|
Plagegeister aller Art und deren Bekämpfung: RUN.dll fehlerWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
16.01.2015, 17:44 | #1 |
| RUN.dll fehler hallo zusammen, immer wenn ich mein PC starte erscheint diese Meldung(siehe Bild) ich hoffe ihr könnt mir helfen MFG momolol404 |
16.01.2015, 18:21 | #2 |
/// the machine /// TB-Ausbilder | RUN.dll fehler hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
16.01.2015, 18:55 | #3 |
| RUN.dll fehler okay kommt gleich
__________________Also hier die addition datei Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 15-01-2015 01 Ran by ... at 2015-01-16 18:41:52 Running from ...Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: AVG AntiVirus 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AS: AVG AntiVirus 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 32 Bit HP CIO Components Installer (Version: 6.1.1 - Hewlett-Packard) Hidden 8500A909_eDocs (Version: 1.00.0000 - Hewlett-Packard) Hidden 8500A909_Help (Version: 1.00.0000 - Hewlett-Packard) Hidden 8500A909g (Version: 50.0.165.000 - Hewlett-Packard) Hidden Adobe Acrobat Reader 3.01 (HKLM\...\Adobe Acrobat Reader 3.01) (Version: - ) Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated) Adobe Reader X (10.1.13) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.13 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (HKLM\...\Adobe Shockwave Player) (Version: 11.6.1.629 - Adobe Systems, Inc.) Any Video Converter 5.7.6 (HKLM\...\Any Video Converter_is1) (Version: - Any-Video-Converter.com) Audacity 2.0.5 (HKLM\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4800 - AVG Technologies) AVG 2014 (Version: 14.0.4253 - AVG Technologies) Hidden AVG 2014 (Version: 14.0.4257 - AVG Technologies) Hidden AVG 2014 (Version: 14.0.4800 - AVG Technologies) Hidden AVG PC TuneUp 2015 (de-DE) (Version: 15.0.1001.105 - AVG Technologies) Hidden AVG Web TuneUp (HKLM\...\AVG Web TuneUp) (Version: 4.0.0.19 - AVG Technologies) BlueStacks App Player (HKLM\...\BlueStacks App Player) (Version: 0.9.4.4079 - BlueStack Systems, Inc.) BlueStacks Notification Center (HKLM\...\{8DCCC556-265B-478A-8B32-C12DA988BA74}) (Version: 0.9.4.4079 - BlueStack Systems, Inc.) BPD_DSWizards (Version: 1.00.0000 - Hewlett-Packard) Hidden bpd_scan (Version: 3.00.0000 - Hewlett-Packard) Hidden BPDSoftware (Version: 50.0.165.000 - Hewlett-Packard) Hidden BPDSoftware_Ini (Version: 1.00.0000 - Hewlett-Packard) Hidden BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden BurnAware Free 7.7 (HKLM\...\BurnAware Free_is1) (Version: - Burnaware) ccc-core-static (Version: 2009.0721.1107.18080 - Ihr Firmenname) Hidden CCleaner (HKLM\...\CCleaner) (Version: 4.05 - Piriform) CheckDrive (HKLM\...\{B83513EC-2E4D-4621-816D-4CCF397BE702}_is1) (Version: 4.4 - Abelssoft) D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (Version: 130.0.465.000 - Hewlett-Packard) Hidden DocMgr (Version: 130.0.000.000 - Ihr Firmenname) Hidden DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden Druckerdeinstallation für EPSON XP-302 303 305 306 Series (HKLM\...\EPSON XP-302 303 305 306 Series) (Version: - SEIKO EPSON Corporation) DualCoreCenter (HKLM\...\DualCoreCenter_is1) (Version: - MSI, Inc.) Epson Connect Printer Setup (HKLM\...\{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}) (Version: 1.3.0 - SEIKO EPSON CORPORATION) Epson E-Web Print (HKLM\...\{896667C8-53F8-47B8-B6B0-B113B10F05BC}) (Version: 1.20.0000 - SEIKO EPSON CORPORATION) EPSON Printer Finder (HKLM\...\{B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}) (Version: 1.0.0 - SEIKO EPSON CORPORATION) Fax (Version: 130.0.418.000 - Hewlett-Packard) Hidden Fotogalerie (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden GeoGebra 5 (HKLM\...\GeoGebra 5) (Version: 5.0.4.0 - International GeoGebra Institute) Google Chrome (HKLM\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.) Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Earth (HKLM\...\{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}) (Version: 6.1.0.5001 - Google) Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden Haali Media Splitter (HKLM\...\HaaliMkx) (Version: - FreeCodecPack) HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden HPSSupply (Version: 130.0.371.000 - Hewlett-Packard) Hidden HxD Hex Editor Version 1.7.7.0 (HKLM\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz) Java 8 Update 25 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) MarketResearch (Version: 130.0.374.000 - Hewlett-Packard) Hidden Media Downloader version 1.5 (HKLM\...\Media Downloader_is1) (Version: 1.5 - Media Downloader) Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Movie Maker (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 34.0.5 (x86 de) (HKLM\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) Mozilla Thunderbird 12.0.1 (x86 de) (HKLM\...\Mozilla Thunderbird 12.0.1 (x86 de)) (Version: 12.0.1 - Mozilla) MSI Live Update (HKLM\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.0.012 - MSI) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) Network (Version: 130.0.579.000 - Hewlett-Packard) Hidden Nitro PDF Professional (HKLM\...\{853F9C53-2518-4AD0-ABA2-A72EDF4441A4}) (Version: 5.5.2.0 - Nitro PDF Software ) Oracle VM VirtualBox 4.3.12 (HKLM\...\{D90E08B8-E7BB-4D29-8249-8670D4CC24BD}) (Version: 4.3.12 - Oracle Corporation) Phase 5 HTML-Editor (HKLM\...\{20B1B020-DEAE-48D1-9960-D4C3185D758B}) (Version: 5.6.2.3 - Systemberatung Schommer) ProductContext (Version: 50.0.165.000 - Hewlett-Packard) Hidden Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Skins (Version: 2009.0721.1107.18080 - ATI) Hidden Skype™ 6.16 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.) SmartWebPrinting (Version: 130.0.457.000 - Hewlett-Packard) Hidden Software Updater (HKLM\...\{FA7EE274-7370-43B7-9A45-A39B17CCCDC5}) (Version: 4.3.3 - SEIKO EPSON CORPORATION) SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden Status (Version: 130.0.469.000 - Hewlett-Packard) Hidden Steam (HKLM\...\Steam) (Version: 2.10.91.91 - Valve Corporation) swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Team Fortress 2 (HKLM\...\Steam App 440) (Version: - Valve) TL-WN851ND Driver (HKLM\...\{4BAE4C76-44C3-418F-B715-6BBF5A65323E}) (Version: 1.00.0000 - TP-LINK) Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden TP-LINK Wireless Configuration Utility (HKLM\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 2.01.0012 - TP-LINK) TrayApp (Version: 130.0.422.000 - Hewlett-Packard) Hidden TuneUp Utilities Language Pack (de-DE) (Version: 10.0.3000.99 - TuneUp Software) Hidden TuneUp Utilities Language Pack (de-DE) (Version: 9.0.5100.2 - TuneUp Software) Hidden VideoSoft ActiveX Controls (HKLM\...\VideoSoft ActiveX Controls) (Version: - ) Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player 2.0.5 (HKLM\...\VLC media player) (Version: 2.0.5 - VideoLAN) WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden Windows 7 USB/DVD Download Tool (HKLM\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation) Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) WinRAR 5.01 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {060974C6-EB13-439D-B0A4-E1A5D3E04852} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation) Task: {2D589190-9944-476E-A573-222791290DD5} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {459268AE-08D6-45FB-91CC-5E706DBF30D9} - System32\Tasks\Abelssoft\CheckDriveBackgroundGuard => C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe [2014-01-28] (Abelssoft) Task: {4D5E15B7-CCF8-4F94-9FE2-98CFF7A3D34C} - System32\Tasks\Microsoft\Windows\Multimedia\SMupdate3 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update3 <==== ATTENTION Task: {7F66F5E4-A742-4D44-A1E6-8702EE739B5D} - System32\Tasks\Abelssoft\Updater scan => C:\Program Files\CHIP Updater\CHIPUpdater.exe Task: {84B9A19E-C07B-4C2F-B2C2-2DC5A5A722AD} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2013-11-18] () Task: {990DE140-CCEF-429D-8697-D5B3F80B76FF} - System32\Tasks\Microsoft\Windows\Maintenance\SMupdate2 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update2 <==== ATTENTION Task: {FF042177-2ECB-464E-9EC1-4F2FB2EAB17B} - System32\Tasks\Games\UpdateCheck_S-1-5-21-2908931533-4132489533-110418967-1000 (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Loaded Modules (whitelisted) ============= 2015-01-10 16:56 - 2005-07-18 13:43 - 00160256 _____ () C:\Program Files\MSI\Live Update\unrar.dll 2014-03-05 16:39 - 2014-03-05 16:39 - 00075136 _____ () C:\Windows\system32\PnkBstrA.exe 2014-12-09 18:58 - 2014-01-28 17:33 - 00019744 _____ () C:\Program Files\CheckDrive\AbStartManager.dll 2014-12-09 18:58 - 2014-01-28 17:33 - 00014112 _____ () C:\Program Files\CheckDrive\AbMessages.dll 2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2014-07-02 12:53 - 2014-12-09 18:52 - 03758192 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51 AlternateDataStreams: C:\ProgramData\TEMP:373E1720 ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^DualCoreCenter.lnk => C:\Windows\pss\DualCoreCenter.lnk.CommonStartup MSCONFIG\startupreg: DelReg => C:\Program Files\MSI\DualCoreCenter\DelReg.exe MSCONFIG\startupreg: EPLTarget => MSCONFIG\startupreg: StartCCC => "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun MSCONFIG\startupreg: Uninstall C: => ========================= Accounts: ========================== Administrator (S-1-5-21-2908931533-4132489533-110418967-500 - Administrator - Disabled) Gast (S-1-5-21-2908931533-4132489533-110418967-501 - Limited - Disabled) ... (S-1-5-21-2908931533-4132489533-110418967-1000 - Administrator - Enabled) => C:\Users\.......-PC ==================== Faulty Device Manager Devices ============= Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Officejet Pro 8500 A909g Description: Officejet Pro 8500 A909g Class Guid: Manufacturer: Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: SPDRIVER_1.38.0.1434 Description: SPDRIVER_1.38.0.1434 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: SPDRIVER_1.38.0.1434 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: ntiomin Description: ntiomin Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: ntiomin Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 12292) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] ist ein Fehler aufgetreten. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (01/16/2015 04:32:37 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (01/16/2015 02:57:10 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (01/15/2015 07:31:09 PM) (Source: VSS) (EventID: 12292) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] ist ein Fehler aufgetreten. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Überprüfen, ob das Volume vom Anbieter unterstützt wird Volume einem Schattenkopiesatz hinzufügen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: 16 Ausführungskontext: Coordinator Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Volumename: C:\ Ausführungskontext: Coordinator Error: (01/15/2015 07:31:09 PM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Überprüfen, ob das Volume vom Anbieter unterstützt wird Volume einem Schattenkopiesatz hinzufügen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: 16 Ausführungskontext: Coordinator Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Volumename: C:\ Ausführungskontext: Coordinator Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 12292) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] ist ein Fehler aufgetreten. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: -1 Snapshotkontext: -1 Ausführungskontext: Coordinator Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: -1 Snapshotkontext: -1 Ausführungskontext: Coordinator Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 12292) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] ist ein Fehler aufgetreten. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Überprüfen, ob das Volume vom Anbieter unterstützt wird Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: 0 Ausführungskontext: Coordinator Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Volumename: \\?\Volume{f0d1c040-5541-11df-9f0a-806e6f6e6963}\ Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Überprüfen, ob das Volume vom Anbieter unterstützt wird Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: 0 Ausführungskontext: Coordinator Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Volumename: \\?\Volume{f0d1c040-5541-11df-9f0a-806e6f6e6963}\ System errors: ============= Error: (01/16/2015 04:16:15 PM) (Source: Disk) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR2 gefunden. Error: (01/16/2015 04:16:14 PM) (Source: Disk) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR2 gefunden. Error: (01/16/2015 04:16:14 PM) (Source: Disk) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR2 gefunden. Error: (01/16/2015 04:16:13 PM) (Source: Disk) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR2 gefunden. Error: (01/15/2015 07:52:22 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (01/15/2015 07:52:19 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (01/15/2015 07:52:15 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (01/15/2015 07:52:11 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (01/15/2015 07:52:07 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (01/15/2015 07:52:04 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Microsoft Office Sessions: ========================= Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 12292) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 13) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (01/16/2015 04:32:37 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (01/16/2015 02:57:10 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (01/15/2015 07:31:09 PM) (Source: VSS) (EventID: 12292) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Überprüfen, ob das Volume vom Anbieter unterstützt wird Volume einem Schattenkopiesatz hinzufügen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: 16 Ausführungskontext: Coordinator Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Volumename: C:\ Ausführungskontext: Coordinator Error: (01/15/2015 07:31:09 PM) (Source: VSS) (EventID: 13) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Überprüfen, ob das Volume vom Anbieter unterstützt wird Volume einem Schattenkopiesatz hinzufügen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: 16 Ausführungskontext: Coordinator Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Volumename: C:\ Ausführungskontext: Coordinator Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 12292) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: -1 Snapshotkontext: -1 Ausführungskontext: Coordinator Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 13) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: -1 Snapshotkontext: -1 Ausführungskontext: Coordinator Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 12292) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Überprüfen, ob das Volume vom Anbieter unterstützt wird Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: 0 Ausführungskontext: Coordinator Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Volumename: \\?\Volume{f0d1c040-5541-11df-9f0a-806e6f6e6963}\ Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 13) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Überprüfen, ob das Volume vom Anbieter unterstützt wird Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: 0 Ausführungskontext: Coordinator Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Volumename: \\?\Volume{f0d1c040-5541-11df-9f0a-806e6f6e6963}\ FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 15-01-2015 01 Ran by ... (administrator) on ...-PC on 16-01-2015 18:36:34 Running from C:\Users\...Downloads Loaded Profiles: .d (Available profiles: ...) Platform: Microsoft Windows 7 Ultimate Service Pack 2 (X86) OS Language: Deutsch (Deutschland) Internet Explorer Version 10 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgrsx.exe (ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe (Acronis) C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe (BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-LogRotatorService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe (BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-UpdaterService.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE (Micro-Star International) C:\Program Files\MSI\Live Update\MSI_LiveUpdate_Service.exe () C:\Windows\System32\PnkBstrA.exe (Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgnsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgemcx.exe (ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe (Abelssoft) C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe (Microsoft Corporation) C:\Windows\System32\taskmgr.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\audiodg.exe (Farbar) C:\Users\...\Downloads\FRST(1).exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [5188112 2014-12-16] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [Live Update] => C:\Program Files\MSI\Live Update\Live Update.exe [3484624 2014-11-27] (Micro-Star International) HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-18\...\RunOnce: [{91140000-0011-0000-0000-0000000FF1CE}] => C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H HKU\S-1-5-18\...\RunOnce: [{90140000-001A-0407-0000-0000000FF1CE}] => C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H Startup: C:\Users\...\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Firefox.lnk ShortcutTarget: Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) Startup: C:\Users\...\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Firefox.lnk ShortcutTarget: Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-2908931533-4132489533-110418967-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com SearchScopes: HKLM -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2908931533-4132489533-110418967-1000 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-2908931533-4132489533-110418967-1000 -> {1} URL = Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Handler: WSWSVCUchrome - No CLSID Value - Tcpip\..\Interfaces\{4007158E-A27E-4722-834C-9092AFB70BBA}: [NameServer] 192.168.178.1 Tcpip\..\Interfaces\{6390599D-EB38-4EAF-A9A7-CA69DB545DE2}: [NameServer] 192.168.178.1 Tcpip\..\Interfaces\{63BBC024-99F8-45D3-AB40-74F50224FE54}: [NameServer] 192.168.178.1 Tcpip\..\Interfaces\{BED213D9-3AFA-41A2-9268-951878DACF3E}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{EA104EC2-7169-4026-98D9-7FA51715A643}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 FireFox: ======== FF ProfilePath: C:\Users\...\AppData\Roaming\Mozilla\Firefox\Profiles\1fcf5fo1.default-1417951851860 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll () FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll No File FF Extension: Adblock Plus - C:\Users\.......-PC\AppData\Roaming\Mozilla\Firefox\Profiles\1fcf5fo1.default-1417951851860\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-01-10] FF HKLM\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF HKLM\...\Firefox\Extensions: [OKitSpace@Vittalia.es] - C:\Users\...\AppData\Roaming\okitspace\Firefox FF HKLM\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files\Epson Software\E-Web Print\Firefox Add-on FF Extension: E-Web Print - C:\Program Files\Epson Software\E-Web Print\Firefox Add-on [2014-11-05] Chrome: ======= CHR StartupUrls: Default -> "hxxp://www.google.com" CHR DefaultSearchKeyword: Default -> google CHR DefaultSuggestURL: Default -> CHR Profile: C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-22] CHR Extension: (Google Drive) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-22] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-22] CHR Extension: (YouTube) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-22] CHR Extension: (Google-Suche) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-22] CHR Extension: (Google Tabellen) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-22] CHR Extension: (Google Wallet) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-22] CHR Extension: (Google Mail) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-22] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path CHR HKLM\...\Chrome\Extension: [pilobbegphefikcgjpajnneiiahhejam] - C:\Users\...\Econa\Gutscheinsammler\Chrome\chrome.crx [Not Found] ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 AcrSch2Svc; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [661072 2009-11-12] (Acronis) R2 afcdpsrv; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [2480048 2010-07-25] (Acronis) R2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3247120 2014-12-16] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [289328 2014-12-16] (AVG Technologies CZ, s.r.o.) S2 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [409304 2014-10-08] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [388824 2014-10-08] (BlueStack Systems, Inc.) R2 BstHdUpdaterSvc; C:\Program Files\BlueStacks\HD-UpdaterService.exe [782040 2014-10-08] (BlueStack Systems, Inc.) R2 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [142432 2012-02-21] (SEIKO EPSON CORPORATION) S3 FlexNet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [1074480 2014-09-22] (Flexera Software LLC) R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-23] (Hewlett-Packard Co.) [File not signed] R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-23] (Hewlett-Packard Co.) [File not signed] R2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [694784 2009-09-23] (Hewlett-Packard Co.) [File not signed] R2 MSI_LiveUpdate_Service; C:\Program Files\MSI\Live Update\MSI_LiveUpdate_Service.exe [1732048 2014-11-27] (Micro-Star International) S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44544 2008-12-03] (Hewlett-Packard) [File not signed] S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2008-12-03] (Hewlett-Packard) [File not signed] R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [75136 2014-03-05] () S3 WatAdminSvc; C:\Windows\system32\Wat\WatAdminSvc.exe [1343400 2013-11-18] () [File not signed] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AegisP; C:\Windows\System32\DRIVERS\AegisP.sys [21035 2012-05-17] (Meetinghouse Data Communications) [File not signed] R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [121624 2014-06-30] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [200984 2014-07-21] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [147736 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [21272 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [189720 2014-10-24] (AVG Technologies CZ, s.r.o.) R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [241944 2014-06-17] (AVG Technologies CZ, s.r.o.) R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [98584 2014-10-29] (AVG Technologies CZ, s.r.o.) R0 AvgRkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27416 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [197400 2014-10-20] (AVG Technologies CZ, s.r.o.) R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [42784 2014-11-13] (AVG Technologies) R2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [112344 2014-10-08] (BlueStack Systems) S3 DrvAgent32; C:\Windows\system32\Drivers\DrvAgent32.sys [23456 2015-01-11] (Phoenix Technologies) [File not signed] S3 DualCoreCenter; C:\Program Files\MSI\DualCoreCenter\NTGLM7X.sys [36152 2010-02-08] (MICRO-STAR INT'L CO., LTD.) R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () [File not signed] R3 NTIOLib_1_0_4; C:\Program Files\MSI\Live Update\NTIOLib.sys [7680 2010-10-20] (MSI) [File not signed] S3 RTLWUSB; C:\Windows\System32\DRIVERS\RTL8187.sys [172416 2006-04-21] (Realtek Semiconductor Corporation ) [File not signed] S3 RushTopDevice2; C:\Program Files\MSI\DualCoreCenter\RushTop.sys [55296 2009-03-18] (Your Corporation) [File not signed] S3 SjyPkt; C:\Windows\System32\Drivers\SjyPkt.sys [13532 2002-10-02] (Windows (R) 2000 DDK provider) [File not signed] S3 SMARTMouseFilterx86; C:\Windows\System32\DRIVERS\SMARTMouseFilterx86.sys [8192 2014-03-25] (SMART Technologies) [File not signed] S3 SMARTVHidMini2000x86; C:\Windows\System32\DRIVERS\SMARTVHidMini2000x86.sys [7680 2014-03-25] (SMART Technologies) [File not signed] S3 SMARTVTabletPCx86; C:\Windows\System32\DRIVERS\SMARTVTabletPCx86.sys [15872 2014-03-25] (SMART Technologies ULC) [File not signed] R0 tdrpman258; C:\Windows\System32\DRIVERS\tdrpm258.sys [911680 2010-07-25] (Acronis) S2 eamonm; system32\DRIVERS\eamonm.sys [X] S3 fsbl; \??\C:\Program Files\F-Secure\apps\ComputerSecurity\Anti-Virus\fsbldrv.sys [X] S1 ntiomin; No ImagePath S3 OSFMount; \??\C:\Users\.......-PC\AppData\Local\Temp\Rar$EXa0.041\bin\OSFMount.sys [X] S3 SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2015x\WNt600x86\Sandra.sys [X] S2 SPDRIVER_1.38.0.1434; \??\C:\Program Files\ShopperPro\JSDriver\1.38.0.1434\jsdrv.sys [X] S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X] S3 tsusbhub; system32\drivers\tsusbhub.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] S3 XDva401; \??\C:\Windows\system32\XDva401.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-16 18:32 - 2015-01-16 18:38 - 00016818 _____ () C:\Users\.......-PC\Downloads\FRST.txt 2015-01-16 18:30 - 2015-01-16 18:31 - 01116672 _____ (Farbar) C:\Users\.......-PC\Downloads\FRST.exe 2015-01-16 18:30 - 2015-01-16 18:31 - 01116672 _____ (Farbar) C:\Users\.......-PC\Downloads\FRST(1).exe 2015-01-16 17:05 - 2015-01-16 17:05 - 00212880 _____ () C:\Users\.......-PC\Downloads\TCC_LE_Windows_Command_Prompt_64bit_v13.06_Build_77_TSA1WIDD9.exe 2015-01-16 16:26 - 2015-01-16 16:26 - 00640424 _____ (Akeo Consulting (hxxp://akeo.ie)) C:\Users\.......-PC\Downloads\rufus-1.4.12.exe 2015-01-14 17:44 - 2009-12-16 00:03 - 00002816 _____ () C:\Windows\PFRO.log 2015-01-14 17:27 - 2010-02-11 06:32 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGX.dll 2015-01-14 17:27 - 2010-02-11 06:30 - 00348160 _____ (ATI Technologies, Inc.) C:\Windows\system32\atipdlxx.dll 2015-01-14 17:27 - 2010-02-11 06:30 - 00274432 _____ (ATI Technologies, Inc.) C:\Windows\system32\Oemdspif.dll 2015-01-14 17:27 - 2010-02-11 06:30 - 00159744 _____ () C:\Windows\system32\atitmmxx.dll 2015-01-14 17:27 - 2010-02-11 06:29 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\system32\ati2edxx.dll 2015-01-14 17:27 - 2010-02-11 06:29 - 00012288 _____ (AMD) C:\Windows\system32\atimuixx.dll 2015-01-14 17:27 - 2010-02-11 05:58 - 11513856 _____ (ATI Technologies Inc.) C:\Windows\system32\atioglxx.dll 2015-01-14 17:27 - 2010-02-11 05:48 - 00135168 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2015-01-14 17:27 - 2010-02-11 05:34 - 00053248 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2015-01-14 17:27 - 2009-07-14 02:14 - 04772352 _____ (ATI Technologies Inc. ) C:\Windows\system32\atiumdva.dll 2015-01-14 17:27 - 2009-07-14 02:14 - 04030976 _____ (ATI Technologies Inc. ) C:\Windows\system32\atiumdag.dll 2015-01-14 17:27 - 2009-07-14 02:14 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom32.dll 2015-01-14 17:27 - 2009-07-13 23:09 - 04194816 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2015-01-14 17:27 - 2009-06-10 22:19 - 00069112 _____ () C:\Windows\system32\atiumdva.cap 2015-01-14 17:24 - 2015-01-14 17:31 - 00000000 ____D () C:\Program Files\ATI Technologies 2015-01-14 17:24 - 2009-12-16 00:22 - 00000000 ____D () C:\Program Files\ATI 2015-01-14 17:24 - 2009-07-21 11:41 - 00278528 _____ (ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.dll 2015-01-14 17:24 - 2009-07-21 11:40 - 00733184 _____ (ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.exe 2015-01-14 17:24 - 2009-05-05 00:30 - 00014392 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\Drivers\AtiPcie.sys 2015-01-14 17:16 - 2015-01-14 17:16 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\DriverToolkit 2015-01-14 17:15 - 2015-01-14 17:19 - 00000000 ____D () C:\Program Files\DriverToolkit 2015-01-14 17:15 - 2015-01-14 17:15 - 02448688 _____ (Megaify Software ) C:\Users\.......-PC\Downloads\driver_setup.exe 2015-01-14 16:48 - 2015-01-14 16:48 - 69104008 _____ (SiSoftware ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager [1].exe 2015-01-14 16:47 - 2015-01-14 16:47 - 00823792 _____ ( ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager.exe 2015-01-14 16:46 - 2015-01-14 16:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer.exe 2015-01-14 16:46 - 2015-01-14 16:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer(1).exe 2015-01-14 16:39 - 2015-01-14 16:40 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218(1).exe 2015-01-14 16:37 - 2015-01-14 16:37 - 00000000 _____ () C:\Users\.......-PC\Downloads\cpu-z_1.71-setup-en_CB-DL-Manager.exe 2015-01-13 17:36 - 2015-01-16 16:40 - 00000488 __RSH () C:\ProgramData\ntuser.pol 2015-01-13 17:35 - 2015-01-13 17:35 - 00639400 _____ (Akeo Consulting (hxxp://akeo.ie)) C:\Users\.......-PC\Downloads\rufus.exe 2015-01-13 17:32 - 2015-01-13 17:32 - 01179936 _____ () C:\Users\.......-PC\Downloads\Rufus - CHIP-Installer.exe 2015-01-13 17:12 - 2015-01-13 17:13 - 03852472 _____ () C:\Windows\system32\FNTCACHE.DAT 2015-01-12 16:01 - 2015-01-16 16:31 - 00000672 _____ () C:\Windows\setupact.log 2015-01-12 16:01 - 2015-01-12 16:01 - 00115592 _____ () C:\Users\.......-PC\AppData\Local\GDIPFONTCACHEV1.DAT 2015-01-12 16:01 - 2015-01-12 16:01 - 00000000 _____ () C:\Windows\setuperr.log 2015-01-11 18:52 - 2015-01-11 18:52 - 00019456 _____ () C:\Users\.......-PC\Downloads\launcher32.dll 2015-01-11 18:50 - 2015-01-11 18:50 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218.exe 2015-01-11 18:50 - 2015-01-11 18:50 - 00023456 _____ (Phoenix Technologies) C:\Windows\system32\Drivers\DrvAgent32.sys 2015-01-11 18:50 - 2015-01-11 18:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\eSupport.com 2015-01-11 18:28 - 2015-01-11 18:28 - 01297519 _____ (KC Softwares ) C:\Users\.......-PC\Downloads\ramexpert_nork_CB-DL-Manager [1].exe 2015-01-11 14:42 - 2015-01-11 14:42 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-01-11 14:05 - 2015-01-11 14:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Sparta 2015-01-11 14:05 - 2015-01-11 14:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\sparta111 2015-01-11 14:05 - 2015-01-11 14:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Pirates 2015-01-11 13:15 - 2015-01-11 15:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ImgBurn 2015-01-11 11:56 - 2015-01-11 11:56 - 00001103 _____ () C:\Users\Public\Desktop\DualCoreCenter.lnk 2015-01-11 11:56 - 2006-10-13 08:18 - 00380928 _____ (NVIDIA) C:\Windows\ntuneoem.dll 2015-01-11 11:56 - 2006-10-13 08:18 - 00018216 _____ (NVidia Corp.) C:\Windows\nvoclk64.sys 2015-01-11 11:56 - 2006-10-13 08:18 - 00006912 _____ (NVidia Corp.) C:\Windows\nvoclock.sys 2015-01-11 11:56 - 2006-10-13 08:16 - 00421888 _____ (NVIDIA) C:\Windows\nvsulib.dll 2015-01-11 11:56 - 2006-10-13 08:13 - 01622016 _____ (NVIDIA) C:\Windows\NVBenchMarks.dll 2015-01-11 11:56 - 2006-10-13 08:12 - 00028672 _____ (NVIDIA) C:\Windows\AutoTuneScript.dll 2015-01-11 11:56 - 2006-09-05 14:59 - 00217088 _____ () C:\Windows\NVGfxOgl.dll 2015-01-11 11:56 - 2006-08-21 09:20 - 00045056 _____ (NVIDIA) C:\Windows\NTuneGpu.dll 2015-01-11 11:56 - 2006-06-01 17:22 - 00053248 _____ (NVIDIA Corporation) C:\Windows\Nvgpio.dll 2015-01-11 11:56 - 2005-09-23 16:33 - 01060864 _____ (Microsoft Corporation) C:\Windows\MFC71.dll 2015-01-11 11:56 - 2005-09-23 16:33 - 00499712 _____ (Microsoft Corporation) C:\Windows\msvcp71.dll 2015-01-11 11:56 - 2005-09-23 16:33 - 00348160 _____ (Microsoft Corporation) C:\Windows\msvcr71.dll 2015-01-10 20:56 - 2015-01-10 20:57 - 02191360 _____ () C:\Users\.......-PC\Desktop\adwcleaner_4.107.exe 2015-01-10 17:00 - 2015-01-10 17:00 - 00001881 _____ () C:\Users\Public\Desktop\MSI Live Update 6.lnk 2015-01-10 17:00 - 2015-01-10 17:00 - 00000000 ____D () C:\MSI 2015-01-10 16:57 - 2015-01-10 16:59 - 00013817 _____ () C:\Windows\system32\Utility.xml 2015-01-10 16:56 - 2014-04-30 16:23 - 00011248 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll 2015-01-10 15:17 - 2015-01-10 15:19 - 00000000 _____ () C:\Users\.......-PC\AppData\Local\{9D9B305F-6B8C-4AA5-94D7-474EAA096BC4} 2014-12-24 09:38 - 2014-12-24 09:38 - 00040960 ____N () C:\bootex.log 2014-12-24 09:38 - 2014-12-24 09:38 - 00016648 ____N () C:\bootsqm.dat 2014-12-24 09:38 - 2014-12-24 09:38 - 00000000 __SHD () C:\found.002 2014-12-22 12:49 - 2014-12-22 12:49 - 00000000 ___HD () C:\MediaServer_Temp 2014-12-22 12:48 - 2014-12-22 12:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Wondershare Video Converter Pro 2014-12-22 12:48 - 2014-12-22 12:48 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Wondershare 2014-12-22 12:48 - 2014-12-22 12:48 - 00000000 ____D () C:\Program Files\Common Files\Wondershare 2014-12-22 12:47 - 2014-12-22 13:30 - 00000000 ____D () C:\Program Files\Wondershare 2014-12-22 12:47 - 2014-12-22 13:29 - 00000000 ____D () C:\ProgramData\Wondershare 2014-12-22 12:47 - 2014-12-22 13:01 - 00000000 ____D () C:\ProgramData\Wondershare Video Converter Pro 2014-12-22 12:47 - 2014-10-24 14:16 - 00214528 _____ () C:\Windows\system32\WSCM32.dll 2014-12-22 12:45 - 2014-12-22 12:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\HandBrake 2014-12-22 12:41 - 2014-12-22 12:41 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\4Videosoft Studio 2014-12-22 12:28 - 2014-12-22 12:28 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aiseesoft Studio 2014-12-22 10:32 - 2014-12-22 10:32 - 00000213 _____ () C:\Users\.......-PC\Desktop\Team Fortress 2.url 2014-12-22 10:26 - 2015-01-16 15:35 - 00000000 ____D () C:\Program Files\Steam 2014-12-22 10:26 - 2014-12-22 10:26 - 00000897 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-12-22 10:26 - 2014-12-22 10:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-12-21 16:44 - 2014-12-21 16:44 - 00000000 __RSH () C:\MSDOS.SYS 2014-12-21 16:44 - 2014-12-21 16:44 - 00000000 __RSH () C:\IO.SYS 2014-12-21 12:27 - 2014-12-21 12:27 - 00000000 ____D () C:\Program Files\ESET 2014-12-21 12:13 - 2015-01-16 18:36 - 00000000 ____D () C:\FRST 2014-12-21 11:58 - 2014-12-21 11:58 - 00000083 _____ () C:\Users\.......-PC\Desktop\Neues Textdokument (2).txt 2014-12-20 17:20 - 2014-12-20 17:25 - 00000000 ____D () C:\Program Files\RMPrepUSB 2014-12-20 14:32 - 2014-12-22 11:23 - 00000000 ____D () C:\Users\.......-PC\Desktop\Hausbau 2014-12-20 11:49 - 2014-12-20 14:38 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk 2014-12-20 11:49 - 2014-12-20 11:49 - 00001965 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk 2014-12-20 11:49 - 2014-12-20 11:49 - 00000000 ____D () C:\Program Files\Adobe 2014-12-20 11:32 - 2014-12-20 11:32 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Mael 2014-12-20 11:14 - 2015-01-11 13:14 - 00000373 _____ () C:\Users\.......-PC\AppData\Roaming\burnaware.ini 2014-12-20 11:14 - 2014-12-20 11:14 - 00000988 _____ () C:\Users\Public\Desktop\BurnAware Free.lnk 2014-12-20 11:14 - 2014-12-20 11:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BurnAware Free 2014-12-20 11:14 - 2014-12-20 11:14 - 00000000 ____D () C:\Program Files\BurnAware Free 2014-12-20 10:46 - 2014-12-20 10:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Ashampoo 2014-12-20 10:45 - 2014-12-20 10:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\ashampoo 2014-12-20 10:45 - 2014-12-20 10:45 - 00000000 ____D () C:\ProgramData\ashampoo 2014-12-20 09:15 - 2011-07-11 11:39 - 00324834 _____ () C:\Windows6.1-KB2566584-x86.msu 2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Aimersoft Video Converter Ultimate 2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A} 2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aimersoft 2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Program Files\Common Files\Aimersoft 2014-12-19 20:00 - 2014-12-20 11:11 - 00000000 ____D () C:\Program Files\Aimersoft 2014-12-19 19:50 - 2014-12-19 19:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\tiger-k 2014-12-19 19:49 - 2014-12-19 19:49 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Leawo 2014-12-19 19:49 - 2014-12-19 19:49 - 00000000 ____D () C:\ProgramData\Leawo 2014-12-19 19:49 - 2012-01-10 10:18 - 00066944 _____ (TOSHIBA Corporation) C:\Windows\system32\Drivers\thdudf.sys 2014-12-19 18:44 - 2014-12-19 18:44 - 00001133 _____ () C:\Users\.......-PC\Desktop\Any Video Converter.lnk 2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Anvsoft 2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvsoft 2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\Program Files\Anvsoft 2014-12-19 18:10 - 2014-12-19 19:34 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Microsoft Games 2014-12-19 05:49 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-12-19 05:49 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-12-19 05:49 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-12-19 05:49 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-12-19 05:49 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-12-19 05:49 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-12-19 05:49 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-12-19 05:49 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-12-19 05:49 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-12-19 05:49 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-12-19 05:49 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-12-19 05:49 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-12-19 05:49 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-12-19 05:49 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-12-19 05:49 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-12-19 05:49 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-12-19 05:49 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-12-19 05:49 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-12-19 05:49 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-12-19 05:49 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-12-19 05:49 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-12-19 05:49 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-12-19 05:49 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-12-19 05:49 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-12-19 05:49 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-12-19 05:49 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-12-19 05:49 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-12-19 05:49 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-12-19 05:49 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-12-19 05:49 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-12-19 05:49 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-12-19 05:49 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-12-19 05:49 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-12-19 05:49 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-12-19 05:49 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-12-19 05:49 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-12-19 05:49 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-12-19 05:49 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-12-19 05:49 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-12-19 05:49 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-12-19 05:49 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-12-19 05:49 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-12-19 05:49 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-12-19 05:49 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-12-19 05:49 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-12-19 05:49 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-12-19 05:49 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-12-19 05:49 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-12-19 05:49 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-12-19 05:49 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-12-19 05:49 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2014-12-18 16:49 - 2014-12-21 12:57 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-12-18 16:40 - 2015-01-16 15:39 - 00000000 ____D () C:\Program Files\Common Files\Steam 2014-12-18 16:13 - 2014-12-18 16:13 - 00000000 __SHD () C:\found.001 2014-12-18 05:59 - 2014-12-18 05:59 - 00000000 ____D () C:\SUPERDelete 2014-12-18 05:57 - 2014-12-18 05:57 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\SUPERAntiSpyware.com 2014-12-18 05:57 - 2014-12-18 05:57 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com 2014-12-17 15:55 - 2014-12-17 15:55 - 00000000 ____D () C:\Program Files\Enigma Software Group ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-16 18:38 - 2014-04-20 13:06 - 01153156 _____ () C:\Windows\WindowsUpdate.log 2015-01-16 17:35 - 2010-05-02 06:57 - 00000000 ____D () C:\Program Files\Mozilla Thunderbird 2015-01-16 17:34 - 2014-08-03 12:16 - 00000000 ____D () C:\ProgramData\MFAData 2015-01-16 16:38 - 2014-09-01 14:20 - 00000000 ____D () C:\Users\.......-PC 2015-01-16 16:31 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-01-16 15:19 - 2014-04-30 15:08 - 00000000 ____D () C:\Users\.......-PC\Desktop\video 2015-01-15 19:54 - 2009-07-14 05:34 - 00037504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-01-15 19:54 - 2009-07-14 05:34 - 00037504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-01-15 19:25 - 2014-09-01 14:20 - 00000000 ___RD () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-01-15 19:08 - 2013-08-06 17:45 - 00000000 ____D () C:\Windows\pss 2015-01-12 17:45 - 2014-11-30 18:14 - 00007606 _____ () C:\Users\.......-PC\AppData\Local\Resmon.ResmonCfg 2015-01-11 18:17 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\LogFiles 2015-01-11 15:07 - 2014-01-23 17:49 - 00000000 ___DC () C:\AdwCleaner 2015-01-11 15:02 - 2010-05-02 06:58 - 00000000 ___RD () C:\Users\.......-PC\Desktop\support 2015-01-11 14:51 - 2014-11-22 18:21 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\JAM Software 2015-01-11 11:56 - 2010-05-02 07:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI 2015-01-11 11:56 - 2010-05-02 07:06 - 00000000 ____D () C:\Program Files\MSI 2015-01-10 20:54 - 2014-10-26 16:25 - 00000000 ____D () C:\Users\.......-PC\Desktop\POwer 2015-01-10 17:35 - 2014-08-03 12:20 - 00000927 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2015-01-10 17:35 - 2014-08-03 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-12-22 14:16 - 2014-09-01 14:20 - 00001397 _____ () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-12-22 14:16 - 2014-03-28 17:20 - 00002097 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-12-22 14:16 - 2012-01-22 11:26 - 00001035 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-12-22 14:16 - 2010-05-02 06:51 - 00001023 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-12-22 10:15 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\NDF 2014-12-21 16:49 - 2014-11-01 19:29 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\vlc 2014-12-21 16:45 - 2010-05-02 09:08 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-12-21 16:45 - 2010-05-02 09:08 - 00000000 ____D () C:\Program Files\Microsoft Office 2014-12-21 16:45 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-12-21 16:44 - 2014-05-05 14:57 - 00000033 _____ () C:\Windows\Nscal.ini 2014-12-21 16:44 - 2014-05-05 14:51 - 00302592 _____ (InstallShield Corporation, Inc.) C:\Windows\unin0407.exe 2014-12-21 16:44 - 2009-07-14 09:56 - 00000000 ____D () C:\Windows\ShellNew 2014-12-21 16:40 - 2014-11-05 17:10 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\DVDVideoSoft 2014-12-21 16:26 - 2013-06-04 19:46 - 00000000 __RHD () C:\Users\Public\Libraries 2014-12-20 11:53 - 2013-05-10 12:32 - 00000000 ____D () C:\ProgramData\Adobe 2014-12-20 11:52 - 2014-11-03 05:38 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Adobe 2014-12-20 11:52 - 2014-09-01 14:20 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Adobe 2014-12-20 11:49 - 2014-06-09 11:40 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-12-20 10:59 - 2013-01-18 15:50 - 00000000 ____D () C:\Program Files\Ashampoo 2014-12-17 16:50 - 2014-09-01 14:24 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Thunderbird 2014-12-17 15:40 - 2009-07-14 05:53 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT Some content of TEMP: ==================== C:\Users\...\AppData\Local\Temp\avgnt.exe C:\Users\...\AppData\Local\Temp\DseShExt-x86.dll C:\Users\...\AppData\Local\Temp\SDShelEx-win32.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => File is digitally signed C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-12-20 15:05 ==================== End Of Log ============================ --- --- --- Danke dür deine hilfe |
16.01.2015, 19:45 | #4 |
/// the machine /// TB-Ausbilder | RUN.dll fehler hi, Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
17.01.2015, 17:34 | #5 |
| RUN.dll fehler hallo schrauber ich kann die Combofix datei nicht ausfürhren da mein PC nicht startet.Also er lädt immer stürzt dan mit einem Bluescreen ab, es ist ein F4 Fehler kann es daran liegen das ich mein PC während des entpackens von Combofix ausgeschaltet hab.Ich vermute es zwar nicht weil F4 ja ein Hardware Fehler ist hast du irgeneine Idee Danke dir |
17.01.2015, 22:38 | #6 |
/// the machine /// TB-Ausbilder | RUN.dll fehler Startet er gar nicht mehr? Auch nicht im Safe Mode? Scan mit Farbar's Recovery Scan Tool (Recovery Mode - Windows Vista, 7, 8) Hinweise für Windows 8-Nutzer: Anleitung 1 (FRST-Variante) und Anleitung 2 (zweiter Teil)
__________________ --> RUN.dll fehler |
18.01.2015, 11:58 | #7 |
| RUN.dll fehler hallo nein er startet gar nicht mehr ich werde deine schritte befolgen und danke dir für deine hilfe Hier die dateien musste sie teilen waren zu gross Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-01-2015 Ran by SYSTEM on MININT-067FJHK on 16-12-2009 20:14:11 Running from F:\ Platform: Windows 7 Ultimate (X86) OS Language: English (United States) Internet Explorer Version 10 Boot Mode: Recovery The current controlset is ControlSet004 ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log. Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [5188112 2014-12-16] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [Live Update] => C:\Program Files\MSI\Live Update\Live Update.exe [3484624 2014-11-27] (Micro-Star International) HKU\...\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\system32\Macromed\Flash\FlashUtil32_14_0_0_145_Plugin.exe -update plugin HKU\...\...\Policies\system: [LogonHoursAction] 2 HKU\...\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\.......-PC\...\Policies\system: [LogonHoursAction] 2 HKU\.......-PC\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\.......-PC\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 Startup: C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Firefox.lnk ShortcutTarget: Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 AcrSch2Svc; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [661072 2009-11-11] (Acronis) S2 afcdpsrv; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [2480048 2010-07-24] (Acronis) S2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3247120 2014-12-16] (AVG Technologies CZ, s.r.o.) S2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [289328 2014-12-16] (AVG Technologies CZ, s.r.o.) S2 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [409304 2014-10-08] (BlueStack Systems, Inc.) S2 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [388824 2014-10-08] (BlueStack Systems, Inc.) S2 BstHdUpdaterSvc; C:\Program Files\BlueStacks\HD-UpdaterService.exe [782040 2014-10-08] (BlueStack Systems, Inc.) S2 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [142432 2012-02-20] (SEIKO EPSON CORPORATION) S3 FlexNet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [1074480 2014-09-22] (Flexera Software LLC) S2 MSI_LiveUpdate_Service; C:\Program Files\MSI\Live Update\MSI_LiveUpdate_Service.exe [1732048 2014-11-27] (Micro-Star International) S2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [75136 2014-03-05] () S3 WatAdminSvc; C:\Windows\system32\Wat\WatAdminSvc.exe [1343400 2013-11-18] () S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-26] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S2 AegisP; C:\Windows\System32\DRIVERS\AegisP.sys [21035 2012-05-17] (Meetinghouse Data Communications) S1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [121624 2014-06-30] (AVG Technologies CZ, s.r.o.) S1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [200984 2014-07-21] (AVG Technologies CZ, s.r.o.) S0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [147736 2014-06-17] (AVG Technologies CZ, s.r.o.) S1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [21272 2014-06-17] (AVG Technologies CZ, s.r.o.) S1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [189720 2014-10-24] (AVG Technologies CZ, s.r.o.) S0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [241944 2014-06-17] (AVG Technologies CZ, s.r.o.) S0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [98584 2014-10-29] (AVG Technologies CZ, s.r.o.) S0 AvgRkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27416 2014-06-17] (AVG Technologies CZ, s.r.o.) S1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [197400 2014-10-20] (AVG Technologies CZ, s.r.o.) S1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [42784 2014-11-13] (AVG Technologies) S2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [112344 2014-10-08] (BlueStack Systems) S0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () S3 NTIOLib_1_0_4; C:\Program Files\MSI\Live Update\NTIOLib.sys [7680 2010-10-20] (MSI) S3 RTLWUSB; C:\Windows\System32\DRIVERS\RTL8187.sys [172416 2006-04-21] (Realtek Semiconductor Corporation ) S3 SjyPkt; C:\Windows\System32\Drivers\SjyPkt.sys [13532 2002-10-01] (Windows (R) 2000 DDK provider) S3 SMARTMouseFilterx86; C:\Windows\System32\DRIVERS\SMARTMouseFilterx86.sys [8192 2014-03-25] (SMART Technologies) S3 SMARTVHidMini2000x86; C:\Windows\System32\DRIVERS\SMARTVHidMini2000x86.sys [7680 2014-03-25] (SMART Technologies) S3 SMARTVTabletPCx86; C:\Windows\System32\DRIVERS\SMARTVTabletPCx86.sys [15872 2014-03-25] (SMART Technologies ULC) S0 tdrpman258; C:\Windows\System32\DRIVERS\tdrpm258.sys [911680 2010-07-24] (Acronis) S3 DualCoreCenter; \??\C:\Program Files\MSI\DualCoreCenter\NTGLM7X.sys [X] S2 eamonm; system32\DRIVERS\eamonm.sys [X] S3 fsbl; \??\C:\Program Files\F-Secure\apps\ComputerSecurity\Anti-Virus\fsbldrv.sys [X] S1 ntiomin; No ImagePath S3 OSFMount; \??\C:\Users\.......-PC\AppData\Local\Temp\Rar$EXa0.041\bin\OSFMount.sys [X] S3 RushTopDevice2; \??\C:\Program Files\MSI\DualCoreCenter\RushTop.sys [X] S3 SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2015x\WNt600x86\Sandra.sys [X] S2 SPDRIVER_1.38.0.1434; \??\C:\Program Files\ShopperPro\JSDriver\1.38.0.1434\jsdrv.sys [X] S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X] S3 tsusbhub; system32\drivers\tsusbhub.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] S3 XDva401; \??\C:\Windows\system32\XDva401.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-17 06:24 - 2009-12-16 08:15 - 938946094 _____ () C:\Windows\MEMORY.DMP 2015-01-16 10:55 - 2015-01-16 10:55 - 05609736 ____R (Swearware) C:\Users\.......-PC\Desktop\ComboFix.exe 2015-01-16 09:41 - 2015-01-16 09:45 - 00034347 _____ () C:\Users\.......-PC\Downloads\Addition.txt 2015-01-16 09:32 - 2015-01-16 09:45 - 00041486 _____ () C:\Users\.......-PC\Downloads\FRST.txt 2015-01-16 09:30 - 2015-01-16 09:31 - 01116672 _____ (Farbar) C:\Users\.......-PC\Downloads\FRST.exe 2015-01-16 09:30 - 2015-01-16 09:31 - 01116672 _____ (Farbar) C:\Users\.......-PC\Downloads\FRST(1).exe 2015-01-16 07:26 - 2015-01-16 07:26 - 00640424 _____ (Akeo Consulting (Akeo Consulting)) C:\Users\.......-PC\Downloads\rufus-1.4.12.exe 2015-01-14 08:44 - 2009-12-16 08:15 - 00085346 _____ () C:\Windows\PFRO.log 2015-01-14 08:27 - 2010-02-10 21:32 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\System32\ATIDEMGX.dll 2015-01-14 08:27 - 2010-02-10 21:30 - 00348160 _____ (ATI Technologies, Inc.) C:\Windows\System32\atipdlxx.dll 2015-01-14 08:27 - 2010-02-10 21:30 - 00274432 _____ (ATI Technologies, Inc.) C:\Windows\System32\Oemdspif.dll 2015-01-14 08:27 - 2010-02-10 21:30 - 00159744 _____ () C:\Windows\System32\atitmmxx.dll 2015-01-14 08:27 - 2010-02-10 21:29 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\System32\ati2edxx.dll 2015-01-14 08:27 - 2010-02-10 21:29 - 00012288 _____ (AMD) C:\Windows\System32\atimuixx.dll 2015-01-14 08:27 - 2010-02-10 20:58 - 11513856 _____ (ATI Technologies Inc.) C:\Windows\System32\atioglxx.dll 2015-01-14 08:27 - 2010-02-10 20:48 - 00135168 _____ (Advanced Micro Devices, Inc.) C:\Windows\System32\atiadlxx.dll 2015-01-14 08:27 - 2010-02-10 20:34 - 00053248 _____ (ATI Technologies Inc.) C:\Windows\System32\Drivers\ati2erec.dll 2015-01-14 08:27 - 2009-07-13 17:14 - 04772352 _____ (ATI Technologies Inc. ) C:\Windows\System32\atiumdva.dll 2015-01-14 08:27 - 2009-07-13 17:14 - 04030976 _____ (ATI Technologies Inc. ) C:\Windows\System32\atiumdag.dll 2015-01-14 08:27 - 2009-07-13 17:14 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\System32\amdpcom32.dll 2015-01-14 08:27 - 2009-07-13 14:09 - 04194816 _____ (ATI Technologies Inc.) C:\Windows\System32\Drivers\atikmdag.sys 2015-01-14 08:27 - 2009-06-10 13:19 - 00069112 _____ () C:\Windows\System32\atiumdva.cap 2015-01-14 08:24 - 2015-01-14 08:31 - 00000000 ____D () C:\Program Files\ATI Technologies 2015-01-14 08:24 - 2009-12-15 15:22 - 00000000 ____D () C:\Program Files\ATI 2015-01-14 08:24 - 2009-07-21 02:41 - 00278528 _____ (ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.dll 2015-01-14 08:24 - 2009-07-21 02:40 - 00733184 _____ (ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe 2015-01-14 08:24 - 2009-05-04 15:30 - 00014392 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\Drivers\AtiPcie.sys 2015-01-14 08:16 - 2015-01-14 08:16 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\DriverToolkit 2015-01-14 08:15 - 2015-01-14 08:19 - 00000000 ____D () C:\Program Files\DriverToolkit 2015-01-14 08:15 - 2015-01-14 08:15 - 02448688 _____ (Megaify Software ) C:\Users\.......-PC\Downloads\driver_setup.exe 2015-01-14 07:48 - 2015-01-14 07:48 - 69104008 _____ (SiSoftware ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager [1].exe 2015-01-14 07:47 - 2015-01-14 07:47 - 00823792 _____ ( ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager.exe 2015-01-14 07:46 - 2015-01-14 07:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer.exe 2015-01-14 07:46 - 2015-01-14 07:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer(1).exe 2015-01-14 07:39 - 2015-01-14 07:40 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218(1).exe 2015-01-14 07:37 - 2015-01-14 07:37 - 00000000 _____ () C:\Users\.......-PC\Downloads\cpu-z_1.71-setup-en_CB-DL-Manager.exe 2015-01-13 08:36 - 2015-01-16 07:40 - 00000488 __RSH () C:\ProgramData\ntuser.pol 2015-01-13 08:35 - 2015-01-13 08:35 - 00639400 _____ (Akeo Consulting (Akeo Consulting)) C:\Users\.......-PC\Downloads\rufus.exe 2015-01-13 08:32 - 2015-01-13 08:32 - 01179936 _____ () C:\Users\.......-PC\Downloads\Rufus - CHIP-Installer.exe 2015-01-13 08:12 - 2015-01-13 08:13 - 03852472 _____ () C:\Windows\System32\FNTCACHE.DAT 2015-01-12 07:01 - 2015-01-16 07:31 - 00000672 _____ () C:\Windows\setupact.log 2015-01-12 07:01 - 2015-01-12 07:01 - 00115592 _____ () C:\Users\.......-PC\AppData\Local\GDIPFONTCACHEV1.DAT 2015-01-12 07:01 - 2015-01-12 07:01 - 00000000 _____ () C:\Windows\setuperr.log 2015-01-11 09:52 - 2015-01-11 09:52 - 00019456 _____ () C:\Users\.......-PC\Downloads\launcher32.dll 2015-01-11 09:50 - 2015-01-11 09:50 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218.exe 2015-01-11 09:50 - 2015-01-11 09:50 - 00023456 _____ (Phoenix Technologies) C:\Windows\System32\Drivers\DrvAgent32.sys 2015-01-11 09:50 - 2015-01-11 09:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\eSupport.com 2015-01-11 09:28 - 2015-01-11 09:28 - 01297519 _____ (KC Softwares ) C:\Users\.......-PC\Downloads\ramexpert_nork_CB-DL-Manager [1].exe 2015-01-11 05:42 - 2015-01-11 05:42 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-01-11 05:05 - 2015-01-11 05:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Sparta 2015-01-11 05:05 - 2015-01-11 05:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\sparta111 2015-01-11 05:05 - 2015-01-11 05:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Pirates 2015-01-11 02:56 - 2006-10-12 23:18 - 00380928 _____ (NVIDIA) C:\Windows\ntuneoem.dll 2015-01-11 02:56 - 2006-10-12 23:18 - 00018216 _____ (NVidia Corp.) C:\Windows\nvoclk64.sys 2015-01-11 02:56 - 2006-10-12 23:18 - 00006912 _____ (NVidia Corp.) C:\Windows\nvoclock.sys 2015-01-11 02:56 - 2006-10-12 23:16 - 00421888 _____ (NVIDIA) C:\Windows\nvsulib.dll 2015-01-11 02:56 - 2006-10-12 23:13 - 01622016 _____ (NVIDIA) C:\Windows\NVBenchMarks.dll 2015-01-11 02:56 - 2006-10-12 23:12 - 00028672 _____ (NVIDIA) C:\Windows\AutoTuneScript.dll 2015-01-11 02:56 - 2006-09-05 05:59 - 00217088 _____ () C:\Windows\NVGfxOgl.dll 2015-01-11 02:56 - 2006-08-21 00:20 - 00045056 _____ (NVIDIA) C:\Windows\NTuneGpu.dll 2015-01-11 02:56 - 2006-06-01 08:22 - 00053248 _____ (NVIDIA Corporation) C:\Windows\Nvgpio.dll 2015-01-11 02:56 - 2005-09-23 07:33 - 01060864 _____ (Microsoft Corporation) C:\Windows\MFC71.dll 2015-01-11 02:56 - 2005-09-23 07:33 - 00499712 _____ (Microsoft Corporation) C:\Windows\msvcp71.dll 2015-01-11 02:56 - 2005-09-23 07:33 - 00348160 _____ (Microsoft Corporation) C:\Windows\msvcr71.dll 2015-01-10 11:56 - 2015-01-10 11:57 - 02191360 _____ () C:\Users\.......-PC\Desktop\adwcleaner_4.107.exe 2015-01-10 08:00 - 2015-01-10 08:00 - 00001881 _____ () C:\Users\Public\Desktop\MSI Live Update 6.lnk 2015-01-10 08:00 - 2015-01-10 08:00 - 00000000 ____D () C:\MSI 2015-01-10 07:57 - 2015-01-10 07:59 - 00013817 _____ () C:\Windows\System32\Utility.xml 2015-01-10 07:56 - 2014-04-30 07:23 - 00011248 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll 2015-01-10 06:17 - 2015-01-10 06:19 - 00000000 _____ () C:\Users\.......-PC\AppData\Local\{9D9B305F-6B8C-4AA5-94D7-474EAA096BC4} 2014-12-24 00:38 - 2014-12-24 00:38 - 00016648 ____N () C:\bootsqm.dat 2014-12-24 00:38 - 2014-12-24 00:38 - 00000000 __SHD () C:\found.002 2014-12-22 03:49 - 2014-12-22 03:49 - 00000000 ___HD () C:\MediaServer_Temp 2014-12-22 03:48 - 2014-12-22 03:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Wondershare Video Converter Pro 2014-12-22 03:48 - 2014-12-22 03:48 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Wondershare 2014-12-22 03:48 - 2014-12-22 03:48 - 00000000 ____D () C:\Program Files\Common Files\Wondershare 2014-12-22 03:47 - 2014-12-22 04:30 - 00000000 ____D () C:\Program Files\Wondershare 2014-12-22 03:47 - 2014-12-22 04:29 - 00000000 ____D () C:\ProgramData\Wondershare 2014-12-22 03:47 - 2014-12-22 04:01 - 00000000 ____D () C:\ProgramData\Wondershare Video Converter Pro 2014-12-22 03:47 - 2014-10-24 05:16 - 00214528 _____ () C:\Windows\System32\WSCM32.dll 2014-12-22 03:45 - 2014-12-22 03:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\HandBrake 2014-12-22 03:41 - 2014-12-22 03:41 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\4Videosoft Studio 2014-12-22 03:28 - 2014-12-22 03:28 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aiseesoft Studio 2014-12-22 01:32 - 2014-12-22 01:32 - 00000213 _____ () C:\Users\.......-PC\Desktop\Team Fortress 2.url 2014-12-22 01:26 - 2015-01-16 06:35 - 00000000 ____D () C:\Program Files\Steam 2014-12-22 01:26 - 2014-12-22 01:26 - 00000897 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-12-21 07:44 - 2014-12-21 07:44 - 00000000 __RSH () C:\MSDOS.SYS 2014-12-21 07:44 - 2014-12-21 07:44 - 00000000 __RSH () C:\IO.SYS 2014-12-21 03:27 - 2014-12-21 03:27 - 00000000 ____D () C:\Program Files\ESET 2014-12-21 03:13 - 2009-12-16 20:14 - 00000000 ____D () C:\FRST 2014-12-21 02:58 - 2014-12-21 02:58 - 00000083 _____ () C:\Users\.......-PC\Desktop\Neues Textdokument (2).txt 2014-12-20 08:20 - 2014-12-20 08:25 - 00000000 ____D () C:\Program Files\RMPrepUSB 2014-12-20 05:32 - 2014-12-22 02:23 - 00000000 ____D () C:\Users\.......-PC\Desktop\Hausbau 2014-12-20 02:49 - 2014-12-20 02:49 - 00001965 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk 2014-12-20 02:49 - 2014-12-20 02:49 - 00000000 ____D () C:\Program Files\Adobe 2014-12-20 02:32 - 2014-12-20 02:32 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Mael 2014-12-20 02:14 - 2015-01-11 04:14 - 00000373 _____ () C:\Users\.......-PC\AppData\Roaming\burnaware.ini 2014-12-20 02:14 - 2014-12-20 02:14 - 00000988 _____ () C:\Users\Public\Desktop\BurnAware Free.lnk 2014-12-20 02:14 - 2014-12-20 02:14 - 00000000 ____D () C:\Program Files\BurnAware Free 2014-12-20 01:46 - 2014-12-20 01:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Ashampoo 2014-12-20 01:45 - 2014-12-20 01:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\ashampoo 2014-12-20 01:45 - 2014-12-20 01:45 - 00000000 ____D () C:\ProgramData\ashampoo 2014-12-20 00:15 - 2011-07-11 02:39 - 00324834 _____ () C:\Windows6.1-KB2566584-x86.msu 2014-12-19 11:01 - 2014-12-19 11:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Aimersoft Video Converter Ultimate 2014-12-19 11:01 - 2014-12-19 11:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A} 2014-12-19 11:01 - 2014-12-19 11:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aimersoft 2014-12-19 11:01 - 2014-12-19 11:01 - 00000000 ____D () C:\Program Files\Common Files\Aimersoft 2014-12-19 11:00 - 2014-12-20 02:11 - 00000000 ____D () C:\Program Files\Aimersoft 2014-12-19 10:50 - 2014-12-19 10:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\tiger-k 2014-12-19 10:49 - 2014-12-19 10:49 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Leawo 2014-12-19 10:49 - 2014-12-19 10:49 - 00000000 ____D () C:\ProgramData\Leawo 2014-12-19 10:49 - 2012-01-10 01:18 - 00066944 _____ (TOSHIBA Corporation) C:\Windows\System32\Drivers\thdudf.sys 2014-12-19 09:44 - 2014-12-19 09:44 - 00001133 _____ () C:\Users\.......-PC\Desktop\Any Video Converter.lnk 2014-12-19 09:44 - 2014-12-19 09:44 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Anvsoft 2014-12-19 09:44 - 2014-12-19 09:44 - 00000000 ____D () C:\Program Files\Anvsoft 2014-12-19 09:10 - 2014-12-19 10:34 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Microsoft Games 2014-12-18 20:49 - 2010-02-04 01:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_6.dll 2014-12-18 20:49 - 2010-02-04 01:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_6.dll 2014-12-18 20:49 - 2010-02-04 01:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_4.dll 2014-12-18 20:49 - 2010-02-04 01:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_7.dll 2014-12-18 20:49 - 2009-09-04 08:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_5.dll 2014-12-18 20:49 - 2009-09-04 08:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_5.dll 2014-12-18 20:49 - 2009-09-04 08:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_3.dll 2014-12-18 20:49 - 2009-09-04 08:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\System32\d3dcsx_42.dll 2014-12-18 20:49 - 2009-09-04 08:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_42.dll 2014-12-18 20:49 - 2009-09-04 08:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_42.dll 2014-12-18 20:49 - 2009-09-04 08:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\System32\d3dx11_42.dll 2014-12-18 20:49 - 2009-03-16 05:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_4.dll 2014-12-18 20:49 - 2009-03-16 05:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_4.dll 2014-12-18 20:49 - 2009-03-16 05:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_6.dll 2014-12-18 20:49 - 2009-03-09 06:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_41.dll 2014-12-18 20:49 - 2008-10-27 01:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_3.dll 2014-12-18 20:49 - 2008-10-27 01:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_3.dll 2014-12-18 20:49 - 2008-10-27 01:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_2.dll 2014-12-18 20:49 - 2008-10-27 01:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_5.dll 2014-12-18 20:49 - 2008-10-14 21:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_40.dll 2014-12-18 20:49 - 2008-10-14 21:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_40.dll 2014-12-18 20:49 - 2008-10-14 21:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_40.dll 2014-12-18 20:49 - 2008-07-31 01:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_2.dll 2014-12-18 20:49 - 2008-07-31 01:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_1.dll 2014-12-18 20:49 - 2008-07-31 01:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_2.dll 2014-12-18 20:49 - 2008-07-10 02:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_39.dll 2014-12-18 20:49 - 2008-07-10 02:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_39.dll 2014-12-18 20:49 - 2008-07-10 02:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_39.dll 2014-12-18 20:49 - 2008-05-30 05:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_1.dll 2014-12-18 20:49 - 2008-05-30 05:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_1.dll 2014-12-18 20:49 - 2008-05-30 05:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_0.dll 2014-12-18 20:49 - 2008-05-30 05:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_4.dll 2014-12-18 20:49 - 2008-05-30 05:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_38.dll 2014-12-18 20:49 - 2008-05-30 05:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_38.dll 2014-12-18 20:49 - 2008-05-30 05:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_38.dll 2014-12-18 20:49 - 2008-03-05 07:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_0.dll 2014-12-18 20:49 - 2008-03-05 07:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_0.dll 2014-12-18 20:49 - 2008-03-05 07:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_3.dll 2014-12-18 20:49 - 2008-03-05 06:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_37.dll 2014-12-18 20:49 - 2008-03-05 06:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_37.dll 2014-12-18 20:49 - 2008-02-05 14:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_37.dll 2014-12-18 20:49 - 2007-10-21 18:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_10.dll 2014-12-18 20:49 - 2007-10-21 18:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_2.dll 2014-12-18 20:49 - 2007-10-12 06:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_36.dll 2014-12-18 20:49 - 2007-10-12 06:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_36.dll 2014-12-18 20:49 - 2007-10-02 00:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_36.dll 2014-12-18 20:49 - 2007-07-19 15:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_9.dll 2014-12-18 20:49 - 2007-07-19 09:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_35.dll 2014-12-18 20:49 - 2007-07-19 09:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_35.dll 2014-12-18 20:49 - 2007-07-19 09:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_35.dll 2014-12-18 20:49 - 2007-06-20 11:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_8.dll 2014-12-18 07:40 - 2015-01-16 06:39 - 00000000 ____D () C:\Program Files\Common Files\Steam 2014-12-18 07:13 - 2014-12-18 07:13 - 00000000 __SHD () C:\found.001 2014-12-17 20:59 - 2014-12-17 20:59 - 00000000 ____D () C:\SUPERDelete 2014-12-17 20:57 - 2014-12-17 20:57 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\SUPERAntiSpyware.com 2014-12-17 20:57 - 2014-12-17 20:57 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com 2014-12-17 06:55 - 2014-12-17 06:55 - 00000000 ____D () C:\Program Files\Enigma Software Group 2014-12-15 07:54 - 2014-11-03 00:40 - 00055464 _____ (Elex do Brasil Participações Ltda) C:\Windows\System32\Drivers\iSafeNetFilter.sys 2014-12-14 08:15 - 2014-12-14 08:15 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Nitro PDF 2014-12-13 07:51 - 2007-05-16 07:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_34.dll 2014-12-13 07:51 - 2007-05-16 07:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_34.dll 2014-12-13 07:51 - 2007-05-16 07:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_34.dll 2014-12-13 07:51 - 2007-04-04 09:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_7.dll 2014-12-13 07:51 - 2007-04-04 09:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_3.dll 2014-12-13 07:51 - 2007-03-15 07:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_33.dll 2014-12-13 07:51 - 2007-03-12 07:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_33.dll 2014-12-13 07:51 - 2007-03-12 07:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_33.dll 2014-12-13 07:51 - 2007-03-05 03:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\System32\x3daudio1_1.dll 2014-12-13 07:51 - 2007-01-24 06:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_6.dll 2014-12-13 07:51 - 2006-12-08 03:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_5.dll 2014-12-13 07:51 - 2006-11-29 04:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10.dll 2014-12-13 07:51 - 2006-09-28 07:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_31.dll 2014-12-13 07:51 - 2006-09-28 07:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_4.dll 2014-12-13 07:51 - 2006-07-28 00:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_3.dll 2014-12-13 07:51 - 2006-07-28 00:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_2.dll 2014-12-13 07:51 - 2006-05-30 22:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_2.dll 2014-12-13 07:51 - 2006-03-31 03:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_30.dll 2014-12-13 07:51 - 2006-03-31 03:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_1.dll 2014-12-13 07:51 - 2006-03-31 03:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_1.dll 2014-12-13 07:51 - 2006-02-02 23:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_29.dll 2014-12-13 07:51 - 2006-02-02 23:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_0.dll 2014-12-13 07:51 - 2006-02-02 23:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\System32\x3daudio1_0.dll 2014-12-13 07:51 - 2005-12-05 09:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_28.dll 2014-12-13 07:51 - 2005-07-22 10:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_27.dll 2014-12-13 07:51 - 2005-05-26 06:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_26.dll 2014-12-13 07:51 - 2005-03-18 08:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_25.dll 2014-12-13 07:51 - 2005-02-05 10:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_24.dll 2014-12-13 07:50 - 2014-12-13 07:50 - 00000324 _____ () C:\Windows\game.ini 2014-12-13 07:44 - 2014-12-13 07:44 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Skype 2014-12-13 07:43 - 2014-12-13 07:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Skype 2014-12-12 06:32 - 2014-12-12 06:32 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\dvdcss 2014-12-11 09:22 - 2014-12-11 09:22 - 00000000 ____D () C:\Windows\CheckSur 2014-12-09 09:58 - 2014-12-09 10:17 - 00001839 _____ () C:\Users\.......-PC\Desktop\CheckDrive.lnk 2014-12-09 09:58 - 2014-12-09 10:17 - 00000000 ____D () C:\Program Files\CheckDrive 2014-12-08 06:30 - 2014-12-08 06:30 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\CrashRpt 2014-12-08 06:29 - 2014-12-08 06:29 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Smartbar 2014-12-08 06:28 - 2014-12-08 06:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Pro PC Cleaner 2014-12-08 06:28 - 2014-12-08 06:28 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Pro_PC_Cleaner 2014-12-07 09:37 - 2014-12-07 09:37 - 00018620 _____ () C:\Windows\System32\CCCInstall_201412071837316367.log 2014-12-07 08:56 - 2014-12-07 08:56 - 00000000 ____D () C:\ATI 2014-12-07 06:20 - 2014-12-07 06:20 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\ATI 2014-12-07 06:20 - 2014-12-07 06:20 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\ATI 2014-12-07 06:20 - 2014-12-07 06:20 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\AMD 2014-12-07 06:19 - 2014-12-07 06:19 - 00065940 _____ () C:\Windows\System32\CCCInstall_201412071519130422.log 2014-12-07 06:17 - 2014-12-07 08:59 - 00000000 ____D () C:\ProgramData\AMD 2014-12-07 05:12 - 2014-12-07 05:52 - 00000000 ____D () C:\AMD 2014-12-07 04:01 - 2014-12-07 04:01 - 00001784 _____ () C:\Users\Public\Desktop\Apps.lnk 2014-12-07 03:58 - 2014-12-07 03:58 - 00000000 ____D () C:\ProgramData\BlueStacks 2014-12-07 03:58 - 2014-12-07 03:58 - 00000000 ____D () C:\Program Files\BlueStacks 2014-12-07 03:57 - 2014-12-07 03:57 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Bluestacks 2014-12-07 03:48 - 2014-12-13 10:24 - 00003028 _____ () C:\Windows\System32\debug.log 2014-11-30 09:14 - 2015-01-16 10:28 - 00007606 _____ () C:\Users\.......-PC\AppData\Local\Resmon.ResmonCfg 2014-11-25 08:06 - 2010-10-16 02:59 - 02788816 _____ (Adobe Systems, Inc.) C:\Users\.......-PC\Desktop\FP_PL_PFS_INSTALLER.exe 2014-11-25 07:59 - 2014-11-25 07:59 - 00783424 _____ () C:\Windows\pkeyconfig.xrm-ms 2014-11-25 07:58 - 2014-11-26 10:30 - 00000000 ____D () C:\Users\.......-PC\Desktop\Windows7Loader 2014-11-23 19:56 - 2014-11-23 19:56 - 00001052 _____ () C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk 2014-11-23 19:56 - 2014-11-23 19:56 - 00000000 ____D () C:\Program Files\Oracle 2014-11-23 19:56 - 2014-05-16 06:25 - 00204064 _____ (Oracle Corporation) C:\Windows\System32\Drivers\VBoxDrv.sys 2014-11-23 19:56 - 2014-05-16 06:24 - 00104736 _____ (Oracle Corporation) C:\Windows\System32\Drivers\VBoxUSBMon.sys 2014-11-23 19:50 - 2014-11-23 20:16 - 00000000 ____D () C:\Program Files\Andy 2014-11-23 08:54 - 2014-11-23 08:54 - 00000000 ____D () C:\ProgramData\4001812108 2014-11-23 08:53 - 2014-11-23 08:53 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\DriverFinder 2014-11-23 08:45 - 2014-11-23 08:50 - 00000000 ____D () C:\Program Files\DriverFinder 2014-11-23 08:35 - 2014-11-23 08:50 - 00000000 ____D () C:\SocketeQ 2014-11-23 07:41 - 2014-11-23 07:41 - 00000008 _____ () C:\Users\Public\youwave_size 2014-11-23 04:28 - 2014-11-23 04:28 - 00000000 ____D () C:\Program Files\Convar 2014-11-22 09:26 - 2014-11-22 10:56 - 00000000 ___HD () C:\Users\.......-PC\AppData\Roaming\IFViewer 2014-11-22 09:21 - 2015-01-11 05:51 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\JAM Software 2014-11-22 02:46 - 2014-11-22 02:47 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Apps\Windows 7 USB DVD Download Tool 2014-11-22 02:46 - 2014-11-22 02:46 - 00002585 _____ () C:\Users\.......-PC\Desktop\Windows 7 USB DVD Download Tool.lnk 2014-11-22 02:44 - 2014-11-22 02:47 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\ImgBurn 2014-11-22 02:36 - 2014-11-22 02:36 - 00000000 ____D () C:\Program Files\ImgBurn 2014-11-20 08:43 - 2014-11-20 08:43 - 00000880 _____ () C:\Users\.......-PC\Desktop\Robot Karol.lnk 2014-11-20 08:43 - 2014-11-20 08:43 - 00000000 ____D () C:\Program Files\RobotKarol 2014-11-19 06:46 - 2014-11-10 18:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\System32\kerberos.dll 2014-11-19 06:46 - 2014-11-10 18:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\System32\pku2u.dll 2014-11-13 06:23 - 2014-11-23 06:09 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\AVG Web TuneUp 2014-11-13 06:23 - 2014-11-13 06:23 - 00042784 _____ (AVG Technologies) C:\Windows\System32\Drivers\avgtpx86.sys 2014-11-13 06:23 - 2014-11-13 06:23 - 00000000 ____D () C:\ProgramData\AVG Web TuneUp 2014-11-13 06:23 - 2014-11-13 06:23 - 00000000 ____D () C:\Program Files\AVG Web TuneUp 2014-11-13 05:55 - 2014-10-17 17:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\System32\oleaut32.dll 2014-11-13 05:55 - 2014-10-13 17:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\System32\msi.dll 2014-11-13 05:55 - 2014-10-09 16:45 - 02379264 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys 2014-11-13 05:55 - 2014-10-02 17:44 - 00475136 _____ (Microsoft Corporation) C:\Windows\System32\audiosrv.dll 2014-11-13 05:55 - 2014-10-02 17:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\System32\AUDIOKSE.dll 2014-11-13 05:55 - 2014-10-02 17:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\System32\AudioEng.dll 2014-11-13 05:55 - 2014-10-02 17:44 - 00275968 _____ (Microsoft Corporation) C:\Windows\System32\EncDump.dll 2014-11-13 05:55 - 2014-10-02 17:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\System32\AudioSes.dll 2014-11-13 05:55 - 2014-08-20 22:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\System32\msxml3.dll 2014-11-13 05:55 - 2014-08-20 22:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\msxml3r.dll 2014-11-13 05:55 - 2014-08-11 17:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\System32\IMJP10K.DLL 2014-11-13 05:54 - 2014-11-05 09:50 - 00254464 _____ (Microsoft Corporation) C:\Windows\System32\generaltel.dll 2014-11-13 05:54 - 2014-11-05 09:50 - 00203776 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll 2014-11-13 05:54 - 2014-11-05 09:47 - 00302592 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll 2014-11-13 05:54 - 2014-10-25 16:36 - 01762816 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll 2014-11-13 05:54 - 2014-10-25 16:36 - 00042496 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2014-11-13 05:54 - 2014-10-25 16:35 - 14368768 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2014-11-13 05:54 - 2014-10-25 16:35 - 01181696 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2014-11-13 05:54 - 2014-10-25 16:35 - 00523776 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll 2014-11-13 05:54 - 2014-10-25 16:35 - 00493056 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2014-11-13 05:54 - 2014-10-25 16:35 - 00163840 _____ (Microsoft Corporation) C:\Windows\System32\msrating.dll 2014-11-13 05:54 - 2014-10-25 16:35 - 00080384 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll 2014-11-13 05:54 - 2014-10-25 16:34 - 13758464 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2014-11-13 05:54 - 2014-10-25 16:34 - 02861568 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2014-11-13 05:54 - 2014-10-25 16:34 - 02055168 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2014-11-13 05:54 - 2014-10-25 16:34 - 01441280 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl 2014-11-13 05:54 - 2014-10-25 16:34 - 00690688 _____ (Microsoft Corporation) C:\Windows\System32\jscript.dll 2014-11-13 05:54 - 2014-10-25 16:34 - 00391168 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll 2014-11-13 05:54 - 2014-10-25 16:34 - 00357888 _____ (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll 2014-11-13 05:54 - 2014-10-25 16:34 - 00226816 _____ (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll 2014-11-13 05:54 - 2014-10-25 16:34 - 00226816 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll 2014-11-13 05:54 - 2014-10-25 16:34 - 00109056 _____ (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2014-11-13 05:54 - 2014-10-25 16:34 - 00061440 _____ (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2014-11-13 05:54 - 2014-10-25 16:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2014-11-13 05:54 - 2014-10-25 16:34 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2014-11-13 05:54 - 2014-10-25 16:13 - 02706432 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2014-11-13 05:54 - 2014-10-25 15:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2014-11-13 05:54 - 2014-10-24 17:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\System32\packager.dll 2014-11-13 05:54 - 2014-10-13 17:56 - 00136632 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecpkg.sys 2014-11-13 05:54 - 2014-10-13 17:50 - 01059840 _____ (Microsoft Corporation) C:\Windows\System32\lsasrv.dll 2014-11-13 05:54 - 2014-10-13 17:50 - 00523776 _____ (Microsoft Corporation) C:\Windows\System32\termsrv.dll 2014-11-13 05:54 - 2014-10-13 17:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\System32\msaudite.dll 2014-11-13 05:54 - 2014-10-13 17:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\System32\adtschema.dll 2014-11-13 05:54 - 2014-09-19 01:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\System32\msv1_0.dll 2014-11-13 05:54 - 2014-09-19 01:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\System32\schannel.dll 2014-11-13 05:54 - 2014-09-19 01:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\System32\ncrypt.dll 2014-11-13 05:54 - 2014-09-19 01:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\System32\wdigest.dll 2014-11-13 05:54 - 2014-09-19 01:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\System32\TSpkg.dll 2014-11-13 05:54 - 2014-09-19 01:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\System32\credssp.dll 2014-11-08 10:49 - 2014-11-23 08:53 - 00000000 ____D () C:\Program Files\AppInventor 2014-11-08 10:36 - 2014-11-08 10:36 - 00096680 _____ (Oracle Corporation) C:\Windows\System32\WindowsAccessBridge.dll 2014-11-08 10:36 - 2014-11-08 10:36 - 00000000 ____D () C:\ProgramData\Sun 2014-11-08 10:36 - 2014-11-08 10:36 - 00000000 ____D () C:\ProgramData\Oracle 2014-11-08 10:36 - 2014-11-08 10:36 - 00000000 ____D () C:\Program Files\Common Files\Java 2014-11-08 10:35 - 2014-11-08 10:35 - 00000000 ____D () C:\Program Files\Java 2014-11-08 06:52 - 2014-11-08 06:52 - 00000000 ____D () C:\Windows\de 2014-11-08 06:51 - 2014-12-14 10:01 - 00000000 ____D () C:\Program Files\Windows Live 2014-11-08 06:48 - 2014-11-08 06:51 - 00002122 _____ () C:\Users\.......-PC\Desktop\Revo Uninstaller.lnk 2014-11-05 20:44 - 2014-11-08 06:32 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Security Systems 2014-11-05 20:44 - 2009-09-04 08:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_42.dll 2014-11-05 20:44 - 2006-11-29 04:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_32.dll 2014-11-05 20:28 - 2014-11-05 20:39 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\GoPro 2014-11-05 20:28 - 2014-11-05 20:28 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\GoPro 2014-11-05 20:26 - 2014-11-05 20:38 - 00000000 ____D () C:\Users\Public\CineForm 2014-11-05 20:26 - 2014-11-05 20:26 - 00000000 ____D () C:\Program Files\DIFX 2014-11-05 20:26 - 2014-11-05 20:26 - 00000000 ____D () C:\Program Files\CineForm 2014-11-05 20:25 - 2014-11-05 20:25 - 00000000 ____D () C:\Program Files\QuickTime 2014-11-05 20:08 - 2014-11-05 20:08 - 00000000 ____D () C:\Program Files\Microsoft OneDrive 2014-11-05 20:07 - 2014-12-14 09:56 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Windows Live 2014-11-05 20:07 - 2014-11-05 20:07 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2014-11-05 19:59 - 2014-11-25 06:57 - 00000000 ____D () C:\Users\.......-PC\Desktop\video bearbeitung 2014-11-05 08:27 - 2014-11-05 08:27 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\TuneUp Software 2014-11-05 08:26 - 2014-11-05 08:26 - 00000000 ____D () C:\ProgramData\AVS4YOU 2014-11-05 08:19 - 2014-11-13 06:13 - 00000000 ____D () C:\Program Files\Common Files\AVSMedia 2014-11-05 08:19 - 2014-11-13 06:13 - 00000000 ____D () C:\Program Files\AVS4YOU 2014-11-05 08:19 - 2010-05-11 04:17 - 00024576 _____ (Microsoft Corporation) C:\Windows\System32\msxml3a.dll 2014-11-05 08:11 - 2014-11-08 06:36 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\RHEng 2014-11-05 08:10 - 2014-12-21 07:40 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\DVDVideoSoft 2014-11-05 05:56 - 2011-03-14 18:03 - 00081408 _____ (SEIKO EPSON CORPORATION) C:\Windows\System32\E_FD4BIKE.DLL 2014-11-05 05:56 - 2007-04-09 16:06 - 00008192 _____ (SEIKO EPSON CORP.) C:\Windows\System32\E_DCINST.DLL 2014-11-03 08:09 - 2014-11-03 08:09 - 00000000 ____D () C:\Program Files\Media Downloader 2014-11-03 08:08 - 2014-11-03 08:08 - 00000000 ____D () C:\d2d420b2-f982-4729-b039-30b07ccf2823 2014-11-03 07:53 - 2014-11-03 07:53 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\BandExtend 2014-11-03 07:53 - 2014-11-03 07:53 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\BabSolution 2014-11-03 07:52 - 2014-11-03 07:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\onlysearch 2014-11-02 20:38 - 2014-12-20 02:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Adobe 2014-11-01 10:29 - 2014-12-21 07:49 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\vlc 2014-10-30 07:43 - 2014-10-30 07:43 - 00000000 ____D () C:\42676f3ac33449616cfea7 2014-10-29 12:03 - 2014-10-29 12:03 - 00098584 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgmfx86.sys 2014-10-27 08:06 - 2014-10-27 08:06 - 00000000 ____H () C:\Users\.......-PC\Desktop\~WRL0878.tmp 2014-10-26 20:25 - 2014-11-23 09:14 - 00000000 ____D () C:\Users\.......-PC\.android 2014-10-26 20:15 - 2014-10-26 20:15 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER 2014-10-26 07:25 - 2015-01-10 11:54 - 00000000 ____D () C:\Users\.......-PC\Desktop\POwer 2014-10-26 06:48 - 2014-10-26 06:48 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Temp0561407a51fbba49347fad4ca495ceda 2014-10-26 05:33 - 2014-10-26 05:33 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Tempcc98a81f0fce842a178a66543abf44aa 2014-10-26 05:03 - 2014-11-23 19:50 - 01177208 _____ () C:\Users\.......-PC\AppData\Roaming\AndyCleanupTool.exe 2014-10-26 05:03 - 2014-11-23 19:50 - 01176696 _____ () C:\Users\.......-PC\AppData\Roaming\AndyCleanVM.exe 2014-10-26 05:03 - 2014-10-26 05:03 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Temp7db2cb2cfe5e4c3b14adbdaddec4cd75 2014-10-26 05:03 - 2014-10-26 05:03 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Temp1c2bbb750c324b48d5e1e16d045bdd1b 2014-10-24 06:04 - 2014-09-03 21:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\System32\rastls.dll 2014-10-24 06:04 - 2014-07-16 17:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\System32\winsta.dll 2014-10-24 06:04 - 2014-07-16 17:39 - 00304128 _____ (Microsoft Corporation) C:\Windows\System32\winlogon.exe 2014-10-24 06:04 - 2014-07-16 17:39 - 00130048 _____ (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll 2014-10-24 06:04 - 2014-07-16 17:03 - 00184320 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys 2014-10-24 06:04 - 2014-07-16 17:02 - 00031232 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tssecsrv.sys 2014-10-24 06:04 - 2014-06-18 14:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\System32\dfshim.dll 2014-10-24 06:04 - 2014-06-18 14:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\System32\mscorier.dll 2014-10-24 06:04 - 2014-06-18 14:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\System32\mscories.dll 2014-10-24 06:03 - 2014-08-28 17:44 - 04922368 _____ (Microsoft Corporation) C:\Windows\System32\mstscax.dll 2014-10-24 06:03 - 2014-08-28 17:44 - 02744320 _____ (Microsoft Corporation) C:\Windows\System32\rdpcorets.dll 2014-10-24 06:03 - 2014-08-28 17:44 - 01050112 _____ (Microsoft Corporation) C:\Windows\System32\mstsc.exe 2014-10-24 06:03 - 2014-08-28 17:44 - 00269312 _____ (Microsoft Corporation) C:\Windows\System32\aaclient.dll 2014-10-24 06:03 - 2014-08-28 17:44 - 00037376 _____ (Microsoft Corporation) C:\Windows\System32\tsgqec.dll 2014-10-24 06:03 - 2014-07-08 17:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDYAK.DLL 2014-10-24 06:03 - 2014-07-08 17:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDTAT.DLL 2014-10-24 06:03 - 2014-07-08 17:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDRU1.DLL 2014-10-24 06:03 - 2014-07-08 17:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDBASH.DLL 2014-10-24 06:03 - 2014-07-08 17:29 - 00005632 _____ (Microsoft Corporation) C:\Windows\System32\KBDRU.DLL 2014-10-24 06:03 - 2014-07-08 14:30 - 00419992 _____ () C:\Windows\System32\locale.nls 2014-10-24 01:20 - 2014-10-24 01:20 - 00189720 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgldx86.sys 2014-10-20 06:14 - 2014-10-20 06:14 - 00197400 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgtdix.sys 2014-10-15 03:16 - 2014-10-15 03:16 - 00000182 _____ () C:\Windows\AutoKMS.ini 2014-10-15 03:02 - 2014-10-15 03:02 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services 2014-10-15 03:01 - 2014-11-08 06:51 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition 2014-10-15 03:01 - 2014-10-15 03:01 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework 2014-10-15 02:57 - 2014-10-15 02:57 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services 2014-10-15 02:29 - 2014-12-12 06:33 - 00000000 ____D () C:\Users\.......-PC\Desktop\Office2010 Pro Deutsch 2014-10-11 04:46 - 2014-10-11 04:46 - 00117272 _____ (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetAdp.sys 2014-10-09 07:31 - 2014-10-09 07:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Opera Software 2014-10-09 07:31 - 2014-10-09 07:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Opera Software 2014-10-09 06:58 - 2014-12-09 09:58 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Abelssoft 2014-10-09 06:58 - 2014-10-09 06:58 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Abelssoft 2014-10-09 06:58 - 2014-10-09 06:58 - 00000000 ____D () C:\ProgramData\XDMessagingv4 2014-10-05 02:53 - 2014-11-23 03:16 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Avg 2014-10-05 02:53 - 2014-10-05 02:53 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\AVG 2014-10-05 02:38 - 2014-09-24 17:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\System32\qdvd.dll 2014-09-29 05:57 - 2014-09-29 05:57 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\GeoGebra 5.0 2014-09-24 07:14 - 2014-06-26 17:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\System32\msmpeg2vdec.dll 2014-09-24 06:57 - 2014-09-09 13:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\tzres.dll 2014-09-24 06:47 - 2014-09-24 06:47 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\WinRAR 2014-09-22 08:43 - 2014-09-22 08:43 - 00000000 ____D () C:\fcf80c325e21b2aa8287eacb88 2014-09-22 08:28 - 2014-09-29 05:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\SMART Technologies 2014-09-22 06:15 - 2014-10-26 06:54 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\FileViewPro 2014-09-22 06:15 - 2014-09-22 06:15 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\IsolatedStorage 2014-09-22 06:15 - 2014-09-22 06:15 - 00000000 ____D () C:\ProgramData\IsolatedStorage 2014-09-22 06:13 - 2014-09-22 06:13 - 00000000 ____D () C:\Spacekace 2014-09-22 05:38 - 2014-09-22 05:38 - 00001880 _____ () C:\Users\.......-PC\Desktop\geogebra.lnk 2014-09-22 05:36 - 2014-09-22 05:37 - 00000000 ____D () C:\Program Files\GeoGebra 5.0 2014-09-22 05:35 - 2014-12-15 20:08 - 00000000 ____D () C:\ProgramData\Downloaded Installations 2014-09-22 05:35 - 2014-08-01 03:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\System32\TSWorkspace.dll 2014-09-22 05:34 - 2014-06-23 18:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\System32\d3d10warp.dll 2014-09-22 05:31 - 2014-09-22 05:31 - 00000000 ____D () C:\Program Files\Common Files\Macrovision Shared 2014-09-22 05:23 - 2014-09-22 05:23 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Macromedia 2014-09-22 05:23 - 2014-09-22 05:23 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Macromedia 2014-09-02 06:48 - 2014-09-02 06:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Mozilla 2014-09-01 05:28 - 2014-08-22 17:46 - 00305152 _____ (Microsoft Corporation) C:\Windows\System32\gdi32.dll 2014-09-01 05:24 - 2014-12-17 07:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Thunderbird 2014-09-01 05:24 - 2014-09-02 06:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Mozilla 2014-09-01 05:24 - 2014-09-01 05:24 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Thunderbird 2014-09-01 05:21 - 2014-09-29 09:26 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Avg2014 2014-09-01 05:21 - 2014-09-01 05:21 - 00000680 __RSH () C:\Users\.......-PC\ntuser.pol 2014-09-01 05:21 - 2014-09-01 05:21 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\AVG2014 2014-09-01 05:21 - 2014-09-01 05:21 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Google 2014-09-01 05:20 - 2015-01-16 07:38 - 00000000 ____D () C:\users\.......-PC 2014-09-01 05:20 - 2014-12-20 02:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Adobe 2014-09-01 05:20 - 2014-11-20 10:30 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\VirtualStore 2014-09-01 05:20 - 2014-11-05 08:27 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\TuneUp Software 2014-09-01 05:20 - 2014-10-15 02:22 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Microsoft Help 2014-09-01 05:20 - 2014-09-01 05:20 - 00000020 ___SH () C:\Users\.......-PC\ntuser.ini 2014-09-01 05:20 - 2014-09-01 05:20 - 00000000 _SHDL () C:\Users\.......-PC\Startmenü 2014-09-01 05:20 - 2014-09-01 05:20 - 00000000 _SHDL () C:\Users\.......-PC\Netzwerkumgebung 2014-09-01 05:20 - 2014-09-01 05:20 - 00000000 _SHDL () C:\Users\.......-PC\Druckumgebung 2014-09-01 05:20 - 2014-09-01 05:20 - 00000000 _SHDL () C:\Users\.......-PC\Documents\Eigene Musik 2014-09-01 05:20 - 2014-09-01 05:20 - 00000000 _SHDL () C:\Users\.......-PC\Documents\Eigene Bilder 2014-09-01 05:20 - 2014-09-01 05:20 - 00000000 _SHDL () C:\Users\.......-PC\AppData\Local\Verlauf 2014-08-27 05:54 - 2014-08-30 06:54 - 00000000 ____D () C:\users\TEMP 2014-08-27 05:54 - 2014-08-17 00:43 - 00000000 ____D () C:\Users\TEMP\AppData\Roaming\TuneUp Software 2014-08-27 05:54 - 2011-02-21 07:50 - 00000000 ____D () C:\Users\TEMP\AppData\Local\Microsoft Help 2014-08-24 01:14 - 2014-08-24 01:14 - 00000000 ____D () C:\Users\...\AppData\Local\PDF24 2014-08-24 00:55 - 2014-08-24 01:06 - 00000000 ____D () C:\Users\...\Desktop\tuhh2 2014-08-17 01:44 - 2014-08-17 01:44 - 00112752 _____ () C:\Users\...\AppData\Local\GDIPFONTCACHEV1.DAT 2014-08-17 01:00 - 2014-06-30 14:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\System32\icardres.dll 2014-08-17 01:00 - 2014-06-05 22:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\System32\TsWpfWrp.exe 2014-08-17 01:00 - 2014-03-09 13:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\System32\icardagt.exe 2014-08-17 01:00 - 2014-03-09 13:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\System32\infocardapi.dll 2014-08-17 00:48 - 2014-07-13 17:42 - 00654336 _____ (Microsoft Corporation) C:\Windows\System32\rpcrt4.dll 2014-08-17 00:48 - 2014-06-15 17:44 - 00730048 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dxgkrnl.sys 2014-08-17 00:48 - 2014-06-15 17:44 - 00219072 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dxgmms1.sys 2014-08-17 00:48 - 2014-06-15 17:40 - 00107520 _____ (Microsoft Corporation) C:\Windows\System32\cdd.dll 2014-08-17 00:47 - 2014-06-24 17:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\System32\shell32.dll 2014-08-17 00:47 - 2014-06-03 01:30 - 00101824 _____ (Microsoft Corporation) C:\Windows\System32\consent.exe 2014-08-17 00:47 - 2014-06-03 01:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\System32\authui.dll 2014-08-17 00:47 - 2014-06-03 01:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\System32\msihnd.dll 2014-08-17 00:43 - 2014-08-17 00:43 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software 2014-08-12 00:35 - 2014-08-12 00:53 - 00009474 _____ () C:\Users\...\Desktop\Sanitär2.xlsx 2014-08-07 02:39 - 2014-08-07 04:05 - 00009890 _____ () C:\Users\...\Desktop\Snitär.xlsx 2014-08-07 01:11 - 2014-08-07 04:06 - 00009226 _____ () C:\Users\...\Desktop\Microsoft Excel-Arbeitsblatt (neu).xlsx 2014-08-07 00:35 - 2014-10-15 03:03 - 00000000 ____D () C:\Users\...\AppData\Local\AVG Web TuneUp 2014-08-04 00:53 - 2014-11-23 03:16 - 00000000 ____D () C:\Users\...\AppData\Local\AVG 2014-08-04 00:53 - 2014-08-04 00:53 - 00000000 ____D () C:\Users\...\AppData\Roaming\AVG 2014-08-04 00:51 - 2014-10-05 02:51 - 00000000 ____D () C:\ProgramData\AVG 2014-08-04 00:51 - 2014-08-04 00:58 - 00000000 __SHD () C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308} 2014-08-03 03:22 - 2014-08-03 03:22 - 00000000 ____D () C:\Users\...\AppData\Roaming\AVG2014 2014-08-03 03:20 - 2015-01-10 08:35 - 00000927 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-08-03 03:19 - 2014-12-07 08:38 - 00000000 ____D () C:\ProgramData\AVG2014 2014-08-03 03:19 - 2014-10-15 03:02 - 00000000 ____D () C:\Program Files\AVG 2014-08-03 03:19 - 2014-08-03 03:19 - 00000000 ___HD () C:\$AVG 2014-08-03 03:16 - 2015-01-16 08:34 - 00000000 ____D () C:\ProgramData\MFAData 2014-08-03 03:16 - 2014-08-03 03:16 - 00000000 ____D () C:\Users\...\AppData\Local\MFAData 2014-07-30 13:43 - 2014-07-30 13:43 - 03586232 _____ (Intel Corporation) C:\Windows\System32\libmmd.dll 2014-07-30 13:43 - 2014-07-30 13:43 - 01060864 _____ (Microsoft Corporation) C:\Windows\System32\MFC71.dll 2014-07-30 13:43 - 2014-07-30 13:43 - 00534712 _____ (Intel Corporation) C:\Windows\System32\libiomp5md.dll 2014-07-30 13:43 - 2014-07-30 13:43 - 00473272 _____ (Intel Corporation) C:\Windows\System32\libguide40.dll 2014-07-30 13:42 - 2014-07-30 13:42 - 00633008 _____ (Intel Corporation.) C:\Windows\System32\ippjw7-6.1.dll 2014-07-30 13:42 - 2014-07-30 13:42 - 00239792 _____ (Intel Corporation.) C:\Windows\System32\ipps-6.1.dll 2014-07-30 13:42 - 2014-07-30 13:42 - 00129200 _____ (Intel Corporation.) C:\Windows\System32\ippvc-6.1.dll 2014-07-30 13:42 - 2014-07-30 13:42 - 00129200 _____ (Intel Corporation.) C:\Windows\System32\ippcore-6.1.dll 2014-07-30 13:42 - 2014-07-30 13:42 - 00104624 _____ (Intel Corporation.) C:\Windows\System32\ippj-6.1.dll 2014-07-29 23:35 - 2014-07-29 23:35 - 00000165 ____H () C:\Users\...\Desktop\~$Microsoft Excel-Arbeitsblatt .xlsx 2014-07-29 02:47 - 2014-07-29 02:47 - 00000000 ____D () C:\Users\...\AppData\Local\Bluestacks 2014-07-27 02:05 - 2014-07-29 02:24 - 00000134 _____ () C:\Users\...\Desktop\Internet Explorer Troubleshooting.url 2014-07-27 01:59 - 2014-06-17 17:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\System32\osk.exe 2014-07-27 01:59 - 2014-06-06 01:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\System32\qedit.dll 2014-07-27 01:59 - 2014-05-29 22:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\afd.sys 2014-07-27 01:48 - 2014-07-27 01:48 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2014-07-24 16:35 - 2014-07-24 16:35 - 00875688 _____ (Microsoft Corporation) C:\Windows\System32\msvcr120_clr0400.dll 2014-07-21 11:03 - 2014-07-21 11:03 - 00200984 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgidsdriverx.sys 2014-07-03 06:16 - 2014-07-03 06:16 - 00000000 ____D () C:\Users\...\Documents\Fax 2014-07-03 05:45 - 2014-05-14 08:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\System32\wuaueng.dll 2014-07-03 05:45 - 2014-05-14 08:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\System32\wuauclt.exe 2014-07-03 05:45 - 2014-05-14 08:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\System32\wups2.dll 2014-07-03 05:45 - 2014-05-14 08:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\System32\wucltux.dll 2014-07-03 05:44 - 2014-05-14 08:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\System32\wuapi.dll 2014-07-03 05:44 - 2014-05-14 08:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\System32\wups.dll 2014-07-03 05:44 - 2014-05-14 08:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\System32\wudriver.dll 2014-07-03 05:44 - 2014-05-13 23:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\System32\wuwebv.dll 2014-07-03 05:44 - 2014-05-13 23:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\System32\wuapp.exe 2014-07-03 05:38 - 2014-07-03 05:38 - 00000000 ____D () C:\found.000 2014-07-02 06:19 - 2014-07-02 06:19 - 00000000 ____D () C:\Users\...\Documents\My Received Files 2014-07-02 03:53 - 2014-12-09 09:52 - 00000000 ____D () C:\Program Files\Mozilla Firefox 2014-07-01 06:10 - 2014-08-03 03:10 - 00000000 ____D () C:\Users\...\Desktop\musik 2014-07-01 05:59 - 2014-07-01 05:59 - 00000000 ____D () C:\Users\...\AppData\Roaming\DropboxMaster 2014-07-01 05:57 - 2014-07-01 05:59 - 00000000 ____D () C:\Users\...\AppData\Roaming\Dropbox 2014-07-01 05:57 - 2014-07-01 05:57 - 00000000 ____D () C:\Users\...\AppData\Roaming\AVAST Software 2014-07-01 05:55 - 2014-07-01 05:55 - 00776976 _____ (AVAST Software) C:\Windows\System32\Drivers\aswsnx.sys.1404223387500 2014-07-01 05:55 - 2014-07-01 05:55 - 00411552 _____ (AVAST Software) C:\Windows\System32\Drivers\aswsp.sys.1404223387500 2014-07-01 05:55 - 2014-07-01 05:55 - 00000000 ____D () C:\ProgramData\AVAST Software 2014-07-01 05:55 - 2014-07-01 05:55 - 00000000 ____D () C:\Program Files\AVAST Software 2014-07-01 05:26 - 2014-07-01 05:26 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_WinUsb_01007.Wdf 2014-07-01 05:25 - 2010-02-18 15:00 - 01302600 _____ (Microsoft Corporation) C:\Windows\System32\wudfupdate_01007.dll 2014-07-01 05:25 - 2010-02-18 15:00 - 01112288 _____ (Microsoft Corporation) C:\Windows\System32\wdfcoinstaller01007.dll 2014-07-01 05:25 - 2010-02-18 15:00 - 00581192 _____ (Microsoft Corporation) C:\Windows\System32\winusbcoinstaller.dll 2014-07-01 05:24 - 2014-07-01 05:24 - 00002971 _____ () C:\Users\...\Desktop\Helium.lnk 2014-07-01 05:01 - 2014-08-04 00:27 - 00000000 ____D () C:\Users\...\AppData\Local\pgcchelper 2014-07-01 04:46 - 2014-04-04 18:25 - 01294272 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2014-07-01 04:46 - 2014-04-04 18:24 - 00187840 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS 2014-07-01 04:43 - 2014-04-24 18:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\System32\usp10.dll 2014-07-01 04:43 - 2014-03-26 06:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\System32\msxml6.dll 2014-07-01 04:43 - 2014-03-26 06:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\msxml6r.dll 2014-06-30 07:04 - 2014-06-30 07:04 - 00000000 ____D () C:\adobeTemp 2014-06-30 02:43 - 2014-06-30 02:43 - 00121624 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgdiskx.sys 2014-06-21 09:00 - 2014-06-21 09:00 - 00077824 _____ (Advanced Micro Devices) C:\Windows\System32\Drivers\AtihdW73.sys 2014-06-21 08:59 - 2014-06-21 08:59 - 00084480 _____ (Advanced Micro Devices) C:\Windows\System32\DelayAPO.dll 2014-06-19 02:35 - 2014-05-08 01:06 - 00013824 _____ (Microsoft Corporation) C:\Windows\System32\RdpGroupPolicyExtension.dll 2014-06-19 02:15 - 2014-06-19 02:15 - 00000000 ___RD () C:\Users\...\Creative Cloud Files 2014-06-17 06:18 - 2014-06-17 06:18 - 00241944 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avglogx.sys 2014-06-17 06:17 - 2014-06-17 06:17 - 00147736 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgidshx.sys 2014-06-17 06:06 - 2014-06-17 06:06 - 00027416 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgrkx86.sys 2014-06-17 06:06 - 2014-06-17 06:06 - 00021272 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgidsshimx.sys 2014-06-09 19:51 - 2014-06-09 19:53 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe 2014-06-09 19:51 - 2014-06-09 19:51 - 00000000 ____D () C:\Users\...\AppData\Roaming\PDAppFlex 2014-06-09 02:45 - 2014-07-01 05:05 - 00000000 ____D () C:\Users\...\AppData\Local\SearchProtect 2014-06-09 02:41 - 2014-12-07 05:13 - 00000000 ____D () C:\ProgramData\Package Cache 2014-06-09 02:40 - 2014-12-20 02:49 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-06-09 01:03 - 2014-06-09 01:03 - 00000042 _____ () C:\Users\...\AppData\Roaming\WB.CFG 2014-06-08 01:49 - 2014-06-09 02:25 - 00000000 ____D () C:\Program Files\epson 2014-06-08 01:44 - 2014-06-08 01:44 - 00000000 ____H () C:\Users\...\Documents\Default.rdp 2014-06-08 01:05 - 2014-06-09 02:29 - 00000000 ____D () C:\Users\...\AppData\Roaming\0F1F1C2Y1H1P1C0I0T 2014-06-01 03:16 - 2014-06-01 03:16 - 00000000 ____D () C:\Users\...\AppData\Roaming\Optimizer Elite Max 2014-06-01 03:13 - 2014-06-01 03:13 - 00000000 ____D () C:\Users\...\AppData\Local\com 2014-06-01 03:12 - 2014-06-01 03:12 - 00000000 ____D () C:\Users\...\AppData\Local\globalUpdate 2014-06-01 03:11 - 2014-07-01 06:11 - 00000000 ____D () C:\Users\...\AppData\Local\fst_de_28 2014-06-01 03:06 - 2014-06-01 03:06 - 00000000 ____D () C:\Users\...\AppData\Roaming\GlarySoft 2014-06-01 03:06 - 2014-06-01 03:06 - 00000000 ____D () C:\Users\...\AppData\Roaming\DiskDefrag 2014-05-28 08:06 - 2014-05-28 08:06 - 00000000 ____D () C:\0fd140dc6c9ef2213e044e0dd7779e98 2014-05-28 04:51 - 2014-05-28 07:57 - 00000680 __RSH () C:\Users\...\ntuser.pol 2014-05-27 07:18 - 2014-05-27 07:18 - 00000000 ____D () C:\f2d35dea9c287267fe0c58 2014-05-27 06:49 - 2014-05-27 06:49 - 00000000 ____D () C:\cc860e795253d2fa8ac4ad6824 2014-05-26 06:36 - 2014-04-11 18:15 - 00067520 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecdd.sys 2014-05-26 06:36 - 2014-04-11 18:12 - 00100352 _____ (Microsoft Corporation) C:\Windows\System32\sspicli.dll 2014-05-26 06:36 - 2014-04-11 18:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\secur32.dll 2014-05-26 06:36 - 2014-04-11 18:12 - 00015872 _____ (Microsoft Corporation) C:\Windows\System32\sspisrv.dll 2014-05-26 06:36 - 2014-04-11 18:11 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\lsass.exe 2014-05-26 06:36 - 2014-03-04 01:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\System32\ntkrnlpa.exe 2014-05-26 06:36 - 2014-03-04 01:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe 2014-05-26 06:36 - 2014-03-04 01:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\System32\objsel.dll 2014-05-26 06:36 - 2014-03-04 01:17 - 00293376 _____ (Microsoft Corporation) C:\Windows\System32\KernelBase.dll 2014-05-26 06:36 - 2014-03-04 01:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\System32\cngprovider.dll 2014-05-26 06:36 - 2014-03-04 01:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\System32\adprovider.dll 2014-05-26 06:36 - 2014-03-04 01:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\System32\capiprovider.dll 2014-05-26 06:36 - 2014-03-04 01:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\System32\dpapiprovider.dll 2014-05-26 06:36 - 2014-03-04 01:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\System32\dimsroam.dll 2014-05-26 06:36 - 2014-03-04 01:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\System32\wincredprovider.dll 2014-05-22 08:13 - 2014-05-22 08:13 - 00000000 ____D () C:\Program Files\Common Files\Skype 2014-05-16 06:24 - 2014-05-16 06:24 - 00174880 _____ (Oracle Corporation) C:\Windows\System32\VBoxNetFltNobj.dll 2014-05-16 06:24 - 2014-05-16 06:24 - 00126752 _____ (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetFlt.sys 2014-05-15 09:30 - 2014-05-15 09:30 - 00000000 ____D () C:\Users\...\AppData\Roaming\dvdcss 2014-05-07 04:36 - 2014-07-03 07:15 - 00000000 ____D () C:\Users\...\AppData\Roaming\Audacity 2014-05-07 04:36 - 2014-05-07 04:36 - 00000981 _____ () C:\Users\Public\Desktop\Audacity.lnk 2014-05-07 04:35 - 2014-05-07 04:35 - 00000000 ____D () C:\Program Files\Audacity 2014-05-06 08:14 - 2014-05-06 08:14 - 00001098 _____ () C:\Users\...\Desktop\Videos -.lnk 2014-05-06 07:57 - 2014-05-06 07:57 - 00000000 ____D () C:\Users\...\AppData\Roaming\rightbackup 2014-05-06 07:27 - 2014-11-13 06:16 - 00000000 ___SD () C:\Windows\System32\CompatTel 2014-05-05 07:58 - 2014-07-01 05:03 - 00001040 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-05-05 07:58 - 2014-06-05 07:51 - 00000000 ____D () C:\Users\...\AppData\Roaming\vlc 2014-05-05 07:58 - 2014-05-05 07:58 - 00000000 ____D () C:\Program Files\VideoLAN 2014-05-05 05:57 - 2014-12-21 07:44 - 00000033 _____ () C:\Windows\Nscal.ini 2014-05-05 05:57 - 1999-05-18 07:11 - 00698210 _____ () C:\Windows\cd32.exe 2014-05-05 05:57 - 1999-05-04 00:16 - 00061952 _____ (Netscape Communications Corporation) C:\Windows\System32\nabapi32.dll 2014-05-05 05:57 - 1999-04-20 01:25 - 00578048 _____ (Corporate Software & Technologies Int. Inc.) C:\Windows\System32\uniapi32.dll 2014-05-05 05:57 - 1999-04-20 01:25 - 00322832 _____ (Microsoft Corporation) C:\Windows\System32\mfc30.dll 2014-05-05 05:57 - 1999-04-20 01:25 - 00133904 _____ (Microsoft Corporation) C:\Windows\System32\mfcans32.dll 2014-05-05 05:57 - 1999-04-20 01:25 - 00133392 _____ (Microsoft Corporation) C:\Windows\System32\mfco30.dll 2014-05-05 05:57 - 1999-04-20 01:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\System32\mfcuia32.dll 2014-05-05 05:55 - 2014-05-05 05:56 - 00000000 ____D () C:\VS 2014-05-05 05:55 - 1999-12-08 07:17 - 00448216 _____ (VideoSoft) C:\Windows\System32\Vsflex7u.ocx 2014-05-05 05:55 - 1999-12-08 07:17 - 00448216 _____ (VideoSoft) C:\Windows\System32\Vsflex7.ocx 2014-05-05 05:55 - 1999-12-08 07:17 - 00407256 _____ (VideoSoft) C:\Windows\System32\Vsflex7d.ocx 2014-05-05 05:55 - 1999-12-08 07:17 - 00399064 _____ (VideoSoft) C:\Windows\System32\Vsflex7L.ocx 2014-05-05 05:55 - 1999-12-07 09:10 - 00122880 _____ () C:\Windows\System32\VsPPG7.dll 2014-05-05 05:55 - 1999-08-05 07:23 - 00081920 _____ (VideoSoft) C:\Windows\System32\vsStr7.ocx 2014-05-05 05:54 - 1999-02-20 15:59 - 00122880 _____ () C:\Windows\System32\CFFPTree.dll 2014-05-05 05:54 - 1999-02-20 15:58 - 00082432 _____ () C:\Windows\System32\CFFtp.dll 2014-05-05 05:54 - 1999-02-20 15:46 - 00039936 _____ () C:\Windows\System32\cfmsg.dll 2014-05-05 05:54 - 1998-07-09 06:24 - 00565760 _____ (Microsoft Corporation) C:\Windows\System32\MSVCP50.DLL 2014-05-05 05:52 - 2014-05-05 06:11 - 00002404 _____ () C:\Windows\ACROREAD.INI 2014-05-05 05:52 - 2014-05-05 05:52 - 00000000 ____D () C:\Acrobat3 2014-05-05 05:51 - 2014-12-21 07:44 - 00302592 _____ (InstallShield Corporation, Inc.) C:\Windows\unin0407.exe 2014-05-05 05:51 - 2014-05-05 05:51 - 00000000 ____D () C:\TGEB 2014-05-05 05:49 - 2014-05-05 07:52 - 00000024 _____ () C:\Windows\winamp.ini 2014-05-05 05:48 - 2014-05-05 05:48 - 00000000 ____D () C:\programme 2014-05-05 04:15 - 1998-01-23 02:22 - 00304128 _____ (InstallShield Software Corporation) C:\Windows\IsUninst.exe 2014-05-05 04:15 - 1998-01-23 02:20 - 00305664 _____ (InstallShield Software Corporation ) C:\Windows\IsUn0407.exe 2014-04-30 06:26 - 2014-05-04 01:47 - 00000000 ____D () C:\Users\...\AppData\Roaming\SCheck 2014-04-30 06:26 - 2014-04-30 06:26 - 00000000 ____D () C:\Users\...\AppData\Local\simple_new_tab 2014-04-30 06:08 - 2015-01-16 06:19 - 00000000 ____D () C:\Users\.......-PC\Desktop\video 2014-04-28 01:10 - 2014-04-28 01:11 - 00000000 ____D () C:\Users\...\Desktop\EPSON 2014-04-21 07:12 - 2014-04-21 07:12 - 00000000 ____D () C:\ProgramData\HyperTerminal 2014-04-21 07:12 - 2008-09-30 03:22 - 00164864 ____N () C:\Windows\System32\UNWISE32.EXE 2014-04-21 06:39 - 2014-05-06 08:53 - 00000000 ____D () C:\pebuilder3110a 2014-04-20 04:06 - 2015-01-16 10:57 - 01172765 _____ () C:\Windows\WindowsUpdate.log 2014-04-14 17:34 - 2014-04-14 17:34 - 01070232 _____ (Microsoft Corporation) C:\Windows\System32\MSCOMCTL.OCX 2014-04-09 19:02 - 2014-02-03 18:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\msiscsi.sys 2014-04-09 19:02 - 2014-02-03 18:07 - 00149440 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\storport.sys 2014-04-09 19:02 - 2014-02-03 18:07 - 00027072 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\Diskdump.sys 2014-04-09 19:02 - 2014-02-03 18:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\iologmsg.dll 2014-04-09 19:01 - 2014-03-04 01:17 - 00868352 _____ (Microsoft Corporation) C:\Windows\System32\kernel32.dll 2014-04-09 19:01 - 2014-01-23 18:18 - 01212352 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys 2014-03-31 12:34 - 2014-03-31 12:34 - 00322248 _____ () C:\Windows\WLXPGSS.SCR 2014-03-31 07:48 - 2014-12-15 07:54 - 00002741 _____ () C:\Users\...\Desktop\Google-Suche.lnk 2014-03-28 08:31 - 2014-12-15 07:54 - 00002524 _____ () C:\Users\...\Desktop\Chrome App Launcher.lnk 2014-03-28 08:29 - 2014-04-23 05:50 - 00000000 ____D () C:\Program Files\Bluefish Games 2014-03-28 08:20 - 2014-12-22 05:16 - 00002097 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-03-28 08:13 - 2014-03-28 08:13 - 00000000 ____D () C:\Users\...\AppData\Roaming\Mael 2014-03-28 08:12 - 2014-03-28 08:12 - 00000867 _____ () C:\Users\Public\Desktop\HxD.lnk 2014-03-28 08:12 - 2014-03-28 08:12 - 00000000 ____D () C:\Program Files\HxD 2014-03-28 07:57 - 2014-11-14 08:07 - 00000000 ____D () C:\Users\...\Desktop\FITZNAS 2014-03-26 08:52 - 2014-03-26 08:53 - 00000000 ____D () C:\890c05ead1594569fa6a 2014-03-25 07:35 - 2014-03-25 07:35 - 00007680 _____ (SMART Technologies) C:\Windows\System32\Drivers\SMARTVHidMini2000x86.sys 2014-03-25 07:34 - 2014-03-25 07:34 - 00015872 _____ (SMART Technologies ULC) C:\Windows\System32\Drivers\SMARTVTabletPCx86.sys 2014-03-25 07:34 - 2014-03-25 07:34 - 00008192 _____ (SMART Technologies) C:\Windows\System32\Drivers\SMARTMouseFilterx86.sys 2014-03-17 08:03 - 2014-08-07 02:40 - 00012633 _____ () C:\Users\...\Desktop\Microsoft Excel-Arbeitsblatt .xlsx 2014-03-17 07:47 - 2014-12-13 07:43 - 00002505 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-03-17 07:47 - 2014-03-17 07:47 - 00000000 ____D () C:\Users\...\AppData\Local\Skype 2014-03-15 07:59 - 2014-03-15 07:59 - 00000000 ____D () C:\Users\...\AppData\Roaming\Need for Speed World 2014-03-15 07:39 - 2014-03-15 07:39 - 00000000 ____D () C:\Users\...\AppData\Local\Electronic_Arts_Inc 2014-03-15 07:36 - 2014-05-06 08:02 - 00000000 ____D () C:\Users\...\AppData\Roaming\Security System 2 2014-03-15 07:36 - 2014-03-28 08:09 - 00000000 ____D () C:\Users\...\AppData\Roaming\BupSystem 2014-03-15 07:32 - 2014-02-03 18:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2014-03-15 07:32 - 2014-01-28 18:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\System32\wer.dll 2014-03-15 07:32 - 2014-01-27 18:07 - 00185344 _____ (Microsoft Corporation) C:\Windows\System32\wwansvc.dll 2014-03-12 07:32 - 2014-07-01 05:46 - 00000000 ____D () C:\Users\...\AppData\Local\F-Secure 2014-03-12 07:03 - 2014-03-15 07:17 - 00000000 ___HD () C:\Users\...\AppData\Local\Xujkof 2014-03-07 07:39 - 2014-03-07 07:39 - 00000000 ____D () C:\Users\Public\Sony Online Entertainment 2014-03-07 07:39 - 2014-03-07 07:39 - 00000000 ____D () C:\Users\...\AppData\Local\SCE 2014-03-07 07:39 - 2010-06-01 19:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_7.dll 2014-03-07 07:39 - 2010-06-01 19:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_7.dll 2014-03-07 07:39 - 2010-06-01 19:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_5.dll 2014-03-07 07:39 - 2010-05-26 02:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_43.dll 2014-03-07 07:39 - 2010-05-26 02:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_43.dll 2014-03-07 07:39 - 2010-05-26 02:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\System32\d3dcsx_43.dll 2014-03-07 07:39 - 2010-05-26 02:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_43.dll 2014-03-07 07:39 - 2010-05-26 02:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\System32\d3dx11_43.dll 2014-03-05 07:39 - 2014-03-06 05:50 - 00268952 _____ () C:\Windows\System32\PnkBstrB.xtr 2014-03-05 07:39 - 2014-03-06 05:50 - 00268952 _____ () C:\Windows\System32\PnkBstrB.exe 2014-03-05 07:39 - 2014-03-06 05:50 - 00137176 _____ () C:\Windows\System32\Drivers\PnkBstrK.sys 2014-03-05 07:39 - 2014-03-05 08:11 - 00268952 _____ () C:\Windows\System32\PnkBstrB.ex0 2014-03-05 07:39 - 2014-03-05 07:39 - 00075136 _____ () C:\Windows\System32\PnkBstrA.exe 2014-03-05 07:35 - 2014-03-05 07:35 - 00000000 ____D () C:\Users\...\AppData\Local\Punkbuster 2014-03-05 01:27 - 2014-03-05 01:27 - 00000000 ____D () C:\Users\...\AppData\Roaming\OfferMosquito 2014-02-26 08:12 - 2014-07-01 05:46 - 00000000 ____D () C:\Users\...\AppData\Roaming\F-Secure 2014-02-21 06:41 - 2014-12-10 07:14 - 00000000 ____D () C:\Users\...\AppData\Roaming\Fifth 2014-02-21 06:41 - 2014-02-21 06:41 - 00000000 ____D () C:\Users\...\AppData\Roaming\Intermediate 2014-02-21 06:41 - 2014-02-21 06:41 - 00000000 ____D () C:\Users\...\AppData\Roaming\DataMgr 2014-02-21 06:40 - 2014-02-21 06:40 - 00000000 ____D () C:\Users\...\AppData\Roaming\SSync 2014-02-21 06:39 - 2014-02-21 06:39 - 00000000 ____D () C:\Users\...\AppData\Roaming\Common 2014-02-21 06:13 - 2013-12-03 18:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\System32\secproc.dll 2014-02-21 06:13 - 2013-12-03 18:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\System32\secproc_isv.dll 2014-02-21 06:13 - 2013-12-03 18:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\System32\secproc_ssp_isv.dll 2014-02-21 06:13 - 2013-12-03 18:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\System32\secproc_ssp.dll 2014-02-21 06:13 - 2013-12-03 18:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\System32\msdrm.dll 2014-02-21 06:13 - 2013-12-03 17:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\System32\RMActivate_isv.exe 2014-02-21 06:13 - 2013-12-03 17:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\System32\RMActivate.exe 2014-02-21 06:13 - 2013-12-03 17:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\System32\RMActivate_ssp.exe 2014-02-21 06:13 - 2013-12-03 17:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\System32\RMActivate_ssp_isv.exe 2014-02-21 06:11 - 2013-11-26 00:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\System32\d2d1.dll 2014-02-09 21:06 - 2014-11-22 10:12 - 00000000 ____D () C:\Users\...\Documents\ccleaner 2014-02-09 21:04 - 2014-02-09 21:05 - 00000000 ____D () C:\Users\...\AppData\Roaming\TIPP10 2014-02-09 20:15 - 2014-02-09 20:15 - 00000000 ____D () C:\Windows\Profiles\... 2014-02-09 05:03 - 2014-02-09 05:03 - 00000000 ____D () C:\ProgramData\CompuLearn 2014-02-09 04:56 - 2014-02-09 04:56 - 00000000 ____D () C:\Program Files\Haali 2014-02-09 04:55 - 2014-03-07 07:35 - 00000000 ____D () C:\Users\...\AppData\Roaming\speedtest127 2014-02-09 04:55 - 2014-02-09 05:01 - 00000000 ____D () C:\Users\...\AppData\Roaming\PerformerSoft 2014-02-09 04:55 - 2014-02-09 04:55 - 00000000 ____D () C:\Users\...\AppData\Roaming\freegames111 2014-02-09 04:40 - 2014-02-09 04:40 - 00000971 _____ () C:\Users\...\Desktop\TIPP10.lnk 2014-02-05 00:22 - 2014-02-05 00:22 - 02239352 _____ () C:\Users\...\AppData\Local\omesuperv.exe 2014-02-03 08:04 - 2014-08-04 00:58 - 00000000 __SHD () C:\ProgramData\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16} 2014-02-02 03:37 - 2012-08-23 06:48 - 00221184 _____ (Microsoft Corporation) C:\Windows\System32\rdpudd.dll 2014-02-02 03:37 - 2012-08-23 06:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rdpvideominiport.sys 2014-02-02 03:37 - 2012-08-23 06:40 - 00049664 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\TsUsbFlt.sys 2014-02-02 03:37 - 2012-08-23 06:10 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\TsUsbRedirectionGroupPolicyExtension.dll 2014-02-02 03:37 - 2012-08-23 06:10 - 00012288 _____ (Microsoft Corporation) C:\Windows\System32\TsUsbRedirectionGroupPolicyControl.exe 2014-02-02 03:37 - 2012-08-23 05:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\System32\MsRdpWebAccess.dll 2014-02-02 03:37 - 2012-08-23 05:46 - 00016896 _____ (Microsoft Corporation) C:\Windows\System32\wksprtPS.dll 2014-02-02 03:37 - 2012-08-23 05:32 - 00032768 _____ (Microsoft Corporation) C:\Windows\System32\TsUsbGDCoInstaller.dll 2014-02-02 03:37 - 2012-08-23 03:40 - 00056320 _____ (Microsoft Corporation) C:\Windows\System32\TSWbPrxy.exe 2014-02-02 03:37 - 2012-08-23 03:32 - 00317440 _____ (Microsoft Corporation) C:\Windows\System32\wksprt.exe 2014-02-02 03:37 - 2012-08-23 03:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\System32\rdpendp_winip.dll 2014-02-01 06:42 - 2014-03-24 08:02 - 00000000 ____D () C:\Program Files\SpeedFan 2014-02-01 06:41 - 2014-02-09 20:43 - 00000045 _____ () C:\Windows\System32\initdebug.nfo 2014-02-01 06:33 - 2014-02-01 06:33 - 00000000 ____D () C:\Program Files\ClockworkMod 2014-02-01 06:17 - 2015-01-16 10:57 - 00000000 ___DC () C:\32788R22FWJFW 2014-02-01 06:17 - 2014-02-01 06:17 - 00000000 ____D () C:\Windows\erdnt 2014-02-01 05:49 - 2014-02-01 05:49 - 00347816 _____ (Microsoft Corporation) C:\Users\...\Desktop\MicrosoftFixit.wu.Run.exe 2014-02-01 05:28 - 2014-07-01 04:43 - 00000000 ____D () C:\Users\...\AppData\Local\Adobe 2014-01-23 08:58 - 2014-06-04 09:56 - 00000000 ____D () C:\Users\...\Desktop\softwares 2014-01-23 08:01 - 2014-01-23 08:01 - 00013225 _____ () C:\Users\...\Desktop\Nach Updates suchen - Verknüpfung.lnk 2014-01-22 08:21 - 2014-01-22 08:21 - 00000000 ___DC () C:\daa66a5bf9166ea01b04b4 2014-01-15 09:18 - 2014-01-15 09:18 - 00028578 _____ () C:\Users\...\Desktop\Microsoft PowerPoint-Präsentation (neu).pptx 2014-01-15 07:48 - 2013-05-09 20:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\System32\wmploc.DLL 2014-01-15 07:48 - 2013-05-09 20:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\System32\wmp.dll 2014-01-15 07:40 - 2013-10-03 17:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\System32\SmartcardCredentialProvider.dll 2014-01-15 07:40 - 2013-10-03 17:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\System32\credui.dll 2014-01-15 07:39 - 2013-11-26 03:11 - 00240576 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\netio.sys 2014-01-15 07:39 - 2013-11-23 10:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\System32\WMPhoto.dll 2014-01-15 07:39 - 2013-10-29 18:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\System32\msieftp.dll 2014-01-15 07:39 - 2013-10-18 17:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\System32\imagehlp.dll 2014-01-15 07:39 - 2013-10-11 18:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\System32\wshom.ocx 2014-01-15 07:39 - 2013-10-11 18:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\System32\nshwfp.dll 2014-01-15 07:39 - 2013-10-11 18:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\System32\scrrun.dll 2014-01-15 07:39 - 2013-10-11 18:01 - 00679424 _____ (Microsoft Corporation) C:\Windows\System32\IKEEXT.DLL 2014-01-15 07:39 - 2013-10-11 18:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\System32\FWPUCLNT.DLL 2014-01-15 07:39 - 2013-10-11 17:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\System32\wscript.exe 2014-01-15 07:39 - 2013-10-11 17:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\System32\cscript.exe 2014-01-15 07:39 - 2013-10-05 11:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2014-01-15 07:39 - 2013-10-03 17:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\drmk.sys 2014-01-15 07:39 - 2013-10-03 17:17 - 00177152 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\portcls.sys 2014-01-15 07:39 - 2013-07-04 04:16 - 00369848 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\cng.sys 2014-01-15 07:37 - 2013-11-26 17:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbhub.sys 2014-01-15 07:37 - 2013-11-26 17:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbport.sys 2014-01-15 07:37 - 2013-11-26 17:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbccgp.sys 2014-01-15 07:37 - 2013-11-26 17:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbehci.sys 2014-01-15 07:37 - 2013-11-26 17:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbuhci.sys 2014-01-15 07:37 - 2013-11-26 17:13 - 00020480 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbohci.sys 2014-01-15 07:37 - 2013-11-26 17:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbd.sys 2014-01-15 07:25 - 2014-01-15 07:25 - 00717733 _____ () C:\Users\...\Desktop\pcwUpdateRepair.exe 2014-01-08 07:19 - 2014-01-08 07:19 - 00000000 ____D () C:\Users\...\AppData\Roaming\EZDownloader 2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\...\AppData\Local\Torch 2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\...\AppData\Local\Comodo 2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\Gast\AppData\Local\Torch 2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\Gast\AppData\Local\Google 2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\Gast\AppData\Local\Comodo 2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\users\Gast 2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch 2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google 2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo 2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\users\Administrator 2014-01-08 07:14 - 2014-01-08 07:20 - 00000000 ____D () C:\ProgramData\InstallMate 2014-01-08 07:09 - 2014-01-08 07:09 - 00000000 ____D () C:\Users\...\SyncFolder 2014-01-02 06:09 - 2014-03-23 05:17 - 00000000 ____D () C:\Users\...\AppData\Roaming\newnext.me 2014-01-02 06:09 - 2014-03-23 05:17 - 00000000 ____D () C:\Users\...\AppData\Local\genienext 2014-01-02 06:09 - 2014-01-14 09:05 - 00000000 ____D () C:\Users\...\AppData\Local\Mobogenie 2014-01-02 06:09 - 2014-01-13 09:09 - 00001588 _____ () C:\Users\...\daemonprocess.txt 2014-01-02 06:09 - 2014-01-02 06:09 - 00000000 ____D () C:\Users\...\Documents\Mobogenie 2014-01-02 06:09 - 2014-01-02 06:09 - 00000000 ____D () C:\Users\...\AppData\Roaming\Windows Net Data 2014-01-02 06:09 - 2014-01-02 06:09 - 00000000 ____D () C:\Users\...\AppData\Local\cache 2014-01-02 06:09 - 2014-01-02 06:09 - 00000000 ____D () C:\Users\...\.android 2014-01-02 06:07 - 2014-01-02 06:13 - 00000000 ____D () C:\Users\...\AppData\Roaming\PhotoScape 2014-01-02 05:59 - 2014-01-02 05:59 - 00000000 ____D () C:\Users\...\AppData\Roaming\MrJobs 2013-12-19 05:33 - 2013-12-19 05:33 - 00000967 _____ () C:\Users\...\Desktop\HTML Editor.lnk 2013-12-19 05:22 - 2013-12-19 05:22 - 00000000 ____D () C:\Users\...\AppData\Roaming\Nvu 2013-12-19 05:15 - 2014-04-02 05:53 - 00000000 ____D () C:\Users\...\Desktop\HTML 2013-12-19 05:07 - 2014-04-21 07:31 - 00000000 ____D () C:\Program Files\phase5 2013-12-19 03:03 - 2014-11-01 05:40 - 00000439 _____ () C:\Windows\System32\Drivers\etc\hosts.ics 2013-11-20 08:40 - 2013-11-20 08:40 - 00000000 ____D () C:\Users\...\Documents\Optimizer Pro 2013-10-20 02:56 - 2013-11-06 05:32 - 00002293 _____ () C:\Users\...\Documents\Install STAR WARS The Old Republic.log 2013-10-13 01:55 - 2014-11-05 05:57 - 00000000 ____D () C:\Program Files\EPSON Software 2013-10-10 09:14 - 2013-09-07 18:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\System32\mswsock.dll 2013-10-10 09:14 - 2013-08-28 17:50 - 01289096 _____ (Microsoft Corporation) C:\Windows\System32\ntdll.dll 2013-10-10 09:14 - 2013-08-28 17:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\System32\tdh.dll 2013-10-10 09:14 - 2013-08-28 17:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\System32\advapi32.dll 2013-10-10 09:14 - 2013-08-27 16:57 - 00434688 _____ (Microsoft Corporation) C:\Windows\System32\scavengeui.dll 2013-10-10 09:14 - 2013-07-20 02:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll 2013-10-10 09:14 - 2013-07-04 03:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\System32\comctl32.dll 2013-10-10 09:14 - 2013-07-02 19:36 - 00055808 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hidclass.sys 2013-10-10 09:14 - 2013-07-02 19:36 - 00025728 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hidparse.sys 2013-10-10 09:13 - 2013-07-04 03:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\System32\WebClnt.dll 2013-10-10 09:13 - 2013-07-04 03:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\System32\davclnt.dll 2013-10-10 09:13 - 2013-07-04 01:48 - 00115712 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxdav.sys 2013-10-10 09:13 - 2013-06-05 20:52 - 00026112 _____ (Microsoft Corporation) C:\Windows\System32\lpk.dll 2013-10-10 09:13 - 2013-06-05 20:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\System32\fontsub.dll 2013-10-10 09:13 - 2013-06-05 20:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\System32\dciman32.dll 2013-10-10 09:13 - 2013-06-05 19:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\System32\atmfd.dll 2013-10-10 09:13 - 2013-06-05 19:01 - 00034304 _____ (Adobe Systems) C:\Windows\System32\atmlib.dll 2013-10-10 09:12 - 2013-07-12 02:07 - 00086016 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbcir.sys 2013-10-10 09:12 - 2013-06-25 14:56 - 00527064 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\Wdf01000.sys 2013-10-08 04:13 - 2013-10-08 04:13 - 00000000 ____D () C:\Users\...\Documents\228488-673002-adobe-flash-player.zip 2013-10-04 17:38 - 2013-10-04 17:38 - 04449952 _____ (Microsoft Corporation) C:\Windows\System32\mfc120u.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 04424344 _____ (Microsoft Corporation) C:\Windows\System32\mfc120.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00970912 _____ (Microsoft Corporation) C:\Windows\System32\msvcr120.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00455328 _____ (Microsoft Corporation) C:\Windows\System32\msvcp120.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00339616 _____ (Microsoft Corporation) C:\Windows\System32\vcamp120.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00247984 _____ (Microsoft Corporation) C:\Windows\System32\vccorlib120.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00119456 _____ (Microsoft Corporation) C:\Windows\System32\vcomp120.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00083104 _____ (Microsoft Corporation) C:\Windows\System32\mfcm120u.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00083104 _____ (Microsoft Corporation) C:\Windows\System32\mfcm120.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00074920 _____ (Microsoft Corporation) C:\Windows\System32\mfc120fra.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00074920 _____ (Microsoft Corporation) C:\Windows\System32\mfc120deu.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00073896 _____ (Microsoft Corporation) C:\Windows\System32\mfc120esn.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00072872 _____ (Microsoft Corporation) C:\Windows\System32\mfc120ita.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00070824 _____ (Microsoft Corporation) C:\Windows\System32\mfc120rus.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00065192 _____ (Microsoft Corporation) C:\Windows\System32\mfc120enu.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00053928 _____ (Microsoft Corporation) C:\Windows\System32\mfc120jpn.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00053416 _____ (Microsoft Corporation) C:\Windows\System32\mfc120kor.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00046248 _____ (Microsoft Corporation) C:\Windows\System32\mfc120cht.dll 2013-10-04 17:38 - 2013-10-04 17:38 - 00046248 _____ (Microsoft Corporation) C:\Windows\System32\mfc120chs.dll 2013-10-03 04:28 - 2014-08-03 03:24 - 00000000 ____D () C:\Users\...\AppData\Local\Avg2014 2013-10-01 01:50 - 2014-11-13 06:05 - 00000000 ____D () C:\Windows\System32\MRT 2013-10-01 01:49 - 2013-08-04 17:56 - 00133056 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ataport.sys 2013-10-01 01:49 - 2013-07-25 00:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\System32\WMVDECOD.DLL 2013-10-01 01:48 - 2013-08-01 17:50 - 00169984 _____ (Microsoft Corporation) C:\Windows\System32\winsrv.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 16:52 - 00271360 _____ (Microsoft Corporation) C:\Windows\System32\conhost.exe 2013-10-01 01:48 - 2013-08-01 16:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 16:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 16:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll 2013-10-01 01:48 - 2013-08-01 16:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll 2013-10-01 01:48 - 2013-07-25 17:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\System32\shdocvw.dll 2013-10-01 01:48 - 2013-07-08 20:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\System32\wintrust.dll 2013-10-01 01:48 - 2013-07-08 20:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2013-10-01 01:48 - 2013-07-08 20:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2013-10-01 01:27 - 2014-03-17 08:04 - 00528384 _____ () C:\Users\...\Desktop\Microsoft Access Datenbank (neu).accdb 2013-09-30 05:34 - 2014-11-08 06:45 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2013-09-30 05:33 - 2013-09-30 05:33 - 00000000 ____D () C:\Users\...\Documents\DVDVideoSoft 2013-09-30 05:32 - 2014-07-29 01:45 - 00000000 ____D () C:\Users\...\AppData\Roaming\DVDVideoSoft 2013-09-30 04:38 - 2014-01-15 09:19 - 00000000 ____D () C:\Users\...\Desktop\Powerpoint 2013-09-23 07:30 - 2013-10-03 04:32 - 00000000 ____D () C:\Users\...\AppData\Local\Windows Live 2013-09-23 07:29 - 2013-09-23 07:29 - 00000000 ____D () C:\Program Files\Common Files\Windows Live 2013-09-19 05:33 - 2013-09-19 05:33 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2013-09-11 12:21 - 2013-09-11 12:21 - 00863344 _____ (Microsoft Corporation) C:\Windows\System32\msvcr110_clr0400.dll 2013-09-11 12:21 - 2013-09-11 12:21 - 00501872 _____ (Microsoft Corporation) C:\Windows\System32\msvcp110_clr0400.dll 2013-09-11 12:21 - 2013-09-11 12:21 - 00028776 _____ (Microsoft Corporation) C:\Windows\System32\aspnet_counters.dll 2013-09-11 12:21 - 2013-09-11 12:21 - 00018000 _____ (Microsoft Corporation) C:\Windows\System32\msvcr100_clr0400.dll 2013-09-11 06:48 - 2013-09-11 06:48 - 01195520 _____ () C:\Users\...\Documents\Goldrausch Kalifornien.pptuh.ppt 2013-09-11 04:52 - 2013-09-11 04:52 - 00000000 _____ () C:\Windows\wininit.ini 2013-08-28 04:38 - 2013-08-28 04:38 - 00000000 ____D () C:\Users\...\AppData\Roaming\WinRAR 2013-08-06 08:55 - 2014-11-08 06:48 - 00000000 ____D () C:\Program Files\VS Revo Group 2013-08-06 08:45 - 2015-01-15 10:08 - 00000000 ____D () C:\Windows\pss 2013-08-06 08:40 - 2013-05-12 19:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\System32\certutil.exe 2013-08-06 08:40 - 2013-05-12 19:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\System32\certenc.dll 2013-08-06 08:40 - 2013-05-09 19:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll 2013-08-06 08:40 - 2013-04-25 15:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\System32\d3d11.dll 2013-08-06 08:40 - 2013-04-09 15:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\System32\DWrite.dll 2013-08-06 08:39 - 2013-04-25 20:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\System32\win32spl.dll 2013-08-06 08:29 - 2013-08-06 08:29 - 00000000 ____D () C:\Program Files\Common Files\EPSON 2013-08-06 08:28 - 2013-08-21 06:06 - 00000000 ____D () C:\ProgramData\EPSON 2013-08-06 08:28 - 2011-04-19 17:03 - 00095232 _____ (SEIKO EPSON CORPORATION) C:\Windows\System32\E_FLBIKE.DLL 2013-08-06 07:36 - 2013-08-06 08:37 - 00104526 _____ () C:\Users\...\Documents\Präsentation1.pptx 2013-08-05 04:13 - 2013-08-05 04:13 - 00000000 ____D () C:\Users\Public\Recorded TV 2013-08-04 17:15 - 2013-12-20 07:11 - 00002186 _____ () C:\Users\Public\Desktop\Google Earth.lnk 2013-08-01 08:39 - 2014-02-28 07:20 - 00020351 _____ () C:\Windows\prodsett_copy.ini 2013-08-01 08:26 - 2014-07-01 05:46 - 00000000 ____D () C:\ProgramData\F-Secure 2013-06-09 09:53 - 2013-06-09 09:53 - 04456520 _____ (Microsoft Corporation) C:\Windows\System32\mfc110u.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 04421192 _____ (Microsoft Corporation) C:\Windows\System32\mfc110.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 00164424 _____ (Microsoft Corporation) C:\Windows\System32\atl110.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 00083024 _____ (Microsoft Corporation) C:\Windows\System32\mfcm110u.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 00083016 _____ (Microsoft Corporation) C:\Windows\System32\mfcm110.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 00074832 _____ (Microsoft Corporation) C:\Windows\System32\mfc110fra.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 00074832 _____ (Microsoft Corporation) C:\Windows\System32\mfc110deu.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 00073808 _____ (Microsoft Corporation) C:\Windows\System32\mfc110esn.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 00072784 _____ (Microsoft Corporation) C:\Windows\System32\mfc110ita.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 00070736 _____ (Microsoft Corporation) C:\Windows\System32\mfc110rus.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 00065104 _____ (Microsoft Corporation) C:\Windows\System32\mfc110enu.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 00053840 _____ (Microsoft Corporation) C:\Windows\System32\mfc110jpn.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 00053328 _____ (Microsoft Corporation) C:\Windows\System32\mfc110kor.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 00046160 _____ (Microsoft Corporation) C:\Windows\System32\mfc110cht.dll 2013-06-09 09:53 - 2013-06-09 09:53 - 00046160 _____ (Microsoft Corporation) C:\Windows\System32\mfc110chs.dll 2013-06-07 20:09 - 2013-06-07 20:30 - 00001664 _____ () C:\Windows\System32\ASOROSet.bin 2013-06-07 20:08 - 2013-06-07 20:08 - 00000000 ____D () C:\Users\...\AppData\Local\Microsoft_Corporation 2013-06-07 07:23 - 2014-07-01 05:15 - 00000000 ____D () C:\Users\...\AppData\Roaming\Systweak 2013-06-06 11:32 - 2013-06-06 11:32 - 00000000 ____D () C:\Users\...\Documents\OneNote-Notizbücher 2013-06-04 10:46 - 2014-12-21 07:26 - 00000000 __RHD () C:\Users\Public\Libraries 2013-05-29 07:15 - 2014-12-13 07:43 - 00000000 ____D () C:\ProgramData\Skype 2013-05-29 07:15 - 2014-05-22 08:14 - 00000000 ____D () C:\Users\...\AppData\Roaming\Skype 2013-05-29 07:15 - 2014-05-22 08:13 - 00000000 ____D () C:\Program Files\Skype 2013-05-20 04:26 - 2013-05-20 04:26 - 00000000 ____D () C:\Users\...\AppData\Local\SWTORPerf 2013-05-20 04:25 - 2014-04-23 05:52 - 00000000 ____D () C:\Program Files\Electronic Arts 2013-05-20 04:25 - 2013-06-06 10:36 - 00000000 ____D () C:\Program Files\Common Files\BioWare 2013-05-20 04:25 - 2013-05-20 04:25 - 00000000 ____D () C:\users\hedev 2013-05-20 02:49 - 2013-03-18 19:33 - 00040960 _____ (Microsoft Corporation) C:\Windows\System32\wwanprotdim.dll 2013-05-20 02:48 - 2013-02-26 20:49 - 00047104 _____ (Microsoft Corporation) C:\Windows\System32\appinfo.dll 2013-05-10 03:32 - 2014-12-20 02:53 - 00000000 ____D () C:\ProgramData\Adobe 2013-05-10 03:32 - 2013-05-10 03:32 - 00000000 ____D () C:\ProgramData\McAfee 2013-05-08 07:01 - 2014-12-10 07:13 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service 2013-05-08 07:01 - 2013-05-08 07:01 - 00000000 ____D () C:\ProgramData\Mozilla 2013-05-07 09:29 - 2013-05-12 02:48 - 00000000 ____D () C:\Program Files\Valve 2013-05-07 09:08 - 2013-05-07 23:48 - 00000000 ____D () C:\Program Files\7-Zip 2013-05-07 09:08 - 2011-05-13 15:17 - 00632656 _____ (Microsoft Corporation) C:\Windows\System32\msvcr80.dll 2013-05-07 09:08 - 2011-05-13 15:17 - 00554832 _____ (Microsoft Corporation) C:\Windows\System32\msvcp80.dll 2013-05-07 09:08 - 2011-05-13 15:17 - 00479232 _____ (Microsoft Corporation) C:\Windows\System32\msvcm80.dll 2013-05-07 09:08 - 2011-05-13 06:59 - 00001870 _____ () C:\Windows\System32\Microsoft.VC80.CRT.manifest 2013-04-30 08:20 - 2013-04-30 08:20 - 00000000 ____D () C:\Users\...\AppData\Roaming\Unity 2013-04-30 08:00 - 2013-04-30 08:00 - 00000000 ____D () C:\Users\...\AppData\Local\Unity 2013-04-27 07:04 - 2013-04-27 07:04 - 00000000 ____D () C:\Users\...\AppData\Local\Macromedia 2013-04-27 06:58 - 2014-12-10 09:06 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerApp.exe 2013-04-27 06:58 - 2013-04-27 06:58 - 01400416 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dat 2013-04-27 06:58 - 2013-04-27 06:58 - 00745472 _____ (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe 2013-04-27 06:58 - 2013-04-27 06:58 - 00719360 _____ (Microsoft Corporation) C:\Windows\System32\mshtmlmedia.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00629248 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00361984 _____ (Microsoft Corporation) C:\Windows\System32\html.iec 2013-04-27 06:58 - 2013-04-27 06:58 - 00232960 _____ (Microsoft Corporation) C:\Windows\System32\url.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00204800 _____ (Microsoft Corporation) C:\Windows\System32\webcheck.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00185344 _____ (Microsoft Corporation) C:\Windows\System32\elshyph.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00158720 _____ (Microsoft Corporation) C:\Windows\System32\msls31.dll |
18.01.2015, 12:04 | #8 |
| RUN.dll fehlerCode:
ATTFilter 2013-04-27 06:58 - 2013-04-27 06:58 - 00150528 _____ (Microsoft Corporation) C:\Windows\System32\iexpress.exe 2013-04-27 06:58 - 2013-04-27 06:58 - 00138752 _____ (Microsoft Corporation) C:\Windows\System32\wextract.exe 2013-04-27 06:58 - 2013-04-27 06:58 - 00137216 _____ (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe 2013-04-27 06:58 - 2013-04-27 06:58 - 00125440 _____ (Microsoft Corporation) C:\Windows\System32\occache.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00117248 _____ (Microsoft Corporation) C:\Windows\System32\iepeers.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00110592 _____ (Microsoft Corporation) C:\Windows\System32\IEAdvpack.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00082432 _____ (Microsoft Corporation) C:\Windows\System32\inseng.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00073728 _____ (Microsoft Corporation) C:\Windows\System32\SetIEInstalledDate.exe 2013-04-27 06:58 - 2013-04-27 06:58 - 00069120 _____ (Microsoft Corporation) C:\Windows\System32\icardie.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\System32\tdc.ocx 2013-04-27 06:58 - 2013-04-27 06:58 - 00057344 _____ (Microsoft Corporation) C:\Windows\System32\pngfilt.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00048640 _____ (Microsoft Corporation) C:\Windows\System32\mshtmler.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00041984 _____ (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00038400 _____ (Microsoft Corporation) C:\Windows\System32\imgutil.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00023040 _____ (Microsoft Corporation) C:\Windows\System32\licmgr10.dll 2013-04-27 06:58 - 2013-04-27 06:58 - 00012800 _____ (Microsoft Corporation) C:\Windows\System32\mshta.exe 2013-04-27 06:58 - 2013-04-27 06:58 - 00011776 _____ (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe 2013-04-27 06:57 - 2013-04-27 06:57 - 01158144 _____ (Microsoft Corporation) C:\Windows\System32\XpsPrint.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 01080832 _____ (Microsoft Corporation) C:\Windows\System32\d3d10.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00906240 _____ (Microsoft Corporation) C:\Windows\System32\FntCache.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00604160 _____ (Microsoft Corporation) C:\Windows\System32\d3d10level9.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00364544 _____ (Microsoft Corporation) C:\Windows\System32\XpsGdiConverter.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00293376 _____ (Microsoft Corporation) C:\Windows\System32\dxgi.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00249856 _____ (Microsoft Corporation) C:\Windows\System32\d3d10_1core.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00220160 _____ (Microsoft Corporation) C:\Windows\System32\d3d10core.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00207872 _____ (Microsoft Corporation) C:\Windows\System32\WindowsCodecsExt.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00187392 _____ (Microsoft Corporation) C:\Windows\System32\UIAnimation.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00161792 _____ (Microsoft Corporation) C:\Windows\System32\d3d10_1.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00010752 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00009728 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00005632 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00005632 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-04-27 06:57 - 2013-04-27 06:57 - 00002560 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2013-04-26 10:21 - 2012-07-25 19:39 - 00047720 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\WdfLdr.sys 2013-04-26 10:21 - 2012-07-25 18:46 - 00009728 _____ (Microsoft Corporation) C:\Windows\System32\Wdfres.dll 2013-04-26 10:21 - 2012-06-02 06:34 - 00000003 _____ () C:\Windows\System32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2013-04-26 10:20 - 2012-07-25 19:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\System32\WUDFHost.exe 2013-04-26 10:20 - 2012-07-25 19:20 - 00613888 _____ (Microsoft Corporation) C:\Windows\System32\WUDFx.dll 2013-04-26 10:20 - 2012-07-25 19:20 - 00172032 _____ (Microsoft Corporation) C:\Windows\System32\WUDFPlatform.dll 2013-04-26 10:20 - 2012-07-25 19:20 - 00073216 _____ (Microsoft Corporation) C:\Windows\System32\WUDFSvc.dll 2013-04-26 10:20 - 2012-07-25 19:20 - 00038912 _____ (Microsoft Corporation) C:\Windows\System32\WUDFCoinstaller.dll 2013-04-26 10:20 - 2012-07-25 18:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\WUDFPf.sys 2013-04-26 10:20 - 2012-07-25 18:32 - 00155136 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\WUDFRd.sys 2013-04-26 10:20 - 2012-06-02 06:57 - 00000003 _____ () C:\Windows\System32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2013-04-26 10:11 - 2012-08-21 12:12 - 00245760 _____ (Microsoft Corporation) C:\Windows\System32\OxpsConverter.exe 2013-04-26 10:11 - 2012-05-13 20:33 - 00769024 _____ (Microsoft Corporation) C:\Windows\System32\localspl.dll 2013-04-26 10:10 - 2012-12-07 04:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\System32\Wpc.dll 2013-04-26 10:10 - 2012-12-07 04:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\System32\gameux.dll 2013-04-26 10:10 - 2012-12-07 02:46 - 00055296 _____ (Microsoft) C:\Windows\System32\cero.rs 2013-04-26 10:10 - 2012-12-07 02:46 - 00051712 _____ (Microsoft) C:\Windows\System32\esrb.rs 2013-04-26 10:10 - 2012-12-07 02:46 - 00046592 _____ (Microsoft) C:\Windows\System32\fpb.rs 2013-04-26 10:10 - 2012-12-07 02:46 - 00045568 _____ (Microsoft) C:\Windows\System32\oflc-nz.rs 2013-04-26 10:10 - 2012-12-07 02:46 - 00044544 _____ (Microsoft) C:\Windows\System32\pegibbfc.rs 2013-04-26 10:10 - 2012-12-07 02:46 - 00043520 _____ (Microsoft) C:\Windows\System32\csrr.rs 2013-04-26 10:10 - 2012-12-07 02:46 - 00040960 _____ (Microsoft) C:\Windows\System32\cob-au.rs 2013-04-26 10:10 - 2012-12-07 02:46 - 00030720 _____ (Microsoft) C:\Windows\System32\usk.rs 2013-04-26 10:10 - 2012-12-07 02:46 - 00023552 _____ (Microsoft) C:\Windows\System32\oflc.rs 2013-04-26 10:10 - 2012-12-07 02:46 - 00021504 _____ (Microsoft) C:\Windows\System32\grb.rs 2013-04-26 10:10 - 2012-12-07 02:46 - 00020480 _____ (Microsoft) C:\Windows\System32\pegi-pt.rs 2013-04-26 10:10 - 2012-12-07 02:46 - 00020480 _____ (Microsoft) C:\Windows\System32\pegi-fi.rs 2013-04-26 10:10 - 2012-12-07 02:46 - 00020480 _____ (Microsoft) C:\Windows\System32\pegi.rs 2013-04-26 10:10 - 2012-12-07 02:46 - 00015360 _____ (Microsoft) C:\Windows\System32\djctq.rs 2013-04-26 10:09 - 2013-03-18 20:48 - 00038912 _____ (Microsoft Corporation) C:\Windows\System32\csrsrv.dll 2013-04-26 10:09 - 2013-03-18 18:49 - 00069632 _____ (Microsoft Corporation) C:\Windows\System32\smss.exe 2013-04-26 10:09 - 2012-10-09 09:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\System32\dhcpcore6.dll 2013-04-26 10:09 - 2012-10-09 09:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\System32\dhcpcsvc6.dll 2013-04-26 10:09 - 2012-10-03 08:42 - 00242176 _____ (Microsoft Corporation) C:\Windows\System32\nlasvc.dll 2013-04-26 10:09 - 2012-10-03 08:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\System32\netcorehc.dll 2013-04-26 10:09 - 2012-10-03 08:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\System32\ncsi.dll 2013-04-26 10:09 - 2012-10-03 08:42 - 00052224 _____ (Microsoft Corporation) C:\Windows\System32\nlaapi.dll 2013-04-26 10:09 - 2012-10-03 08:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\System32\netevent.dll 2013-04-26 10:09 - 2012-10-03 08:40 - 00499712 _____ (Microsoft Corporation) C:\Windows\System32\iphlpsvc.dll 2013-04-26 10:09 - 2012-10-03 07:21 - 00035328 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tcpipreg.sys 2013-04-26 10:09 - 2012-06-05 21:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\System32\cdosys.dll 2013-04-26 10:08 - 2013-02-11 19:32 - 00015872 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usb8023x.sys 2013-04-26 10:08 - 2013-02-11 19:32 - 00015872 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usb8023.sys 2013-04-26 10:08 - 2013-01-23 20:47 - 00196328 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\fvevol.sys 2013-04-26 10:08 - 2012-11-22 18:48 - 00049152 _____ (Microsoft Corporation) C:\Windows\System32\taskhost.exe 2013-04-26 10:08 - 2012-11-01 21:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\System32\dpnet.dll 2013-04-26 10:08 - 2012-09-25 14:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\System32\synceng.dll 2013-04-26 10:08 - 2012-08-22 09:16 - 00712048 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys 2013-04-26 10:08 - 2012-07-04 13:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\System32\netapi32.dll 2013-04-26 10:08 - 2012-07-04 13:14 - 00102912 _____ (Microsoft Corporation) C:\Windows\System32\browser.dll 2013-04-26 10:08 - 2012-07-04 13:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\System32\browcli.dll 2013-04-26 10:08 - 2012-07-04 11:45 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rndismpx.sys 2013-04-26 10:08 - 2012-07-04 11:45 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\RNDISMP.sys 2013-04-26 10:08 - 2012-05-04 23:46 - 00400896 _____ (Microsoft Corporation) C:\Windows\System32\srcore.dll 2013-04-26 10:08 - 2012-04-30 20:44 - 00164352 _____ (Microsoft Corporation) C:\Windows\System32\profsvc.dll 2013-04-26 10:08 - 2012-04-25 20:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll 2013-04-26 10:08 - 2012-04-25 20:41 - 00008192 _____ (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe 2013-04-26 10:08 - 2012-03-16 23:27 - 00056176 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\partmgr.sys 2013-04-26 10:08 - 2012-02-10 21:37 - 00317440 _____ (Microsoft Corporation) C:\Windows\System32\spoolsv.exe 2013-01-19 09:18 - 2013-01-19 09:18 - 00000000 ____D () C:\Users\...\AppData\Local\AVTEMPDIR 2013-01-18 06:56 - 2013-01-18 06:56 - 00000000 ____D () C:\Users\...\AppData\Roaming\Ashampoo Photo Commander 5 2013-01-18 06:55 - 2013-01-18 06:55 - 00000000 ____D () C:\Users\...\AppData\Local\ashampoo 2013-01-18 06:52 - 2013-01-18 06:52 - 00000000 ____D () C:\Users\...\AppData\Local\Ashampoo Antivirus 2013-01-18 06:50 - 2014-12-20 01:59 - 00000000 ____D () C:\Program Files\Ashampoo 2012-12-29 12:59 - 2012-12-29 12:59 - 00024184 _____ (Almico Software) C:\Windows\System32\speedfan.sys 2012-12-24 07:04 - 2014-05-06 08:44 - 00007601 _____ () C:\Users\...\AppData\Local\resmon.resmoncfg 2012-12-24 07:01 - 2012-12-24 07:01 - 00000000 ____D () C:\Users\...\AppData\Local\Apps\2.0 2012-11-05 16:20 - 2012-11-05 16:20 - 00875472 _____ (Microsoft Corporation) C:\Windows\System32\msvcr110.dll 2012-11-05 16:20 - 2012-11-05 16:20 - 00535008 _____ (Microsoft Corporation) C:\Windows\System32\msvcp110.dll 2012-11-05 16:20 - 2012-11-05 16:20 - 00320976 _____ (Microsoft Corporation) C:\Windows\System32\vcamp110.dll 2012-11-05 16:20 - 2012-11-05 16:20 - 00252400 _____ (Microsoft Corporation) C:\Windows\System32\vccorlib110.dll 2012-11-05 16:20 - 2012-11-05 16:20 - 00125904 _____ (Microsoft Corporation) C:\Windows\System32\vcomp110.dll 2012-10-07 06:47 - 2012-10-07 06:47 - 00000000 ____D () C:\Windows\uninstall 2012-07-17 05:49 - 2012-07-17 05:49 - 00209648 _____ (Microsoft Corp.) C:\Windows\System32\LIVESSP.DLL 2012-05-17 02:48 - 2012-05-17 02:48 - 00021035 _____ (Meetinghouse Data Communications) C:\Windows\System32\Drivers\AegisP.sys 2012-04-12 08:56 - 2012-02-29 21:46 - 00019824 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\fs_rec.sys 2012-04-12 08:56 - 2012-02-29 21:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\System32\wmi.dll 2012-03-27 07:31 - 2012-02-16 21:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\System32\rdpcore.dll 2012-03-27 07:31 - 2012-02-16 20:13 - 00024576 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tdtcp.sys 2012-02-21 08:20 - 2012-01-04 00:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\System32\ntshrui.dll 2012-02-21 08:20 - 2011-12-29 21:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\System32\timedate.cpl 2012-02-21 08:20 - 2011-12-15 23:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\System32\msvcrt.dll 2012-02-15 09:13 - 2012-12-24 10:49 - 00000000 ____D () C:\Users\...\AppData\Roaming\Media Finder 2012-02-15 09:12 - 2012-02-15 09:12 - 00000000 ____D () C:\Users\...\AppData\Roaming\Babylon 2012-02-13 06:44 - 2014-02-02 03:28 - 00000000 ____D () C:\Users\...\AppData\Local\Conduit 2012-02-10 08:40 - 2012-03-04 05:52 - 00447208 _____ (BitDefender) C:\Windows\System32\Drivers\avckf.sys 2012-01-29 07:32 - 2011-11-16 21:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\System32\webio.dll 2012-01-17 05:58 - 2012-01-17 05:58 - 00000385 _____ () C:\Windows\System32\user_gensett.xml 2012-01-15 02:45 - 2012-01-15 02:45 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_avchv_01009.Wdf 2012-01-15 02:40 - 2012-12-24 10:55 - 00000000 ____D () C:\Program Files\Bitdefender 2012-01-15 02:39 - 2012-01-15 02:39 - 00000000 ____D () C:\Users\...\AppData\Roaming\QuickScan 2012-01-15 02:07 - 2011-10-25 20:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\System32\quartz.dll 2012-01-03 04:02 - 2012-12-24 12:00 - 00000000 ____D () C:\Program Files\Franzis 2011-12-28 06:59 - 2011-10-14 21:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\System32\EncDec.dll 2011-11-25 04:59 - 2011-11-25 04:59 - 00240184 _____ (BitDefender) C:\Windows\System32\Drivers\avchv.sys 2011-11-12 04:20 - 2002-01-08 14:48 - 00000000 ____D () C:\Users\...\AppData\Local\Akamai 2011-10-26 08:09 - 2011-08-26 20:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\System32\oleacc.dll 2011-10-26 08:09 - 2011-08-16 20:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\System32\psisdecd.dll 2011-10-26 08:09 - 2011-08-16 20:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\System32\psisrndr.ax 2011-09-29 05:05 - 2014-04-29 02:46 - 00000000 ____D () C:\Windows\bg-BG 2011-09-29 05:05 - 2011-09-29 05:05 - 00000000 ____D () C:\Windows\System32\Drivers\bg-BG 2011-09-29 05:05 - 2011-09-29 05:05 - 00000000 ____D () C:\Windows\System32\0409 2011-09-06 07:06 - 2014-07-28 04:46 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2011-08-14 00:59 - 2011-07-08 18:30 - 00223744 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb10.sys 2011-08-14 00:59 - 2011-06-15 20:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\System32\xmllite.dll 2011-08-14 00:58 - 2011-06-15 00:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\System32\odbcjt32.dll 2011-08-14 00:58 - 2011-06-15 00:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\System32\odbctrac.dll 2011-08-14 00:58 - 2011-06-15 00:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\System32\odbccp32.dll 2011-08-14 00:58 - 2011-06-15 00:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\System32\odbccu32.dll 2011-08-14 00:58 - 2011-06-15 00:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\System32\odbccr32.dll 2011-08-14 00:58 - 2011-05-24 02:44 - 00293376 _____ (Microsoft Corporation) C:\Windows\System32\umpnpmgr.dll 2011-08-14 00:58 - 2011-05-03 20:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\System32\tquery.dll 2011-08-14 00:58 - 2011-05-03 20:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\System32\mssrch.dll 2011-08-14 00:58 - 2011-05-03 20:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\System32\mssvp.dll 2011-08-14 00:58 - 2011-05-03 20:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\System32\mssph.dll 2011-08-14 00:58 - 2011-05-03 20:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\System32\mssphtb.dll 2011-08-14 00:58 - 2011-05-03 20:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\System32\msscntrs.dll 2011-08-14 00:58 - 2011-05-03 20:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\System32\SearchIndexer.exe 2011-08-14 00:58 - 2011-05-03 20:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\System32\SearchProtocolHost.exe 2011-08-14 00:58 - 2011-05-03 20:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\System32\SearchFilterHost.exe 2011-08-03 06:53 - 2014-03-05 06:03 - 00000000 ____D () C:\Users\...\AppData\Roaming\OpenCandy 2011-08-03 06:53 - 2011-08-04 03:30 - 00000000 ____D () C:\Users\...\AppData\Local\OpenCandy 2011-06-20 04:09 - 2011-05-02 20:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\System32\inetcomm.dll 2011-06-20 04:09 - 2011-04-28 18:46 - 00311808 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\srv.sys 2011-06-20 04:09 - 2011-04-28 18:46 - 00310272 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\srv2.sys 2011-06-20 04:09 - 2011-04-28 18:46 - 00114688 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\srvnet.sys 2011-06-20 04:08 - 2011-04-26 18:17 - 00123904 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb.sys 2011-06-20 04:08 - 2011-04-26 18:17 - 00096768 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb20.sys 2011-06-10 16:58 - 2011-06-10 16:58 - 04422992 _____ (Microsoft Corporation) C:\Windows\System32\mfc100u.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 04397384 _____ (Microsoft Corporation) C:\Windows\System32\mfc100.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00773968 _____ (Microsoft Corporation) C:\Windows\System32\msvcr100.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00421200 _____ (Microsoft Corporation) C:\Windows\System32\msvcp100.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00138056 _____ (Microsoft Corporation) C:\Windows\System32\atl100.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00081744 _____ (Microsoft Corporation) C:\Windows\System32\mfcm100u.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00081744 _____ (Microsoft Corporation) C:\Windows\System32\mfcm100.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00064336 _____ (Microsoft Corporation) C:\Windows\System32\mfc100fra.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00064336 _____ (Microsoft Corporation) C:\Windows\System32\mfc100deu.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00063824 _____ (Microsoft Corporation) C:\Windows\System32\mfc100esn.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00062288 _____ (Microsoft Corporation) C:\Windows\System32\mfc100ita.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00060752 _____ (Microsoft Corporation) C:\Windows\System32\mfc100rus.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00055120 _____ (Microsoft Corporation) C:\Windows\System32\mfc100enu.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00051024 _____ (Microsoft Corporation) C:\Windows\System32\vcomp100.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00043856 _____ (Microsoft Corporation) C:\Windows\System32\mfc100jpn.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00043344 _____ (Microsoft Corporation) C:\Windows\System32\mfc100kor.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00036176 _____ (Microsoft Corporation) C:\Windows\System32\mfc100cht.dll 2011-06-10 16:58 - 2011-06-10 16:58 - 00036176 _____ (Microsoft Corporation) C:\Windows\System32\mfc100chs.dll 2011-06-09 20:34 - 2011-06-09 20:34 - 00394856 _____ (Realtek ) C:\Windows\System32\Drivers\Rt86win7.sys 2011-06-09 20:34 - 2011-06-09 20:34 - 00100896 _____ (Realtek Semiconductor Corporation) C:\Windows\System32\RTNUninst32.dll 2011-06-09 20:34 - 2011-06-09 20:34 - 00080416 _____ () C:\Windows\System32\RtNicProp32.dll 2011-05-14 08:20 - 2014-10-25 05:18 - 00000000 ____D () C:\Windows\PCHEALTH 2011-05-14 07:55 - 2011-04-08 21:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\System32\poqexec.exe 2011-05-14 07:16 - 2014-12-10 09:06 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerCPLApp.cpl 2011-05-14 07:01 - 2011-05-14 07:01 - 00000000 ____D () C:\Users\...\Downloads\Video 2011-05-14 07:01 - 2002-01-08 14:32 - 00000000 ____D () C:\Users\...\Downloads\Compressed 2011-05-14 06:18 - 2011-03-10 21:39 - 00143744 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvstor.sys 2011-05-14 06:18 - 2011-03-10 21:39 - 00117120 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvraid.sys 2011-05-14 06:18 - 2011-03-10 21:38 - 00332160 _____ (Intel Corporation) C:\Windows\System32\Drivers\iaStorV.sys 2011-05-14 06:18 - 2011-03-10 21:38 - 00080256 _____ (Advanced Micro Devices) C:\Windows\System32\Drivers\amdsata.sys 2011-05-14 06:18 - 2011-03-10 21:38 - 00022400 _____ (Advanced Micro Devices) C:\Windows\System32\Drivers\amdxata.sys 2011-05-14 06:18 - 2011-03-10 21:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\System32\esent.dll 2011-05-14 06:18 - 2011-03-10 21:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\System32\fsutil.exe 2011-05-14 06:18 - 2011-03-10 20:01 - 00076288 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\USBSTOR.SYS 2011-05-14 06:17 - 2011-02-24 21:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2011-05-14 06:17 - 2011-02-17 21:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\System32\prevhost.exe 2011-04-29 08:38 - 2013-11-15 05:33 - 00000000 ____D () C:\14cea5152b3f79c431d4b59b3a 2011-04-29 08:34 - 2011-03-10 21:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\System32\mfc42u.dll 2011-04-29 08:34 - 2011-03-10 21:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\System32\mfc42.dll 2011-04-29 08:34 - 2011-03-02 21:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\System32\dnsapi.dll 2011-04-29 08:34 - 2011-03-02 21:38 - 00132608 _____ (Microsoft Corporation) C:\Windows\System32\dnsrslvr.dll 2011-04-29 08:34 - 2011-03-02 21:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\System32\dnscacheugc.exe 2011-04-29 08:34 - 2011-02-22 20:47 - 00069632 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\bowser.sys 2011-04-29 08:34 - 2011-02-11 21:35 - 00191488 _____ (Microsoft Corporation) C:\Windows\System32\FXSCOVER.exe 2011-03-09 06:22 - 2010-12-22 21:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\System32\sbe.dll 2011-03-09 06:22 - 2010-12-22 21:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\System32\CPFilters.dll 2011-03-09 06:22 - 2010-12-22 21:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\System32\mpg2splt.ax 2011-02-21 07:50 - 2011-02-21 07:50 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2011-02-20 04:31 - 2011-02-20 04:31 - 00000000 ____D () C:\Users\...\AppData\Roaming\URSoft 2011-02-20 04:27 - 2008-11-10 02:41 - 00032656 _____ (Microsoft Corporation) C:\Windows\System32\msonpmon.dll 2011-02-20 04:21 - 2011-02-20 04:21 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 8 2011-02-20 04:20 - 2011-02-20 04:20 - 00000000 ____D () C:\MSOCache 2011-02-20 03:33 - 2012-05-17 03:04 - 00009851 _____ () C:\Windows\RTacDbg.txt 2011-02-20 03:32 - 2006-04-21 05:43 - 00172416 ____R (Realtek Semiconductor Corporation ) C:\Windows\System32\Drivers\RTL8187.SYS 2011-02-20 03:30 - 2012-05-17 02:55 - 00000000 ____D () C:\Program Files\Micronet Wireless Network Utility 2011-02-20 03:30 - 2011-02-20 03:30 - 00000000 ____D () C:\Windows\OPTIONS 2011-02-20 03:30 - 2005-11-02 06:21 - 00097977 _____ () C:\Windows\System32\EAPPkt9x.VXD 2011-02-20 03:30 - 2002-10-01 23:57 - 00013532 _____ (Windows (R) 2000 DDK provider) C:\Windows\System32\Drivers\SjyPkt.sys 2011-02-20 03:30 - 2001-09-26 01:03 - 00012981 _____ () C:\Windows\System32\REALPKT.VXD 2011-02-14 10:20 - 2013-06-04 10:30 - 00000000 ___RD () C:\Users\...\Desktop\Drucker 2011-02-13 05:56 - 2011-02-13 05:56 - 00000000 ____D () C:\Program Files\MSECache 2011-02-13 05:01 - 2014-02-09 04:33 - 00000000 ____D () C:\Program Files\TuneUp Utilities 2011 2010-12-30 09:10 - 2010-12-30 09:13 - 00000000 ____D () C:\Windows\System32\Adobe 2010-12-29 04:37 - 2014-11-01 08:10 - 00000000 ____D () C:\Program Files\Google 2010-11-14 02:52 - 2003-04-18 10:06 - 00008192 _____ () C:\Windows\System32\srvany.exe 2010-11-14 02:12 - 2010-11-14 02:12 - 00000000 ____D () C:\Program Files\MSXML 4.0 2010-10-29 07:44 - 1999-06-02 09:55 - 00074000 _____ (Microsoft Corporation) C:\Windows\System32\msrclr40.dll 2010-10-29 07:44 - 1998-11-06 05:38 - 00008198 _____ () C:\Windows\System32\odbcjet.cnt 2010-10-29 07:44 - 1998-11-06 05:33 - 00244417 _____ () C:\Windows\System32\odbcjet.hlp 2010-10-29 07:43 - 2002-08-23 00:00 - 01381376 _____ (Borland Software Corporation) C:\Windows\System32\vcl70.bpl 2010-10-29 07:43 - 1999-06-02 08:55 - 00028944 _____ (Microsoft Corporation) C:\Windows\System32\msrecr40.dll 2010-10-29 07:42 - 2013-05-09 08:17 - 00000000 ____D () C:\Program Files\Common Files\InstallShieldi 2010-10-25 04:34 - 2013-01-19 09:03 - 00000000 ____D () C:\Users\...\AppData\Local\Microsoft Games 2010-10-20 02:44 - 2010-10-20 02:44 - 01207656 _____ (Microsoft Corporation) C:\Windows\System32\FM20.DLL 2010-10-12 02:17 - 2014-06-10 07:04 - 00000000 ___RD () C:\Users\...\Desktop\... Ali1 2010-10-10 09:28 - 2010-10-10 09:32 - 00000000 ____D () C:\Users\...\AppData\Roaming\HP 2010-10-10 09:27 - 2010-10-10 09:27 - 00000000 ____D () C:\Users\...\AppData\Local\HP 2010-10-10 09:21 - 2010-10-10 09:21 - 00000000 ____D () C:\Program Files\Common Files\HP 2010-10-10 09:21 - 2010-10-10 09:21 - 00000000 ____D () C:\Program Files\Common Files\Hewlett-Packard 2010-10-10 09:20 - 2010-10-10 09:20 - 00000000 ____D () C:\Windows\hpojp8500a909 2010-10-10 09:18 - 2009-09-10 22:41 - 00364544 _____ (Hewlett-Packard) C:\Windows\System32\hppldcoi.dll 2010-10-10 09:18 - 2009-09-10 22:40 - 00966656 _____ (Hewlett-Packard Co.) C:\Windows\System32\hpwtiop4.dll 2010-10-10 09:18 - 2009-09-10 22:40 - 00741376 _____ (Hewlett-Packard) C:\Windows\System32\hpwwiax5.dll 2010-10-10 09:18 - 2009-09-10 22:40 - 00271704 _____ (Hewlett-Packard) C:\Windows\System32\hpzids01.dll 2010-10-10 09:18 - 2008-08-12 00:58 - 00118272 _____ (Hewlett-Packard Company) C:\Windows\System32\hpf3l082.dll 2010-10-10 09:17 - 2013-05-07 23:50 - 00000000 ____D () C:\Program Files\HP 2010-10-10 09:15 - 2010-10-10 09:28 - 00267817 _____ () C:\Windows\hpwins22.dat 2010-10-10 04:59 - 2009-12-15 15:03 - 00000000 ____D () C:\Windows\Minidump 2010-08-10 05:49 - 2010-08-10 05:49 - 00149776 _____ (Microsoft Corporation) C:\Windows\System32\phl.dll 2010-07-28 05:36 - 2010-07-28 05:36 - 00108560 _____ (ATI Technologies, Inc.) C:\Windows\System32\Drivers\AtiHdmi.sys 2010-07-24 23:20 - 2010-07-24 23:20 - 00581984 _____ (Acronis) C:\Windows\System32\Drivers\timntr.sys 2010-07-24 23:20 - 2010-07-24 23:20 - 00160288 _____ (Acronis) C:\Windows\System32\Drivers\afcdp.sys 2010-07-24 22:34 - 2014-01-02 06:28 - 00000000 ____D () C:\Program Files\TeamViewer 2010-07-22 04:12 - 2010-07-22 04:12 - 00000000 ____D () C:\Users\...\AppData\Roaming\Nitro PDF 2010-07-22 04:11 - 2010-07-22 04:11 - 00000000 ____D () C:\Program Files\Nitro PDF 2010-07-22 04:11 - 2010-07-22 04:11 - 00000000 ____D () C:\Program Files\Common Files\Nitro PDF 2010-07-22 04:11 - 2010-07-22 04:11 - 00000000 ____D () C:\Program Files\Common Files\BCL Technologies 2010-07-22 04:08 - 2010-07-22 04:08 - 00000000 ____D () C:\Windows\Downloaded Installations 2010-07-19 09:13 - 2010-07-19 09:13 - 00000000 ____D () C:\ProgramData\Acronis 2010-07-19 09:11 - 2010-07-24 23:20 - 00000000 ____D () C:\Program Files\Common Files\Acronis 2010-07-19 09:11 - 2010-07-19 09:11 - 00158272 _____ (Acronis) C:\Windows\System32\Drivers\snapman.sys 2010-07-19 09:11 - 2010-07-19 09:11 - 00000000 ____D () C:\Program Files\Acronis 2010-07-18 07:10 - 2011-03-13 04:15 - 00000000 ____D () C:\bootwiz 2010-07-18 07:05 - 2010-07-18 07:05 - 00000000 ____D () C:\Users\...\AppData\Local\NeoSmart_Technologies 2010-07-18 07:02 - 2013-09-30 05:45 - 00000000 ____D () C:\Program Files\NeoSmart Technologies 2010-07-18 04:54 - 2014-05-05 05:58 - 00024560 _____ () C:\Windows\nsreg.dat 2010-07-18 04:54 - 2010-07-18 04:54 - 00000000 ____D () C:\Users\...\AppData\Roaming\Thunderbird 2010-07-18 04:54 - 2010-07-18 04:54 - 00000000 ____D () C:\Users\...\AppData\Local\Thunderbird 2010-07-11 05:47 - 2010-07-11 05:47 - 01846632 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_41.dll 2010-07-11 05:47 - 2010-07-11 05:47 - 00453456 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_41.dll 2010-05-03 08:01 - 2010-11-20 04:40 - 00383786 __RSH () C:\bootmgr 2010-05-03 07:14 - 2014-06-30 06:59 - 00000000 ____D () C:\Users\...\AppData\Roaming\Adobe 2010-05-03 07:14 - 2010-05-03 07:14 - 00000000 ____D () C:\Users\...\AppData\Roaming\Macromedia 2010-05-03 07:08 - 2013-05-27 06:40 - 00000000 ____D () C:\Windows\System32\Macromed 2010-05-02 02:04 - 2010-05-02 02:04 - 00172032 _____ (Realtek ) C:\Windows\System32\Drivers\Rtlh86.sys 2010-05-02 01:18 - 2010-05-02 01:18 - 00000000 ____D () C:\Users\...\AppData\Roaming\ESET 2010-05-02 01:18 - 2010-05-02 01:18 - 00000000 ____D () C:\Users\...\AppData\Local\ESET 2010-05-02 00:10 - 2014-10-15 03:01 - 00000000 ____D () C:\Program Files\Microsoft.NET 2010-05-02 00:08 - 2014-12-21 07:45 - 00000000 ____D () C:\ProgramData\Microsoft Help 2010-05-02 00:08 - 2014-12-21 07:45 - 00000000 ____D () C:\Program Files\Microsoft Office 2010-05-02 00:08 - 2014-08-04 00:58 - 00000000 ____D () C:\Users\...\AppData\Local\Microsoft Help 2010-05-01 22:52 - 2010-05-01 22:52 - 00000000 ____D () C:\Users\...\AppData\Roaming\Acronis 2010-05-01 22:51 - 2010-07-24 23:20 - 00911680 _____ (Acronis) C:\Windows\System32\Drivers\tdrpm258.sys 2010-05-01 22:20 - 2010-02-10 23:10 - 00293376 _____ (Microsoft Corporation) C:\Windows\System32\browserchoice.exe 2010-05-01 22:06 - 2015-01-11 02:56 - 00000000 ____D () C:\Program Files\MSI 2010-05-01 21:58 - 2015-01-11 06:02 - 00000000 ___RD () C:\Users\.......-PC\Desktop\support 2010-05-01 21:57 - 2015-01-16 08:35 - 00000000 ____D () C:\Program Files\Mozilla Thunderbird 2010-05-01 21:57 - 2014-03-15 07:13 - 00001159 _____ () C:\Users\.......-PC\Desktop\mails.lnk 2010-05-01 21:54 - 2014-04-30 07:06 - 00000000 ____D () C:\Users\...\AppData\Local\Google 2010-05-01 21:51 - 2014-12-22 05:16 - 00001023 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2010-05-01 21:51 - 2013-10-01 03:25 - 00000000 ____D () C:\Users\...\AppData\Local\Mozilla 2010-05-01 21:51 - 2010-05-01 21:51 - 00000000 ____D () C:\Users\...\AppData\Roaming\Mozilla 2010-05-01 10:07 - 2014-01-05 05:32 - 00000000 ____D () C:\Program Files\WinRAR 2010-05-01 10:05 - 2012-01-15 02:35 - 00000000 ____D () C:\Users\...\AppData\Roaming\DMCache 2010-05-01 10:03 - 2013-09-30 05:37 - 00000000 ____D () C:\ProgramData\TuneUp Software 2010-05-01 10:03 - 2013-09-30 05:35 - 00000000 ____D () C:\Users\...\AppData\Roaming\TuneUp Software 2010-05-01 09:32 - 2010-05-01 09:32 - 00050632 _____ (G DATA Software AG) C:\Windows\System32\Drivers\MiniIcpt.sys 2010-05-01 09:31 - 2010-05-01 09:55 - 00000000 ____D () C:\Program Files\Common Files\G DATA 2010-05-01 09:31 - 2010-05-01 09:31 - 00040392 _____ (G DATA Software AG) C:\Windows\System32\Drivers\gdwfpcd32.sys 2010-05-01 09:30 - 2013-09-30 05:41 - 00000000 ____D () C:\Users\...\AppData\Local\Downloaded Installations 2010-05-01 09:27 - 2001-12-31 15:13 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information 2010-05-01 09:05 - 2010-05-01 09:05 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2010-05-01 09:02 - 2014-06-19 02:15 - 00000000 ____D () C:\users\... 2010-05-01 09:02 - 2011-12-06 09:07 - 00000000 ____D () C:\Users\...\AppData\Local\VirtualStore 2010-05-01 09:02 - 2010-05-01 09:02 - 00000000 _SHDL () C:\Users\...\AppData\Local\Verlauf 2010-05-01 08:59 - 2010-05-01 08:59 - 00000000 _SHDL () C:\Users\Default\Startmenü 2010-05-01 08:59 - 2010-05-01 08:59 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2010-05-01 08:59 - 2010-05-01 08:59 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2010-05-01 08:59 - 2010-05-01 08:59 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2010-05-01 08:59 - 2010-05-01 08:59 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2010-05-01 08:59 - 2010-05-01 08:59 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2010-05-01 08:54 - 2010-05-01 08:54 - 00000000 _____ () C:\Windows\ativpsrm.bin 2010-05-01 08:53 - 2010-05-01 08:53 - 00000000 ____D () C:\Windows\CSC 2010-03-20 10:11 - 2010-03-20 10:11 - 00036736 _____ (Microsoft Corporation) C:\Windows\System32\FM20DEU.DLL 2010-02-20 07:20 - 2010-02-20 07:20 - 00031616 _____ (Microsoft Corporation) C:\Windows\System32\FM20ENU.DLL 2010-02-17 11:42 - 2010-02-17 11:42 - 00051584 _____ (Microsoft Corporation) C:\Windows\System32\VBAME.DLL 2010-02-10 20:43 - 2010-02-10 20:43 - 00053248 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\aticalrt.dll 2010-02-10 20:43 - 2010-02-10 20:43 - 00053248 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\aticalcl.dll 2010-02-10 20:42 - 2010-02-10 20:42 - 03235840 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\aticaldd.dll 2009-12-15 17:37 - 2009-12-15 18:19 - 00000453 _____ () C:\nvscnrpt.log 2009-12-15 17:37 - 2009-12-15 17:37 - 00000000 ____D () C:\temp 2009-12-15 15:32 - 2009-12-15 15:32 - 00000000 ____D () C:\ProgramData\ATI 2009-12-15 15:03 - 2009-12-15 15:03 - 00135680 _____ () C:\Windows\Minidump\121609-22812-01.dmp ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-16 10:58 - 2009-07-13 20:34 - 00037504 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-01-16 10:58 - 2009-07-13 20:34 - 00037504 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-12-22 01:15 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\NDF 2014-12-21 07:45 - 2009-07-13 18:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-12-21 07:44 - 2009-07-14 00:56 - 00000000 ____D () C:\Windows\ShellNew 2014-12-13 07:51 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\Microsoft.NET 2014-12-07 01:39 - 2009-07-13 20:52 - 00000000 ____D () C:\Windows\System32\FxsTmp 2014-11-26 05:23 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\rescache 2014-11-25 08:07 - 2002-01-01 20:38 - 00811520 _____ (Microsoft Corporation) C:\Windows\System32\user32.dll 2014-11-25 08:07 - 2002-01-01 20:37 - 00409088 _____ (Microsoft Corporation) C:\Windows\System32\systemcpl.dll 2014-11-25 08:07 - 2002-01-01 20:37 - 00013824 _____ (Microsoft Corporation) C:\Windows\System32\slwga.dll 2014-11-23 07:41 - 2009-07-13 18:37 - 00000000 ___RD () C:\users\Public 2014-11-22 11:00 - 2009-10-13 19:07 - 00000000 ____D () C:\Windows\Panther 2014-11-22 10:12 - 2002-01-08 15:12 - 00000000 ___RD () C:\Users\...\Desktop\Bilder 2014-11-13 06:16 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\de-DE 2014-11-13 05:57 - 2009-10-13 18:21 - 100445232 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe 2014-11-01 08:09 - 2009-07-13 20:52 - 00000000 ____D () C:\Windows\twain_32 2014-10-26 20:12 - 2009-07-13 18:04 - 00000763 _____ () C:\Windows\win.ini 2014-10-25 05:43 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\bg-BG 2014-10-15 03:03 - 2009-07-13 20:52 - 00000000 ____D () C:\Program Files\MSBuild 2014-08-07 04:04 - 2009-07-14 00:56 - 00000000 ____D () C:\Program Files\Windows Journal 2014-08-07 04:04 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\System32\XPSViewer 2014-08-07 04:04 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\System32\winrm 2014-08-07 04:04 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\System32\WCN 2014-08-07 04:04 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\System32\slmgr 2014-08-07 04:04 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\System32\Printing_Admin_Scripts 2014-08-07 04:04 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\DigitalLocker 2014-08-07 04:04 - 2009-07-13 20:52 - 00000000 ____D () C:\Program Files\Windows Sidebar 2014-08-07 04:04 - 2009-07-13 20:52 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2014-08-07 04:04 - 2009-07-13 20:52 - 00000000 ____D () C:\Program Files\Windows Defender 2014-08-07 04:04 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\MUI 2014-08-07 04:04 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\fr-FR 2014-08-07 04:04 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\com 2014-08-07 04:04 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\ar-SA 2014-08-07 04:04 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\IME 2014-06-08 00:57 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\Resources 2014-03-30 23:35 - 2009-10-13 18:21 - 00231584 ____N (Microsoft Corporation) C:\Windows\System32\MpSigStub.exe 2014-02-09 21:09 - 2009-07-13 20:46 - 00001515 _____ () C:\Users\.......-PC\Desktop\Windows Media Player.lnk 2014-02-03 07:29 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\tr-TR 2014-02-03 07:28 - 2009-07-13 20:52 - 00000000 ____D () C:\Program Files\DVD Maker 2014-02-03 07:20 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\th-TH 2014-02-02 03:38 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\System32\Drivers\de-DE 2014-02-02 03:28 - 2002-01-08 17:28 - 00000000 ____D () C:\ProgramData\TEMP 2014-02-01 06:01 - 2009-07-13 20:52 - 00000000 ____D () C:\Windows\System32\WinBioPlugIns 2013-11-20 08:40 - 2002-01-08 17:58 - 00000981 _____ () C:\Users\Public\Desktop\CCleaner.lnk 2013-11-20 08:40 - 2002-01-08 17:58 - 00000000 ____D () C:\Program Files\CCleaner 2013-08-21 05:33 - 2009-11-10 10:44 - 00005194 _____ () C:\Windows\System32\PerfStringBackup.INI 2013-08-06 08:35 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\system 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\zh-TW 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\zh-HK 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\zh-CN 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\sv-SE 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\ru-RU 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\pt-PT 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\pt-BR 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\pl-PL 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\nl-NL 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\nb-NO 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\ko-KR 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\ja-JP 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\it-IT 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\hu-HU 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\fi-FI 2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\el-GR 2012-12-24 11:56 - 2009-07-13 20:41 - 00000749 ___RH () C:\Windows\WindowsShell.Manifest 2012-12-24 06:32 - 2009-07-13 18:37 - 00000000 ___HD () C:\Windows\System32\GroupPolicy 2012-12-24 05:21 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\Registration 2011-08-17 10:38 - 2001-12-31 15:13 - 01249792 _____ (Atheros Communications, Inc.) C:\Windows\System32\Drivers\athr.sys 2011-08-17 10:38 - 2001-12-31 15:13 - 01249792 _____ (Atheros Communications, Inc.) C:\Windows\System32\athr.sys 2011-08-17 10:38 - 2001-12-31 15:13 - 00007630 _____ () C:\Windows\System32\athrext.cat 2010-11-20 04:36 - 2002-01-01 20:37 - 01077248 _____ (Microsoft Corporation) C:\Windows\System32\Narrator.exe 2010-11-20 04:36 - 2002-01-01 20:37 - 00107008 _____ (Microsoft Corporation) C:\Windows\System32\NAPHLPR.DLL 2010-11-20 04:36 - 2002-01-01 20:37 - 00046080 _____ (Microsoft Corporation) C:\Windows\System32\NAPCRYPT.DLL 2010-11-20 04:32 - 2002-01-01 20:38 - 05066752 _____ (Microsoft Corporation) C:\Windows\System32\AuthFWSnapin.dll 2010-11-20 04:30 - 2002-01-01 20:38 - 00245632 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\volsnap.sys 2010-11-20 04:30 - 2002-01-01 20:38 - 00175360 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\vmbus.sys 2010-11-20 04:30 - 2002-01-01 20:38 - 00160128 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\vhdmp.sys 2010-11-20 04:30 - 2002-01-01 20:38 - 00153984 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\pci.sys 2010-11-20 04:30 - 2002-01-01 20:38 - 00116096 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\msdsm.sys 2010-11-20 04:30 - 2002-01-01 20:38 - 00085376 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\sbp2port.sys 2010-11-20 04:30 - 2002-01-01 20:38 - 00053120 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\termdd.sys 2010-11-20 04:30 - 2002-01-01 20:38 - 00028032 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\msahci.sys 2010-11-20 04:30 - 2002-01-01 20:37 - 00173440 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rdyboost.sys 2010-11-20 04:30 - 2002-01-01 20:37 - 00140160 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\scsiport.sys 2010-11-20 04:30 - 2002-01-01 20:37 - 00130432 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mpio.sys 2010-11-20 04:30 - 2002-01-01 20:37 - 00078208 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mountmgr.sys 2010-11-20 04:30 - 2002-01-01 20:37 - 00053120 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\volmgr.sys 2010-11-20 04:30 - 2002-01-01 20:37 - 00040704 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\vmstorfl.sys 2010-11-20 04:30 - 2002-01-01 20:37 - 00028032 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\storvsc.sys 2010-11-20 04:29 - 2002-01-01 20:38 - 00520064 _____ (Microsoft Corporation) C:\Windows\System32\mcupdate_GenuineIntel.dll 2010-11-20 04:29 - 2002-01-01 20:38 - 00014208 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hwpolicy.sys 2010-11-20 04:29 - 2002-01-01 20:37 - 02217856 _____ (Microsoft Corporation) C:\Windows\System32\bootres.dll 2010-11-20 04:29 - 2002-01-01 20:37 - 00274304 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\acpi.sys 2010-11-20 04:29 - 2002-01-01 20:37 - 00194432 _____ (Microsoft Corporation) C:\Windows\System32\halmacpi.dll 2010-11-20 04:29 - 2002-01-01 20:37 - 00194432 _____ (Microsoft Corporation) C:\Windows\System32\hal.dll 2010-11-20 04:29 - 2002-01-01 20:37 - 00137088 _____ (Microsoft Corporation) C:\Windows\System32\halacpi.dll 2010-11-20 04:29 - 2002-01-01 20:37 - 00043392 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\winhv.sys 2010-11-20 04:24 - 2002-01-01 20:38 - 00690680 _____ (Microsoft Corporation) C:\Windows\System32\ci.dll 2010-11-20 04:24 - 2002-01-01 20:38 - 00508904 _____ (Microsoft Corporation) C:\Windows\System32\winload.exe 2010-11-20 04:24 - 2002-01-01 20:38 - 00442720 _____ (Microsoft Corporation) C:\Windows\System32\winresume.exe 2010-11-20 04:24 - 2002-01-01 20:38 - 00271664 _____ (Microsoft Corporation) C:\Windows\System32\fveapi.dll 2010-11-20 04:23 - 2002-01-01 20:38 - 00144768 _____ (Microsoft Corporation) C:\Windows\System32\basecsp.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 02983424 _____ (Microsoft Corporation) C:\Windows\System32\UIRibbon.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 02755072 _____ (Microsoft Corporation) C:\Windows\System32\themeui.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 02311168 _____ (Microsoft Corporation) C:\Windows\System32\wpdshext.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 02146304 _____ (Microsoft Corporation) C:\Windows\System32\SyncCenter.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 01712640 _____ (Microsoft Corporation) C:\Windows\System32\xpsservices.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 01667584 _____ (Microsoft Corporation) C:\Windows\System32\setupapi.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 01363456 _____ (Microsoft Corporation) C:\Windows\System32\Query.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 01175040 _____ (Microsoft Corporation) C:\Windows\System32\WsmSvc.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 01159168 _____ (Microsoft Corporation) C:\Windows\System32\sysmain.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 01128448 _____ (Microsoft Corporation) C:\Windows\System32\vssapi.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 01115136 _____ (Microsoft Corporation) C:\Windows\System32\RacEngn.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 01086976 _____ (Microsoft Corporation) C:\Windows\System32\wevtsvc.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 01063936 _____ (Microsoft Corporation) C:\Windows\System32\werconcpl.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00974336 _____ (Microsoft Corporation) C:\Windows\System32\sppobjs.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00907776 _____ (Microsoft Corporation) C:\Windows\System32\sdengin2.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00811520 _____ (Microsoft Corporation) C:\Windows\System32\user32.dll.bak 2010-11-20 04:21 - 2002-01-01 20:38 - 00782336 _____ (Microsoft Corporation) C:\Windows\System32\webservices.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00778240 _____ (Microsoft Corporation) C:\Windows\System32\sqlsrv32.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00750592 _____ (Microsoft Corporation) C:\Windows\System32\schedsvc.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00646144 _____ (Microsoft Corporation) C:\Windows\System32\SearchFolder.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00551424 _____ (Microsoft Corporation) C:\Windows\System32\samsrv.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00505856 _____ (Microsoft Corporation) C:\Windows\System32\taskschd.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00464896 _____ (Microsoft Corporation) C:\Windows\System32\scrptadm.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00463360 _____ (Microsoft Corporation) C:\Windows\System32\wiaservc.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00458752 _____ (Microsoft Corporation) C:\Windows\System32\WSDApi.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00412160 _____ (Microsoft Corporation) C:\Windows\System32\sppwinob.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00411648 _____ (Microsoft Corporation) C:\Windows\System32\wlangpui.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00380416 _____ (Microsoft Corporation) C:\Windows\System32\sxs.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00376832 _____ (Microsoft Corporation) C:\Windows\System32\rpcss.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00352256 _____ (Microsoft Corporation) C:\Windows\System32\wmpeffects.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00351232 _____ (Microsoft Corporation) C:\Windows\System32\winhttp.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00350208 _____ (Microsoft Corporation) C:\Windows\System32\shlwapi.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00335872 _____ (Microsoft Corporation) C:\Windows\System32\WinSATAPI.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00305152 _____ (Microsoft Corporation) C:\Windows\System32\taskcomp.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00270848 _____ (Microsoft Corporation) C:\Windows\System32\tsmf.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00269824 _____ (Microsoft Corporation) C:\Windows\System32\Wldap32.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00253952 _____ (Microsoft Corporation) C:\Windows\System32\spwizui.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00246272 _____ (Microsoft Corporation) C:\Windows\System32\scansetting.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00242176 _____ (Microsoft Corporation) C:\Windows\System32\vpnike.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00228352 _____ (Microsoft Corporation) C:\Windows\System32\stobject.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00206848 _____ (Microsoft Corporation) C:\Windows\System32\ws2_32.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00206848 _____ (Microsoft Corporation) C:\Windows\System32\upnp.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00172544 _____ (Microsoft Corporation) C:\Windows\System32\spp.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00171008 _____ (Microsoft Corporation) C:\Windows\System32\umrdp.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00168960 _____ (Microsoft Corporation) C:\Windows\System32\srvsvc.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00154624 _____ (Microsoft Corporation) C:\Windows\System32\tscfgwmi.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00140800 _____ (Microsoft Corporation) C:\Windows\System32\rdpendp.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\System32\rpchttp.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00134656 _____ (Microsoft Corporation) C:\Windows\System32\WinSCard.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00133632 _____ (Microsoft Corporation) C:\Windows\System32\tspubwmi.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00120320 _____ (Microsoft Corporation) C:\Windows\System32\tssrvlic.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00113664 _____ (Microsoft Corporation) C:\Windows\System32\SessEnv.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00109056 _____ (Microsoft Corporation) C:\Windows\System32\t2embed.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00081920 _____ (Microsoft Corporation) C:\Windows\System32\userenv.dll 2010-11-20 04:21 - 2002-01-01 20:38 - 00051712 _____ (Microsoft Corporation) C:\Windows\System32\wscapi.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 02202624 _____ (Microsoft Corporation) C:\Windows\System32\SensorsCpl.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 02157568 _____ (Microsoft Corporation) C:\Windows\System32\themecpl.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 01624064 _____ (Microsoft Corporation) C:\Windows\System32\WMPEncEn.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 01326592 _____ (Microsoft Corporation) C:\Windows\System32\wlanpref.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 01227776 _____ (Microsoft Corporation) C:\Windows\System32\wdc.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 01003008 _____ (Microsoft Corporation) C:\Windows\System32\WMNetMgr.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00933376 _____ (Microsoft Corporation) C:\Windows\System32\Vault.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00902656 _____ (Microsoft Corporation) C:\Windows\System32\WMADMOD.DLL 2010-11-20 04:21 - 2002-01-01 20:37 - 00766464 _____ (Microsoft Corporation) C:\Windows\System32\wpccpl.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00755200 _____ (Microsoft Corporation) C:\Windows\System32\sud.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00750080 _____ (Microsoft Corporation) C:\Windows\System32\sdcpl.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00739328 _____ (Microsoft Corporation) C:\Windows\System32\WMSPDMOD.DLL 2010-11-20 04:21 - 2002-01-01 20:37 - 00738816 _____ (Microsoft Corporation) C:\Windows\System32\wmpmde.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00638976 _____ (Microsoft Corporation) C:\Windows\System32\VAN.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00616960 _____ (Microsoft Corporation) C:\Windows\System32\wmdrmsdk.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00600064 _____ (Microsoft Corporation) C:\Windows\System32\usercpl.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00577024 _____ (Microsoft Corporation) C:\Windows\System32\wpd_ci.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00541184 _____ (Microsoft Corporation) C:\Windows\System32\WMVSDECD.DLL 2010-11-20 04:21 - 2002-01-01 20:37 - 00507392 _____ (Microsoft Corporation) C:\Windows\System32\wmdrmdev.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00473600 _____ (Microsoft Corporation) C:\Windows\System32\riched20.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00444928 _____ (Microsoft Corporation) C:\Windows\System32\wvc.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00436736 _____ (Microsoft Corporation) C:\Windows\System32\wmdrmnet.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00428544 _____ (Microsoft Corporation) C:\Windows\System32\shwebsvc.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00428032 _____ (Microsoft Corporation) C:\Windows\System32\wlanmsm.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00416768 _____ (Microsoft Corporation) C:\Windows\System32\wiadefui.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00410624 _____ (Microsoft Corporation) C:\Windows\System32\systemcpl.dll.bak 2010-11-20 04:21 - 2002-01-01 20:37 - 00410112 _____ (Microsoft Corporation) C:\Windows\System32\wlanui.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00406528 _____ (Microsoft Corporation) C:\Windows\System32\wimgapi.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00363520 _____ (Microsoft Corporation) C:\Windows\System32\StructuredQuery.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00352768 _____ (Microsoft Corporation) C:\Windows\System32\termmgr.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00352768 _____ (Microsoft Corporation) C:\Windows\System32\spwizeng.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00350720 _____ (Microsoft Corporation) C:\Windows\System32\WPDSp.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00346624 _____ (Microsoft Corporation) C:\Windows\System32\untfs.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00328192 _____ (Microsoft Corporation) C:\Windows\System32\shsvcs.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00327680 _____ (Microsoft Corporation) C:\Windows\System32\zipfldr.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00318976 _____ (Microsoft Corporation) C:\Windows\System32\raschap.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00316416 _____ (Microsoft Corporation) C:\Windows\System32\sharemediacpl.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00309760 _____ (Microsoft Corporation) C:\Windows\System32\sqlcese30.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00307712 _____ (Microsoft Corporation) C:\Windows\System32\scesrv.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00301568 _____ (Microsoft Corporation) C:\Windows\System32\srchadmin.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00299520 _____ (Microsoft Corporation) C:\Windows\System32\wmpdxm.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00286208 _____ (Microsoft Corporation) C:\Windows\System32\rasmans.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00276992 _____ (Microsoft Corporation) C:\Windows\System32\wcncsvc.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00257024 _____ (Microsoft Corporation) C:\Windows\System32\srrstr.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00247808 _____ (Microsoft Corporation) C:\Windows\System32\ReAgent.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00242176 _____ (Microsoft Corporation) C:\Windows\System32\tapisrv.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00233472 _____ (Microsoft Corporation) C:\Windows\System32\taskbarcpl.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00222208 _____ (Microsoft Corporation) C:\Windows\System32\wavemsp.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00220160 _____ (Microsoft Corporation) C:\Windows\System32\SndVolSSO.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00202240 _____ (Microsoft Corporation) C:\Windows\System32\unattend.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00198144 _____ (Microsoft Corporation) C:\Windows\System32\wpdwcn.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00198144 _____ (Microsoft Corporation) C:\Windows\System32\sysclass.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00196608 _____ (Microsoft Corporation) C:\Windows\System32\wwanconn.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00196096 _____ (Microsoft Corporation) C:\Windows\System32\vaultsvc.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00194048 _____ (Microsoft Corporation) C:\Windows\System32\winmm.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00193536 _____ (Microsoft Corporation) C:\Windows\System32\sppcomapi.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00189952 _____ (Microsoft Corporation) C:\Windows\System32\sqmapi.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00186368 _____ (Microsoft Corporation) C:\Windows\System32\rdpencom.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00182272 _____ (Microsoft Corporation) C:\Windows\System32\wmpsrcwp.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00181760 _____ (Microsoft Corporation) C:\Windows\System32\tcpipcfg.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00176640 _____ (Microsoft Corporation) C:\Windows\System32\rasppp.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00175616 _____ (Microsoft Corporation) C:\Windows\System32\scecli.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00160256 _____ (Microsoft Corporation) C:\Windows\System32\vdsbas.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00159232 _____ (Microsoft Corporation) C:\Windows\System32\syncui.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00151040 _____ (Microsoft Corporation) C:\Windows\System32\vdsutil.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00146944 _____ (Microsoft Corporation) C:\Windows\System32\remotepg.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00146432 _____ (Microsoft Corporation) C:\Windows\System32\twext.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00144384 _____ (Microsoft Corporation) C:\Windows\System32\wmpps.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00135680 _____ (Microsoft Corporation) C:\Windows\System32\recovery.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00135168 _____ (Microsoft Corporation) C:\Windows\System32\XpsRasterService.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00125952 _____ (Microsoft Corporation) C:\Windows\System32\sdrsvc.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00119808 _____ (Microsoft Corporation) C:\Windows\System32\umpo.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00118784 _____ (Microsoft Corporation) C:\Windows\System32\uxlib.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00115712 _____ (Microsoft Corporation) C:\Windows\System32\sppnp.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00115712 _____ (Microsoft Corporation) C:\Windows\System32\setupcln.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00111104 _____ (Microsoft Corporation) C:\Windows\System32\shsetup.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00109568 _____ (Microsoft Corporation) C:\Windows\System32\wiavideo.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00108032 _____ (Microsoft Corporation) C:\Windows\System32\shacct.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00105984 _____ (Microsoft Corporation) C:\Windows\System32\WPDShServiceObj.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00105472 _____ (Microsoft Corporation) C:\Windows\System32\wmpshell.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00100864 _____ (Microsoft Corporation) C:\Windows\System32\sppinst.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00090112 _____ (Microsoft Corporation) C:\Windows\System32\srvcli.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00085504 _____ (Microsoft Corporation) C:\Windows\System32\wpdbusenum.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00084480 _____ (Microsoft Corporation) C:\Windows\System32\wkssvc.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00082944 _____ (Microsoft Corporation) C:\Windows\System32\thumbcache.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00080896 _____ (Microsoft Corporation) C:\Windows\System32\QUTIL.DLL 2010-11-20 04:21 - 2002-01-01 20:37 - 00078848 _____ (Microsoft Corporation) C:\Windows\System32\UserAccountControlSettings.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00073216 _____ (Microsoft Corporation) C:\Windows\System32\TabSvc.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00072192 _____ (Microsoft Corporation) C:\Windows\System32\regapi.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00071168 _____ (Microsoft Corporation) C:\Windows\System32\resutils.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00069632 _____ (Microsoft Corporation) C:\Windows\System32\tlscsp.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00069632 _____ (Microsoft Corporation) C:\Windows\System32\rastapi.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\System32\spbcd.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00059392 _____ (Microsoft Corporation) C:\Windows\System32\unimdmat.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00056832 _____ (Microsoft Corporation) C:\Windows\System32\vfwwdm32.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00053760 _____ (Microsoft Corporation) C:\Windows\System32\sppuinotify.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00052224 _____ (Microsoft Corporation) C:\Windows\System32\rdpd3d.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00051712 _____ (Microsoft Corporation) C:\Windows\System32\wsnmp32.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00051200 _____ (Twain Working Group) C:\Windows\twain_32.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00051200 _____ (Microsoft Corporation) C:\Windows\System32\samcli.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00050688 _____ (Microsoft Corporation) C:\Windows\System32\umb.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00050176 _____ (Microsoft Corporation) C:\Windows\System32\setbcdlocale.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00047104 _____ (Microsoft Corporation) C:\Windows\System32\wkscli.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00046592 _____ (Microsoft Corporation) C:\Windows\System32\WavDest.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00046080 _____ (Microsoft Corporation) C:\Windows\System32\RpcRtRemote.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\System32\wtsapi32.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00037376 _____ (Microsoft Corporation) C:\Windows\System32\rtutils.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00036352 _____ (Microsoft Corporation) C:\Windows\System32\wshbth.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00035840 _____ (Microsoft Corporation) C:\Windows\System32\shimgvw.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\wiarpc.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\System32\wdiasqmmodule.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\System32\utildll.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00025600 _____ (Microsoft Corporation) C:\Windows\System32\vpnikeapi.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\wsdchngr.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\TRAPI.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\rdprefdrvapi.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00020992 _____ (Microsoft Corporation) C:\Windows\System32\shgina.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00019968 _____ (Microsoft Corporation) C:\Windows\System32\spopk.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00019456 _____ (Microsoft Corporation) C:\Windows\System32\sisbkup.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00017408 _____ (Microsoft Corporation) C:\Windows\System32\schedcli.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00014848 _____ (Microsoft Corporation) C:\Windows\System32\syssetup.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00014336 _____ (Microsoft Corporation) C:\Windows\System32\slwga.dll.bak 2010-11-20 04:21 - 2002-01-01 20:37 - 00012288 _____ (Microsoft Corporation) C:\Windows\System32\tsbyuv.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00011264 _____ (Microsoft Corporation) C:\Windows\System32\wshirda.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00010752 _____ (Microsoft Corporation) C:\Windows\System32\shunimpl.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00009728 _____ (Microsoft Corporation) C:\Windows\System32\sscore.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00008704 _____ (Microsoft Corporation) C:\Windows\System32\riched32.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00008704 _____ (Microsoft Corporation) C:\Windows\System32\rdpcfgex.dll 2010-11-20 04:21 - 2002-01-01 20:37 - 00004096 _____ (Microsoft Corporation) C:\Windows\System32\msdxm.ocx 2010-11-20 04:21 - 2002-01-01 20:37 - 00004096 _____ (Microsoft Corporation) C:\Windows\System32\dxmasf.dll 2010-11-20 04:21 - 2002-01-01 20:36 - 00697344 _____ (Microsoft Corporation) C:\Windows\System32\SmiEngine.dll 2010-11-20 04:21 - 2002-01-01 20:36 - 00363008 _____ (Microsoft Corporation) C:\Windows\System32\wbemcomn.dll 2010-11-20 04:21 - 2002-01-01 20:36 - 00351232 _____ (Microsoft Corporation) C:\Windows\System32\wmicmiplugin.dll 2010-11-20 04:21 - 2002-01-01 20:36 - 00189952 _____ (Microsoft Corporation) C:\Windows\System32\wdscore.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 02504192 _____ (Microsoft Corporation) C:\Windows\System32\WMVCORE.DLL 2010-11-20 04:20 - 2002-01-01 20:38 - 02494464 _____ (Microsoft Corporation) C:\Windows\System32\netshell.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 01750528 _____ (Microsoft Corporation) C:\Windows\System32\pnidui.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 01508864 _____ (Microsoft Corporation) C:\Windows\System32\pla.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 01414144 _____ (Microsoft Corporation) C:\Windows\System32\ole32.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 00988160 _____ (Microsoft Corporation) C:\Windows\System32\propsys.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 00932352 _____ (Microsoft Corporation) C:\Windows\System32\printui.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 00801280 _____ (Microsoft Corporation) C:\Windows\System32\NaturalLanguage6.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 00585728 _____ (Microsoft Corporation) C:\Windows\System32\qmgr.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 00573440 _____ (Microsoft Corporation) C:\Windows\System32\odbc32.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 00563712 _____ (Microsoft Corporation) C:\Windows\System32\netlogon.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 00547840 _____ (Microsoft Corporation) C:\Windows\System32\PortableDeviceApi.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 00406528 _____ (Microsoft Corporation) C:\Windows\System32\netcfgx.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 00330240 _____ (Microsoft Corporation) C:\Windows\System32\QAGENTRT.DLL 2010-11-20 04:20 - 2002-01-01 20:38 - 00225792 _____ (Microsoft Corporation) C:\Windows\System32\netdiagfx.dll 2010-11-20 04:20 - 2002-01-01 20:38 - 00167936 _____ (Microsoft Corporation) C:\Windows\System32\QSHVHOST.DLL 2010-11-20 04:20 - 2002-01-01 20:38 - 00116736 _____ (Microsoft Corporation) C:\Windows\System32\prncache.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 02130944 _____ (Microsoft Corporation) C:\Windows\System32\networkmap.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 01661440 _____ (Microsoft Corporation) C:\Windows\System32\networkexplorer.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 01644032 _____ (Microsoft Corporation) C:\Windows\System32\netcenter.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 01160192 _____ (Microsoft Corporation) C:\Windows\System32\OpcServices.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 01111552 _____ (Microsoft Corporation) C:\Windows\System32\onexui.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00859648 _____ (Microsoft Corporation) C:\Windows\System32\OobeFldr.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00600576 _____ (Microsoft Corporation) C:\Windows\System32\PerfCenterCPL.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00441856 _____ (Microsoft Corporation) C:\Windows\System32\powercpl.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00427520 _____ (Microsoft Corporation) C:\Windows\System32\PortableDeviceStatus.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00395264 _____ (Microsoft Corporation) C:\Windows\System32\prnfldr.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00346112 _____ (Microsoft Corporation) C:\Windows\System32\nshipsec.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00324608 _____ (Microsoft Corporation) C:\Windows\System32\puiobj.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00297472 _____ (Microsoft Corporation) C:\Windows\System32\ntprint.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00295424 _____ (Microsoft Corporation) C:\Windows\System32\photowiz.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00283136 _____ (Microsoft Corporation) C:\Windows\System32\qdv.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00236544 _____ (Microsoft Corporation) C:\Windows\System32\pdh.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00218112 _____ (Microsoft Corporation) C:\Windows\System32\OnLineIDCpl.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00206848 _____ (Microsoft Corporation) C:\Windows\System32\qasf.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00199168 _____ (Microsoft Corporation) C:\Windows\System32\onex.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00190976 _____ (Microsoft Corporation) C:\Windows\System32\qcap.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00183296 _____ (Microsoft Corporation) C:\Windows\System32\PortableDeviceSyncProvider.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00175616 _____ (Microsoft Corporation) C:\Windows\System32\netplwiz.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00174592 _____ (Microsoft Corporation) C:\Windows\System32\ocsetapi.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00171520 _____ (Microsoft Corporation) C:\Windows\System32\QAGENT.DLL 2010-11-20 04:20 - 2002-01-01 20:37 - 00166400 _____ (Microsoft Corporation) C:\Windows\System32\netiohlp.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00165376 _____ (Microsoft Corporation) C:\Windows\System32\provsvc.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00161792 _____ (Microsoft Corporation) C:\Windows\System32\netjoin.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00136192 _____ (Microsoft Corporation) C:\Windows\System32\mydocs.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00121344 _____ (Microsoft Corporation) C:\Windows\System32\sppc.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00120320 _____ (Microsoft Corporation) C:\Windows\System32\prntvpt.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00117248 _____ (Microsoft Corporation) C:\Windows\System32\netid.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00099328 _____ (Microsoft Corporation) C:\Windows\System32\QSVRMGMT.DLL 2010-11-20 04:20 - 2002-01-01 20:37 - 00090112 _____ (Microsoft Corporation) C:\Windows\System32\olepro32.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00078848 _____ (Microsoft Corporation) C:\Windows\System32\nci.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00077824 _____ (Microsoft Corporation) C:\Windows\System32\olethk32.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00071680 _____ (Microsoft Corporation) C:\Windows\System32\QCLIPROV.DLL 2010-11-20 04:20 - 2002-01-01 20:37 - 00069120 _____ (Microsoft Corporation) C:\Windows\System32\ntlanman.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00068096 _____ (Microsoft Corporation) C:\Windows\System32\napdsnap.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00060928 _____ (Microsoft Corporation) C:\Windows\System32\ncryptui.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00046592 _____ (Microsoft Corporation) C:\Windows\System32\pdhui.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00040960 _____ (Microsoft Corporation) C:\Windows\System32\odbcconf.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00032768 _____ (Microsoft Corporation) C:\Windows\System32\PrintIsolationProxy.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00028672 _____ (Microsoft Corporation) C:\Windows\System32\profprov.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\netutils.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00017408 _____ (Microsoft Corporation) C:\Windows\System32\perfts.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00011776 _____ (Microsoft Corporation) C:\Windows\System32\nrpsrv.dll 2010-11-20 04:20 - 2002-01-01 20:37 - 00008192 _____ (Microsoft Corporation) C:\Windows\System32\spwmp.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 03207680 _____ (Microsoft Corporation) C:\Windows\System32\mf.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 02291712 _____ (Microsoft Corporation) C:\Windows\System32\MSVidCtl.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 02151936 _____ (Microsoft Corporation) C:\Windows\System32\mmcndmgr.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 01493504 _____ (Microsoft Corporation) C:\Windows\System32\ExplorerFrame.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00954752 _____ (Microsoft Corporation) C:\Windows\System32\mfc40.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00954288 _____ (Microsoft Corporation) C:\Windows\System32\mfc40u.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00830464 _____ (Microsoft Corporation) C:\Windows\System32\MSMPEG2ENC.DLL 2010-11-20 04:19 - 2002-01-01 20:38 - 00732160 _____ (Microsoft Corporation) C:\Windows\System32\imapi2fs.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00727040 _____ (Microsoft Corporation) C:\Windows\System32\mcmde.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00593408 _____ (Microsoft Corporation) C:\Windows\System32\gpsvc.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00584192 _____ (Microsoft Corporation) C:\Windows\System32\gpprefcl.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00566272 _____ (Microsoft Corporation) C:\Windows\System32\MPSSVC.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00488448 _____ (Microsoft Corporation) C:\Windows\System32\evr.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00392192 _____ (Microsoft Corporation) C:\Windows\System32\imapi2.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00350208 _____ (Microsoft Corporation) C:\Windows\System32\IPSECSVC.DLL 2010-11-20 04:19 - 2002-01-01 20:38 - 00296448 _____ (Microsoft Corporation) C:\Windows\System32\mfds.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00213504 _____ (Microsoft Corporation) C:\Windows\System32\MMDevAPI.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00206336 _____ (Microsoft Corporation) C:\Windows\System32\framedynos.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00196608 _____ (Microsoft Corporation) C:\Windows\System32\mfreadwrite.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00155136 _____ (Microsoft Corporation) C:\Windows\System32\hgprint.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00126464 _____ (Microsoft Corporation) C:\Windows\System32\inetpp.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00124416 _____ (Microsoft Corporation) C:\Windows\System32\fde.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00053760 _____ (Microsoft Corporation) C:\Windows\System32\LSCSHostPolicy.dll 2010-11-20 04:19 - 2002-01-01 20:38 - 00034304 _____ (Microsoft Corporation) C:\Windows\System32\msasn1.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 01066496 _____ (Microsoft Corporation) C:\Windows\System32\msdtctm.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00856576 _____ (Microsoft Corporation) C:\Windows\System32\FirewallControlPanel.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00828928 _____ (Microsoft Corporation) C:\Windows\System32\fontext.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00592384 _____ (Microsoft Corporation) C:\Windows\System32\msftedit.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00504320 _____ (Microsoft Corporation) C:\Windows\System32\msscp.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00481792 _____ (Microsoft Corporation) C:\Windows\System32\mscms.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00430080 _____ (Microsoft Corporation) C:\Windows\System32\FXSTIFF.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00429056 _____ (Microsoft Corporation) C:\Windows\System32\localsec.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00417792 _____ (Microsoft Corporation) C:\Windows\System32\msdri.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00414208 _____ (Microsoft Corporation) C:\Windows\System32\mspbda.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00400896 _____ (Microsoft Corporation) C:\Windows\System32\ipsmsnap.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00320512 _____ (Microsoft Corporation) C:\Windows\System32\mtxclu.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00320512 _____ (Microsoft Corporation) C:\Windows\System32\Faultrep.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00312832 _____ (Microsoft Corporation) C:\Windows\System32\hgcpl.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00271360 _____ (Microsoft Corporation) C:\Windows\System32\iprtrmgr.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00268800 _____ (Microsoft Corporation) C:\Windows\System32\mprddm.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00266752 _____ (Microsoft Corporation) C:\Windows\System32\MediaMetadataHandler.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00265216 _____ (Microsoft Corporation) C:\Windows\System32\msnetobj.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00226304 _____ (Microsoft Corporation) C:\Windows\System32\MSAC3ENC.DLL 2010-11-20 04:19 - 2002-01-01 20:37 - 00219648 _____ (Microsoft Corporation) C:\Windows\System32\iTVData.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00209920 _____ (Microsoft Corporation) C:\Windows\System32\mstask.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00202752 _____ (Microsoft Corporation) C:\Windows\System32\framedyn.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00202240 _____ (Microsoft Corporation) C:\Windows\System32\input.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00194560 _____ (Microsoft Corporation) C:\Windows\System32\ListSvc.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00176128 _____ (Microsoft Corporation) C:\Windows\System32\msorcl32.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00176128 _____ (Microsoft Corporation) C:\Windows\System32\MFPlay.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00175104 _____ (Microsoft Corporation) C:\Windows\System32\fvecpl.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00172032 _____ (Microsoft Corporation) C:\Windows\System32\iasrad.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00167936 _____ (Microsoft Corporation) C:\Windows\System32\msutb.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00158720 _____ (Microsoft Corporation) C:\Windows\System32\mprapi.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00158720 _____ (Microsoft Corporation) C:\Windows\System32\itircl.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00148992 _____ (Microsoft Corporation) C:\Windows\System32\ifsutil.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00127488 _____ (Microsoft Corporation) C:\Windows\System32\logoncli.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00122880 _____ (Microsoft Corporation) C:\Windows\System32\iasrecst.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00120320 _____ (Microsoft Corporation) C:\Windows\System32\msvfw32.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00118272 _____ (Microsoft Corporation) C:\Windows\System32\imm32.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00103936 _____ (Microsoft Corporation) C:\Windows\System32\IPHLPAPI.DLL 2010-11-20 04:19 - 2002-01-01 20:37 - 00101888 _____ (Microsoft Corporation) C:\Windows\System32\migisol.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00098304 _____ (Microsoft Corporation) C:\Windows\System32\fphc.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00093696 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\System32\fms.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00084480 _____ (Microsoft Corporation) C:\Windows\System32\mciavi32.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00082944 _____ (Radius Inc.) C:\Windows\System32\iccvid.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00078848 _____ (Microsoft Corporation) C:\Windows\System32\iasacct.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00076800 _____ (Microsoft Corporation) C:\Windows\System32\mapistub.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00076800 _____ (Microsoft Corporation) C:\Windows\System32\mapi32.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00071168 _____ (Microsoft Corporation) C:\Windows\System32\KMSVC.DLL 2010-11-20 04:19 - 2002-01-01 20:37 - 00068096 _____ (Microsoft Corporation) C:\Windows\System32\Mcx2Svc.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\System32\hbaapi.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00059904 _____ (Microsoft Corporation) C:\Windows\System32\fdeploy.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00052736 _____ (Microsoft Corporation) C:\Windows\System32\inetmib1.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00050176 _____ (Microsoft Corporation) C:\Windows\System32\iyuv_32.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00042496 _____ (Microsoft Corporation) C:\Windows\System32\mimefilt.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00041984 _____ (Microsoft Corporation) C:\Windows\System32\luainstall.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00039424 _____ (Microsoft Corporation) C:\Windows\System32\FXSMON.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00036352 _____ (Microsoft Corporation) C:\Windows\System32\mciqtz32.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00034816 _____ (Microsoft Corporation) C:\Windows\System32\httpapi.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\System32\msvidc32.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00030720 _____ (Microsoft Corporation) C:\Windows\System32\msdmo.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00028672 _____ (Microsoft Corporation) C:\Windows\System32\iscsium.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\msyuv.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\HotStartUserAgent.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\lsmproxy.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00015872 _____ (Microsoft Corporation) C:\Windows\System32\icaapi.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\muifontsetup.dll 2010-11-20 04:19 - 2002-01-01 20:37 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\msrle32.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 02522624 _____ (Microsoft Corporation) C:\Windows\System32\dbgeng.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 01828352 _____ (Microsoft Corporation) C:\Windows\System32\d3d9.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 01555456 _____ (Microsoft Corporation) C:\Windows\System32\certmgr.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 01371136 _____ (Microsoft Corporation) C:\Windows\System32\dwmcore.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 01334272 _____ (Microsoft Corporation) C:\Windows\System32\CertEnroll.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00863744 _____ (Microsoft Corporation) C:\Windows\System32\diagperf.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00854016 _____ (Microsoft Corporation) C:\Windows\System32\dbghelp.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00762880 _____ (Microsoft Corporation) C:\Windows\System32\azroles.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00630784 _____ (Microsoft Corporation) C:\Windows\System32\DXPTaskRingtone.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00546304 _____ (Microsoft Corporation) C:\Windows\System32\cscsvc.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00494592 _____ (Microsoft Corporation) C:\Windows\System32\BFE.DLL 2010-11-20 04:18 - 2002-01-01 20:38 - 00485888 _____ (Microsoft Corporation) C:\Windows\System32\comdlg32.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00342016 _____ (Microsoft Corporation) C:\Windows\System32\certcli.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00339968 _____ (Microsoft Corporation) C:\Windows\System32\appmgr.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00295936 _____ (Microsoft Corporation) C:\Windows\System32\apphelp.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00254464 _____ (Microsoft Corporation) C:\Windows\System32\dhcpcore.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00252928 _____ (Microsoft) C:\Windows\System32\DShowRdpFilter.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00144384 _____ (Microsoft Corporation) C:\Windows\System32\dps.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\System32\cscobj.dll 2010-11-20 04:18 - 2002-01-01 20:38 - 00091136 _____ (Microsoft Corporation) C:\Windows\System32\dot3api.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 03727872 _____ (Microsoft Corporation) C:\Windows\System32\accessibilitycpl.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 01400320 _____ (Microsoft Corporation) C:\Windows\System32\DxpTaskSync.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 01188864 _____ (Microsoft Corporation) C:\Windows\System32\DiagCpl.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 01040384 _____ (Microsoft Corporation) C:\Windows\System32\Display.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 01003520 _____ (Microsoft Corporation) C:\Windows\System32\cryptui.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00744448 _____ (Microsoft Corporation) C:\Windows\System32\ActionCenter.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00743424 _____ (Microsoft Corporation) C:\Windows\System32\blackbox.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00740864 _____ (Microsoft Corporation) C:\Windows\System32\batmeter.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00685056 _____ (Microsoft Corporation) C:\Windows\System32\dsuiext.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00665600 _____ (Microsoft Corporation) C:\Windows\System32\AuxiliaryDisplayCpl.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00537600 _____ (Microsoft Corporation) C:\Windows\System32\ActionCenterCPL.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00484864 _____ (Microsoft Corporation) C:\Windows\System32\DeviceCenter.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00438272 _____ (Microsoft Corporation) C:\Windows\System32\AdmTmpl.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00428032 _____ (Microsoft Corporation) C:\Windows\System32\biocpl.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00418816 _____ (Microsoft Corporation) C:\Windows\System32\cscui.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00402944 _____ (Microsoft Corporation) C:\Windows\System32\drmmgrtn.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00399872 _____ (Microsoft Corporation) C:\Windows\System32\DXP.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00333824 _____ (Microsoft Corporation) C:\Windows\System32\dot3ui.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00314368 _____ (Microsoft Corporation) C:\Windows\System32\azroleui.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00309760 _____ (Microsoft Corporation) C:\Windows\System32\actxprxy.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00243712 _____ (Microsoft Corporation) C:\Windows\System32\audiodev.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00242176 _____ (Microsoft Corporation) C:\Windows\System32\eapp3hst.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00230912 _____ (Microsoft Corporation) C:\Windows\System32\clusapi.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00222208 _____ (Microsoft Corporation) C:\Windows\System32\eapphost.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00220672 _____ (Microsoft Corporation) C:\Windows\System32\defaultlocationcpl.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00214016 _____ (Microsoft Corporation) C:\Windows\System32\dot3svc.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00211456 _____ (Microsoft Corporation) C:\Windows\System32\DevicePairingFolder.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00210432 _____ (Microsoft Corporation) C:\Windows\System32\dxdiagn.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00205312 _____ (Microsoft Corporation) C:\Windows\System32\efscore.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00202752 _____ (Microsoft Corporation) C:\Windows\System32\activeds.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00196608 _____ (Microsoft Corporation) C:\Windows\System32\dskquoui.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00186880 _____ (Microsoft Corporation) C:\Windows\System32\adsldp.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00179200 _____ (Microsoft Corporation) C:\Windows\System32\ActionQueue.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00146944 _____ (Microsoft Corporation) C:\Windows\System32\autoplay.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00145920 _____ (Microsoft Corporation) C:\Windows\System32\cfgmgr32.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00133632 _____ (Microsoft Corporation) C:\Windows\System32\bcdsrv.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00132608 _____ (Microsoft Corporation) C:\Windows\System32\cabview.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00128512 _____ (Microsoft Corporation) C:\Windows\System32\EhStorAPI.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00115200 _____ (Microsoft Corporation) C:\Windows\System32\dot3msm.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00112128 _____ (Microsoft Corporation) C:\Windows\System32\AuxiliaryDisplayServices.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00109568 _____ (Microsoft Corporation) C:\Windows\System32\CscMig.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00109056 _____ (Microsoft Corporation) C:\Windows\System32\dnscmmc.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00097280 _____ (Microsoft Corporation) C:\Windows\System32\dwmredir.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00094208 _____ (Microsoft Corporation) C:\Windows\System32\eappgnui.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00091648 _____ (Microsoft Corporation) C:\Windows\System32\avifil32.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00088064 _____ (Microsoft Corporation) C:\Windows\System32\AxInstSv.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00082432 _____ (Microsoft Corporation) C:\Windows\System32\dot3cfg.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00073216 _____ (Microsoft Corporation) C:\Windows\System32\cabinet.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00070656 _____ (Microsoft Corporation) C:\Windows\System32\amstream.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00067584 _____ (Microsoft Corporation) C:\Windows\System32\certprop.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00067584 _____ (Microsoft Corporation) C:\Windows\System32\asycfilt.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\System32\cca.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00065024 _____ (Microsoft Corporation) C:\Windows\System32\CertPolEng.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00045568 _____ (Microsoft Corporation) C:\Windows\System32\acppage.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00044032 _____ (Microsoft Corporation) C:\Windows\System32\basesrv.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00034816 _____ (Microsoft Corporation) C:\Windows\System32\cscapi.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00030208 _____ (Microsoft Corporation) C:\Windows\System32\dsauth.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00028160 _____ (Microsoft Corporation) C:\Windows\System32\AzSqlExt.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00023040 _____ (Microsoft Corporation) C:\Windows\System32\cscdll.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\elsTrans.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00019456 _____ (Microsoft Corporation) C:\Windows\System32\bitsperf.dll 2010-11-20 04:18 - 2002-01-01 20:37 - 00011264 _____ (Microsoft Corporation) C:\Windows\System32\C_ISCII.DLL 2010-11-20 04:18 - 2002-01-01 20:37 - 00010752 _____ (Microsoft Corporation) C:\Windows\System32\browseui.dll 2010-11-20 04:18 - 2002-01-01 20:36 - 00323072 _____ (Microsoft Corporation) C:\Windows\System32\drvstore.dll 2010-11-20 04:18 - 2002-01-01 20:36 - 00257024 _____ (Microsoft Corporation) C:\Windows\System32\dpx.dll 2010-11-20 04:17 - 2002-01-01 20:38 - 03367424 _____ (Microsoft Corporation) C:\Windows\System32\WinSAT.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 01203200 _____ (Microsoft Corporation) C:\Windows\System32\wbengine.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 01025536 _____ (Microsoft Corporation) C:\Windows\System32\VSSVC.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00802304 _____ (Microsoft Corporation) C:\Windows\System32\WFS.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00523264 _____ (Microsoft Corporation) C:\Windows\System32\FXSSVC.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00477696 _____ (Microsoft Corporation) C:\Windows\System32\lpksetup.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00456192 _____ (Microsoft Corporation) C:\Windows\System32\spinstall.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00453632 _____ (Microsoft Corporation) C:\Windows\System32\vds.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00334336 _____ (Microsoft Corporation) C:\Windows\System32\wisptis.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00302592 _____ (Microsoft Corporation) C:\Windows\System32\cmd.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00280576 _____ (Microsoft Corporation) C:\Windows\System32\spreview.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00267776 _____ (Microsoft Corporation) C:\Windows\System32\lsm.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00260608 _____ (Microsoft Corporation) C:\Windows\System32\rdpshell.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00220672 _____ (Microsoft Corporation) C:\Windows\System32\mcbuilder.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00192000 _____ (Microsoft Corporation) C:\Windows\System32\taskeng.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00173568 _____ (Microsoft Corporation) C:\Windows\System32\rdpclip.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00161280 _____ (Microsoft Corporation) C:\Windows\System32\rdpinit.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00142336 _____ (Microsoft Corporation) C:\Windows\System32\net1.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00103936 _____ (Microsoft Corporation) C:\Windows\System32\setupcl.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00080896 _____ () C:\Windows\System32\RDVGHelper.exe 2010-11-20 04:17 - 2002-01-01 20:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\System32\PushPrinterConnections.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 03179520 _____ (Microsoft Corporation) C:\Windows\System32\sppsvc.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 01131008 _____ (Microsoft Corporation) C:\Windows\System32\sdclt.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00941568 _____ (Microsoft Corporation) C:\Windows\System32\mblctr.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00586752 _____ (Microsoft Corporation) C:\Windows\System32\dfrgui.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00327680 _____ (Microsoft Corporation) C:\Windows\System32\wimserv.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00327168 _____ (Microsoft Corporation) C:\Windows\System32\nltest.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00325632 _____ (Microsoft Corporation) C:\Windows\System32\slui.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00314880 _____ (Microsoft Corporation) C:\Windows\System32\wusa.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00314368 _____ (Microsoft Corporation) C:\Windows\System32\SndVol.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00303104 _____ (Microsoft Corporation) C:\Windows\System32\msinfo32.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00292864 _____ (Microsoft Corporation) C:\Windows\System32\WindowsAnytimeUpgradeResults.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00288256 _____ (Microsoft Corporation) C:\Windows\System32\eudcedit.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00276480 _____ (Microsoft Corporation) C:\Windows\System32\diskraid.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00270336 _____ (Microsoft Corporation) C:\Windows\System32\sethc.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00262656 _____ (Microsoft Corporation) C:\Windows\System32\rstrui.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00254976 _____ (Microsoft Corporation) C:\Windows\System32\wsqmcons.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00233984 _____ (Microsoft Corporation) C:\Windows\System32\msconfig.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00227328 _____ (Microsoft Corporation) C:\Windows\System32\taskmgr.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00210432 _____ (Microsoft Corporation) C:\Windows\System32\recdisc.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00197632 _____ (Microsoft Corporation) C:\Windows\System32\ocsetup.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00182784 _____ (Microsoft Corporation) C:\Windows\System32\RelPost.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00179712 _____ (Microsoft Corporation) C:\Windows\System32\schtasks.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00170496 _____ (Microsoft Corporation) C:\Windows\System32\PresentationSettings.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00157184 _____ (Microsoft Corporation) C:\Windows\System32\perfmon.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00144896 _____ (Microsoft Corporation) C:\Windows\System32\iscsicli.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00133632 _____ (Microsoft Corporation) C:\Windows\System32\diskpart.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00132608 _____ (Microsoft Corporation) C:\Windows\System32\MdSched.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00113152 _____ (Microsoft Corporation) C:\Windows\System32\setupugc.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00101376 _____ (Microsoft Corporation) C:\Windows\System32\mobsync.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00098816 _____ (Microsoft) C:\Windows\System32\Robocopy.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00098304 _____ (Microsoft Corporation) C:\Windows\System32\nslookup.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00095232 _____ (Microsoft Corporation) C:\Windows\System32\logagent.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00086528 _____ (Microsoft Corporation) C:\Windows\System32\isoburn.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00084992 _____ (Microsoft Corporation) C:\Windows\System32\cmstp.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00082944 _____ (Microsoft Corporation) C:\Windows\System32\logman.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00074240 _____ (Microsoft Corporation) C:\Windows\System32\tabcal.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00073216 _____ (Microsoft Corporation) C:\Windows\System32\msiexec.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00070656 _____ (Microsoft Corporation) C:\Windows\System32\MuiUnattend.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00066048 _____ (Microsoft Corporation) C:\Windows\System32\w32tm.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00066048 _____ () C:\Windows\System32\PrintBrmUi.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00062976 _____ (Microsoft Corporation) C:\Windows\System32\findstr.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\System32\manage-bde.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\System32\lpremove.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00061440 _____ (Microsoft Corporation) C:\Windows\System32\PnPUnattend.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00059904 _____ (Microsoft Corporation) C:\Windows\System32\djoin.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00057344 _____ (Microsoft Corporation) C:\Windows\System32\repair-bde.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00057344 _____ (Microsoft Corporation) C:\Windows\System32\rdpsign.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00053248 _____ (Microsoft Corporation) C:\Windows\System32\MultiDigiMon.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00051200 _____ (Microsoft Corporation) C:\Windows\System32\takeown.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00050688 _____ (Microsoft Corporation) C:\Windows\System32\runonce.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00047616 _____ (Microsoft Corporation) C:\Windows\System32\tzutil.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00042496 _____ (Microsoft Corporation) C:\Windows\System32\ftp.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00037888 _____ (Microsoft Corporation) C:\Windows\System32\relog.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00034304 _____ (Microsoft Corporation) C:\Windows\System32\unlodctr.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00028672 _____ (Microsoft Corporation) C:\Windows\System32\WerFaultSecure.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00028672 _____ (Microsoft Corporation) C:\Windows\System32\proquota.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\System32\userinit.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\System32\qwinsta.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00025600 _____ (Microsoft Corporation) C:\Windows\System32\netiougc.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00025600 _____ (Microsoft Corporation) C:\Windows\System32\netcfg.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\System32\qprocess.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00024576 _____ (Microsoft Corporation) C:\Windows\System32\msg.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00024064 _____ (Microsoft Corporation) C:\Windows\System32\netbtugc.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00023040 _____ (Microsoft Corporation) C:\Windows\System32\quser.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\tskill.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\tsdiscon.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\ReAgentc.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\tscon.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\qappsrv.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\logoff.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00020992 _____ (Microsoft Corporation) C:\Windows\System32\shadow.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00020992 _____ (Microsoft Corporation) C:\Windows\System32\rwinsta.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00015360 _____ (Microsoft Corporation) C:\Windows\System32\reset.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00014848 _____ (Microsoft Corporation) C:\Windows\System32\query.exe 2010-11-20 04:17 - 2002-01-01 20:37 - 00010752 _____ (Microsoft Corporation) C:\Windows\System32\LogonUI.exe 2010-11-20 04:17 - 2002-01-01 20:36 - 00209920 _____ (Microsoft Corporation) C:\Windows\System32\PkgMgr.exe 2010-11-20 04:16 - 2002-01-01 20:38 - 00776192 _____ (Microsoft Corporation) C:\Windows\System32\calc.exe 2010-11-20 04:16 - 2002-01-01 20:38 - 00320000 _____ (Microsoft Corporation) C:\Windows\System32\winspool.drv 2010-11-20 04:16 - 2002-01-01 20:38 - 00119808 _____ (Microsoft Corporation) C:\Windows\System32\aitagent.exe 2010-11-20 04:16 - 2002-01-01 20:37 - 00905216 _____ (Microsoft Corporation) C:\Windows\System32\mmsys.cpl 2010-11-20 04:16 - 2002-01-01 20:37 - 00878592 _____ (Microsoft Corporation) C:\Windows\System32\Bubbles.scr 2010-11-20 04:16 - 2002-01-01 20:37 - 00692736 _____ (Microsoft Corporation) C:\Windows\System32\bthprops.cpl 2010-11-20 04:16 - 2002-01-01 20:37 - 00679424 _____ (Microsoft Corporation) C:\Windows\System32\autoconv.exe 2010-11-20 04:16 - 2002-01-01 20:37 - 00668160 _____ (Microsoft Corporation) C:\Windows\System32\autochk.exe 2010-11-20 04:16 - 2002-01-01 20:37 - 00658944 _____ (Microsoft Corporation) C:\Windows\System32\autofmt.exe 2010-11-20 04:16 - 2002-01-01 20:37 - 00649216 _____ (Microsoft Corporation) C:\Windows\System32\appwiz.cpl 2010-11-20 04:16 - 2002-01-01 20:37 - 00600576 _____ (Microsoft Corporation) C:\Windows\System32\TabletPC.cpl 2010-11-20 04:16 - 2002-01-01 20:37 - 00516096 _____ (Microsoft Corporation) C:\Windows\System32\main.cpl 2010-11-20 04:16 - 2002-01-01 20:37 - 00413696 _____ (Microsoft Corporation) C:\Windows\System32\PhotoScreensaver.scr 2010-11-20 04:16 - 2002-01-01 20:37 - 00389632 _____ (Microsoft Corporation) C:\Windows\System32\sysmon.ocx 2010-11-20 04:16 - 2002-01-01 20:37 - 00345088 _____ (Microsoft Corporation) C:\Windows\System32\intl.cpl 2010-11-20 04:16 - 2002-01-01 20:37 - 00326656 _____ (Microsoft Corporation) C:\Windows\System32\sysdm.cpl 2010-11-20 04:16 - 2002-01-01 20:37 - 00295424 _____ (Microsoft Corporation) C:\Windows\System32\bcdedit.exe 2010-11-20 04:16 - 2002-01-01 20:37 - 00293888 _____ (Microsoft Corporation) C:\Windows\System32\ssText3d.scr 2010-11-20 04:16 - 2002-01-01 20:37 - 00281088 _____ (Microsoft Corporation) C:\Windows\System32\unimdm.tsp 2010-11-20 04:16 - 2002-01-01 20:37 - 00221184 _____ (Microsoft Corporation) C:\Windows\System32\Mystify.scr 2010-11-20 04:16 - 2002-01-01 20:37 - 00220672 _____ (Microsoft Corporation) C:\Windows\System32\Ribbons.scr 2010-11-20 04:16 - 2002-01-01 20:37 - 00204288 _____ (Microsoft Corporation) C:\Windows\System32\MSNP.ax 2010-11-20 04:16 - 2002-01-01 20:37 - 00193536 _____ (Microsoft Corporation) C:\Windows\System32\ksproxy.ax 2010-11-20 04:16 - 2002-01-01 20:37 - 00186368 _____ (Microsoft Corporation) C:\Windows\System32\bitsadmin.exe 2010-11-20 04:16 - 2002-01-01 20:37 - 00172032 _____ (Microsoft Corporation) C:\Windows\System32\wdmaud.drv 2010-11-20 04:16 - 2002-01-01 20:37 - 00153600 _____ (Microsoft Corporation) C:\Windows\System32\VBICodec.ax 2010-11-20 04:16 - 2002-01-01 20:37 - 00146944 _____ (Microsoft Corporation) C:\Windows\System32\bcdboot.exe 2010-11-20 04:16 - 2002-01-01 20:37 - 00142336 _____ (Microsoft Corporation) C:\Windows\System32\powercfg.cpl 2010-11-20 04:16 - 2002-01-01 20:37 - 00128000 _____ (Microsoft Corporation) C:\Windows\System32\desk.cpl 2010-11-20 04:16 - 2002-01-01 20:37 - 00126464 _____ (Microsoft Corporation) C:\Windows\System32\BdeHdCfg.exe 2010-11-20 04:16 - 2002-01-01 20:37 - 00107008 _____ (Microsoft Corporation) C:\Windows\System32\Kswdmcap.ax 2010-11-20 04:16 - 2002-01-01 20:37 - 00100864 _____ (Microsoft Corporation) C:\Windows\System32\audiodg.exe 2010-11-20 04:16 - 2002-01-01 20:37 - 00084480 _____ (Microsoft Corporation) C:\Windows\System32\kstvtune.ax 2010-11-20 04:16 - 2002-01-01 20:37 - 00072704 _____ (Microsoft Corporation) C:\Windows\System32\Mpeg2Data.ax 2010-11-20 04:16 - 2002-01-01 20:37 - 00068608 _____ (Microsoft Corporation) C:\Windows\System32\WSTPager.ax 2010-11-20 04:16 - 2002-01-01 20:37 - 00065024 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe 2010-11-20 04:16 - 2002-01-01 20:37 - 00059904 _____ (Microsoft Corporation) C:\Windows\System32\MSDvbNP.ax 2010-11-20 04:16 - 2002-01-01 20:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\System32\ksxbar.ax 2010-11-20 04:16 - 2002-01-01 20:37 - 00045568 _____ (Microsoft Corporation) C:\Windows\System32\g711codc.ax 2010-11-20 04:16 - 2002-01-01 20:37 - 00033792 _____ (Microsoft Corporation) C:\Windows\System32\vbisurf.ax 2010-11-20 04:16 - 2002-01-01 20:37 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\chgport.exe 2010-11-20 04:16 - 2002-01-01 20:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\chglogon.exe 2010-11-20 04:16 - 2002-01-01 20:37 - 00020992 _____ (Microsoft Corporation) C:\Windows\System32\chgusr.exe 2010-11-20 04:16 - 2002-01-01 20:37 - 00015360 _____ (Microsoft Corporation) C:\Windows\System32\change.exe 2010-11-20 04:07 - 2002-01-01 20:37 - 01164800 _____ (Microsoft Corporation) C:\Windows\System32\UIRibbonRes.dll 2010-11-20 04:07 - 2002-01-01 20:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\System32\spwizres.dll 2010-11-20 04:06 - 2002-01-01 20:37 - 00069120 _____ (Microsoft Corporation) C:\Windows\System32\nlsbres.dll 2010-11-20 04:05 - 2002-01-01 20:37 - 00121856 _____ (Microsoft Corporation) C:\Windows\System32\RDPENCDD.dll 2010-11-20 04:05 - 2002-01-01 20:37 - 00035328 _____ (Microsoft Corporation) C:\Windows\System32\pifmgr.dll 2010-11-20 04:03 - 2002-01-01 20:37 - 00053760 _____ (Microsoft Corporation) C:\Windows\System32\vmicres.dll 2010-11-20 04:03 - 2002-01-01 20:37 - 00044544 _____ (Microsoft Corporation) C:\Windows\System32\vmbusres.dll 2010-11-20 04:03 - 2002-01-01 20:37 - 00038400 _____ (Microsoft Corporation) C:\Windows\System32\vmstorfltres.dll 2010-11-20 04:00 - 2002-01-01 20:37 - 01027584 _____ (Microsoft Corporation) C:\Windows\System32\IMJP10.IME 2010-11-20 04:00 - 2002-01-01 20:37 - 00430080 _____ (Microsoft Corporation) C:\Windows\System32\imkr80.ime 2010-11-20 04:00 - 2002-01-01 20:37 - 00007168 _____ (Microsoft Corporation) C:\Windows\System32\KBDSG.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00007168 _____ (Microsoft Corporation) C:\Windows\System32\kbdlk41a.dll 2010-11-20 04:00 - 2002-01-01 20:37 - 00007168 _____ (Microsoft Corporation) C:\Windows\System32\KBDCZ1.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDTUQ.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDTUF.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDSF.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDPO.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDNEPR.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDINBEN.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDGR1.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDGKL.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDUS.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDUGHR1.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDTURME.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDTAJIK.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDMON.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDMAORI.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDLT1.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDINTEL.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDINTAM.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDINORI.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDINMAR.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDINKAN.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDINHIN.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDBULG.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDBLR.DLL 2010-11-20 04:00 - 2002-01-01 20:37 - 00005632 _____ (Microsoft Corporation) C:\Windows\System32\KBDGEO.DLL 2010-11-20 03:57 - 2002-01-01 20:37 - 00002560 _____ (Microsoft Corporation) C:\Windows\System32\dpnaddr.dll 2010-11-20 03:56 - 2002-01-01 20:37 - 00052736 _____ (Microsoft Corporation) C:\Windows\System32\BlbEvents.dll 2010-11-20 02:52 - 2002-01-01 20:37 - 00026112 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbrpm.sys 2010-11-20 02:24 - 2002-01-01 20:38 - 00133632 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rdpdr.sys 2010-11-20 02:22 - 2002-01-01 20:38 - 00213504 _____ (Microsoft Corporation) C:\Windows\System32\rdpdd.dll 2010-11-20 02:22 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\RDPCDD.sys 2010-11-20 02:21 - 2002-01-01 20:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\System32\RDPREFDD.dll 2010-11-20 02:21 - 2002-01-01 20:37 - 00018432 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tdpipe.sys 2010-11-20 02:07 - 2002-01-01 20:37 - 00118784 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndiswan.sys 2010-11-20 02:07 - 2002-01-01 20:37 - 00063488 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\wanarp.sys 2010-11-20 02:07 - 2002-01-01 20:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndproxy.sys 2010-11-20 02:06 - 2002-01-01 20:37 - 00117760 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rmcast.sys 2010-11-20 02:06 - 2002-01-01 20:37 - 00108544 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tunnel.sys 2010-11-20 02:06 - 2002-01-01 20:37 - 00046080 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndisuio.sys 2010-11-20 02:01 - 2002-01-01 20:38 - 00164864 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\1394ohci.sys 2010-11-20 02:00 - 2002-01-01 20:37 - 00304128 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\HdAudio.sys 2010-11-20 02:00 - 2002-01-01 20:37 - 00039936 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\umbus.sys 2010-11-20 02:00 - 2002-01-01 20:37 - 00025856 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\USBCAMD2.sys 2010-11-20 02:00 - 2002-01-01 20:37 - 00025856 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\USBCAMD.sys 2010-11-20 01:59 - 2002-01-01 20:37 - 00108544 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hdaudbus.sys 2010-11-20 01:59 - 2002-01-01 20:37 - 00035968 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\winusb.sys 2010-11-20 01:59 - 2002-01-01 20:37 - 00024064 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hidusb.sys 2010-11-20 01:50 - 2002-01-01 20:37 - 00190976 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ks.sys 2010-11-20 01:50 - 2002-01-01 20:37 - 00031232 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\CompositeBus.sys 2010-11-20 01:50 - 2002-01-01 20:37 - 00028160 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\kbdhid.sys 2010-11-20 01:50 - 2002-01-01 20:37 - 00012800 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\sffp_sd.sys 2010-11-20 01:29 - 2002-01-01 20:37 - 00050176 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\appid.sys 2010-11-20 01:24 - 2002-01-01 20:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\scfilter.sys 2010-11-20 01:19 - 2002-01-01 20:37 - 00065536 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\IPMIDrv.sys 2010-11-20 01:14 - 2002-01-01 20:38 - 00215552 _____ (Microsoft Corporation) C:\Windows\System32\vmicsvc.exe 2010-11-20 01:14 - 2002-01-01 20:37 - 00116224 _____ (Microsoft Corporation) C:\Windows\System32\VmbusCoinstaller.dll 2010-11-20 01:14 - 2002-01-01 20:37 - 00113664 _____ (Microsoft Corporation) C:\Windows\System32\VmdCoinstall.dll 2010-11-20 01:14 - 2002-01-01 20:37 - 00113664 _____ (Microsoft Corporation) C:\Windows\System32\IcCoinstall.dll 2010-11-20 01:14 - 2002-01-01 20:37 - 00047616 _____ (Microsoft Corporation) C:\Windows\System32\vmictimeprovider.dll 2010-11-20 01:14 - 2002-01-01 20:37 - 00017920 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\VMBusHID.sys 2010-11-20 01:14 - 2002-01-01 20:37 - 00014336 _____ (Microsoft Corporation) C:\Windows\System32\vmbuspipe.dll 2010-11-20 01:14 - 2002-01-01 20:37 - 00005632 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\vms3cap.sys 2010-11-20 00:47 - 2002-01-01 20:37 - 00010240 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\acpipmi.sys 2010-11-20 00:44 - 2002-01-01 20:38 - 00388096 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\csc.sys 2010-11-20 00:44 - 2002-01-01 20:38 - 00242688 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rdbss.sys 2010-11-20 00:42 - 2002-01-01 20:37 - 00246784 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\udfs.sys 2010-11-20 00:42 - 2002-01-01 20:37 - 00078336 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dfsc.sys 2010-11-20 00:40 - 2002-01-01 20:38 - 00513536 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\http.sys 2010-11-20 00:39 - 2002-01-01 20:37 - 00187904 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\netbt.sys 2010-11-20 00:39 - 2002-01-01 20:37 - 00074752 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tdx.sys 2010-11-20 00:39 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tdi.sys 2010-11-20 00:38 - 2002-01-01 20:37 - 00108544 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\cdrom.sys 2010-11-19 21:23 - 2002-01-01 20:37 - 00053600 _____ () C:\Windows\System32\dosx.exe 2010-11-09 17:45 - 2002-01-01 20:37 - 00010429 _____ () C:\Windows\System32\ScavengeSpace.xml 2010-11-04 18:20 - 2002-01-01 20:38 - 00146852 _____ () C:\Windows\System32\systemsf.ebd 2010-11-04 18:20 - 2002-01-01 20:37 - 00105559 _____ () C:\Windows\System32\RacRules.xml 2010-11-04 18:11 - 2002-01-01 20:37 - 00312168 _____ (Microsoft Corporation) C:\Windows\System32\MCEWMDRMNDBootstrap.dll 2010-11-04 17:58 - 2002-01-01 20:38 - 00297808 _____ (Microsoft Corporation) C:\Windows\System32\mscoree.dll 2010-11-04 17:58 - 2002-01-01 20:38 - 00049488 _____ (Microsoft Corporation) C:\Windows\System32\netfxperf.dll 2010-11-04 17:53 - 2002-01-01 20:38 - 00295264 _____ (Microsoft Corporation) C:\Windows\System32\PresentationHost.exe 2010-11-04 17:53 - 2002-01-01 20:38 - 00099176 _____ (Microsoft Corporation) C:\Windows\System32\PresentationHostProxy.dll 2010-05-01 09:27 - 2009-07-13 20:52 - 00000000 ____D () C:\Windows\System32\restore 2010-05-01 08:59 - 2009-07-13 18:37 - 00000000 __RHD () C:\users\Default 2010-05-01 08:59 - 2009-07-13 18:37 - 00000000 ____D () C:\Program Files\Windows NT 2009-12-16 03:38 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\LogFiles Some content of TEMP: ==================== C:\Users\...\AppData\Local\Temp\avgnt.exe C:\Users\...\AppData\Local\Temp\DseShExt-x86.dll C:\Users\...\AppData\Local\Temp\SDShelEx-win32.dll ==================== Known DLLs (Whitelisted) ============ ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => MD5 is legit C:\Windows\System32\winlogon.exe [2014-10-24 06:04] - [2014-07-16 17:39] - 0304128 ____A (Microsoft Corporation) 52449FD429D6053B78AE564DEF303870 C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit ==================== Restore Points ========================= ==================== Memory info =========================== Percentage of memory in use: 51% Total physical RAM: 895.43 MB Available physical RAM: 436.77 MB Total Pagefile: 895.43 MB Available Pagefile: 451.2 MB Total Virtual: 2047.88 MB Available Virtual: 1948.7 MB ==================== Drives ================================ Drive c: (Windows7 Deutsch) (Fixed) (Total:247.49 GB) (Free:192.61 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (Volume) (Fixed) (Total:50.59 GB) (Free:39.45 GB) NTFS Drive e: (GRMCULFRER_EN_DVD) (CDROM) (Total:2.36 GB) (Free:0 GB) UDF Drive f: (...) (Removable) (Total:1.87 GB) (Free:1.86 GB) FAT Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: A95CCC88) Partition 1: (Not Active) - (Size=50.6 GB) - (Type=07 NTFS) Partition 2: (Active) - (Size=247.5 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (Size: 1.9 GB) (Disk ID: 0009CD56) Partition 1: (Not Active) - (Size=1.9 GB) - (Type=0E) LastRegBack: 2014-12-20 06:05 ==================== End Of Log ============================ |
18.01.2015, 15:11 | #9 |
/// the machine /// TB-Ausbilder | RUN.dll fehler Warum kommt man eigentlich auf die Idee den Rechner einfach auszuschalten während gerade ein Tool am arbeiten is? Drücke bitte die + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter LastRegBack: 2014-12-20 06:05
Das Tool erstellt eine Fixlog.txt auf deinem USB Stick. Poste den Inhalt bitte hier.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
18.01.2015, 16:19 | #10 |
| RUN.dll fehler hallo ich lads bald hoch ich hab ih ausgeschaltet weil er sich auf gehängt hat Gruss Hey Melde mich von meinem PC wieder gier die FIXLIST Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 18-01-2015 Ran by SYSTEM at 2009-12-17 00:38:09 Run:1 Running from F:\ Boot Mode: Recovery ============================================== Content of fixlist: ***************** LastRegBack: 2014-12-20 06:05 ***************** DEFAULT hive was successfully copied to System32\config\HiveBackup DEFAULT hive was successfully restored from registry back up. SAM hive was successfully copied to System32\config\HiveBackup SAM hive was successfully restored from registry back up. SECURITY hive was successfully copied to System32\config\HiveBackup SECURITY hive was successfully restored from registry back up. SOFTWARE hive was successfully copied to System32\config\HiveBackup SOFTWARE hive was successfully restored from registry back up. SYSTEM hive was successfully copied to System32\config\HiveBackup SYSTEM hive was successfully restored from registry back up. ==== End of Fixlog 00:38:20 ==== Gruss |
18.01.2015, 17:32 | #11 |
/// the machine /// TB-Ausbilder | RUN.dll fehler Nur die Registry. Frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
18.01.2015, 18:23 | #12 |
| RUN.dll fehler Erscheint gleich Also hier die FRST.txt Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-01-2015 01 Ran by ... (administrator) on ...-PC on 18-01-2015 17:58:37 Running from C:\Users\.......-PC\Downloads\FRST-OlderVersion Loaded Profiles: ... (Available profiles: ...) Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X86) OS Language: Deutsch (Deutschland) Internet Explorer Version 10 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Acronis) C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe (BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-LogRotatorService.exe (BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-UpdaterService.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE () C:\Windows\System32\PnkBstrA.exe (Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Microsoft Corporation) C:\Windows\System32\audiodg.exe (Abelssoft) C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe (AimerSoft) C:\Program Files\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\taskmgr.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgnsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgemcx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgrsx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe (Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems Incorporated) C:\Program Files\Adobe\Reader 10.0\Reader\reader_sl.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [5188112 2014-12-16] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation) HKLM\...\Run: [Aimersoft Helper Compact.exe] => C:\Program Files\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe [1734144 2013-05-29] (AimerSoft) HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-18\...\RunOnce: [{91140000-0011-0000-0000-0000000FF1CE}] => C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H HKU\S-1-5-18\...\RunOnce: [{90140000-001A-0407-0000-0000000FF1CE}] => C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H AppInit_DLLs: C:\PROGRA~1\SEARCH~1\SEARCH~1\bin\VC32LO~1.DLL => C:\PROGRA~1\SEARCH~1\SEARCH~1\bin\VC32LO~1.DLL File Not Found AppInit_DLLs: c:\progra~1\suptab\search~1.dll => c:\progra~1\suptab\search~1.dll File Not Found Startup: C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Firefox.lnk ShortcutTarget: Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) Startup: C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Firefox.lnk ShortcutTarget: Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-2908931533-4132489533-110418967-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank URLSearchHook: HKLM - (No Name) - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - No File SearchScopes: HKLM -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKLM -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2908931533-4132489533-110418967-1000 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms} SearchScopes: HKU\S-1-5-21-2908931533-4132489533-110418967-1000 -> {1} URL = Toolbar: HKLM - No Name - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} - No File Toolbar: HKLM - No Name - {30F9B915-B755-4826-820B-08FBA6BD249D} - No File Toolbar: HKLM - No Name - {828DC97A-2277-4E10-92A9-4907FA0922A9} - No File Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\..\Interfaces\{4007158E-A27E-4722-834C-9092AFB70BBA}: [NameServer] 192.168.178.1 Tcpip\..\Interfaces\{6390599D-EB38-4EAF-A9A7-CA69DB545DE2}: [NameServer] 192.168.178.1 Tcpip\..\Interfaces\{63BBC024-99F8-45D3-AB40-74F50224FE54}: [NameServer] 192.168.178.1 Tcpip\..\Interfaces\{D7A7E645-6BCA-4CC9-801C-D2007BE4C6DC}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 Tcpip\..\Interfaces\{EA104EC2-7169-4026-98D9-7FA51715A643}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1 FireFox: ======== FF ProfilePath: C:\Users\.......-PC\AppData\Roaming\Mozilla\Firefox\Profiles\1fcf5fo1.default-1417951851860 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll () FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.) FF Plugin: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.10\\npsitesafety.dll No File FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll No File FF Extension: Adblock Plus - C:\Users\.......-PC\AppData\Roaming\Mozilla\Firefox\Profiles\1fcf5fo1.default-1417951851860\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-01-10] FF HKLM\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 FF HKLM\...\Firefox\Extensions: [OKitSpace@Vittalia.es] - C:\Users\...\AppData\Roaming\okitspace\Firefox FF HKLM\...\Firefox\Extensions: [quick_start@gmail.com] - C:\Users\...\AppData\Roaming\Mozilla\Firefox\Profiles\9bd6yrxo.default\extensions\quick_start@gmail.com FF HKLM\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files\Epson Software\E-Web Print\Firefox Add-on FF Extension: E-Web Print - C:\Program Files\Epson Software\E-Web Print\Firefox Add-on [2014-11-05] Chrome: ======= CHR StartupUrls: Default -> "hxxp://www.google.com" CHR DefaultSearchKeyword: Default -> google CHR DefaultSuggestURL: Default -> CHR Profile: C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-22] CHR Extension: (Google Drive) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-22] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-22] CHR Extension: (YouTube) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-22] CHR Extension: (Google-Suche) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-22] CHR Extension: (Google Tabellen) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-22] CHR Extension: (Google Wallet) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-22] CHR Extension: (Google Mail) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-22] CHR HKLM\...\Chrome\Extension: [aacbndibbcpajfgnkdkaakeiojmmgmnk] - C:\Users\...\AppData\Roaming\Media Finder\Extensions\mf_plugin_gc.crx [Not Found] CHR HKLM\...\Chrome\Extension: [bakijjialdiiboeaknfpmflphhmljfkd] - No Path CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path CHR HKLM\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - C:\Users\...\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx [2013-11-20] CHR HKLM\...\Chrome\Extension: [jpihmmhdcobmllpcnpfbhnipmhamldje] - C:\Users\...\AppData\Roaming\Media Finder\Extensions\gencrawler_gc.crx [2012-02-15] CHR HKLM\...\Chrome\Extension: [mggiecmcgkpfmegnobeimepgndgdhbjm] - C:\Users\...\AppData\Roaming\okitspace\Chrome\OKitSpace.crx [Not Found] CHR HKLM\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Users\...\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv3.crx [2014-06-01] CHR HKLM\...\Chrome\Extension: [pilobbegphefikcgjpajnneiiahhejam] - C:\Users\...\Econa\Gutscheinsammler\Chrome\chrome.crx [Not Found] ========================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 AcrSch2Svc; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [661072 2009-11-12] (Acronis) R2 afcdpsrv; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [2480048 2010-07-25] (Acronis) S2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3247120 2014-12-16] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [289328 2014-12-16] (AVG Technologies CZ, s.r.o.) S2 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [409304 2014-10-08] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [388824 2014-10-08] (BlueStack Systems, Inc.) R2 BstHdUpdaterSvc; C:\Program Files\BlueStacks\HD-UpdaterService.exe [782040 2014-10-08] (BlueStack Systems, Inc.) R2 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [142432 2012-02-21] (SEIKO EPSON CORPORATION) S3 FlexNet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [1074480 2014-09-22] (Flexera Software LLC) R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-23] (Hewlett-Packard Co.) [File not signed] R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-23] (Hewlett-Packard Co.) [File not signed] R2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [694784 2009-09-23] (Hewlett-Packard Co.) [File not signed] R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44544 2008-12-03] (Hewlett-Packard) [File not signed] R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2008-12-03] (Hewlett-Packard) [File not signed] R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [75136 2014-03-05] () S3 WatAdminSvc; C:\Windows\system32\Wat\WatAdminSvc.exe [1343400 2013-11-18] () [File not signed] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation) S2 !SASCORE; "C:\Program Files\SUPERAntiSpyware\SASCORE.EXE" [X] S2 EZ Software Updater; C:\Program Files\EZ Software Updater\EZ Software Updater.exe [X] S2 Orbiter; C:/Program Files/ORBTR/orbiter.dll [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AegisP; C:\Windows\System32\DRIVERS\AegisP.sys [21035 2012-05-17] (Meetinghouse Data Communications) [File not signed] R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [121624 2014-06-30] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [200984 2014-07-21] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [147736 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [21272 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [189720 2014-10-24] (AVG Technologies CZ, s.r.o.) R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [241944 2014-06-17] (AVG Technologies CZ, s.r.o.) R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [98584 2014-10-29] (AVG Technologies CZ, s.r.o.) R0 AvgRkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27416 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [197400 2014-10-20] (AVG Technologies CZ, s.r.o.) R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [42784 2014-11-13] (AVG Technologies) R2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [112344 2014-10-08] (BlueStack Systems) R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () [File not signed] S3 RTLWUSB; C:\Windows\System32\DRIVERS\RTL8187.sys [172416 2006-04-21] (Realtek Semiconductor Corporation ) [File not signed] S3 SjyPkt; C:\Windows\System32\Drivers\SjyPkt.sys [13532 2002-10-02] (Windows (R) 2000 DDK provider) [File not signed] S3 SMARTMouseFilterx86; C:\Windows\System32\DRIVERS\SMARTMouseFilterx86.sys [8192 2014-03-25] (SMART Technologies) [File not signed] S3 SMARTVHidMini2000x86; C:\Windows\System32\DRIVERS\SMARTVHidMini2000x86.sys [7680 2014-03-25] (SMART Technologies) [File not signed] S3 SMARTVTabletPCx86; C:\Windows\System32\DRIVERS\SMARTVTabletPCx86.sys [15872 2014-03-25] (SMART Technologies ULC) [File not signed] R0 tdrpman258; C:\Windows\System32\DRIVERS\tdrpm258.sys [911680 2010-07-25] (Acronis) S3 CEDRIVER60; \??\C:\Program Files\Cheat Engine 6.4\dbk32.sys [X] S2 eamonm; system32\DRIVERS\eamonm.sys [X] S3 FLASHSYS; \??\C:\Program Files\MSI\Live Update 4\LU4\FLASHSYS.sys [X] S3 fsbl; \??\C:\Program Files\F-Secure\apps\ComputerSecurity\Anti-Virus\fsbldrv.sys [X] S1 ntiomin; No ImagePath S3 OSFMount; \??\C:\Users\.......-PC\AppData\Local\Temp\Rar$EXa0.041\bin\OSFMount.sys [X] S1 SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [X] S1 SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [X] S2 sbmntr; \??\C:\PROGRA~1\YTDOWN~1\sbmntr.sys [X] S2 SPDRIVER_1.38.0.1434; \??\C:\Program Files\ShopperPro\JSDriver\1.38.0.1434\jsdrv.sys [X] S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X] S3 tsusbhub; system32\drivers\tsusbhub.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] S3 XDva401; \??\C:\Windows\system32\XDva401.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-18 17:40 - 2015-01-18 17:58 - 00000000 ____D () C:\Users\.......-PC\Downloads\FRST-OlderVersion 2015-01-17 15:24 - 2009-12-17 00:39 - 938946094 _____ () C:\Windows\MEMORY.DMP 2015-01-16 19:55 - 2015-01-16 19:55 - 05609736 ____R (Swearware) C:\Users\.......-PC\Desktop\ComboFix.exe 2015-01-16 18:41 - 2015-01-16 18:45 - 00034347 _____ () C:\Users\.......-PC\Downloads\Addition.txt 2015-01-16 18:32 - 2015-01-16 18:45 - 00041486 _____ () C:\Users\.......-PC\Downloads\FRST.txt 2015-01-16 16:26 - 2015-01-16 16:26 - 00640424 _____ (Akeo Consulting (hxxp://akeo.ie)) C:\Users\.......-PC\Downloads\rufus-1.4.12.exe 2015-01-14 17:44 - 2009-12-17 00:39 - 00086226 _____ () C:\Windows\PFRO.log 2015-01-14 17:27 - 2010-02-11 06:32 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGX.dll 2015-01-14 17:27 - 2010-02-11 06:30 - 00348160 _____ (ATI Technologies, Inc.) C:\Windows\system32\atipdlxx.dll 2015-01-14 17:27 - 2010-02-11 06:30 - 00274432 _____ (ATI Technologies, Inc.) C:\Windows\system32\Oemdspif.dll 2015-01-14 17:27 - 2010-02-11 06:30 - 00159744 _____ () C:\Windows\system32\atitmmxx.dll 2015-01-14 17:27 - 2010-02-11 06:29 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\system32\ati2edxx.dll 2015-01-14 17:27 - 2010-02-11 06:29 - 00012288 _____ (AMD) C:\Windows\system32\atimuixx.dll 2015-01-14 17:27 - 2010-02-11 05:58 - 11513856 _____ (ATI Technologies Inc.) C:\Windows\system32\atioglxx.dll 2015-01-14 17:27 - 2010-02-11 05:48 - 00135168 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2015-01-14 17:27 - 2010-02-11 05:34 - 00053248 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2015-01-14 17:27 - 2009-07-14 02:14 - 04772352 _____ (ATI Technologies Inc. ) C:\Windows\system32\atiumdva.dll 2015-01-14 17:27 - 2009-07-14 02:14 - 04030976 _____ (ATI Technologies Inc. ) C:\Windows\system32\atiumdag.dll 2015-01-14 17:27 - 2009-07-14 02:14 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom32.dll 2015-01-14 17:27 - 2009-07-13 23:09 - 04194816 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2015-01-14 17:27 - 2009-06-10 22:19 - 00069112 _____ () C:\Windows\system32\atiumdva.cap 2015-01-14 17:24 - 2015-01-14 17:31 - 00000000 ____D () C:\Program Files\ATI Technologies 2015-01-14 17:24 - 2009-12-16 00:22 - 00000000 ____D () C:\Program Files\ATI 2015-01-14 17:24 - 2009-07-21 11:41 - 00278528 _____ (ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.dll 2015-01-14 17:24 - 2009-07-21 11:40 - 00733184 _____ (ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.exe 2015-01-14 17:24 - 2009-05-05 00:30 - 00014392 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\Drivers\AtiPcie.sys 2015-01-14 17:16 - 2015-01-14 17:16 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\DriverToolkit 2015-01-14 17:15 - 2015-01-14 17:19 - 00000000 ____D () C:\Program Files\DriverToolkit 2015-01-14 17:15 - 2015-01-14 17:15 - 02448688 _____ (Megaify Software ) C:\Users\.......-PC\Downloads\driver_setup.exe 2015-01-14 16:48 - 2015-01-14 16:48 - 69104008 _____ (SiSoftware ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager [1].exe 2015-01-14 16:47 - 2015-01-14 16:47 - 00823792 _____ ( ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager.exe 2015-01-14 16:46 - 2015-01-14 16:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer.exe 2015-01-14 16:46 - 2015-01-14 16:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer(1).exe 2015-01-14 16:39 - 2015-01-14 16:40 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218(1).exe 2015-01-14 16:37 - 2015-01-14 16:37 - 00000000 _____ () C:\Users\.......-PC\Downloads\cpu-z_1.71-setup-en_CB-DL-Manager.exe 2015-01-13 17:36 - 2009-12-17 00:40 - 00000488 __RSH () C:\ProgramData\ntuser.pol 2015-01-13 17:35 - 2015-01-13 17:35 - 00639400 _____ (Akeo Consulting (hxxp://akeo.ie)) C:\Users\.......-PC\Downloads\rufus.exe 2015-01-13 17:32 - 2015-01-13 17:32 - 01179936 _____ () C:\Users\.......-PC\Downloads\Rufus - CHIP-Installer.exe 2015-01-13 17:12 - 2015-01-13 17:13 - 03852472 _____ () C:\Windows\system32\FNTCACHE.DAT 2015-01-12 16:01 - 2015-01-18 17:31 - 00000784 _____ () C:\Windows\setupact.log 2015-01-12 16:01 - 2015-01-12 16:01 - 00115592 _____ () C:\Users\.......-PC\AppData\Local\GDIPFONTCACHEV1.DAT 2015-01-12 16:01 - 2015-01-12 16:01 - 00000000 _____ () C:\Windows\setuperr.log 2015-01-11 18:52 - 2015-01-11 18:52 - 00019456 _____ () C:\Users\.......-PC\Downloads\launcher32.dll 2015-01-11 18:50 - 2015-01-11 18:50 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218.exe 2015-01-11 18:50 - 2015-01-11 18:50 - 00023456 _____ (Phoenix Technologies) C:\Windows\system32\Drivers\DrvAgent32.sys 2015-01-11 18:50 - 2015-01-11 18:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\eSupport.com 2015-01-11 18:28 - 2015-01-11 18:28 - 01297519 _____ (KC Softwares ) C:\Users\.......-PC\Downloads\ramexpert_nork_CB-DL-Manager [1].exe 2015-01-11 14:42 - 2015-01-11 14:42 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-01-11 14:05 - 2015-01-11 14:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Sparta 2015-01-11 14:05 - 2015-01-11 14:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\sparta111 2015-01-11 14:05 - 2015-01-11 14:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Pirates 2015-01-11 13:15 - 2015-01-11 15:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ImgBurn 2015-01-11 11:56 - 2006-10-13 08:18 - 00380928 _____ (NVIDIA) C:\Windows\ntuneoem.dll 2015-01-11 11:56 - 2006-10-13 08:18 - 00018216 _____ (NVidia Corp.) C:\Windows\nvoclk64.sys 2015-01-11 11:56 - 2006-10-13 08:18 - 00006912 _____ (NVidia Corp.) C:\Windows\nvoclock.sys 2015-01-11 11:56 - 2006-10-13 08:16 - 00421888 _____ (NVIDIA) C:\Windows\nvsulib.dll 2015-01-11 11:56 - 2006-10-13 08:13 - 01622016 _____ (NVIDIA) C:\Windows\NVBenchMarks.dll 2015-01-11 11:56 - 2006-10-13 08:12 - 00028672 _____ (NVIDIA) C:\Windows\AutoTuneScript.dll 2015-01-11 11:56 - 2006-09-05 14:59 - 00217088 _____ () C:\Windows\NVGfxOgl.dll 2015-01-11 11:56 - 2006-08-21 09:20 - 00045056 _____ (NVIDIA) C:\Windows\NTuneGpu.dll 2015-01-11 11:56 - 2006-06-01 17:22 - 00053248 _____ (NVIDIA Corporation) C:\Windows\Nvgpio.dll 2015-01-11 11:56 - 2005-09-23 16:33 - 01060864 _____ (Microsoft Corporation) C:\Windows\MFC71.dll 2015-01-11 11:56 - 2005-09-23 16:33 - 00499712 _____ (Microsoft Corporation) C:\Windows\msvcp71.dll 2015-01-11 11:56 - 2005-09-23 16:33 - 00348160 _____ (Microsoft Corporation) C:\Windows\msvcr71.dll 2015-01-10 20:56 - 2015-01-10 20:57 - 02191360 _____ () C:\Users\.......-PC\Desktop\adwcleaner_4.107.exe 2015-01-10 17:00 - 2015-01-10 17:00 - 00001881 _____ () C:\Users\Public\Desktop\MSI Live Update 6.lnk 2015-01-10 17:00 - 2015-01-10 17:00 - 00000000 ____D () C:\MSI 2015-01-10 16:57 - 2015-01-10 16:59 - 00013817 _____ () C:\Windows\system32\Utility.xml 2015-01-10 16:56 - 2014-04-30 16:23 - 00011248 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll 2015-01-10 15:17 - 2015-01-10 15:19 - 00000000 _____ () C:\Users\.......-PC\AppData\Local\{9D9B305F-6B8C-4AA5-94D7-474EAA096BC4} 2014-12-24 09:38 - 2014-12-24 09:38 - 00016648 ____N () C:\bootsqm.dat 2014-12-24 09:38 - 2014-12-24 09:38 - 00000000 __SHD () C:\found.002 2014-12-22 12:49 - 2014-12-22 12:49 - 00000000 ___HD () C:\MediaServer_Temp 2014-12-22 12:48 - 2014-12-22 12:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Wondershare Video Converter Pro 2014-12-22 12:48 - 2014-12-22 12:48 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Wondershare 2014-12-22 12:48 - 2014-12-22 12:48 - 00000000 ____D () C:\Program Files\Common Files\Wondershare 2014-12-22 12:47 - 2014-12-22 13:30 - 00000000 ____D () C:\Program Files\Wondershare 2014-12-22 12:47 - 2014-12-22 13:29 - 00000000 ____D () C:\ProgramData\Wondershare 2014-12-22 12:47 - 2014-12-22 13:01 - 00000000 ____D () C:\ProgramData\Wondershare Video Converter Pro 2014-12-22 12:47 - 2014-10-24 14:16 - 00214528 _____ () C:\Windows\system32\WSCM32.dll 2014-12-22 12:45 - 2014-12-22 12:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\HandBrake 2014-12-22 12:41 - 2014-12-22 12:41 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\4Videosoft Studio 2014-12-22 12:28 - 2014-12-22 12:28 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aiseesoft Studio 2014-12-22 10:32 - 2014-12-22 10:32 - 00000213 _____ () C:\Users\.......-PC\Desktop\Team Fortress 2.url 2014-12-22 10:26 - 2015-01-18 17:57 - 00000000 ____D () C:\Program Files\Steam 2014-12-22 10:26 - 2014-12-22 10:26 - 00000897 _____ () C:\Users\Public\Desktop\Steam.lnk 2014-12-22 10:26 - 2014-12-22 10:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2014-12-21 16:44 - 2014-12-21 16:44 - 00000000 __RSH () C:\MSDOS.SYS 2014-12-21 16:44 - 2014-12-21 16:44 - 00000000 __RSH () C:\IO.SYS 2014-12-21 12:27 - 2014-12-21 12:27 - 00000000 ____D () C:\Program Files\ESET 2014-12-21 12:13 - 2015-01-18 17:59 - 00000000 ____D () C:\FRST 2014-12-21 11:58 - 2014-12-21 11:58 - 00000083 _____ () C:\Users\.......-PC\Desktop\Neues Textdokument (2).txt 2014-12-20 17:20 - 2014-12-20 17:25 - 00000000 ____D () C:\Program Files\RMPrepUSB 2014-12-20 14:32 - 2014-12-22 11:23 - 00000000 ____D () C:\Users\.......-PC\Desktop\Hausbau 2014-12-20 11:49 - 2014-12-20 14:38 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk 2014-12-20 11:49 - 2014-12-20 11:49 - 00001965 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk 2014-12-20 11:49 - 2014-12-20 11:49 - 00000000 ____D () C:\Program Files\Adobe 2014-12-20 11:32 - 2014-12-20 11:32 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Mael 2014-12-20 11:14 - 2015-01-11 13:14 - 00000373 _____ () C:\Users\.......-PC\AppData\Roaming\burnaware.ini 2014-12-20 11:14 - 2014-12-20 11:14 - 00000988 _____ () C:\Users\Public\Desktop\BurnAware Free.lnk 2014-12-20 11:14 - 2014-12-20 11:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BurnAware Free 2014-12-20 11:14 - 2014-12-20 11:14 - 00000000 ____D () C:\Program Files\BurnAware Free 2014-12-20 10:46 - 2014-12-20 10:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Ashampoo 2014-12-20 10:45 - 2014-12-20 10:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\ashampoo 2014-12-20 10:45 - 2014-12-20 10:45 - 00000000 ____D () C:\ProgramData\ashampoo 2014-12-20 09:15 - 2011-07-11 11:39 - 00324834 _____ () C:\Windows6.1-KB2566584-x86.msu 2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Aimersoft Video Converter Ultimate 2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A} 2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aimersoft 2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Program Files\Common Files\Aimersoft 2014-12-19 20:00 - 2014-12-20 11:11 - 00000000 ____D () C:\Program Files\Aimersoft 2014-12-19 19:50 - 2014-12-19 19:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\tiger-k 2014-12-19 19:49 - 2014-12-19 19:49 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Leawo 2014-12-19 19:49 - 2014-12-19 19:49 - 00000000 ____D () C:\ProgramData\Leawo 2014-12-19 19:49 - 2012-01-10 10:18 - 00066944 _____ (TOSHIBA Corporation) C:\Windows\system32\Drivers\thdudf.sys 2014-12-19 18:44 - 2014-12-19 18:44 - 00001133 _____ () C:\Users\.......-PC\Desktop\Any Video Converter.lnk 2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Anvsoft 2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvsoft 2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\Program Files\Anvsoft 2014-12-19 18:10 - 2014-12-19 19:34 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Microsoft Games 2014-12-19 05:49 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2014-12-19 05:49 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2014-12-19 05:49 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2014-12-19 05:49 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2014-12-19 05:49 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2014-12-19 05:49 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2014-12-19 05:49 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2014-12-19 05:49 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2014-12-19 05:49 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2014-12-19 05:49 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2014-12-19 05:49 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2014-12-19 05:49 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2014-12-19 05:49 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2014-12-19 05:49 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2014-12-19 05:49 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2014-12-19 05:49 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2014-12-19 05:49 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2014-12-19 05:49 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2014-12-19 05:49 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2014-12-19 05:49 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2014-12-19 05:49 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2014-12-19 05:49 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2014-12-19 05:49 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2014-12-19 05:49 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2014-12-19 05:49 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2014-12-19 05:49 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2014-12-19 05:49 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2014-12-19 05:49 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2014-12-19 05:49 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2014-12-19 05:49 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2014-12-19 05:49 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2014-12-19 05:49 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2014-12-19 05:49 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2014-12-19 05:49 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2014-12-19 05:49 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2014-12-19 05:49 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2014-12-19 05:49 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2014-12-19 05:49 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2014-12-19 05:49 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2014-12-19 05:49 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2014-12-19 05:49 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2014-12-19 05:49 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2014-12-19 05:49 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2014-12-19 05:49 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2014-12-19 05:49 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2014-12-19 05:49 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2014-12-19 05:49 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2014-12-19 05:49 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2014-12-19 05:49 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2014-12-19 05:49 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2014-12-19 05:49 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-01-18 18:01 - 2014-04-20 13:06 - 01326765 _____ () C:\Windows\WindowsUpdate.log 2015-01-18 17:47 - 2014-08-03 12:20 - 00000927 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2015-01-18 17:47 - 2014-08-03 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2015-01-18 17:44 - 2014-08-03 12:16 - 00000000 ____D () C:\ProgramData\MFAData 2015-01-18 17:31 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-01-16 19:58 - 2009-07-14 05:34 - 00037504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-01-16 19:58 - 2009-07-14 05:34 - 00037504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-01-16 19:57 - 2014-02-01 15:17 - 00000000 ___DC () C:\32788R22FWJFW 2015-01-16 19:40 - 2010-05-02 07:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI 2015-01-16 19:28 - 2014-11-30 18:14 - 00007606 _____ () C:\Users\.......-PC\AppData\Local\Resmon.ResmonCfg 2015-01-16 17:35 - 2010-05-02 06:57 - 00000000 ____D () C:\Program Files\Mozilla Thunderbird 2015-01-16 16:38 - 2014-09-01 14:20 - 00000000 ____D () C:\Users\.......-PC 2015-01-16 15:39 - 2014-12-18 16:40 - 00000000 ____D () C:\Program Files\Common Files\Steam 2015-01-16 15:19 - 2014-04-30 15:08 - 00000000 ____D () C:\Users\.......-PC\Desktop\video 2015-01-15 19:25 - 2014-09-01 14:20 - 00000000 ___RD () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-01-15 19:08 - 2013-08-06 17:45 - 00000000 ____D () C:\Windows\pss 2015-01-11 15:02 - 2010-05-02 06:58 - 00000000 ___RD () C:\Users\.......-PC\Desktop\support 2015-01-11 14:51 - 2014-11-22 18:21 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\JAM Software 2015-01-11 11:56 - 2010-05-02 07:06 - 00000000 ____D () C:\Program Files\MSI 2015-01-10 20:54 - 2014-10-26 16:25 - 00000000 ____D () C:\Users\.......-PC\Desktop\POwer 2014-12-22 14:16 - 2014-09-01 14:20 - 00001397 _____ () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-12-22 14:16 - 2014-03-28 17:20 - 00002097 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2014-12-22 14:16 - 2012-01-22 11:26 - 00001035 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-12-22 14:16 - 2010-05-02 06:51 - 00001023 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-12-22 10:15 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\NDF 2014-12-21 16:49 - 2014-11-01 19:29 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\vlc 2014-12-21 16:45 - 2010-05-02 09:08 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-12-21 16:45 - 2010-05-02 09:08 - 00000000 ____D () C:\Program Files\Microsoft Office 2014-12-21 16:45 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-12-21 16:44 - 2014-05-05 14:57 - 00000033 _____ () C:\Windows\Nscal.ini 2014-12-21 16:44 - 2014-05-05 14:51 - 00302592 _____ (InstallShield Corporation, Inc.) C:\Windows\unin0407.exe 2014-12-21 16:44 - 2009-07-14 09:56 - 00000000 ____D () C:\Windows\ShellNew 2014-12-21 16:40 - 2014-11-05 17:10 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\DVDVideoSoft 2014-12-21 16:26 - 2013-06-04 19:46 - 00000000 __RHD () C:\Users\Public\Libraries 2014-12-21 12:57 - 2014-12-18 16:49 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-12-20 11:53 - 2013-05-10 12:32 - 00000000 ____D () C:\ProgramData\Adobe 2014-12-20 11:52 - 2014-11-03 05:38 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Adobe 2014-12-20 11:52 - 2014-09-01 14:20 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Adobe 2014-12-20 11:49 - 2014-06-09 11:40 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2014-12-20 10:59 - 2013-01-18 15:50 - 00000000 ____D () C:\Program Files\Ashampoo ==================== Files in the root of some directories ======= 2014-10-26 14:03 - 2014-11-24 04:50 - 1177208 _____ () C:\Users\.......-PC\AppData\Roaming\AndyCleanupTool.exe 2014-10-26 14:03 - 2014-11-24 04:50 - 1176696 _____ () C:\Users\.......-PC\AppData\Roaming\AndyCleanVM.exe 2014-12-20 11:14 - 2015-01-11 13:14 - 0000373 _____ () C:\Users\.......-PC\AppData\Roaming\burnaware.ini 2014-11-30 18:14 - 2015-01-16 19:28 - 0007606 _____ () C:\Users\.......-PC\AppData\Local\Resmon.ResmonCfg 2002-01-01 00:05 - 2002-01-01 00:06 - 0000000 _____ () C:\Users\.......-PC\AppData\Local\{6022A40E-BF22-4886-B895-874490022456} 2015-01-10 15:17 - 2015-01-10 15:19 - 0000000 _____ () C:\Users\.......-PC\AppData\Local\{9D9B305F-6B8C-4AA5-94D7-474EAA096BC4} Some content of TEMP: ==================== C:\Users\...\AppData\Local\Temp\avgnt.exe C:\Users\...\AppData\Local\Temp\DseShExt-x86.dll C:\Users\...\AppData\Local\Temp\SDShelEx-win32.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\explorer.exe => File is digitally signed C:\Windows\system32\winlogon.exe => File is digitally signed C:\Windows\system32\wininit.exe => File is digitally signed C:\Windows\system32\svchost.exe => File is digitally signed C:\Windows\system32\services.exe => File is digitally signed C:\Windows\system32\User32.dll => MD5 is legit C:\Windows\system32\userinit.exe => File is digitally signed C:\Windows\system32\rpcss.dll => File is digitally signed C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed und hier die Additional Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x86) Version: 18-01-2015 01 Ran by ... at 2015-01-18 18:10:26 Running from C:\Users\.......-PC\Downloads\FRST-OlderVersion Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: AVG AntiVirus 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AS: AVG AntiVirus 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 32 Bit HP CIO Components Installer (Version: 6.1.1 - Hewlett-Packard) Hidden 8500A909_eDocs (Version: 1.00.0000 - Hewlett-Packard) Hidden 8500A909_Help (Version: 1.00.0000 - Hewlett-Packard) Hidden 8500A909g (Version: 50.0.165.000 - Hewlett-Packard) Hidden Adobe Acrobat Reader 3.01 (HKLM\...\Adobe Acrobat Reader 3.01) (Version: - ) Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated) Adobe Reader X (10.1.13) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.13 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (HKLM\...\Adobe Shockwave Player) (Version: 11.6.1.629 - Adobe Systems, Inc.) Any Video Converter 5.7.6 (HKLM\...\Any Video Converter_is1) (Version: - Any-Video-Converter.com) ATI Catalyst Install Manager (HKLM\...\{47FDEFC7-BFE6-FD75-41D1-28DD572BD2D9}) (Version: 3.0.715.0 - ATI Technologies, Inc.) Audacity 2.0.5 (HKLM\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4800 - AVG Technologies) AVG 2014 (Version: 14.0.4257 - AVG Technologies) Hidden AVG 2014 (Version: 14.0.4794 - AVG Technologies) Hidden AVG 2014 (Version: 14.0.4800 - AVG Technologies) Hidden AVG PC TuneUp 2015 (de-DE) (Version: 15.0.1001.105 - AVG Technologies) Hidden AVG Web TuneUp (HKLM\...\AVG Web TuneUp) (Version: 4.0.0.19 - AVG Technologies) BlueStacks App Player (HKLM\...\BlueStacks App Player) (Version: 0.9.4.4079 - BlueStack Systems, Inc.) BlueStacks Notification Center (HKLM\...\{8DCCC556-265B-478A-8B32-C12DA988BA74}) (Version: 0.9.4.4079 - BlueStack Systems, Inc.) BPD_DSWizards (Version: 1.00.0000 - Hewlett-Packard) Hidden bpd_scan (Version: 3.00.0000 - Hewlett-Packard) Hidden BPDSoftware (Version: 50.0.165.000 - Hewlett-Packard) Hidden BPDSoftware_Ini (Version: 1.00.0000 - Hewlett-Packard) Hidden BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden Bundled software uninstaller (HKLM\...\bi_uninstaller) (Version: - ) <==== ATTENTION BurnAware Free 7.7 (HKLM\...\BurnAware Free_is1) (Version: - Burnaware) CCleaner (HKLM\...\CCleaner) (Version: 4.05 - Piriform) Cheat Engine 6.4 (HKLM\...\Cheat Engine 6.4_is1) (Version: - Cheat Engine) CheckDrive (HKLM\...\{B83513EC-2E4D-4621-816D-4CCF397BE702}_is1) (Version: 4.4 - Abelssoft) D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden DeviceDiscovery (Version: 130.0.465.000 - Hewlett-Packard) Hidden DocMgr (Version: 130.0.000.000 - Ihr Firmenname) Hidden DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden Dota 2 (HKLM\...\Steam App 570) (Version: - Valve) Druckerdeinstallation für EPSON XP-302 303 305 306 Series (HKLM\...\EPSON XP-302 303 305 306 Series) (Version: - SEIKO EPSON Corporation) Epson Connect Printer Setup (HKLM\...\{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}) (Version: 1.3.0 - SEIKO EPSON CORPORATION) Epson E-Web Print (HKLM\...\{896667C8-53F8-47B8-B6B0-B113B10F05BC}) (Version: 1.20.0000 - SEIKO EPSON CORPORATION) EPSON Printer Finder (HKLM\...\{B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}) (Version: 1.0.0 - SEIKO EPSON CORPORATION) EZ Software Updater version 1.2.0.4 (HKLM\...\EZ Software Updater_is1) (Version: 1.2.0.4 - ) Fax (Version: 130.0.418.000 - Hewlett-Packard) Hidden Fotogalerie (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Free YouTube Download version 3.2.49.1022 (HKLM\...\Free YouTube Download_is1) (Version: 3.2.49.1022 - DVDVideoSoft Ltd.) GeoGebra 5 (HKLM\...\GeoGebra 5) (Version: 5.0.4.0 - International GeoGebra Institute) Google Chrome (HKLM\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.) Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Earth (HKLM\...\{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}) (Version: 6.1.0.5001 - Google) Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden Haali Media Splitter (HKLM\...\HaaliMkx) (Version: - FreeCodecPack) HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden HPSSupply (Version: 130.0.371.000 - Hewlett-Packard) Hidden HxD Hex Editor Version 1.7.7.0 (HKLM\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz) Java 8 Update 25 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) Key hack Setup version 1.5 (HKLM\...\{ADF6D3E3-02C1-47CE-9788-7E19C8B1753C}_is1) (Version: 1.5 - My Company, Inc.) Liveupdate4 (HKLM\...\Liveupdate4_is1) (Version: - MSI, Inc.) MarketResearch (Version: 130.0.374.000 - Hewlett-Packard) Hidden Media Downloader version 1.5 (HKLM\...\Media Downloader_is1) (Version: 1.5 - Media Downloader) Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0100-0407-0000-0000000FF1CE}_OMUI.de-de_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}) (Version: - Microsoft) Microsoft Office Language Pack 2007 - German/Deutsch (HKLM\...\OMUI.de-de) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Movie Maker (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 34.0.5 (x86 de) (HKLM\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) Mozilla Thunderbird 12.0.1 (x86 de) (HKLM\...\Mozilla Thunderbird 12.0.1 (x86 de)) (Version: 12.0.1 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) Netscape Communicator 4.6 (HKLM\...\Netscape Communicator 4.6) (Version: - ) Network (Version: 130.0.579.000 - Hewlett-Packard) Hidden Nitro PDF Professional (HKLM\...\{853F9C53-2518-4AD0-ABA2-A72EDF4441A4}) (Version: 5.5.2.0 - Nitro PDF Software ) Oracle VM VirtualBox 4.3.12 (HKLM\...\{D90E08B8-E7BB-4D29-8249-8670D4CC24BD}) (Version: 4.3.12 - Oracle Corporation) Phase 5 HTML-Editor (HKLM\...\{20B1B020-DEAE-48D1-9960-D4C3185D758B}) (Version: 5.6.2.3 - Systemberatung Schommer) ProductContext (Version: 50.0.165.000 - Hewlett-Packard) Hidden Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Skype™ 6.16 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.) SmartWebPrinting (Version: 130.0.457.000 - Hewlett-Packard) Hidden Software Updater (HKLM\...\{FA7EE274-7370-43B7-9A45-A39B17CCCDC5}) (Version: 4.3.3 - SEIKO EPSON CORPORATION) SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden Status (Version: 130.0.469.000 - Hewlett-Packard) Hidden Steam (HKLM\...\Steam) (Version: 2.10.91.91 - Valve Corporation) SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1168 - SUPERAntiSpyware.com) swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden TIPP10 Version 2.1.0 (HKLM\...\TIPP10_is1) (Version: - (c) 2006-2011, Tom Thielicke IT Solutions) TL-WN851ND Driver (HKLM\...\{4BAE4C76-44C3-418F-B715-6BBF5A65323E}) (Version: 1.00.0000 - TP-LINK) Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden TrayApp (Version: 130.0.422.000 - Hewlett-Packard) Hidden TreeSize Personal V6.1.1 (HKLM\...\TreeSize Personal_is1) (Version: 6.1.1 - JAM Software) TuneUp Utilities Language Pack (de-DE) (Version: 10.0.3000.99 - TuneUp Software) Hidden TuneUp Utilities Language Pack (de-DE) (Version: 9.0.5100.2 - TuneUp Software) Hidden Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_OMUI.de-de_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_OMUI.de-de_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_OMUI.de-de_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_OMUI.de-de_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) VideoSoft ActiveX Controls (HKLM\...\VideoSoft ActiveX Controls) (Version: - ) Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player 2.0.5 (HKLM\...\VLC media player) (Version: 2.0.5 - VideoLAN) WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden Windows 7 USB/DVD Download Tool (HKLM\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation) Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) WinRAR 5.01 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {060974C6-EB13-439D-B0A4-E1A5D3E04852} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation) Task: {28D2D37D-4310-475D-B318-49C33F2169C9} - \ProPCCleaner_Popup No Task File <==== ATTENTION Task: {297C0F65-1E10-49F0-9DC5-D11301A7F843} - \SMupdate1 No Task File <==== ATTENTION Task: {2D589190-9944-476E-A573-222791290DD5} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {3359158A-07D9-4850-95C6-0D9D97452A6D} - \GoogleUpdateTaskMachineCore No Task File <==== ATTENTION Task: {41C9A7D1-822F-4722-9213-78D4AB6B4C21} - \PCHelpers1st No Task File <==== ATTENTION Task: {459268AE-08D6-45FB-91CC-5E706DBF30D9} - System32\Tasks\Abelssoft\CheckDriveBackgroundGuard => C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe [2014-01-28] (Abelssoft) Task: {4D5E15B7-CCF8-4F94-9FE2-98CFF7A3D34C} - System32\Tasks\Microsoft\Windows\Multimedia\SMupdate3 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update3 <==== ATTENTION Task: {56DBA06F-5936-424B-B712-0FFC44314AD0} - \SUPERAntiSpyware Scheduled Task 3065c5e0-abed-44dd-b0b5-72815b0aa146 No Task File <==== ATTENTION Task: {5F1DBE2B-B0CF-4627-95DE-DE5185968F92} - \GoogleUpdateTaskMachineUA No Task File <==== ATTENTION Task: {61827672-FD8A-419B-8509-E1B3E4BE2E86} - \Adobe Flash Player Updater No Task File <==== ATTENTION Task: {668EDF93-5C13-42D2-A209-14C2A435D05D} - \ProPCCleaner_Start No Task File <==== ATTENTION Task: {7F66F5E4-A742-4D44-A1E6-8702EE739B5D} - System32\Tasks\Abelssoft\Updater scan => C:\Program Files\CHIP Updater\CHIPUpdater.exe Task: {81A76310-0754-42B7-89AC-993D9450C662} - \SUPERAntiSpyware Scheduled Task 06bbf209-d338-4d60-be59-4e63b86481f1 No Task File <==== ATTENTION Task: {84B9A19E-C07B-4C2F-B2C2-2DC5A5A722AD} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2013-11-18] () Task: {95D2F5DE-7EBF-4966-B590-390DCC9F9652} - \{4FC590E3-B3EA-44D9-A548-0576CF073E8B} No Task File <==== ATTENTION Task: {990DE140-CCEF-429D-8697-D5B3F80B76FF} - System32\Tasks\Microsoft\Windows\Maintenance\SMupdate2 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update2 <==== ATTENTION Task: {9A4C242F-092D-40E9-B426-17495392768E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {BC2154AC-4836-44A5-8FE5-BE39C0831DED} - \{7DE81AF0-5EBE-406B-94EA-BEB1B10BA181} No Task File <==== ATTENTION Task: {CD72CD6A-F320-4DC8-B8D7-56142B2FC220} - \OMESupervisor No Task File <==== ATTENTION Task: {D425DFCE-F4F9-4C60-AFD0-73F3C7D5AD27} - \RocketTab Update Task No Task File <==== ATTENTION Task: {D59C6E92-8185-4EC8-9CDB-0BD63EA6729A} - \RocketTab No Task File <==== ATTENTION Task: {F28A6735-8C38-406E-9E77-6E185897AB51} - \Fifth No Task File <==== ATTENTION Task: {FF042177-2ECB-464E-9EC1-4F2FB2EAB17B} - System32\Tasks\Games\UpdateCheck_S-1-5-21-2908931533-4132489533-110418967-1000 (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Loaded Modules (whitelisted) ============= 2014-03-05 16:39 - 2014-03-05 16:39 - 00075136 _____ () C:\Windows\system32\PnkBstrA.exe 2014-12-09 18:58 - 2014-01-28 17:33 - 00019744 _____ () C:\Program Files\CheckDrive\AbStartManager.dll 2014-12-09 18:58 - 2014-01-28 17:33 - 00014112 _____ () C:\Program Files\CheckDrive\AbMessages.dll 2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2014-07-02 12:53 - 2014-12-09 18:52 - 03758192 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51 AlternateDataStreams: C:\ProgramData\TEMP:373E1720 ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files\BlueStacks\HD-Agent.exe MSCONFIG\startupreg: EPLTarget => MSCONFIG\startupreg: SUPERAntiSpyware => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe MSCONFIG\startupreg: Uninstall C: => ========================= Accounts: ========================== Administrator (S-1-5-21-2908931533-4132489533-110418967-500 - Administrator - Disabled) Gast (S-1-5-21-2908931533-4132489533-110418967-501 - Limited - Disabled) ... (S-1-5-21-2908931533-4132489533-110418967-1000 - Administrator - Enabled) => C:\Users\.......-PC ==================== Faulty Device Manager Devices ============= Name: ntiomin Description: ntiomin Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: ntiomin Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: Description: Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. Name: SASDIFSV Description: SASDIFSV Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: SASDIFSV Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Officejet Pro 8500 A909g Description: Officejet Pro 8500 A909g Class Guid: Manufacturer: Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: SASKUTIL Description: SASKUTIL Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: SASKUTIL Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: SBMNTR Description: SBMNTR Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: sbmntr Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: SPDRIVER_1.38.0.1434 Description: SPDRIVER_1.38.0.1434 Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: SPDRIVER_1.38.0.1434 Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (01/18/2015 06:10:29 PM) (Source: VSS) (EventID: 12292) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] ist ein Fehler aufgetreten. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (01/18/2015 06:10:29 PM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (01/18/2015 05:36:28 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (01/18/2015 04:27:44 PM) (Source: Windows Backup) (EventID: 4104) (User: ) Description: Die Sicherung war nicht erfolgreich. Fehler: "Fehler beim Bestimmen des Bibliothekenspeicherorts eines der in die Scherung eingeschlossenen Benutzer durch die Windows-Sicherung. (0x81000031)" Error: (01/18/2015 04:27:44 PM) (Source: VSS) (EventID: 8193) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetProviderMgmtInterface" ist ein unerwarteter Fehler aufgetreten. hr = 0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten. . Error: (01/18/2015 04:27:43 PM) (Source: VSS) (EventID: 12292) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] ist ein Fehler aufgetreten. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Error: (01/18/2015 04:27:43 PM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Error: (01/18/2015 04:12:55 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 12292) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] ist ein Fehler aufgetreten. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 13) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator System errors: ============= Error: (01/18/2015 06:11:28 PM) (Source: Disk) (EventID: 11) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden. Error: (01/18/2015 05:55:08 PM) (Source: VDS Basic Provider) (EventID: 1) (User: ) Description: Unerwarteter Fehler. Fehlercode: D@01010004 Error: (01/18/2015 05:55:08 PM) (Source: VDS Basic Provider) (EventID: 1) (User: ) Description: Unerwarteter Fehler. Fehlercode: D@01010004 Error: (01/18/2015 05:31:57 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 18.01.2015 um 16:47:32 unerwartet heruntergefahren. Error: (01/18/2015 04:19:40 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (01/18/2015 04:19:36 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (01/18/2015 04:19:32 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (01/18/2015 04:19:28 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (01/18/2015 04:19:25 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Error: (01/18/2015 04:19:21 PM) (Source: atikmdag) (EventID: 19468) (User: ) Description: CPLIB :: General - Invalid Parameter Microsoft Office Sessions: ========================= Error: (01/18/2015 06:10:29 PM) (Source: VSS) (EventID: 12292) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (01/18/2015 06:10:29 PM) (Source: VSS) (EventID: 13) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (01/18/2015 05:36:28 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (01/18/2015 04:27:44 PM) (Source: Windows Backup) (EventID: 4104) (User: ) Description: Fehler beim Bestimmen des Bibliothekenspeicherorts eines der in die Scherung eingeschlossenen Benutzer durch die Windows-Sicherung. (0x81000031) Error: (01/18/2015 04:27:44 PM) (Source: VSS) (EventID: 8193) (User: ) Description: GetProviderMgmtInterface0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten. Error: (01/18/2015 04:27:43 PM) (Source: VSS) (EventID: 12292) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Error: (01/18/2015 04:27:43 PM) (Source: VSS) (EventID: 13) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Error: (01/18/2015 04:12:55 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 12292) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 13) (User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator ==================== Memory info =========================== Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 5000+ Percentage of memory in use: 57% Total physical RAM: 991.43 MB Available physical RAM: 419.44 MB Total Pagefile: 20991.43 MB Available Pagefile: 19862.29 MB Total Virtual: 2047.88 MB Available Virtual: 1917.81 MB ==================== Drives ================================ Drive c: (Windows7 Deutsch) (Fixed) (Total:247.49 GB) (Free:174.64 GB) NTFS ==>[Drive with boot components (obtained from BCD)] Drive d: (Volume) (Fixed) (Total:50.59 GB) (Free:39.45 GB) NTFS gruss |
18.01.2015, 21:29 | #13 |
/// the machine /// TB-Ausbilder | RUN.dll fehler Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
19.01.2015, 14:31 | #14 |
| RUN.dll fehler Hallo Revo uninstaller und adwcleaner sind bereits installiert ich poste bald allles rein gruss |
19.01.2015, 16:04 | #15 |
/// the machine /// TB-Ausbilder | RUN.dll fehler ok.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu RUN.dll fehler |
.dll, .dll fehler, bild, erschein, erscheint, fehler, hallo zusammen, hoffe, meldung, run.dll, starte, zusammen |