ============================================================ 18:18:16.0442 0x0c4c ============================================================ 18:18:16.0442 0x0c4c Scan started 18:18:16.0442 0x0c4c Mode: Manual; SigCheck; TDLFS; 18:18:16.0442 0x0c4c ============================================================ 18:18:16.0442 0x0c4c KSN ping started 18:18:19.0232 0x0c4c KSN ping finished: true 18:18:19.0742 0x0c4c ================ Scan system memory ======================== 18:18:19.0742 0x0c4c System memory - ok 18:18:19.0742 0x0c4c ================ Scan services ============================= 18:18:19.0872 0x0c4c [ A87D604AEA360176311474C87A63BB88, B1507868C382CD5D2DBC0D62114FCFBF7A780904A2E3CA7C7C1DD0844ADA9A8F ] 1394ohci C:\Windows\system32\drivers\1394ohci.sys 18:18:19.0952 0x0c4c 1394ohci - ok 18:18:19.0972 0x0c4c [ D81D9E70B8A6DD14D42D7B4EFA65D5F2, FDAAB7E23012B4D31537C5BDEF245BB0A12FA060A072C250E21C68E18B22E002 ] ACPI C:\Windows\system32\drivers\ACPI.sys 18:18:19.0982 0x0c4c ACPI - ok 18:18:19.0992 0x0c4c [ 99F8E788246D495CE3794D7E7821D2CA, F91615463270AD2601F882CAED43B88E7EDA115B9FD03FC56320E48119F15F76 ] AcpiPmi C:\Windows\system32\drivers\acpipmi.sys 18:18:20.0022 0x0c4c AcpiPmi - ok 18:18:20.0042 0x0c4c [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\drivers\adp94xx.sys 18:18:20.0062 0x0c4c adp94xx - ok 18:18:20.0072 0x0c4c [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\drivers\adpahci.sys 18:18:20.0092 0x0c4c adpahci - ok 18:18:20.0092 0x0c4c [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\drivers\adpu320.sys 18:18:20.0102 0x0c4c adpu320 - ok 18:18:20.0122 0x0c4c [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 18:18:20.0232 0x0c4c AeLookupSvc - ok 18:18:20.0262 0x0c4c [ FA886682CFC5D36718D3E436AACF10B9, F80AB4F91AA6B5C7ECCB000D8E1BC2CF776DC3D69B3D9EBC2558C19035A6B3AB ] AFD C:\Windows\system32\drivers\afd.sys 18:18:20.0312 0x0c4c AFD - ok 18:18:20.0332 0x0c4c [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\drivers\agp440.sys 18:18:20.0332 0x0c4c agp440 - ok 18:18:20.0342 0x0c4c [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 18:18:20.0382 0x0c4c ALG - ok 18:18:20.0402 0x0c4c [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\drivers\aliide.sys 18:18:20.0402 0x0c4c aliide - ok 18:18:20.0412 0x0c4c [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\drivers\amdide.sys 18:18:20.0422 0x0c4c amdide - ok 18:18:20.0432 0x0c4c [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\drivers\amdk8.sys 18:18:20.0452 0x0c4c AmdK8 - ok 18:18:20.0462 0x0c4c [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 18:18:20.0482 0x0c4c AmdPPM - ok 18:18:20.0512 0x0c4c [ D4121AE6D0C0E7E13AA221AA57EF2D49, 626F43C099BD197BE56648C367B711143C2BCCE96496BBDEF19F391D52FA01D0 ] amdsata C:\Windows\system32\drivers\amdsata.sys 18:18:20.0522 0x0c4c amdsata - ok 18:18:20.0532 0x0c4c [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\drivers\amdsbs.sys 18:18:20.0552 0x0c4c amdsbs - ok 18:18:20.0562 0x0c4c [ 540DAF1CEA6094886D72126FD7C33048, 296578572A93F5B74E1AD443E000B79DC99D1CBD25082E02704800F886A3065F ] amdxata C:\Windows\system32\drivers\amdxata.sys 18:18:20.0572 0x0c4c amdxata - ok 18:18:20.0592 0x0c4c [ EE4797DFEBBE8ACDB548DD8E80BE0A88, 9D56F835A5A9C045829EDFB546379E3448C9E539E5C2608B559DE4D052FEC769 ] amd_sata C:\Windows\system32\DRIVERS\amd_sata.sys 18:18:25.0602 0x0c4c amd_sata - ok 18:18:25.0602 0x0c4c [ D56EAD71A86FD2ACAE2DB47D0A6A3A41, 2E5E6D0E00D25765CC8B9997B26DE43F305966BFA518CB72EA7CA77152001726 ] amd_xata C:\Windows\system32\DRIVERS\amd_xata.sys 18:18:25.0612 0x0c4c amd_xata - ok 18:18:25.0612 0x0c4c [ 89A69C3F2F319B43379399547526D952, 8ABDB4B8E106F96EBBA0D4D04C4F432296516E107E7BA5644ED2E50CF9BB491A ] AppID C:\Windows\system32\drivers\appid.sys 18:18:25.0642 0x0c4c AppID - ok 18:18:25.0662 0x0c4c [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc C:\Windows\System32\appidsvc.dll 18:18:25.0702 0x0c4c AppIDSvc - ok 18:18:25.0712 0x0c4c [ 9D2A2369AB4B08A4905FE72DB104498F, D6FA1705018BABABFA2362E05691A0D6408D14DE7B76129B16D0A1DAD6378E58 ] Appinfo C:\Windows\System32\appinfo.dll 18:18:25.0732 0x0c4c Appinfo - ok 18:18:25.0762 0x0c4c [ 4ABA3E75A76195A3E38ED2766C962899, E2001ACD44DA270B8289DA362D26416676301773AB22616C211F31CF2E7869AA ] AppMgmt C:\Windows\System32\appmgmts.dll 18:18:25.0792 0x0c4c AppMgmt - ok 18:18:25.0792 0x0c4c [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\drivers\arc.sys 18:18:25.0802 0x0c4c arc - ok 18:18:25.0812 0x0c4c [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\drivers\arcsas.sys 18:18:25.0812 0x0c4c arcsas - ok 18:18:25.0902 0x0c4c [ 31E2470E61D5A390405BA41C279D8446, ADA2518DCB78529F716622E45775283CBBB8CA61A4E90B99C2D799C23C8AFCAA ] asComSvc C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe 18:18:25.0932 0x0c4c asComSvc - ok 18:18:25.0952 0x0c4c [ 0466B91EE5767A769E9F8EDB8EF94DDB, 04A529E57D6F617688B072B3BD281538B6B02BB985EE0AE2E355E685E52BE0C8 ] asHmComSvc C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe 18:18:25.0972 0x0c4c asHmComSvc - ok 18:18:25.0992 0x0c4c [ 798DE15F187C1F013095BBBEB6FB6197, 436CCAB6F62FA2D29827916E054ADE7ACAE485B3DE1D3E5C6C62D3DEBF1480E7 ] AsIO C:\Windows\syswow64\drivers\AsIO.sys 18:18:26.0002 0x0c4c AsIO - ok 18:18:26.0032 0x0c4c [ 10920CCB66203D7EF48F024B1B35AE6F, 3C97FE6C91076C059E54234F54021F5D74FB42638BE14E2C1E4CF2EFC342C274 ] asmthub3 C:\Windows\system32\DRIVERS\asmthub3.sys 18:18:26.0042 0x0c4c asmthub3 - ok 18:18:26.0062 0x0c4c [ C479BFAF73CF726E01AA0A487B268A5E, D49F7779CD25E098EC9DAF1886C3B3DB8EB22CEC0FEA6FDF4522A2B2D282AE37 ] asmtxhci C:\Windows\system32\DRIVERS\asmtxhci.sys 18:18:26.0072 0x0c4c asmtxhci - ok 18:18:26.0152 0x0c4c [ 9A262EDD17F8473B91B333D6B031A901, 05DFBD3A7D83FDE1D062EA719ACA9EC48CB7FD42D17DDD88B82E5D25469ADD23 ] aspnet_state C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe 18:18:26.0182 0x0c4c aspnet_state - ok 18:18:26.0212 0x0c4c [ AD8947D621FDCA48F1F39F4624B60AA1, D685CD1A378FA411EA11C18615A1EC5D66CEC2F990DB0D4181EE3140B9DF3E8B ] AsSysCtrlService C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe 18:18:26.0222 0x0c4c AsSysCtrlService - ok 18:18:26.0232 0x0c4c [ 1392B92179B07B672720763D9B1028A5, B4D47EA790920A4531E3DF5A4B4B0721B7FEA6B49A35679F0652F1E590422602 ] AsUpIO C:\Windows\syswow64\drivers\AsUpIO.sys 18:18:26.0242 0x0c4c AsUpIO - ok 18:18:26.0312 0x0c4c [ FEB2ED40421C54040BC11380272CADDC, 0B93B4879FDE3E6A8766420B112914D629F8628764AE33612ED87A6891DA63E2 ] AsusFanControlService C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe 18:18:26.0372 0x0c4c AsusFanControlService - detected UnsignedFile.Multi.Generic ( 1 ) 18:18:29.0962 0x0c4c Detect skipped due to KSN trusted 18:18:29.0962 0x0c4c AsusFanControlService - ok 18:18:30.0002 0x0c4c [ A5E4CDB420540095D1293C874B5F89AA, EBC082FF94872537649F00D91AF22E0AFB4D538ACDB4731C9A95D209C7B144FD ] ASUSFILTER C:\Windows\syswow64\drivers\ASUSFILTER.sys 18:18:30.0022 0x0c4c ASUSFILTER - ok 18:18:30.0032 0x0c4c [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 18:18:30.0072 0x0c4c AsyncMac - ok 18:18:30.0092 0x0c4c [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\drivers\atapi.sys 18:18:30.0102 0x0c4c atapi - ok 18:18:30.0142 0x0c4c [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 18:18:30.0192 0x0c4c AudioEndpointBuilder - ok 18:18:30.0212 0x0c4c [ F23FEF6D569FCE88671949894A8BECF1, FCE7B156ED663471CF9A736915F00302E93B50FC647563D235313A37FCE8F0F6 ] AudioSrv C:\Windows\System32\Audiosrv.dll 18:18:30.0242 0x0c4c AudioSrv - ok 18:18:30.0272 0x0c4c [ A6BF31A71B409DFA8CAC83159E1E2AFF, CBB83F73FFD3C3FB4F96605067739F8F7A4A40B2B05417FA49E575E95628753F ] AxInstSV C:\Windows\System32\AxInstSV.dll 18:18:30.0292 0x0c4c AxInstSV - ok 18:18:30.0332 0x0c4c [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\drivers\bxvbda.sys 18:18:30.0362 0x0c4c b06bdrv - ok 18:18:30.0382 0x0c4c [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 18:18:30.0392 0x0c4c b57nd60a - ok 18:18:30.0402 0x0c4c [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 18:18:30.0442 0x0c4c BDESVC - ok 18:18:30.0452 0x0c4c [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 18:18:30.0482 0x0c4c Beep - ok 18:18:30.0522 0x0c4c [ 82974D6A2FD19445CC5171FC378668A4, 075D25F47C0D2277E40AF8615571DAA5EB16B1824563632A9A7EC62505C29A4A ] BFE C:\Windows\System32\bfe.dll 18:18:30.0562 0x0c4c BFE - ok 18:18:30.0592 0x0c4c [ 1EA7969E3271CBC59E1730697DC74682, D511A34D63A6E0E6E7D1879068E2CD3D87ABEAF4936B2EA8CDDAD9F79D60FA04 ] BITS C:\Windows\System32\qmgr.dll 18:18:30.0642 0x0c4c BITS - ok 18:18:30.0672 0x0c4c [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 18:18:30.0682 0x0c4c blbdrive - ok 18:18:30.0692 0x0c4c [ 6C02A83164F5CC0A262F4199F0871CF5, AD4632A6A203CB40970D848315D8ADB9C898349E20D8DF4107C2AE2703A2CF28 ] bowser C:\Windows\system32\DRIVERS\bowser.sys 18:18:30.0712 0x0c4c bowser - ok 18:18:30.0732 0x0c4c [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\drivers\BrFiltLo.sys 18:18:30.0742 0x0c4c BrFiltLo - ok 18:18:30.0752 0x0c4c [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\drivers\BrFiltUp.sys 18:18:30.0762 0x0c4c BrFiltUp - ok 18:18:30.0792 0x0c4c [ 05F5A0D14A2EE1D8255C2AA0E9E8E694, 40011138869F5496A3E78D38C9900B466B6F3877526AC22952DCD528173F4645 ] Browser C:\Windows\System32\browser.dll 18:18:30.0832 0x0c4c Browser - ok 18:18:30.0922 0x0c4c [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 18:18:30.0962 0x0c4c Brserid - ok 18:18:30.0962 0x0c4c [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 18:18:30.0992 0x0c4c BrSerWdm - ok 18:18:30.0992 0x0c4c [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 18:18:31.0042 0x0c4c BrUsbMdm - ok 18:18:31.0042 0x0c4c [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 18:18:31.0092 0x0c4c BrUsbSer - ok 18:18:31.0102 0x0c4c [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\drivers\bthmodem.sys 18:18:31.0122 0x0c4c BTHMODEM - ok 18:18:31.0142 0x0c4c [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 18:18:31.0172 0x0c4c bthserv - ok 18:18:31.0192 0x0c4c [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 18:18:31.0232 0x0c4c cdfs - ok 18:18:31.0262 0x0c4c [ F036CE71586E93D94DAB220D7BDF4416, BD07AAD9E20CEAF9FC84E4977C55EA2C45604A2C682AC70B9B9A2199B6713D5B ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 18:18:31.0272 0x0c4c cdrom - ok 18:18:31.0292 0x0c4c [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] CertPropSvc C:\Windows\System32\certprop.dll 18:18:31.0322 0x0c4c CertPropSvc - ok 18:18:31.0322 0x0c4c [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\drivers\circlass.sys 18:18:31.0332 0x0c4c circlass - ok 18:18:31.0352 0x0c4c [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS C:\Windows\system32\CLFS.sys 18:18:31.0372 0x0c4c CLFS - ok 18:18:31.0412 0x0c4c [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 18:18:31.0422 0x0c4c clr_optimization_v2.0.50727_32 - ok 18:18:31.0442 0x0c4c [ B4D73F04E9BC076F7CDAC4327DF636BB, 1ADED20D5A0D0A76E2F85CB778FD06BAB814868D35F8532E17D67045FF4770C2 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 18:18:31.0452 0x0c4c clr_optimization_v2.0.50727_64 - ok 18:18:31.0512 0x0c4c [ E87213F37A13E2B54391E40934F071D0, 7EB221127EFB5BF158FB03D18EFDA2C55FB6CE3D1A1FE69C01D70DBED02C87E5 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe 18:18:31.0552 0x0c4c clr_optimization_v4.0.30319_32 - ok 18:18:31.0562 0x0c4c [ 4AEDAB50F83580D0B4D6CF78191F92AA, D113C47013B018B45161911B96E93AF96A2F3B34FA47061BF6E7A71FBA03194A ] clr_optimization_v4.0.30319_64 C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe 18:18:31.0582 0x0c4c clr_optimization_v4.0.30319_64 - ok 18:18:31.0582 0x0c4c [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\drivers\CmBatt.sys 18:18:31.0592 0x0c4c CmBatt - ok 18:18:31.0612 0x0c4c [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\drivers\cmdide.sys 18:18:31.0622 0x0c4c cmdide - ok 18:18:31.0652 0x0c4c [ EBF28856F69CF094A902F884CF989706, AD6C9F0BC20AA49EEE5478DA0F856F0EA2B414B63208C5FFB03C9D7F5B59765F ] CNG C:\Windows\system32\Drivers\cng.sys 18:18:31.0682 0x0c4c CNG - ok 18:18:31.0692 0x0c4c [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\drivers\compbatt.sys 18:18:31.0692 0x0c4c Compbatt - ok 18:18:31.0712 0x0c4c [ 03EDB043586CCEBA243D689BDDA370A8, 0E4523AA332E242D5C2C61C5717DBA5AB6E42DADB5A7E512505FC2B6CC224959 ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys 18:18:31.0732 0x0c4c CompositeBus - ok 18:18:31.0742 0x0c4c COMSysApp - ok 18:18:31.0752 0x0c4c [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\drivers\crcdisk.sys 18:18:31.0752 0x0c4c crcdisk - ok 18:18:31.0772 0x0c4c [ 6B400F211BEE880A37A1ED0368776BF4, 2F27C6FA96A1C8CBDA467846DA57E63949A7EA37DB094B13397DDD30114295BD ] CryptSvc C:\Windows\system32\cryptsvc.dll 18:18:31.0802 0x0c4c CryptSvc - ok 18:18:31.0842 0x0c4c [ 54DA3DFD29ED9F1619B6F53F3CE55E49, 9177C6907A983296BF188892A894B668A09FFA058FD56B50FE12940D54B0FA5E ] CSC C:\Windows\system32\drivers\csc.sys 18:18:31.0902 0x0c4c CSC - ok 18:18:31.0922 0x0c4c [ 3AB183AB4D2C79DCF459CD2C1266B043, 72B0187EBA9DC74E61EC5CB3DC24058DDB768843E865801894AAEAA211610C56 ] CscService C:\Windows\System32\cscsvc.dll 18:18:31.0972 0x0c4c CscService - ok 18:18:31.0992 0x0c4c [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] DcomLaunch C:\Windows\system32\rpcss.dll 18:18:32.0042 0x0c4c DcomLaunch - ok 18:18:32.0072 0x0c4c [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 18:18:32.0102 0x0c4c defragsvc - ok 18:18:32.0112 0x0c4c [ 9BB2EF44EAA163B29C4A4587887A0FE4, 03667BC3EA5003F4236929C10F23D8F108AFCB29DB5559E751FB26DFB318636F ] DfsC C:\Windows\system32\Drivers\dfsc.sys 18:18:32.0152 0x0c4c DfsC - ok 18:18:32.0172 0x0c4c [ 43D808F5D9E1A18E5EEB5EBC83969E4E, C10D1155D71EABE4ED44C656A8F13078A8A4E850C4A8FBB92D52D173430972B8 ] Dhcp C:\Windows\system32\dhcpcore.dll 18:18:32.0212 0x0c4c Dhcp - ok 18:18:32.0222 0x0c4c [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 18:18:32.0262 0x0c4c discache - ok 18:18:32.0292 0x0c4c [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\drivers\disk.sys 18:18:32.0302 0x0c4c Disk - ok 18:18:32.0322 0x0c4c [ 5DB085A8A6600BE6401F2B24EECB5415, 5FC5C7C1B4DB7BF6EFD0992E91DB41FD047E90D1ABA0B8F868CB72557F88FB13 ] dmvsc C:\Windows\system32\drivers\dmvsc.sys 18:18:32.0332 0x0c4c dmvsc - ok 18:18:32.0362 0x0c4c [ 16835866AAA693C7D7FCEBA8FFF706E4, 15891558F7C1F2BB57A98769601D447ED0D952354A8BB347312D034DC03E0242 ] Dnscache C:\Windows\System32\dnsrslvr.dll 18:18:32.0372 0x0c4c Dnscache - ok 18:18:32.0392 0x0c4c [ B1FB3DDCA0FDF408750D5843591AFBC6, AB6AD9C5E7BA2E3646D0115B67C4800D1CB43B4B12716397657C7ADEEE807304 ] dot3svc C:\Windows\System32\dot3svc.dll 18:18:32.0422 0x0c4c dot3svc - ok 18:18:32.0422 0x0c4c [ B26F4F737E8F9DF4F31AF6CF31D05820, 394BBBED4EC7FAD4110F62A43BFE0801D4AC56FFAC6C741C69407B26402311C7 ] DPS C:\Windows\system32\dps.dll 18:18:32.0462 0x0c4c DPS - ok 18:18:32.0492 0x0c4c [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 18:18:32.0512 0x0c4c drmkaud - ok 18:18:32.0552 0x0c4c [ 87CE5C8965E101CCCED1F4675557E868, 077D98F0F130B2FC710208BA34016EF2B2506EE2BD71740B228145E34A3046F1 ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 18:18:32.0572 0x0c4c DXGKrnl - ok 18:18:32.0592 0x0c4c [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 18:18:32.0622 0x0c4c EapHost - ok 18:18:32.0702 0x0c4c [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\drivers\evbda.sys 18:18:32.0812 0x0c4c ebdrv - ok 18:18:32.0832 0x0c4c [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] EFS C:\Windows\System32\lsass.exe 18:18:32.0852 0x0c4c EFS - ok 18:18:32.0882 0x0c4c [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\drivers\elxstor.sys 18:18:32.0902 0x0c4c elxstor - ok 18:18:32.0902 0x0c4c [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\drivers\errdev.sys 18:18:32.0922 0x0c4c ErrDev - ok 18:18:32.0942 0x0c4c [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll 18:18:32.0992 0x0c4c EventSystem - ok 18:18:33.0002 0x0c4c [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys 18:18:33.0032 0x0c4c exfat - ok 18:18:33.0042 0x0c4c [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys 18:18:33.0092 0x0c4c fastfat - ok 18:18:33.0112 0x0c4c [ DBEFD454F8318A0EF691FDD2EAAB44EB, 7F52AE222FF28503B6FC4A5852BD0CAEAF187BE69AF4B577D3DE474C24366099 ] Fax C:\Windows\system32\fxssvc.exe 18:18:33.0142 0x0c4c Fax - ok 18:18:33.0152 0x0c4c [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\drivers\fdc.sys 18:18:33.0152 0x0c4c fdc - ok 18:18:33.0172 0x0c4c [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll 18:18:33.0202 0x0c4c fdPHost - ok 18:18:33.0212 0x0c4c [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll 18:18:33.0252 0x0c4c FDResPub - ok 18:18:33.0262 0x0c4c [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 18:18:33.0272 0x0c4c FileInfo - ok 18:18:33.0272 0x0c4c [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 18:18:33.0302 0x0c4c Filetrace - ok 18:18:33.0312 0x0c4c [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\drivers\flpydisk.sys 18:18:33.0322 0x0c4c flpydisk - ok 18:18:33.0332 0x0c4c [ DA6B67270FD9DB3697B20FCE94950741, F621A4462C9F2904063578C427FAF22D7D66AE9967605C11C798099817CE5331 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 18:18:33.0352 0x0c4c FltMgr - ok 18:18:33.0392 0x0c4c [ C4C183E6551084039EC862DA1C945E3D, 0874A2ACDD24D64965AA9A76E9C818E216880AE4C9A2E07ED932EE404585CEE6 ] FontCache C:\Windows\system32\FntCache.dll 18:18:33.0452 0x0c4c FontCache - ok 18:18:33.0482 0x0c4c [ A8B7F3818AB65695E3A0BB3279F6DCE6, 89FCF10F599767E67A1E011753E34DA44EAA311F105DBF69549009ED932A60F0 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 18:18:33.0492 0x0c4c FontCache3.0.0.0 - ok 18:18:33.0502 0x0c4c [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 18:18:33.0502 0x0c4c FsDepends - ok 18:18:33.0522 0x0c4c [ 6BD9295CC032DD3077C671FCCF579A7B, 83622FBB0CB923798E7E584BF53CAAF75B8C016E3FF7F0FA35880FF34D1DFE33 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 18:18:33.0532 0x0c4c Fs_Rec - ok 18:18:33.0552 0x0c4c [ 8F6322049018354F45F05A2FD2D4E5E0, 73BF0FB4EBD7887E992DDEBB79E906958D6678F8D1107E8C368F5A0514D80359 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 18:18:33.0562 0x0c4c fvevol - ok 18:18:33.0572 0x0c4c [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\drivers\gagp30kx.sys 18:18:33.0582 0x0c4c gagp30kx - ok 18:18:33.0612 0x0c4c [ 277BBC7E1AA1EE957F573A10ECA7EF3A, 2EE60B924E583E847CC24E78B401EF95C69DB777A5B74E1EC963E18D47B94D24 ] gpsvc C:\Windows\System32\gpsvc.dll 18:18:33.0662 0x0c4c gpsvc - ok 18:18:33.0672 0x0c4c [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 18:18:33.0692 0x0c4c hcw85cir - ok 18:18:33.0722 0x0c4c [ 975761C778E33CD22498059B91E7373A, 8304E15FBE6876BE57263A03621365DA8C88005EAC532A770303C06799D915D9 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 18:18:33.0742 0x0c4c HdAudAddService - ok 18:18:33.0762 0x0c4c [ 97BFED39B6B79EB12CDDBFEED51F56BB, 3CF981D668FB2381E52AF2E51E296C6CFB47B0D62249645278479D0111A47955 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 18:18:33.0792 0x0c4c HDAudBus - ok 18:18:33.0792 0x0c4c [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\drivers\HidBatt.sys 18:18:33.0812 0x0c4c HidBatt - ok 18:18:33.0812 0x0c4c [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\drivers\hidbth.sys 18:18:33.0822 0x0c4c HidBth - ok 18:18:33.0832 0x0c4c [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\drivers\hidir.sys 18:18:33.0842 0x0c4c HidIr - ok 18:18:33.0862 0x0c4c [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\system32\hidserv.dll 18:18:33.0882 0x0c4c hidserv - ok 18:18:33.0902 0x0c4c [ 9592090A7E2B61CD582B612B6DF70536, FD11D5E02C32D658B28FCC35688AB66CCB5D3A0A0D74C82AE0F0B6C67B568A0F ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 18:18:33.0922 0x0c4c HidUsb - ok 18:18:33.0942 0x0c4c [ 387E72E739E15E3D37907A86D9FF98E2, 9935BE2E58788E79328293AF2F202CB0F6042441B176F75ACC5AEA93C8E05531 ] hkmsvc C:\Windows\system32\kmsvc.dll 18:18:33.0972 0x0c4c hkmsvc - ok 18:18:33.0982 0x0c4c [ EFDFB3DD38A4376F93E7985173813ABD, 70402FA73A5A2A8BB557AAC8F531E373077D28DE5F40A1F3F14B940BE01CD2E1 ] HomeGroupListener C:\Windows\system32\ListSvc.dll 18:18:34.0002 0x0c4c HomeGroupListener - ok 18:18:34.0022 0x0c4c [ 908ACB1F594274965A53926B10C81E89, 7D34A742AC486294D82676F8465A3EF26C8AC3317C32B63F62031CB007CFC208 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 18:18:34.0042 0x0c4c HomeGroupProvider - ok 18:18:34.0072 0x0c4c [ 39D2ABCD392F3D8A6DCE7B60AE7B8EFC, E9E6A1665740CFBC2DD321010007EF42ABA2102AEB9772EE8AA3354664B1E205 ] HpSAMD C:\Windows\system32\drivers\HpSAMD.sys 18:18:34.0072 0x0c4c HpSAMD - ok 18:18:34.0102 0x0c4c [ 0EA7DE1ACB728DD5A369FD742D6EEE28, 21C489412EB33A12B22290EB701C19BA57006E8702E76F730954F0784DDE9779 ] HTTP C:\Windows\system32\drivers\HTTP.sys 18:18:34.0152 0x0c4c HTTP - ok 18:18:34.0162 0x0c4c [ A5462BD6884960C9DC85ED49D34FF392, 53E65841AF5B06A2844D0BB6FC4DD3923A323FFA0E4BFC89B3B5CAFB592A3D53 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 18:18:34.0172 0x0c4c hwpolicy - ok 18:18:34.0192 0x0c4c [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\drivers\i8042prt.sys 18:18:34.0202 0x0c4c i8042prt - ok 18:18:34.0222 0x0c4c [ AAAF44DB3BD0B9D1FB6969B23ECC8366, 805AA4A9464002D1AB3832E4106B2AAA1331F4281367E75956062AAE99699385 ] iaStorV C:\Windows\system32\drivers\iaStorV.sys 18:18:34.0242 0x0c4c iaStorV - ok 18:18:34.0302 0x0c4c [ C98A5B9D932430AD8EEBD3EF73756EF7, DF7E1D391A0F3345AD61154363922C27BD557DEEACE395A6A8A8A16BFD1BB9A8 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 18:18:34.0322 0x0c4c idsvc - ok 18:18:34.0322 0x0c4c IEEtwCollectorService - ok 18:18:34.0332 0x0c4c [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\drivers\iirsp.sys 18:18:34.0342 0x0c4c iirsp - ok 18:18:34.0372 0x0c4c [ 344789398EC3EE5A4E00C52B31847946, 3DA5F08E4B46F4E63456AA588D49E39A6A09A97D0509880C00F327623DB6122D ] IKEEXT C:\Windows\System32\ikeext.dll 18:18:34.0412 0x0c4c IKEEXT - ok 18:18:34.0512 0x0c4c [ 2BEE14AC102CF1259AC99ABF53291A8B, 45FAF81302E7A575D378A67F4EF75C89FDDE3B16AC3155BB2803A54D3A7B0DD3 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 18:18:34.0582 0x0c4c IntcAzAudAddService - ok 18:18:34.0622 0x0c4c [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\drivers\intelide.sys 18:18:34.0622 0x0c4c intelide - ok 18:18:34.0642 0x0c4c [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\drivers\intelppm.sys 18:18:34.0652 0x0c4c intelppm - ok 18:18:34.0682 0x0c4c [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll 18:18:34.0712 0x0c4c IPBusEnum - ok 18:18:34.0722 0x0c4c [ C9F0E1BD74365A8771590E9008D22AB6, 728BC5A6AAE499FDC50EB01577AF16D83C2A9F3B09936DD2A89C01E074BA8E51 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 18:18:34.0752 0x0c4c IpFilterDriver - ok 18:18:34.0772 0x0c4c [ 08C2957BB30058E663720C5606885653, E13EDF6701512E2A9977A531454932CA5023087CB50E1D2F416B8BCDD92B67BE ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 18:18:34.0822 0x0c4c iphlpsvc - ok 18:18:34.0822 0x0c4c [ 0FC1AEA580957AA8817B8F305D18CA3A, 7161E4DE91AAFC3FA8BF24FAE4636390C2627DB931505247C0D52C75A31473D9 ] IPMIDRV C:\Windows\system32\drivers\IPMIDrv.sys 18:18:34.0842 0x0c4c IPMIDRV - ok 18:18:34.0852 0x0c4c [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys 18:18:34.0892 0x0c4c IPNAT - ok 18:18:34.0942 0x0c4c [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys 18:18:34.0982 0x0c4c IRENUM - ok 18:18:34.0982 0x0c4c [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\drivers\isapnp.sys 18:18:34.0992 0x0c4c isapnp - ok 18:18:35.0012 0x0c4c [ 96BB922A0981BC7432C8CF52B5410FE6, 236C05509B1040059B15021CBBDBDAF3B9C0F00910142BE5887B2C7561BAAFBA ] iScsiPrt C:\Windows\system32\drivers\msiscsi.sys 18:18:35.0032 0x0c4c iScsiPrt - ok 18:18:35.0052 0x0c4c [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 18:18:35.0062 0x0c4c kbdclass - ok 18:18:35.0072 0x0c4c [ 0705EFF5B42A9DB58548EEC3B26BB484, 86C6824ED7ED6FA8F306DB6319A0FD688AA91295AE571262F9D8E96A32225E99 ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 18:18:35.0092 0x0c4c kbdhid - ok 18:18:35.0102 0x0c4c [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] KeyIso C:\Windows\system32\lsass.exe 18:18:35.0112 0x0c4c KeyIso - ok 18:18:35.0132 0x0c4c [ 353009DEDF918B2A51414F330CF72DEC, BF157D6E329F26E02FA16271B751B421396040DBB1D7BF9B2E0A21BC569672E2 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 18:18:35.0142 0x0c4c KSecDD - ok 18:18:35.0152 0x0c4c [ 1C2D8E18AA8FD50CD04C15CC27F7F5AB, 4BA3B0F9F01BD47D66091D3AD86B69A523981D61DFB4D677F2CD39405B2DA989 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 18:18:35.0172 0x0c4c KSecPkg - ok 18:18:35.0172 0x0c4c [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 18:18:35.0212 0x0c4c ksthunk - ok 18:18:35.0232 0x0c4c [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll 18:18:35.0272 0x0c4c KtmRm - ok 18:18:35.0292 0x0c4c [ D9F42719019740BAA6D1C6D536CBDAA6, 8757599D0AE5302C4CE50861BEBA3A8DD14D7B0DBD916FD5404133688CDFCC40 ] LanmanServer C:\Windows\system32\srvsvc.dll 18:18:35.0322 0x0c4c LanmanServer - ok 18:18:35.0342 0x0c4c [ 851A1382EED3E3A7476DB004F4EE3E1A, B1C67F47DD594D092E6E258F01DF5E7150227CE3131A908A244DEE9F8A1FABF9 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 18:18:35.0382 0x0c4c LanmanWorkstation - ok 18:18:35.0402 0x0c4c [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 18:18:35.0432 0x0c4c lltdio - ok 18:18:35.0442 0x0c4c [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll 18:18:35.0472 0x0c4c lltdsvc - ok 18:18:35.0482 0x0c4c [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll 18:18:35.0512 0x0c4c lmhosts - ok 18:18:35.0522 0x0c4c [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\drivers\lsi_fc.sys 18:18:35.0532 0x0c4c LSI_FC - ok 18:18:35.0532 0x0c4c [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\drivers\lsi_sas.sys 18:18:35.0542 0x0c4c LSI_SAS - ok 18:18:35.0552 0x0c4c [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\drivers\lsi_sas2.sys 18:18:35.0552 0x0c4c LSI_SAS2 - ok 18:18:35.0572 0x0c4c [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\drivers\lsi_scsi.sys 18:18:35.0582 0x0c4c LSI_SCSI - ok 18:18:35.0592 0x0c4c [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys 18:18:35.0632 0x0c4c luafv - ok 18:18:35.0642 0x0c4c [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\drivers\megasas.sys 18:18:35.0642 0x0c4c megasas - ok 18:18:35.0662 0x0c4c [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\drivers\MegaSR.sys 18:18:35.0682 0x0c4c MegaSR - ok 18:18:35.0692 0x0c4c [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll 18:18:35.0732 0x0c4c MMCSS - ok 18:18:35.0732 0x0c4c [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys 18:18:35.0752 0x0c4c Modem - ok 18:18:35.0772 0x0c4c [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 18:18:35.0782 0x0c4c monitor - ok 18:18:35.0782 0x0c4c [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 18:18:35.0792 0x0c4c mouclass - ok 18:18:35.0802 0x0c4c [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 18:18:35.0812 0x0c4c mouhid - ok 18:18:35.0822 0x0c4c [ 32E7A3D591D671A6DF2DB515A5CBE0FA, 47CED0B9067AE8BF5EEF60B17ADEE5906BEDCC56E4CB460B7BFBC12BB9A69E63 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 18:18:35.0822 0x0c4c mountmgr - ok 18:18:35.0882 0x0c4c [ 707E98CC15C2224C078C9E71FF1889BC, 958416FE081436FDBF7F2BEBBB2795C54CC4F3F349D6DF463296A7BBA3404F13 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 18:18:35.0892 0x0c4c MozillaMaintenance - ok 18:18:35.0902 0x0c4c [ A44B420D30BD56E145D6A2BC8768EC58, B1E4DCA5A1008FA7A0492DC091FB2B820406AE13FD3D44F124E89B1037AF09B8 ] mpio C:\Windows\system32\drivers\mpio.sys 18:18:35.0912 0x0c4c mpio - ok 18:18:35.0942 0x0c4c [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 18:18:35.0962 0x0c4c mpsdrv - ok 18:18:35.0992 0x0c4c [ 54FFC9C8898113ACE189D4AA7199D2C1, 65F585C87F3F710FD5793FDFA96B740AD8D4317B0C120F4435CCF777300EA4F2 ] MpsSvc C:\Windows\system32\mpssvc.dll 18:18:36.0032 0x0c4c MpsSvc - ok 18:18:36.0062 0x0c4c [ 1A4F75E63C9FB84B85DFFC6B63FD5404, 01AFA6DBB4CDE55FE4EA05BBE8F753A4266F8D072EA1EE01DB79F5126780C21F ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 18:18:36.0082 0x0c4c MRxDAV - ok 18:18:36.0102 0x0c4c [ A5D9106A73DC88564C825D317CAC68AC, 0457B2AEA4E05A91D0E43F317894A614434D8CEBE35020785387F307E231FBE4 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 18:18:36.0142 0x0c4c mrxsmb - ok 18:18:36.0162 0x0c4c [ D711B3C1D5F42C0C2415687BE09FC163, 9B3013AC60BD2D0FF52086658BA5FF486ADE15954A552D7DD590580E8BAE3EFF ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 18:18:36.0192 0x0c4c mrxsmb10 - ok 18:18:36.0202 0x0c4c [ 9423E9D355C8D303E76B8CFBD8A5C30C, 220B33F120C2DD937FE4D5664F4B581DC0ACF78D62EB56B7720888F67B9644CC ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 18:18:36.0222 0x0c4c mrxsmb20 - ok 18:18:36.0232 0x0c4c [ C25F0BAFA182CBCA2DD3C851C2E75796, 643E158A0948DF331807AEAA391F23960362E46C0A0CF6D22A99020EAE7B10F8 ] msahci C:\Windows\system32\drivers\msahci.sys 18:18:36.0242 0x0c4c msahci - ok 18:18:36.0252 0x0c4c [ DB801A638D011B9633829EB6F663C900, B34FD33A215ACCF2905F4B7D061686CDB1CB9C652147AF56AE14686C1F6E3C74 ] msdsm C:\Windows\system32\drivers\msdsm.sys 18:18:36.0262 0x0c4c msdsm - ok 18:18:36.0272 0x0c4c [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe 18:18:36.0282 0x0c4c MSDTC - ok 18:18:36.0302 0x0c4c [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys 18:18:36.0332 0x0c4c Msfs - ok 18:18:36.0332 0x0c4c [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 18:18:36.0362 0x0c4c mshidkmdf - ok 18:18:36.0372 0x0c4c [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\drivers\msisadrv.sys 18:18:36.0382 0x0c4c msisadrv - ok 18:18:36.0402 0x0c4c [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 18:18:36.0432 0x0c4c MSiSCSI - ok 18:18:36.0442 0x0c4c msiserver - ok 18:18:36.0452 0x0c4c [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 18:18:36.0472 0x0c4c MSKSSRV - ok 18:18:36.0472 0x0c4c [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 18:18:36.0502 0x0c4c MSPCLOCK - ok 18:18:36.0512 0x0c4c [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 18:18:36.0542 0x0c4c MSPQM - ok 18:18:36.0552 0x0c4c [ 759A9EEB0FA9ED79DA1FB7D4EF78866D, 64E3BC613EC4872B1B344CBF71EE15BE195592E3244C1EE099C6F8B95A40F133 ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 18:18:36.0572 0x0c4c MsRPC - ok 18:18:36.0582 0x0c4c [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys 18:18:36.0592 0x0c4c mssmbios - ok 18:18:36.0602 0x0c4c [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 18:18:36.0622 0x0c4c MSTEE - ok 18:18:36.0632 0x0c4c [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\drivers\MTConfig.sys 18:18:36.0642 0x0c4c MTConfig - ok 18:18:36.0642 0x0c4c [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys 18:18:36.0652 0x0c4c Mup - ok 18:18:36.0672 0x0c4c [ 582AC6D9873E31DFA28A4547270862DD, BD540499F74E8F59A020D935D18E36A3A97C1A6EC59C8208436469A31B16B260 ] napagent C:\Windows\system32\qagentRT.dll 18:18:36.0712 0x0c4c napagent - ok 18:18:36.0742 0x0c4c [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 18:18:36.0762 0x0c4c NativeWifiP - ok 18:18:36.0812 0x0c4c [ 760E38053BF56E501D562B70AD796B88, F856E81A975D44F8684A6F2466549CEEDFAEB3950191698555A93A1206E0A42D ] NDIS C:\Windows\system32\drivers\ndis.sys 18:18:36.0832 0x0c4c NDIS - ok 18:18:36.0852 0x0c4c [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 18:18:36.0872 0x0c4c NdisCap - ok 18:18:36.0892 0x0c4c [ 2E7C9CC1DF7F878358C7292D036AFE63, B0B2C55A73FD957D410C2A6C67C6BC93EA477BA905EE5DD074C85DDFAA4B9A68 ] ndisrd C:\Windows\system32\DRIVERS\ndisrd.sys 18:18:36.0902 0x0c4c ndisrd - ok 18:18:36.0922 0x0c4c [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 18:18:36.0942 0x0c4c NdisTapi - ok 18:18:36.0952 0x0c4c [ 136185F9FB2CC61E573E676AA5402356, BA3AD0A33416DA913B4242C6BE8C3E5812AD2B20BA6C11DD3094F2E8EB56E683 ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 18:18:36.0982 0x0c4c Ndisuio - ok 18:18:36.0992 0x0c4c [ 53F7305169863F0A2BDDC49E116C2E11, 881E9346D3C02405B7850ADC37E720990712EC9C666A0CE96E252A487FD2CE77 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 18:18:37.0012 0x0c4c NdisWan - ok 18:18:37.0042 0x0c4c [ 015C0D8E0E0421B4CFD48CFFE2825879, 4242E2D42CCFC859B2C0275C5331798BC0BDA68E51CF4650B6E64B1332071023 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 18:18:37.0092 0x0c4c NDProxy - ok 18:18:37.0112 0x0c4c [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 18:18:37.0132 0x0c4c NetBIOS - ok 18:18:37.0152 0x0c4c [ 09594D1089C523423B32A4229263F068, 7426A9B8BA27D3225928DDEFBD399650ABB90798212F56B7D12158AC22CCCE37 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 18:18:37.0182 0x0c4c NetBT - ok 18:18:37.0192 0x0c4c [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] Netlogon C:\Windows\system32\lsass.exe 18:18:37.0202 0x0c4c Netlogon - ok 18:18:37.0232 0x0c4c [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll 18:18:37.0262 0x0c4c Netman - ok 18:18:37.0282 0x0c4c [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:18:37.0312 0x0c4c NetMsmqActivator - ok 18:18:37.0332 0x0c4c [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetPipeActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:18:37.0352 0x0c4c NetPipeActivator - ok 18:18:37.0362 0x0c4c [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll 18:18:37.0402 0x0c4c netprofm - ok 18:18:37.0402 0x0c4c [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpActivator C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:18:37.0412 0x0c4c NetTcpActivator - ok 18:18:37.0422 0x0c4c [ 21318671BCAD3ACF16638F98D4D00973, CEA6E3B6BCB4B74A9ACACBEEA12EEA967BBC2240398E2EBC04D7910109CACA11 ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 18:18:37.0432 0x0c4c NetTcpPortSharing - ok 18:18:37.0452 0x0c4c [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\drivers\nfrd960.sys 18:18:37.0462 0x0c4c nfrd960 - ok 18:18:37.0482 0x0c4c [ 8AD77806D336673F270DB31645267293, E23F324913554A23CD043DD27D4305AF62F48C0561A0FC7B7811E55B74B1BE79 ] NlaSvc C:\Windows\System32\nlasvc.dll 18:18:37.0502 0x0c4c NlaSvc - ok 18:18:37.0502 0x0c4c [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys 18:18:37.0532 0x0c4c Npfs - ok 18:18:37.0532 0x0c4c [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll 18:18:37.0562 0x0c4c nsi - ok 18:18:37.0572 0x0c4c [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 18:18:37.0612 0x0c4c nsiproxy - ok 18:18:37.0662 0x0c4c [ 1A29A59A4C5BA6F8C85062A613B7E2B2, CC137F499A12C724D4166C2D85E9F447413419A0683DAC6F1A802B7F210C77F1 ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 18:18:37.0702 0x0c4c Ntfs - ok 18:18:37.0712 0x0c4c [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys 18:18:37.0752 0x0c4c Null - ok 18:18:37.0782 0x0c4c [ E366A5681C50785D4ED04FCFD65C3415, 7FF7B4B8F09E773401AE879897E60BF494B57B9ACEE990204A4C98A3FB183A33 ] NVHDA C:\Windows\system32\drivers\nvhda64v.sys 18:18:37.0792 0x0c4c NVHDA - ok 18:18:38.0092 0x0c4c [ 52B33E12FF8C9E219CAEC1BB4A5F5E4C, 5272178B39FEDB3F001249FE7C852787EFD715FC49BBAAE58158A189AFB8A337 ] nvlddmkm C:\Windows\system32\DRIVERS\nvlddmkm.sys 18:18:38.0332 0x0c4c nvlddmkm - ok 18:18:38.0362 0x0c4c [ 0A92CB65770442ED0DC44834632F66AD, 581327F07A68DBD5CC749214BE5F1211FC2CE41C7A4F0656B680AFB51A35ACE7 ] nvraid C:\Windows\system32\drivers\nvraid.sys 18:18:38.0372 0x0c4c nvraid - ok 18:18:38.0392 0x0c4c [ DAB0E87525C10052BF65F06152F37E4A, AD9BFF0D5FD3FFB95C758B478E1F6A9FE45E7B37AEC71EB5070D292FEAAEDF37 ] nvstor C:\Windows\system32\drivers\nvstor.sys 18:18:38.0402 0x0c4c nvstor - ok 18:18:38.0432 0x0c4c [ 2B47EDD27365F9F5D8E87648BECF52C4, CADA4B19791441373580919FFF89623489C7A1737857760B96CC3F0A08DB8D59 ] nvsvc C:\Windows\system32\nvvsvc.exe 18:18:38.0462 0x0c4c nvsvc - ok 18:18:38.0472 0x0c4c [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\drivers\nv_agp.sys 18:18:38.0482 0x0c4c nv_agp - ok 18:18:38.0502 0x0c4c [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\drivers\ohci1394.sys 18:18:38.0512 0x0c4c ohci1394 - ok 18:18:38.0532 0x0c4c [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 18:18:38.0562 0x0c4c p2pimsvc - ok 18:18:38.0582 0x0c4c [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll 18:18:38.0612 0x0c4c p2psvc - ok 18:18:38.0632 0x0c4c [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\drivers\parport.sys 18:18:38.0652 0x0c4c Parport - ok 18:18:38.0672 0x0c4c [ E9766131EEADE40A27DC27D2D68FBA9C, 63C295EC96DBD25F1A8B908295CCB86B54F2A77A02AAA11E5D9160C2C1A492B6 ] partmgr C:\Windows\system32\drivers\partmgr.sys 18:18:38.0672 0x0c4c partmgr - ok 18:18:38.0692 0x0c4c [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc C:\Windows\System32\pcasvc.dll 18:18:38.0712 0x0c4c PcaSvc - ok 18:18:38.0722 0x0c4c [ 94575C0571D1462A0F70BDE6BD6EE6B3, 7139BAC653EA94A3DD3821CAB35FC5E22F4CCA5ACC2BAABDAA27E4C3C8B27FC9 ] pci C:\Windows\system32\drivers\pci.sys 18:18:38.0732 0x0c4c pci - ok 18:18:38.0752 0x0c4c [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\drivers\pciide.sys 18:18:38.0752 0x0c4c pciide - ok 18:18:38.0772 0x0c4c [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\drivers\pcmcia.sys 18:18:38.0782 0x0c4c pcmcia - ok 18:18:38.0802 0x0c4c [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys 18:18:38.0812 0x0c4c pcw - ok 18:18:38.0832 0x0c4c [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH C:\Windows\system32\drivers\peauth.sys 18:18:38.0872 0x0c4c PEAUTH - ok 18:18:38.0912 0x0c4c [ B9B0A4299DD2D76A4243F75FD54DC680, BBF62E9628131FA396EB08D63B76D2D5FBDD61339E92B759125A066470D1C039 ] PeerDistSvc C:\Windows\system32\peerdistsvc.dll 18:18:38.0972 0x0c4c PeerDistSvc - ok 18:18:39.0012 0x0c4c [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe 18:18:39.0042 0x0c4c PerfHost - ok 18:18:39.0112 0x0c4c [ C7CF6A6E137463219E1259E3F0F0DD6C, 08D7244F52AA17DD669AA6F77C291DAC88E7B2D1887DE422509C1F83EC85F3DD ] pla C:\Windows\system32\pla.dll 18:18:39.0182 0x0c4c pla - ok 18:18:39.0222 0x0c4c [ 25FBDEF06C4D92815B353F6E792C8129, 57D9764AE6BCE33B242C399CDFC10DD405975BD6411CA8C75FBCD06EEB8442A9 ] PlugPlay C:\Windows\system32\umpnpmgr.dll 18:18:39.0242 0x0c4c PlugPlay - ok 18:18:39.0242 0x0c4c PnkBstrA - ok 18:18:39.0252 0x0c4c [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 18:18:39.0272 0x0c4c PNRPAutoReg - ok 18:18:39.0292 0x0c4c [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 18:18:39.0302 0x0c4c PNRPsvc - ok 18:18:39.0332 0x0c4c [ 4F15D75ADF6156BF56ECED6D4A55C389, 2ADA3EA69A5D7EC2A4D2DD89178DB94EAFDDF95F07B0070D654D9F7A5C12A044 ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 18:18:39.0372 0x0c4c PolicyAgent - ok 18:18:39.0392 0x0c4c [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll 18:18:39.0432 0x0c4c Power - ok 18:18:39.0472 0x0c4c [ F92A2C41117A11A00BE01CA01A7FCDE9, 38ADC6052696D110CA5F393BC586791920663F5DA66934C2A824DDA9CD89C763 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 18:18:39.0502 0x0c4c PptpMiniport - ok 18:18:39.0512 0x0c4c [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\drivers\processr.sys 18:18:39.0532 0x0c4c Processor - ok 18:18:39.0542 0x0c4c [ 53E83F1F6CF9D62F32801CF66D8352A8, 1225FED810BE8E0729EEAE5B340035CCBB9BACD3EF247834400F9B72D05ACE48 ] ProfSvc C:\Windows\system32\profsvc.dll 18:18:39.0572 0x0c4c ProfSvc - ok 18:18:39.0582 0x0c4c [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] ProtectedStorage C:\Windows\system32\lsass.exe 18:18:39.0592 0x0c4c ProtectedStorage - ok 18:18:39.0602 0x0c4c [ 0557CF5A2556BD58E26384169D72438D, F6F83A616B1F1C6C0DF6D2EC2513E6C23FD4FAA6D36518B8676C619AB74957B4 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 18:18:39.0642 0x0c4c Psched - ok 18:18:39.0682 0x0c4c [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\drivers\ql2300.sys 18:18:39.0722 0x0c4c ql2300 - ok 18:18:39.0732 0x0c4c [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\drivers\ql40xx.sys 18:18:39.0742 0x0c4c ql40xx - ok 18:18:39.0752 0x0c4c [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll 18:18:39.0772 0x0c4c QWAVE - ok 18:18:39.0782 0x0c4c [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 18:18:39.0792 0x0c4c QWAVEdrv - ok 18:18:39.0802 0x0c4c [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 18:18:39.0822 0x0c4c RasAcd - ok 18:18:39.0842 0x0c4c [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 18:18:39.0862 0x0c4c RasAgileVpn - ok 18:18:39.0872 0x0c4c [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll 18:18:39.0902 0x0c4c RasAuto - ok 18:18:39.0922 0x0c4c [ 471815800AE33E6F1C32FB1B97C490CA, 27307265F743DE3A3A3EC1B2C472A3D85FDD0AEC458E0B1177593141EE072698 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 18:18:39.0952 0x0c4c Rasl2tp - ok 18:18:39.0972 0x0c4c [ EE867A0870FC9E4972BA9EAAD35651E2, 1B848D81705081FD2E18AC762DA7F51455657DAF860BF363DC15925A148BCADA ] RasMan C:\Windows\System32\rasmans.dll 18:18:40.0012 0x0c4c RasMan - ok 18:18:40.0022 0x0c4c [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 18:18:40.0052 0x0c4c RasPppoe - ok 18:18:40.0062 0x0c4c [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 18:18:40.0092 0x0c4c RasSstp - ok 18:18:40.0102 0x0c4c [ 77F665941019A1594D887A74F301FA2F, 1FDC6F6853400190C086042933F157814D915C54F26793CAD36CD2607D8810DA ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 18:18:40.0142 0x0c4c rdbss - ok 18:18:40.0152 0x0c4c [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 18:18:40.0172 0x0c4c rdpbus - ok 18:18:40.0182 0x0c4c [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 18:18:40.0212 0x0c4c RDPCDD - ok 18:18:40.0232 0x0c4c [ 1B6163C503398B23FF8B939C67747683, 339A5AA7970FF34FAAB213B655860C5B0DEC5F983A4A11A088017D849F320ACE ] RDPDR C:\Windows\system32\drivers\rdpdr.sys 18:18:40.0252 0x0c4c RDPDR - ok 18:18:40.0272 0x0c4c [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 18:18:40.0312 0x0c4c RDPENCDD - ok 18:18:40.0332 0x0c4c [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 18:18:40.0352 0x0c4c RDPREFMP - ok 18:18:40.0362 0x0c4c [ E61608AA35E98999AF9AAEEEA6114B0A, F754CDE89DC96786D2A3C4D19EE2AEF1008E634E4DE3C0CBF927436DE90C04A6 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 18:18:40.0392 0x0c4c RDPWD - ok 18:18:40.0402 0x0c4c [ 34ED295FA0121C241BFEF24764FC4520, AAEE5F00CAA763A5BA51CF56BD7262C03409CD72BD5601490E3EC3FFF929BB5F ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 18:18:40.0412 0x0c4c rdyboost - ok 18:18:40.0432 0x0c4c [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll 18:18:40.0462 0x0c4c RemoteAccess - ok 18:18:40.0492 0x0c4c [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll 18:18:40.0512 0x0c4c RemoteRegistry - ok 18:18:40.0522 0x0c4c [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 18:18:40.0552 0x0c4c RpcEptMapper - ok 18:18:40.0562 0x0c4c [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe 18:18:40.0572 0x0c4c RpcLocator - ok 18:18:40.0592 0x0c4c [ 5C627D1B1138676C0A7AB2C2C190D123, C5003F2C912C5CA990E634818D3B4FD72F871900AF2948BD6C4D6400B354B401 ] RpcSs C:\Windows\system32\rpcss.dll 18:18:40.0622 0x0c4c RpcSs - ok 18:18:40.0632 0x0c4c [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 18:18:40.0662 0x0c4c rspndr - ok 18:18:40.0692 0x0c4c [ 61A04C0C084D560BBEF1D09604608262, 27230BDFB479FBD1B18BB4035059A52F8BE74B19190951EAC95D569E284421B3 ] RTL8167 C:\Windows\system32\DRIVERS\Rt64win7.sys 18:18:40.0712 0x0c4c RTL8167 - ok 18:18:40.0722 0x0c4c [ E60C0A09F997826C7627B244195AB581, E8630ED74B38B98BF584E353D992C1311BC36AB7F20A1BB66C9CD65CE1E46F8D ] s3cap C:\Windows\system32\drivers\vms3cap.sys 18:18:40.0732 0x0c4c s3cap - ok 18:18:40.0742 0x0c4c [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] SamSs C:\Windows\system32\lsass.exe 18:18:40.0752 0x0c4c SamSs - ok 18:18:40.0772 0x0c4c [ AC03AF3329579FFFB455AA2DAABBE22B, 7AD3B62ADFEC166F9E256F9FF8BAA0568B2ED7308142BF8F5269E6EAA5E0A656 ] sbp2port C:\Windows\system32\drivers\sbp2port.sys 18:18:40.0782 0x0c4c sbp2port - ok 18:18:40.0782 0x0c4c [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll 18:18:40.0822 0x0c4c SCardSvr - ok 18:18:40.0832 0x0c4c [ 253F38D0D7074C02FF8DEB9836C97D2B, CB5CAFCB8628BB22877F74ACF1DED0BBAED8F4573A74DA7FE94BBBA584889116 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 18:18:40.0872 0x0c4c scfilter - ok 18:18:40.0902 0x0c4c [ 262F6592C3299C005FD6BEC90FC4463A, 54095E37F0B6CC677A3E9BDD40F4647C713273D197DB341063AA7F342A60C4A7 ] Schedule C:\Windows\system32\schedsvc.dll 18:18:40.0952 0x0c4c Schedule - ok 18:18:40.0972 0x0c4c [ F17D1D393BBC69C5322FBFAFACA28C7F, 62A1A92B3C52ADFD0B808D7F69DD50238B5F202421F1786F7EAEAA63F274B3E8 ] SCPolicySvc C:\Windows\System32\certprop.dll 18:18:40.0992 0x0c4c SCPolicySvc - ok 18:18:41.0012 0x0c4c [ 6EA4234DC55346E0709560FE7C2C1972, 64011E044C16E2F92689E5F7E4666A075E27BBFA61F3264E5D51CE1656C1D5B8 ] SDRSVC C:\Windows\System32\SDRSVC.dll 18:18:41.0042 0x0c4c SDRSVC - ok 18:18:41.0062 0x0c4c [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 18:18:41.0082 0x0c4c secdrv - ok 18:18:41.0092 0x0c4c [ BC617A4E1B4FA8DF523A061739A0BD87, 10C4057F6B321EB5237FF619747B74F5401BC17D15A8C7060829E8204A2297F9 ] seclogon C:\Windows\system32\seclogon.dll 18:18:41.0112 0x0c4c seclogon - ok 18:18:41.0132 0x0c4c [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll 18:18:41.0162 0x0c4c SENS - ok 18:18:41.0172 0x0c4c [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll 18:18:41.0182 0x0c4c SensrSvc - ok 18:18:41.0202 0x0c4c [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 18:18:41.0212 0x0c4c Serenum - ok 18:18:41.0222 0x0c4c [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\DRIVERS\serial.sys 18:18:41.0232 0x0c4c Serial - ok 18:18:41.0252 0x0c4c [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\drivers\sermouse.sys 18:18:41.0262 0x0c4c sermouse - ok 18:18:41.0282 0x0c4c [ 0B6231BF38174A1628C4AC812CC75804, E569BF1F7F5689E2E917FA6516DB53388A5B8B1C6699DEE030147E853218811D ] SessionEnv C:\Windows\system32\sessenv.dll 18:18:41.0312 0x0c4c SessionEnv - ok 18:18:41.0312 0x0c4c [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\drivers\sffdisk.sys 18:18:41.0322 0x0c4c sffdisk - ok 18:18:41.0332 0x0c4c [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\drivers\sffp_mmc.sys 18:18:41.0342 0x0c4c sffp_mmc - ok 18:18:41.0342 0x0c4c [ DD85B78243A19B59F0637DCF284DA63C, 6730D4F2BAE7E24615746ACC41B42D01DB6068D6504982008ADA1890DE900197 ] sffp_sd C:\Windows\system32\drivers\sffp_sd.sys 18:18:41.0352 0x0c4c sffp_sd - ok 18:18:41.0362 0x0c4c [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\drivers\sfloppy.sys 18:18:41.0372 0x0c4c sfloppy - ok 18:18:41.0392 0x0c4c [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll 18:18:41.0432 0x0c4c SharedAccess - ok 18:18:41.0452 0x0c4c [ AAF932B4011D14052955D4B212A4DA8D, 2A3BFD0FA9569288E91AE3E72CA1EC39E1450D01E6473CE51157E0F138257923 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 18:18:41.0482 0x0c4c ShellHWDetection - ok 18:18:41.0502 0x0c4c [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\drivers\SiSRaid2.sys 18:18:41.0502 0x0c4c SiSRaid2 - ok 18:18:41.0512 0x0c4c [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\drivers\sisraid4.sys 18:18:41.0522 0x0c4c SiSRaid4 - ok 18:18:41.0522 0x0c4c [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys 18:18:41.0552 0x0c4c Smb - ok 18:18:41.0572 0x0c4c [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 18:18:41.0602 0x0c4c SNMPTRAP - ok 18:18:41.0612 0x0c4c [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys 18:18:41.0622 0x0c4c spldr - ok 18:18:41.0652 0x0c4c [ 85DAA09A98C9286D4EA2BA8D0E644377, F9C324E2EF81193FE831C7EECC44A100CA06F82FA731BF555D9EA4D91DA13329 ] Spooler C:\Windows\System32\spoolsv.exe 18:18:41.0682 0x0c4c Spooler - ok 18:18:41.0772 0x0c4c [ E17E0188BB90FAE42D83E98707EFA59C, FC075F7B39E86CC8EF6DA4E339FE946917E319C347AC70FB0C50AAF36F97E27F ] sppsvc C:\Windows\system32\sppsvc.exe 18:18:41.0902 0x0c4c sppsvc - ok 18:18:41.0912 0x0c4c [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll 18:18:41.0942 0x0c4c sppuinotify - ok 18:18:41.0962 0x0c4c [ 441FBA48BFF01FDB9D5969EBC1838F0B, 306128F1AD489F87161A089D1BDC1542A4CB742D91A0C12A7CD1863FDB8932C0 ] srv C:\Windows\system32\DRIVERS\srv.sys 18:18:42.0002 0x0c4c srv - ok 18:18:42.0012 0x0c4c [ B4ADEBBF5E3677CCE9651E0F01F7CC28, 726DB2283113AB2A9681E8E9F61132303D6D86E9CD034C40EE4A8C9DB29E87F7 ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 18:18:42.0022 0x0c4c srv2 - ok 18:18:42.0042 0x0c4c [ 27E461F0BE5BFF5FC737328F749538C3, AFA4704ED8FFC1A0BAB40DFB81D3AE3F3D933A3C9BF54DDAF39FF9AF3646D9E6 ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 18:18:42.0062 0x0c4c srvnet - ok 18:18:42.0072 0x0c4c [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 18:18:42.0112 0x0c4c SSDPSRV - ok 18:18:42.0112 0x0c4c [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll 18:18:42.0132 0x0c4c SstpSvc - ok 18:18:42.0192 0x0c4c [ AFE32AFD30464FC59CB8E88DC72F66FA, 24644F8AA47E61B98EF867BE18A9BE383822D64F3AADF2ED35E42FBFBA7B340F ] Steam Client Service C:\Program Files (x86)\Common Files\Steam\SteamService.exe 18:18:42.0212 0x0c4c Steam Client Service - ok 18:18:42.0272 0x0c4c [ B5D2F4BF587FD60AF75B09EFC1AD0E0A, 2033D6DFCA7A48E338D94427AEC82DA761618D5D3AEB22E5A64427D2C2DB0350 ] Stereo Service C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe 18:18:42.0292 0x0c4c Stereo Service - ok 18:18:42.0312 0x0c4c [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\drivers\stexstor.sys 18:18:42.0322 0x0c4c stexstor - ok 18:18:42.0352 0x0c4c [ 8DD52E8E6128F4B2DA92CE27402871C1, 1101C38BE8FC383B5F2F9FA402F9652B23B88A764DE2B584DFE62B88B11DEF92 ] stisvc C:\Windows\System32\wiaservc.dll 18:18:42.0382 0x0c4c stisvc - ok 18:18:42.0402 0x0c4c [ 7785DC213270D2FC066538DAF94087E7, F09CB2895241719CA5147B2EE9F7ECBD0303AFFB5CD896F06D4D29BAAAFC207B ] storflt C:\Windows\system32\drivers\vmstorfl.sys 18:18:42.0412 0x0c4c storflt - ok 18:18:42.0432 0x0c4c [ C40841817EF57D491F22EB103DA587CC, 5FAA2DE43BADC16A898C0C290C44C41E4411D919A95FE8C6FF45EA7A34495079 ] StorSvc C:\Windows\system32\storsvc.dll 18:18:42.0452 0x0c4c StorSvc - ok 18:18:42.0452 0x0c4c [ D34E4943D5AC096C8EDEEBFD80D76E23, 1DD7F6F97060B5F763A04ACA1F75E59DAB09EF824FD09B83FC3C192837D006DE ] storvsc C:\Windows\system32\drivers\storvsc.sys 18:18:42.0462 0x0c4c storvsc - ok 18:18:42.0472 0x0c4c [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\DRIVERS\swenum.sys 18:18:42.0482 0x0c4c swenum - ok 18:18:42.0502 0x0c4c [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll 18:18:42.0542 0x0c4c swprv - ok 18:18:42.0582 0x0c4c [ BF9CCC0BF39B418C8D0AE8B05CF95B7D, 3C13217548BE61F2BDB8BD41F77345CDDA1F97BF0AE17241C335B9807EB3DBB8 ] SysMain C:\Windows\system32\sysmain.dll 18:18:42.0632 0x0c4c SysMain - ok 18:18:42.0652 0x0c4c [ E3C61FD7B7C2557E1F1B0B4CEC713585, 01F0E116606D185BF93B540868075BFB1A398197F6AABD994983DBFF56B3A8A0 ] TabletInputService C:\Windows\System32\TabSvc.dll 18:18:42.0672 0x0c4c TabletInputService - ok 18:18:42.0692 0x0c4c [ 40F0849F65D13EE87B9A9AE3C1DD6823, E251A7EF3D0FD2973AF33A62FC457A7E8D5E8694208F811F52455F7C2426121F ] TapiSrv C:\Windows\System32\tapisrv.dll 18:18:42.0722 0x0c4c TapiSrv - ok 18:18:42.0722 0x0c4c [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll 18:18:42.0752 0x0c4c TBS - ok 18:18:42.0802 0x0c4c [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] Tcpip C:\Windows\system32\drivers\tcpip.sys 18:18:42.0852 0x0c4c Tcpip - ok 18:18:42.0902 0x0c4c [ 04ADD18EE5CC9FBEDAEC1DD1CD0CB45E, F05C0C4CA3DD234AD5D60CF1EF763C9A1D9EC3C157E180C2D75CC07E6B02A611 ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 18:18:42.0942 0x0c4c TCPIP6 - ok 18:18:42.0962 0x0c4c [ 1B16D0BD9841794A6E0CDE0CEF744ABC, 7EB8BA97339199EEE7F2B09DA2DA6279DA64A510D4598D42CF86415D67CD674C ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 18:18:42.0982 0x0c4c tcpipreg - ok 18:18:43.0002 0x0c4c [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 18:18:43.0012 0x0c4c TDPIPE - ok 18:18:43.0032 0x0c4c [ 51C5ECEB1CDEE2468A1748BE550CFBC8, 4E8F83877330B421F7B5D8393D34BC44C6450E69209DAA95B29CB298166A5DF9 ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 18:18:43.0052 0x0c4c TDTCP - ok 18:18:43.0062 0x0c4c [ DDAD5A7AB24D8B65F8D724F5C20FD806, B71F2967A4EE7395E4416C1526CB85368AEA988BDD1F2C9719C48B08FAFA9661 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 18:18:43.0092 0x0c4c tdx - ok 18:18:43.0102 0x0c4c [ 561E7E1F06895D78DE991E01DD0FB6E5, 83BFA50A528762EC52A011302AC3874636FB7E26628CD7ACFBF2BDC9FAA8110D ] TermDD C:\Windows\system32\DRIVERS\termdd.sys 18:18:43.0102 0x0c4c TermDD - ok 18:18:43.0132 0x0c4c [ 2E648163254233755035B46DD7B89123, 6FA0D07CE18A3A69D82EE49D875F141E39406E92C34EAC76AC4EB052E6EBCBCD ] TermService C:\Windows\System32\termsrv.dll 18:18:43.0182 0x0c4c TermService - ok 18:18:43.0192 0x0c4c [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll 18:18:43.0202 0x0c4c Themes - ok 18:18:43.0212 0x0c4c [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll 18:18:43.0232 0x0c4c THREADORDER - ok 18:18:43.0242 0x0c4c [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll 18:18:43.0282 0x0c4c TrkWks - ok 18:18:43.0312 0x0c4c [ 773212B2AAA24C1E31F10246B15B276C, F2EF85F5ABA307976D9C649D710B408952089458DDE97D4DEF321DF14E46A046 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 18:18:43.0342 0x0c4c TrustedInstaller - ok 18:18:43.0352 0x0c4c [ 4CE278FC9671BA81A138D70823FCAA09, CBE501436696E32A3701B9F377B823AC36647B6626595F76CC63E2396AD7D300 ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 18:18:43.0382 0x0c4c tssecsrv - ok 18:18:43.0402 0x0c4c [ D11C783E3EF9A3C52C0EBE83CC5000E9, A136C355D4C8945729163D15801364A614E23217B15F9313C85BA45BB71A74EB ] TsUsbFlt C:\Windows\system32\drivers\tsusbflt.sys 18:18:43.0422 0x0c4c TsUsbFlt - ok 18:18:43.0422 0x0c4c [ 9CC2CCAE8A84820EAECB886D477CBCB8, 50D8AA2D7477A6618A0C31BB4D1C4887B457865FB1105E2E7B984EEFA337B804 ] TsUsbGD C:\Windows\system32\drivers\TsUsbGD.sys 18:18:43.0442 0x0c4c TsUsbGD - ok 18:18:43.0452 0x0c4c [ 3566A8DAAFA27AF944F5D705EAA64894, AE9D8B648DA08AF667B9456C3FE315489859C157510A258559F18238F2CC92B8 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 18:18:43.0482 0x0c4c tunnel - ok 18:18:43.0502 0x0c4c [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\drivers\uagp35.sys 18:18:43.0512 0x0c4c uagp35 - ok 18:18:43.0522 0x0c4c [ FF4232A1A64012BAA1FD97C7B67DF593, D8591B4EB056899C7B604E4DD852D82D4D9809F508ABCED4A03E1BE6D5D456E3 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 18:18:43.0562 0x0c4c udfs - ok 18:18:43.0582 0x0c4c [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe 18:18:43.0592 0x0c4c UI0Detect - ok 18:18:43.0592 0x0c4c [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\drivers\uliagpkx.sys 18:18:43.0602 0x0c4c uliagpkx - ok 18:18:43.0612 0x0c4c [ DC54A574663A895C8763AF0FA1FF7561, 09A3F3597E91CBEB2F38E96E75134312B60CAE5574B2AD4606C2D3E992AEDDFE ] umbus C:\Windows\system32\DRIVERS\umbus.sys 18:18:43.0622 0x0c4c umbus - ok 18:18:43.0632 0x0c4c [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\drivers\umpass.sys 18:18:43.0642 0x0c4c UmPass - ok 18:18:43.0652 0x0c4c [ A293DCD756D04D8492A750D03B9A297C, 203600ED0B7F8BA4C6D6F4ED810F4DF5AB70928B06EC4131C5D8ADF628444ED1 ] UmRdpService C:\Windows\System32\umrdp.dll 18:18:43.0672 0x0c4c UmRdpService - ok 18:18:43.0682 0x0c4c [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll 18:18:43.0722 0x0c4c upnphost - ok 18:18:43.0742 0x0c4c [ DCA68B0943D6FA415F0C56C92158A83A, BEE5A5B33B22D1DF50B884D46D89FC3B8286EB16E38AD5A20F0A49E5C6766C57 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 18:18:43.0762 0x0c4c usbccgp - ok 18:18:43.0782 0x0c4c [ 80B0F7D5CCF86CEB5D402EAAF61FEC31, 140C62116A425DEAD25FE8D82DE283BC92C482A9F643658D512F9F67061F28AD ] usbcir C:\Windows\system32\drivers\usbcir.sys 18:18:43.0802 0x0c4c usbcir - ok 18:18:43.0822 0x0c4c [ 18A85013A3E0F7E1755365D287443965, 811C5EDF38C765BCF71BCE25CB6626FF6988C3699F5EF1846240EA0052F34C33 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 18:18:43.0832 0x0c4c usbehci - ok 18:18:43.0852 0x0c4c [ 8D1196CFBB223621F2C67D45710F25BA, B5D7AFE51833B24FC9576F3AED3D8A2B290E5846060E73F9FFFAC1890A8B6003 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 18:18:43.0882 0x0c4c usbhub - ok 18:18:43.0882 0x0c4c [ 765A92D428A8DB88B960DA5A8D6089DC, 56DE8A2ED58E53B202C399CA7BACB1551136303C2EE0AB426BDBBF880E3C542C ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys 18:18:43.0892 0x0c4c usbohci - ok 18:18:43.0912 0x0c4c [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\drivers\usbprint.sys 18:18:43.0922 0x0c4c usbprint - ok 18:18:43.0932 0x0c4c [ FED648B01349A3C8395A5169DB5FB7D6, DC4D7594C24ADD076927B9347F1B50B91CF03A4ABDB284248D5711D9C19DEB96 ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 18:18:43.0962 0x0c4c USBSTOR - ok 18:18:43.0982 0x0c4c [ 81FB2216D3A60D1284455D511797DB3D, 121E52B18A1832E775EA0AE2E053BAA53E5A70E9754724B1449AE5992D63B13E ] usbuhci C:\Windows\system32\drivers\usbuhci.sys 18:18:43.0992 0x0c4c usbuhci - ok 18:18:44.0002 0x0c4c [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll 18:18:44.0032 0x0c4c UxSms - ok 18:18:44.0042 0x0c4c [ 204F3F58212B3E422C90BD9691A2DF28, D748A8CEE4D59B4248C9B1ACA5155D0FF6635A29564B4391B7FAC6261F93FE99 ] VaultSvc C:\Windows\system32\lsass.exe 18:18:44.0042 0x0c4c VaultSvc - ok 18:18:44.0132 0x0c4c [ BC72F198968C1D483435F29ACFAFEA78, C1514E9D309A461D9D10D0C2637757F7796946B93A276200F7BE78CA428BFB0A ] VBoxDrv C:\Windows\system32\DRIVERS\VBoxDrv.sys 18:18:44.0162 0x0c4c VBoxDrv - ok 18:18:44.0172 0x0c4c [ 8FD4BE594B4247E534E5D7CADA47FF20, A1D4DF89FAE48B2A6E3443C49533000A3E13A3CE1C18D8DB5DAEE4DDD9C51E88 ] VBoxNetAdp C:\Windows\system32\DRIVERS\VBoxNetAdp.sys 18:18:44.0182 0x0c4c VBoxNetAdp - ok 18:18:44.0212 0x0c4c [ 7C7B16651E383C828A8FAB2B4E7D144E, 4EC92D9E83A2768F9B368FD88DE99F426E2B6FDCDEB346ED1B75DBA2E6E53F43 ] VBoxNetFlt C:\Windows\system32\DRIVERS\VBoxNetFlt.sys 18:18:44.0222 0x0c4c VBoxNetFlt - ok 18:18:44.0242 0x0c4c [ 97F31032ECA2AA9CD6F456ADEA27EDA4, 7057ADFC8B73F860A690064565F259D5145B07C90DA811F6351CF2283BD61161 ] VBoxUSBMon C:\Windows\system32\DRIVERS\VBoxUSBMon.sys 18:18:44.0252 0x0c4c VBoxUSBMon - ok 18:18:44.0262 0x0c4c [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\drivers\vdrvroot.sys 18:18:44.0272 0x0c4c vdrvroot - ok 18:18:44.0292 0x0c4c [ 8D6B481601D01A456E75C3210F1830BE, A2CEF483F4231367138EEF7E67FD5BE5364FC0780C44CA1368E36CE4AA3D0633 ] vds C:\Windows\System32\vds.exe 18:18:44.0332 0x0c4c vds - ok 18:18:44.0342 0x0c4c [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 18:18:44.0352 0x0c4c vga - ok 18:18:44.0372 0x0c4c [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys 18:18:44.0392 0x0c4c VgaSave - ok 18:18:44.0412 0x0c4c [ 2CE2DF28C83AEAF30084E1B1EB253CBB, D1946816A1CB89F825CBEA58F94A4C9D0CE7249355CD3915563F54054EE564BF ] vhdmp C:\Windows\system32\drivers\vhdmp.sys 18:18:44.0422 0x0c4c vhdmp - ok 18:18:44.0432 0x0c4c [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\drivers\viaide.sys 18:18:44.0442 0x0c4c viaide - ok 18:18:44.0462 0x0c4c [ 86EA3E79AE350FEA5331A1303054005F, 7E7D6027EB41E591633C7383A5D29A3BA8ECFC08C177D2BCF741EE27686B1691 ] vmbus C:\Windows\system32\drivers\vmbus.sys 18:18:44.0472 0x0c4c vmbus - ok 18:18:44.0482 0x0c4c [ 7DE90B48F210D29649380545DB45A187, 09522F84285D62B961868DA98C40B82E746CA4D24A9780905673A2349D6B07F4 ] VMBusHID C:\Windows\system32\drivers\VMBusHID.sys 18:18:44.0492 0x0c4c VMBusHID - ok 18:18:44.0502 0x0c4c [ D2AAFD421940F640B407AEFAAEBD91B0, 31EF342A60AF04F4108759A71F8FB7B8C8819216CF3D16A95B2BA0E33A8A9161 ] volmgr C:\Windows\system32\drivers\volmgr.sys 18:18:44.0512 0x0c4c volmgr - ok 18:18:44.0532 0x0c4c [ A255814907C89BE58B79EF2F189B843B, 463DB771851352185B6AC323BD93B9084D47291E53C1F7B628B65D6918B2E28F ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 18:18:44.0542 0x0c4c volmgrx - ok 18:18:44.0562 0x0c4c [ DF8126BD41180351A093A3AD2FC8903B, AEFF4AA89CDDAAAD43CDE17C6B6EB2A397A0AC1651CBD51B889161EC2BC6527A ] volsnap C:\Windows\system32\drivers\volsnap.sys 18:18:44.0582 0x0c4c volsnap - ok 18:18:44.0592 0x0c4c [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\drivers\vsmraid.sys 18:18:44.0602 0x0c4c vsmraid - ok 18:18:44.0652 0x0c4c [ B60BA0BC31B0CB414593E169F6F21CC2, 47B801E623254CF0202B3591CB5C019CABFB52F123C7D47E29D19B32F1F2B915 ] VSS C:\Windows\system32\vssvc.exe 18:18:44.0712 0x0c4c VSS - ok 18:18:44.0732 0x0c4c [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\System32\drivers\vwifibus.sys 18:18:44.0752 0x0c4c vwifibus - ok 18:18:44.0782 0x0c4c [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll 18:18:44.0822 0x0c4c W32Time - ok 18:18:44.0832 0x0c4c [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\drivers\wacompen.sys 18:18:44.0842 0x0c4c WacomPen - ok 18:18:44.0872 0x0c4c [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 18:18:44.0902 0x0c4c WANARP - ok 18:18:44.0912 0x0c4c [ 356AFD78A6ED4457169241AC3965230C, CE4D1EE3525C10AC658B20776C3E444DE44874C837713DC5311386EDFCB18399 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 18:18:44.0932 0x0c4c Wanarpv6 - ok 18:18:44.0982 0x0c4c [ 78F4E7F5C56CB9716238EB57DA4B6A75, 46A4E78CE5F2A4B26F4E9C3FF04A99D9B727A82AC2E390A82A1611C3F6E0C9AF ] wbengine C:\Windows\system32\wbengine.exe 18:18:45.0042 0x0c4c wbengine - ok 18:18:45.0052 0x0c4c [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 18:18:45.0072 0x0c4c WbioSrvc - ok 18:18:45.0092 0x0c4c [ 7368A2AFD46E5A4481D1DE9D14848EDD, 8039C478FC2D9F095F5883A4FA47F9E6EDF57CC88A4AA74F07C88445F90DED57 ] wcncsvc C:\Windows\System32\wcncsvc.dll 18:18:45.0122 0x0c4c wcncsvc - ok 18:18:45.0132 0x0c4c [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 18:18:45.0162 0x0c4c WcsPlugInService - ok 18:18:45.0162 0x0c4c [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\drivers\wd.sys 18:18:45.0172 0x0c4c Wd - ok 18:18:45.0202 0x0c4c [ E2C933EDBC389386EBE6D2BA953F43D8, AF1DEADD5F1267CCEBD226E8EEB971D1946EA6A5A9645A36F5D111F758AF2F07 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 18:18:45.0222 0x0c4c Wdf01000 - ok 18:18:45.0242 0x0c4c [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost C:\Windows\system32\wdi.dll 18:18:45.0302 0x0c4c WdiServiceHost - ok 18:18:45.0312 0x0c4c [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost C:\Windows\system32\wdi.dll 18:18:45.0322 0x0c4c WdiSystemHost - ok 18:18:45.0342 0x0c4c [ 0EB0E5D22B1760F2DBCE632F2DD7A54D, B8A4CC62F88768947FB0A161CF9564DB28FD9C1C037B5475DF192982DE035C22 ] WebClient C:\Windows\System32\webclnt.dll 18:18:45.0362 0x0c4c WebClient - ok 18:18:45.0372 0x0c4c [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll 18:18:45.0422 0x0c4c Wecsvc - ok 18:18:45.0432 0x0c4c [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll 18:18:45.0462 0x0c4c wercplsupport - ok 18:18:45.0472 0x0c4c [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll 18:18:45.0502 0x0c4c WerSvc - ok 18:18:45.0512 0x0c4c [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 18:18:45.0542 0x0c4c WfpLwf - ok 18:18:45.0552 0x0c4c [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys 18:18:45.0552 0x0c4c WIMMount - ok 18:18:45.0582 0x0c4c WinDefend - ok 18:18:45.0582 0x0c4c WinHttpAutoProxySvc - ok 18:18:45.0612 0x0c4c [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 18:18:45.0642 0x0c4c Winmgmt - ok 18:18:45.0702 0x0c4c [ BCB1310604AA415C4508708975B3931E, 9D943F086D454345153A0DD426B4432532A44FD87950386B186E1CAD2AC70565 ] WinRM C:\Windows\system32\WsmSvc.dll 18:18:45.0762 0x0c4c WinRM - ok 18:18:45.0812 0x0c4c [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll 18:18:45.0852 0x0c4c Wlansvc - ok 18:18:45.0862 0x0c4c [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys 18:18:45.0892 0x0c4c WmiAcpi - ok 18:18:45.0912 0x0c4c [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 18:18:45.0932 0x0c4c wmiApSrv - ok 18:18:45.0942 0x0c4c [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll 18:18:45.0962 0x0c4c WPCSvc - ok 18:18:45.0972 0x0c4c [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 18:18:46.0002 0x0c4c ws2ifsl - ok 18:18:46.0022 0x0c4c [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\System32\wscsvc.dll 18:18:46.0032 0x0c4c wscsvc - ok 18:18:46.0042 0x0c4c WSearch - ok 18:18:46.0112 0x0c4c [ 61FF576450CCC80564B850BC3FB6713A, B2843BC9E2F62D27DCF6787D063378926748CE75002BADA1873DCB5039883705 ] wuauserv C:\Windows\system32\wuaueng.dll 18:18:46.0182 0x0c4c wuauserv - ok 18:18:46.0212 0x0c4c [ AB886378EEB55C6C75B4F2D14B6C869F, D6C4602EB8F291DADEDF3CD211013D4AC752DDE7E799C2D8D74AA4F5477CAED6 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 18:18:46.0222 0x0c4c WudfPf - ok 18:18:46.0242 0x0c4c [ B20F051B03A966392364C83F009F7D17, 88ECEB55AE91F58F592B96EBC10B572747D5A2F9B7629E8F371761E4F7408A65 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 18:18:46.0262 0x0c4c wudfsvc - ok 18:18:46.0282 0x0c4c [ 04F82965C09CBDF646B487E145060301, 2CD8533EDBE24C3E42EB7550E20F8A2EB9E5E345B165DEF543163A6BC1FDD18B ] WwanSvc C:\Windows\System32\wwansvc.dll 18:18:46.0302 0x0c4c WwanSvc - ok 18:18:46.0312 0x0c4c ================ Scan global =============================== 18:18:46.0332 0x0c4c [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll 18:18:46.0352 0x0c4c [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll 18:18:46.0362 0x0c4c [ 88EDD0B34EED542745931E581AD21A32, DC2B93E1CEF5B0BCEE08D72669BB0F3AD0E8E6E75BDC08858407ED92F6FFA031 ] C:\Windows\system32\winsrv.dll 18:18:46.0392 0x0c4c [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll 18:18:46.0422 0x0c4c [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe 18:18:46.0422 0x0c4c [ Global ] - ok 18:18:46.0422 0x0c4c ================ Scan MBR ================================== 18:18:46.0442 0x0c4c [ 063C2A065A376B28A7456AA38DF4DD98 ] \Device\Harddisk0\DR0 18:18:46.0552 0x0c4c \Device\Harddisk0\DR0 - ok 18:18:46.0552 0x0c4c ================ Scan VBR ================================== 18:18:46.0572 0x0c4c [ 6B78850108FA1749486EA686BF7C232C ] \Device\Harddisk0\DR0\Partition1 18:18:46.0602 0x0c4c \Device\Harddisk0\DR0\Partition1 - ok 18:18:46.0632 0x0c4c [ B1E27AA018409DE6BFD73F8AFB883A65 ] \Device\Harddisk0\DR0\Partition2 18:18:46.0632 0x0c4c \Device\Harddisk0\DR0\Partition2 - ok 18:18:46.0642 0x0c4c [ C48BF1019780AE1A915E2332283276A3 ] \Device\Harddisk0\DR0\Partition3 18:18:46.0682 0x0c4c \Device\Harddisk0\DR0\Partition3 - ok 18:18:46.0712 0x0c4c [ BBCF82FD245D5A9BA39B2B56A0E0D6F7 ] \Device\Harddisk0\DR0\Partition4 18:18:46.0732 0x0c4c \Device\Harddisk0\DR0\Partition4 - ok 18:18:46.0752 0x0c4c [ C7F9A2153A92B34E9BD48C268F1341CD ] \Device\Harddisk0\DR0\Partition5 18:18:46.0762 0x0c4c \Device\Harddisk0\DR0\Partition5 - ok 18:18:46.0772 0x0c4c [ A4095DFEAF600328A24AC0BEB8C63513 ] \Device\Harddisk0\DR0\Partition6 18:18:46.0772 0x0c4c \Device\Harddisk0\DR0\Partition6 - ok 18:18:46.0772 0x0c4c [ D44E645A0BC12605250EF5E60A683FD1 ] \Device\Harddisk0\DR0\Partition7 18:18:46.0782 0x0c4c \Device\Harddisk0\DR0\Partition7 - ok 18:18:46.0782 0x0c4c ================ Scan generic autorun ====================== 18:18:47.0022 0x0c4c [ 5BAD798CBAB39F3A56A9CD495320F67E, 668FB3F30DD99CBF9EBDDF4C079636DFD2C7693B3506AC8A6DD1B3CA4B5BAF11 ] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe 18:18:47.0212 0x0c4c RTHDVCPL - ok 18:18:47.0242 0x0c4c [ BE3F6956EF8FEF4AAD1F67334C406839, 606A5A6309259D89AFA9E17EA248EE63F044E371EB038812FC7CF40F1E03BCA4 ] C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe 18:18:47.0262 0x0c4c SunJavaUpdateSched - ok 18:18:47.0312 0x0c4c [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 18:18:47.0362 0x0c4c Sidebar - ok 18:18:47.0372 0x0c4c [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 18:18:47.0392 0x0c4c mctadmin - ok 18:18:47.0422 0x0c4c [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 18:18:47.0452 0x0c4c Sidebar - ok 18:18:47.0452 0x0c4c [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 18:18:47.0472 0x0c4c mctadmin - ok 18:18:47.0472 0x0c4c Waiting for KSN requests completion. In queue: 371 18:18:48.0472 0x0c4c Waiting for KSN requests completion. In queue: 371 18:18:49.0472 0x0c4c Waiting for KSN requests completion. In queue: 371 18:18:50.0492 0x0c4c Win FW state via NFP2: enabled 18:18:52.0992 0x0c4c ============================================================ 18:18:52.0992 0x0c4c Scan finished 18:18:52.0992 0x0c4c ============================================================ 18:18:53.0002 0x0f48 Detected object count: 0 18:18:53.0002 0x0f48 Actual detected object count: 0 |
![]() | #7 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? Ich sehe schon was was mir nit gefällt, deswegen scannen wir tiefer. Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #8 |
![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? Danke übrigens, dass du dich meiner annimmst. Was ist es denn, was dir nicht gefällt? Hier der Combofix-Log: Code:
ATTFilter ComboFix 14-09-24.01 - ponder 26.09.2014 21:00:26.1.6 - x64 Microsoft Windows 7 Professional N 6.1.7601.1.1252.49.1031.18.8092.6621 [GMT 2:00] ausgeführt von:: c:\users\ponder\Desktop\ComboFix.exe SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . ((((((((((((((((((((((( Dateien erstellt von 2014-08-26 bis 2014-09-26 )))))))))))))))))))))))))))))) . . 2014-09-26 19:04 . 2014-09-26 19:04 -------- d-----w- c:\users\Default\AppData\Local\temp 2014-09-26 09:32 . 2014-09-26 10:11 -------- d-----w- C:\FRST 2014-09-26 09:30 . 2014-09-09 02:05 11578928 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7A652AED-4F7E-4277-BB05-9522DBAB4DBF}\mpengine.dll 2014-09-24 12:06 . 2014-09-09 22:11 2048 ----a-w- c:\windows\system32\tzres.dll 2014-09-24 12:06 . 2014-09-09 21:47 2048 ----a-w- c:\windows\SysWow64\tzres.dll 2014-09-23 08:28 . 2014-09-23 08:28 -------- d-----w- c:\program files (x86)\Notepad++ 2014-09-23 06:36 . 2014-09-23 06:36 -------- d-----w- c:\program files (x86)\MySQL 2014-09-23 06:16 . 2014-09-09 15:29 910920 ----a-w- c:\windows\system32\drivers\VBoxDrv.sys 2014-09-23 06:16 . 2014-09-23 06:16 -------- dc----w- c:\windows\system32\DRVSTORE 2014-09-23 06:16 . 2014-09-09 15:27 129168 ----a-w- c:\windows\system32\drivers\VBoxUSBMon.sys 2014-09-23 06:16 . 2014-09-23 06:16 -------- d-----w- c:\program files\Oracle 2014-09-22 12:59 . 2014-09-22 12:59 -------- d-----w- c:\program files (x86)\InfraRecorder 2014-09-22 11:17 . 2014-09-22 11:17 -------- d-----w- c:\program files (x86)\Dia 2014-09-18 20:53 . 2014-09-18 20:53 -------- d-----w- c:\program files (x86)\Pidgin 2014-09-15 21:09 . 2014-08-18 21:56 940032 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe 2014-09-15 21:05 . 2014-06-27 02:08 2777088 ----a-w- c:\windows\system32\msmpeg2vdec.dll 2014-09-15 21:05 . 2014-06-27 01:45 2285056 ----a-w- c:\windows\SysWow64\msmpeg2vdec.dll 2014-09-15 15:01 . 2014-09-15 15:18 290776 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr 2014-09-15 14:57 . 2014-09-15 14:57 -------- d-----w- c:\programdata\Package Cache 2014-09-15 14:56 . 2014-09-15 15:18 290776 ----a-w- c:\windows\SysWow64\PnkBstrB.exe 2014-09-15 14:56 . 2014-09-15 15:01 281288 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0 2014-09-15 14:56 . 2014-09-15 14:56 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe 2014-09-15 02:59 . 2014-06-24 03:29 2565120 ----a-w- c:\windows\system32\d3d10warp.dll 2014-09-15 02:59 . 2014-06-24 02:59 1987584 ----a-w- c:\windows\SysWow64\d3d10warp.dll 2014-09-15 02:59 . 2013-11-23 18:26 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll 2014-09-15 02:59 . 2013-11-23 17:47 465920 ----a-w- c:\windows\system32\WMPhoto.dll 2014-09-15 02:59 . 2013-11-22 22:48 3928064 ----a-w- c:\windows\system32\d2d1.dll 2014-09-15 02:59 . 2013-11-26 08:16 3419136 ----a-w- c:\windows\SysWow64\d2d1.dll 2014-09-15 02:58 . 2014-02-04 02:32 1424384 ----a-w- c:\windows\system32\WindowsCodecs.dll 2014-09-15 02:58 . 2014-02-04 02:04 1230336 ----a-w- c:\windows\SysWow64\WindowsCodecs.dll 2014-09-15 01:34 . 2014-09-15 01:34 -------- d-----w- c:\windows\SysWow64\wbem\en-US 2014-09-15 01:34 . 2014-09-15 01:34 -------- d-----w- c:\windows\system32\wbem\en-US 2014-09-15 01:16 . 2014-09-15 01:16 -------- d-----w- c:\windows\Migration 2014-09-15 01:15 . 2013-10-14 16:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE 2014-09-15 01:12 . 2014-09-15 01:12 194048 ----a-w- c:\windows\SysWow64\elshyph.dll 2014-09-15 01:10 . 2014-09-15 01:10 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-09-13 06:01 . 2014-09-26 07:03 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service 2014-09-12 06:47 . 2014-09-12 06:47 -------- d-----w- c:\program files (x86)\SumatraPDF 2014-09-12 06:45 . 2014-09-12 06:45 -------- d-----w- c:\program files (x86)\LibreOffice 4 2014-09-12 06:12 . 2014-09-12 06:12 -------- d-s---w- c:\windows\system32\CompatTel 2014-09-11 22:33 . 2012-07-26 07:46 2560 ----a-w- c:\windows\system32\drivers\de-DE\wdf01000.sys.mui 2014-09-11 22:25 . 2010-02-23 08:16 294912 ----a-w- c:\windows\system32\browserchoice.exe 2014-09-11 18:14 . 2012-01-04 10:44 509952 ----a-w- c:\windows\system32\ntshrui.dll 2014-09-11 18:13 . 2013-10-04 02:16 116736 ----a-w- c:\windows\system32\drivers\drmk.sys 2014-09-11 18:12 . 2013-02-12 04:12 19968 ----a-w- c:\windows\system32\drivers\usb8023.sys 2014-09-11 18:12 . 2012-04-26 05:41 77312 ----a-w- c:\windows\system32\rdpwsx.dll 2014-09-11 18:12 . 2012-04-26 05:41 149504 ----a-w- c:\windows\system32\rdpcorekmts.dll 2014-09-11 18:12 . 2012-04-26 05:34 9216 ----a-w- c:\windows\system32\rdrmemptylst.exe 2014-09-11 18:09 . 2014-05-30 06:45 497152 ----a-w- c:\windows\system32\drivers\afd.sys 2014-09-11 18:09 . 2013-06-25 22:55 785624 ----a-w- c:\windows\system32\drivers\Wdf01000.sys 2014-09-11 18:09 . 2012-11-28 22:56 9728 ----a-w- c:\windows\system32\Wdfres.dll 2014-09-11 18:09 . 2012-11-28 22:56 54376 ----a-w- c:\windows\system32\drivers\WdfLdr.sys 2014-09-11 18:07 . 2013-07-12 10:41 100864 ----a-w- c:\windows\system32\drivers\usbcir.sys 2014-09-11 18:07 . 2012-10-03 17:44 70656 ----a-w- c:\windows\system32\nlaapi.dll 2014-09-11 18:07 . 2012-10-03 17:44 303104 ----a-w- c:\windows\system32\nlasvc.dll 2014-09-11 18:07 . 2012-10-03 17:44 246272 ----a-w- c:\windows\system32\netcorehc.dll 2014-09-11 18:07 . 2012-10-03 17:44 18944 ----a-w- c:\windows\system32\netevent.dll 2014-09-11 18:07 . 2012-10-03 17:44 216576 ----a-w- c:\windows\system32\ncsi.dll 2014-09-11 18:07 . 2012-10-03 17:42 569344 ----a-w- c:\windows\system32\iphlpsvc.dll 2014-09-11 18:07 . 2012-10-03 16:42 18944 ----a-w- c:\windows\SysWow64\netevent.dll 2014-09-11 18:07 . 2012-10-03 16:42 175104 ----a-w- c:\windows\SysWow64\netcorehc.dll 2014-09-11 18:07 . 2012-10-03 16:42 156672 ----a-w- c:\windows\SysWow64\ncsi.dll 2014-09-11 18:07 . 2012-10-03 16:07 45568 ----a-w- c:\windows\system32\drivers\tcpipreg.sys 2014-09-11 18:07 . 2012-01-13 07:12 52224 ----a-w- c:\windows\SysWow64\nlaapi.dll 2014-09-11 17:11 . 2014-09-11 17:11 -------- d-----w- c:\program files (x86)\Common Files\Java 2014-09-11 17:11 . 2014-09-11 17:11 111016 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll 2014-09-11 17:11 . 2014-09-11 17:11 -------- d-----w- c:\programdata\Oracle 2014-09-11 17:10 . 2014-09-11 17:10 -------- d-----w- c:\program files\Java 2014-09-11 16:58 . 2014-09-11 16:58 71344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2014-09-11 16:58 . 2014-09-11 16:58 701104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2014-09-11 16:58 . 2014-09-11 16:58 -------- d-----w- c:\windows\system32\Macromed 2014-09-11 16:32 . 2014-06-16 02:10 985536 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys 2014-09-11 16:30 . 2013-08-29 02:16 1732032 ----a-w- c:\windows\system32\ntdll.dll 2014-09-11 16:30 . 2013-08-29 02:16 859648 ----a-w- c:\windows\system32\tdh.dll 2014-09-11 16:30 . 2013-08-29 02:13 878080 ----a-w- c:\windows\system32\advapi32.dll 2014-09-11 16:30 . 2013-08-29 01:50 1292192 ----a-w- c:\windows\SysWow64\ntdll.dll 2014-09-11 16:30 . 2013-08-29 01:50 619520 ----a-w- c:\windows\SysWow64\tdh.dll 2014-09-11 16:30 . 2013-08-29 01:48 640512 ----a-w- c:\windows\SysWow64\advapi32.dll 2014-09-11 16:30 . 2012-03-17 07:58 75120 ----a-w- c:\windows\system32\drivers\partmgr.sys 2014-09-11 16:28 . 2013-07-20 10:33 102608 ----a-w- c:\windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll 2014-09-11 16:27 . 2014-08-23 02:07 404480 ----a-w- c:\windows\system32\gdi32.dll 2014-09-11 16:27 . 2014-08-23 01:45 311808 ----a-w- c:\windows\SysWow64\gdi32.dll 2014-09-11 16:27 . 2014-08-23 00:59 3163648 ----a-w- c:\windows\system32\win32k.sys 2014-09-11 16:27 . 2012-05-14 05:26 956928 ----a-w- c:\windows\system32\localspl.dll 2014-09-11 16:27 . 2011-02-23 04:55 90624 ----a-w- c:\windows\system32\drivers\bowser.sys 2014-09-11 16:27 . 2011-08-27 05:37 861696 ----a-w- c:\windows\system32\oleaut32.dll 2014-09-11 16:27 . 2011-08-27 05:37 331776 ----a-w- c:\windows\system32\oleacc.dll 2014-09-11 16:27 . 2011-08-27 04:26 571904 ----a-w- c:\windows\SysWow64\oleaut32.dll 2014-09-11 16:27 . 2011-08-27 04:26 233472 ----a-w- c:\windows\SysWow64\oleacc.dll 2014-09-11 16:27 . 2011-10-15 06:31 723456 ----a-w- c:\windows\system32\EncDec.dll 2014-09-11 16:27 . 2011-10-15 05:38 534528 ----a-w- c:\windows\SysWow64\EncDec.dll 2014-09-11 16:26 . 2014-09-05 02:10 578048 ----a-w- c:\windows\system32\aepdu.dll 2014-09-11 16:26 . 2014-09-05 02:05 424448 ----a-w- c:\windows\system32\aeinv.dll 2014-09-11 16:19 . 2013-10-12 02:30 830464 ----a-w- c:\windows\system32\nshwfp.dll 2014-09-11 16:19 . 2013-10-12 02:29 859648 ----a-w- c:\windows\system32\IKEEXT.DLL 2014-09-11 16:19 . 2013-10-12 02:29 324096 ----a-w- c:\windows\system32\FWPUCLNT.DLL 2014-09-11 16:19 . 2013-10-12 02:03 656896 ----a-w- c:\windows\SysWow64\nshwfp.dll 2014-09-11 16:19 . 2013-10-12 02:01 216576 ----a-w- c:\windows\SysWow64\FWPUCLNT.DLL 2014-09-11 16:19 . 2013-08-28 01:12 461312 ----a-w- c:\windows\system32\scavengeui.dll 2014-09-11 16:19 . 2014-07-14 02:02 1216000 ----a-w- c:\windows\system32\rpcrt4.dll 2014-09-11 16:19 . 2014-07-14 01:40 664064 ----a-w- c:\windows\SysWow64\rpcrt4.dll 2014-09-11 16:19 . 2011-11-19 14:58 77312 ----a-w- c:\windows\system32\packager.dll 2014-09-11 16:19 . 2011-11-19 14:01 67072 ----a-w- c:\windows\SysWow64\packager.dll 2014-09-11 16:19 . 2014-09-26 10:16 -------- d-----w- c:\program files (x86)\Common Files\Steam 2014-09-11 16:19 . 2014-09-26 16:42 -------- d-----w- c:\program files (x86)\Steam 2014-09-11 16:00 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe 2014-09-11 16:00 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll 2014-09-11 16:00 . 2012-07-26 03:08 744448 ----a-w- c:\windows\system32\WUDFx.dll 2014-09-11 16:00 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll 2014-09-11 16:00 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll 2014-09-11 16:00 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys 2014-09-11 16:00 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys 2014-09-11 15:59 . 2012-03-01 06:46 23408 ----a-w- c:\windows\system32\drivers\fs_rec.sys 2014-09-11 15:59 . 2012-03-01 06:28 5120 ----a-w- c:\windows\system32\wmi.dll 2014-09-11 15:59 . 2012-03-01 05:29 5120 ----a-w- c:\windows\SysWow64\wmi.dll 2014-09-11 15:58 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll 2014-09-11 15:58 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll 2014-09-11 15:58 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll 2014-09-11 15:58 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll 2014-09-11 15:58 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe 2014-09-11 15:58 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe 2014-09-11 15:58 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe 2014-09-11 15:58 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe 2014-09-11 15:57 . 2014-09-11 15:57 -------- d-----w- c:\program files\VideoLAN 2014-09-11 15:55 . 2014-09-11 15:55 -------- d-----w- c:\program files (x86)\foobar2000 . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-09-15 07:06 . 2010-11-21 03:27 278152 ------w- c:\windows\system32\MpSigStub.exe 2014-07-25 00:35 . 2014-07-25 00:35 875688 ----a-w- c:\windows\SysWow64\msvcr120_clr0400.dll 2014-07-24 21:47 . 2014-07-24 21:47 869544 ----a-w- c:\windows\system32\msvcr120_clr0400.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2014-07-30 507776] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] S0 amd_sata;amd_sata;c:\windows\system32\DRIVERS\amd_sata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_sata.sys [x] S0 amd_xata;amd_xata;c:\windows\system32\DRIVERS\amd_xata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_xata.sys [x] S1 AsUpIO;AsUpIO;SysWow64\drivers\AsUpIO.sys;SysWow64\drivers\AsUpIO.sys [x] S1 ndisrd;WinpkFilter LightWeight Filter;c:\windows\system32\DRIVERS\ndisrd.sys;c:\windows\SYSNATIVE\DRIVERS\ndisrd.sys [x] S1 VBoxDrv;VirtualBox Service;c:\windows\system32\DRIVERS\VBoxDrv.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxDrv.sys [x] S1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\DRIVERS\VBoxUSBMon.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxUSBMon.sys [x] S2 asComSvc;ASUS Com Service;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe;c:\program files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [x] S2 asHmComSvc;ASUS HM Com Service;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe;c:\program files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [x] S2 AsSysCtrlService;ASUS System Control Service;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe;c:\program files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [x] S2 AsusFanControlService;AsusFanControlService;c:\program files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe;c:\program files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S3 asmthub3;ASMedia USB3 Hub Service;c:\windows\system32\DRIVERS\asmthub3.sys;c:\windows\SYSNATIVE\DRIVERS\asmthub3.sys [x] S3 asmtxhci;ASMEDIA XHCI Service;c:\windows\system32\DRIVERS\asmtxhci.sys;c:\windows\SYSNATIVE\DRIVERS\asmtxhci.sys [x] S3 ASUSFILTER;ASUSFILTER;SysWow64\drivers\ASUSFILTER.sys;SysWow64\drivers\ASUSFILTER.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetAdp.sys [x] S3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetFlt.sys [x] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - 68945725 *Deregistered* - 68945725 . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2013-08-19 7202520] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm TCP: DhcpNameServer = TCP: Interfaces\{A9CB66E2-0C47-4312-BDF5-8495ED16D516}: NameServer =, FF - ProfilePath - c:\users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\ . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10d.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10d.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}] @Denied: (A 2) (Everyone) @="IFlashBroker3" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2014-09-26 21:06:39 ComboFix-quarantined-files.txt 2014-09-26 19:06 . Vor Suchlauf: 8 Verzeichnis(se), 48.883.634.176 Bytes frei Nach Suchlauf: 11 Verzeichnis(se), Bytes frei . - - End Of File - - 9F5F5BE623545328F7388410311BD2CA 063C2A065A376B28A7456AA38DF4DD98 |
![]() | #9 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? Downloade Dir bitte ![]()
Downloade Dir bitte ![]()
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #10 |
![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? Hey, es wäre echt cool wenn du mir sagen könntest, was du wo gesehen hast und welche Maßnahme am Ende den gewünschten Effekt hatte, da ich hier noch mein Notebook und den Rechner meiner Freundin stehen habe, die auf dieser LAN eingesetzt wurden und ich gerne schauen würde, ob sie auch infiziert worden sind und sie falls nötig gerne desinfizieren würde. mwb.log: Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 28.09.2014 Suchlauf-Zeit: 09:21:41 Logdatei: mwb.txt Administrator: Ja Version: Malware Datenbank: v2014.09.28.02 Rootkit Datenbank: v2014.09.19.01 Lizenz: Testversion Malware Schutz: Aktiviert Bösartiger Webseiten Schutz: Aktiviert Self-protection: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: ponder Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 313310 Verstrichene Zeit: 4 Min, 44 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 0 (No malicious items detected) Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 0 (No malicious items detected) Ordner: 2 PUP.Optional.OpenCandy, C:\Users\ponder\AppData\Roaming\OpenCandy, In Quarantäne, [7e843eb5e9927db902167964966c4eb2], PUP.Optional.OpenCandy, C:\Users\ponder\AppData\Roaming\OpenCandy\OpenCandy_D6632D6884FC47DD9BC87AA4E4F03755, In Quarantäne, [7e843eb5e9927db902167964966c4eb2], Dateien: 2 PUP.Optional.OpenCandy, C:\Users\ponder\AppData\Local\Temp\utt9A8D.tmp, In Quarantäne, [7a88e40f3a415fd7b10b5adbd233a957], PUP.Optional.OpenCandy, C:\Users\ponder\AppData\Roaming\OpenCandy\OpenCandy_D6632D6884FC47DD9BC87AA4E4F03755\dlm313i.exe, In Quarantäne, [7e843eb5e9927db902167964966c4eb2], Physische Sektoren: 0 (No malicious items detected) (end) Code:
ATTFilter # AdwCleaner v3.310 - Bericht erstellt am 28/09/2014 um 09:46:43 # Aktualisiert 12/09/2014 von Xplode # Betriebssystem : Windows 7 Professional N Service Pack 1 (64 bits) # Benutzername : ponder - PONDER-PC # Gestartet von : C:\Users\ponder\Desktop\AdwCleaner_3.310.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17280 -\\ Mozilla Firefox v32.0.3 (x86 de) [ Datei : C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\prefs.js ] ************************* AdwCleaner[R0].txt - [848 octets] - [28/09/2014 09:46:08] AdwCleaner[S0].txt - [770 octets] - [28/09/2014 09:46:43] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [829 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.2.3 (09.27.2014:1) OS: Windows 7 Professional N x64 Ran by ponder on 28.09.2014 at 9:50:36,29 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ FireFox Emptied folder: C:\Users\ponder\AppData\Roaming\mozilla\firefox\profiles\ulshkgzn.default\minidumps [16 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 28.09.2014 at 9:52:38,09 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST.txt Teil 1: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-09-2014 Ran by ponder (administrator) on PONDER-PC on 28-09-2014 09:55:03 Running from C:\Users\ponder\Desktop Loaded Profile: ponder (Available profiles: ponder) Platform: Windows 7 Professional N Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe () C:\Windows\DAODx.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7202520 2013-08-19] (Realtek Semiconductor) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-07-30] (Oracle Corporation) HKU\S-1-5-21-2905865783-2833438306-3931818635-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21650016 2014-07-24] (Skype Technologies S.A.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xB01F36CBD3CDCF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_20\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_20\bin\jp2ssv.dll (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] Tcpip\..\Interfaces\{A9CB66E2-0C47-4312-BDF5-8495ED16D516}: [NameServer], FireFox: ======== FF ProfilePath: C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll () FF Plugin: @java.com/DTPlugin,version=11.20.2 -> C:\Program Files\Java\jre1.8.0_20\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.20.2 -> C:\Program Files\Java\jre1.8.0_20\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: DownloadHelper - C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-12] FF Extension: Adblock Plus - C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-09-11] FF Extension: Tab Mix Plus - C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\Extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2014-09-12] FF Extension: DownThemAll! - C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2014-09-12] Chrome: ======= ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2013-09-17] () R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2013-09-17] (ASUSTeK Computer Inc.) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-02-17] (ASUSTeK Computer Inc.) R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe [1632256 2012-11-09] (ASUSTeK Computer Inc.) [File not signed] R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-09-15] () ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2013-01-15] () R3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [122584 2014-09-28] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-05-12] (Malwarebytes Corporation) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-28 09:52 - 2014-09-28 09:52 - 00000761 _____ () C:\Users\ponder\Desktop\JRT.txt 2014-09-28 09:50 - 2014-09-28 09:50 - 00000000 ____D () C:\Windows\ERUNT 2014-09-28 09:50 - 2014-09-27 09:27 - 01699276 _____ (Thisisu) C:\Users\ponder\Desktop\JRT.exe 2014-09-28 09:45 - 2014-09-28 09:46 - 00000000 ____D () C:\AdwCleaner 2014-09-28 09:45 - 2014-09-28 09:45 - 01373475 _____ () C:\Users\ponder\Desktop\AdwCleaner_3.310.exe 2014-09-28 09:28 - 2014-09-28 09:43 - 00001677 _____ () C:\Users\ponder\Desktop\mwb.txt 2014-09-28 09:20 - 2014-09-28 09:47 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-09-28 09:20 - 2014-09-28 09:20 - 00001110 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-09-28 09:20 - 2014-09-28 09:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-09-28 09:20 - 2014-09-28 09:20 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-09-28 09:20 - 2014-09-28 09:20 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-09-28 09:20 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-09-28 09:20 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-09-28 09:20 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-09-28 09:19 - 2014-09-28 09:19 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\ponder\Desktop\mbam-setup- 2014-09-27 14:31 - 2014-09-28 09:47 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Skype 2014-09-27 14:31 - 2014-09-27 14:31 - 00002517 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-09-27 14:31 - 2014-09-27 14:31 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-09-27 14:31 - 2014-09-27 14:31 - 00000000 ____D () C:\Users\ponder\AppData\Local\Skype 2014-09-27 14:31 - 2014-09-27 14:31 - 00000000 ____D () C:\ProgramData\Skype 2014-09-27 14:31 - 2014-09-27 14:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-09-27 14:30 - 2014-09-27 14:30 - 00000857 _____ () C:\Users\ponder\Desktop\µTorrent.lnk 2014-09-27 14:30 - 2014-09-27 14:30 - 00000837 _____ () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2014-09-27 14:30 - 2014-09-27 14:30 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\RHEng 2014-09-27 14:29 - 2014-09-28 09:28 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\uTorrent 2014-09-27 14:29 - 2014-09-27 14:29 - 01913168 _____ (BitTorrent Inc.) C:\Users\ponder\Downloads\uTorrent_3.4.2b34309.exe 2014-09-27 14:26 - 2014-09-27 14:26 - 00000000 ____D () C:\Users\ponder\AppData\Local\Blizzard Entertainment 2014-09-27 13:51 - 2014-09-27 13:51 - 00001926 _____ () C:\Users\Public\Desktop\DOSBox 0.74.lnk 2014-09-27 13:51 - 2014-09-27 13:51 - 00000000 ____D () C:\Users\ponder\AppData\Local\DOSBox 2014-09-27 13:51 - 2014-09-27 13:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74 2014-09-27 13:51 - 2014-09-27 13:51 - 00000000 ____D () C:\Program Files (x86)\DOSBox-0.74 2014-09-27 13:50 - 2014-09-27 13:50 - 01448809 _____ (DOSBox Team) C:\Users\ponder\Downloads\DOSBox-0.74-install.exe 2014-09-27 13:50 - 2014-09-27 13:50 - 00002922 _____ () C:\Windows\System32\Tasks\{C81039C1-A325-4C2B-A09C-05498C92A47E} 2014-09-27 13:50 - 2014-09-27 13:50 - 00002922 _____ () C:\Windows\System32\Tasks\{9EAC5C88-968C-4566-9C5A-5D502FD642A1} 2014-09-27 13:48 - 2014-09-27 13:48 - 00346719 _____ () C:\Users\ponder\Downloads\prince-of-persia.zip 2014-09-26 23:19 - 2014-09-26 23:19 - 00000222 _____ () C:\Users\ponder\Desktop\No More Room in Hell.url 2014-09-26 21:34 - 2014-09-28 01:04 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\TS3Client 2014-09-26 21:34 - 2014-09-26 21:34 - 00000971 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2014-09-26 21:34 - 2014-09-26 21:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2014-09-26 21:34 - 2014-09-26 21:34 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-09-26 21:25 - 2014-09-26 21:27 - 30014480 _____ (TeamSpeak Systems GmbH) C:\Users\ponder\Downloads\TeamSpeak3-Client-win64-3.0.16.exe 2014-09-26 21:06 - 2014-09-26 21:06 - 00020036 _____ () C:\ComboFix.txt 2014-09-26 20:59 - 2014-09-26 21:06 - 00000000 ____D () C:\Qoobox 2014-09-26 20:59 - 2014-09-26 21:05 - 00000000 ____D () C:\Windows\erdnt 2014-09-26 20:59 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe 2014-09-26 20:59 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe 2014-09-26 20:59 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-09-26 20:59 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-09-26 20:59 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-09-26 20:59 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe 2014-09-26 20:59 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe 2014-09-26 20:59 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe 2014-09-26 20:57 - 2014-09-25 17:14 - 05580995 ____R (Swearware) C:\Users\ponder\Desktop\ComboFix.exe 2014-09-26 18:57 - 2014-09-26 18:57 - 00005389 _____ () C:\Users\ponder\Downloads\demo-kit.rar 2014-09-26 18:16 - 2014-07-10 12:18 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\ponder\Desktop\tdsskiller.exe 2014-09-26 12:05 - 2014-09-26 12:05 - 00001744 _____ () C:\Users\ponder\Desktop\gmer_19357.log 2014-09-26 11:48 - 2014-09-26 11:49 - 00000474 _____ () C:\Users\ponder\Desktop\defogger_disable.log 2014-09-26 11:48 - 2014-09-26 11:49 - 00000000 _____ () C:\Users\ponder\defogger_reenable 2014-09-26 11:48 - 2014-09-26 11:48 - 00050477 _____ () C:\Users\ponder\Desktop\Defogger.exe 2014-09-26 11:47 - 2014-09-26 11:47 - 00380416 _____ () C:\Users\ponder\Desktop\Gmer-19357.exe 2014-09-26 11:32 - 2014-09-28 09:55 - 00008360 _____ () C:\Users\ponder\Desktop\FRST.txt 2014-09-26 11:32 - 2014-09-28 09:55 - 00000000 ____D () C:\FRST 2014-09-26 11:32 - 2014-09-26 01:16 - 02108928 _____ (Farbar) C:\Users\ponder\Desktop\FRST64.exe 2014-09-25 09:36 - 2014-09-25 09:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-09-24 14:06 - 2014-09-10 00:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-09-24 14:06 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-09-23 10:28 - 2014-09-23 10:29 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Notepad++ 2014-09-23 10:28 - 2014-09-23 10:28 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ 2014-09-23 10:28 - 2014-09-23 10:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2014-09-23 10:28 - 2014-09-23 10:28 - 00000000 ____D () C:\Program Files (x86)\Notepad++ 2014-09-23 10:27 - 2014-09-23 10:33 - 00011587 _____ () C:\Users\ponder\Desktop\soilbase.sql 2014-09-23 10:27 - 2014-09-23 10:27 - 07945210 _____ () C:\Users\ponder\Downloads\npp.6.6.9.Installer.exe 2014-09-23 10:17 - 2014-09-23 10:31 - 00027117 _____ () C:\Users\ponder\Desktop\soilbase_model.mwb 2014-09-23 10:17 - 2014-09-23 10:24 - 00023539 _____ () C:\Users\ponder\Desktop\soilbase_model.mwb.bak 2014-09-23 08:56 - 2014-09-23 09:02 - 00000600 _____ () C:\Users\ponder\AppData\Local\PUTTY.RND 2014-09-23 08:36 - 2014-09-23 08:36 - 00002209 _____ () C:\Users\ponder\Desktop\MySQL Workbench 6.1 CE.lnk 2014-09-23 08:36 - 2014-09-23 08:36 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\MySQL 2014-09-23 08:36 - 2014-09-23 08:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL 2014-09-23 08:36 - 2014-09-23 08:36 - 00000000 ____D () C:\Program Files (x86)\MySQL 2014-09-23 08:34 - 2014-09-23 08:34 - 00495616 _____ (Simon Tatham) C:\Users\ponder\Desktop\putty.exe 2014-09-23 08:16 - 2014-09-25 09:41 - 00000000 ____D () C:\Users\ponder\.VirtualBox 2014-09-23 08:16 - 2014-09-23 08:16 - 00001080 _____ () C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2014-09-23 08:16 - 2014-09-23 08:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox 2014-09-23 08:16 - 2014-09-23 08:16 - 00000000 ____D () C:\Program Files\Oracle 2014-09-23 08:16 - 2014-09-09 17:29 - 00910920 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys 2014-09-23 08:16 - 2014-09-09 17:27 - 00129168 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys 2014-09-22 20:45 - 2014-09-22 20:45 - 00000000 ____D () C:\Users\ponder\AppData\Local\FalloutNV 2014-09-22 14:59 - 2014-09-22 15:07 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\InfraRecorder 2014-09-22 14:59 - 2014-09-22 14:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\InfraRecorder 2014-09-22 14:59 - 2014-09-22 14:59 - 00000000 ____D () C:\Program Files (x86)\InfraRecorder 2014-09-22 13:17 - 2014-09-22 13:18 - 00000000 ____D () C:\Users\ponder\.dia 2014-09-22 13:17 - 2014-09-22 13:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dia 2014-09-22 13:17 - 2014-09-22 13:17 - 00000000 ____D () C:\Program Files (x86)\Dia 2014-09-22 13:07 - 2014-09-22 13:37 - 1382989824 _____ () C:\Users\ponder\Downloads\linuxmint-17-cinnamon-64bit-v2.iso 2014-09-21 03:23 - 2014-09-21 03:23 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Soldat 2014-09-21 00:28 - 2014-09-21 03:52 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2014-09-20 20:38 - 2014-09-20 20:38 - 00000730 _____ () C:\Users\ponder\Desktop\Counter-Strike.exe - Verknüpfung.lnk 2014-09-19 10:28 - 2014-09-19 10:28 - 00000000 ____D () C:\Users\ponder\Desktop\Third Attempt 2014-09-19 10:27 - 2014-09-19 10:27 - 00001431 _____ () C:\Users\ponder\Desktop\.minecraft - Verknüpfung.lnk 2014-09-18 22:58 - 2014-09-27 03:51 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\.purple 2014-09-18 22:53 - 2014-09-18 22:53 - 00000987 _____ () C:\Users\Public\Desktop\Pidgin.lnk 2014-09-18 22:53 - 2014-09-18 22:53 - 00000000 ____D () C:\Program Files (x86)\Pidgin 2014-09-15 23:09 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-15 23:05 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-09-15 23:05 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-09-15 17:43 - 2014-09-15 17:43 - 00000000 ____D () C:\Users\ponder\AppData\Local\Skyrim 2014-09-15 17:01 - 2014-09-15 17:18 - 00290776 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-09-15 17:01 - 2014-09-15 17:01 - 00000000 ____D () C:\Users\ponder\AppData\Local\PunkBuster 2014-09-15 16:57 - 2014-09-15 16:57 - 00000000 ____D () C:\ProgramData\Package Cache 2014-09-15 16:56 - 2014-09-15 17:18 - 00290776 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-09-15 16:56 - 2014-09-15 17:01 - 00281288 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-09-15 16:56 - 2014-09-15 16:56 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-09-15 16:56 - 2014-09-15 16:56 - 00000000 __SHD () C:\Users\ponder\AppData\Local\EmieUserList 2014-09-15 16:56 - 2014-09-15 16:56 - 00000000 __SHD () C:\Users\ponder\AppData\Local\EmieSiteList 2014-09-15 08:35 - 2014-09-22 20:45 - 00000000 ____D () C:\Users\ponder\Documents\My Games 2014-09-15 08:35 - 2014-09-22 20:44 - 00062700 _____ () C:\Windows\DirectX.log 2014-09-15 08:35 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2014-09-15 08:35 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2014-09-15 08:35 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-09-15 08:35 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-09-15 08:35 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2014-09-15 08:35 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-09-15 08:35 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2014-09-15 08:35 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-09-15 08:35 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-09-15 08:35 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2014-09-15 08:35 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2014-09-15 08:35 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-09-15 08:35 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-09-15 08:35 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2014-09-15 08:35 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2014-09-15 08:35 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2014-09-15 08:35 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-09-15 08:35 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2014-09-15 08:35 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2014-09-15 08:35 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-09-15 08:35 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-09-15 08:35 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2014-09-15 08:35 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-09-15 08:35 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2014-09-15 08:35 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-09-15 08:35 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2014-09-15 08:35 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-09-15 08:35 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2014-09-15 08:35 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-09-15 08:35 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2014-09-15 08:35 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-09-15 08:35 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2014-09-15 08:35 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-09-15 08:35 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2014-09-15 08:35 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-09-15 08:35 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2014-09-15 08:35 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-09-15 08:35 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2014-09-15 08:35 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-09-15 08:35 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2014-09-15 08:35 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-09-15 08:35 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2014-09-15 08:35 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-09-15 08:35 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2014-09-15 08:35 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-09-15 08:35 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2014-09-15 08:35 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-09-15 08:35 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2014-09-15 08:35 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-09-15 08:35 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2014-09-15 08:35 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-09-15 08:35 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2014-09-15 08:35 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-09-15 08:35 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2014-09-15 08:35 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-09-15 08:35 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2014-09-15 08:35 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2014-09-15 08:35 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-09-15 08:35 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-09-15 08:35 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2014-09-15 08:35 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-09-15 08:35 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2014-09-15 08:35 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-09-15 08:35 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2014-09-15 08:35 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2014-09-15 08:35 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-09-15 08:35 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-09-15 08:35 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-09-15 08:35 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2014-09-15 08:35 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2014-09-15 08:35 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2014-09-15 08:35 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-09-15 08:35 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-09-15 08:35 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2014-09-15 08:35 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-09-15 08:35 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2014-09-15 08:35 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-09-15 08:35 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2014-09-15 08:35 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-09-15 08:35 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2014-09-15 08:35 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-09-15 08:35 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2014-09-15 08:35 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-09-15 08:35 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2014-09-15 08:35 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-09-15 08:35 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2014-09-15 08:35 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-09-15 08:35 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2014-09-15 08:35 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-09-15 08:35 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2014-09-15 08:35 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-09-15 08:35 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2014-09-15 08:35 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-09-15 08:35 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2014-09-15 04:59 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-09-15 04:59 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-09-15 04:59 - 2013-11-26 10:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-09-15 04:59 - 2013-11-23 20:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-09-15 04:59 - 2013-11-23 19:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-09-15 04:59 - 2013-11-23 00:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-09-15 04:58 - 2014-02-04 04:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-09-15 04:58 - 2014-02-04 04:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-09-15 03:30 - 2014-09-26 22:48 - 00002208 _____ () C:\Windows\MB.idx 2014-09-15 03:15 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2014-09-15 03:12 - 2014-09-15 03:12 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-09-15 03:11 - 2014-09-15 03:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-09-15 03:11 - 2014-09-15 03:11 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-09-15 03:11 - 2014-09-15 03:11 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-09-15 03:11 - 2014-09-15 03:11 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-09-15 03:11 - 2014-09-15 03:11 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-09-15 03:11 - 2014-09-15 03:11 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-09-15 03:11 - 2014-09-15 03:11 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-09-15 03:11 - 2014-09-15 03:11 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-09-15 03:11 - 2014-09-15 03:11 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-09-15 03:11 - 2014-09-15 03:11 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-09-15 03:09 - 2014-09-15 03:15 - 00011756 _____ () C:\Windows\IE11_main.log 2014-09-14 22:55 - 2014-09-14 22:55 - 00000222 _____ () C:\Users\ponder\Desktop\APB Reloaded.url 2014-09-14 20:50 - 2014-09-14 20:50 - 00000222 _____ () C:\Users\ponder\Desktop\Path of Exile.url 2014-09-14 12:29 - 2014-09-14 12:29 - 00000219 _____ () C:\Users\ponder\Desktop\Team Fortress 2.url 2014-09-14 12:29 - 2014-09-14 12:29 - 00000219 _____ () C:\Users\ponder\Desktop\Dota 2.url 2014-09-14 12:29 - 2014-09-14 12:29 - 00000218 _____ () C:\Users\ponder\Desktop\Counter-Strike.url 2014-09-14 12:29 - 2014-09-14 12:29 - 00000206 _____ () C:\Users\ponder\Desktop\Black Mesa.url 2014-09-13 11:50 - 2014-09-13 11:50 - 00000593 _____ () C:\Users\Public\Desktop\Guild Wars 2.lnk 2014-09-13 11:50 - 2014-09-13 11:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2 2014-09-13 11:47 - 2014-09-13 11:50 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Guild Wars 2 2014-09-13 08:01 - 2014-09-26 09:03 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-09-13 08:01 - 2014-09-13 08:01 - 00000000 ____D () C:\ProgramData\Mozilla 2014-09-12 14:29 - 2012-02-11 08:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2014-09-12 14:29 - 2012-02-11 08:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe 2014-09-12 14:29 - 2011-03-11 08:41 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys 2014-09-12 14:29 - 2011-03-11 08:41 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys 2014-09-12 14:29 - 2011-03-11 08:41 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys 2014-09-12 14:29 - 2011-03-11 08:41 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys 2014-09-12 14:29 - 2011-03-11 08:41 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys 2014-09-12 14:29 - 2011-03-11 08:33 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2014-09-12 14:29 - 2011-03-11 08:30 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe 2014-09-12 14:29 - 2011-03-11 07:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll 2014-09-12 14:29 - 2011-03-11 07:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe 2014-09-12 14:29 - 2011-03-11 06:37 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2014-09-12 14:29 - 2011-02-25 08:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2014-09-12 14:29 - 2011-02-25 07:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2014-09-12 12:26 - 2014-09-12 12:26 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\LibreOffice 2014-09-12 08:47 - 2014-09-12 08:52 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\SumatraPDF 2014-09-12 08:47 - 2014-09-12 08:47 - 00001937 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SumatraPDF.lnk 2014-09-12 08:47 - 2014-09-12 08:47 - 00000000 ____D () C:\Program Files (x86)\SumatraPDF 2014-09-12 08:46 - 2014-09-12 08:46 - 00007605 _____ () C:\Users\ponder\AppData\Local\Resmon.ResmonCfg 2014-09-12 08:45 - 2014-09-12 08:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.2 2014-09-12 08:45 - 2014-09-12 08:45 - 00000000 ____D () C:\Program Files (x86)\LibreOffice 4 2014-09-12 08:12 - 2014-09-12 08:12 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-09-12 00:25 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2014-09-11 20:15 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-09-11 20:15 - 2013-10-30 04:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-09-11 20:15 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-09-11 20:15 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-09-11 20:15 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2014-09-11 20:15 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-09-11 20:15 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2014-09-11 20:15 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2014-09-11 20:15 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-09-11 20:15 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-09-11 20:15 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-09-11 20:15 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-09-11 20:15 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-09-11 20:15 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-09-11 20:15 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2014-09-11 20:15 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2014-09-11 20:15 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2014-09-11 20:15 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2014-09-11 20:15 - 2011-10-26 07:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2014-09-11 20:15 - 2011-10-26 07:25 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-09-11 20:15 - 2011-10-26 06:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll 2014-09-11 20:15 - 2011-10-26 06:32 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-09-11 20:15 - 2011-06-16 07:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll 2014-09-11 20:15 - 2011-06-16 06:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll 2014-09-11 20:15 - 2011-06-15 12:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2014-09-11 20:15 - 2011-06-15 12:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll 2014-09-11 20:15 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2014-09-11 20:15 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll 2014-09-11 20:15 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-09-11 20:15 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-09-11 20:15 - 2010-12-23 12:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll 2014-09-11 20:15 - 2010-12-23 12:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2014-09-11 20:15 - 2010-12-23 12:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax 2014-09-11 20:15 - 2010-12-23 07:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll 2014-09-11 20:15 - 2010-12-23 07:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2014-09-11 20:15 - 2010-12-23 07:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax 2014-09-11 20:14 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-09-11 20:14 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-09-11 20:14 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-09-11 20:14 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-09-11 20:14 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-09-11 20:14 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-09-11 20:14 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-09-11 20:14 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-09-11 20:14 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-09-11 20:14 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-09-11 20:14 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-09-11 20:14 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-09-11 20:14 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2014-09-11 20:14 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-09-11 20:14 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-09-11 20:14 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-09-11 20:14 - 2014-01-01 01:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-09-11 20:14 - 2014-01-01 01:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-09-11 20:14 - 2013-11-26 13:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-09-11 20:14 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-09-11 20:14 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-09-11 20:14 - 2013-10-05 22:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-09-11 20:14 - 2013-10-05 21:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-09-11 20:14 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-09-11 20:14 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-09-11 20:14 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2014-09-11 20:14 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2014-09-11 20:14 - 2012-01-04 12:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2014-09-11 20:14 - 2012-01-04 10:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll 2014-09-11 20:14 - 2011-12-30 08:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2014-09-11 20:14 - 2011-12-30 07:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2014-09-11 20:14 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2014-09-11 20:14 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2014-09-11 20:14 - 2011-07-09 04:46 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2014-09-11 20:14 - 2011-05-04 07:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2014-09-11 20:14 - 2011-05-04 07:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2014-09-11 20:14 - 2011-05-04 07:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2014-09-11 20:14 - 2011-05-04 07:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2014-09-11 20:14 - 2011-05-04 06:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll 2014-09-11 20:14 - 2011-05-04 06:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2014-09-11 20:14 - 2011-05-04 06:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2014-09-11 20:14 - 2011-05-04 06:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2014-09-11 20:14 - 2011-04-27 04:40 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-09-11 20:14 - 2011-04-27 04:39 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2014-09-11 20:13 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-09-11 20:13 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-09-11 20:13 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll Geändert von mrstibbons (28.09.2014 um 09:07 Uhr) |
![]() | #11 |
![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? FRST.txt Teil 2: Code:
ATTFilter 2014-09-11 20:13 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-09-11 20:13 - 2013-12-04 04:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-09-11 20:13 - 2013-12-04 04:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-09-11 20:13 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-09-11 20:13 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-09-11 20:13 - 2013-12-04 04:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-09-11 20:13 - 2013-12-04 04:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-09-11 20:13 - 2013-12-04 04:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-09-11 20:13 - 2013-12-04 04:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-09-11 20:13 - 2013-12-04 04:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-09-11 20:13 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-09-11 20:13 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-09-11 20:13 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-09-11 20:13 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-09-11 20:13 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-09-11 20:13 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-09-11 20:13 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-09-11 20:13 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-09-11 20:13 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-09-11 20:13 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-09-11 20:13 - 2013-10-04 04:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2014-09-11 20:13 - 2013-10-04 04:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2014-09-11 20:13 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-09-11 20:13 - 2013-10-04 03:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2014-09-11 20:13 - 2013-10-04 03:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2014-09-11 20:13 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-09-11 20:13 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2014-09-11 20:13 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2014-09-11 20:13 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2014-09-11 20:13 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2014-09-11 20:13 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-09-11 20:13 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2014-09-11 20:13 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2014-09-11 20:13 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2014-09-11 20:13 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-09-11 20:13 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2014-09-11 20:13 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2014-09-11 20:13 - 2013-04-26 01:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2014-09-11 20:13 - 2013-04-01 00:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2014-09-11 20:13 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2014-09-11 20:13 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys 2014-09-11 20:13 - 2011-03-11 08:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2014-09-11 20:13 - 2011-03-11 08:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2014-09-11 20:13 - 2011-03-11 07:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll 2014-09-11 20:13 - 2011-03-11 07:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll 2014-09-11 20:12 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-09-11 20:12 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2014-09-11 20:12 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2014-09-11 20:12 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe 2014-09-11 20:09 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-09-11 20:09 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-09-11 20:09 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-09-11 20:09 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-09-11 20:09 - 2012-11-29 00:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2014-09-11 20:07 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2014-09-11 20:07 - 2012-10-03 19:44 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2014-09-11 20:07 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2014-09-11 20:07 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2014-09-11 20:07 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2014-09-11 20:07 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll 2014-09-11 20:07 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2014-09-11 20:07 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll 2014-09-11 20:07 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll 2014-09-11 20:07 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll 2014-09-11 20:07 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2014-09-11 20:07 - 2012-01-13 09:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2014-09-11 19:15 - 2014-09-15 17:00 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\NVIDIA 2014-09-11 19:13 - 2014-09-11 19:13 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\java 2014-09-11 19:11 - 2014-09-11 19:11 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-09-11 19:11 - 2014-09-11 19:11 - 00000000 ____D () C:\ProgramData\Sun 2014-09-11 19:11 - 2014-09-11 19:11 - 00000000 ____D () C:\ProgramData\Oracle 2014-09-11 19:11 - 2014-09-11 19:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-09-11 19:10 - 2014-09-11 19:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2014-09-11 19:10 - 2014-09-11 19:10 - 00000000 ____D () C:\Program Files\Java 2014-09-11 19:00 - 2014-09-11 19:00 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Macromedia 2014-09-11 19:00 - 2014-09-11 19:00 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Adobe 2014-09-11 19:00 - 2014-09-11 19:00 - 00000000 ____D () C:\Users\ponder\AppData\Local\Macromedia 2014-09-11 18:58 - 2014-09-11 18:58 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-11 18:58 - 2014-09-11 18:58 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-11 18:58 - 2014-09-11 18:58 - 00000000 ____D () C:\Windows\system32\Macromed 2014-09-11 18:57 - 2014-09-11 19:00 - 00000000 ____D () C:\Users\ponder\AppData\Local\Adobe 2014-09-11 18:46 - 2014-09-22 17:56 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\.minecraft 2014-09-11 18:46 - 2014-09-11 18:46 - 00675988 _____ () C:\Users\ponder\Desktop\Minecraft.exe 2014-09-11 18:36 - 2014-09-11 20:24 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-09-11 18:33 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-09-11 18:33 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-09-11 18:33 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2014-09-11 18:33 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-09-11 18:33 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-09-11 18:33 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-09-11 18:33 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2014-09-11 18:33 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-09-11 18:33 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-09-11 18:33 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-09-11 18:33 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-09-11 18:33 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-09-11 18:33 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-09-11 18:33 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-09-11 18:33 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-09-11 18:33 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-09-11 18:33 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-09-11 18:33 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2014-09-11 18:33 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2014-09-11 18:33 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-09-11 18:33 - 2013-07-04 14:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-09-11 18:33 - 2013-07-04 14:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2014-09-11 18:33 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2014-09-11 18:33 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2014-09-11 18:33 - 2013-07-04 12:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2014-09-11 18:33 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-09-11 18:33 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-09-11 18:33 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2014-09-11 18:33 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2014-09-11 18:33 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2014-09-11 18:33 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe 2014-09-11 18:33 - 2012-05-01 07:40 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2014-09-11 18:33 - 2011-03-03 08:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2014-09-11 18:33 - 2011-03-03 08:24 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2014-09-11 18:33 - 2011-03-03 08:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe 2014-09-11 18:33 - 2011-03-03 07:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2014-09-11 18:33 - 2011-03-03 07:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe 2014-09-11 18:32 - 2014-06-16 04:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-09-11 18:32 - 2013-09-08 04:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-09-11 18:32 - 2013-09-08 04:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2014-09-11 18:32 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-09-11 18:32 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2014-09-11 18:32 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2014-09-11 18:32 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2014-09-11 18:32 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2014-09-11 18:32 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2014-09-11 18:32 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs 2014-09-11 18:32 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-09-11 18:32 - 2011-08-17 07:26 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll 2014-09-11 18:32 - 2011-08-17 07:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax 2014-09-11 18:32 - 2011-08-17 06:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll 2014-09-11 18:32 - 2011-08-17 06:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax 2014-09-11 18:32 - 2011-04-29 05:06 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2014-09-11 18:32 - 2011-04-29 05:05 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2014-09-11 18:32 - 2011-04-29 05:05 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2014-09-11 18:32 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-09-11 18:30 - 2013-08-29 04:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-09-11 18:30 - 2013-08-29 04:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2014-09-11 18:30 - 2013-08-29 04:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-09-11 18:30 - 2013-08-29 03:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-09-11 18:30 - 2013-08-29 03:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2014-09-11 18:30 - 2013-08-29 03:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2014-09-11 18:30 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2014-09-11 18:29 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-09-11 18:29 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-09-11 18:29 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-09-11 18:29 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2014-09-11 18:29 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-09-11 18:29 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2014-09-11 18:29 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll 2014-09-11 18:29 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-09-11 18:29 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2014-09-11 18:29 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2014-09-11 18:29 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2014-09-11 18:29 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-09-11 18:29 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2014-09-11 18:29 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2014-09-11 18:29 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2014-09-11 18:29 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2014-09-11 18:29 - 2011-05-24 13:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2014-09-11 18:29 - 2011-05-24 12:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll 2014-09-11 18:29 - 2011-05-24 12:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll 2014-09-11 18:29 - 2011-05-24 12:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll 2014-09-11 18:29 - 2011-05-24 12:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2014-09-11 18:29 - 2011-02-05 19:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2014-09-11 18:29 - 2011-02-05 19:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll 2014-09-11 18:29 - 2011-02-05 19:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll 2014-09-11 18:29 - 2011-02-05 19:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll 2014-09-11 18:29 - 2011-02-05 19:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2014-09-11 18:29 - 2011-02-05 19:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2014-09-11 18:29 - 2011-02-05 19:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2014-09-11 18:28 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-09-11 18:28 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-09-11 18:28 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-09-11 18:28 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-09-11 18:28 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-09-11 18:28 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-09-11 18:28 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-09-11 18:28 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-09-11 18:28 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-09-11 18:28 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-09-11 18:28 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-09-11 18:28 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-09-11 18:28 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-09-11 18:28 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-09-11 18:28 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-09-11 18:28 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-09-11 18:28 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-09-11 18:28 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-09-11 18:28 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-09-11 18:28 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-09-11 18:28 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-09-11 18:28 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-09-11 18:28 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-09-11 18:28 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-09-11 18:28 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-09-11 18:28 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-09-11 18:28 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2014-09-11 18:28 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2014-09-11 18:28 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-09-11 18:28 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-09-11 18:28 - 2013-07-04 14:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-09-11 18:28 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-09-11 18:28 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-09-11 18:28 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2014-09-11 18:28 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2014-09-11 18:28 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2014-09-11 18:28 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2014-09-11 18:28 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2014-09-11 18:28 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2014-09-11 18:28 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll 2014-09-11 18:28 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll 2014-09-11 18:28 - 2012-05-05 10:36 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2014-09-11 18:28 - 2012-05-05 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2014-09-11 18:28 - 2011-12-16 10:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2014-09-11 18:28 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll 2014-09-11 18:28 - 2011-05-03 07:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2014-09-11 18:28 - 2011-05-03 06:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2014-09-11 18:28 - 2011-02-18 12:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe 2014-09-11 18:28 - 2011-02-18 07:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe 2014-09-11 18:28 - 2011-02-12 13:34 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe 2014-09-11 18:27 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-09-11 18:27 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-09-11 18:27 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-09-11 18:27 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-09-11 18:27 - 2011-10-15 08:31 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2014-09-11 18:27 - 2011-10-15 07:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2014-09-11 18:27 - 2011-08-27 07:37 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-09-11 18:27 - 2011-08-27 07:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll 2014-09-11 18:27 - 2011-08-27 06:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2014-09-11 18:27 - 2011-08-27 06:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll 2014-09-11 18:27 - 2011-02-23 06:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2014-09-11 18:26 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-11 18:26 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-11 18:23 - 2014-09-12 08:47 - 00071616 _____ () C:\Users\ponder\AppData\Local\GDIPFONTCACHEV1.DAT 2014-09-11 18:21 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2014-09-11 18:21 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll 2014-09-11 18:19 - 2014-09-28 09:29 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-09-11 18:19 - 2014-09-11 18:19 - 00000971 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-09-11 18:19 - 2014-09-11 18:19 - 00000861 _____ () C:\Users\ponder\Desktop\Downloads.lnk 2014-09-11 18:19 - 2014-09-11 18:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-09-11 18:19 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-09-11 18:19 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-09-11 18:19 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2014-09-11 18:19 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-09-11 18:19 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-09-11 18:19 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2014-09-11 18:19 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2014-09-11 18:19 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2014-09-11 18:19 - 2011-11-19 16:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-09-11 18:19 - 2011-11-19 16:01 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2014-09-11 18:00 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2014-09-11 18:00 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2014-09-11 18:00 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2014-09-11 18:00 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2014-09-11 18:00 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2014-09-11 18:00 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2014-09-11 18:00 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2014-09-11 18:00 - 2012-06-02 16:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2014-09-11 17:59 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2014-09-11 17:59 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2014-09-11 17:59 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2014-09-11 17:58 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2014-09-11 17:58 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll 2014-09-11 17:58 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2014-09-11 17:58 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-09-11 17:58 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2014-09-11 17:58 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2014-09-11 17:58 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe 2014-09-11 17:58 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll 2014-09-11 17:57 - 2014-09-11 17:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2014-09-11 17:57 - 2014-09-11 17:57 - 00000000 ____D () C:\Program Files\VideoLAN 2014-09-11 17:55 - 2014-09-23 00:18 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\foobar2000 2014-09-11 17:55 - 2014-09-11 17:55 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\foobar2000.lnk 2014-09-11 17:55 - 2014-09-11 17:55 - 00000000 ____D () C:\Program Files (x86)\foobar2000 2014-09-11 17:54 - 2014-09-28 09:53 - 00000000 _____ () C:\Windows\Path.idx 2014-09-11 17:54 - 2014-09-11 17:54 - 00002774 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-09-11 17:54 - 2014-09-11 17:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-09-11 17:54 - 2014-09-11 17:54 - 00000000 ____D () C:\Program Files\CCleaner 2014-09-11 17:53 - 2014-09-11 17:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2014-09-11 17:53 - 2014-09-11 17:53 - 00000000 ____D () C:\Program Files\7-Zip 2014-09-11 17:53 - 2014-09-11 17:53 - 00000000 _____ () C:\Windows\SysWOW64\Drivers\1043_ASUSTeK_M5A97 R2.0.alu 2014-09-11 17:53 - 2014-09-11 16:59 - 00000000 ____D () C:\Windows\Panther 2014-09-11 17:49 - 2014-09-28 09:48 - 01048576 _____ () C:\Windows\PE_Rom.dll 2014-09-11 17:46 - 2014-09-11 17:46 - 00000000 ____D () C:\Program Files\ASUS 2014-09-11 17:45 - 2014-09-11 17:45 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-09-11 17:45 - 2013-02-21 05:40 - 00032840 ____R (NT Kernel Resources) C:\Windows\system32\Drivers\ndisrd.sys 2014-09-11 17:44 - 2014-09-11 17:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS 2014-09-11 17:44 - 2008-12-02 20:05 - 00184320 _____ (ASUSTeK) C:\Windows\SysWOW64\Drivers\UpdateHelper.dll 2014-09-11 17:43 - 2014-09-11 17:43 - 00000000 ____D () C:\ProgramData\ASUS 2014-09-11 17:43 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2014-09-11 17:43 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2014-09-11 17:43 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2014-09-11 17:42 - 2014-09-11 17:44 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-09-11 17:42 - 2014-09-11 17:42 - 00000000 ____D () C:\Windows\SysWOW64\Drivers\MFDLL 2014-09-11 17:42 - 2012-08-22 11:54 - 00015232 ____R () C:\Windows\SysWOW64\Drivers\AsIO.sys 2014-09-11 17:42 - 2010-06-29 09:41 - 00028672 ____R (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll 2014-09-11 17:42 - 2008-01-04 07:34 - 00011832 ____N () C:\Windows\SysWOW64\Drivers\AsInsHelp64.sys 2014-09-11 17:40 - 2014-09-11 17:46 - 00015632 _____ () C:\Windows\DPINST.LOG 2014-09-11 17:40 - 2014-09-11 17:40 - 00000000 ____D () C:\Program Files (x86)\ASM104xUSB3 2014-09-11 17:36 - 2014-09-11 17:36 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-09-11 17:36 - 2014-09-11 17:36 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-09-11 17:36 - 2014-09-11 17:36 - 00000000 ____D () C:\Program Files\Realtek 2014-09-11 17:36 - 2013-08-21 06:50 - 03591000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-09-11 17:36 - 2013-08-20 14:17 - 02809048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-09-11 17:36 - 2013-08-20 14:17 - 02585304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-09-11 17:36 - 2013-08-20 12:48 - 00633381 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-09-11 17:36 - 2013-08-20 12:31 - 00148184 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-09-11 17:36 - 2013-08-20 07:51 - 31488000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-09-11 17:36 - 2013-08-20 04:02 - 04848920 _____ (ASUSTeKcomputer.Inc Inc) C:\Windows\system32\RTKSMlfx.dll 2014-09-11 17:36 - 2013-08-16 09:46 - 00818008 _____ (ASUSTeKcomputer.Inc Inc) C:\Windows\system32\RTKSMSettingsIPC.dll 2014-09-11 17:36 - 2013-08-14 10:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-09-11 17:36 - 2013-08-14 10:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-09-11 17:36 - 2013-08-12 23:21 - 01019136 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-09-11 17:36 - 2013-08-12 23:21 - 00899328 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-09-11 17:36 - 2013-08-12 23:21 - 00720128 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-09-11 17:36 - 2013-08-12 23:21 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-09-11 17:36 - 2013-08-07 11:34 - 00765184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-09-11 17:36 - 2013-08-06 03:47 - 00947248 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-09-11 17:36 - 2013-08-02 14:16 - 01005784 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-09-11 17:36 - 2013-08-01 04:59 - 05694760 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-09-11 17:36 - 2013-07-28 04:48 - 27518208 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-09-11 17:36 - 2013-07-26 08:05 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-09-11 17:36 - 2013-07-23 09:40 - 03610880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-09-11 17:36 - 2013-07-23 09:40 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-09-11 17:36 - 2013-07-23 09:39 - 14048512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-09-11 17:36 - 2013-07-23 09:39 - 01916672 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-09-11 17:36 - 2013-07-11 08:15 - 00557880 _____ () C:\Windows\system32\audioLibVc.dll 2014-09-11 17:36 - 2013-06-25 06:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-09-11 17:36 - 2013-06-25 06:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-09-11 17:36 - 2013-06-25 06:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-09-11 17:36 - 2013-04-24 11:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-09-11 17:36 - 2013-02-20 12:55 - 01284680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-09-11 17:36 - 2012-08-31 13:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-09-11 17:36 - 2012-08-31 13:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-09-11 17:36 - 2012-08-31 13:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-09-11 17:36 - 2012-08-31 13:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-09-11 17:36 - 2012-08-31 13:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-09-11 17:36 - 2012-01-30 05:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-09-11 17:36 - 2012-01-10 04:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-09-11 17:36 - 2011-12-20 09:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-09-11 17:36 - 2011-11-22 10:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-09-11 17:36 - 2011-09-02 08:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-09-11 17:36 - 2011-09-02 08:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-09-11 17:36 - 2011-09-02 08:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-09-11 17:36 - 2011-08-11 10:55 - 00001332 ____R () C:\Windows\system32\Drivers\DTSU2P.DAT 2014-09-11 17:36 - 2011-03-17 06:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-09-11 17:36 - 2011-03-07 11:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-09-11 17:36 - 2010-11-03 12:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-09-11 17:36 - 2010-07-22 10:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-09-11 17:36 - 2009-11-24 03:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-09-11 17:36 - 2009-11-24 03:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-09-11 17:36 - 2009-11-24 03:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-09-11 17:36 - 2009-11-24 03:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-09-11 17:35 - 2014-09-11 17:37 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-09-11 17:35 - 2013-08-14 10:36 - 01325312 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-09-11 17:35 - 2013-08-14 10:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-09-11 17:35 - 2013-08-14 10:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-09-11 17:35 - 2013-08-08 13:57 - 02080472 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-09-11 17:35 - 2013-08-07 11:41 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-09-11 17:35 - 2013-08-05 22:56 - 06219096 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-09-11 17:35 - 2013-08-05 22:56 - 01908568 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-09-11 17:35 - 2013-08-05 22:56 - 00312152 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-09-11 17:35 - 2013-08-05 22:56 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-09-11 17:35 - 2013-08-05 12:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-09-11 17:35 - 2013-07-24 04:07 - 02032896 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-09-11 17:35 - 2013-07-23 09:39 - 00922880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-09-11 17:35 - 2013-06-21 05:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-09-11 17:35 - 2013-06-05 15:42 - 00208072 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-09-11 17:35 - 2013-04-03 08:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-09-11 17:35 - 2012-10-02 08:41 - 00501192 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-09-11 17:35 - 2012-10-02 08:41 - 00487368 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-09-11 17:35 - 2012-10-02 08:41 - 00415688 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-09-11 17:35 - 2012-03-08 05:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-09-11 17:35 - 2011-08-23 11:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-09-11 17:35 - 2010-09-27 03:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-09-11 17:31 - 2014-09-15 23:07 - 01622000 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-09-11 17:31 - 2014-09-11 17:31 - 00000000 ____D () C:\Program Files (x86)\AMD APP 2014-09-11 17:31 - 2012-04-11 03:40 - 00082560 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_sata.sys 2014-09-11 17:31 - 2012-04-11 03:40 - 00042624 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_xata.sys 2014-09-11 17:28 - 2014-09-11 17:28 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-09-11 17:28 - 2014-09-11 17:28 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Mozilla 2014-09-11 17:28 - 2014-09-11 17:28 - 00000000 ____D () C:\Users\ponder\AppData\Local\Mozilla 2014-09-11 17:23 - 2014-09-11 17:23 - 00000000 ____D () C:\Program Files\ATI 2014-09-11 17:22 - 2014-09-11 17:22 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-09-11 17:21 - 2014-09-11 17:21 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll 2014-09-11 17:21 - 2011-02-25 08:25 - 00296320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2014-09-11 17:20 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-09-11 17:20 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2014-09-11 17:20 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-09-11 17:20 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-09-11 17:20 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-09-11 17:20 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-09-11 17:20 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2014-09-11 17:20 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-09-11 17:20 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2014-09-11 17:18 - 2014-09-11 17:46 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-09-11 17:18 - 2014-09-11 17:35 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-09-11 17:18 - 2012-12-26 19:26 - 00805088 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-09-11 17:18 - 2012-12-26 19:26 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2014-09-11 17:18 - 2012-12-26 19:26 - 00074344 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-09-11 17:17 - 2014-09-11 17:46 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS 2014-09-11 17:17 - 2014-09-11 17:39 - 00033596 _____ () C:\Windows\Ascd_tmp.ini 2014-09-11 17:17 - 2014-09-11 17:38 - 00001769 _____ () C:\Windows\Language_trs.ini 2014-09-11 17:17 - 2014-09-11 17:38 - 00000288 _____ () C:\Windows\As_Utilities.log 2014-09-11 17:17 - 2014-09-11 17:17 - 00000000 ____D () C:\Windows\AsDmiHtm 2014-09-11 17:11 - 2014-09-11 17:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-09-11 17:08 - 2014-09-28 09:47 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-09-11 17:08 - 2014-09-11 17:08 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-09-11 17:07 - 2014-09-11 17:08 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-09-11 17:07 - 2014-09-11 17:08 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-09-11 17:07 - 2014-02-08 19:42 - 06712608 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-09-11 17:07 - 2014-02-08 19:42 - 03498272 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-09-11 17:07 - 2014-02-08 19:42 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-09-11 17:07 - 2014-02-08 19:42 - 00923936 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-09-11 17:07 - 2014-02-08 19:42 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-09-11 17:07 - 2014-02-08 19:42 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-09-11 17:07 - 2014-02-08 18:18 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-09-11 17:07 - 2014-02-05 19:52 - 03573739 _____ () C:\Windows\system32\nvcoproc.bin 2014-09-11 17:06 - 2014-02-08 20:34 - 31432480 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 23683360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 18257576 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 17715784 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 15740232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 14669032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 12324640 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-09-11 17:06 - 2014-02-08 20:34 - 11636176 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 11589272 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 09728064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 09690424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 03142432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 03090184 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 02956576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 02782496 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 02713728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 02410784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433489.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433489.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00947296 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00892192 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00875296 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00863520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00844576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00832424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00483104 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00408352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00378656 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00353504 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00333600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00174296 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00148528 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00024544 _____ () C:\Windows\system32\nvinfo.pb 2014-09-11 17:06 - 2013-11-28 15:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-09-11 17:06 - 2013-11-28 15:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-09-11 17:06 - 2013-11-22 10:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-09-11 17:05 - 2014-09-11 17:07 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-09-11 17:05 - 2014-09-11 17:05 - 00000000 ____D () C:\NVIDIA 2014-09-11 17:02 - 2014-09-11 17:02 - 00001294 _____ () C:\Users\ponder\Desktop\Computer Management.lnk 2014-09-11 16:59 - 2014-09-28 09:50 - 01138342 _____ () C:\Windows\WindowsUpdate.log 2014-09-11 16:59 - 2014-09-27 13:51 - 00000000 ____D () C:\Users\ponder\AppData\Local\VirtualStore 2014-09-11 16:59 - 2014-09-26 11:49 - 00000000 ____D () C:\Users\ponder 2014-09-11 16:59 - 2014-09-15 03:36 - 00001429 _____ () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-09-11 16:59 - 2014-09-11 16:59 - 00000020 ___SH () C:\Users\ponder\ntuser.ini 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Vorlagen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Startmenü 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Netzwerkumgebung 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Lokale Einstellungen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Eigene Dateien 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Druckumgebung 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Documents\Eigene Musik 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Documents\Eigene Bilder 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\AppData\Local\Verlauf 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\AppData\Local\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 ____D () C:\Recovery 2014-09-11 16:59 - 2009-07-14 06:59 - 00000000 ___RD () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-09-11 16:59 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-09-11 16:56 - 2014-09-11 16:56 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-09-09 17:27 - 2014-09-09 17:27 - 00157448 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetFlt.sys 2014-09-09 17:27 - 2014-09-09 17:27 - 00142528 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetAdp.sys 2014-09-09 17:26 - 2014-09-09 17:26 - 00205352 _____ (Oracle Corporation) C:\Windows\system32\VBoxNetFltNobj.dll ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-28 09:54 - 2009-07-14 06:50 - 00028144 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-09-28 09:54 - 2009-07-14 06:50 - 00028144 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-09-28 09:52 - 2011-04-12 10:14 - 00713958 _____ () C:\Windows\system32\perfh007.dat 2014-09-28 09:52 - 2011-04-12 10:14 - 00154074 _____ () C:\Windows\system32\perfc007.dat 2014-09-28 09:52 - 2009-07-14 07:12 - 01648656 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-09-28 09:47 - 2010-11-21 05:47 - 00025188 _____ () C:\Windows\PFRO.log 2014-09-28 09:47 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-09-28 09:47 - 2009-07-14 06:56 - 00027073 _____ () C:\Windows\setupact.log 2014-09-28 09:29 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\L2Schemas 2014-09-26 21:06 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-09-26 21:04 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini 2014-09-26 15:46 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-09-25 16:38 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-09-15 09:06 - 2010-11-21 05:27 - 00278152 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-09-15 08:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-09-13 07:58 - 2009-07-14 06:50 - 00320976 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-09-12 08:12 - 2011-04-12 10:24 - 00000000 ____D () C:\Program Files\Windows Journal 2014-09-12 08:12 - 2009-07-14 07:38 - 00000000 ____D () C:\Program Files\Windows Defender 2014-09-12 08:12 - 2009-07-14 07:38 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-09-12 08:12 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2014-09-12 08:12 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism 2014-09-12 08:12 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\System 2014-09-11 17:53 - 2009-07-14 07:43 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-09-11 17:53 - 2009-07-14 07:38 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2014-09-11 17:18 - 2009-07-14 07:38 - 00000000 ____D () C:\Windows\system32\restore 2014-09-11 17:07 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help 2014-09-11 16:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-09-11 16:56 - 2009-07-14 06:51 - 00002790 _____ () C:\Windows\DtcInstall.log 2014-09-11 16:56 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-09-11 16:56 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-09-11 16:54 - 2011-04-12 10:24 - 00000000 ____D () C:\Windows\CSC Some content of TEMP: ==================== C:\Users\ponder\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-09-26 14:57 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-09-2014 Ran by ponder at 2014-09-28 09:55:40 Running from C:\Users\ponder\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKCU\...\uTorrent) (Version: - BitTorrent Inc.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: - Igor Pavlov) Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: - Adobe Systems Incorporated) AI Suite II (HKLM-x32\...\{34D3688E-A737-44C5-9E2A-FF73618728E1}) (Version: 2.04.01 - ASUSTeK Computer Inc.) AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (HKLM\...\{5DDB9EF7-1BC0-C9C1-9829-6B9CF68AC357}) (Version: 8.0.903.0 - Advanced Micro Devices, Inc.) APB Reloaded (HKLM-x32\...\Steam App 113400) (Version: - Reloaded Productions) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: - Asmedia Technology) CCleaner (HKLM\...\CCleaner) (Version: 4.17 - Piriform) Dia (remove only) (HKLM-x32\...\Dia) (Version: - ) Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment) foobar2000 v1.3.3 (HKLM-x32\...\foobar2000) (Version: 1.3.3 - Peter Pawlowski) Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) InfraRecorder (HKLM-x32\...\InfraRecorder) (Version: - Christian Kindahl) Java 8 Update 20 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418020F0}) (Version: 8.0.200 - Oracle Corporation) Java Auto Updater (x32 Version: - Oracle Corporation) Hidden Java SE Development Kit 8 Update 20 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180200}) (Version: - Oracle Corporation) LibreOffice (HKLM-x32\...\{14DB1822-00B5-4820-86B5-EF893CA46B53}) (Version: - The Document Foundation) Malwarebytes Anti-Malware Version (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: - Malwarebytes Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Mozilla Firefox 32.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 32.0.3 (x86 de)) (Version: 32.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 32.0.1 - Mozilla) MySQL Workbench 6.1 CE (HKLM-x32\...\{AD95295B-0279-43B6-A873-F12A1D1CD146}) (Version: 6.1.7 - Oracle Corporation) No More Room in Hell (HKLM-x32\...\Steam App 224260) (Version: - No More Room in Hell Team) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.9 - Notepad++ Team) NVIDIA 3D Vision Controller-Treiber 334.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 334.89 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 334.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 334.89 - NVIDIA Corporation) NVIDIA Grafiktreiber 334.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 334.89 - NVIDIA Corporation) NVIDIA HD-Audiotreiber (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.147.1067 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 334.89 (Version: 334.89 - NVIDIA Corporation) Hidden Oracle VM VirtualBox 4.3.16 (HKLM\...\{D7FAEA32-7CE3-4D9F-9139-F7B87BCC50AF}) (Version: 4.3.16 - Oracle Corporation) Path of Exile (HKLM-x32\...\Steam App 238960) (Version: - Grinding Gear Games) Pidgin (HKLM-x32\...\Pidgin) (Version: 2.10.9 - ) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.67.1226.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.) Skype™ 6.18 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.18.106 - Skype Technologies S.A.) Source SDK Base 2007 (HKLM-x32\...\Steam App 218) (Version: - Valve) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) SumatraPDF (HKLM-x32\...\SumatraPDF) (Version: 2.5.2 - Krzysztof Kowalczyk) Surface Tension Uncut 2.0 Final (HKLM-x32\...\Surface Tension Uncut) (Version: 2.0 Final - Text FAMGUY1) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 19-09-2014 07:06:30 Windows Update 22-09-2014 18:44:18 DirectX wurde installiert 23-09-2014 06:15:52 Installed Oracle VM VirtualBox 4.3.16 23-09-2014 06:35:51 Installed MySQL Workbench 6.1 CE 23-09-2014 07:05:05 Windows Update 25-09-2014 04:47:07 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0C8B731E-A7DB-41B6-A2CF-4E73382423CE} - System32\Tasks\{9EAC5C88-968C-4566-9C5A-5D502FD642A1} => D:\Games\Prince\PRINCE.EXE Task: {0F62C242-E405-49B6-B4BA-C1459E9456FB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-08-21] (Piriform Ltd) Task: {3235D5BD-90EB-4DE1-BF2D-C02361DEEE01} - System32\Tasks\ASUS\RunDAOD => C:\Windows\DAODx.exe [2009-03-30] () Task: {53392DE2-7F19-4047-99E1-CC724528F5D4} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr.exe [2011-09-09] () Task: {71861605-F9C6-4CC0-A61A-BCAA009341A4} - System32\Tasks\{C81039C1-A325-4C2B-A09C-05498C92A47E} => D:\Games\Prince\PRINCE.EXE Task: {97D18145-6B6D-4A1B-AA4E-F15BCF5C3F73} - System32\Tasks\ASUS\Easy Update => C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe [2013-01-14] () Task: {CAE26E7A-C232-4795-AB61-B39A65E2F4F9} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2012-03-13] (ASUSTeK Computer Inc.) Task: {F5B74B42-D1B6-4E91-8A35-035BF05DB185} - System32\Tasks\ASUS\ASUS Network iControl Help Execute => C:\Program Files (x86)\ASUS\AI Suite II\Network iControl\NetSvcHelp\NetSvcHelpEntry.exe [2013-02-07] (ASUSTeK Computer Inc.) ==================== Loaded Modules (whitelisted) ============= 2014-09-11 17:07 - 2014-02-08 19:42 - 00117024 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2009-03-30 08:32 - 2009-03-30 08:32 - 00032768 ____R () C:\Windows\DAODx.exe 2014-09-15 16:56 - 2014-09-15 16:56 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-09-11 17:44 - 2013-01-14 16:37 - 01406776 _____ () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe 2013-09-17 12:58 - 2013-09-17 12:58 - 00920736 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe 2014-09-11 17:44 - 2013-01-14 17:16 - 05771136 _____ () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzULIB.dll 2014-09-11 17:44 - 2010-06-21 15:21 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\ImageHelper.dll 2014-09-11 17:46 - 2013-08-19 11:23 - 00043520 ____N () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\HookKey32.dll 2014-09-11 17:45 - 2013-08-19 17:21 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\pngio.dll 2014-09-11 17:42 - 2014-09-28 09:47 - 00033792 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll 2014-09-11 17:42 - 2010-06-29 04:58 - 00104448 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll 2014-09-11 17:44 - 2011-07-12 19:14 - 00147456 _____ () C:\Program Files (x86)\ASUS\AI Suite II\AssistFunc.dll 2014-09-11 17:44 - 2010-10-05 08:22 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\pngio.dll 2014-09-11 17:44 - 2012-10-08 17:07 - 00972288 _____ () C:\Program Files (x86)\ASUS\AI Suite II\BarGadget\BarGadget.dll 2014-09-11 17:44 - 2013-01-15 15:30 - 01040896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EasyUpdt.dll 2014-09-11 17:45 - 2013-06-24 15:59 - 01173504 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Network iControl\Network iControl.dll 2014-09-11 17:45 - 2012-07-20 09:39 - 01047040 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Probe_II\ProbeII.dll 2014-09-11 17:44 - 2013-04-15 14:19 - 00883712 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\Sensor.dll 2014-09-11 17:44 - 2012-05-28 21:27 - 01622528 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor Graph\SensorGraph.dll 2014-09-11 17:44 - 2011-09-19 20:18 - 01243136 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Settings\Settings.dll 2014-09-11 17:44 - 2011-07-21 09:06 - 00846848 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Splitter\Splitter.dll 2014-09-11 17:44 - 2012-08-29 18:09 - 00875520 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TabGadget\TabGadget.dll 2014-09-11 17:42 - 2010-08-23 04:17 - 00662016 ____R () C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMLib.dll 2014-09-11 17:44 - 2010-10-05 08:22 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\ImageHelper.dll 2014-09-11 17:46 - 2012-01-19 09:39 - 00028672 _____ () C:\Program Files (x86)\ASUS\AI Suite II\USB BIOS Flashback\PEInfo.dll 2014-09-11 17:46 - 2010-09-23 11:51 - 00114688 _____ () C:\Program Files (x86)\ASUS\AI Suite II\USB BIOS Flashback\AsIdxParser.dll 2014-09-11 17:46 - 2010-02-25 14:01 - 00139264 _____ () C:\Program Files (x86)\ASUS\AI Suite II\USB BIOS Flashback\Aszip.dll 2014-09-11 17:44 - 2009-08-12 20:15 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\pngio.dll 2014-09-25 09:36 - 2014-09-25 09:36 - 03715184 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-2905865783-2833438306-3931818635-500 - Disabled - Status: Degraded) Gast (S-1-5-21-2905865783-2833438306-3931818635-501 - Enabled - Status: OK) ponder (S-1-5-21-2905865783-2833438306-3931818635-1000 - Enabled - Status: OK) => C:\Users\ponder ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== System errors: ============= Microsoft Office Sessions: ========================= ==================== Memory info =========================== Processor: AMD FX(tm)-6300 Six-Core Processor Percentage of memory in use: 23% Total physical RAM: 8092.36 MB Available physical RAM: 6187.69 MB Total Pagefile: 16182.91 MB Available Pagefile: 14179.98 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: (WIN7) (Fixed) (Total:97.66 GB) (Free:45.13 GB) NTFS Drive d: () (Fixed) (Total:585.94 GB) (Free:400.46 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ==================== End Of Log ============================ |
![]() | #12 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert?ESET Online Scanner
Downloade Dir bitte ![]()
und ein frisches FRST log bitte. Noch Probleme? ![]()
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #13 |
![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? ESET: Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe= # OnlineScanner.ocx= # api_version=3.0.2 # EOSSerial=3501a3c58243174e973a98baf2dbbd71 # engine=20340 # end=finished # remove_checked=false # archives_checked=false # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2014-09-28 09:38:33 # local_time=2014-09-28 11:38:33 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 35697 163570163 0 0 # scanned=243645 # found=1 # cleaned=0 # scan_time=1586 sh=E781FA9D24E9CD76092DD0AE897906CB69790024 ft=1 fh=b0b5e08c4e592cd4 vn="NSIS/StartPage.CC Trojaner" ac=I fn="D:\Installer\Programme\vlc-2.1.5-win64.exe" Code:
ATTFilter Results of screen317's Security Check version 0.99.87 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Java version out of Date! Adobe Flash Player 10 Flash Player out of Date! Adobe Flash Player Mozilla Firefox (32.0.3) ````````Process Check: objlist.exe by Laurent```````` ESET ESET Online Scanner OnlineScannerApp.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-09-2014 Ran by ponder at 2014-09-29 09:46:31 Running from C:\Users\ponder\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKCU\...\uTorrent) (Version: - BitTorrent Inc.) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: - Igor Pavlov) Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: - Adobe Systems Incorporated) AI Suite II (HKLM-x32\...\{34D3688E-A737-44C5-9E2A-FF73618728E1}) (Version: 2.04.01 - ASUSTeK Computer Inc.) AMD APP SDK Runtime (Version: 10.0.1084.4 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (HKLM\...\{5DDB9EF7-1BC0-C9C1-9829-6B9CF68AC357}) (Version: 8.0.903.0 - Advanced Micro Devices, Inc.) APB Reloaded (HKLM-x32\...\Steam App 113400) (Version: - Reloaded Productions) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: - Asmedia Technology) CCleaner (HKLM\...\CCleaner) (Version: 4.17 - Piriform) Dia (remove only) (HKLM-x32\...\Dia) (Version: - ) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) Fallout: New Vegas (HKLM-x32\...\Steam App 22380) (Version: - Obsidian Entertainment) foobar2000 v1.3.3 (HKLM-x32\...\foobar2000) (Version: 1.3.3 - Peter Pawlowski) Guild Wars 2 (HKLM-x32\...\Guild Wars 2) (Version: - NCsoft Corporation, Ltd.) InfraRecorder (HKLM-x32\...\InfraRecorder) (Version: - Christian Kindahl) Java 8 Update 20 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418020F0}) (Version: 8.0.200 - Oracle Corporation) Java Auto Updater (x32 Version: - Oracle Corporation) Hidden Java SE Development Kit 8 Update 20 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0180200}) (Version: - Oracle Corporation) LibreOffice (HKLM-x32\...\{14DB1822-00B5-4820-86B5-EF893CA46B53}) (Version: - The Document Foundation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (x32 Version: 11.0.61030 - Microsoft Corporation) Hidden Mozilla Firefox 32.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 32.0.3 (x86 de)) (Version: 32.0.3 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 32.0.1 - Mozilla) MySQL Workbench 6.1 CE (HKLM-x32\...\{AD95295B-0279-43B6-A873-F12A1D1CD146}) (Version: 6.1.7 - Oracle Corporation) No More Room in Hell (HKLM-x32\...\Steam App 224260) (Version: - No More Room in Hell Team) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.6.9 - Notepad++ Team) NVIDIA 3D Vision Controller-Treiber 334.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 334.89 - NVIDIA Corporation) NVIDIA 3D Vision Treiber 334.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 334.89 - NVIDIA Corporation) NVIDIA Grafiktreiber 334.89 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 334.89 - NVIDIA Corporation) NVIDIA HD-Audiotreiber (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.147.1067 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.13.1220 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) NVIDIA Stereoscopic 3D Driver (x32 Version: - NVIDIA Corporation) Hidden NVIDIA Systemsteuerung 334.89 (Version: 334.89 - NVIDIA Corporation) Hidden Oracle VM VirtualBox 4.3.16 (HKLM\...\{D7FAEA32-7CE3-4D9F-9139-F7B87BCC50AF}) (Version: 4.3.16 - Oracle Corporation) Path of Exile (HKLM-x32\...\Steam App 238960) (Version: - Grinding Gear Games) Pidgin (HKLM-x32\...\Pidgin) (Version: 2.10.9 - ) PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.67.1226.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.) Skype™ 6.18 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.18.106 - Skype Technologies S.A.) Source SDK Base 2007 (HKLM-x32\...\Steam App 218) (Version: - Valve) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) SumatraPDF (HKLM-x32\...\SumatraPDF) (Version: 2.5.2 - Krzysztof Kowalczyk) Surface Tension Uncut 2.0 Final (HKLM-x32\...\Surface Tension Uncut) (Version: 2.0 Final - Text FAMGUY1) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 19-09-2014 07:06:30 Windows Update 22-09-2014 18:44:18 DirectX wurde installiert 23-09-2014 06:15:52 Installed Oracle VM VirtualBox 4.3.16 23-09-2014 06:35:51 Installed MySQL Workbench 6.1 CE 23-09-2014 07:05:05 Windows Update 25-09-2014 04:47:07 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0C8B731E-A7DB-41B6-A2CF-4E73382423CE} - System32\Tasks\{9EAC5C88-968C-4566-9C5A-5D502FD642A1} => D:\Games\Prince\PRINCE.EXE Task: {0F62C242-E405-49B6-B4BA-C1459E9456FB} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-08-21] (Piriform Ltd) Task: {3235D5BD-90EB-4DE1-BF2D-C02361DEEE01} - System32\Tasks\ASUS\RunDAOD => C:\Windows\DAODx.exe [2009-03-30] () Task: {53392DE2-7F19-4047-99E1-CC724528F5D4} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr.exe [2011-09-09] () Task: {71861605-F9C6-4CC0-A61A-BCAA009341A4} - System32\Tasks\{C81039C1-A325-4C2B-A09C-05498C92A47E} => D:\Games\Prince\PRINCE.EXE Task: {97D18145-6B6D-4A1B-AA4E-F15BCF5C3F73} - System32\Tasks\ASUS\Easy Update => C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe [2013-01-14] () Task: {CAE26E7A-C232-4795-AB61-B39A65E2F4F9} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2012-03-13] (ASUSTeK Computer Inc.) Task: {F5B74B42-D1B6-4E91-8A35-035BF05DB185} - System32\Tasks\ASUS\ASUS Network iControl Help Execute => C:\Program Files (x86)\ASUS\AI Suite II\Network iControl\NetSvcHelp\NetSvcHelpEntry.exe [2013-02-07] (ASUSTeK Computer Inc.) ==================== Loaded Modules (whitelisted) ============= 2014-09-11 17:07 - 2014-02-08 19:42 - 00117024 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2009-03-30 08:32 - 2009-03-30 08:32 - 00032768 ____R () C:\Windows\DAODx.exe 2014-09-15 16:56 - 2014-09-15 16:56 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-09-11 17:44 - 2013-01-14 16:37 - 01406776 _____ () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe 2013-09-17 12:58 - 2013-09-17 12:58 - 00920736 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe 2014-09-29 09:05 - 2014-09-29 09:05 - 00854417 _____ () C:\Users\ponder\Desktop\SecurityCheck.exe 2014-09-11 17:44 - 2013-01-14 17:16 - 05771136 _____ () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzULIB.dll 2014-09-11 17:44 - 2010-06-21 15:21 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\ImageHelper.dll 2014-09-11 17:42 - 2014-09-28 10:18 - 00033792 _____ () C:\Program Files (x86)\ASUS\AXSP\1.00.19\PEbiosinterface32.dll 2014-09-11 17:42 - 2010-06-29 04:58 - 00104448 ____R () C:\Program Files (x86)\ASUS\AXSP\1.00.19\ATKEX.dll 2014-09-11 17:46 - 2013-08-19 11:23 - 00043520 ____N () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\HookKey32.dll 2014-09-11 17:45 - 2013-08-19 17:21 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\pngio.dll 2014-09-11 17:44 - 2011-07-12 19:14 - 00147456 _____ () C:\Program Files (x86)\ASUS\AI Suite II\AssistFunc.dll 2014-09-11 17:44 - 2010-10-05 08:22 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\pngio.dll 2014-09-11 17:44 - 2012-10-08 17:07 - 00972288 _____ () C:\Program Files (x86)\ASUS\AI Suite II\BarGadget\BarGadget.dll 2014-09-11 17:44 - 2013-01-15 15:30 - 01040896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EasyUpdt.dll 2014-09-11 17:45 - 2013-06-24 15:59 - 01173504 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Network iControl\Network iControl.dll 2014-09-11 17:45 - 2012-07-20 09:39 - 01047040 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Probe_II\ProbeII.dll 2014-09-11 17:44 - 2013-04-15 14:19 - 00883712 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\Sensor.dll 2014-09-11 17:44 - 2012-05-28 21:27 - 01622528 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor Graph\SensorGraph.dll 2014-09-11 17:44 - 2011-09-19 20:18 - 01243136 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Settings\Settings.dll 2014-09-11 17:44 - 2011-07-21 09:06 - 00846848 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Splitter\Splitter.dll 2014-09-11 17:44 - 2012-08-29 18:09 - 00875520 _____ () C:\Program Files (x86)\ASUS\AI Suite II\TabGadget\TabGadget.dll 2014-09-11 17:42 - 2010-08-23 04:17 - 00662016 ____R () C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMLib.dll 2014-09-11 17:44 - 2010-10-05 08:22 - 00208896 _____ () C:\Program Files (x86)\ASUS\AI Suite II\ImageHelper.dll 2014-09-11 17:46 - 2012-01-19 09:39 - 00028672 _____ () C:\Program Files (x86)\ASUS\AI Suite II\USB BIOS Flashback\PEInfo.dll 2014-09-11 17:46 - 2010-09-23 11:51 - 00114688 _____ () C:\Program Files (x86)\ASUS\AI Suite II\USB BIOS Flashback\AsIdxParser.dll 2014-09-11 17:46 - 2010-02-25 14:01 - 00139264 _____ () C:\Program Files (x86)\ASUS\AI Suite II\USB BIOS Flashback\Aszip.dll 2014-09-11 17:44 - 2009-08-12 20:15 - 00253952 _____ () C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\pngio.dll 2014-09-25 09:36 - 2014-09-25 09:36 - 03715184 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-09-11 18:25 - 2014-08-21 20:15 - 01171456 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2014-09-11 18:25 - 2014-08-21 20:15 - 00442368 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2014-09-11 18:25 - 2014-08-21 20:15 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2014-09-11 18:25 - 2014-09-03 21:28 - 00774656 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2014-09-11 18:25 - 2014-09-23 06:32 - 02226880 _____ () C:\Program Files (x86)\Steam\video.dll 2014-09-11 18:25 - 2014-08-21 20:15 - 00403968 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2014-09-11 18:25 - 2014-08-21 20:15 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2014-09-11 18:25 - 2014-09-23 06:32 - 00679616 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2014-09-11 18:25 - 2014-09-05 01:29 - 34589376 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2014-09-11 18:25 - 2014-09-05 01:29 - 00837824 _____ () C:\Program Files (x86)\Steam\bin\ffmpegsumo.dll 2014-09-11 18:58 - 2014-09-11 18:58 - 16825520 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll 2011-07-18 23:07 - 2011-07-18 23:07 - 00014336 _____ () C:\Program Files (x86)\Notepad++\plugins\NppExport.dll 2014-01-07 01:42 - 2014-01-07 01:42 - 01611264 _____ () C:\Program Files (x86)\Notepad++\plugins\NppFTP.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-2905865783-2833438306-3931818635-500 - Disabled - Status: Degraded) Gast (S-1-5-21-2905865783-2833438306-3931818635-501 - Enabled - Status: OK) ponder (S-1-5-21-2905865783-2833438306-3931818635-1000 - Enabled - Status: OK) => C:\Users\ponder ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/29/2014 09:09:59 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/29/2014 08:50:37 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/29/2014 08:50:36 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/29/2014 08:50:36 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/29/2014 08:50:13 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/28/2014 11:39:01 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/28/2014 11:09:35 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/28/2014 11:09:31 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/28/2014 01:37:40 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: vlc.exe, Version:, Zeitstempel: 0x00000000 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521eaf24 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000018e5d ID des fehlerhaften Prozesses: 0x88 Startzeit der fehlerhaften Anwendung: 0xvlc.exe0 Pfad der fehlerhaften Anwendung: vlc.exe1 Pfad des fehlerhaften Moduls: vlc.exe2 Berichtskennung: vlc.exe3 Error: (09/28/2014 10:20:30 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (09/28/2014 11:59:38 PM) (Source: Microsoft-Windows-HAL) (EventID: 12) (User: ) Description: Der Speicher wurde beim letzten Leistungsübergang des Systems von der Plattformfirmware beschädigt. Überprüfen Sie, ob für Ihr System aktualisierte Firmware verfügbar ist. Microsoft Office Sessions: ========================= Error: (09/29/2014 09:09:59 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\ponder\Desktop\esetsmartinstaller_deu.exe Error: (09/29/2014 08:50:37 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\Users\ponder\Desktop\esetsmartinstaller_deu.exe Error: (09/29/2014 08:50:36 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\Users\ponder\Desktop\esetsmartinstaller_deu.exe Error: (09/29/2014 08:50:36 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\Users\ponder\Desktop\esetsmartinstaller_deu.exe Error: (09/29/2014 08:50:13 AM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe Error: (09/28/2014 11:39:01 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe Error: (09/28/2014 11:09:35 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\ponder\Desktop\esetsmartinstaller_deu.exe Error: (09/28/2014 11:09:31 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\ponder\Desktop\esetsmartinstaller_deu.exe Error: (09/28/2014 01:37:40 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: vlc.exe2.1.5.000000000ntdll.dll6.1.7601.18247521eaf24c00000050000000000018e5d8801cfdb10965eab73C:\Program Files\VideoLAN\VLC\vlc.exeC:\Windows\SYSTEM32\ntdll.dlld9c1b79d-4703-11e4-b349-7824af4510b3 Error: (09/28/2014 10:20:30 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Processor: AMD FX(tm)-6300 Six-Core Processor Percentage of memory in use: 15% Total physical RAM: 8092.36 MB Available physical RAM: 6864.98 MB Total Pagefile: 16182.91 MB Available Pagefile: 13731.28 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: (WIN7) (Fixed) (Total:97.66 GB) (Free:44.17 GB) NTFS Drive d: () (Fixed) (Total:585.94 GB) (Free:411.67 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ==================== End Of Log ============================ Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-09-2014 Ran by ponder (administrator) on PONDER-PC on 29-09-2014 09:45:48 Running from C:\Users\ponder\Desktop Loaded Profile: ponder (Available profiles: ponder) Platform: Windows 7 Professional N Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe () C:\Windows\DAODx.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EzUpdt.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\USB 3.0 Boost\U3BoostSvr64.exe () C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\EPU\EPUHelp.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_152.exe () C:\Users\ponder\Desktop\SecurityCheck.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe (Don HO don.h@free.fr) C:\Program Files (x86)\Notepad++\notepad++.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7202520 2013-08-19] (Realtek Semiconductor) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-07-30] (Oracle Corporation) HKU\S-1-5-21-2905865783-2833438306-3931818635-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21650016 2014-07-24] (Skype Technologies S.A.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xB01F36CBD3CDCF01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_20\bin\ssv.dll (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_20\bin\jp2ssv.dll (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] Tcpip\..\Interfaces\{A9CB66E2-0C47-4312-BDF5-8495ED16D516}: [NameServer], FireFox: ======== FF ProfilePath: C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll () FF Plugin: @java.com/DTPlugin,version=11.20.2 -> C:\Program Files\Java\jre1.8.0_20\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.20.2 -> C:\Program Files\Java\jre1.8.0_20\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: DownloadHelper - C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-12] FF Extension: Adblock Plus - C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-09-11] FF Extension: Tab Mix Plus - C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\Extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2014-09-12] FF Extension: DownThemAll! - C:\Users\ponder\AppData\Roaming\Mozilla\Firefox\Profiles\ulshkgzn.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2014-09-12] Chrome: ======= ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2013-09-17] () R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2013-09-17] (ASUSTeK Computer Inc.) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-02-17] (ASUSTeK Computer Inc.) R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.02.00\AsusFanControlService.exe [1632256 2012-11-09] (ASUSTeK Computer Inc.) [File not signed] R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-09-15] () ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] () R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2013-01-15] () R3 ASUSFILTER; C:\Windows\SysWow64\drivers\ASUSFILTER.sys [46152 2011-09-20] (MCCI Corporation) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-29 09:05 - 2014-09-29 09:05 - 00854417 _____ () C:\Users\ponder\Desktop\SecurityCheck.exe 2014-09-28 23:09 - 2014-09-28 23:09 - 00000000 ____D () C:\Program Files (x86)\ESET 2014-09-28 23:09 - 2013-02-08 17:15 - 02347384 _____ (ESET) C:\Users\ponder\Desktop\esetsmartinstaller_deu.exe 2014-09-28 13:38 - 2014-09-28 13:38 - 09500258 _____ () C:\Users\ponder\Downloads\wow_launcher_434.zip 2014-09-28 13:37 - 2014-09-28 13:37 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\vlc 2014-09-28 09:55 - 2014-09-28 09:55 - 00014522 _____ () C:\Users\ponder\Desktop\Addition.txt 2014-09-28 09:52 - 2014-09-28 09:52 - 00000761 _____ () C:\Users\ponder\Desktop\JRT.txt 2014-09-28 09:50 - 2014-09-28 09:50 - 00000000 ____D () C:\Windows\ERUNT 2014-09-28 09:50 - 2014-09-27 09:27 - 01699276 _____ (Thisisu) C:\Users\ponder\Desktop\JRT.exe 2014-09-28 09:45 - 2014-09-28 09:46 - 00000000 ____D () C:\AdwCleaner 2014-09-28 09:45 - 2014-09-28 09:45 - 01373475 _____ () C:\Users\ponder\Desktop\AdwCleaner_3.310.exe 2014-09-28 09:28 - 2014-09-28 09:43 - 00001677 _____ () C:\Users\ponder\Desktop\mwb.txt 2014-09-28 09:20 - 2014-09-28 09:20 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-09-28 09:19 - 2014-09-28 09:19 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\ponder\Desktop\mbam-setup- 2014-09-27 14:31 - 2014-09-28 10:19 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Skype 2014-09-27 14:31 - 2014-09-27 14:31 - 00002517 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-09-27 14:31 - 2014-09-27 14:31 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-09-27 14:31 - 2014-09-27 14:31 - 00000000 ____D () C:\Users\ponder\AppData\Local\Skype 2014-09-27 14:31 - 2014-09-27 14:31 - 00000000 ____D () C:\ProgramData\Skype 2014-09-27 14:31 - 2014-09-27 14:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-09-27 14:30 - 2014-09-27 14:30 - 00000857 _____ () C:\Users\ponder\Desktop\µTorrent.lnk 2014-09-27 14:30 - 2014-09-27 14:30 - 00000837 _____ () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2014-09-27 14:30 - 2014-09-27 14:30 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\RHEng 2014-09-27 14:29 - 2014-09-28 13:39 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\uTorrent 2014-09-27 14:29 - 2014-09-27 14:29 - 01913168 _____ (BitTorrent Inc.) C:\Users\ponder\Downloads\uTorrent_3.4.2b34309.exe 2014-09-27 14:26 - 2014-09-27 14:26 - 00000000 ____D () C:\Users\ponder\AppData\Local\Blizzard Entertainment 2014-09-27 13:51 - 2014-09-27 13:51 - 00001926 _____ () C:\Users\Public\Desktop\DOSBox 0.74.lnk 2014-09-27 13:51 - 2014-09-27 13:51 - 00000000 ____D () C:\Users\ponder\AppData\Local\DOSBox 2014-09-27 13:51 - 2014-09-27 13:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74 2014-09-27 13:51 - 2014-09-27 13:51 - 00000000 ____D () C:\Program Files (x86)\DOSBox-0.74 2014-09-27 13:50 - 2014-09-27 13:50 - 01448809 _____ (DOSBox Team) C:\Users\ponder\Downloads\DOSBox-0.74-install.exe 2014-09-27 13:50 - 2014-09-27 13:50 - 00002922 _____ () C:\Windows\System32\Tasks\{C81039C1-A325-4C2B-A09C-05498C92A47E} 2014-09-27 13:50 - 2014-09-27 13:50 - 00002922 _____ () C:\Windows\System32\Tasks\{9EAC5C88-968C-4566-9C5A-5D502FD642A1} 2014-09-27 13:48 - 2014-09-27 13:48 - 00346719 _____ () C:\Users\ponder\Downloads\prince-of-persia.zip 2014-09-26 23:19 - 2014-09-26 23:19 - 00000222 _____ () C:\Users\ponder\Desktop\No More Room in Hell.url 2014-09-26 21:34 - 2014-09-28 22:58 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\TS3Client 2014-09-26 21:34 - 2014-09-26 21:34 - 00000971 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2014-09-26 21:34 - 2014-09-26 21:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2014-09-26 21:34 - 2014-09-26 21:34 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client 2014-09-26 21:25 - 2014-09-26 21:27 - 30014480 _____ (TeamSpeak Systems GmbH) C:\Users\ponder\Downloads\TeamSpeak3-Client-win64-3.0.16.exe 2014-09-26 21:06 - 2014-09-26 21:06 - 00020036 _____ () C:\ComboFix.txt 2014-09-26 20:59 - 2014-09-26 21:06 - 00000000 ____D () C:\Qoobox 2014-09-26 20:59 - 2014-09-26 21:05 - 00000000 ____D () C:\Windows\erdnt 2014-09-26 20:59 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe 2014-09-26 20:59 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe 2014-09-26 20:59 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-09-26 20:59 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-09-26 20:59 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-09-26 20:59 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe 2014-09-26 20:59 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe 2014-09-26 20:59 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe 2014-09-26 20:57 - 2014-09-25 17:14 - 05580995 ____R (Swearware) C:\Users\ponder\Desktop\ComboFix.exe 2014-09-26 18:57 - 2014-09-26 18:57 - 00005389 _____ () C:\Users\ponder\Downloads\demo-kit.rar 2014-09-26 18:16 - 2014-07-10 12:18 - 04181856 _____ (Kaspersky Lab ZAO) C:\Users\ponder\Desktop\tdsskiller.exe 2014-09-26 12:05 - 2014-09-26 12:05 - 00001744 _____ () C:\Users\ponder\Desktop\gmer_19357.log 2014-09-26 11:48 - 2014-09-26 11:49 - 00000474 _____ () C:\Users\ponder\Desktop\defogger_disable.log 2014-09-26 11:48 - 2014-09-26 11:49 - 00000000 _____ () C:\Users\ponder\defogger_reenable 2014-09-26 11:48 - 2014-09-26 11:48 - 00050477 _____ () C:\Users\ponder\Desktop\Defogger.exe 2014-09-26 11:47 - 2014-09-26 11:47 - 00380416 _____ () C:\Users\ponder\Desktop\Gmer-19357.exe 2014-09-26 11:32 - 2014-09-29 09:46 - 00008180 _____ () C:\Users\ponder\Desktop\FRST.txt 2014-09-26 11:32 - 2014-09-29 09:45 - 00000000 ____D () C:\FRST 2014-09-26 11:32 - 2014-09-26 01:16 - 02108928 _____ (Farbar) C:\Users\ponder\Desktop\FRST64.exe 2014-09-25 09:36 - 2014-09-25 09:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-09-24 14:06 - 2014-09-10 00:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-09-24 14:06 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-09-23 10:28 - 2014-09-23 10:29 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Notepad++ 2014-09-23 10:28 - 2014-09-23 10:28 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ 2014-09-23 10:28 - 2014-09-23 10:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2014-09-23 10:28 - 2014-09-23 10:28 - 00000000 ____D () C:\Program Files (x86)\Notepad++ 2014-09-23 10:27 - 2014-09-23 10:33 - 00011587 _____ () C:\Users\ponder\Desktop\soilbase.sql 2014-09-23 10:27 - 2014-09-23 10:27 - 07945210 _____ () C:\Users\ponder\Downloads\npp.6.6.9.Installer.exe 2014-09-23 10:17 - 2014-09-23 10:31 - 00027117 _____ () C:\Users\ponder\Desktop\soilbase_model.mwb 2014-09-23 10:17 - 2014-09-23 10:24 - 00023539 _____ () C:\Users\ponder\Desktop\soilbase_model.mwb.bak 2014-09-23 08:56 - 2014-09-23 09:02 - 00000600 _____ () C:\Users\ponder\AppData\Local\PUTTY.RND 2014-09-23 08:36 - 2014-09-23 08:36 - 00002209 _____ () C:\Users\ponder\Desktop\MySQL Workbench 6.1 CE.lnk 2014-09-23 08:36 - 2014-09-23 08:36 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\MySQL 2014-09-23 08:36 - 2014-09-23 08:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL 2014-09-23 08:36 - 2014-09-23 08:36 - 00000000 ____D () C:\Program Files (x86)\MySQL 2014-09-23 08:34 - 2014-09-23 08:34 - 00495616 _____ (Simon Tatham) C:\Users\ponder\Desktop\putty.exe 2014-09-23 08:16 - 2014-09-25 09:41 - 00000000 ____D () C:\Users\ponder\.VirtualBox 2014-09-23 08:16 - 2014-09-23 08:16 - 00001080 _____ () C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2014-09-23 08:16 - 2014-09-23 08:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox 2014-09-23 08:16 - 2014-09-23 08:16 - 00000000 ____D () C:\Program Files\Oracle 2014-09-23 08:16 - 2014-09-09 17:29 - 00910920 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys 2014-09-23 08:16 - 2014-09-09 17:27 - 00129168 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys 2014-09-22 20:45 - 2014-09-22 20:45 - 00000000 ____D () C:\Users\ponder\AppData\Local\FalloutNV 2014-09-22 14:59 - 2014-09-22 15:07 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\InfraRecorder 2014-09-22 14:59 - 2014-09-22 14:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\InfraRecorder 2014-09-22 14:59 - 2014-09-22 14:59 - 00000000 ____D () C:\Program Files (x86)\InfraRecorder 2014-09-22 13:17 - 2014-09-22 13:18 - 00000000 ____D () C:\Users\ponder\.dia 2014-09-22 13:17 - 2014-09-22 13:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dia 2014-09-22 13:17 - 2014-09-22 13:17 - 00000000 ____D () C:\Program Files (x86)\Dia 2014-09-22 13:07 - 2014-09-22 13:37 - 1382989824 _____ () C:\Users\ponder\Downloads\linuxmint-17-cinnamon-64bit-v2.iso 2014-09-21 03:23 - 2014-09-21 03:23 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Soldat 2014-09-21 00:28 - 2014-09-21 03:52 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2014-09-20 20:38 - 2014-09-20 20:38 - 00000730 _____ () C:\Users\ponder\Desktop\Counter-Strike.exe - Verknüpfung.lnk 2014-09-19 10:28 - 2014-09-19 10:28 - 00000000 ____D () C:\Users\ponder\Desktop\Third Attempt 2014-09-19 10:27 - 2014-09-19 10:27 - 00001431 _____ () C:\Users\ponder\Desktop\.minecraft - Verknüpfung.lnk 2014-09-18 22:58 - 2014-09-27 03:51 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\.purple 2014-09-18 22:53 - 2014-09-18 22:53 - 00000987 _____ () C:\Users\Public\Desktop\Pidgin.lnk 2014-09-18 22:53 - 2014-09-18 22:53 - 00000000 ____D () C:\Program Files (x86)\Pidgin 2014-09-15 23:09 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-15 23:05 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-09-15 23:05 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-09-15 17:43 - 2014-09-15 17:43 - 00000000 ____D () C:\Users\ponder\AppData\Local\Skyrim 2014-09-15 17:01 - 2014-09-15 17:18 - 00290776 _____ () C:\Windows\SysWOW64\PnkBstrB.xtr 2014-09-15 17:01 - 2014-09-15 17:01 - 00000000 ____D () C:\Users\ponder\AppData\Local\PunkBuster 2014-09-15 16:57 - 2014-09-15 16:57 - 00000000 ____D () C:\ProgramData\Package Cache 2014-09-15 16:56 - 2014-09-15 17:18 - 00290776 _____ () C:\Windows\SysWOW64\PnkBstrB.exe 2014-09-15 16:56 - 2014-09-15 17:01 - 00281288 _____ () C:\Windows\SysWOW64\PnkBstrB.ex0 2014-09-15 16:56 - 2014-09-15 16:56 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2014-09-15 16:56 - 2014-09-15 16:56 - 00000000 __SHD () C:\Users\ponder\AppData\Local\EmieUserList 2014-09-15 16:56 - 2014-09-15 16:56 - 00000000 __SHD () C:\Users\ponder\AppData\Local\EmieSiteList 2014-09-15 08:35 - 2014-09-22 20:45 - 00000000 ____D () C:\Users\ponder\Documents\My Games 2014-09-15 08:35 - 2014-09-22 20:44 - 00062700 _____ () C:\Windows\DirectX.log 2014-09-15 08:35 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2014-09-15 08:35 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2014-09-15 08:35 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-09-15 08:35 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-09-15 08:35 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-09-15 08:35 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-09-15 08:35 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2014-09-15 08:35 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-09-15 08:35 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-09-15 08:35 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2014-09-15 08:35 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2014-09-15 08:35 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-09-15 08:35 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-09-15 08:35 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2014-09-15 08:35 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-09-15 08:35 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2014-09-15 08:35 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2014-09-15 08:35 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-09-15 08:35 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-09-15 08:35 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2014-09-15 08:35 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2014-09-15 08:35 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-09-15 08:35 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-09-15 08:35 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2014-09-15 08:35 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2014-09-15 08:35 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-09-15 08:35 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2014-09-15 08:35 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-09-15 08:35 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2014-09-15 08:35 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2014-09-15 08:35 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-09-15 08:35 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-09-15 08:35 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2014-09-15 08:35 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-09-15 08:35 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2014-09-15 08:35 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-09-15 08:35 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2014-09-15 08:35 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-09-15 08:35 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2014-09-15 08:35 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-09-15 08:35 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2014-09-15 08:35 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-09-15 08:35 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2014-09-15 08:35 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-09-15 08:35 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2014-09-15 08:35 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-09-15 08:35 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2014-09-15 08:35 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-09-15 08:35 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2014-09-15 08:35 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-09-15 08:35 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-09-15 08:35 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2014-09-15 08:35 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-09-15 08:35 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2014-09-15 08:35 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2014-09-15 08:35 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2014-09-15 08:35 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2014-09-15 08:35 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2014-09-15 08:35 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2014-09-15 08:35 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2014-09-15 08:35 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2014-09-15 08:35 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2014-09-15 08:35 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2014-09-15 08:35 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2014-09-15 08:35 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2014-09-15 08:35 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2014-09-15 08:35 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2014-09-15 08:35 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2014-09-15 08:35 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2014-09-15 08:35 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2014-09-15 08:35 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2014-09-15 08:35 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2014-09-15 08:35 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2014-09-15 08:35 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2014-09-15 08:35 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2014-09-15 08:35 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2014-09-15 08:35 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2014-09-15 08:35 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2014-09-15 08:35 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2014-09-15 08:35 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2014-09-15 08:35 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2014-09-15 08:35 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2014-09-15 08:35 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2014-09-15 08:35 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2014-09-15 08:35 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2014-09-15 08:35 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2014-09-15 08:35 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2014-09-15 08:35 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2014-09-15 08:35 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2014-09-15 08:35 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2014-09-15 08:35 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2014-09-15 08:35 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2014-09-15 08:35 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2014-09-15 08:35 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2014-09-15 08:35 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2014-09-15 08:35 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2014-09-15 08:35 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2014-09-15 08:35 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2014-09-15 08:35 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2014-09-15 08:35 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2014-09-15 08:35 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2014-09-15 08:35 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2014-09-15 08:35 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2014-09-15 08:35 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2014-09-15 08:35 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2014-09-15 08:35 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2014-09-15 08:35 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2014-09-15 04:59 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-09-15 04:59 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-09-15 04:59 - 2013-11-26 10:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2014-09-15 04:59 - 2013-11-23 20:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2014-09-15 04:59 - 2013-11-23 19:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2014-09-15 04:59 - 2013-11-23 00:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2014-09-15 04:58 - 2014-02-04 04:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-09-15 04:58 - 2014-02-04 04:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-09-15 03:30 - 2014-09-26 22:48 - 00002208 _____ () C:\Windows\MB.idx 2014-09-15 03:15 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2014-09-15 03:12 - 2014-09-15 03:12 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-09-15 03:11 - 2014-09-15 03:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-09-15 03:11 - 2014-09-15 03:11 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-09-15 03:11 - 2014-09-15 03:11 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-09-15 03:11 - 2014-09-15 03:11 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-09-15 03:11 - 2014-09-15 03:11 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-09-15 03:11 - 2014-09-15 03:11 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-09-15 03:11 - 2014-09-15 03:11 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-09-15 03:11 - 2014-09-15 03:11 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-09-15 03:11 - 2014-09-15 03:11 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-09-15 03:11 - 2014-09-15 03:11 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-09-15 03:11 - 2014-09-15 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-09-15 03:11 - 2014-09-15 03:11 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-09-15 03:10 - 2014-09-15 03:10 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2014-09-15 03:09 - 2014-09-15 03:15 - 00011756 _____ () C:\Windows\IE11_main.log 2014-09-14 22:55 - 2014-09-14 22:55 - 00000222 _____ () C:\Users\ponder\Desktop\APB Reloaded.url 2014-09-14 20:50 - 2014-09-14 20:50 - 00000222 _____ () C:\Users\ponder\Desktop\Path of Exile.url 2014-09-14 12:29 - 2014-09-14 12:29 - 00000219 _____ () C:\Users\ponder\Desktop\Team Fortress 2.url 2014-09-14 12:29 - 2014-09-14 12:29 - 00000219 _____ () C:\Users\ponder\Desktop\Dota 2.url 2014-09-14 12:29 - 2014-09-14 12:29 - 00000218 _____ () C:\Users\ponder\Desktop\Counter-Strike.url 2014-09-14 12:29 - 2014-09-14 12:29 - 00000206 _____ () C:\Users\ponder\Desktop\Black Mesa.url 2014-09-13 11:50 - 2014-09-13 11:50 - 00000593 _____ () C:\Users\Public\Desktop\Guild Wars 2.lnk 2014-09-13 11:50 - 2014-09-13 11:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Guild Wars 2 2014-09-13 11:47 - 2014-09-13 11:50 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Guild Wars 2 2014-09-13 08:01 - 2014-09-26 09:03 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-09-13 08:01 - 2014-09-13 08:01 - 00000000 ____D () C:\ProgramData\Mozilla 2014-09-12 14:29 - 2012-02-11 08:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2014-09-12 14:29 - 2012-02-11 08:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe 2014-09-12 14:29 - 2011-03-11 08:41 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys 2014-09-12 14:29 - 2011-03-11 08:41 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys 2014-09-12 14:29 - 2011-03-11 08:41 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys 2014-09-12 14:29 - 2011-03-11 08:41 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys 2014-09-12 14:29 - 2011-03-11 08:41 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys 2014-09-12 14:29 - 2011-03-11 08:33 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2014-09-12 14:29 - 2011-03-11 08:30 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe 2014-09-12 14:29 - 2011-03-11 07:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll 2014-09-12 14:29 - 2011-03-11 07:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe 2014-09-12 14:29 - 2011-03-11 06:37 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2014-09-12 14:29 - 2011-02-25 08:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2014-09-12 14:29 - 2011-02-25 07:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2014-09-12 12:26 - 2014-09-12 12:26 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\LibreOffice 2014-09-12 08:47 - 2014-09-12 08:52 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\SumatraPDF 2014-09-12 08:47 - 2014-09-12 08:47 - 00001937 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SumatraPDF.lnk 2014-09-12 08:47 - 2014-09-12 08:47 - 00000000 ____D () C:\Program Files (x86)\SumatraPDF 2014-09-12 08:46 - 2014-09-12 08:46 - 00007605 _____ () C:\Users\ponder\AppData\Local\Resmon.ResmonCfg 2014-09-12 08:45 - 2014-09-12 08:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.2 2014-09-12 08:45 - 2014-09-12 08:45 - 00000000 ____D () C:\Program Files (x86)\LibreOffice 4 2014-09-12 08:12 - 2014-09-12 08:12 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-09-12 00:25 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2014-09-11 20:15 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-09-11 20:15 - 2013-10-30 04:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-09-11 20:15 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-09-11 20:15 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-09-11 20:15 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2014-09-11 20:15 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-09-11 20:15 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2014-09-11 20:15 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2014-09-11 20:15 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-09-11 20:15 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-09-11 20:15 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-09-11 20:15 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-09-11 20:15 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-09-11 20:15 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-09-11 20:15 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2014-09-11 20:15 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2014-09-11 20:15 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2014-09-11 20:15 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2014-09-11 20:15 - 2011-10-26 07:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2014-09-11 20:15 - 2011-10-26 07:25 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-09-11 20:15 - 2011-10-26 06:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll 2014-09-11 20:15 - 2011-10-26 06:32 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-09-11 20:15 - 2011-06-16 07:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll 2014-09-11 20:15 - 2011-06-16 06:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll 2014-09-11 20:15 - 2011-06-15 12:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2014-09-11 20:15 - 2011-06-15 12:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll 2014-09-11 20:15 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2014-09-11 20:15 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll 2014-09-11 20:15 - 2011-06-15 10:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll 2014-09-11 20:15 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-09-11 20:15 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-09-11 20:15 - 2010-12-23 12:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll 2014-09-11 20:15 - 2010-12-23 12:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2014-09-11 20:15 - 2010-12-23 12:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax 2014-09-11 20:15 - 2010-12-23 07:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll 2014-09-11 20:15 - 2010-12-23 07:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2014-09-11 20:15 - 2010-12-23 07:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax 2014-09-11 20:14 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-09-11 20:14 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-09-11 20:14 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-09-11 20:14 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-09-11 20:14 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-09-11 20:14 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-09-11 20:14 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-09-11 20:14 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-09-11 20:14 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-09-11 20:14 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-09-11 20:14 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-09-11 20:14 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-09-11 20:14 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2014-09-11 20:14 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-09-11 20:14 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-09-11 20:14 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-09-11 20:14 - 2014-01-01 01:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-09-11 20:14 - 2014-01-01 01:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-09-11 20:14 - 2013-11-26 13:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-09-11 20:14 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-09-11 20:14 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-09-11 20:14 - 2013-10-05 22:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-09-11 20:14 - 2013-10-05 21:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-09-11 20:14 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-09-11 20:14 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-09-11 20:14 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2014-09-11 20:14 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2014-09-11 20:14 - 2012-01-04 12:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2014-09-11 20:14 - 2012-01-04 10:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll 2014-09-11 20:14 - 2011-12-30 08:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2014-09-11 20:14 - 2011-12-30 07:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2014-09-11 20:14 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2014-09-11 20:14 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2014-09-11 20:14 - 2011-07-09 04:46 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2014-09-11 20:14 - 2011-05-04 07:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2014-09-11 20:14 - 2011-05-04 07:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2014-09-11 20:14 - 2011-05-04 07:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2014-09-11 20:14 - 2011-05-04 07:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2014-09-11 20:14 - 2011-05-04 07:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2014-09-11 20:14 - 2011-05-04 06:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2014-09-11 20:14 - 2011-05-04 06:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll 2014-09-11 20:14 - 2011-05-04 06:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2014-09-11 20:14 - 2011-05-04 06:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2014-09-11 20:14 - 2011-05-04 06:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2014-09-11 20:14 - 2011-04-27 04:40 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-09-11 20:14 - 2011-04-27 04:39 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2014-09-11 20:13 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-09-11 20:13 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-09-11 20:13 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-09-11 20:13 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-09-11 20:13 - 2013-12-04 04:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-09-11 20:13 - 2013-12-04 04:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-09-11 20:13 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-09-11 20:13 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-09-11 20:13 - 2013-12-04 04:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-09-11 20:13 - 2013-12-04 04:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-09-11 20:13 - 2013-12-04 04:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-09-11 20:13 - 2013-12-04 04:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-09-11 20:13 - 2013-12-04 04:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-09-11 20:13 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-09-11 20:13 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-09-11 20:13 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-09-11 20:13 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-09-11 20:13 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-09-11 20:13 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-09-11 20:13 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-09-11 20:13 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-09-11 20:13 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-09-11 20:13 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2014-09-11 20:13 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-09-11 20:13 - 2013-10-04 04:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2014-09-11 20:13 - 2013-10-04 04:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2014-09-11 20:13 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-09-11 20:13 - 2013-10-04 03:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2014-09-11 20:13 - 2013-10-04 03:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2014-09-11 20:13 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-09-11 20:13 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2014-09-11 20:13 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2014-09-11 20:13 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2014-09-11 20:13 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2014-09-11 20:13 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-09-11 20:13 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2014-09-11 20:13 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2014-09-11 20:13 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2014-09-11 20:13 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-09-11 20:13 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2014-09-11 20:13 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2014-09-11 20:13 - 2013-04-26 01:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2014-09-11 20:13 - 2013-04-01 00:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2014-09-11 20:13 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2014-09-11 20:13 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys 2014-09-11 20:13 - 2011-03-11 08:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2014-09-11 20:13 - 2011-03-11 08:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2014-09-11 20:13 - 2011-03-11 07:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll 2014-09-11 20:13 - 2011-03-11 07:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll 2014-09-11 20:12 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-09-11 20:12 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2014-09-11 20:12 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2014-09-11 20:12 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe 2014-09-11 20:09 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-09-11 20:09 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-09-11 20:09 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-09-11 20:09 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-09-11 20:09 - 2012-11-29 00:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2014-09-11 20:07 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2014-09-11 20:07 - 2012-10-03 19:44 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2014-09-11 20:07 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2014-09-11 20:07 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2014-09-11 20:07 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2014-09-11 20:07 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll 2014-09-11 20:07 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2014-09-11 20:07 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll 2014-09-11 20:07 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll 2014-09-11 20:07 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll 2014-09-11 20:07 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2014-09-11 20:07 - 2012-01-13 09:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2014-09-11 19:15 - 2014-09-15 17:00 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\NVIDIA 2014-09-11 19:13 - 2014-09-11 19:13 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\java 2014-09-11 19:11 - 2014-09-11 19:11 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-09-11 19:11 - 2014-09-11 19:11 - 00000000 ____D () C:\ProgramData\Sun 2014-09-11 19:11 - 2014-09-11 19:11 - 00000000 ____D () C:\ProgramData\Oracle 2014-09-11 19:11 - 2014-09-11 19:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-09-11 19:10 - 2014-09-11 19:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2014-09-11 19:10 - 2014-09-11 19:10 - 00000000 ____D () C:\Program Files\Java 2014-09-11 19:00 - 2014-09-11 19:00 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Macromedia 2014-09-11 19:00 - 2014-09-11 19:00 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Adobe 2014-09-11 19:00 - 2014-09-11 19:00 - 00000000 ____D () C:\Users\ponder\AppData\Local\Macromedia 2014-09-11 18:58 - 2014-09-11 18:58 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-11 18:58 - 2014-09-11 18:58 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-11 18:58 - 2014-09-11 18:58 - 00000000 ____D () C:\Windows\system32\Macromed 2014-09-11 18:57 - 2014-09-11 19:00 - 00000000 ____D () C:\Users\ponder\AppData\Local\Adobe 2014-09-11 18:46 - 2014-09-22 17:56 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\.minecraft 2014-09-11 18:46 - 2014-09-11 18:46 - 00675988 _____ () C:\Users\ponder\Desktop\Minecraft.exe 2014-09-11 18:36 - 2014-09-11 20:24 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam Geändert von mrstibbons (29.09.2014 um 08:47 Uhr) |
![]() | #14 |
![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? FRST.txt Teil 2: Code:
ATTFilter 2014-09-11 18:33 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-09-11 18:33 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-09-11 18:33 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2014-09-11 18:33 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-09-11 18:33 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-09-11 18:33 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-09-11 18:33 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2014-09-11 18:33 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-09-11 18:33 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-09-11 18:33 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-09-11 18:33 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-09-11 18:33 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-09-11 18:33 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-09-11 18:33 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-09-11 18:33 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-09-11 18:33 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-09-11 18:33 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-09-11 18:33 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-09-11 18:33 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-09-11 18:33 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2014-09-11 18:33 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2014-09-11 18:33 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-09-11 18:33 - 2013-07-04 14:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-09-11 18:33 - 2013-07-04 14:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2014-09-11 18:33 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2014-09-11 18:33 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2014-09-11 18:33 - 2013-07-04 12:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2014-09-11 18:33 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-09-11 18:33 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-09-11 18:33 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2014-09-11 18:33 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2014-09-11 18:33 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2014-09-11 18:33 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe 2014-09-11 18:33 - 2012-05-01 07:40 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2014-09-11 18:33 - 2011-03-03 08:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2014-09-11 18:33 - 2011-03-03 08:24 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2014-09-11 18:33 - 2011-03-03 08:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe 2014-09-11 18:33 - 2011-03-03 07:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2014-09-11 18:33 - 2011-03-03 07:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe 2014-09-11 18:32 - 2014-06-16 04:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-09-11 18:32 - 2013-09-08 04:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-09-11 18:32 - 2013-09-08 04:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2014-09-11 18:32 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-09-11 18:32 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2014-09-11 18:32 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2014-09-11 18:32 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2014-09-11 18:32 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2014-09-11 18:32 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2014-09-11 18:32 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs 2014-09-11 18:32 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs 2014-09-11 18:32 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs 2014-09-11 18:32 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs 2014-09-11 18:32 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-09-11 18:32 - 2011-08-17 07:26 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll 2014-09-11 18:32 - 2011-08-17 07:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax 2014-09-11 18:32 - 2011-08-17 06:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll 2014-09-11 18:32 - 2011-08-17 06:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax 2014-09-11 18:32 - 2011-04-29 05:06 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2014-09-11 18:32 - 2011-04-29 05:05 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2014-09-11 18:32 - 2011-04-29 05:05 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2014-09-11 18:32 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-09-11 18:30 - 2013-08-29 04:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-09-11 18:30 - 2013-08-29 04:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2014-09-11 18:30 - 2013-08-29 04:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-09-11 18:30 - 2013-08-29 03:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-09-11 18:30 - 2013-08-29 03:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2014-09-11 18:30 - 2013-08-29 03:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2014-09-11 18:30 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2014-09-11 18:29 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-09-11 18:29 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-09-11 18:29 - 2014-05-30 10:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-09-11 18:29 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-09-11 18:29 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-09-11 18:29 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2014-09-11 18:29 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-09-11 18:29 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2014-09-11 18:29 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll 2014-09-11 18:29 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-09-11 18:29 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2014-09-11 18:29 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2014-09-11 18:29 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2014-09-11 18:29 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-09-11 18:29 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2014-09-11 18:29 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2014-09-11 18:29 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2014-09-11 18:29 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2014-09-11 18:29 - 2011-05-24 13:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2014-09-11 18:29 - 2011-05-24 12:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll 2014-09-11 18:29 - 2011-05-24 12:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll 2014-09-11 18:29 - 2011-05-24 12:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll 2014-09-11 18:29 - 2011-05-24 12:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2014-09-11 18:29 - 2011-02-05 19:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2014-09-11 18:29 - 2011-02-05 19:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll 2014-09-11 18:29 - 2011-02-05 19:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll 2014-09-11 18:29 - 2011-02-05 19:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll 2014-09-11 18:29 - 2011-02-05 19:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2014-09-11 18:29 - 2011-02-05 19:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2014-09-11 18:29 - 2011-02-05 19:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2014-09-11 18:28 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-09-11 18:28 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-09-11 18:28 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-09-11 18:28 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-09-11 18:28 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-09-11 18:28 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-09-11 18:28 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-09-11 18:28 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-09-11 18:28 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-09-11 18:28 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-09-11 18:28 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-09-11 18:28 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-09-11 18:28 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-09-11 18:28 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-09-11 18:28 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-09-11 18:28 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-09-11 18:28 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-09-11 18:28 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-09-11 18:28 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-09-11 18:28 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-09-11 18:28 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-09-11 18:28 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-09-11 18:28 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-09-11 18:28 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-09-11 18:28 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-09-11 18:28 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-09-11 18:28 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-09-11 18:28 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2014-09-11 18:28 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2014-09-11 18:28 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2014-09-11 18:28 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-09-11 18:28 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-09-11 18:28 - 2013-07-04 14:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-09-11 18:28 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-09-11 18:28 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-09-11 18:28 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2014-09-11 18:28 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2014-09-11 18:28 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2014-09-11 18:28 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2014-09-11 18:28 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2014-09-11 18:28 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2014-09-11 18:28 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll 2014-09-11 18:28 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll 2014-09-11 18:28 - 2012-05-05 10:36 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2014-09-11 18:28 - 2012-05-05 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2014-09-11 18:28 - 2011-12-16 10:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2014-09-11 18:28 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll 2014-09-11 18:28 - 2011-05-03 07:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2014-09-11 18:28 - 2011-05-03 06:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2014-09-11 18:28 - 2011-02-18 12:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe 2014-09-11 18:28 - 2011-02-18 07:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe 2014-09-11 18:28 - 2011-02-12 13:34 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe 2014-09-11 18:27 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-09-11 18:27 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-09-11 18:27 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-09-11 18:27 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-09-11 18:27 - 2011-10-15 08:31 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2014-09-11 18:27 - 2011-10-15 07:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2014-09-11 18:27 - 2011-08-27 07:37 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-09-11 18:27 - 2011-08-27 07:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll 2014-09-11 18:27 - 2011-08-27 06:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2014-09-11 18:27 - 2011-08-27 06:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll 2014-09-11 18:27 - 2011-02-23 06:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2014-09-11 18:26 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-11 18:26 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-11 18:23 - 2014-09-12 08:47 - 00071616 _____ () C:\Users\ponder\AppData\Local\GDIPFONTCACHEV1.DAT 2014-09-11 18:21 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2014-09-11 18:21 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll 2014-09-11 18:19 - 2014-09-28 20:24 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-09-11 18:19 - 2014-09-11 18:19 - 00000971 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-09-11 18:19 - 2014-09-11 18:19 - 00000861 _____ () C:\Users\ponder\Desktop\Downloads.lnk 2014-09-11 18:19 - 2014-09-11 18:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-09-11 18:19 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-09-11 18:19 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-09-11 18:19 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2014-09-11 18:19 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-09-11 18:19 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-09-11 18:19 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2014-09-11 18:19 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2014-09-11 18:19 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2014-09-11 18:19 - 2011-11-19 16:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-09-11 18:19 - 2011-11-19 16:01 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2014-09-11 18:00 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2014-09-11 18:00 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2014-09-11 18:00 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2014-09-11 18:00 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2014-09-11 18:00 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2014-09-11 18:00 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2014-09-11 18:00 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2014-09-11 18:00 - 2012-06-02 16:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2014-09-11 17:59 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2014-09-11 17:59 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2014-09-11 17:59 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2014-09-11 17:58 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2014-09-11 17:58 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll 2014-09-11 17:58 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2014-09-11 17:58 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-09-11 17:58 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2014-09-11 17:58 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2014-09-11 17:58 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe 2014-09-11 17:58 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll 2014-09-11 17:57 - 2014-09-11 17:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2014-09-11 17:57 - 2014-09-11 17:57 - 00000000 ____D () C:\Program Files\VideoLAN 2014-09-11 17:55 - 2014-09-23 00:18 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\foobar2000 2014-09-11 17:55 - 2014-09-11 17:55 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\foobar2000.lnk 2014-09-11 17:55 - 2014-09-11 17:55 - 00000000 ____D () C:\Program Files (x86)\foobar2000 2014-09-11 17:54 - 2014-09-29 09:18 - 00000000 _____ () C:\Windows\Path.idx 2014-09-11 17:54 - 2014-09-11 17:54 - 00002774 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC 2014-09-11 17:54 - 2014-09-11 17:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-09-11 17:54 - 2014-09-11 17:54 - 00000000 ____D () C:\Program Files\CCleaner 2014-09-11 17:53 - 2014-09-11 17:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2014-09-11 17:53 - 2014-09-11 17:53 - 00000000 ____D () C:\Program Files\7-Zip 2014-09-11 17:53 - 2014-09-11 17:53 - 00000000 _____ () C:\Windows\SysWOW64\Drivers\1043_ASUSTeK_M5A97 R2.0.alu 2014-09-11 17:53 - 2014-09-11 16:59 - 00000000 ____D () C:\Windows\Panther 2014-09-11 17:49 - 2014-09-28 10:19 - 01048576 _____ () C:\Windows\PE_Rom.dll 2014-09-11 17:46 - 2014-09-11 17:46 - 00000000 ____D () C:\Program Files\ASUS 2014-09-11 17:45 - 2014-09-11 17:45 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-09-11 17:45 - 2013-02-21 05:40 - 00032840 ____R (NT Kernel Resources) C:\Windows\system32\Drivers\ndisrd.sys 2014-09-11 17:44 - 2014-09-11 17:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS 2014-09-11 17:44 - 2008-12-02 20:05 - 00184320 _____ (ASUSTeK) C:\Windows\SysWOW64\Drivers\UpdateHelper.dll 2014-09-11 17:43 - 2014-09-11 17:43 - 00000000 ____D () C:\ProgramData\ASUS 2014-09-11 17:43 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2014-09-11 17:43 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2014-09-11 17:43 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2014-09-11 17:42 - 2014-09-11 17:44 - 00000000 ____D () C:\Program Files (x86)\ASUS 2014-09-11 17:42 - 2014-09-11 17:42 - 00000000 ____D () C:\Windows\SysWOW64\Drivers\MFDLL 2014-09-11 17:42 - 2012-08-22 11:54 - 00015232 ____R () C:\Windows\SysWOW64\Drivers\AsIO.sys 2014-09-11 17:42 - 2010-06-29 09:41 - 00028672 ____R (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll 2014-09-11 17:42 - 2008-01-04 07:34 - 00011832 ____N () C:\Windows\SysWOW64\Drivers\AsInsHelp64.sys 2014-09-11 17:40 - 2014-09-11 17:46 - 00015632 _____ () C:\Windows\DPINST.LOG 2014-09-11 17:40 - 2014-09-11 17:40 - 00000000 ____D () C:\Program Files (x86)\ASM104xUSB3 2014-09-11 17:36 - 2014-09-11 17:36 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-09-11 17:36 - 2014-09-11 17:36 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-09-11 17:36 - 2014-09-11 17:36 - 00000000 ____D () C:\Program Files\Realtek 2014-09-11 17:36 - 2013-08-21 06:50 - 03591000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-09-11 17:36 - 2013-08-20 14:17 - 02809048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-09-11 17:36 - 2013-08-20 14:17 - 02585304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2014-09-11 17:36 - 2013-08-20 12:48 - 00633381 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-09-11 17:36 - 2013-08-20 12:31 - 00148184 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-09-11 17:36 - 2013-08-20 07:51 - 31488000 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-09-11 17:36 - 2013-08-20 04:02 - 04848920 _____ (ASUSTeKcomputer.Inc Inc) C:\Windows\system32\RTKSMlfx.dll 2014-09-11 17:36 - 2013-08-16 09:46 - 00818008 _____ (ASUSTeKcomputer.Inc Inc) C:\Windows\system32\RTKSMSettingsIPC.dll 2014-09-11 17:36 - 2013-08-14 10:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-09-11 17:36 - 2013-08-14 10:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-09-11 17:36 - 2013-08-12 23:21 - 01019136 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-09-11 17:36 - 2013-08-12 23:21 - 00899328 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-09-11 17:36 - 2013-08-12 23:21 - 00720128 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-09-11 17:36 - 2013-08-12 23:21 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-09-11 17:36 - 2013-08-07 11:34 - 00765184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-09-11 17:36 - 2013-08-06 03:47 - 00947248 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-09-11 17:36 - 2013-08-02 14:16 - 01005784 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-09-11 17:36 - 2013-08-01 04:59 - 05694760 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-09-11 17:36 - 2013-07-28 04:48 - 27518208 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-09-11 17:36 - 2013-07-26 08:05 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-09-11 17:36 - 2013-07-23 09:40 - 03610880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-09-11 17:36 - 2013-07-23 09:40 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-09-11 17:36 - 2013-07-23 09:39 - 14048512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-09-11 17:36 - 2013-07-23 09:39 - 01916672 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-09-11 17:36 - 2013-07-11 08:15 - 00557880 _____ () C:\Windows\system32\audioLibVc.dll 2014-09-11 17:36 - 2013-06-25 06:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-09-11 17:36 - 2013-06-25 06:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-09-11 17:36 - 2013-06-25 06:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-09-11 17:36 - 2013-04-24 11:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-09-11 17:36 - 2013-02-20 12:55 - 01284680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-09-11 17:36 - 2012-08-31 13:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2014-09-11 17:36 - 2012-08-31 13:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2014-09-11 17:36 - 2012-08-31 13:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2014-09-11 17:36 - 2012-08-31 13:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2014-09-11 17:36 - 2012-08-31 13:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2014-09-11 17:36 - 2012-01-30 05:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2014-09-11 17:36 - 2012-01-10 04:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2014-09-11 17:36 - 2011-12-20 09:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2014-09-11 17:36 - 2011-11-22 10:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2014-09-11 17:36 - 2011-09-02 08:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2014-09-11 17:36 - 2011-09-02 08:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2014-09-11 17:36 - 2011-09-02 08:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2014-09-11 17:36 - 2011-08-11 10:55 - 00001332 ____R () C:\Windows\system32\Drivers\DTSU2P.DAT 2014-09-11 17:36 - 2011-03-17 06:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2014-09-11 17:36 - 2011-03-07 11:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2014-09-11 17:36 - 2010-11-08 01:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2014-09-11 17:36 - 2010-11-03 12:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2014-09-11 17:36 - 2010-07-22 10:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2014-09-11 17:36 - 2009-11-24 03:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2014-09-11 17:36 - 2009-11-24 03:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2014-09-11 17:36 - 2009-11-24 03:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2014-09-11 17:36 - 2009-11-24 03:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2014-09-11 17:35 - 2014-09-11 17:37 - 00000000 ___HD () C:\Program Files (x86)\Temp 2014-09-11 17:35 - 2013-08-14 10:36 - 01325312 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-09-11 17:35 - 2013-08-14 10:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-09-11 17:35 - 2013-08-14 10:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-09-11 17:35 - 2013-08-08 13:57 - 02080472 ____R (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2014-09-11 17:35 - 2013-08-07 11:41 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-09-11 17:35 - 2013-08-05 22:56 - 06219096 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-09-11 17:35 - 2013-08-05 22:56 - 01908568 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-09-11 17:35 - 2013-08-05 22:56 - 00312152 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-09-11 17:35 - 2013-08-05 22:56 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-09-11 17:35 - 2013-08-05 12:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-09-11 17:35 - 2013-07-24 04:07 - 02032896 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-09-11 17:35 - 2013-07-23 09:39 - 00922880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-09-11 17:35 - 2013-06-21 05:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll 2014-09-11 17:35 - 2013-06-05 15:42 - 00208072 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-09-11 17:35 - 2013-04-03 08:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2014-09-11 17:35 - 2012-10-02 08:41 - 00501192 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-09-11 17:35 - 2012-10-02 08:41 - 00487368 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-09-11 17:35 - 2012-10-02 08:41 - 00415688 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-09-11 17:35 - 2012-03-08 05:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2014-09-11 17:35 - 2011-08-23 11:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2014-09-11 17:35 - 2011-05-31 03:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2014-09-11 17:35 - 2010-09-27 03:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2014-09-11 17:31 - 2014-09-15 23:07 - 01622000 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-09-11 17:31 - 2014-09-11 17:31 - 00000000 ____D () C:\Program Files (x86)\AMD APP 2014-09-11 17:31 - 2012-04-11 03:40 - 00082560 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_sata.sys 2014-09-11 17:31 - 2012-04-11 03:40 - 00042624 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amd_xata.sys 2014-09-11 17:28 - 2014-09-11 17:28 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-09-11 17:28 - 2014-09-11 17:28 - 00000000 ____D () C:\Users\ponder\AppData\Roaming\Mozilla 2014-09-11 17:28 - 2014-09-11 17:28 - 00000000 ____D () C:\Users\ponder\AppData\Local\Mozilla 2014-09-11 17:23 - 2014-09-11 17:23 - 00000000 ____D () C:\Program Files\ATI 2014-09-11 17:22 - 2014-09-11 17:22 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-09-11 17:21 - 2014-09-11 17:21 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll 2014-09-11 17:21 - 2011-02-25 08:25 - 00296320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2014-09-11 17:20 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-09-11 17:20 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-09-11 17:20 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2014-09-11 17:20 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-09-11 17:20 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-09-11 17:20 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-09-11 17:20 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-09-11 17:20 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2014-09-11 17:20 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-09-11 17:20 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2014-09-11 17:18 - 2014-09-11 17:46 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-09-11 17:18 - 2014-09-11 17:35 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-09-11 17:18 - 2012-12-26 19:26 - 00805088 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-09-11 17:18 - 2012-12-26 19:26 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2014-09-11 17:18 - 2012-12-26 19:26 - 00074344 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-09-11 17:17 - 2014-09-11 17:46 - 00000000 ____D () C:\Windows\System32\Tasks\ASUS 2014-09-11 17:17 - 2014-09-11 17:39 - 00033596 _____ () C:\Windows\Ascd_tmp.ini 2014-09-11 17:17 - 2014-09-11 17:38 - 00001769 _____ () C:\Windows\Language_trs.ini 2014-09-11 17:17 - 2014-09-11 17:38 - 00000288 _____ () C:\Windows\As_Utilities.log 2014-09-11 17:17 - 2014-09-11 17:17 - 00000000 ____D () C:\Windows\AsDmiHtm 2014-09-11 17:11 - 2014-09-11 17:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2014-09-11 17:08 - 2014-09-28 10:18 - 00000000 ____D () C:\ProgramData\NVIDIA 2014-09-11 17:08 - 2014-09-11 17:08 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2014-09-11 17:07 - 2014-09-11 17:08 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2014-09-11 17:07 - 2014-09-11 17:08 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2014-09-11 17:07 - 2014-02-08 19:42 - 06712608 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2014-09-11 17:07 - 2014-02-08 19:42 - 03498272 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2014-09-11 17:07 - 2014-02-08 19:42 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2014-09-11 17:07 - 2014-02-08 19:42 - 00923936 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2014-09-11 17:07 - 2014-02-08 19:42 - 00386336 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2014-09-11 17:07 - 2014-02-08 19:42 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2014-09-11 17:07 - 2014-02-08 18:18 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2014-09-11 17:07 - 2014-02-05 19:52 - 03573739 _____ () C:\Windows\system32\nvcoproc.bin 2014-09-11 17:06 - 2014-02-08 20:34 - 31432480 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 23683360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 18257576 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 17715784 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 15740232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 14669032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 12324640 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2014-09-11 17:06 - 2014-02-08 20:34 - 11636176 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 11589272 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 09728064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 09690424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 03142432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 03090184 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 02956576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 02782496 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 02713728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 02410784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 01885472 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433489.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433489.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00947296 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00892192 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00875296 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00863520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00844576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00832424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00483104 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00408352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00378656 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00353504 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00333600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00305600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00174296 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00148528 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2014-09-11 17:06 - 2014-02-08 20:34 - 00024544 _____ () C:\Windows\system32\nvinfo.pb 2014-09-11 17:06 - 2013-11-28 15:38 - 00197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2014-09-11 17:06 - 2013-11-28 15:38 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2014-09-11 17:06 - 2013-11-22 10:36 - 01515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2014-09-11 17:05 - 2014-09-11 17:07 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2014-09-11 17:05 - 2014-09-11 17:05 - 00000000 ____D () C:\NVIDIA 2014-09-11 17:02 - 2014-09-11 17:02 - 00001294 _____ () C:\Users\ponder\Desktop\Computer Management.lnk 2014-09-11 16:59 - 2014-09-29 09:39 - 01164383 _____ () C:\Windows\WindowsUpdate.log 2014-09-11 16:59 - 2014-09-27 13:51 - 00000000 ____D () C:\Users\ponder\AppData\Local\VirtualStore 2014-09-11 16:59 - 2014-09-26 11:49 - 00000000 ____D () C:\Users\ponder 2014-09-11 16:59 - 2014-09-15 03:36 - 00001429 _____ () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-09-11 16:59 - 2014-09-11 16:59 - 00000020 ___SH () C:\Users\ponder\ntuser.ini 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Vorlagen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Startmenü 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Netzwerkumgebung 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Lokale Einstellungen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Eigene Dateien 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Druckumgebung 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Documents\Eigene Musik 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Documents\Eigene Bilder 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\AppData\Local\Verlauf 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\AppData\Local\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\ponder\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-09-11 16:59 - 2014-09-11 16:59 - 00000000 ____D () C:\Recovery 2014-09-11 16:59 - 2009-07-14 06:59 - 00000000 ___RD () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-09-11 16:59 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\ponder\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-09-11 16:56 - 2014-09-11 16:56 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-09-09 17:27 - 2014-09-09 17:27 - 00157448 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetFlt.sys 2014-09-09 17:27 - 2014-09-09 17:27 - 00142528 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxNetAdp.sys 2014-09-09 17:26 - 2014-09-09 17:26 - 00205352 _____ (Oracle Corporation) C:\Windows\system32\VBoxNetFltNobj.dll ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-28 10:25 - 2009-07-14 06:50 - 00028144 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-09-28 10:25 - 2009-07-14 06:50 - 00028144 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-09-28 10:22 - 2011-04-12 10:14 - 00713958 _____ () C:\Windows\system32\perfh007.dat 2014-09-28 10:22 - 2011-04-12 10:14 - 00154074 _____ () C:\Windows\system32\perfc007.dat 2014-09-28 10:22 - 2009-07-14 07:12 - 01648656 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-09-28 10:18 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-09-28 10:18 - 2009-07-14 06:56 - 00027129 _____ () C:\Windows\setupact.log 2014-09-28 09:47 - 2010-11-21 05:47 - 00025188 _____ () C:\Windows\PFRO.log 2014-09-28 09:29 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\L2Schemas 2014-09-26 21:06 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-09-26 21:04 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini 2014-09-26 15:46 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-09-25 16:38 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-09-15 09:06 - 2010-11-21 05:27 - 00278152 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-09-15 08:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-09-15 03:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-09-13 07:58 - 2009-07-14 06:50 - 00320976 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-09-12 08:12 - 2011-04-12 10:24 - 00000000 ____D () C:\Program Files\Windows Journal 2014-09-12 08:12 - 2009-07-14 07:38 - 00000000 ____D () C:\Program Files\Windows Defender 2014-09-12 08:12 - 2009-07-14 07:38 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-09-12 08:12 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2014-09-12 08:12 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism 2014-09-12 08:12 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\System 2014-09-11 17:53 - 2009-07-14 07:43 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-09-11 17:53 - 2009-07-14 07:38 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2014-09-11 17:18 - 2009-07-14 07:38 - 00000000 ____D () C:\Windows\system32\restore 2014-09-11 17:07 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help 2014-09-11 16:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-09-11 16:56 - 2009-07-14 06:51 - 00002790 _____ () C:\Windows\DtcInstall.log 2014-09-11 16:56 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-09-11 16:56 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-09-11 16:54 - 2011-04-12 10:24 - 00000000 ____D () C:\Windows\CSC Some content of TEMP: ==================== C:\Users\ponder\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-09-26 14:57 ==================== End Of Log ============================ Danke für deine Hilfe! EDIT: Seltsam, wenn ich versuche mein Java zu updaten sagt er mir, Java sei bereits die aktuelle Version. |
![]() | #15 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? Java deinstallieren, aktuelle Version installieren, und Flash updaten. Soviel war da gar ncht. Nur Reste. Hast Glück gehabt. Jetzt räumen wir den mal auf, dann einfach FRST Logs von den andern beiden Rechnern posten. Fertig ![]() Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun ![]() Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() |
Themen zu Clam-AV hat TrojanerDownloader.Injecter-214 gefunden. Bin ich infiziert? |
ahnung, bin ich infiziert, bot, datei, einfach, fehlercode 0x5, fehlercode 0xc0000005, fehlermeldung, freunde, helft, heute, infiziert, internetverbindung, lahmt, langsam, natürlich, nichts, nsis/startpage.cc, pup.optional.opencandy, traffic, trotz, verbindung, virus, warum, wirklich |