Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 13.02.2015, 17:35   #1
rubinio73
 
Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Böse

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



Hallo Leute
Jetzt lese ich hier schon eine ganze Zeit mit und bin jetzt selber von einem Problem betroffen.
Avira hat mir heute folgende Meldungen als Virus/Trojaner/Malware angezeigt:

TR/ATR/AtRAPS.GEN
TR/Dropper.Gen2
TR/Rogue.11279961
TR/Rogue.10094335
PUA/SoftPulse.aone

Ich habe auch bereits danach einen Suchlauf mit Malwarebytes gemacht, aber das Programm hat nichts gefunden.
Wer kann mir helfen, bzw. bei der Löschung/Entfernung behilflich sein?

Über jede Hilfe wäre ich sehr dankbar!

Alt 13.02.2015, 17:39   #2
schrauber
/// the machine
/// TB-Ausbilder
 

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________

__________________

Alt 13.02.2015, 17:56   #3
rubinio73
 
Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



Danke für die schnelle Hilfe!

Hier FRST.TXT Teil 1:

Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 12-02-2015
Ran by Rubinio (administrator) on RUBINIO-PC on 13-02-2015 17:46:17
Running from C:\Users\Rubinio\Downloads
Loaded Profiles: Rubinio (Available profiles: Rubinio)
Platform: Microsoft Windows 7 Enterprise  Service Pack 1 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Star Finanz-Software Entwicklung und Vertriebs GmbH) C:\Program Files\StarMoney 9.0\ouservice\StarMoneyOnlineUpdate.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Adobe Systems Inc.) C:\Program Files\Adobe\Acrobat 11.0\Acrobat\acrotray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(Dropbox, Inc.) C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\OUTLOOK.EXE
(Star Finanz-Software Entwicklung und Vertriebs GmbH) C:\Program Files\StarMoney 9.0\app\StarMoney.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\LogiAppBroker.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(AVG Technologies) C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe
(AVG Technologies) C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesApp32.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe
(Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbam.exe
(Apple Inc.) C:\Program Files\Safari\Safari.exe
(Apple Inc.) C:\Program Files\Safari\Apple Application Support\WebKit2WebProcess.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [] => [X]
HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [703280 2015-02-04] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [2303256 2014-05-19] (Logitech, Inc.)
HKLM\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X]
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2015-02-12] (Microsoft Corporation)
HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2015-02-12] (Microsoft Corporation)
HKU\S-1-5-21-830496087-3815240866-1769002787-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [23308256 2015-01-15] (Google)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2015-02-12] (Microsoft Corporation)
Startup: C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [GDriveBlacklistedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedEditOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedViewOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSyncedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSyncingOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
BootExecute: autocheck autochk /p \??\C:autocheck autochk * sdnclean.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-830496087-3815240866-1769002787-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
SearchScopes: HKU\S-1-5-21-830496087-3815240866-1769002787-1001 -> DefaultScope {CC7CE7C7-4C62-413D-9993-135384EFEDCE} URL = https://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-830496087-3815240866-1769002787-1001 -> {CC7CE7C7-4C62-413D-9993-135384EFEDCE} URL = https://www.google.com/search?q={searchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\Rubinio\AppData\Roaming\Mozilla\Firefox\Profiles\v5rhoxu3.default
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF user.js: detected! => C:\Users\Rubinio\AppData\Roaming\Mozilla\Firefox\Profiles\v5rhoxu3.default\user.js
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Extension: Avira Browser Safety - C:\Users\Rubinio\AppData\Roaming\Mozilla\Firefox\Profiles\v5rhoxu3.default\Extensions\abs@avira.com [2015-02-12]
FF HKLM\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2015-02-12]
FF HKLM\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2015-02-12]

Chrome: 
=======
CHR StartupUrls: Default -> "hxxp://www.google.de/"
CHR Profile: C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Präsentationen) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-12]
CHR Extension: (Google Docs) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-12]
CHR Extension: (Google Drive) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-12]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-02-12]
CHR Extension: (YouTube) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-12]
CHR Extension: (Google-Suche) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-12]
CHR Extension: (Logitech Smooth Scrolling) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk [2015-02-12]
CHR Extension: (Adobe Acrobat – PDF-Datei erstellen) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2015-02-12]
CHR Extension: (Google Tabellen) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-12]
CHR Extension: (Avira Browserschutz) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-02-13]
CHR Extension: (Google Wallet) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-12]
CHR Extension: (Google Mail) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-12]
CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2012-09-23]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path
CHR HKU\S-1-5-21-830496087-3815240866-1769002787-1001\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - No Path

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [432888 2015-02-04] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [432888 2015-02-04] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG)
R2 MBAMScheduler; C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 StarMoney 9.0 OnlineUpdate; C:\Program Files\StarMoney 9.0\ouservice\StarMoneyOnlineUpdate.exe [697488 2014-07-04] (Star Finanz-Software Entwicklung und Vertriebs GmbH)
R2 TuneUp.UtilitiesSvc; C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe [2161976 2015-02-12] (AVG Technologies)
S2 UxTuneUp; C:\Windows\System32\uxtuneup.dll [36664 2015-02-12] (AVG Technologies)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-02-04] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-02-04] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2015-02-04] (Avira Operations GmbH & Co. KG)
R3 LEqdUsb; C:\Windows\System32\Drivers\LEqdUsb.Sys [42264 2014-03-19] (Logitech, Inc.)
R3 LHidEqd; C:\Windows\System32\Drivers\LHidEqd.Sys [10136 2014-03-19] (Logitech, Inc.)
R3 LUsbFilt; C:\Windows\System32\Drivers\LUsbFilt.Sys [28312 2014-03-19] (Logitech, Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2014-11-21] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [114904 2015-02-13] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2014-11-21] (Malwarebytes Corporation)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2015-02-04] (Avira GmbH)
R3 TuneUpUtilitiesDrv; C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys [12320 2015-01-13] (TuneUp Software)
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-11-02 23:57 - 2015-11-02 23:57 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2015-11-02 23:56 - 2015-11-02 23:56 - 00000000 ____D () C:\Windows\CSC
2015-11-02 23:55 - 2015-11-02 23:55 - 00008192 __RSH () C:\BOOTSECT.BAK
2015-11-02 23:55 - 2010-11-20 13:40 - 00383786 __RSH () C:\bootmgr
2015-02-13 17:46 - 2015-02-13 17:46 - 00018759 _____ () C:\Users\Rubinio\Downloads\FRST.txt
2015-02-13 17:46 - 2015-02-13 17:46 - 00000000 ____D () C:\FRST
2015-02-13 17:45 - 2015-02-13 17:45 - 01125376 _____ (Farbar) C:\Users\Rubinio\Downloads\FRST.exe
2015-02-13 17:15 - 2015-02-13 17:15 - 00009353 _____ () C:\Users\Rubinio\Downloads\hijackthis.log
2015-02-13 16:44 - 2015-02-13 16:47 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-02-13 16:43 - 2015-02-13 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-02-13 16:43 - 2015-02-13 16:43 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-13 16:43 - 2015-02-13 16:43 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 
2015-02-13 16:43 - 2014-11-21 06:14 - 00075480 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-02-13 16:43 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-02-13 16:43 - 2014-11-21 06:14 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-02-13 15:20 - 2015-02-13 16:19 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2015-02-13 15:20 - 2015-02-13 15:30 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2015-02-13 15:20 - 2015-02-13 15:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2015-02-13 15:20 - 2015-02-13 15:20 - 00002131 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2015-02-13 15:20 - 2015-02-13 15:20 - 00002119 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2015-02-13 15:20 - 2013-09-20 10:49 - 00018968 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean.exe
2015-02-13 15:01 - 2015-02-12 17:39 - 00036664 _____ (AVG Technologies) C:\Windows\system32\uxtuneup.dll
2015-02-13 14:56 - 2015-02-13 14:56 - 00002159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2015.lnk
2015-02-13 14:56 - 2015-02-13 14:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2015
2015-02-13 14:56 - 2015-02-12 17:39 - 00037176 _____ (AVG Technologies) C:\Windows\system32\TURegOpt.exe
2015-02-13 14:56 - 2015-02-12 17:39 - 00025912 _____ (AVG Technologies) C:\Windows\system32\authuitu.dll
2015-02-13 14:55 - 2015-02-13 14:55 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\AVG
2015-02-13 14:55 - 2015-02-13 14:55 - 00000000 ____D () C:\Program Files\AVG
2015-02-13 14:52 - 2015-02-13 17:43 - 524288000 _____ () C:\Users\Rubinio\Downloads\00979.part1.rar
2015-02-13 14:46 - 2015-02-13 14:52 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Usenet.nl
2015-02-13 14:46 - 2015-02-13 14:46 - 00001835 _____ () C:\Users\Rubinio\Desktop\Usenet.nl.lnk
2015-02-13 14:46 - 2015-02-13 14:46 - 00000000 ____D () C:\Users\Rubinio\Documents\Usenet.nl
2015-02-13 14:46 - 2015-02-13 14:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Usenet.nl
2015-02-13 14:46 - 2015-02-13 14:46 - 00000000 ____D () C:\Program Files\Usenet.nl
2015-02-13 14:45 - 2015-02-13 14:46 - 07457256 _____ ( ) C:\Users\Rubinio\Downloads\UsenetNLSetup_1.30.exe
2015-02-13 14:30 - 2015-02-13 14:45 - 00000000 ____D () C:\Users\Rubinio\Documents\UseNeXT
2015-02-13 14:30 - 2015-02-13 14:45 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\UseNeXT
2015-02-13 14:30 - 2015-02-13 14:30 - 00001803 _____ () C:\Users\Rubinio\Desktop\UseNeXT by Tangysoft.lnk
2015-02-13 14:30 - 2015-02-13 14:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UseNeXT
2015-02-13 14:30 - 2015-02-13 14:30 - 00000000 ____D () C:\Program Files\UseNeXT
2015-02-13 14:24 - 2015-02-13 14:24 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Avg
2015-02-13 11:23 - 2015-02-13 11:24 - 00388608 _____ (Trend Micro Inc.) C:\Users\Rubinio\Downloads\HiJackThis204.exe
2015-02-13 11:11 - 2015-02-13 11:12 - 05343592 _____ (Tangysoft Ltd. ) C:\Users\Rubinio\Downloads\UseNeXT_freetrial_436770w.exe
2015-02-13 11:04 - 2015-02-13 11:08 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Rubinio\Downloads\mbam-setup-2.0.4.1028.exe
2015-02-13 11:03 - 2015-02-13 11:08 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Rubinio\Downloads\spybot-2.4.exe
2015-02-13 10:58 - 2015-02-13 15:03 - 00000000 ____D () C:\ProgramData\AVG
2015-02-12 19:36 - 2015-02-13 14:21 - 00000000 ____D () C:\Program Files\KMSpico
2015-02-12 19:25 - 2015-02-12 19:26 - 00454147 _____ () C:\Users\Rubinio\Downloads\Setup_ClearProg_1.6.0_Final_neu.exe
2015-02-12 19:24 - 2015-02-12 19:32 - 49950520 _____ (AVG Technologies) C:\Users\Rubinio\Downloads\avg_tuht_stf_de_2015_373_15cmp16.exe
2015-02-12 19:09 - 2015-02-12 19:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-02-12 19:05 - 2015-02-12 19:05 - 00880208 _____ (Google Inc.) C:\Users\Rubinio\Downloads\googledrivesync.exe
2015-02-12 19:03 - 2015-02-12 19:03 - 00000000 ____D () C:\Users\Public\Documents\Logishrd
2015-02-12 19:02 - 2015-02-12 19:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2015-02-12 19:02 - 2015-02-12 19:03 - 00010862 _____ () C:\Windows\LDPINST.LOG
2015-02-12 19:02 - 2015-02-12 19:03 - 00001276 _____ () C:\Windows\LkmdfCoInst.log
2015-02-12 19:02 - 2015-02-12 19:03 - 00000000 ____D () C:\ProgramData\Logishrd
2015-02-12 19:02 - 2015-02-12 19:02 - 00016400 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys
2015-02-12 19:01 - 2015-02-12 19:03 - 00000000 ____D () C:\Program Files\Common Files\Logishrd
2015-02-12 19:01 - 2015-02-12 19:01 - 00000000 ____D () C:\Program Files\Logitech
2015-02-12 18:54 - 2015-02-12 19:04 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Logishrd
2015-02-12 18:54 - 2015-02-12 19:03 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Logitech
2015-02-12 18:52 - 2015-02-12 18:53 - 04147600 _____ ($Co_Name Inc.) C:\Users\Rubinio\Downloads\unifying250.exe
2015-02-12 18:52 - 2015-02-12 18:53 - 04109832 _____ (Logitech Inc.) C:\Users\Rubinio\Downloads\scroll_app_smart_4.00.33.exe
2015-02-12 18:52 - 2015-02-12 18:53 - 03677488 _____ (Logitech Inc.) C:\Users\Rubinio\Downloads\SetPoint6.65.62_smart.exe
2015-02-12 18:52 - 2015-02-12 18:52 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-02-12 18:49 - 2015-02-12 18:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2015-02-12 18:45 - 2015-02-13 10:54 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Dropbox
2015-02-12 18:45 - 2015-02-12 18:45 - 00355464 _____ (Dropbox, Inc.) C:\Users\Rubinio\Downloads\DropboxInstaller.exe
2015-02-12 18:44 - 2015-02-12 18:44 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Avira
2015-02-12 18:43 - 2015-02-12 18:39 - 00037896 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2015-02-12 18:39 - 2015-02-12 18:46 - 71647536 _____ (Apple Inc.) C:\Users\Rubinio\Downloads\icloudsetup.exe
2015-02-12 18:37 - 2015-02-04 17:51 - 00136216 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-02-12 18:37 - 2015-02-04 17:51 - 00105864 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-02-12 18:37 - 2015-02-04 17:51 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2015-02-12 18:37 - 2015-02-04 17:51 - 00028520 _____ (Avira GmbH) C:\Windows\system32\Drivers\ssmdrv.sys
2015-02-12 18:26 - 2015-02-12 18:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-02-12 18:26 - 2015-02-12 18:37 - 00000000 ____D () C:\ProgramData\Avira
2015-02-12 18:26 - 2015-02-12 18:37 - 00000000 ____D () C:\Program Files\Avira
2015-02-12 18:25 - 2015-02-12 18:25 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-12 18:24 - 2015-02-13 16:49 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Apple Computer
2015-02-12 18:24 - 2015-02-13 16:49 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Apple Computer
2015-02-12 18:24 - 2015-02-12 18:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-02-12 18:23 - 2012-10-03 16:14 - 00026840 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2015-02-12 18:22 - 2015-02-12 18:23 - 00000000 ____D () C:\ProgramData\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
2015-02-12 18:22 - 2015-02-12 18:23 - 00000000 ____D () C:\Program Files\iTunes
2015-02-12 18:22 - 2015-02-12 18:22 - 00000000 ____D () C:\Program Files\iPod
2015-02-12 18:21 - 2015-02-12 18:48 - 00000000 ____D () C:\Program Files\Common Files\Apple
2015-02-12 18:21 - 2015-02-12 18:21 - 00000000 ____D () C:\Program Files\Bonjour
2015-02-12 18:11 - 2015-02-12 18:19 - 108785968 _____ (Apple Inc.) C:\Users\Rubinio\Downloads\itunessetup.exe
2015-02-12 18:10 - 2015-02-12 18:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-02-12 18:10 - 2015-02-12 18:10 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-02-12 18:09 - 2015-02-12 18:09 - 00000000 ____D () C:\Windows\PCHEALTH
2015-02-12 18:09 - 2015-02-12 18:09 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2015-02-12 18:06 - 2015-02-12 18:06 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-02-12 18:04 - 2015-02-12 18:05 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\Rubinio\Downloads\avira_de_av_5846847356__ws.exe
2015-02-12 18:03 - 2015-02-12 18:03 - 00000000 __RHD () C:\MSOCache
2015-02-12 17:07 - 2015-02-12 17:07 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Macromedia
2015-02-12 17:07 - 2015-02-12 17:07 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\com.adobe.formscentral.FormsCentralForAcrobat
2015-02-12 16:53 - 2015-02-12 16:53 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-02-12 16:01 - 2015-02-12 18:37 - 00093696 ___SH () C:\Users\Rubinio\Thumbs.db
2015-02-12 15:51 - 2015-02-12 17:10 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Adobe
2015-02-12 15:51 - 2015-02-12 15:51 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2015-02-12 15:50 - 2015-02-12 15:50 - 00002453 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat XI Pro.lnk
2015-02-12 15:50 - 2015-02-12 15:50 - 00002180 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe FormsCentral.lnk
2015-02-12 15:50 - 2015-02-12 15:50 - 00002019 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller XI.lnk
2015-02-12 15:49 - 2015-02-12 15:49 - 00000000 ____D () C:\Users\Rubinio\Tracing
2015-02-12 15:49 - 2008-07-08 23:26 - 03633413 _____ () C:\Users\Rubinio\Opa.3gp
2015-02-12 15:41 - 2015-02-12 17:09 - 00000000 ____D () C:\ProgramData\Adobe
2015-02-12 15:41 - 2015-02-12 16:53 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2015-02-12 15:41 - 2015-02-12 16:53 - 00000000 ____D () C:\Program Files\Adobe
2015-02-12 15:38 - 2015-02-13 10:53 - 00000000 ___RD () C:\Users\Rubinio\Google Drive
2015-02-12 15:38 - 2015-02-12 18:00 - 00000000 ____D () C:\Users\Rubinio\Starmoney
2015-02-12 15:38 - 2015-02-12 15:38 - 00000000 ___RD () C:\Users\Rubinio\iCloudDrive
2015-02-12 15:38 - 2015-02-12 15:38 - 00000000 ____D () C:\Users\Rubinio\Postbank
2015-02-12 15:38 - 2015-02-12 15:38 - 00000000 ____D () C:\Users\Rubinio\Meine Musik
2015-02-12 15:38 - 2015-02-12 15:38 - 00000000 ____D () C:\Users\Rubinio\M&S
2015-02-12 15:38 - 2012-02-27 15:31 - 00000000 ____D () C:\Users\Rubinio\restore
2015-02-12 15:34 - 2015-02-12 15:38 - 00000000 ____D () C:\Users\Rubinio\Ebay
2015-02-12 15:33 - 2015-02-13 10:54 - 00000000 ___RD () C:\Users\Rubinio\Dropbox
2015-02-12 15:30 - 2015-02-12 15:33 - 00000000 ____D () C:\Users\Rubinio\Desktop\Stefanie
2015-02-12 15:29 - 2015-02-12 15:29 - 00000000 ____D () C:\Users\Rubinio\Desktop\Neuer Ordner
2015-02-12 15:29 - 2015-02-12 15:29 - 00000000 ____D () C:\Users\Rubinio\Desktop\Mediapanel
2015-02-12 15:28 - 2015-02-12 15:29 - 00000000 ____D () C:\Users\Rubinio\Desktop\kalender2012
2015-02-12 15:28 - 2015-02-12 15:28 - 00000000 ____D () C:\Users\Rubinio\ChromeExtensions
2015-02-12 15:28 - 2015-02-12 15:28 - 00000000 ____D () C:\Users\Rubinio\Audible
2015-02-12 15:28 - 2015-02-12 15:28 - 00000000 ____D () C:\Users\Rubinio\AA
2015-02-12 15:25 - 2015-02-12 15:25 - 00000000 ____D () C:\ProgramData\StarMoney 9.0
2015-02-12 15:25 - 2015-02-12 15:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarMoney 9.0
2015-02-12 15:24 - 2015-02-12 15:24 - 00000000 ____D () C:\Program Files\Common Files\StarFinanz
2015-02-12 15:23 - 2015-02-12 16:12 - 00000000 ____D () C:\Program Files\StarMoney 9.0
2015-02-12 15:23 - 2015-02-12 15:23 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-02-12 15:13 - 2015-02-12 18:22 - 00000000 ____D () C:\ProgramData\Apple Computer
2015-02-12 15:13 - 2015-02-12 18:21 - 00000000 ____D () C:\ProgramData\Apple
2015-02-12 15:13 - 2015-02-12 15:13 - 00002519 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2015-02-12 15:13 - 2015-02-12 15:13 - 00002491 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk
2015-02-12 15:13 - 2015-02-12 15:13 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Apple
2015-02-12 15:13 - 2015-02-12 15:13 - 00000000 ____D () C:\Program Files\Safari
2015-02-12 15:13 - 2015-02-12 15:13 - 00000000 ____D () C:\Program Files\Apple Software Update
2015-02-12 15:12 - 2015-02-12 15:12 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Mozilla
2015-02-12 15:12 - 2015-02-12 15:12 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Mozilla
2015-02-12 15:11 - 2015-02-12 15:26 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-02-12 15:11 - 2015-02-12 15:11 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-02-12 15:11 - 2015-02-12 15:11 - 00000000 ____D () C:\ProgramData\Mozilla
2015-02-12 15:11 - 2015-02-12 15:11 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-02-12 13:51 - 2015-02-12 18:12 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-02-12 13:51 - 2015-02-12 18:09 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-02-12 13:51 - 2015-02-12 13:51 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Microsoft Help
2015-02-12 13:50 - 2015-02-12 14:07 - 188090912 _____ () C:\Users\Rubinio\Downloads\smoney.exe
2015-02-12 13:46 - 2015-02-12 13:46 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\WinRAR
2015-02-12 13:46 - 2015-02-12 13:46 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-02-12 13:46 - 2015-02-12 13:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-02-12 13:46 - 2015-02-12 13:46 - 00000000 ____D () C:\Program Files\WinRAR
2015-02-12 10:50 - 2015-02-12 10:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-02-12 10:47 - 2015-02-13 16:52 - 00001100 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-12 10:47 - 2015-02-13 10:52 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-12 10:47 - 2015-02-12 19:09 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Google
2015-02-12 10:47 - 2015-02-12 19:09 - 00000000 ____D () C:\Program Files\Google
2015-02-12 10:46 - 2015-02-12 10:47 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Deployment
2015-02-12 10:46 - 2015-02-12 10:46 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Apps\2.0
2015-02-12 10:40 - 2014-12-11 18:47 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-02-12 10:33 - 2015-02-12 10:36 - 00000000 ____D () C:\Windows\AutoKMS
2015-02-12 10:32 - 2015-02-12 18:26 - 00112304 _____ () C:\Users\Rubinio\AppData\Local\GDIPFONTCACHEV1.DAT
2015-02-12 10:32 - 2015-02-12 10:32 - 00000000 ____D () C:\ProgramData\Microsoft Toolkit
2015-02-12 10:31 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-02-12 10:31 - 2014-08-29 02:44 - 02744320 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-02-12 10:21 - 2014-05-08 10:06 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-02-12 10:11 - 2015-02-12 10:11 - 00000000 __SHD () C:\Users\Rubinio\AppData\Local\EmieUserList
2015-02-12 10:11 - 2015-02-12 10:11 - 00000000 __SHD () C:\Users\Rubinio\AppData\Local\EmieSiteList
2015-02-12 10:11 - 2015-02-12 10:11 - 00000000 __SHD () C:\Users\Rubinio\AppData\Local\EmieBrowserModeList
2015-02-12 10:11 - 2012-08-23 15:48 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-02-12 10:11 - 2012-08-23 15:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-02-12 10:11 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2015-02-12 10:10 - 2013-10-02 01:42 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2015-02-12 10:10 - 2013-10-02 01:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2015-02-12 10:10 - 2013-10-02 01:30 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2015-02-12 10:10 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2015-02-12 10:10 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2015-02-12 10:10 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-02-12 10:10 - 2013-10-02 00:45 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2015-02-12 10:10 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-02-12 10:10 - 2013-10-01 23:53 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2015-02-12 10:10 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2015-02-12 10:09 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-02-12 10:09 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-12 10:09 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-02-12 10:09 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-02-12 10:09 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-02-12 10:09 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-02-12 10:09 - 2014-07-09 02:29 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-02-12 10:09 - 2014-07-08 23:30 - 00419992 _____ () C:\Windows\system32\locale.nls
2015-02-12 10:09 - 2011-03-11 06:39 - 00143744 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2015-02-12 10:09 - 2011-03-11 06:39 - 00117120 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2015-02-12 10:09 - 2011-03-11 06:38 - 00332160 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2015-02-12 10:09 - 2011-03-11 06:38 - 00080256 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2015-02-12 10:09 - 2011-03-11 06:38 - 00022400 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2015-02-12 10:09 - 2011-03-11 06:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2015-02-12 10:09 - 2011-03-11 06:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2015-02-12 10:09 - 2011-03-11 05:01 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2015-02-12 09:50 - 2014-10-18 02:33 - 03209728 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-02-12 09:50 - 2014-07-07 02:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-02-12 09:50 - 2014-07-07 02:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-02-12 09:50 - 2014-07-07 02:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-02-12 09:50 - 2014-07-07 02:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-02-12 09:45 - 2014-06-27 02:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-02-12 09:40 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-02-12 09:40 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-12 09:40 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-02-12 09:40 - 2015-01-12 03:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-02-12 09:40 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-12 09:40 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-02-12 09:40 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-02-12 09:40 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-02-12 09:40 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-12 09:40 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-02-12 09:40 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-02-12 09:40 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-02-12 09:40 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-02-12 09:40 - 2015-01-12 02:55 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-02-12 09:40 - 2015-01-12 02:48 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-12 09:40 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-12 09:40 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-12 09:40 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-02-12 09:40 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-02-12 09:40 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-02-12 09:40 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-12 09:40 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-12 09:40 - 2015-01-12 02:23 - 00684544 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-02-12 09:40 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-02-12 09:40 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-12 09:40 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-12 09:40 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-12 09:40 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-02-12 09:38 - 2013-04-10 00:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-02-12 09:37 - 2014-06-24 03:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-02-12 09:37 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-02-12 09:37 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-02-12 09:37 - 2012-02-11 06:37 - 00317440 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-02-12 09:37 - 2011-02-25 06:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-02-12 09:36 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-02-12 09:07 - 2015-02-12 17:14 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Adobe
2015-02-12 08:52 - 2015-02-13 10:36 - 00158086 _____ () C:\Windows\PFRO.log
2015-02-12 02:14 - 2012-07-26 04:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2015-02-12 02:14 - 2012-07-26 04:20 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2015-02-12 02:14 - 2012-07-26 04:20 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2015-02-12 02:14 - 2012-07-26 04:20 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2015-02-12 02:14 - 2012-07-26 04:20 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2015-02-12 02:14 - 2012-07-26 03:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2015-02-12 02:14 - 2012-07-26 03:32 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2015-02-12 02:14 - 2012-06-02 15:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2015-02-12 02:13 - 2014-06-30 23:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2015-02-12 02:13 - 2014-06-06 07:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-02-12 02:13 - 2014-03-09 22:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2015-02-12 02:13 - 2014-03-09 22:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2015-02-12 02:12 - 2012-03-01 06:46 - 00019824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2015-02-12 02:12 - 2012-03-01 06:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2015-02-12 02:00 - 2015-02-12 18:09 - 00000000 ____D () C:\Program Files\Microsoft.NET
2015-02-12 01:55 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-02-12 01:55 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 01289096 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00640512 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00619520 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2015-02-12 01:46 - 2015-02-12 01:46 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-02-12 01:46 - 2015-02-12 01:46 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-02-12 01:46 - 2015-02-12 01:46 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-02-12 01:46 - 2015-02-12 01:46 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2015-02-12 01:46 - 2015-02-12 01:46 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2015-02-12 01:46 - 2015-02-12 01:46 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-02-12 01:46 - 2015-02-12 01:46 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-02-12 01:46 - 2015-02-12 01:46 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-02-12 01:46 - 2015-02-12 01:46 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-02-12 01:45 - 2015-02-12 01:45 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2015-02-12 01:44 - 2015-02-12 01:44 - 01158144 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 01080832 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00906240 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00604160 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-02-12 01:43 - 2015-02-12 01:43 - 01505280 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-02-12 01:42 - 2015-02-12 01:50 - 00016567 _____ () C:\Windows\IE11_main.log
2015-02-12 01:38 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2015-02-12 01:38 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2015-02-12 01:38 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2015-02-12 01:38 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2015-02-12 01:38 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-02-12 01:38 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2015-02-12 01:38 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2015-02-12 01:38 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2015-02-12 01:38 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2015-02-12 01:37 - 2014-12-19 02:34 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-02-12 01:37 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-02-12 01:37 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-02-12 01:37 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2015-02-12 01:37 - 2014-07-17 02:39 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-02-12 01:37 - 2014-07-17 02:39 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2015-02-12 01:37 - 2014-07-17 02:03 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2015-02-12 01:37 - 2014-07-17 02:02 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-02-12 01:37 - 2014-06-03 10:30 - 00101824 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-02-12 01:37 - 2014-06-03 10:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-02-12 01:37 - 2014-06-03 10:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-02-12 01:37 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-02-12 01:37 - 2013-08-28 01:57 - 00434688 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2015-02-12 01:37 - 2013-06-25 23:56 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2015-02-12 01:37 - 2013-05-13 04:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2015-02-12 01:37 - 2013-05-13 04:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2015-02-12 01:37 - 2012-11-28 23:57 - 00047720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2015-02-12 01:37 - 2012-11-28 23:57 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2015-02-12 01:37 - 2012-11-28 23:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2015-02-12 01:37 - 2012-04-26 05:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2015-02-12 01:37 - 2012-04-26 05:41 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2015-02-12 01:37 - 2012-01-04 09:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2015-02-12 01:37 - 2011-12-30 06:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2015-02-12 01:37 - 2011-11-17 06:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2015-02-12 01:36 - 2014-12-06 04:50 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-02-12 01:36 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2015-02-12 01:36 - 2014-01-28 03:07 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-02-12 01:36 - 2013-08-02 02:50 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 01:52 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-02-12 01:36 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-02-12 01:36 - 2013-05-10 04:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2015-02-12 01:36 - 2013-03-19 04:33 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2015-02-12 01:36 - 2012-11-02 06:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2015-02-12 01:36 - 2012-10-03 17:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-02-12 01:36 - 2012-10-03 17:42 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-02-12 01:36 - 2012-09-25 23:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2015-02-12 01:36 - 2012-03-17 08:27 - 00056176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2015-02-12 01:36 - 2011-05-04 05:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2015-02-12 01:36 - 2011-05-04 05:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2015-02-12 01:36 - 2011-05-04 05:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2015-02-12 01:36 - 2011-05-04 05:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2015-02-12 01:36 - 2011-05-04 05:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2015-02-12 01:36 - 2011-05-04 05:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2015-02-12 01:36 - 2011-05-04 05:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2015-02-12 01:36 - 2011-05-04 05:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2015-02-12 01:36 - 2011-05-04 05:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2015-02-12 01:35 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-02-12 01:35 - 2014-08-23 02:46 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-02-12 01:35 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2015-02-12 01:35 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2015-02-12 01:35 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2015-02-12 01:35 - 2014-03-26 15:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-02-12 01:35 - 2014-03-26 15:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-02-12 01:35 - 2012-07-04 22:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2015-02-12 01:35 - 2012-07-04 22:14 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2015-02-12 01:35 - 2012-07-04 22:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2015-02-12 01:34 - 2014-12-12 06:07 - 01174528 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-02-12 01:34 - 2014-07-07 02:40 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-02-12 01:34 - 2014-07-07 02:40 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-02-12 01:34 - 2014-06-25 02:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-02-12 01:34 - 2014-06-18 02:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-02-12 01:34 - 2013-07-09 05:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-02-12 01:34 - 2012-02-17 06:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2015-02-12 01:34 - 2012-02-17 05:13 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2015-02-12 01:34 - 2011-04-29 03:46 - 00311808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2015-02-12 01:34 - 2011-04-29 03:46 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2015-02-12 01:34 - 2011-04-29 03:46 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2015-02-12 01:34 - 2010-12-23 06:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2015-02-12 01:34 - 2010-12-23 06:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2015-02-12 01:34 - 2010-12-23 06:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2015-02-12 01:33 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-02-12 01:33 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-12 01:33 - 2015-01-09 03:48 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-02-12 01:33 - 2015-01-09 03:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2015-02-12 01:33 - 2015-01-09 03:48 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2015-02-12 01:33 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2015-02-12 01:33 - 2014-02-04 03:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-02-12 01:33 - 2014-02-04 03:07 - 00149440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-02-12 01:33 - 2014-02-04 03:07 - 00027072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2015-02-12 01:33 - 2014-02-04 03:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2015-02-12 01:33 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-02-12 01:33 - 2013-10-12 03:01 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-02-12 01:33 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-02-12 01:33 - 2012-12-07 13:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-02-12 01:33 - 2012-12-07 13:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2015-02-12 01:33 - 2012-12-07 11:46 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2015-02-12 01:33 - 2012-10-03 17:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2015-02-12 01:33 - 2012-10-03 17:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2015-02-12 01:33 - 2012-10-03 17:40 - 00499712 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-02-12 01:33 - 2012-10-03 16:21 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-02-12 01:33 - 2012-08-21 21:12 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2015-02-12 01:33 - 2011-07-09 03:30 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-02-12 01:33 - 2011-04-27 03:17 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-02-12 01:33 - 2011-04-27 03:17 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-02-12 01:32 - 2015-01-15 08:46 - 00136640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-02-12 01:32 - 2015-01-15 08:46 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-02-12 01:32 - 2015-01-15 08:43 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-02-12 01:32 - 2015-01-15 08:43 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-02-12 01:32 - 2015-01-15 08:42 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-12 01:32 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-02-12 01:32 - 2015-01-15 08:42 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-02-12 01:32 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-02-12 01:32 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-02-12 01:32 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-02-12 01:32 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-12 01:32 - 2015-01-15 05:21 - 00369968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-12 01:32 - 2014-12-19 03:43 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-02-12 01:32 - 2014-10-14 02:50 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-02-12 01:32 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-02-12 01:32 - 2014-08-01 12:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2015-02-12 01:32 - 2014-04-25 03:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-02-12 01:32 - 2014-04-05 03:25 - 01294272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-02-12 01:32 - 2014-04-05 03:24 - 00187840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-02-12 01:32 - 2013-11-26 12:11 - 00240576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-02-12 01:32 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2015-02-12 01:32 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2015-02-12 01:32 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2015-02-12 01:32 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2015-02-12 01:32 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2015-02-12 01:32 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2015-02-12 01:32 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2015-02-12 01:32 - 2013-08-05 02:56 - 00133056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2015-02-12 01:32 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2015-02-12 01:32 - 2013-07-12 11:07 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2015-02-12 01:32 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-02-12 01:32 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-02-12 01:32 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-02-12 01:32 - 2013-06-06 05:52 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-02-12 01:32 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-02-12 01:32 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-02-12 01:32 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-02-12 01:32 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-02-12 01:32 - 2013-02-12 04:32 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-02-12 01:32 - 2013-01-24 05:47 - 00196328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2015-02-12 01:32 - 2012-10-09 18:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-02-12 01:32 - 2012-10-09 18:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-02-12 01:32 - 2012-08-22 18:16 - 00712048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-02-12 01:32 - 2012-07-04 20:45 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2015-02-12 01:32 - 2012-06-06 06:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2015-02-12 01:32 - 2012-05-14 05:33 - 00769024 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-02-12 01:32 - 2011-12-16 08:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2015-02-12 01:32 - 2011-08-27 05:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2015-02-12 01:32 - 2011-08-17 05:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2015-02-12 01:32 - 2011-08-17 05:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2015-02-12 01:32 - 2011-06-15 09:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\system32\odbcjt32.dll
2015-02-12 01:32 - 2011-06-15 09:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2015-02-12 01:32 - 2011-06-15 09:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2015-02-12 01:32 - 2011-06-15 09:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2015-02-12 01:32 - 2011-06-15 09:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2015-02-12 01:32 - 2011-03-03 06:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2015-02-12 01:32 - 2011-03-03 06:38 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2015-02-12 01:32 - 2011-03-03 06:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2015-02-12 01:32 - 2011-02-23 05:47 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2015-02-12 01:32 - 2011-02-12 06:35 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2015-02-12 01:31 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2015-02-12 01:31 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-02-12 01:31 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-02-12 01:31 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-02-12 01:31 - 2014-05-30 07:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-02-12 01:29 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-12 01:29 - 2014-11-11 02:32 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-02-12 01:29 - 2013-11-27 02:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-02-12 01:29 - 2013-11-27 02:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-02-12 01:29 - 2013-11-27 02:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-02-12 01:29 - 2013-11-27 02:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-02-12 01:29 - 2013-11-27 02:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2015-02-12 01:29 - 2013-11-27 02:13 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2015-02-12 01:29 - 2013-11-27 02:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-02-12 01:29 - 2013-07-25 09:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-02-12 01:29 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-02-12 01:29 - 2011-10-15 06:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2015-02-12 01:29 - 2011-05-03 05:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-02-12 01:29 - 2011-02-18 06:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2015-02-12 01:27 - 2015-01-09 02:45 - 02380288 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-12 01:27 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-12 01:27 - 2014-10-03 02:44 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-02-12 01:27 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-02-12 01:27 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-02-12 01:27 - 2014-10-03 02:44 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-02-12 01:27 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-02-12 01:27 - 2014-07-14 02:42 - 00654336 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-02-12 01:27 - 2014-06-16 02:44 - 00730048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-02-12 01:27 - 2014-06-16 02:44 - 00219072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-02-12 01:27 - 2014-06-16 02:40 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-02-12 01:27 - 2014-06-06 10:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-02-12 01:27 - 2014-01-24 03:18 - 01212352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-02-12 01:27 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2015-02-12 01:27 - 2013-07-03 04:36 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-02-12 01:27 - 2013-07-03 04:36 - 00025728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2015-02-12 01:27 - 2013-04-26 05:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-02-12 01:27 - 2012-05-05 08:46 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-02-12 01:27 - 2011-10-26 05:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-02-12 01:27 - 2011-06-16 05:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2015-02-12 01:27 - 2011-03-11 06:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2015-02-12 01:27 - 2011-03-11 06:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2015-02-12 01:18 - 2013-10-04 02:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2015-02-12 01:18 - 2013-10-04 02:17 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2015-02-12 01:15 - 2013-02-27 05:49 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-02-12 01:15 - 2011-05-24 11:44 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2015-02-12 01:14 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-02-12 01:14 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2015-02-12 01:14 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-02-12 01:14 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2015-02-12 01:14 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2015-02-12 01:04 - 2014-05-14 17:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-02-12 01:04 - 2014-05-14 17:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-02-12 01:04 - 2014-05-14 17:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-02-12 01:04 - 2014-05-14 17:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-02-12 01:04 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-02-12 01:04 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-02-12 00:51 - 2015-02-12 00:51 - 00000000 ____D () C:\Windows\system32\SPReview
2015-02-12 00:51 - 2015-02-12 00:51 - 00000000 ____D () C:\Windows\system32\EventProviders
2015-02-12 00:50 - 2010-11-20 13:32 - 05066752 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll
2015-02-12 00:50 - 2010-11-20 13:29 - 00520064 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2015-02-12 00:50 - 2010-11-20 13:29 - 00014208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys
2015-02-12 00:50 - 2010-11-20 13:21 - 01159168 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-02-12 00:50 - 2010-11-20 13:21 - 01115136 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll
2015-02-12 00:50 - 2010-11-20 13:21 - 00750592 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-02-12 00:50 - 2010-11-20 13:21 - 00253952 _____ (Microsoft Corporation) C:\Windows\system32\spwizui.dll
2015-02-12 00:50 - 2010-11-20 13:21 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\tssrvlic.dll
2015-02-12 00:50 - 2010-11-20 13:19 - 00954752 _____ (Microsoft Corporation) C:\Windows\system32\mfc40.dll
2015-02-12 00:50 - 2010-11-20 13:19 - 00954288 _____ (Microsoft Corporation) C:\Windows\system32\mfc40u.dll
2015-02-12 00:50 - 2010-11-20 13:19 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\LSCSHostPolicy.dll
2015-02-12 00:50 - 2010-11-20 13:18 - 01334272 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2015-02-12 00:50 - 2010-11-20 13:17 - 00080896 _____ () C:\Windows\system32\RDVGHelper.exe
2015-02-12 00:50 - 2010-11-05 02:58 - 00297808 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2015-02-12 00:50 - 2010-11-05 02:53 - 00295264 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2015-02-12 00:50 - 2010-11-05 02:53 - 00099176 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2015-02-12 00:49 - 2010-11-20 13:36 - 01077248 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe
2015-02-12 00:49 - 2010-11-20 13:36 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\NAPHLPR.DLL
2015-02-12 00:49 - 2010-11-20 13:36 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\NAPCRYPT.DLL
         
__________________

Alt 13.02.2015, 17:57   #4
rubinio73
 
Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



FRST.TXT Teil 2:

Code:
ATTFilter
2015-02-12 00:49 - 2010-11-20 13:30 - 00245632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00175360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00173440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00160128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00153984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00140160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00130432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpio.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00116096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msdsm.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00085376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sbp2port.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00078208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00053120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00053120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00040704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00028032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsc.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00028032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msahci.sys
2015-02-12 00:49 - 2010-11-20 13:29 - 02217856 _____ (Microsoft Corporation) C:\Windows\system32\bootres.dll
2015-02-12 00:49 - 2010-11-20 13:29 - 00274304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2015-02-12 00:49 - 2010-11-20 13:29 - 00194432 _____ (Microsoft Corporation) C:\Windows\system32\halmacpi.dll
2015-02-12 00:49 - 2010-11-20 13:29 - 00194432 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2015-02-12 00:49 - 2010-11-20 13:29 - 00137088 _____ (Microsoft Corporation) C:\Windows\system32\halacpi.dll
2015-02-12 00:49 - 2010-11-20 13:29 - 00043392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys
2015-02-12 00:49 - 2010-11-20 13:24 - 00690680 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-02-12 00:49 - 2010-11-20 13:24 - 00508904 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-02-12 00:49 - 2010-11-20 13:24 - 00442720 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-02-12 00:49 - 2010-11-20 13:24 - 00271664 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2015-02-12 00:49 - 2010-11-20 13:23 - 00144768 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 02983424 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 02755072 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 02311168 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 02202624 _____ (Microsoft Corporation) C:\Windows\system32\SensorsCpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 02157568 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 02146304 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01712640 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01667584 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01624064 _____ (Microsoft Corporation) C:\Windows\system32\WMPEncEn.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01363456 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01326592 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01227776 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01128448 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01086976 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01063936 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01003008 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00974336 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\Vault.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00907776 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00902656 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2015-02-12 00:49 - 2010-11-20 13:21 - 00811520 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00782336 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00778240 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00766464 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00755200 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00750080 _____ (Microsoft Corporation) C:\Windows\system32\sdcpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00739328 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2015-02-12 00:49 - 2010-11-20 13:21 - 00738816 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00697344 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00638976 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00616960 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00600064 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00577024 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00551424 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00541184 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2015-02-12 00:49 - 2010-11-20 13:21 - 00507392 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00473600 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\scrptadm.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00463360 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00436736 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00428544 _____ (Microsoft Corporation) C:\Windows\system32\shwebsvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00416768 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00410624 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00380416 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00352256 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00351232 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00351232 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00350720 _____ (Microsoft Corporation) C:\Windows\system32\WPDSp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00335872 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00328192 _____ (Microsoft Corporation) C:\Windows\system32\shsvcs.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00327680 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00318976 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese30.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00276992 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\unattend.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00198144 _____ (Microsoft Corporation) C:\Windows\system32\wpdwcn.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00198144 _____ (Microsoft Corporation) C:\Windows\system32\sysclass.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\wdscore.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\wmpsrcwp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00181760 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\umrdp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\tscfgwmi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\recovery.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\tspubwmi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\wiavideo.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\sppinst.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\srvcli.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL
2015-02-12 00:49 - 2010-11-20 13:21 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\unimdmat.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\sppuinotify.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\rdpd3d.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00051200 _____ (Twain Working Group) C:\Windows\twain_32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\samcli.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\wkscli.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\RpcRtRemote.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\wtsapi32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\wiarpc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\wdiasqmmodule.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\utildll.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\vpnikeapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\TRAPI.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\rdprefdrvapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\sisbkup.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\schedcli.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\tsbyuv.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wshirda.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\shunimpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-02-12 00:49 - 2010-11-20 13:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 02504192 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL
2015-02-12 00:49 - 2010-11-20 13:20 - 02494464 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 02130944 _____ (Microsoft Corporation) C:\Windows\system32\networkmap.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01750528 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01661440 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01644032 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01508864 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01414144 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01111552 _____ (Microsoft Corporation) C:\Windows\system32\onexui.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00932352 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\PerfCenterCPL.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00563712 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00547840 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceStatus.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00395264 _____ (Microsoft Corporation) C:\Windows\system32\prnfldr.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00330240 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL
2015-02-12 00:49 - 2010-11-20 13:20 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00283136 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00218112 _____ (Microsoft Corporation) C:\Windows\system32\OnLineIDCpl.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\qcap.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceSyncProvider.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00174592 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL
2015-02-12 00:49 - 2010-11-20 13:20 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL
2015-02-12 00:49 - 2010-11-20 13:20 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\netjoin.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00121344 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\prncache.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL
2015-02-12 00:49 - 2010-11-20 13:20 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\olethk32.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL
2015-02-12 00:49 - 2010-11-20 13:20 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\ncryptui.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationProxy.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\netutils.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\perfts.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\nrpsrv.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 02291712 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 02151936 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 01493504 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 01066496 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00856576 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2015-02-12 00:49 - 2010-11-20 13:19 - 00828928 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00732160 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00593408 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00592384 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00566272 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00481792 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00429056 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\mspbda.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00392192 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2015-02-12 00:49 - 2010-11-20 13:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00266752 _____ (Microsoft Corporation) C:\Windows\system32\MediaMetadataHandler.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL
2015-02-12 00:49 - 2010-11-20 13:19 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\iTVData.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\msorcl32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\hgprint.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\msvfw32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\imm32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL
2015-02-12 00:49 - 2010-11-20 13:19 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00093696 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\fms.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\mciavi32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00082944 _____ (Radius Inc.) C:\Windows\system32\iccvid.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL
2015-02-12 00:49 - 2010-11-20 13:19 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\Mcx2Svc.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\iyuv_32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\mciqtz32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\httpapi.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\msvidc32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\msyuv.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\HotStartUserAgent.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\muifontsetup.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msrle32.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 03727872 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 02522624 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01828352 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01555456 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01400320 _____ (Microsoft Corporation) C:\Windows\system32\DxpTaskSync.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01371136 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01188864 _____ (Microsoft Corporation) C:\Windows\system32\DiagCpl.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01040384 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01003520 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00863744 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00854016 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00762880 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00685056 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00665600 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayCpl.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00546304 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00537600 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00494592 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2015-02-12 00:49 - 2010-11-20 13:18 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00438272 _____ (Microsoft Corporation) C:\Windows\system32\AdmTmpl.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\biocpl.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00418816 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00402944 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00399872 _____ (Microsoft Corporation) C:\Windows\system32\DXP.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\appmgr.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00333824 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\dpx.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00252928 _____ (Microsoft) C:\Windows\system32\DShowRdpFilter.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\audiodev.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\defaultlocationcpl.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\activeds.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\adsldp.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\cscobj.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAPI.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayServices.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\CscMig.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\dnscmmc.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\avifil32.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\cca.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\CertPolEng.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\elsTrans.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\bitsperf.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\C_ISCII.DLL
2015-02-12 00:49 - 2010-11-20 13:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\browseui.dll
2015-02-12 00:49 - 2010-11-20 13:17 - 03367424 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 01203200 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 01131008 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 01025536 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\WFS.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00586752 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00477696 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00456192 _____ (Microsoft Corporation) C:\Windows\system32\spinstall.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00453632 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00334336 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00327680 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\spreview.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00276480 _____ (Microsoft Corporation) C:\Windows\system32\diskraid.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\lsm.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00260608 _____ (Microsoft Corporation) C:\Windows\system32\rdpshell.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00233984 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\taskmgr.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\ocsetup.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\PresentationSettings.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00161280 _____ (Microsoft Corporation) C:\Windows\system32\rdpinit.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\iscsicli.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\setupcl.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00098816 _____ (Microsoft) C:\Windows\system32\Robocopy.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\logagent.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\isoburn.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\MuiUnattend.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00066048 _____ () C:\Windows\system32\PrintBrmUi.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\djoin.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\repair-bde.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\rdpsign.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\MultiDigiMon.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\PushPrinterConnections.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\tzutil.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\unlodctr.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\proquota.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\qwinsta.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\netcfg.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\qprocess.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\msg.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\quser.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\tskill.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\tsdiscon.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\tscon.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\qappsrv.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\logoff.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\shadow.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\rwinsta.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\reset.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\query.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00905216 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr
2015-02-12 00:49 - 2010-11-20 13:16 - 00776192 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00668160 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00658944 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00649216 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00516096 _____ (Microsoft Corporation) C:\Windows\system32\main.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2015-02-12 00:49 - 2010-11-20 13:16 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2015-02-12 00:49 - 2010-11-20 13:16 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00326656 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2015-02-12 00:49 - 2010-11-20 13:16 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00293888 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr
2015-02-12 00:49 - 2010-11-20 13:16 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2015-02-12 00:49 - 2010-11-20 13:16 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr
2015-02-12 00:49 - 2010-11-20 13:16 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr
2015-02-12 00:49 - 2010-11-20 13:16 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv
2015-02-12 00:49 - 2010-11-20 13:16 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfg.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\Kswdmcap.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00065024 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\chgport.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\chglogon.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\chgusr.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\change.exe
2015-02-12 00:49 - 2010-11-20 13:07 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2015-02-12 00:49 - 2010-11-20 13:07 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll
2015-02-12 00:49 - 2010-11-20 13:06 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2015-02-12 00:49 - 2010-11-20 13:05 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\RDPENCDD.dll
2015-02-12 00:49 - 2010-11-20 13:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\pifmgr.dll
2015-02-12 00:49 - 2010-11-20 13:03 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\vmicres.dll
2015-02-12 00:49 - 2010-11-20 13:03 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\vmbusres.dll
2015-02-12 00:49 - 2010-11-20 13:03 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\vmstorfltres.dll
2015-02-12 00:49 - 2010-11-20 13:00 - 01027584 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
2015-02-12 00:49 - 2010-11-20 13:00 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
2015-02-12 00:49 - 2010-11-20 13:00 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDSG.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\kbdlk41a.dll
2015-02-12 00:49 - 2010-11-20 13:00 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDCZ1.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUQ.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUF.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDSF.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDPO.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDNEPR.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDINBEN.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDGR1.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDGKL.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDUS.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDUGHR1.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDTURME.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAJIK.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDMON.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDMAORI.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDLT1.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTEL.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTAM.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINORI.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINMAR.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINKAN.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINHIN.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBULG.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBLR.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\KBDGEO.DLL
2015-02-12 00:49 - 2010-11-20 12:57 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2015-02-12 00:49 - 2010-11-20 12:56 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\BlbEvents.dll
2015-02-12 00:49 - 2010-11-20 12:54 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-02-12 00:49 - 2010-11-20 11:52 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys
2015-02-12 00:49 - 2010-11-20 11:24 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys
2015-02-12 00:49 - 2010-11-20 11:22 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\rdpdd.dll
2015-02-12 00:49 - 2010-11-20 11:22 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPCDD.sys
2015-02-12 00:49 - 2010-11-20 11:21 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\RDPREFDD.dll
2015-02-12 00:49 - 2010-11-20 11:21 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdpipe.sys
2015-02-12 00:49 - 2010-11-20 11:07 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2015-02-12 00:49 - 2010-11-20 11:07 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2015-02-12 00:49 - 2010-11-20 11:07 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2015-02-12 00:49 - 2010-11-20 11:06 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2015-02-12 00:49 - 2010-11-20 11:06 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys
2015-02-12 00:49 - 2010-11-20 11:06 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys
2015-02-12 00:49 - 2010-11-20 11:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\1394ohci.sys
2015-02-12 00:49 - 2010-11-20 11:00 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys
2015-02-12 00:49 - 2010-11-20 11:00 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys
2015-02-12 00:49 - 2010-11-20 11:00 - 00025856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys
2015-02-12 00:49 - 2010-11-20 11:00 - 00025856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD.sys
2015-02-12 00:49 - 2010-11-20 10:59 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2015-02-12 00:49 - 2010-11-20 10:59 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2015-02-12 00:49 - 2010-11-20 10:50 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2015-02-12 00:49 - 2010-11-20 10:50 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CompositeBus.sys
2015-02-12 00:49 - 2010-11-20 10:50 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2015-02-12 00:49 - 2010-11-20 10:50 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffp_sd.sys
2015-02-12 00:49 - 2010-11-20 10:29 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-02-12 00:49 - 2010-11-20 10:24 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys
2015-02-12 00:49 - 2010-11-20 10:19 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2015-02-12 00:49 - 2010-11-20 10:14 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\vmicsvc.exe
2015-02-12 00:49 - 2010-11-20 10:14 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\VmbusCoinstaller.dll
2015-02-12 00:49 - 2010-11-20 10:14 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\VmdCoinstall.dll
2015-02-12 00:49 - 2010-11-20 10:14 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\IcCoinstall.dll
2015-02-12 00:49 - 2010-11-20 10:14 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll
2015-02-12 00:49 - 2010-11-20 10:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VMBusHID.sys
2015-02-12 00:49 - 2010-11-20 10:14 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2015-02-12 00:49 - 2010-11-20 10:14 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vms3cap.sys
2015-02-12 00:49 - 2010-11-20 09:47 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipmi.sys
2015-02-12 00:49 - 2010-11-20 09:44 - 00388096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys
2015-02-12 00:49 - 2010-11-20 09:44 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2015-02-12 00:49 - 2010-11-20 09:42 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2015-02-12 00:49 - 2010-11-20 09:42 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2015-02-12 00:49 - 2010-11-20 09:40 - 00513536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-02-12 00:49 - 2010-11-20 09:39 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2015-02-12 00:49 - 2010-11-20 09:39 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys
2015-02-12 00:49 - 2010-11-20 09:38 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdrom.sys
2015-02-12 00:49 - 2010-11-20 06:23 - 00053600 _____ () C:\Windows\system32\dosx.exe
2015-02-12 00:49 - 2010-11-10 02:45 - 00010429 _____ () C:\Windows\system32\ScavengeSpace.xml
2015-02-12 00:49 - 2010-11-05 03:20 - 00146852 _____ () C:\Windows\system32\systemsf.ebd
2015-02-12 00:49 - 2010-11-05 03:20 - 00105559 _____ () C:\Windows\system32\RacRules.xml
2015-02-12 00:49 - 2010-11-05 03:11 - 00312168 _____ (Microsoft Corporation) C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2015-02-12 00:49 - 2010-11-05 02:58 - 00049488 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2015-02-12 00:34 - 2015-02-12 00:34 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\NVIDIA
2015-02-12 00:34 - 2015-02-12 00:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-02-12 00:29 - 2015-02-12 00:31 - 00000000 ____D () C:\Windows\system32\MRT
2015-02-12 00:29 - 2015-02-12 00:29 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_LUsbFilt_01005.Wdf
2015-02-12 00:28 - 2015-02-13 10:52 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-02-12 00:28 - 2014-08-19 22:16 - 00061728 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-02-12 00:28 - 2014-07-02 20:42 - 04389848 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-02-12 00:28 - 2014-07-02 20:42 - 03063256 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc.dll
2015-02-12 00:28 - 2014-07-02 20:42 - 02556360 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-02-12 00:28 - 2014-07-02 20:42 - 00670552 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-02-12 00:28 - 2014-07-02 20:42 - 00377288 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-02-12 00:28 - 2014-07-02 20:42 - 00062936 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-02-12 00:28 - 2014-07-02 18:39 - 00609240 _____ (NVIDIA Corporation) C:\Windows\system32\nvStreaming.exe
2015-02-12 00:28 - 2014-07-02 06:14 - 03826628 _____ () C:\Windows\system32\nvcoproc.bin
2015-02-12 00:27 - 2015-02-12 00:29 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-02-12 00:27 - 2015-02-12 00:29 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-02-12 00:10 - 2011-04-09 06:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-02-12 00:07 - 2012-06-02 23:19 - 00577048 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-02-12 00:07 - 2012-06-02 23:19 - 00035864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-02-12 00:07 - 2012-06-02 23:12 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-02-12 00:05 - 2015-02-12 00:05 - 00001409 _____ () C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-02-12 00:04 - 2015-02-13 15:19 - 01733165 _____ () C:\Windows\WindowsUpdate.log
2015-02-12 00:03 - 2015-02-13 17:14 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\VirtualStore
2015-02-12 00:03 - 2015-02-12 18:36 - 00000000 ____D () C:\Users\Rubinio
2015-02-12 00:03 - 2015-02-12 00:03 - 00000020 ___SH () C:\Users\Rubinio\ntuser.ini
2015-02-12 00:03 - 2015-02-12 00:03 - 00000000 _SHDL () C:\Users\Rubinio\Startmenü
2015-02-12 00:03 - 2015-02-12 00:03 - 00000000 _SHDL () C:\Users\Rubinio\Netzwerkumgebung
2015-02-12 00:03 - 2015-02-12 00:03 - 00000000 _SHDL () C:\Users\Rubinio\Druckumgebung
2015-02-12 00:03 - 2015-02-12 00:03 - 00000000 _SHDL () C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-02-12 00:03 - 2015-02-12 00:03 - 00000000 _SHDL () C:\Users\Rubinio\AppData\Local\Verlauf
2015-02-12 00:03 - 2009-07-14 05:42 - 00000000 ___RD () C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-12 00:03 - 2009-07-14 05:37 - 00000000 ___RD () C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\Startmenü
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Programme
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\ProgramData\Startmenü
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\ProgramData\Dokumente
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 __SHD () C:\Recovery

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-11-02 23:59 - 2010-03-24 05:38 - 00003540 _____ () C:\Windows\TSSysprep.log
2015-11-02 23:56 - 2009-07-14 05:34 - 00002790 _____ () C:\Windows\DtcInstall.log
2015-11-02 23:55 - 2009-07-14 05:57 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2015-11-02 23:55 - 2009-07-14 05:52 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2015-02-13 13:00 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-02-13 11:47 - 2009-07-14 05:39 - 00025864 _____ () C:\Windows\setupact.log
2015-02-13 11:00 - 2009-07-14 05:34 - 00012192 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-02-13 11:00 - 2009-07-14 05:34 - 00012192 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-02-13 10:52 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-02-13 10:44 - 2010-03-24 05:48 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-02-13 10:41 - 2009-07-14 05:33 - 00434312 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-12 19:01 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-02-12 18:10 - 2009-07-14 10:15 - 00000000 ____D () C:\Windows\ShellNew
2015-02-12 18:07 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\System
2015-02-12 18:07 - 2009-07-14 03:04 - 00000478 _____ () C:\Windows\win.ini
2015-02-12 11:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\rescache
2015-02-12 10:40 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\de-DE
2015-02-12 10:14 - 2009-07-14 03:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-12 10:13 - 2009-07-14 10:03 - 00000000 ____D () C:\Windows\system32\Drivers\de-DE
2015-02-12 10:13 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\tracing
2015-02-12 10:00 - 2009-07-14 10:14 - 00000000 ____D () C:\Program Files\Windows Journal
2015-02-12 08:58 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\Windows Defender
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\zh-TW
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\zh-HK
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\zh-CN
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\tr-TR
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\sv-SE
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\ru-RU
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\pt-PT
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\pt-BR
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\pl-PL
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\nl-NL
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\nb-NO
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\ko-KR
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\ja-JP
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\it-IT
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\hu-HU
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\fr-FR
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\fi-FI
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\el-GR
2015-02-12 01:22 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\LogFiles
2015-02-12 00:58 - 2009-07-14 10:03 - 00000000 ____D () C:\Windows\de-DE
2015-02-12 00:58 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\Windows Sidebar
2015-02-12 00:58 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\Windows Portable Devices
2015-02-12 00:58 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-02-12 00:58 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\DVD Maker
2015-02-12 00:57 - 2009-07-14 10:15 - 00000000 __SHD () C:\Windows\BitLockerDiscoveryVolumeContents
2015-02-12 00:57 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers
2015-02-12 00:53 - 2009-07-14 03:05 - 00152576 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2015-02-12 00:28 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Help
2015-02-12 00:07 - 2009-07-14 05:52 - 00000000 ____D () C:\Windows\system32\restore
2015-02-12 00:03 - 2009-07-14 03:37 - 00000000 __RHD () C:\Users\Public\Libraries
2015-02-12 00:02 - 2009-07-14 03:37 - 00000000 __RHD () C:\Users\Default
2015-02-12 00:02 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Windows NT
2015-01-29 17:49 - 2010-03-24 05:46 - 113756392 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe

Some content of TEMP:
====================
C:\Users\Rubinio\AppData\Local\Temp\avgnt.exe
C:\Users\Rubinio\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpikk49e.dll
C:\Users\Rubinio\AppData\Local\Temp\LMkRstPt.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-13 13:45

==================== End Of Log ============================
         
Addition.txt:

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 12-02-2015
Ran by Rubinio at 2015-02-13 17:47:10
Running from C:\Users\Rubinio\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat XI Pro (HKLM\...\{AC76BA86-1033-FFFF-7760-000000000006}) (Version: 11.0.02 - Adobe Systems)
Adobe Reader XI (11.0.10) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Apple Application Support (32-Bit) (HKLM\...\{2FE00055-C4F3-4F7A-AEDD-E198D54CF12F}) (Version: 3.1.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{28ED482A-56DB-47D9-8D9E-990FA8CD7D3D}) (Version: 8.1.0.18 - Apple Inc.)
Apple Software Update (HKLM\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
AVG PC TuneUp 2015 (de-DE) (Version: 15.0.1001.393 - AVG Technologies) Hidden
AVG PC TuneUp 2015 (HKLM\...\AVG PC TuneUp) (Version: 15.0.1001.393 - AVG Technologies)
AVG PC TuneUp 2015 (Version: 15.0.1001.393 - AVG Technologies) Hidden
Avira (HKLM\...\{bd538030-07d4-4999-a525-7fafa2483f56}) (Version: 1.1.30.21727 - Avira Operations & Co. KG)
Avira (Version: 1.1.30.21727 - Avira Operations & Co. KG) Hidden
Avira Free Antivirus (HKLM\...\Avira AntiVir Desktop) (Version: 15.0.8.624 - Avira)
Bonjour (HKLM\...\{79155F2B-9895-49D7-8612-D92580E0DE5B}) (Version: 3.0.0.10 - Apple Inc.)
Dropbox (HKU\S-1-5-21-830496087-3815240866-1769002787-1001\...\Dropbox) (Version: 3.2.6 - Dropbox, Inc.)
Google Chrome (HKLM\...\Google Chrome) (Version: 40.0.2214.111 - Google Inc.)
Google Drive (HKLM\...\{65EACBB4-B0B8-4A5B-AE46-22DBE15C70B5}) (Version: 1.19.8406.6504 - Google, Inc.)
Google Update Helper (Version: 1.3.26.9 - Google Inc.) Hidden
iCloud (HKLM\...\{760BB327-3973-4608-85C8-88162E2FF3B6}) (Version: 4.0.6.28 - Apple Inc.)
iTunes (HKLM\...\{B8032A6B-C4D0-4744-B75F-9DDCB56B5C6F}) (Version: 12.1.0.71 - Apple Inc.)
Logitech SetPoint 6.65 (HKLM\...\sp6) (Version: 6.65.62 - Logitech)
Logitech Unifying-Software 2.50 (HKLM\...\Logitech Unifying) (Version: 2.50.25 - Logitech)
Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Mozilla Firefox 35.0.1 (x86 de) (HKLM\...\Mozilla Firefox 35.0.1 (x86 de)) (Version: 35.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 35.0.1 - Mozilla)
NVIDIA 3D Vision Treiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 340.52 - NVIDIA Corporation)
NVIDIA Grafiktreiber 340.52 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 340.52 - NVIDIA Corporation)
NVIDIA Update 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
Outils de vérification linguistique 2013 de Microsoft Office*- Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Safari (HKLM\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.)
Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
StarMoney 9.0  (HKLM\...\{3DA39B49-4E2B-41B3-A15A-53D64AB2AA96}) (Version: 9.0 - Star Finanz GmbH)
Usenet.nl (HKLM\...\Usenet.nl_is1) (Version:  - )
UseNeXT by Tangysoft (HKLM\...\UseNeXT by Tangysoft_is1) (Version:  - Tangysoft Ltd.)
WinRAR 5.20 (32-Bit) (HKLM\...\WinRAR archiver) (Version: 5.20.0 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-830496087-3815240866-1769002787-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-830496087-3815240866-1769002787-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-830496087-3815240866-1769002787-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-830496087-3815240866-1769002787-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-830496087-3815240866-1769002787-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-830496087-3815240866-1769002787-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-830496087-3815240866-1769002787-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-830496087-3815240866-1769002787-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-830496087-3815240866-1769002787-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-830496087-3815240866-1769002787-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)

==================== Restore Points  =========================

12-02-2015 15:39:09 Installed Adobe Acrobat XI Pro.
12-02-2015 17:19:02 Configured Microsoft Office Professional Plus 2013
12-02-2015 17:19:13 PROPLUSR
12-02-2015 17:40:43 Configured Microsoft Office Professional Plus 2013
12-02-2015 17:40:56 PROPLUSR
12-02-2015 17:46:33 Removed Microsoft Office Professional Plus 2013
12-02-2015 17:46:43 PROPLUSR
12-02-2015 18:03:06 Installed Microsoft Office Professional Plus 2013
12-02-2015 18:03:21 PROPLUSR
12-02-2015 18:21:59 Installed iTunes
12-02-2015 18:48:10 Installed iCloud
13-02-2015 14:24:49 AVG PC TuneUp 2015 wird installiert
13-02-2015 14:25:29 AVG PC TuneUp 2015 (de-DE) wird entfernt
13-02-2015 14:53:39 AVG PC TuneUp 2015 wird installiert

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {1D06DEF7-8326-4BA0-BFE8-BF975B32AE4E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-02-12] (Google Inc.)
Task: {43EAF7A0-0F6D-4543-939E-00238FE2A779} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {4FF809B2-E636-449D-91DD-2EF8F6916907} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {71AF49F8-57CC-4A1F-A33C-CD1821063AFB} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
Task: {7A1BD0DC-EB0E-41E6-A7E2-D34129F9AB40} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {8FDA3631-8FB6-48A4-A841-E364FDE9CC36} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {A0B9EB84-1190-44C3-908F-229AA707FAEB} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {A1006C7B-2AA9-44DD-85FD-D6BB6851D102} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2015-02-12] ()
Task: {B0CE0FE6-B8D6-4439-A815-D3F7E292337D} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-02-12] (Google Inc.)
Task: {D4EBA497-FAB6-488D-AB9D-DB5772FFF9CB} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E11913E3-7693-4183-9F60-8364299B92FD} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {EC8D1C96-1268-4A43-9D56-D7F1EFA82A20} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2015-02-12 00:28 - 2014-07-02 20:42 - 00107992 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax.dll
2015-01-20 22:35 - 2015-01-20 22:35 - 00073544 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-01-20 22:35 - 2015-01-20 22:35 - 01044776 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2015-02-12 15:24 - 2011-01-13 10:44 - 00232800 _____ () C:\Program Files\StarMoney 9.0\ouservice\PATCHW32.dll
2012-09-23 20:43 - 2012-09-23 20:43 - 00010240 _____ () C:\Program Files\Adobe\Acrobat 11.0\Acrobat\locale\de_de\acrotray.deu
2015-02-12 18:52 - 2015-02-10 22:00 - 00750080 _____ () C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\libGLESv2.dll
2015-02-13 10:53 - 2015-02-13 10:53 - 00043008 _____ () c:\users\rubinio\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpikk49e.dll
2015-02-12 18:52 - 2015-02-10 22:00 - 00047616 _____ () C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\libEGL.dll
2015-02-12 18:52 - 2015-02-10 22:00 - 00865280 _____ () C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll
2015-02-12 18:52 - 2015-02-10 22:00 - 00200704 _____ () C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll
2015-02-13 10:52 - 2015-02-13 10:52 - 00098816 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\win32api.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00110080 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\pywintypes27.dll
2015-02-13 10:52 - 2015-02-13 10:52 - 00364544 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\pythoncom27.dll
2015-02-13 10:52 - 2015-02-13 10:52 - 00045568 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\_socket.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 01160704 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\_ssl.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00320512 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\win32com.shell.shell.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00713216 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\_hashlib.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 01175040 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\wx._core_.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00805888 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\wx._gdi_.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00811008 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\wx._windows_.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 01062400 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\wx._controls_.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00735232 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\wx._misc_.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00557056 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\pysqlite2._sqlite.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00128512 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\_elementtree.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00127488 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\pyexpat.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00087552 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\_ctypes.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00119808 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\win32file.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00108544 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\win32security.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00007168 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\hashobjs_ext.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00167936 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\win32gui.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00018432 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\win32event.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00038912 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\win32inet.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00011264 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\win32crypt.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00070656 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\wx._html2.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00027136 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\_multiprocessing.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00035840 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\win32process.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00686080 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\unicodedata.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00122368 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\wx._wizard.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00024064 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\win32pipe.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00025600 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\win32pdh.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00525640 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\windows._lib_cacheinvalidation.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00010240 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\select.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00017408 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\win32profile.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00022528 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\win32ts.pyd
2015-02-13 10:52 - 2015-02-13 10:52 - 00078336 _____ () C:\Users\Rubinio\AppData\Local\Temp\_MEI24082\wx._animate.pyd
2015-02-12 10:50 - 2015-02-04 10:02 - 01117512 _____ () C:\Program Files\Google\Chrome\Application\40.0.2214.111\libglesv2.dll
2015-02-12 10:50 - 2015-02-04 10:02 - 00211272 _____ () C:\Program Files\Google\Chrome\Application\40.0.2214.111\libegl.dll
2015-02-12 10:50 - 2015-02-04 10:02 - 09170760 _____ () C:\Program Files\Google\Chrome\Application\40.0.2214.111\pdf.dll
2012-12-18 20:08 - 2012-12-18 20:08 - 00131072 _____ () C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Locale\de_de\PDFMaker\PDFMOutlookAddin.DEU
2012-12-18 20:08 - 2012-12-18 20:08 - 03990248 _____ () C:\Program Files\Adobe\Acrobat 11.0\PDFMaker\Common\AdobePDFMakerX.dll
2012-12-18 20:08 - 2012-12-18 20:08 - 01446912 _____ () C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Locale\de_DE\PDFMaker\AdobePDFMakerX.DEU
2012-10-01 20:32 - 2012-10-01 20:32 - 01014400 _____ () C:\Program Files\Microsoft Office\Office15\ADDINS\UmOutlookAddin.dll
2012-10-01 20:32 - 2012-10-01 20:32 - 00125056 _____ () C:\Program Files\Microsoft Office\Office15\OUTLCTL.DLL
2012-10-01 20:32 - 2012-10-01 20:32 - 00321136 _____ () C:\Program Files\Microsoft Office\Office15\msfad.dll
2015-02-12 15:11 - 2015-01-23 11:37 - 03925104 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll
2015-02-12 17:39 - 2015-02-12 17:39 - 00604984 _____ () C:\Program Files\AVG\AVG PC TuneUp\avgreplibx.dll
2015-02-12 17:39 - 2015-02-12 17:39 - 00728888 _____ () C:\Program Files\AVG\AVG PC TuneUp\tulngx.dll
2015-02-13 15:20 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2015-02-13 15:20 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl
2015-02-13 15:20 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2015-02-13 15:20 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll
2015-02-13 15:20 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2012-04-24 20:18 - 2012-04-24 20:18 - 00087912 _____ () C:\Program Files\Safari\Apple Application Support\zlib1.dll
2012-04-24 20:18 - 2012-04-24 20:18 - 01242472 _____ () C:\Program Files\Safari\Apple Application Support\libxml2.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-830496087-3815240866-1769002787-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.178.1

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== Accounts: =============================

Administrator (S-1-5-21-830496087-3815240866-1769002787-500 - Administrator - Disabled)
Gast (S-1-5-21-830496087-3815240866-1769002787-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-830496087-3815240866-1769002787-1002 - Limited - Enabled)
Rubinio (S-1-5-21-830496087-3815240866-1769002787-1001 - Administrator - Enabled) => C:\Users\Rubinio

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (02/13/2015 04:47:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: mbam.exe, Version: 1.0.1.711, Zeitstempel: 0x542b53ec
Name des fehlerhaften Moduls: mbam.exe, Version: 1.0.1.711, Zeitstempel: 0x542b53ec
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0018aae7
ID des fehlerhaften Prozesses: 0x1f0c
Startzeit der fehlerhaften Anwendung: 0xmbam.exe0
Pfad der fehlerhaften Anwendung: mbam.exe1
Pfad des fehlerhaften Moduls: mbam.exe2
Berichtskennung: mbam.exe3

Error: (02/13/2015 03:15:03 PM) (Source: Outlook) (EventID: 34) (User: )
Description: Fehler beim Abrufen des Durchforstungsbereichs-Managers. Fehler=0x80070422.

Error: (02/13/2015 01:50:08 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"1".
Die abhängige Assemblierung "Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".

Error: (02/13/2015 10:45:52 AM) (Source: VSS) (EventID: 12298) (User: )
Description: Volumeschattenkopie-Dienstfehler: Die E/A-Schreibvorgänge können während des Schattenkopie-Erstellungszeitraums auf Volume "C:\" nicht gespeichert werden.
Der Volumeindex im Schattenkopiesatz ist 0. Fehlerdetails: Offen[0x00000000, Der Vorgang wurde erfolgreich beendet.
], Leerung[0x00000000, Der Vorgang wurde erfolgreich beendet.
], Freigabe[0x80042314, Der Schattenkopieanbieter hat beim Warten auf den Schreibvorgang auf das Volume, von dem eine Schattenkopie erstellt wird, das Zeitlimit überschritten. Ursache hierfür könnte eine durch eine Anwendung oder einen Systemdienst verursachte hohe Aktivität auf dem Volume sein. Wiederholen Sie den Vorgang später, wenn das Volume nicht so stark ausgelastet ist.
], Ausführung[0x00000000, Der Vorgang wurde erfolgreich beendet.
].


Vorgang:
   Asynchroner Vorgang wird ausgeführt

Kontext:
   Aktueller Status: DoSnapshotSet

Error: (02/13/2015 10:45:52 AM) (Source: VSS) (EventID: 12310) (User: )
Description: Volumeschattenkopie-Dienstfehler: Die Schattenkopie kann nicht zugesichert werden - Vorgang hat das Zeitlimit überschritten.
Fehlerkontext: DeviceIoControl(\\?\Volume{eafc5e25-81b4-11e5-8721-806e6f6e6963} - 00000134,0x0053c010,00D68E28,0,00D69E30,4096,[0]).


Vorgang:
   Schattenkopien werden übertragen

Kontext:
   Ausführungskontext: System Provider

Error: (02/12/2015 07:09:11 PM) (Source: Office Software Protection Platform Service) (EventID: 1014) (User: )
Description: Acquisition of End User License failed. hr=0xC004C003
Sku Id=41499869-4103-4d3b-9da6-d07df41b6e39

Error: (02/12/2015 07:09:11 PM) (Source: Office Software Protection Platform Service) (EventID: 8200) (User: )
Description: License acquisition failure details. 
hr=0xC004C003

Error: (02/12/2015 05:46:13 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm OUTLOOK.EXE, Version 15.0.4569.1503 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.

Prozess-ID: e20

Startzeit: 01d046e349b45519

Endzeit: 47

Anwendungspfad: C:\Program Files\Microsoft Office\Office15\OUTLOOK.EXE

Berichts-ID: a29f5fdd-b2d6-11e4-9bba-001e90ca155c

Error: (02/12/2015 03:39:07 PM) (Source: MsiInstaller) (EventID: 11500) (User: Rubinio-PC)
Description: Produkt: Adobe Acrobat XI Pro -- Fehler 1500. Im Augenblick wird eine weitere Installation ausgeführt. Sie müssen erst die zweite Installation abschließen, bevor Sie mit dieser Installation fortfahren können.

Error: (02/12/2015 01:01:58 AM) (Source: ESENT) (EventID: 215) (User: )
Description: WinMail (2160) WindowsMail0: Die Sicherung wurde abgebrochen, weil sie vom Client angehalten wurde, oder weil die Verbindung mit dem Client unterbrochen wurde.


System errors:
=============
Error: (02/13/2015 03:28:32 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.

Error: (02/13/2015 03:28:31 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.

Error: (02/13/2015 03:28:31 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.

Error: (02/13/2015 03:28:31 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.

Error: (02/13/2015 03:28:27 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.

Error: (02/13/2015 03:28:26 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.

Error: (02/13/2015 03:28:26 PM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.

Error: (02/13/2015 03:01:59 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "AVG Designerweiterung" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1083

Error: (02/13/2015 11:07:08 AM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.

Error: (02/13/2015 11:07:08 AM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT)
Description: Es wurde eine schwerwiegende Warnung generiert: 10. Der interne Fehlerstatus lautet: 10.


Microsoft Office Sessions:
=========================
Error: (02/13/2015 04:47:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: mbam.exe1.0.1.711542b53ecmbam.exe1.0.1.711542b53ecc00000050018aae71f0c01d047a3e42afd30C:\Program Files\ Malwarebytes Anti-Malware \mbam.exeC:\Program Files\ Malwarebytes Anti-Malware \mbam.exea019633e-b397-11e4-8fe0-001e90ca155c

Error: (02/13/2015 03:15:03 PM) (Source: Outlook) (EventID: 34) (User: )
Description: 0x80070422

Error: (02/13/2015 01:50:08 PM) (Source: SideBySide) (EventID: 33) (User: )
Description: Microsoft.Windows.Common-Controls,language="*",processorArchitecture="amd64",publicKeyToken="6595b64144ccf1df",type="win32",version="6.0.0.0"c:\program files\common files\Logishrd\sp6_uninstall\tools\64\AddBrowsers.exe

Error: (02/13/2015 10:45:52 AM) (Source: VSS) (EventID: 12298) (User: )
Description: C:\00x00000000, Der Vorgang wurde erfolgreich beendet.
0x00000000, Der Vorgang wurde erfolgreich beendet.
0x80042314, Der Schattenkopieanbieter hat beim Warten auf den Schreibvorgang auf das Volume, von dem eine Schattenkopie erstellt wird, das Zeitlimit überschritten. Ursache hierfür könnte eine durch eine Anwendung oder einen Systemdienst verursachte hohe Aktivität auf dem Volume sein. Wiederholen Sie den Vorgang später, wenn das Volume nicht so stark ausgelastet ist.
0x00000000, Der Vorgang wurde erfolgreich beendet.


Vorgang:
   Asynchroner Vorgang wird ausgeführt

Kontext:
   Aktueller Status: DoSnapshotSet

Error: (02/13/2015 10:45:52 AM) (Source: VSS) (EventID: 12310) (User: )
Description: DeviceIoControl(\\?\Volume{eafc5e25-81b4-11e5-8721-806e6f6e6963} - 00000134,0x0053c010,00D68E28,0,00D69E30,4096,[0])

Vorgang:
   Schattenkopien werden übertragen

Kontext:
   Ausführungskontext: System Provider

Error: (02/12/2015 07:09:11 PM) (Source: Office Software Protection Platform Service) (EventID: 1014) (User: )
Description: hr=0xC004C00341499869-4103-4d3b-9da6-d07df41b6e39

Error: (02/12/2015 07:09:11 PM) (Source: Office Software Protection Platform Service) (EventID: 8200) (User: )
Description: hr=0xC004C00300010001(0x00000000, 19:09:09:165 - https://activation.sls.microsoft.com/SLActivateProduct/SLActivateProduct.asmx?configextension=o14)
00020001(0x00000000, 19:09:09:200)
00030001(0x00000000, 19:09:09:201 - https://activation.sls.microsoft.com)
00030002(0x00000000, 19:09:09:201 - 0)
00040001(0x00000000, 19:09:09:201 - https://activation.sls.microsoft.com)
00040002(0x00000000, 19:09:09:208 - 0, <NULL>, <NULL>, <NULL>)
00040006(0x00000000, 19:09:09:208 - 1, https://activation.sls.microsoft.com, <NULL>, <local>)
00020005(0x00000000, 19:09:09:208 - 0)
0002000C(0x00000000, 19:09:11:549 - 500)
00010002(0x8004FC01, 19:09:11:550 - <?xml version="1.0" encoding="utf-8"?><soap:Envelope xmlns:soap="hxxp://schemas.xmlsoap.org/soap/envelope/" xmlns:xsi="hxxp://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="hxxp://www.w3.org/2001/XMLSchema"><soap:Body><soap:Fault><faultcode>soap:Server</faultcode><faultstring>SoapException</faultstring><detail><HRESULT>0xC004C003</HRESULT><Messages><Message>103 (Activation) - [PA Product key blocked.  ---&gt; Product key blocked]</Message></Messages></detail></soap:Fault></soap:Body></soap:Envelope>)
00010003(0x8004FC01, 19:09:11:560)

Error: (02/12/2015 05:46:13 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: OUTLOOK.EXE15.0.4569.1503e2001d046e349b4551947C:\Program Files\Microsoft Office\Office15\OUTLOOK.EXEa29f5fdd-b2d6-11e4-9bba-001e90ca155c

Error: (02/12/2015 03:39:07 PM) (Source: MsiInstaller) (EventID: 11500) (User: Rubinio-PC)
Description: Produkt: Adobe Acrobat XI Pro -- Fehler 1500. Im Augenblick wird eine weitere Installation ausgeführt. Sie müssen erst die zweite Installation abschließen, bevor Sie mit dieser Installation fortfahren können.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (02/12/2015 01:01:58 AM) (Source: ESENT) (EventID: 215) (User: )
Description: WinMail2160WindowsMail0:


==================== Memory info =========================== 

Processor: Intel(R) Core(TM)2 Quad CPU Q9300 @ 2.50GHz
Percentage of memory in use: 76%
Total physical RAM: 3327.23 MB
Available physical RAM: 767.46 MB
Total Pagefile: 6650.71 MB
Available Pagefile: 1974.1 MB
Total Virtual: 2047.88 MB
Available Virtual: 1879.38 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.66 GB) (Free:385.45 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:465.76 GB) (Free:189.06 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 2A502A4F)
Partition 1: (Active) - (Size=465.7 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 465.8 GB) (Disk ID: F3BC08A4)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)

==================== End Of Log ============================
         

Alt 14.02.2015, 11:48   #5
schrauber
/// the machine
/// TB-Ausbilder
 

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



hi,

Downloade dir bitte TDSSKiller TDSSKiller.exe und speichere diese Datei auf dem Desktop
  • Starte die TDSSKiller.exe - Einstellen wie in der Anleitung zu TDSSKiller beschrieben.
  • Drücke Start Scan
  • Sollten infizierte Objekte gefunden werden, wähle keinesfalls Cure. Wähle Skip und klicke auf Continue.
    TDSSKiller wird eine Logfile auf deinem Systemlaufwerk speichern (Meistens C:\)
    Als Beispiel: C:\TDSSKiller.<Version_Datum_Uhrzeit>log.txt
Poste den Inhalt bitte in jedem Fall hier in deinen Thread.

Downloade dir bitte Malwarebytes Anti-Rootkit Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
  • Starte bitte die mbar.exe.
  • Folge den Anweisungen auf deinem Bildschirm gemäß Anleitung zu Malwarebytes Anti-Rootkit
  • Aktualisiere unbedingt die Datenbank und erlaube dem Tool, dein System zu scannen.
  • Klicke auf den CleanUp Button und erlaube den Neustart.
  • Während dem Neustart wird MBAR die gefundenen Objekte entfernen, also bleib geduldig.
  • Nach dem Neustart starte die mbar.exe erneut.
  • Sollte nochmal was gefunden werden, wiederhole den CleanUp Prozess.
Das Tool wird im erstellten Ordner eine Logfile ( mbar-log-<Jahr-Monat-Tag>.txt ) erzeugen. Bitte poste diese hier.

Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers

__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 14.02.2015, 14:35   #6
rubinio73
 
Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



TDSSKILLER:

Code:
ATTFilter
14:08:56.0048 0x11d0  TDSS rootkit removing tool 3.0.0.44 Jan 22 2015 08:27:04
14:09:03.0442 0x11d0  ============================================================
14:09:03.0442 0x11d0  Current date / time: 2015/02/14 14:09:03.0442
14:09:03.0442 0x11d0  SystemInfo:
14:09:03.0442 0x11d0  
14:09:03.0442 0x11d0  OS Version: 6.1.7601 ServicePack: 1.0
14:09:03.0442 0x11d0  Product type: Workstation
14:09:03.0442 0x11d0  ComputerName: RUBINIO-PC
14:09:03.0442 0x11d0  UserName: Rubinio
14:09:03.0442 0x11d0  Windows directory: C:\Windows
14:09:03.0442 0x11d0  System windows directory: C:\Windows
14:09:03.0442 0x11d0  Processor architecture: Intel x86
14:09:03.0442 0x11d0  Number of processors: 4
14:09:03.0442 0x11d0  Page size: 0x1000
14:09:03.0442 0x11d0  Boot type: Normal boot
14:09:03.0442 0x11d0  ============================================================
14:09:05.0122 0x11d0  KLMD registered as C:\Windows\system32\drivers\63317282.sys
14:09:05.0456 0x11d0  System UUID: {45328823-6973-532D-DB7E-94406A3A264A}
14:09:06.0342 0x11d0  Drive \Device\Harddisk1\DR1 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0x7E2CB, SectorsPerTrack: 0xE, TracksPerCylinder: 0x87, Type 'K0', Flags 0x00000050
14:09:13.0107 0x11d0  Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000050
14:09:13.0216 0x11d0  ============================================================
14:09:13.0216 0x11d0  \Device\Harddisk1\DR1:
14:09:13.0221 0x11d0  MBR partitions:
14:09:13.0221 0x11d0  \Device\Harddisk1\DR1\Partition1: MBR, Type 0x7, StartLBA 0x32800, BlocksNum 0x3A353000
14:09:13.0221 0x11d0  \Device\Harddisk0\DR0:
14:09:13.0221 0x11d0  MBR partitions:
14:09:13.0221 0x11d0  \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x3F, BlocksNum 0x3A384C02
14:09:13.0221 0x11d0  ============================================================
14:09:13.0253 0x11d0  C: <-> \Device\Harddisk1\DR1\Partition1
14:09:13.0278 0x11d0  D: <-> \Device\Harddisk0\DR0\Partition1
14:09:13.0278 0x11d0  ============================================================
14:09:13.0278 0x11d0  Initialize success
14:09:13.0278 0x11d0  ============================================================
14:10:29.0050 0x0e00  ============================================================
14:10:29.0050 0x0e00  Scan started
14:10:29.0050 0x0e00  Mode: Manual; SigCheck; TDLFS; 
14:10:29.0050 0x0e00  ============================================================
14:10:29.0050 0x0e00  KSN ping started
14:10:31.0624 0x0e00  KSN ping finished: true
14:10:33.0075 0x0e00  ================ Scan system memory ========================
14:10:33.0075 0x0e00  System memory - ok
14:10:33.0075 0x0e00  ================ Scan services =============================
14:10:33.0199 0x0e00  [ 1B133875B8AA8AC48969BD3458AFE9F5, 01753BDD47F3F9BC0E0D23A069B9C56D4AE6A6B6295BC19B95AE245D25B12744 ] 1394ohci        C:\Windows\system32\drivers\1394ohci.sys
14:10:33.0371 0x0e00  1394ohci - ok
14:10:33.0402 0x0e00  [ CEA80C80BED809AA0DA6FEBC04733349, AE69C142DC2210A4AE657C23CEA4A6E7CB32C4F4EBA039414123CAC52157509B ] ACPI            C:\Windows\system32\drivers\ACPI.sys
14:10:33.0433 0x0e00  ACPI - ok
14:10:33.0449 0x0e00  [ 1EFBC664ABFF416D1D07DB115DCB264F, BF94D069D692140B792DBF4FD3CB0127D27C26CC5BFB6B0C28A8B6346767EE58 ] AcpiPmi         C:\Windows\system32\drivers\acpipmi.sys
14:10:33.0543 0x0e00  AcpiPmi - ok
14:10:33.0667 0x0e00  [ FC5B75CA6A1DA31EDD4F8D53F5540B98, CDC445F2790ADFC4C5568C40D4DA8BB95CD71991665B38AEC3D84571C99C3520 ] AdobeARMservice C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
14:10:33.0714 0x0e00  AdobeARMservice - ok
14:10:33.0777 0x0e00  [ 080255CDCB878813B481B8C348D47D8E, 75808821FBC732D0504795B8F85852E4C01D3B412989A1E597E1295CFF7B7A45 ] AdobeFlashPlayerUpdateSvc C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
14:10:33.0808 0x0e00  AdobeFlashPlayerUpdateSvc - ok
14:10:33.0855 0x0e00  [ 21E785EBD7DC90A06391141AAC7892FB, A2D3D764C5E6DC0AD5AAF48485FFB8B121D2A40DC08ECF2D2CB92278A1002B25 ] adp94xx         C:\Windows\system32\DRIVERS\adp94xx.sys
14:10:33.0901 0x0e00  adp94xx - ok
14:10:33.0933 0x0e00  [ 0C676BC278D5B59FF5ABD57BBE9123F2, 339E8A433D186BAAB6FCB44C82CC9FB6FCD63C87981449494CBEB2072CB6B7BB ] adpahci         C:\Windows\system32\DRIVERS\adpahci.sys
14:10:33.0979 0x0e00  adpahci - ok
14:10:34.0011 0x0e00  [ 7C7B5EE4B7B822EC85321FE23A27DB33, A934AFB71D439555E6376DA9B34F82E8D39A300A4547BE9AC9311F6A3C36270C ] adpu320         C:\Windows\system32\DRIVERS\adpu320.sys
14:10:34.0042 0x0e00  adpu320 - ok
14:10:34.0057 0x0e00  [ 8B5EEFEEC1E6D1A72A06C526628AD161, 026CDF4C96F4D493E7BABF79A14C4B0B5ADCCEF0B081FFFA2E3B243B2414167F ] AeLookupSvc     C:\Windows\System32\aelupsvc.dll
14:10:34.0151 0x0e00  AeLookupSvc - ok
14:10:34.0182 0x0e00  [ D0B388DA1D111A34366E04EB4A5DD156, 60D226F027F4025CC032CAFF73A80FAFB5FA75445654FDCF80CA8C0419C6E938 ] AFD             C:\Windows\system32\drivers\afd.sys
14:10:34.0291 0x0e00  AFD - ok
14:10:34.0323 0x0e00  [ 507812C3054C21CEF746B6EE3D04DD6E, D7E59350AC338AD229E3D10C76E32AE16D120311B263714A9CD94AB538633B0E ] agp440          C:\Windows\system32\drivers\agp440.sys
14:10:34.0354 0x0e00  agp440 - ok
14:10:34.0369 0x0e00  [ 8B30250D573A8F6B4BD23195160D8707, 64EC289AFCD63D84EAFD9D81C50D0A77BCC79A1EFF32C50B2776BB0C0151757D ] aic78xx         C:\Windows\system32\DRIVERS\djsvs.sys
14:10:34.0401 0x0e00  aic78xx - ok
14:10:34.0432 0x0e00  [ 18A54E132947CD98FEA9ACCC57F98F13, 9D39AF972785E49F0DD12C4BAEF39A79CD69F098886BF152AF1B7CCE2E902115 ] ALG             C:\Windows\System32\alg.exe
14:10:34.0479 0x0e00  ALG - ok
14:10:34.0510 0x0e00  [ 0D40BCF52EA90FC7DF2AEAB6503DEA44, 1D1AA8F50935D976C29DE7A84708CADBBBDD936F0DD2C059E820F0D21367B3B6 ] aliide          C:\Windows\system32\drivers\aliide.sys
14:10:34.0525 0x0e00  aliide - ok
14:10:34.0541 0x0e00  [ 3C6600A0696E90A463771C7422E23AB5, 370B33DC1C25B981628A318BAE434A78A5F0A0DA93C2896DC7A3D7B87AE1A5E7 ] amdagp          C:\Windows\system32\drivers\amdagp.sys
14:10:34.0572 0x0e00  amdagp - ok
14:10:34.0588 0x0e00  [ CD5914170297126B6266860198D1D4F0, 2239FCBD1A7EC27CE4F10DA36AE6BD6CCB87E5128C82CA71B84BFE5AF5602A60 ] amdide          C:\Windows\system32\drivers\amdide.sys
14:10:34.0619 0x0e00  amdide - ok
14:10:34.0635 0x0e00  [ 00DDA200D71BAC534BF56A9DB5DFD666, CA316B1FFD85BA1CF8664B3229DA1F238A5341E016059F7ED89702324CFD124B ] AmdK8           C:\Windows\system32\DRIVERS\amdk8.sys
14:10:34.0697 0x0e00  AmdK8 - ok
14:10:34.0697 0x0e00  [ 3CBF30F5370FDA40DD3E87DF38EA53B6, 7EACF1743367BE805357B6FD10F8F99E9B1C301FE3782D77719347B13DFA65EC ] AmdPPM          C:\Windows\system32\DRIVERS\amdppm.sys
14:10:34.0791 0x0e00  AmdPPM - ok
14:10:34.0822 0x0e00  [ D320BF87125326F996D4904FE24300FC, F767D8C5C58D57202905D829F7AE1B1FF33937F407FDCE4C90E32A6638F27416 ] amdsata         C:\Windows\system32\drivers\amdsata.sys
14:10:34.0853 0x0e00  amdsata - ok
14:10:34.0884 0x0e00  [ EA43AF0C423FF267355F74E7A53BDABA, 3F1335909AB0281A2FBDD7AD90E18309E091656CD32B48894B992789D8C61DB4 ] amdsbs          C:\Windows\system32\DRIVERS\amdsbs.sys
14:10:34.0931 0x0e00  amdsbs - ok
14:10:34.0947 0x0e00  [ 46387FB17B086D16DEA267D5BE23A2F2, 8B8AC61B91F154B4EB5CC6DECB5FCCEBA8B42EFE94859947136AD06681EA8ED0 ] amdxata         C:\Windows\system32\drivers\amdxata.sys
14:10:34.0993 0x0e00  amdxata - ok
14:10:35.0056 0x0e00  [ F2EDC2EA1E871928C18A63BC84A1B808, C56A8854361021E216EBF35AEF335FD45915C7623D2F61C2691A5BF1CC8BA5E1 ] AntiVirSchedulerService C:\Program Files\Avira\AntiVir Desktop\sched.exe
14:10:35.0087 0x0e00  AntiVirSchedulerService - ok
14:10:35.0103 0x0e00  [ F2EDC2EA1E871928C18A63BC84A1B808, C56A8854361021E216EBF35AEF335FD45915C7623D2F61C2691A5BF1CC8BA5E1 ] AntiVirService  C:\Program Files\Avira\AntiVir Desktop\avguard.exe
14:10:35.0134 0x0e00  AntiVirService - ok
14:10:35.0165 0x0e00  [ AEA177F783E20150ACE5383EE368DA19, 8FA9EE27AA1F22E8B8FE33A21028CA1E0062BAA95CB132C20D55B98C03B4254F ] AppID           C:\Windows\system32\drivers\appid.sys
14:10:35.0290 0x0e00  AppID - ok
14:10:35.0321 0x0e00  [ 62A9C86CB6085E20DB4823E4E97826F5, E0F840B49710022C4FB437002AD06F64B0F6B5D628B32D00F2B66765E6B97E4B ] AppIDSvc        C:\Windows\System32\appidsvc.dll
14:10:35.0383 0x0e00  AppIDSvc - ok
14:10:35.0399 0x0e00  [ EACFDF31921F51C097629F1F3C9129B4, 24138755D823E69760579ECBD672421192457CDC9941B2BC499C2D34D83E86C3 ] Appinfo         C:\Windows\System32\appinfo.dll
14:10:35.0446 0x0e00  Appinfo - ok
14:10:35.0539 0x0e00  [ D2B87FC03BE28CD0B33C2B5C1119FD8E, 97EB74CB7F62C0D06D45CB250E3A90657A0F107C2FC20738FF6B2C87B0240080 ] Apple Mobile Device C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
14:10:35.0586 0x0e00  Apple Mobile Device - ok
14:10:35.0664 0x0e00  [ A45D184DF6A8803DA13A0B329517A64A, C1D16B60A6D69689AE951DC3D6884ED2E233D144B3FC0B86BC1C50AAAAA01ED2 ] AppMgmt         C:\Windows\System32\appmgmts.dll
14:10:35.0836 0x0e00  AppMgmt - ok
14:10:35.0851 0x0e00  [ 2932004F49677BD84DBC72EDB754FFB3, 73F84582244AC53994A2F4499A119B4A84A6BF7FD3046C29A8080C763DE540B8 ] arc             C:\Windows\system32\DRIVERS\arc.sys
14:10:35.0883 0x0e00  arc - ok
14:10:35.0883 0x0e00  [ 5D6F36C46FD283AE1B57BD2E9FEB0BC7, F7C9C3B4F2C816F57A43B2921672858C291054220BADE291044343778216F6BA ] arcsas          C:\Windows\system32\DRIVERS\arcsas.sys
14:10:35.0914 0x0e00  arcsas - ok
14:10:35.0992 0x0e00  [ 537B2948976F5D9B5767B74A63EBB395, 1A14F8B582E74AD15B612EDA5B707AA3CB0B2A107ED14572B4232EAA7383B634 ] aspnet_state    C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe
14:10:36.0007 0x0e00  aspnet_state - ok
14:10:36.0039 0x0e00  [ ADD2ADE1C2B285AB8378D2DAAF991481, 7965A705F37924C0EC7A934E64E89C5DF4069816E2EEA3509E0AC90F78910519 ] AsyncMac        C:\Windows\system32\DRIVERS\asyncmac.sys
14:10:36.0117 0x0e00  AsyncMac - ok
14:10:36.0132 0x0e00  [ 338C86357871C167A96AB976519BF59E, F28CC534523D1701B0552F5D7E18E88369C4218BDB1F69110C3E31D395884AD6 ] atapi           C:\Windows\system32\drivers\atapi.sys
14:10:36.0148 0x0e00  atapi - ok
14:10:36.0179 0x0e00  [ F4157B3CECF19B1C266C83AFF051C97A, 26728B59B6003EB36BC322D189254574E94790CE23637228A669FAD6ED76ECE3 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll
14:10:36.0241 0x0e00  AudioEndpointBuilder - ok
14:10:36.0273 0x0e00  [ F4157B3CECF19B1C266C83AFF051C97A, 26728B59B6003EB36BC322D189254574E94790CE23637228A669FAD6ED76ECE3 ] Audiosrv        C:\Windows\System32\Audiosrv.dll
14:10:36.0288 0x0e00  Audiosrv - ok
14:10:36.0304 0x0e00  [ AF5DA81B19AFA730F1E5246AD81D140A, 532951071F56896A3B5D47874C14D996C8620EA02F87D4BA21B083EC804FB166 ] avgntflt        C:\Windows\system32\DRIVERS\avgntflt.sys
14:10:36.0351 0x0e00  avgntflt - ok
14:10:36.0366 0x0e00  [ A5674637BCA212D9FE136ADFA04C9857, 95F3632EBB041C539816D285EBE1F379D46A4187379C69D4683D9F4DECBDB80C ] avipbb          C:\Windows\system32\DRIVERS\avipbb.sys
14:10:36.0397 0x0e00  avipbb - ok
14:10:36.0429 0x0e00  [ 8E6214E8C6100222BEB6A14F9B908A7E, 268279AE0D87E4B1CC227355DF12B7E8113F8355B1D20447AA723830D706021A ] Avira.OE.ServiceHost C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
14:10:36.0444 0x0e00  Avira.OE.ServiceHost - ok
14:10:36.0460 0x0e00  [ D8C712305F73CD34D1B344810E522728, 49A474FF6CA44E8427D7A8290B47395125B0148AF384CF2B3B1FA495A4718CBA ] avkmgr          C:\Windows\system32\DRIVERS\avkmgr.sys
14:10:36.0491 0x0e00  avkmgr - ok
14:10:36.0522 0x0e00  [ 6E30D02AAC9CAC84F421622E3A2F6178, 229DC527C1D6C778BCA2C855A2A6F6D2C4B0F4F6DE56C886B3AAD26E3347952C ] AxInstSV        C:\Windows\System32\AxInstSV.dll
14:10:36.0585 0x0e00  AxInstSV - ok
14:10:36.0616 0x0e00  [ 1A231ABEC60FD316EC54C66715543CEC, 09E2897BA80737997A286EA5408C03DD3CC0EBACD24CB391C2455B6D4BE7D67E ] b06bdrv         C:\Windows\system32\DRIVERS\bxvbdx.sys
14:10:36.0709 0x0e00  b06bdrv - ok
14:10:36.0741 0x0e00  [ BD8869EB9CDE6BBE4508D869929869EE, F4363A12EBFDBB89C69FD59B22F9EE05BADA07D477A1DF2DE01F59D6EE496543 ] b57nd60x        C:\Windows\system32\DRIVERS\b57nd60x.sys
14:10:36.0787 0x0e00  b57nd60x - ok
14:10:36.0834 0x0e00  [ EE1E9C3BB8228AE423DD38DB69128E71, ED54FD9795F3A4D32F02BED6052AD9404409A05644CDBEBFF19C662D104DA95A ] BDESVC          C:\Windows\System32\bdesvc.dll
14:10:36.0897 0x0e00  BDESVC - ok
14:10:36.0912 0x0e00  [ 505506526A9D467307B3C393DEDAF858, 8AD6F1492E357F57CF42261497BA29122045D4FC0DCC9669AA5AC9B2A4BABFA4 ] Beep            C:\Windows\system32\drivers\Beep.sys
14:10:36.0943 0x0e00  Beep - ok
14:10:36.0990 0x0e00  [ 1E2BAC209D184BB851E1A187D8A29136, 53933C938DA5126986FFF2918C1F522ABE93ABAB460AE32E4453161C2F7B68DF ] BFE             C:\Windows\System32\bfe.dll
14:10:37.0053 0x0e00  BFE - ok
14:10:37.0084 0x0e00  [ E585445D5021971FAE10393F0F1C3961, 178C008A9A0A6BFDA65EB0B98C510271360AD4474F22F13594F5EB60AA4E1CF5 ] BITS            C:\Windows\System32\qmgr.dll
14:10:37.0131 0x0e00  BITS - ok
14:10:37.0146 0x0e00  [ 2287078ED48FCFC477B05B20CF38F36F, 55BCA6174E6034A8D61CBE4126B2F1989F6052BFA624BEA9C0A0A664AEC74521 ] blbdrive        C:\Windows\system32\DRIVERS\blbdrive.sys
14:10:37.0177 0x0e00  blbdrive - ok
14:10:37.0224 0x0e00  [ DB5BEA73EDAF19AC68B2C0FAD0F92B1A, 10F21999FF6B1D410EBF280F7F27DEACA5289739CF12F4293B614B8FC6C88DCC ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe
14:10:37.0255 0x0e00  Bonjour Service - ok
14:10:37.0271 0x0e00  [ 8F2DA3028D5FCBD1A060A3DE64CD6506, E234672E9CFE1A95AD2E78E306E41E010B870221E6EBBC0E2B0BE2FA5CE0CD76 ] bowser          C:\Windows\system32\DRIVERS\bowser.sys
14:10:37.0333 0x0e00  bowser - ok
14:10:37.0349 0x0e00  [ 9F9ACC7F7CCDE8A15C282D3F88B43309, A9131334BD9CF8FD60BA9D54AA054E2DF2BE1219FB650DF1464F2787BDEAE98F ] BrFiltLo        C:\Windows\system32\DRIVERS\BrFiltLo.sys
14:10:37.0411 0x0e00  BrFiltLo - ok
14:10:37.0411 0x0e00  [ 56801AD62213A41F6497F96DEE83755A, 0DEB8318FB47DF6473C171C795C735E26A73FA12232876C6856549EA16F33361 ] BrFiltUp        C:\Windows\system32\DRIVERS\BrFiltUp.sys
14:10:37.0458 0x0e00  BrFiltUp - ok
14:10:37.0474 0x0e00  [ 3DAA727B5B0A45039B0E1C9A211B8400, 903B51E75F0C503A0E255120F53BF51B047B219FEC1E15F2F1D02DDD562FC73B ] Browser         C:\Windows\System32\browser.dll
14:10:37.0521 0x0e00  Browser - ok
14:10:37.0536 0x0e00  [ 845B8CE732E67F3B4133164868C666EA, 9309B094CD9B5EBC46295A5EB806BED472C3CEDE3B5F6F497EBDABA496A2A27F ] Brserid         C:\Windows\System32\Drivers\Brserid.sys
14:10:37.0599 0x0e00  Brserid - ok
14:10:37.0614 0x0e00  [ 203F0B1E73ADADBBB7B7B1FABD901F6B, 782FA7B26940FE479C49C9BAA2EB582CDAAAD607013E9BCFC85E6FBBB7D49A6D ] BrSerWdm        C:\Windows\System32\Drivers\BrSerWdm.sys
14:10:37.0645 0x0e00  BrSerWdm - ok
14:10:37.0661 0x0e00  [ BD456606156BA17E60A04E18016AE54B, DFBDC9DA6A3EA40BACFF204BC6C55C2C122B5885D2CBF6D45054DE43EE15EC4D ] BrUsbMdm        C:\Windows\System32\Drivers\BrUsbMdm.sys
14:10:37.0708 0x0e00  BrUsbMdm - ok
14:10:37.0723 0x0e00  [ AF72ED54503F717A43268B3CC5FAEC2E, 4A638669B0C30B1BDED242A8BF2015A37749570FF4D67D190BACC8D7E0C44468 ] BrUsbSer        C:\Windows\System32\Drivers\BrUsbSer.sys
14:10:37.0755 0x0e00  BrUsbSer - ok
14:10:37.0755 0x0e00  [ ED3DF7C56CE0084EB2034432FC56565A, B5B75E002E7BC0209582C635CCCA26DB569BDB23C33A126634E00C6434BF941B ] BTHMODEM        C:\Windows\system32\DRIVERS\bthmodem.sys
14:10:37.0801 0x0e00  BTHMODEM - ok
14:10:37.0833 0x0e00  [ 1DF19C96EEF6C29D1C3E1A8678E07190, 1F4BB161FF3A1C5B1465BB52F3520FEDB7ACB1FAA132466F07D16DB8E394AEA5 ] bthserv         C:\Windows\system32\bthserv.dll
14:10:37.0864 0x0e00  bthserv - ok
14:10:37.0879 0x0e00  [ 77EA11B065E0A8AB902D78145CA51E10, 160EB3BBE9E5F3CC4A02584E6F2576A812C7565B940D74838B983F1EE51FA73A ] cdfs            C:\Windows\system32\DRIVERS\cdfs.sys
14:10:37.0926 0x0e00  cdfs - ok
14:10:37.0957 0x0e00  [ BE167ED0FDB9C1FA1133953C18D5A6C9, E26A851CA13E7300F977E5B20FA5D25FD0E1442AB6AD5DB58BBDB2DAAD87027C ] cdrom           C:\Windows\system32\drivers\cdrom.sys
14:10:38.0004 0x0e00  cdrom - ok
14:10:38.0035 0x0e00  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] CertPropSvc     C:\Windows\System32\certprop.dll
14:10:38.0051 0x0e00  CertPropSvc - ok
14:10:38.0082 0x0e00  [ 3FE3FE94A34DF6FB06E6418D0F6A0060, 6B3A2A26609A75B690D4C0B3059E40822F3B3DB08943F58EC496BABDA7D0A735 ] circlass        C:\Windows\system32\DRIVERS\circlass.sys
14:10:38.0098 0x0e00  circlass - ok
14:10:38.0129 0x0e00  [ 635181E0E9BBF16871BF5380D71DB02D, 58D5150C6F3B9F1730FFDF3A8A2ABF5FF207F9785BD66C0C1E03A0F1C223A26A ] CLFS            C:\Windows\system32\CLFS.sys
14:10:38.0145 0x0e00  CLFS - ok
14:10:38.0207 0x0e00  [ F13EC8A783E0CB0D6DC26A3CA848B7B8, 0809E3B71709F1343086EEB6C820543C1A7119E74EEF8AC1AEE1F81093ABEC66 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
14:10:38.0238 0x0e00  clr_optimization_v2.0.50727_32 - ok
14:10:38.0269 0x0e00  [ F5AB4D2E36625F355E81539239765107, 48E6AD65EEFD6C54F938F5753EF58377CDA77ADBB41CD8635F0040D61EFB92A4 ] clr_optimization_v4.0.30319_32 C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
14:10:38.0285 0x0e00  clr_optimization_v4.0.30319_32 - ok
14:10:38.0301 0x0e00  [ DEA805815E587DAD1DD2C502220B5616, 2D6A7668C95352B818F5EC59FF462894935833D34190257DA9CAC7E67FD3631C ] CmBatt          C:\Windows\system32\DRIVERS\CmBatt.sys
14:10:38.0347 0x0e00  CmBatt - ok
14:10:38.0363 0x0e00  [ C537B1DB64D495B9B4717B4D6D9EDBF2, 400EEFE662DE117C9CC956E4CBD5E98F28F962E7447CD93E8A78FDD8CA39EB4B ] cmdide          C:\Windows\system32\drivers\cmdide.sys
14:10:38.0394 0x0e00  cmdide - ok
14:10:38.0425 0x0e00  [ F516F1167EFBBC5ABC90687C94497869, AD650D56241533439419EA00236ABE14AB6E50B768620211D1A44047A9FA14EC ] CNG             C:\Windows\system32\Drivers\cng.sys
14:10:38.0488 0x0e00  CNG - ok
14:10:38.0503 0x0e00  [ A6023D3823C37043986713F118A89BEE, FAC239A7FA6251C7EDFFA34B4BAE3910B8BC0BD4A3574B6DB6931A8D691E207B ] Compbatt        C:\Windows\system32\DRIVERS\compbatt.sys
14:10:38.0519 0x0e00  Compbatt - ok
14:10:38.0535 0x0e00  [ CBE8C58A8579CFE5FCCF809E6F114E89, AC083A1C649EBA18C59FCC1772D0784B10E2B8C63094E3C14388E147DBC3F6DF ] CompositeBus    C:\Windows\system32\drivers\CompositeBus.sys
14:10:38.0566 0x0e00  CompositeBus - ok
14:10:38.0581 0x0e00  COMSysApp - ok
14:10:38.0597 0x0e00  [ 2C4EBCFC84A9B44F209DFF6C6E6C61D1, 6FC323217D82EF661BA0E3F949B61B05BB5235D1A69C81D24876C2153FAECEF6 ] crcdisk         C:\Windows\system32\DRIVERS\crcdisk.sys
14:10:38.0613 0x0e00  crcdisk - ok
14:10:38.0644 0x0e00  [ 623E143F2DF17C0106A9988F5D7DC878, 9DA30262FF22FA9F1DB247CB3B4A2892D79730EF0ECC9589D399D24B4F58E565 ] CryptSvc        C:\Windows\system32\cryptsvc.dll
14:10:38.0706 0x0e00  CryptSvc - ok
14:10:38.0737 0x0e00  [ 3C2177A897B4CA2788C6FB0C3FD81D4B, 98575CBD0664586E6211D02E71BDD52CBAA149A1658573550E29E74E5F7B1553 ] CSC             C:\Windows\system32\drivers\csc.sys
14:10:38.0831 0x0e00  CSC - ok
14:10:38.0878 0x0e00  [ 15F93B37F6801943360D9EB42485D5D3, DD6838C6496CB15F8BB57A6596F6A64ADD9C36B09F062295699131232712B558 ] CscService      C:\Windows\System32\cscsvc.dll
14:10:38.0925 0x0e00  CscService - ok
14:10:38.0940 0x0e00  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] DcomLaunch      C:\Windows\system32\rpcss.dll
14:10:39.0003 0x0e00  DcomLaunch - ok
14:10:39.0018 0x0e00  [ 8D6E10A2D9A5EED59562D9B82CF804E1, 888F9650F4E872BA8F4E0C27E38A6672A561042B17EBA40E306A22357965B0AD ] defragsvc       C:\Windows\System32\defragsvc.dll
14:10:39.0049 0x0e00  defragsvc - ok
14:10:39.0081 0x0e00  [ F024449C97EC1E464AAFFDA18593DB88, 7EF1E241892E098A472BCA14C724DFF1AACCF190954AF1C4A38B6D542CC74BD2 ] DfsC            C:\Windows\system32\Drivers\dfsc.sys
14:10:39.0127 0x0e00  DfsC - ok
14:10:39.0174 0x0e00  [ E9E01EB683C132F7FA27CD607B8A2B63, 4D9037B458C522874619143A4176BCED42472C68933E6E83D37B67242706F3C4 ] Dhcp            C:\Windows\system32\dhcpcore.dll
14:10:39.0205 0x0e00  Dhcp - ok
14:10:39.0237 0x0e00  [ 1A050B0274BFB3890703D490F330C0DA, 79D74F4679A2EE040FAAF4D0392A9311239A10A5F8A5CCB48656C6F89B6D62FB ] discache        C:\Windows\system32\drivers\discache.sys
14:10:39.0268 0x0e00  discache - ok
14:10:39.0283 0x0e00  [ 565003F326F99802E68CA78F2A68E9FF, ABC42B24DBA4FFC411120E09278EF26AF56CCAB463B69B4BD6C530B4A07063D2 ] Disk            C:\Windows\system32\DRIVERS\disk.sys
14:10:39.0299 0x0e00  Disk - ok
14:10:39.0330 0x0e00  [ 33EF4861F19A0736B11314AAD9AE28D0, 4C4B84365D85758E3263B88F157D8B086B392C6F1EA5F0F3DB6BF87EF90248EC ] Dnscache        C:\Windows\System32\dnsrslvr.dll
14:10:39.0377 0x0e00  Dnscache - ok
14:10:39.0393 0x0e00  [ 366BA8FB4B7BB7435E3B9EACB3843F67, 65B7C61ACF34F1F0149045AA9E09A3F917A927963237A385A914D0B80551DC31 ] dot3svc         C:\Windows\System32\dot3svc.dll
14:10:39.0455 0x0e00  dot3svc - ok
14:10:39.0486 0x0e00  [ 8EC04CA86F1D68DA9E11952EB85973D6, 2E3FBC2D683D1274E8BC45EEEA87D43B77EDDCAAF0D453296D9FDA6B9D717071 ] DPS             C:\Windows\system32\dps.dll
14:10:39.0533 0x0e00  DPS - ok
14:10:39.0564 0x0e00  [ B918E7C5F9BF77202F89E1A9539F2EB4, C589A37DE50BBEF22E2DAA9682EA43147F614AA1AF7DAAA942BA5FC192313A0B ] drmkaud         C:\Windows\system32\drivers\drmkaud.sys
14:10:39.0720 0x0e00  drmkaud - ok
14:10:39.0783 0x0e00  [ 3583A5A8CC2E682BFFBD4630D0FEC08B, FD0F184B358FCECAA763444B414074BEF4E871EB7527D88385519FC158435C72 ] DXGKrnl         C:\Windows\System32\drivers\dxgkrnl.sys
14:10:39.0829 0x0e00  DXGKrnl - ok
14:10:39.0861 0x0e00  [ CF0A6015F437161698C5B2A0A12CF052, C23A777CF5D34C96B16A4A6197DA3F14CC2F8C56421E422BBD46617C941DBBCE ] e1express       C:\Windows\system32\DRIVERS\e1e6032.sys
14:10:39.0907 0x0e00  e1express - ok
14:10:39.0923 0x0e00  [ 22EF8965101685ADD128F03A2B03CE16, 677F7B32C7A45C26F2F0DB67FFB526E9742E4B3A8BEAEA7B814CBCA2F56D6D5A ] E1G60           C:\Windows\system32\DRIVERS\E1G60I32.sys
14:10:39.0970 0x0e00  E1G60 - ok
14:10:40.0001 0x0e00  [ 8600142FA91C1B96367D3300AD0F3F3A, 5713625E27DF11FAAFDA7AC79899A6AD813166E167088FA990EC5DE87DBE83DF ] EapHost         C:\Windows\System32\eapsvc.dll
14:10:40.0048 0x0e00  EapHost - ok
14:10:40.0157 0x0e00  [ 024E1B5CAC09731E4D868E64DBFB4AB0, AB0826A74BBEE5B7A1B035861B665C79BC98305CFC7D82BEF420558FBD3EE994 ] ebdrv           C:\Windows\system32\DRIVERS\evbdx.sys
14:10:40.0344 0x0e00  ebdrv - ok
14:10:40.0375 0x0e00  [ BF08DE8E4FA1F143D41B3241F7FCE5F6, 4140BE0ECE0D4B8FDD413DBA120F5D7EF6F94628224320EDA2A85E50BEFDA638 ] EFS             C:\Windows\System32\lsass.exe
14:10:40.0438 0x0e00  EFS - ok
14:10:40.0485 0x0e00  [ A8C362018EFC87BEB013EE28F29C0863, 07971C681FBD391C0BA0172618AF8AD77520182207F1C57F134B34D6A113857F ] ehRecvr         C:\Windows\ehome\ehRecvr.exe
14:10:40.0563 0x0e00  ehRecvr - ok
14:10:40.0578 0x0e00  [ D389BFF34F80CAEDE417BF9D1507996A, 12859B9925D7A4631DE61A820922F43F56ED23C2AF014CBF36322685E5CF641E ] ehSched         C:\Windows\ehome\ehsched.exe
14:10:40.0609 0x0e00  ehSched - ok
14:10:40.0641 0x0e00  [ 0ED67910C8C326796FAA00B2BF6D9D3C, 97FAA7627A162B0AEC15545E0165D13355D535B4157604BB87F8EEB72ECD24A8 ] elxstor         C:\Windows\system32\DRIVERS\elxstor.sys
14:10:40.0687 0x0e00  elxstor - ok
14:10:40.0703 0x0e00  [ 8FC3208352DD3912C94367A206AB3F11, 69B65C12BDADD4B730508674B1B77C5496612B4ACCC447DB9AFE49ADEA8CBF02 ] ErrDev          C:\Windows\system32\drivers\errdev.sys
14:10:40.0750 0x0e00  ErrDev - ok
14:10:40.0781 0x0e00  [ F6916EFC29D9953D5D0DF06882AE8E16, ED41893960018D5EC2F7829B1DE4B6967D9FD074D60B11B9EB854E3E0948EC24 ] EventSystem     C:\Windows\system32\es.dll
14:10:40.0828 0x0e00  EventSystem - ok
14:10:40.0828 0x0e00  [ 2DC9108D74081149CC8B651D3A26207F, 75CB47923A867DDAC512701CE71DFCFC340FC3A2E27F4255D0836A1FBC463176 ] exfat           C:\Windows\system32\drivers\exfat.sys
14:10:40.0890 0x0e00  exfat - ok
14:10:40.0906 0x0e00  [ 7E0AB74553476622FB6AE36F73D97D35, 41463A255FDA1D550B3385EC7C73ABC343B1BBBE9CEE4DF9F2A8B3E7338C4947 ] fastfat         C:\Windows\system32\drivers\fastfat.sys
14:10:40.0968 0x0e00  fastfat - ok
14:10:40.0999 0x0e00  [ 967EA5B213E9984CBE270205DF37755B, 43153E23210B03FAE16897D62D55B8742F834EDC695F8401EAB5DE307F62602D ] Fax             C:\Windows\system32\fxssvc.exe
14:10:41.0062 0x0e00  Fax - ok
14:10:41.0077 0x0e00  [ E817A017F82DF2A1F8CFDBDA29388B29, 4CC9320A21E6FEA2D16C48D6BEA14391B695BD541A3C5FDDAEEE086A414FC837 ] fdc             C:\Windows\system32\DRIVERS\fdc.sys
14:10:41.0109 0x0e00  fdc - ok
14:10:41.0124 0x0e00  [ F3222C893BD2F5821A0179E5C71E88FB, A85B947249DBB986358CCD4B158DD58A9301F074F3C6CCCDEF2D01F432E59D1B ] fdPHost         C:\Windows\system32\fdPHost.dll
14:10:41.0155 0x0e00  fdPHost - ok
14:10:41.0171 0x0e00  [ 7DBE8CBFE79EFBDEB98C9FB08D3A9A5B, 0E76C29D2A974A3F2FBFCB63D066D4136B78E02F6B1F579B1865CA7A76193987 ] FDResPub        C:\Windows\system32\fdrespub.dll
14:10:41.0218 0x0e00  FDResPub - ok
14:10:41.0233 0x0e00  [ 6CF00369C97F3CF563BE99BE983D13D8, F65F35324A2FB9DFB533B1C4D089D990CC242218FE83414329D07B786D8EFF33 ] FileInfo        C:\Windows\system32\drivers\fileinfo.sys
14:10:41.0265 0x0e00  FileInfo - ok
14:10:41.0280 0x0e00  [ 42C51DC94C91DA21CB9196EB64C45DB9, 388C68D12ECC8FFE3116FEAAF4DB7B80CF4A3F97E935788DD21C6ADE2369F635 ] Filetrace       C:\Windows\system32\drivers\filetrace.sys
14:10:41.0327 0x0e00  Filetrace - ok
14:10:41.0327 0x0e00  [ 87907AA70CB3C56600F1C2FB8841579B, CA1CD82A1CD453617CE5EA431A1836997F14E3580554E8A516D9FE1E9926D979 ] flpydisk        C:\Windows\system32\DRIVERS\flpydisk.sys
14:10:41.0358 0x0e00  flpydisk - ok
14:10:41.0389 0x0e00  [ 7520EC808E0C35E0EE6F841294316653, 6EC65511B4838A7172A8F89E35C2F9DF4F0BFCE3BE12EDA790F3EB567102FF67 ] FltMgr          C:\Windows\system32\drivers\fltmgr.sys
14:10:41.0421 0x0e00  FltMgr - ok
14:10:41.0467 0x0e00  [ E12C4928B32ACE04610259647F072635, B71B9C2DF45F33C4DAC88435129B08B0BCDBBE82E8C3AD0A95F00137CC8B619F ] FontCache       C:\Windows\system32\FntCache.dll
14:10:41.0561 0x0e00  FontCache - ok
14:10:41.0639 0x0e00  [ E56F39F6B7FDA0AC77A79B0FD3DE1A2F, DBED26852B99B362152DA9CD4F31A1883EF6F9B496F3CF3772A197BA72DB61DA ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
14:10:41.0655 0x0e00  FontCache3.0.0.0 - ok
14:10:41.0670 0x0e00  [ 1A16B57943853E598CFF37FE2B8CBF1D, 87609F46F3B8123552141FD70866E895220B1BBD92BC2B580CAF49201AA0197E ] FsDepends       C:\Windows\system32\drivers\FsDepends.sys
14:10:41.0701 0x0e00  FsDepends - ok
14:10:41.0733 0x0e00  [ 7DAE5EBCC80E45D3253F4923DC424D05, 8A2C4D5591509B0B0A44583520617A9AE34F32BB6E68A012A7D7870ED24F703A ] Fs_Rec          C:\Windows\system32\drivers\Fs_Rec.sys
14:10:41.0748 0x0e00  Fs_Rec - ok
14:10:41.0779 0x0e00  [ E306A24D9694C724FA2491278BF50FDB, 1D246B9C28550640EACBF8CF9DC980FD75106B92832D392FEBEF0C7012353091 ] fvevol          C:\Windows\system32\DRIVERS\fvevol.sys
14:10:41.0811 0x0e00  fvevol - ok
14:10:41.0826 0x0e00  [ 65EE0C7A58B65E74AE05637418153938, 0E1A398ADD8411AF4CCC3344D67BE1B261320C58328BD5C5855A357476FAEBEF ] gagp30kx        C:\Windows\system32\DRIVERS\gagp30kx.sys
14:10:41.0857 0x0e00  gagp30kx - ok
14:10:41.0873 0x0e00  [ 185ADA973B5020655CEE342059A86CBB, D3E352DFAF30761505480A4C557D980083F65EC5BD46E2656B2114D47B272A89 ] GEARAspiWDM     C:\Windows\system32\DRIVERS\GEARAspiWDM.sys
14:10:41.0904 0x0e00  GEARAspiWDM - ok
14:10:41.0951 0x0e00  [ E897EAF5ED6BA41E081060C9B447A673, A428DC68516F19C6C53A8B62E4BDB2587E70FB751B9D77700B6B147D347DA157 ] gpsvc           C:\Windows\System32\gpsvc.dll
14:10:41.0998 0x0e00  gpsvc - ok
14:10:42.0045 0x0e00  [ E1B44A75947137F4143308D566889837, EC7E883E7AF38BF3AC0AC513CFDE0186038443E9ACC7AD616EE6BD0EC09AACB9 ] gupdate         C:\Program Files\Google\Update\GoogleUpdate.exe
14:10:42.0060 0x0e00  gupdate - ok
14:10:42.0076 0x0e00  [ E1B44A75947137F4143308D566889837, EC7E883E7AF38BF3AC0AC513CFDE0186038443E9ACC7AD616EE6BD0EC09AACB9 ] gupdatem        C:\Program Files\Google\Update\GoogleUpdate.exe
14:10:42.0091 0x0e00  gupdatem - ok
14:10:42.0107 0x0e00  [ C44E3C2BAB6837DB337DDEE7544736DB, 88A24FF7D2FECCEAFFD421B2039A0FB623DA47A6B220B80EF1E52DD26D9E222D ] hcw85cir        C:\Windows\system32\drivers\hcw85cir.sys
14:10:42.0169 0x0e00  hcw85cir - ok
14:10:42.0216 0x0e00  [ A5EF29D5315111C80A5C1ABAD14C8972, A181DA72E946F121C3F4A19438C547B0BFD15138AB1DB5465945EC89DF1F6B0A ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys
14:10:42.0247 0x0e00  HdAudAddService - ok
14:10:42.0263 0x0e00  [ 9036377B8A6C15DC2EEC53E489D159B5, 1E56D2ACFE92E6DF96D755B05C63D580EED82C210F075C8623E138BEE6BCD41B ] HDAudBus        C:\Windows\system32\drivers\HDAudBus.sys
14:10:42.0294 0x0e00  HDAudBus - ok
14:10:42.0310 0x0e00  [ 1D58A7F3E11A9731D0EAAAA8405ACC36, 7056FA18B86FBD52C4A6092D80476C02553EA053D6A0BEDB01A2FA5E152D5215 ] HidBatt         C:\Windows\system32\DRIVERS\HidBatt.sys
14:10:42.0341 0x0e00  HidBatt - ok
14:10:42.0357 0x0e00  [ 89448F40E6DF260C206A193A4683BA78, 71E0FCC32AE6FF8DFF420DB0383D6A200E1EAE14BD2E32453F92CE18B31C1F3C ] HidBth          C:\Windows\system32\DRIVERS\hidbth.sys
14:10:42.0388 0x0e00  HidBth - ok
14:10:42.0403 0x0e00  [ CF50B4CF4A4F229B9F3C08351F99CA5E, B97843620AF80FF0EC8F2C438255C0A42A756C6314FAF3DEF415DE16E14C108F ] HidIr           C:\Windows\system32\DRIVERS\hidir.sys
14:10:42.0450 0x0e00  HidIr - ok
14:10:42.0466 0x0e00  [ 2BC6F6A1992B3A77F5F41432CA6B3B6B, 2AF3312F1C8C8923C0A29AA5DAE57CE269417E53DEA2F0CCCC8DB57029698FE1 ] hidserv         C:\Windows\system32\hidserv.dll
14:10:42.0497 0x0e00  hidserv - ok
14:10:42.0513 0x0e00  [ 10C19F8290891AF023EAEC0832E1EB4D, E208553029488A6EE2F5216CC9FE5F93E9931A94C0D0625253BB159E30642853 ] HidUsb          C:\Windows\system32\DRIVERS\hidusb.sys
14:10:42.0575 0x0e00  HidUsb - ok
14:10:42.0591 0x0e00  [ 196B4E3F4CCCC24AF836CE58FACBB699, 7A2E1F603A073421FA0987EFB96647F1F0F2D4E0C82AA62EBC041585DA811DAF ] hkmsvc          C:\Windows\system32\kmsvc.dll
14:10:42.0637 0x0e00  hkmsvc - ok
14:10:42.0653 0x0e00  [ 6658F4404DE03D75FE3BA09F7ABA6A30, E51D9C1580A283EB862F09B73AAE1B647DD683A53F3DD99834222F12DD15E40F ] HomeGroupListener C:\Windows\system32\ListSvc.dll
14:10:42.0715 0x0e00  HomeGroupListener - ok
14:10:42.0731 0x0e00  [ DBC02D918FFF1CAD628ACBE0C0EAA8E8, 02121800D9062692C102475876AE8143EBE46D855E8328B8CDCFE6A2F0D19696 ] HomeGroupProvider C:\Windows\system32\provsvc.dll
14:10:42.0762 0x0e00  HomeGroupProvider - ok
14:10:42.0809 0x0e00  [ 295FDC419039090EB8B49FFDBB374549, 670E8015FD374640C6570F56F7FE8DE4D8F92E7A8072F5D1B2B95D0BD699CEF7 ] HpSAMD          C:\Windows\system32\drivers\HpSAMD.sys
14:10:42.0840 0x0e00  HpSAMD - ok
14:10:42.0871 0x0e00  [ 871917B07A141BFF43D76D8844D48106, 30C702008D0EE57D63F74864967DD19A55A268E77E42B5B3CC73037AD51D2987 ] HTTP            C:\Windows\system32\drivers\HTTP.sys
14:10:42.0918 0x0e00  HTTP - ok
14:10:42.0934 0x0e00  [ 0C4E035C7F105F1299258C90886C64C5, CFB4FBE7B28058E6D3E6E508CF3C1645F6AAE0AFEB4C5364835B9C42311DF0D4 ] hwpolicy        C:\Windows\system32\drivers\hwpolicy.sys
14:10:42.0934 0x0e00  hwpolicy - ok
14:10:42.0965 0x0e00  [ F151F0BDC47F4A28B1B20A0818EA36D6, 84B24B5796D9F70A8C37773F5484A4606CC7908370CCD942627ACBEDC4952D79 ] i8042prt        C:\Windows\system32\drivers\i8042prt.sys
14:10:42.0996 0x0e00  i8042prt - ok
14:10:43.0043 0x0e00  [ 5CD5F9A5444E6CDCB0AC89BD62D8B76E, 72870092A80C6DAE0105025B0ED8B607E98BA81E59298364A7FE4C9C56C68FF0 ] iaStorV         C:\Windows\system32\drivers\iaStorV.sys
14:10:43.0090 0x0e00  iaStorV - ok
14:10:43.0137 0x0e00  [ 3E9213A2A050BF429E91898C90F8B4E3, D80ABE5691087661B19F01927B631CB8C5291120B814B6F863F046E0D643E9E4 ] idsvc           C:\Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\infocard.exe
14:10:43.0246 0x0e00  idsvc - ok
14:10:43.0277 0x0e00  IEEtwCollectorService - ok
14:10:43.0293 0x0e00  [ 4173FF5708F3236CF25195FECD742915, 0A9C0701DF6EAC6602BE342FC13C7950EF04BB5BDF7D96C2C5DABBD2A29AA55D ] iirsp           C:\Windows\system32\DRIVERS\iirsp.sys
14:10:43.0324 0x0e00  iirsp - ok
14:10:43.0371 0x0e00  [ B9C54120F46392100478F58F374E5709, A28EE8B0988F580D5984E815FC78DF41B169260814234AA0E453375542D0957B ] IKEEXT          C:\Windows\System32\ikeext.dll
14:10:43.0417 0x0e00  IKEEXT - ok
14:10:43.0417 0x0e00  [ A0F12F2C9BA6C72F3987CE780E77C130, 5F53DF8BE1621AA7DFB655CFD9C95E0AFA1AD3CE2E290E19D7B7FB3C6E380034 ] intelide        C:\Windows\system32\drivers\intelide.sys
14:10:43.0449 0x0e00  intelide - ok
14:10:43.0464 0x0e00  [ 3B514D27BFC4ACCB4037BC6685F766E0, F12D7AC62F8550E6F33B28AD751D8413AB7FFEF963242D99FFA76CE8A48B027A ] intelppm        C:\Windows\system32\DRIVERS\intelppm.sys
14:10:43.0480 0x0e00  intelppm - ok
14:10:43.0511 0x0e00  [ ACB364B9075A45C0736E5C47BE5CAE19, 202F77C659103D2D0E787B8CB0A23BE32EA5AA2E6B3B0A0F0A8DFA906AB3C0C0 ] IPBusEnum       C:\Windows\system32\ipbusenum.dll
14:10:43.0558 0x0e00  IPBusEnum - ok
14:10:43.0573 0x0e00  [ 709D1761D3B19A932FF0238EA6D50200, 0A9D2C3A6E91CA45540555B40CB4E2DF3EBE98C1D164C4EECEE20C86782F5823 ] IpFilterDriver  C:\Windows\system32\DRIVERS\ipfltdrv.sys
14:10:43.0651 0x0e00  IpFilterDriver - ok
14:10:43.0683 0x0e00  [ 58F67245D041FBE7AF88F4EAF79DF0FA, 67468D6A46FF4D87AD321BFEA42F2FC843D09AA292A119C76D4D795D06028F96 ] iphlpsvc        C:\Windows\System32\iphlpsvc.dll
14:10:43.0729 0x0e00  iphlpsvc - ok
14:10:43.0761 0x0e00  [ 4BD7134618C1D2A27466A099062547BF, 20284ABEF4433A59E2981F4143CAEC67DC990864FE0B9E3DC70EE0B88539E964 ] IPMIDRV         C:\Windows\system32\drivers\IPMIDrv.sys
14:10:43.0792 0x0e00  IPMIDRV - ok
14:10:43.0807 0x0e00  [ A5FA468D67ABCDAA36264E463A7BB0CD, EDB828D596E43372F97DAE1AADA46428C4C45FB80646DDC64FAD5F25C826CF63 ] IPNAT           C:\Windows\system32\drivers\ipnat.sys
14:10:43.0854 0x0e00  IPNAT - ok
14:10:43.0901 0x0e00  [ 39D4F18B4D1B2C72097E74D45D36202C, 822076F946210CCFE76311341D588A5145127F41817EE2DFCDAEDFC8E581CE2B ] iPod Service    C:\Program Files\iPod\bin\iPodService.exe
14:10:43.0932 0x0e00  iPod Service - ok
14:10:43.0948 0x0e00  [ 42996CFF20A3084A56017B7902307E9F, 688176DAB91BE569280E4822E4C5BDE755794D293591C53F8047AD59C441751D ] IRENUM          C:\Windows\system32\drivers\irenum.sys
14:10:43.0979 0x0e00  IRENUM - ok
14:10:43.0995 0x0e00  [ 1F32BB6B38F62F7DF1A7AB7292638A35, 86522358680FBB1CEBC56B4D139290689BB0F71A3EC78CE883E4D75D0B37586F ] isapnp          C:\Windows\system32\drivers\isapnp.sys
14:10:44.0026 0x0e00  isapnp - ok
14:10:44.0057 0x0e00  [ EB34CE31FABD4DC4343FD2AD16D2CAF9, D21C91227A15DA89ECF522345D0AB80B3B7FC24A230596DABDB8BD3B7554CE8C ] iScsiPrt        C:\Windows\system32\drivers\msiscsi.sys
14:10:44.0088 0x0e00  iScsiPrt - ok
14:10:44.0104 0x0e00  [ ADEF52CA1AEAE82B50DF86B56413107E, A3AE1E96B04AC81665ABBD3CB267DFB3F78376DAE18FB0DBD447908DDAAA22D2 ] kbdclass        C:\Windows\system32\DRIVERS\kbdclass.sys
14:10:44.0135 0x0e00  kbdclass - ok
14:10:44.0166 0x0e00  [ 9E3CED91863E6EE98C24794D05E27A71, 90CF59F20E14E4A5A793266805E82BF7AE1F0CF4C7BAB1FD2EEF3B53C5DF770F ] kbdhid          C:\Windows\system32\DRIVERS\kbdhid.sys
14:10:44.0197 0x0e00  kbdhid - ok
14:10:44.0213 0x0e00  [ BF08DE8E4FA1F143D41B3241F7FCE5F6, 4140BE0ECE0D4B8FDD413DBA120F5D7EF6F94628224320EDA2A85E50BEFDA638 ] KeyIso          C:\Windows\system32\lsass.exe
14:10:44.0229 0x0e00  KeyIso - ok
14:10:44.0244 0x0e00  [ EF88BAC2B489D9C46F4E41ACF0219CD0, BF0FAF51BB6D0E588E53E483EF48D8D96B33544113892CC723CDEFAE7E5FB97A ] KSecDD          C:\Windows\system32\Drivers\ksecdd.sys
14:10:44.0275 0x0e00  KSecDD - ok
14:10:44.0291 0x0e00  [ 49D70660EE8266988C1F99A0297A1430, D17B7A3118DB42358DEA80D8A21C5F1B0CC33BF74F6570676D4708B36BB91FD4 ] KSecPkg         C:\Windows\system32\Drivers\ksecpkg.sys
14:10:44.0322 0x0e00  KSecPkg - ok
14:10:44.0353 0x0e00  [ 89A7B9CC98D0D80C6F31B91C0A310FCD, 4583CAEEE0D50C0C7CE955E533FDA063CDC37B69033D41EF22EF1BA242E4C747 ] KtmRm           C:\Windows\system32\msdtckrm.dll
14:10:44.0416 0x0e00  KtmRm - ok
14:10:44.0447 0x0e00  [ D64AF876D53ECA3668BB97B51B4E70AB, D5C07C019BFEAFBEDC29AB5060356A3B07449712B21B50E03378BEF04AF180F9 ] LanmanServer    C:\Windows\system32\srvsvc.dll
14:10:44.0494 0x0e00  LanmanServer - ok
14:10:44.0525 0x0e00  [ 58405E4F68BA8E4057C6E914F326ABA2, C3E6519A1A38F1B3597D4391E42ABFE8F1F5E86256C4B3BD876CDAD9BB68B0A6 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll
14:10:44.0556 0x0e00  LanmanWorkstation - ok
14:10:44.0619 0x0e00  [ 5CF3787D3109D8B7C0A68BDDE0F351E2, 6E942199C4B74E910B706876493E16D1C3487102CC480E8639401A34FB941D88 ] LBTServ         C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
14:10:44.0650 0x0e00  LBTServ - ok
14:10:44.0681 0x0e00  [ 6FD6EE66E95A6539B35E42A3938FFB41, DCC9B6D6C5EE43B9875386FECB2BADF34899EBDC4B180E3C02FD3F075628814E ] LEqdUsb         C:\Windows\system32\Drivers\LEqdUsb.Sys
14:10:44.0697 0x0e00  LEqdUsb - ok
14:10:44.0712 0x0e00  [ 06E86870F3370B1D64882D950FC00B1A, 19E96F05748FE69EA40DF5286733B15BDEA3F2C04812D8853D70AB08DAB97BFA ] LHidEqd         C:\Windows\system32\Drivers\LHidEqd.Sys
14:10:44.0728 0x0e00  LHidEqd - ok
14:10:44.0743 0x0e00  [ B9E077D03FCCD05A8829DC5E0653E60B, 4752C4D77D2E9FFE82F1151289A78EB238F434795655F392BC1B749A7B695B33 ] LHidFilt        C:\Windows\system32\DRIVERS\LHidFilt.Sys
14:10:44.0775 0x0e00  LHidFilt - ok
14:10:44.0806 0x0e00  [ F7611EC07349979DA9B0AE1F18CCC7A6, 879AA7A391966F00761CA039C25EBC62F6712DD5461694911EEC673E12DE103E ] lltdio          C:\Windows\system32\DRIVERS\lltdio.sys
14:10:44.0837 0x0e00  lltdio - ok
14:10:44.0868 0x0e00  [ 5700673E13A2117FA3B9020C852C01E2, 6684A2905EE8C438F2A64BE47E51A54D287B08DEFB8E0AE7FC2809D845EE3C5F ] lltdsvc         C:\Windows\System32\lltdsvc.dll
14:10:44.0899 0x0e00  lltdsvc - ok
14:10:44.0931 0x0e00  [ 55CA01BA19D0006C8F2639B6C045E08B, 4DBBDC820C514DB18CC13F8EE178F8C4E39C295C6E3C255416C235553CE7BDC1 ] lmhosts         C:\Windows\System32\lmhsvc.dll
14:10:44.0962 0x0e00  lmhosts - ok
14:10:44.0977 0x0e00  [ FBB88DD2236B263FF412AA7067BDFEE6, 8F6347B8CE4C5175208D45B60B04878886D955F90B37AFD33E414E795D68D8CC ] LMouFilt        C:\Windows\system32\DRIVERS\LMouFilt.Sys
14:10:45.0009 0x0e00  LMouFilt - ok
14:10:45.0040 0x0e00  [ EB119A53CCF2ACC000AC71B065B78FEF, 1FD60735C4945AE565C223F0B47EAF9602D8777E3D15600914C1A9D761215AF9 ] LSI_FC          C:\Windows\system32\DRIVERS\lsi_fc.sys
14:10:45.0071 0x0e00  LSI_FC - ok
14:10:45.0087 0x0e00  [ 8ADE1C877256A22E49B75D1CC9161F9C, 3D64F233DC866537E50549A7C1A2B40A954055B22F0BDA39825B04C38C607CB7 ] LSI_SAS         C:\Windows\system32\DRIVERS\lsi_sas.sys
14:10:45.0118 0x0e00  LSI_SAS - ok
14:10:45.0118 0x0e00  [ DC9DC3D3DAA0E276FD2EC262E38B11E9, A264990857CBC74036799E17A087130626C0A09BE19879019BAF2D761C62AECC ] LSI_SAS2        C:\Windows\system32\DRIVERS\lsi_sas2.sys
14:10:45.0133 0x0e00  LSI_SAS2 - ok
14:10:45.0149 0x0e00  [ 0A036C7D7CAB643A7F07135AC47E0524, 2F662D07FCB74B8D493156DB555EAA90A47E93CF14C7B30039D2FE47EB8682B8 ] LSI_SCSI        C:\Windows\system32\DRIVERS\lsi_scsi.sys
14:10:45.0165 0x0e00  LSI_SCSI - ok
14:10:45.0180 0x0e00  [ 6703E366CC18D3B6E534F5CF7DF39CEE, 7396B9AF938284D99EC51206A7B2FA4A0DC10A493DCE6707818B03A7473782C4 ] luafv           C:\Windows\system32\drivers\luafv.sys
14:10:45.0211 0x0e00  luafv - ok
14:10:45.0289 0x0e00  [ EEB18645DB3CA244F09821C7D7EC8A6B, 4949C5B59197332086C35DB7D0743861B3903F89468B12C647721CB4B6C0DE96 ] LUsbFilt        C:\Windows\system32\Drivers\LUsbFilt.Sys
14:10:45.0352 0x0e00  LUsbFilt - ok
14:10:45.0430 0x0e00  [ A3F4391DFDF2F9E9FE4EAD193265A5AD, A60A1A345622F4758181FB0B6EE784B0B718105FEE7B0F6FEDE5AD59FE448EE1 ] MBAMProtector   C:\Windows\system32\drivers\mbam.sys
14:10:45.0445 0x0e00  MBAMProtector - ok
14:10:45.0539 0x0e00  [ 0BB29DE40C9D9529793DCDB59A43CF5B, 251001A407D32EF22F64915EEFFAAEC229073C4549BF7D9D1D4209B7D15B4681 ] MBAMScheduler   C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe
14:10:45.0617 0x0e00  MBAMScheduler - ok
14:10:45.0679 0x0e00  [ 5F82D8188B370B0CF185D4AE2B9B4A0E, 549B53DD989A069E1C38347C4CEF5283DF9B428CE102799B06A20D3D8F23825F ] MBAMService     C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe
14:10:45.0726 0x0e00  MBAMService - ok
14:10:45.0757 0x0e00  [ 312CD3307F600E7CD340B79B3DCB3A01, 861A6DFC53C69743129DAAFE73DECDE8D842475503E8D713E7CE5D22AC8D1370 ] MBAMWebAccessControl C:\Windows\system32\drivers\mwac.sys
14:10:45.0789 0x0e00  MBAMWebAccessControl - ok
14:10:45.0820 0x0e00  [ BFB9EE8EE977EFE85D1A3105ABEF6DD1, D2A84EBF0C0B7A14AD432FD2EF43CC12300027AEA3FA4075659FB088AB62B588 ] Mcx2Svc         C:\Windows\system32\Mcx2Svc.dll
14:10:45.0835 0x0e00  Mcx2Svc - ok
14:10:45.0867 0x0e00  [ 0FFF5B045293002AB38EB1FD1FC2FB74, 49071B565FD5B2DE43EC00D8518C3BE70843F38919E82F13104B8C1FAFB20374 ] megasas         C:\Windows\system32\DRIVERS\megasas.sys
14:10:45.0882 0x0e00  megasas - ok
14:10:45.0913 0x0e00  [ DCBAB2920C75F390CAF1D29F675D03D6, 85C3A7A010BEA5E3C6179161B295F2CB900A6A214833A5F87A4327392880E2BB ] MegaSR          C:\Windows\system32\DRIVERS\MegaSR.sys
14:10:45.0929 0x0e00  MegaSR - ok
14:10:45.0945 0x0e00  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] MMCSS           C:\Windows\system32\mmcss.dll
14:10:45.0991 0x0e00  MMCSS - ok
14:10:46.0007 0x0e00  [ F001861E5700EE84E2D4E52C712F4964, F4DC5AEED6F34D76CCEF360862CC47EF71097BE0813C8CE04EE5F0DB387DFFAE ] Modem           C:\Windows\system32\drivers\modem.sys
14:10:46.0038 0x0e00  Modem - ok
14:10:46.0054 0x0e00  [ 79D10964DE86B292320E9DFE02282A23, 52714827B7EEDACA55326A4E4F6158D4942DFAA3BACDE303A2F569BF3F4FAA72 ] monitor         C:\Windows\system32\DRIVERS\monitor.sys
14:10:46.0085 0x0e00  monitor - ok
14:10:46.0101 0x0e00  [ FB18CC1D4C2E716B6B903B0AC0CC0609, F10CCA63493782B16DE6B96B94A27078DBE68AECEF34FDF840CFF86D2C6E3C5E ] mouclass        C:\Windows\system32\DRIVERS\mouclass.sys
14:10:46.0132 0x0e00  mouclass - ok
14:10:46.0147 0x0e00  [ 2C388D2CD01C9042596CF3C8F3C7B24D, B2FB72272BB01AEDA4047B57C943B7E9BD8A6497854F8CC34672AAA592D0A703 ] mouhid          C:\Windows\system32\DRIVERS\mouhid.sys
14:10:46.0163 0x0e00  mouhid - ok
14:10:46.0194 0x0e00  [ FC8771F45ECCCFD89684E38842539B9B, 806DDF2B4830CA866582FE74A521BB7DF26CA0E19013DAF584D3677FB48CC77A ] mountmgr        C:\Windows\system32\drivers\mountmgr.sys
14:10:46.0225 0x0e00  mountmgr - ok
14:10:46.0257 0x0e00  [ 345477F02C308B7480702767218C86A2, 98AFB5CF35BD82BA44B8F52CBC5FA3760506ADD7892C2AA1A77E8DF71FC8523F ] MozillaMaintenance C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
14:10:46.0288 0x0e00  MozillaMaintenance - ok
14:10:46.0303 0x0e00  [ 2D699FB6E89CE0D8DA14ECC03B3EDFE0, D3D903EEA465D77345AAC9B9F02CDEADF4831212EA2DE4FCA33BEE26EBB47420 ] mpio            C:\Windows\system32\drivers\mpio.sys
14:10:46.0335 0x0e00  mpio - ok
14:10:46.0350 0x0e00  [ AD2723A7B53DD1AACAE6AD8C0BFBF4D0, 1D6DCFA0E56C3E55B6AED819176E751502F863BA0FCF4F0B3253A81D208141A2 ] mpsdrv          C:\Windows\system32\drivers\mpsdrv.sys
14:10:46.0413 0x0e00  mpsdrv - ok
14:10:46.0444 0x0e00  [ 9835584E999D25004E1EE8E5F3E3B881, 71798B0CBE9AE69F1F29B845319019C69EC7F415CBABB3B87DDE92C360675021 ] MpsSvc          C:\Windows\system32\mpssvc.dll
14:10:46.0506 0x0e00  MpsSvc - ok
14:10:46.0537 0x0e00  [ 03F899F521D2AAED1C55008F734DF252, 4E56A51476A13F5630719018037B1F63DF9ACEA1CFE782AF04E669BD696954C5 ] MRxDAV          C:\Windows\system32\drivers\mrxdav.sys
14:10:46.0584 0x0e00  MRxDAV - ok
14:10:46.0615 0x0e00  [ 5D16C921E3671636C0EBA3BBAAC5FD25, 5BC107B95CAFC88F51FBB9F657B99944B20627A2B618F263093D7045E4FFD65C ] mrxsmb          C:\Windows\system32\DRIVERS\mrxsmb.sys
14:10:46.0678 0x0e00  mrxsmb - ok
14:10:46.0709 0x0e00  [ 6D17A4791ACA19328C685D256349FEFC, 012AA3D84EEAAF53780D06D2D11B9727DFC3441F3FAD75BC9E751FB814403668 ] mrxsmb10        C:\Windows\system32\DRIVERS\mrxsmb10.sys
14:10:46.0756 0x0e00  mrxsmb10 - ok
14:10:46.0771 0x0e00  [ B81F204D146000BE76651A50670A5E9E, 78193D0F967BE9829E53F9B500342934B4B1E1F4CEFC444382959E2061BC3B17 ] mrxsmb20        C:\Windows\system32\DRIVERS\mrxsmb20.sys
14:10:46.0787 0x0e00  mrxsmb20 - ok
14:10:46.0803 0x0e00  [ 012C5F4E9349E711E11E0F19A8589F0A, 208B92DFCF7AD43202660FBBC9FF5E03AEDBEE38178FF3628EB74CB6CD37C584 ] msahci          C:\Windows\system32\drivers\msahci.sys
14:10:46.0818 0x0e00  msahci - ok
14:10:46.0834 0x0e00  [ 55055F8AD8BE27A64C831322A780A228, C2C9FD1F61302997117B1CD0835E8234405BB80084065ED05363B77868397304 ] msdsm           C:\Windows\system32\drivers\msdsm.sys
14:10:46.0865 0x0e00  msdsm - ok
14:10:46.0881 0x0e00  [ E1BCE74A3BD9902B72599C0192A07E27, 5162EB623FE64E9DFEAC6CA2410EFA1314E62EC13207FFBFED2D61AA887603C4 ] MSDTC           C:\Windows\System32\msdtc.exe
14:10:46.0897 0x0e00  MSDTC - ok
14:10:46.0928 0x0e00  [ DAEFB28E3AF5A76ABCC2C3078C07327F, 6EB558532400B489763BAE7203538DE5F196282A8CB46A1B31D59120FC5AFCEF ] Msfs            C:\Windows\system32\drivers\Msfs.sys
14:10:46.0975 0x0e00  Msfs - ok
14:10:46.0975 0x0e00  [ 3E1E5767043C5AF9367F0056295E9F84, B2EDFECD3C14E4FE1BA87D9A86334043A9BD696A554EBD186DA7EAEB2EBD4F70 ] mshidkmdf       C:\Windows\System32\drivers\mshidkmdf.sys
14:10:47.0021 0x0e00  mshidkmdf - ok
14:10:47.0037 0x0e00  [ 0A4E5757AE09FA9622E3158CC1AEF114, ED574E420E57374E328C7C526504ECA569C164287966F06019EC207CB17F2C54 ] msisadrv        C:\Windows\system32\drivers\msisadrv.sys
14:10:47.0068 0x0e00  msisadrv - ok
14:10:47.0099 0x0e00  [ 90F7D9E6B6F27E1A707D4A297F077828, BEFC220EAA7307849600748842ACB9254A6A91158812D9B23EFAF912C498BA7F ] MSiSCSI         C:\Windows\system32\iscsiexe.dll
14:10:47.0146 0x0e00  MSiSCSI - ok
14:10:47.0146 0x0e00  msiserver - ok
14:10:47.0177 0x0e00  [ 8C0860D6366AAFFB6C5BB9DF9448E631, 949C5A14E57F2D7385543C17C3485E7ADE36EA2016F6E0A1866571D2EDE90A77 ] MSKSSRV         C:\Windows\system32\drivers\MSKSSRV.sys
14:10:47.0209 0x0e00  MSKSSRV - ok
14:10:47.0224 0x0e00  [ 3EA8B949F963562CEDBB549EAC0C11CE, 1B0B2F16A1790282504F3C548D47C3281EFB440D5D9711A1EF76D6371B768D2D ] MSPCLOCK        C:\Windows\system32\drivers\MSPCLOCK.sys
14:10:47.0271 0x0e00  MSPCLOCK - ok
14:10:47.0287 0x0e00  [ F456E973590D663B1073E9C463B40932, 48BA6D5580EE7B6A4C06E04772FD35B51779553FC0DD6C5C30DD8B5DEEB25B11 ] MSPQM           C:\Windows\system32\drivers\MSPQM.sys
14:10:47.0302 0x0e00  MSPQM - ok
14:10:47.0318 0x0e00  [ 0E008FC4819D238C51D7C93E7B41E560, 141FCEBDD05874407EAEC35A9DCD3BB16F2A428F23E55487D6A5DBFCADBF10D2 ] MsRPC           C:\Windows\system32\drivers\MsRPC.sys
14:10:47.0349 0x0e00  MsRPC - ok
14:10:47.0365 0x0e00  [ FC6B9FF600CC585EA38B12589BD4E246, F05DB01AE1955D2468CE6B51E51998B111CA3B0BDEED090EE6B99B625CBA564A ] mssmbios        C:\Windows\system32\drivers\mssmbios.sys
14:10:47.0380 0x0e00  mssmbios - ok
14:10:47.0380 0x0e00  [ B42C6B921F61A6E55159B8BE6CD54A36, 6BB0A7BE005B8F281E551D1B8046CE4202372BC7AE0161881C858BFAC675FE1C ] MSTEE           C:\Windows\system32\drivers\MSTEE.sys
14:10:47.0411 0x0e00  MSTEE - ok
14:10:47.0427 0x0e00  [ 33599130F44E1F34631CEA241DE8AC84, E15B31D1AFDC8DC6D2B21D4215796A99ECC69EEDBB06CEED01AECC3C99A44C8B ] MTConfig        C:\Windows\system32\DRIVERS\MTConfig.sys
14:10:47.0458 0x0e00  MTConfig - ok
14:10:47.0474 0x0e00  [ 159FAD02F64E6381758C990F753BCC80, E55AB01DCFA95ECAB24A2A9656E28FF9D064BA08B3D82DC8AA42F5991BA09598 ] Mup             C:\Windows\system32\Drivers\mup.sys
14:10:47.0505 0x0e00  Mup - ok
14:10:47.0536 0x0e00  [ 61D57A5D7C6D9AFE10E77DAE6E1B445E, D252248532142E9E2332DA693BC51B795102CA938B568FF04981E98B19BFBC5C ] napagent        C:\Windows\system32\qagentRT.dll
14:10:47.0583 0x0e00  napagent - ok
14:10:47.0739 0x0e00  [ 26384429FCD85D83746F63E798AB1480, 957C115C263A4B4DC854558B43ECE632D8E2BCCB744E23A01EBA7476BA2E7FFB ] NativeWifiP     C:\Windows\system32\DRIVERS\nwifi.sys
14:10:47.0833 0x0e00  NativeWifiP - ok
14:10:47.0864 0x0e00  [ 8C9C922D71F1CD4DEF73F186416B7896, 15FF43CD90C7913F83B35F2E7986561584588E8A45196EBD965C3A355836A9C7 ] NDIS            C:\Windows\system32\drivers\ndis.sys
14:10:47.0911 0x0e00  NDIS - ok
14:10:47.0942 0x0e00  [ 0E1787AA6C9191D3D319E8BAFE86F80C, F535022747355B2C66424BDA892D7DCB820C2EB8EE05BAE5BC6D1B1D65186278 ] NdisCap         C:\Windows\system32\DRIVERS\ndiscap.sys
14:10:47.0973 0x0e00  NdisCap - ok
14:10:47.0989 0x0e00  [ E4A8AEC125A2E43A9E32AFEEA7C9C888, 6EA181117126FC70B3C1DD1AC73CC26D1603A2CF49E47F66623E2C9489C49B55 ] NdisTapi        C:\Windows\system32\DRIVERS\ndistapi.sys
14:10:48.0035 0x0e00  NdisTapi - ok
14:10:48.0051 0x0e00  [ D8A65DAFB3EB41CBB622745676FCD072, 874D3C3D247C4A309DA813DB1D2EDB0037D3C489824BD5FE95B0C20699764EF7 ] Ndisuio         C:\Windows\system32\DRIVERS\ndisuio.sys
14:10:48.0098 0x0e00  Ndisuio - ok
14:10:48.0113 0x0e00  [ 38FBE267E7E6983311179230FACB1017, CFD1CBCA59650795C030DB30E5795B37C11C736E14003AE1DAB081BA5C0C9B14 ] NdisWan         C:\Windows\system32\DRIVERS\ndiswan.sys
14:10:48.0160 0x0e00  NdisWan - ok
14:10:48.0176 0x0e00  [ A4BDC541E69674FBFF1A8FF00BE913F2, 18CCFD063E9870B8B6958715BC0414C4D920AE63528EA1E9D7E30F7138918FFA ] NDProxy         C:\Windows\system32\drivers\NDProxy.sys
14:10:48.0223 0x0e00  NDProxy - ok
14:10:48.0238 0x0e00  [ 80B275B1CE3B0E79909DB7B39AF74D51, 75B406B0D9D28239D4EB2A298419A5F78A58237D88C5FD688EF1DFFAFACCF796 ] NetBIOS         C:\Windows\system32\DRIVERS\netbios.sys
14:10:48.0285 0x0e00  NetBIOS - ok
14:10:48.0316 0x0e00  [ 280122DDCF04B378EDD1AD54D71C1E54, F98B2ADE34F7E67C7C06C1D0FFB80ECBC353D044D4B4784CD952910345DC2ED0 ] NetBT           C:\Windows\system32\DRIVERS\netbt.sys
14:10:48.0347 0x0e00  NetBT - ok
14:10:48.0363 0x0e00  [ BF08DE8E4FA1F143D41B3241F7FCE5F6, 4140BE0ECE0D4B8FDD413DBA120F5D7EF6F94628224320EDA2A85E50BEFDA638 ] Netlogon        C:\Windows\system32\lsass.exe
14:10:48.0379 0x0e00  Netlogon - ok
14:10:48.0394 0x0e00  [ 7CCCFCA7510684768DA22092D1FA4DB2, BB9E4F8FABBF596D888E6D303CB54A336D9DFF95B36AEA9369D2ED787DDC4B5D ] Netman          C:\Windows\System32\netman.dll
14:10:48.0441 0x0e00  Netman - ok
14:10:48.0457 0x0e00  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetMsmqActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:10:48.0488 0x0e00  NetMsmqActivator - ok
14:10:48.0519 0x0e00  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetPipeActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:10:48.0535 0x0e00  NetPipeActivator - ok
14:10:48.0566 0x0e00  [ 8C338238C16777A802D6A9211EB2BA50, 0D08A47CD403EDA5E8CAD7409BBBBCDC29A9861D2DC41D42B68B22B1AA1EBDD6 ] netprofm        C:\Windows\System32\netprofm.dll
14:10:48.0597 0x0e00  netprofm - ok
14:10:48.0613 0x0e00  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpActivator C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:10:48.0644 0x0e00  NetTcpActivator - ok
14:10:48.0644 0x0e00  [ E58808846B62041BFB05395E1CED6499, 5387F2CE6B494337725D2BF3EB563912E6EE33918F2872C5FE07BEDBB0F761EE ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
14:10:48.0659 0x0e00  NetTcpPortSharing - ok
14:10:48.0706 0x0e00  [ 1D85C4B390B0EE09C7A46B91EFB2C097, 6A8850B151E88EE371F3CC543A946302DDF9494908D684B8B0C706A42CC54348 ] nfrd960         C:\Windows\system32\DRIVERS\nfrd960.sys
14:10:48.0737 0x0e00  nfrd960 - ok
14:10:48.0753 0x0e00  [ F115C5CD29E512F18BD7138A094B77E5, 90C2CE8B256EE9AABF674ADDE7F85E91DAF48EA368452D03C187A4AE027D4E39 ] NlaSvc          C:\Windows\System32\nlasvc.dll
14:10:48.0800 0x0e00  NlaSvc - ok
14:10:48.0815 0x0e00  [ 1DB262A9F8C087E8153D89BEF3D2235F, A51EE5D5AD3CD76B74BEA9C66C462608BF3B50C53DAA4110A75DB10495A8C101 ] Npfs            C:\Windows\system32\drivers\Npfs.sys
14:10:48.0862 0x0e00  Npfs - ok
14:10:48.0878 0x0e00  [ BA387E955E890C8A88306D9B8D06BF17, 3477BD9686C5777A93251C154512671AAA7533B18C536DF51F7B1D6D28E7F8A5 ] nsi             C:\Windows\system32\nsisvc.dll
14:10:48.0893 0x0e00  nsi - ok
14:10:48.0909 0x0e00  [ E9A0A4D07E53D8FEA2BB8387A3293C58, 690CAD6C4E35ECC1172A2E1FD3933DF73158B3BF42CB21244269612A53DE4D7A ] nsiproxy        C:\Windows\system32\drivers\nsiproxy.sys
14:10:48.0940 0x0e00  nsiproxy - ok
14:10:48.0987 0x0e00  [ C8DFF8D07755A66C7A4A738930F0FEAC, A2CC58312CE57988ABD976155BE91F558DCEC4C23481C6FBE64B361D511A36EA ] Ntfs            C:\Windows\system32\drivers\Ntfs.sys
14:10:49.0081 0x0e00  Ntfs - ok
14:10:49.0096 0x0e00  [ F9756A98D69098DCA8945D62858A812C, 572ADBFCFDE2030B34A013AADC14DBC144EB3F34D06991E2464A3EA9605BC045 ] Null            C:\Windows\system32\drivers\Null.sys
14:10:49.0143 0x0e00  Null - ok
14:10:49.0455 0x0e00  [ 1E3D32DDBE6BBDC0843432BAD599069F, 908893652F953C01E3FFEA19E76154B6246277720B088A61086A9B336B3EC6AD ] nvlddmkm        C:\Windows\system32\DRIVERS\nvlddmkm.sys
14:10:49.0814 0x0e00  nvlddmkm - ok
14:10:49.0861 0x0e00  [ B3E25EE28883877076E0E1FF877D02E0, 402B6FED6FBBF645190396DC141141EF52DD059DABD01F8AC9CF01D23664070C ] nvraid          C:\Windows\system32\drivers\nvraid.sys
14:10:49.0892 0x0e00  nvraid - ok
14:10:49.0907 0x0e00  [ 4380E59A170D88C4F1022EFF6719A8A4, 93EDB3F4CDBF53C9C1970DD29AB146E390695C568180847BA8903F5FBEABCFF2 ] nvstor          C:\Windows\system32\drivers\nvstor.sys
14:10:49.0954 0x0e00  nvstor - ok
14:10:50.0001 0x0e00  [ 5004DAF6A37C5C73FFCF4D3935A6FE87, 52F2149383EC41B18310801FD07C1363EE81C5D1F2B0206460FC7922C00D7A15 ] nvsvc           C:\Windows\system32\nvvsvc.exe
14:10:50.0048 0x0e00  nvsvc - ok
14:10:50.0063 0x0e00  [ 5A0983915F02BAE73267CC2A041F717D, D83461D74597BF2BE042FEFCC27FCD18BF63CB8135B0666D731D50951C3468A8 ] nv_agp          C:\Windows\system32\drivers\nv_agp.sys
14:10:50.0095 0x0e00  nv_agp - ok
14:10:50.0110 0x0e00  [ 08A70A1F2CDDE9BB49B885CB817A66EB, 0BB98123B544124B144F3E95D77E01E973D060B8B2302503FF24ABBBE803EB63 ] ohci1394        C:\Windows\system32\drivers\ohci1394.sys
14:10:50.0126 0x0e00  ohci1394 - ok
14:10:50.0204 0x0e00  [ 2B8E4C792BED0E5882702720BC528AE5, 6D7CB027BC6014CB268C49B46049CDFF3BA94D07102A65BD053335A28E83D125 ] ose             C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
14:10:50.0235 0x0e00  ose - ok
14:10:50.0422 0x0e00  [ EE5756BDA5BE5891270E0CC6CEC44096, EA18073EEE0F461B14C539D49A7DD91D33AB0C503236F67F70A000835FAAC890 ] osppsvc         C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
14:10:50.0594 0x0e00  osppsvc - ok
14:10:50.0625 0x0e00  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] p2pimsvc        C:\Windows\system32\pnrpsvc.dll
14:10:50.0703 0x0e00  p2pimsvc - ok
14:10:50.0719 0x0e00  [ 59C3DDD501E39E006DAC31BF55150D91, E02B63AB7F34CF6FF3F644AF354D10004E6F50014E03172D80BD78934EF71EF1 ] p2psvc          C:\Windows\system32\p2psvc.dll
14:10:50.0734 0x0e00  p2psvc - ok
14:10:50.0765 0x0e00  [ 2EA877ED5DD9713C5AC74E8EA7348D14, 14BA3722CE5F8FF07F2D97DCDD6558EB49C9B02E5E6FAD6D9F18D354733EFECE ] Parport         C:\Windows\system32\DRIVERS\parport.sys
14:10:50.0797 0x0e00  Parport - ok
14:10:50.0812 0x0e00  [ 3F34A1B4C5F6475F320C275E63AFCE9B, 31295D5121C0C3F2085E0EEBA260EEE4CA003993C026E2F81986D19158036E6B ] partmgr         C:\Windows\system32\drivers\partmgr.sys
14:10:50.0843 0x0e00  partmgr - ok
14:10:50.0859 0x0e00  [ EB0A59F29C19B86479D36B35983DAADC, AC09AFE7F13BE4079D01383BAC44091997E1AAF6512C9673A42B9E3780EB08A8 ] Parvdm          C:\Windows\system32\DRIVERS\parvdm.sys
14:10:50.0875 0x0e00  Parvdm - ok
14:10:50.0890 0x0e00  [ 358AB7956D3160000726574083DFC8A6, 6CAFD4D1B8AB8C1D167ADC018985DDAB5AC2CBFFB3434FE6390F14AF50C19025 ] PcaSvc          C:\Windows\System32\pcasvc.dll
14:10:50.0953 0x0e00  PcaSvc - ok
14:10:50.0968 0x0e00  [ 673E55C3498EB970088E812EA820AA8F, 1F81315664B8CBFDD569416C0ECCE4C6251F34577313A0858AB46609781303B5 ] pci             C:\Windows\system32\drivers\pci.sys
14:10:50.0984 0x0e00  pci - ok
14:10:50.0999 0x0e00  [ AFE86F419014DB4E5593F69FFE26CE0A, CAF36E61BE7B511D3A03A65FF5A3017CEE4D2F53005B410F2D4A2AAE9FED4C00 ] pciide          C:\Windows\system32\drivers\pciide.sys
14:10:51.0031 0x0e00  pciide - ok
14:10:51.0062 0x0e00  [ F396431B31693E71E8A80687EF523506, BC614FC21E029E2497F1CCE3131BBD295B827F2310762B47D5BBC7703D80554B ] pcmcia          C:\Windows\system32\DRIVERS\pcmcia.sys
14:10:51.0093 0x0e00  pcmcia - ok
14:10:51.0109 0x0e00  [ 250F6B43D2B613172035C6747AEEB19F, A91F15B133F2619912CF750E6F3662E011CD0FA4B9477CE532CE3196D23307D9 ] pcw             C:\Windows\system32\drivers\pcw.sys
14:10:51.0124 0x0e00  pcw - ok
14:10:51.0155 0x0e00  [ 9E0104BA49F4E6973749A02BF41344ED, B32F39F38DB48D77FBA884DEE34112BAB81CCEF5DD2EAAA12D9589D73D2BB116 ] PEAUTH          C:\Windows\system32\drivers\peauth.sys
14:10:51.0249 0x0e00  PEAUTH - ok
14:10:51.0296 0x0e00  [ AF4D64D2A57B9772CF3801950B8058A6, C9C493A3775E6E1660CE5DF75DA574D0C04245FB88CF41B96217A725359C350D ] PeerDistSvc     C:\Windows\system32\peerdistsvc.dll
14:10:51.0358 0x0e00  PeerDistSvc - ok
14:10:51.0421 0x0e00  [ 414BBA67A3DED1D28437EB66AEB8A720, D6DF254E2615FA402044824DCD9004F579FC0DF74B90E44C99D5F0253CF8AD88 ] pla             C:\Windows\system32\pla.dll
14:10:51.0514 0x0e00  pla - ok
14:10:51.0545 0x0e00  [ EC7BC28D207DA09E79B3E9FAF8B232CA, A42F8F69C3CD753D787A5D558659DEA2CC306C896D75B8C82549219CF654504F ] PlugPlay        C:\Windows\system32\umpnpmgr.dll
14:10:51.0608 0x0e00  PlugPlay - ok
14:10:51.0623 0x0e00  [ 63FF8572611249931EB16BB8EED6AFC8, 9732CCBCB93A7A4BEC88812B952C20244479E9BD781240C195E57F09E619EA33 ] PNRPAutoReg     C:\Windows\system32\pnrpauto.dll
14:10:51.0639 0x0e00  PNRPAutoReg - ok
14:10:51.0670 0x0e00  [ 82A8521DDC60710C3D3D3E7325209BEC, C4E34571EDD57C7FBB3D736B5FE8BD154624705B5C8EA2EC898F19F75B9A5942 ] PNRPsvc         C:\Windows\system32\pnrpsvc.dll
14:10:51.0686 0x0e00  PNRPsvc - ok
14:10:51.0717 0x0e00  [ 53946B69BA0836BD95B03759530C81EC, 7F14A34635354CCA0F5342C8D9DF5A6AA1B94F6A508BD8834029E9BACF252920 ] PolicyAgent     C:\Windows\System32\ipsecsvc.dll
14:10:51.0779 0x0e00  PolicyAgent - ok
14:10:51.0795 0x0e00  [ F87D30E72E03D579A5199CCB3831D6EA, B09328E89954584F97908FA5946376BA990B8C650DABCBF3CA3B08719937C694 ] Power           C:\Windows\system32\umpo.dll
14:10:51.0811 0x0e00  Power - ok
14:10:51.0842 0x0e00  [ 631E3E205AD6D86F2AED6A4A8E69F2DB, 1D3BF0CFC37D91A3A56246920B9CF1084E78A055D56E85A773417809C58C8065 ] PptpMiniport    C:\Windows\system32\DRIVERS\raspptp.sys
14:10:51.0889 0x0e00  PptpMiniport - ok
14:10:51.0904 0x0e00  [ 85B1E3A0C7585BC4AAE6899EC6FCF011, 1E067113C146D6842D7FB04007F363D6FB7783C6BC7C9AB6614E44075C4F86C3 ] Processor       C:\Windows\system32\DRIVERS\processr.sys
14:10:51.0935 0x0e00  Processor - ok
14:10:51.0951 0x0e00  [ FD9692A3D31E021207D3C2A9DDDC2BE3, 5295EFAD9BD4B59996935A41825392C12A4C968D161BEEA37797F90AF8E54229 ] ProfSvc         C:\Windows\system32\profsvc.dll
14:10:52.0013 0x0e00  ProfSvc - ok
14:10:52.0029 0x0e00  [ BF08DE8E4FA1F143D41B3241F7FCE5F6, 4140BE0ECE0D4B8FDD413DBA120F5D7EF6F94628224320EDA2A85E50BEFDA638 ] ProtectedStorage C:\Windows\system32\lsass.exe
14:10:52.0029 0x0e00  ProtectedStorage - ok
14:10:52.0076 0x0e00  [ 6270CCAE2A86DE6D146529FE55B3246A, 463209CBAF1B0E269DC8FC6FBDEE5BB7E5ADB5D3F024930BFD0B97E0A9678883 ] Psched          C:\Windows\system32\DRIVERS\pacer.sys
14:10:52.0107 0x0e00  Psched - ok
14:10:52.0154 0x0e00  [ AB95ECF1F6659A60DDC166D8315B0751, 0ED6D3460D28978BADF31B930DBB3298A6A10EFF8883763EABA0E36A21A0E83D ] ql2300          C:\Windows\system32\DRIVERS\ql2300.sys
14:10:52.0279 0x0e00  ql2300 - ok
14:10:52.0294 0x0e00  [ B4DD51DD25182244B86737DC51AF2270, 7E62B04F054A6330B7F9968222523BDE8F3EE47A11D17E6C0E2D5ACDC07B9E6B ] ql40xx          C:\Windows\system32\DRIVERS\ql40xx.sys
14:10:52.0325 0x0e00  ql40xx - ok
14:10:52.0357 0x0e00  [ 31AC809E7707EB580B2BDB760390765A, A8481FD19A0F778F5591B7676F591F664ADC68B6867E663C0F9564173F4AC909 ] QWAVE           C:\Windows\system32\qwave.dll
14:10:52.0403 0x0e00  QWAVE - ok
14:10:52.0419 0x0e00  [ 584078CA1B95CA72DF2A27C336F9719D, 836F115C92D343463C14A9DE39648C1EFA7C7EE4720F5C692EE0F68B84830121 ] QWAVEdrv        C:\Windows\system32\drivers\qwavedrv.sys
14:10:52.0450 0x0e00  QWAVEdrv - ok
14:10:52.0466 0x0e00  [ 30A81B53C766D0133BB86D234E5556AB, 726C6B83B5ACAA84CAB1689B6DD6DDAE3199D61A57B5D7B5B5A0F62FCF838090 ] RasAcd          C:\Windows\system32\DRIVERS\rasacd.sys
14:10:52.0513 0x0e00  RasAcd - ok
14:10:52.0544 0x0e00  [ 57EC4AEF73660166074D8F7F31C0D4FD, C66B425EC4DB5E7FD289AE631C9B019EB16717C55E80FAE964BB22203E4AACEF ] RasAgileVpn     C:\Windows\system32\DRIVERS\AgileVpn.sys
14:10:52.0591 0x0e00  RasAgileVpn - ok
14:10:52.0606 0x0e00  [ A60F1839849C0C00739787FD5EC03F13, B210DFA5A843CF1DA73635F168E2EA5052CBED15C664F8523CDFB34CA165D0E0 ] RasAuto         C:\Windows\System32\rasauto.dll
14:10:52.0653 0x0e00  RasAuto - ok
14:10:52.0669 0x0e00  [ D9F91EAFEC2815365CBE6D167E4E332A, 8350457A39D141C13807E7DB5A8D4113197C4016F7744B9993391F4AEA0C4A5C ] Rasl2tp         C:\Windows\system32\DRIVERS\rasl2tp.sys
14:10:52.0715 0x0e00  Rasl2tp - ok
14:10:52.0747 0x0e00  [ CB9E04DC05EACF5B9A36CA276D475006, 4D8C0AEF1D4F84F375AD2BAF786C9F6C52316A3E655B913449E71AD7C0FCA56E ] RasMan          C:\Windows\System32\rasmans.dll
14:10:52.0793 0x0e00  RasMan - ok
14:10:52.0809 0x0e00  [ 0FE8B15916307A6AC12BFB6A63E45507, 64119474DE7499E6E8B82E78BBD50074B3AA70B3E8329089FAE9B7F29919004E ] RasPppoe        C:\Windows\system32\DRIVERS\raspppoe.sys
14:10:52.0871 0x0e00  RasPppoe - ok
14:10:52.0903 0x0e00  [ 44101F495A83EA6401D886E7FD70096B, 56A0CE5C89870752B9B2AB795C1A248CA28209E049B2F20CCA0308CBE2488A0A ] RasSstp         C:\Windows\system32\DRIVERS\rassstp.sys
14:10:52.0934 0x0e00  RasSstp - ok
14:10:52.0949 0x0e00  [ D528BC58A489409BA40334EBF96A311B, C71E9A4B101DB6C3183B9F97B9098D73D6FE1B12C05C2EB3CE8A8041BEE6BA61 ] rdbss           C:\Windows\system32\DRIVERS\rdbss.sys
14:10:53.0012 0x0e00  rdbss - ok
14:10:53.0027 0x0e00  [ 0D8F05481CB76E70E1DA06EE9F0DA9DF, 2AFCBE3237D27AFBF095F91F1FCCA63E6890F34A9E4F00E5C34C92394CDA89FB ] rdpbus          C:\Windows\system32\DRIVERS\rdpbus.sys
14:10:53.0059 0x0e00  rdpbus - ok
14:10:53.0074 0x0e00  [ 23DAE03F29D253AE74C44F99E515F9A1, 8FED93D10B2062F0526FE3508101F8FCF8F72DEB90AFB472EB7CBAE83A0EC430 ] RDPCDD          C:\Windows\system32\DRIVERS\RDPCDD.sys
14:10:53.0105 0x0e00  RDPCDD - ok
14:10:53.0137 0x0e00  [ B973FCFC50DC1434E1970A146F7E3885, BE797E5F5AE34D37F8DA1134CE94DD14DBE36D2BC405B97E992E2257848B7CA9 ] RDPDR           C:\Windows\system32\drivers\rdpdr.sys
14:10:53.0199 0x0e00  RDPDR - ok
14:10:53.0230 0x0e00  [ 5A53CA1598DD4156D44196D200C94B8A, 8112FE14FEC94C67B1C5BDE4171E37584F1D0098D2C557C9E4BDD3E0291E25E4 ] RDPENCDD        C:\Windows\system32\drivers\rdpencdd.sys
14:10:53.0261 0x0e00  RDPENCDD - ok
14:10:53.0277 0x0e00  [ 44B0A53CD4F27D50ED461DAE0C0B4E1F, CDA80B08E67AD034081C0C920CD66147689F1844403CBC552F65005E7C011A91 ] RDPREFMP        C:\Windows\system32\drivers\rdprefmp.sys
14:10:53.0308 0x0e00  RDPREFMP - ok
14:10:53.0355 0x0e00  [ 65375DF758CA1872AB7EBBBA457FD5E6, 8AC7681F51277E799C22FF95FA0B833E9E260D37C0416319FF05B66FB3948005 ] RdpVideoMiniport C:\Windows\system32\drivers\rdpvideominiport.sys
14:10:53.0402 0x0e00  RdpVideoMiniport - ok
14:10:53.0433 0x0e00  [ CD9214A6AE17D188D17C3CF8CB9CC693, 2E16FF1F7446F0600D6519010FD05A30B94D97167C16B3E7FC396A97D8139D60 ] RDPWD           C:\Windows\system32\drivers\RDPWD.sys
14:10:53.0480 0x0e00  RDPWD - ok
14:10:53.0527 0x0e00  [ 518395321DC96FE2C9F0E96AC743B656, 5F6A0880B4F3EE7196259EA362DA9554B0687B0236F9A8E5CF7A4A77F01F1776 ] rdyboost        C:\Windows\system32\drivers\rdyboost.sys
14:10:53.0558 0x0e00  rdyboost - ok
14:10:53.0589 0x0e00  [ 7B5E1419717FAC363A31CC302895217A, 048B96B127CC20833948DAE53C59886D5C725ECA7A744424A01339447D2DDC32 ] RemoteAccess    C:\Windows\System32\mprdim.dll
14:10:53.0605 0x0e00  RemoteAccess - ok
14:10:53.0636 0x0e00  [ CB9A8683F4EF2BF99E123D79950D7935, B9FA3E7E91E76D975CF40BFA37909E50F29CC13AB1399007884710651827E9AA ] RemoteRegistry  C:\Windows\system32\regsvc.dll
14:10:53.0667 0x0e00  RemoteRegistry - ok
14:10:53.0683 0x0e00  [ 78D072F35BC45D9E4E1B61895C152234, 80C924EE1156B4E3172E83DCB9C60817E87885FB9377647E0BF90153E415B1CA ] RpcEptMapper    C:\Windows\System32\RpcEpMap.dll
14:10:53.0729 0x0e00  RpcEptMapper - ok
14:10:53.0745 0x0e00  [ 94D36C0E44677DD26981D2BFEEF2A29D, D77A93AC60536F3706E8A0154C0C2199E888B7748C84DB7437254FF175F4DF55 ] RpcLocator      C:\Windows\system32\locator.exe
14:10:53.0761 0x0e00  RpcLocator - ok
14:10:53.0792 0x0e00  [ 7660F01D3B38ACA1747E397D21D790AF, 04611B43705C064C2A8331F6D3F8E4530295694AE2C3E3EC3F62CFF4A5EFA88D ] RpcSs           C:\Windows\system32\rpcss.dll
14:10:53.0823 0x0e00  RpcSs - ok
14:10:53.0870 0x0e00  [ 032B0D36AD92B582D869879F5AF5B928, 0F8F18A6A0A689957B886D9368015889091094EDA18BE532093F06A70A7CE184 ] rspndr          C:\Windows\system32\DRIVERS\rspndr.sys
14:10:53.0917 0x0e00  rspndr - ok
14:10:53.0932 0x0e00  [ 7FA7F2E249A5DCBB7970630E15E1F482, 9633B193F3FDA67BC551C6DCA4788AB83E9F45F77763EE579D02FE5D6B80DEDF ] s3cap           C:\Windows\system32\drivers\vms3cap.sys
14:10:54.0010 0x0e00  s3cap - ok
14:10:54.0010 0x0e00  [ BF08DE8E4FA1F143D41B3241F7FCE5F6, 4140BE0ECE0D4B8FDD413DBA120F5D7EF6F94628224320EDA2A85E50BEFDA638 ] SamSs           C:\Windows\system32\lsass.exe
14:10:54.0026 0x0e00  SamSs - ok
14:10:54.0041 0x0e00  [ 05D860DA1040F111503AC416CCEF2BCA, DAE2F37D09A5A42F945BC8E27E4EA2303521081783A80CEE7FEE7C5A1C2CFC5E ] sbp2port        C:\Windows\system32\drivers\sbp2port.sys
14:10:54.0073 0x0e00  sbp2port - ok
14:10:54.0088 0x0e00  [ 8FC518FFE9519C2631D37515A68009C4, 21E10585470CF9FC3BD1977F8A426686CD2FA6BD2094B9E3594B21C7C4541D25 ] SCardSvr        C:\Windows\System32\SCardSvr.dll
14:10:54.0135 0x0e00  SCardSvr - ok
14:10:54.0151 0x0e00  [ 0693B5EC673E34DC147E195779A4DCF6, AF1B56FBF3ADABF94CD9DBA67586B8746DE135151F6B3D1B0EE315BC1E2DB670 ] scfilter        C:\Windows\system32\DRIVERS\scfilter.sys
14:10:54.0182 0x0e00  scfilter - ok
14:10:54.0244 0x0e00  [ A04BB13F8A72F8B6E8B4071723E4E336, E63287FF71C39CBF64C3347C455324C8437F9CF398153E269543588B65389502 ] Schedule        C:\Windows\system32\schedsvc.dll
14:10:54.0291 0x0e00  Schedule - ok
14:10:54.0307 0x0e00  [ 319C6B309773D063541D01DF8AC6F55F, 182F392FE839499D159A30A3CD04B5D0C87219930BFB1A7456880B7DA75B9820 ] SCPolicySvc     C:\Windows\System32\certprop.dll
14:10:54.0322 0x0e00  SCPolicySvc - ok
14:10:54.0353 0x0e00  [ 08236C4BCE5EDD0A0318A438AF28E0F7, 77727F963F63C4CEC11E7AAD5FB3836179701D512CA9436C3170B9E6A4E5F888 ] SDRSVC          C:\Windows\System32\SDRSVC.dll
14:10:54.0400 0x0e00  SDRSVC - ok
14:10:54.0478 0x0e00  [ D777F1417D9BB9F66CD9D9C3B61F730F, 0CBD830EB9D2B0F1946131F20907793B2D68A3BCEEC3EA5416972149F73DC815 ] SDScannerService C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
14:10:54.0556 0x0e00  SDScannerService - ok
14:10:54.0619 0x0e00  [ 68D6C7F99BC73B88954D844FCCBEB2A0, F746861B103C8BE8EA234B9FCFBBDD2412C79FB65F2F1E0F5E6EBC0B34905FF1 ] SDUpdateService C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
14:10:54.0775 0x0e00  SDUpdateService - ok
14:10:54.0806 0x0e00  [ 9B9B368A8FF5CAF91D7A333CF62CD2CC, A4AE7FFBBAF983BFDE15B521ED162CBC4E6FC85BCDB200C75D45878B3FFDFA68 ] SDWSCService    C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
14:10:54.0821 0x0e00  SDWSCService - ok
14:10:54.0837 0x0e00  [ 90A3935D05B494A5A39D37E71F09A677, F72733A69BC6E1A2BB91D7632FF3463C12563F60FDCC00A2CDD67FF20D479952 ] secdrv          C:\Windows\system32\drivers\secdrv.sys
14:10:54.0868 0x0e00  secdrv - ok
14:10:54.0899 0x0e00  [ A59B3A4442C52060CC7A85293AA3546F, 1776D6DEE51991149265AAF39E17065E301C5FA1FF4068653DC0010B9B27185D ] seclogon        C:\Windows\system32\seclogon.dll
14:10:54.0946 0x0e00  seclogon - ok
14:10:54.0946 0x0e00  [ DCB7FCDCC97F87360F75D77425B81737, F8289AF2C458C167038EEFE613EE5E3D6D5B3308B8784168374BC81C47891CE5 ] SENS            C:\Windows\System32\sens.dll
14:10:54.0977 0x0e00  SENS - ok
14:10:55.0009 0x0e00  [ 50087FE1EE447009C9CC2997B90DE53F, B5E6CF1D991F87C29C5E28198E0962E31FFB499A46C3BD43FC20391693389959 ] SensrSvc        C:\Windows\system32\sensrsvc.dll
14:10:55.0071 0x0e00  SensrSvc - ok
14:10:55.0087 0x0e00  [ 9AD8B8B515E3DF6ACD4212EF465DE2D1, E2F019BCD1446236D078D46065DD151DD068778F33BE2F1E8A0CC1EA2F954E86 ] Serenum         C:\Windows\system32\DRIVERS\serenum.sys
14:10:55.0102 0x0e00  Serenum - ok
14:10:55.0118 0x0e00  [ 5FB7FCEA0490D821F26F39CC5EA3D1E2, A26DB2EB9F3E2509B4EBA949DB97595CC32332D9321DF68283BFC102E66D766F ] Serial          C:\Windows\system32\DRIVERS\serial.sys
14:10:55.0149 0x0e00  Serial - ok
14:10:55.0165 0x0e00  [ 79BFFB520327FF916A582DFEA17AA813, 7A2A9D69BE02228591186A9F4453D4B5FD98837CA422C873C48040170E8BD18C ] sermouse        C:\Windows\system32\DRIVERS\sermouse.sys
14:10:55.0180 0x0e00  sermouse - ok
14:10:55.0212 0x0e00  [ 4AE380F39A0032EAB7DD953030B26D28, C8F5F2DD59574E966FDF3057867BB959A554BAB6FD5DC6F1427094A6BC2B2809 ] SessionEnv      C:\Windows\system32\sessenv.dll
14:10:55.0274 0x0e00  SessionEnv - ok
14:10:55.0305 0x0e00  [ 9F976E1EB233DF46FCE808D9DEA3EB9C, 6A5C53F27F8BCA85CE206EE7D196176F67EC6FFA5D4830373A20792C149B5E75 ] sffdisk         C:\Windows\system32\drivers\sffdisk.sys
14:10:55.0336 0x0e00  sffdisk - ok
14:10:55.0336 0x0e00  [ 932A68EE27833CFD57C1639D375F2731, 11D6B98FBEEE2B9C7B06EF7091857BBD3B349077997D6261D66280668FD1B5C3 ] sffp_mmc        C:\Windows\system32\drivers\sffp_mmc.sys
14:10:55.0368 0x0e00  sffp_mmc - ok
14:10:55.0368 0x0e00  [ 6D4CCAEDC018F1CF52866BBBAA235982, AAC41F5C97B3FE5A3DC0838457EB8CC9BB71FCA16D3EDBB67D603F0A9D46C131 ] sffp_sd         C:\Windows\system32\drivers\sffp_sd.sys
14:10:55.0399 0x0e00  sffp_sd - ok
14:10:55.0414 0x0e00  [ DB96666CC8312EBC45032F30B007A547, C3AE60FC65A36E96E0D2CC6E184481D70F91A19DC3E2E17E2873DD670A592DD7 ] sfloppy         C:\Windows\system32\DRIVERS\sfloppy.sys
14:10:55.0461 0x0e00  sfloppy - ok
14:10:55.0508 0x0e00  [ D1A079A0DE2EA524513B6930C24527A2, E2BC16DBCF38841EECD49C6FA1A9AC89C17F332F12606CA826F058E995E1B83D ] SharedAccess    C:\Windows\System32\ipnathlp.dll
14:10:55.0555 0x0e00  SharedAccess - ok
14:10:55.0586 0x0e00  [ 414DA952A35BF5D50192E28263B40577, 9C9BAFB9880DA6CC728506A142BE124E186219610DCC3460657A3CA93C865DF1 ] ShellHWDetection C:\Windows\System32\shsvcs.dll
14:10:55.0633 0x0e00  ShellHWDetection - ok
14:10:55.0648 0x0e00  [ 2565CAC0DC9FE0371BDCE60832582B2E, 1A775214E86B83C2F1799F12D71077D81C89AD32734A248BA88787B7F104B79D ] sisagp          C:\Windows\system32\drivers\sisagp.sys
14:10:55.0680 0x0e00  sisagp - ok
14:10:55.0711 0x0e00  [ A9F0486851BECB6DDA1D89D381E71055, 7E909538AB758C18AC2CCBFFEE17BA36FA6ED2E674AA70924AA87AC61375FF35 ] SiSRaid2        C:\Windows\system32\DRIVERS\SiSRaid2.sys
14:10:55.0726 0x0e00  SiSRaid2 - ok
14:10:55.0726 0x0e00  [ 3727097B55738E2F554972C3BE5BC1AA, 75D52A596A298C33EC79A3B0B80F25492C08A182ABC679401502DA9597687566 ] SiSRaid4        C:\Windows\system32\DRIVERS\sisraid4.sys
14:10:55.0758 0x0e00  SiSRaid4 - ok
14:10:55.0773 0x0e00  [ 3E21C083B8A01CB70BA1F09303010FCE, 803F8F91299C387110F34A49340E7136AAE91B418E2977A36285EA8F432FF197 ] Smb             C:\Windows\system32\DRIVERS\smb.sys
14:10:55.0820 0x0e00  Smb - ok
14:10:55.0851 0x0e00  [ 6A984831644ECA1A33FFEAE4126F4F37, 753E23D2B33D47C52C05D892B052CFD96D93B97FB6E9FCB58EF1E4C4A125BF78 ] SNMPTRAP        C:\Windows\System32\snmptrap.exe
14:10:55.0867 0x0e00  SNMPTRAP - ok
14:10:55.0898 0x0e00  [ 95CF1AE7527FB70F7816563CBC09D942, CE8BACB91A5A86CBCE82619C6C1873B4D7593B00CED3B522E41B8F7F6258CC65 ] spldr           C:\Windows\system32\drivers\spldr.sys
14:10:55.0914 0x0e00  spldr - ok
14:10:55.0945 0x0e00  [ 9AEA093B8F9C37CF45538382CABA2475, CC63239C412067AA72318ADB8BB80BCDF2CA60DA05D814D32753C92508BC16A8 ] Spooler         C:\Windows\System32\spoolsv.exe
14:10:56.0007 0x0e00  Spooler - ok
14:10:56.0132 0x0e00  [ CF87A1DE791347E75B98885214CED2B8, 7AF4E03D751C951A4E5FBA28200DABFE6B3BF055490163EEEEA84EBA4D0F368A ] sppsvc          C:\Windows\system32\sppsvc.exe
14:10:56.0257 0x0e00  sppsvc - ok
14:10:56.0288 0x0e00  [ B0180B20B065D89232A78A40FE56EAA6, 4D045B23AD58A8822BE9F20119744A8D47455469D54494745CEB099951DA60FF ] sppuinotify     C:\Windows\system32\sppuinotify.dll
14:10:56.0319 0x0e00  sppuinotify - ok
14:10:56.0350 0x0e00  [ E4C2764065D66EA1D2D3EBC28FE99C46, 043AEF06A23069DD17675955C834690A5FD8F1948A05B3969F977E823C4E25F5 ] srv             C:\Windows\system32\DRIVERS\srv.sys
14:10:56.0444 0x0e00  srv - ok
14:10:56.0475 0x0e00  [ 03F0545BD8D4C77FA0AE1CEEDFCC71AB, 4DF31206DF8F33C2975E23C7257ED930C4EDA8BC4E246D8FDA130BB583083ED0 ] srv2            C:\Windows\system32\DRIVERS\srv2.sys
14:10:56.0522 0x0e00  srv2 - ok
14:10:56.0538 0x0e00  [ BE6BD660CAA6F291AE06A718A4FA8ABC, CD38939CFBA80B882D38099194FC1EBAE15A9D27A4D941DD03C55EC745E52E59 ] srvnet          C:\Windows\system32\DRIVERS\srvnet.sys
14:10:56.0569 0x0e00  srvnet - ok
14:10:56.0600 0x0e00  [ D887C9FD02AC9FA880F6E5027A43E118, F38BAD90EC791368C37C21090302708D2DFB83ECE9096609AD9AA667B2E5592E ] SSDPSRV         C:\Windows\System32\ssdpsrv.dll
14:10:56.0631 0x0e00  SSDPSRV - ok
14:10:56.0662 0x0e00  [ A36EE93698802CD899F98BFD553D8185, 224CFED921EA230FF8025D259E34968FD2C0FD34BB3A918FB4B9B8BA42BEA5D3 ] ssmdrv          C:\Windows\system32\DRIVERS\ssmdrv.sys
14:10:56.0694 0x0e00  ssmdrv - ok
14:10:56.0709 0x0e00  [ D318F23BE45D5E3A107469EB64815B50, D74355E6FF215AA8CE53BC9DF16AF2740F2FC2FD754939478A3608BDA8C6DDA0 ] SstpSvc         C:\Windows\system32\sstpsvc.dll
14:10:56.0740 0x0e00  SstpSvc - ok
14:10:56.0803 0x0e00  [ 3BF022F8064A83A23DF90971DD78CA83, 85754DF1C6DE745ADF9A0BAB1948AFF2CA16C4569128DA90AF610D199E621BF4 ] StarMoney 9.0 OnlineUpdate C:\Program Files\StarMoney 9.0\ouservice\StarMoneyOnlineUpdate.exe
14:10:56.0865 0x0e00  StarMoney 9.0 OnlineUpdate - ok
14:10:56.0928 0x0e00  [ 5DA84663B5DC64AF9D5E944D809A6099, C5D427F019081BF93C08391845E7B22A9AFCE7D3A6E6F8EA1F36566F05F9843E ] Stereo Service  C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
14:10:56.0974 0x0e00  Stereo Service - ok
14:10:57.0006 0x0e00  [ DB32D325C192B801DF274BFD12A7E72B, F089DBA719E22BC269720A6B840B873A4AF5639745DB0C3DBC8BD2F2839A1ABA ] stexstor        C:\Windows\system32\DRIVERS\stexstor.sys
14:10:57.0037 0x0e00  stexstor - ok
14:10:57.0068 0x0e00  [ E1FB3706030FB4578A0D72C2FC3689E4, A62EC9AA4514CAF2A10C0A3AEF7A36F593A7E7DA370A3F130C24E1B612E19427 ] StiSvc          C:\Windows\System32\wiaservc.dll
14:10:57.0115 0x0e00  StiSvc - ok
14:10:57.0146 0x0e00  [ 472AF0311073DCECEAA8FA18BA2BDF89, 089414057EB2047E42C96C1ACE79D509967461DC5A4D2836F63C04268637A3FC ] storflt         C:\Windows\system32\drivers\vmstorfl.sys
14:10:57.0177 0x0e00  storflt - ok
14:10:57.0193 0x0e00  [ 0BF669F0A910BEDA4A32258D363AF2A5, 83EEBACDE4F69A2866B69CAA633F5C8B3CB01D88CEDB01B6EA5988E0A25CEE47 ] StorSvc         C:\Windows\system32\storsvc.dll
14:10:57.0240 0x0e00  StorSvc - ok
14:10:57.0255 0x0e00  [ DCAFFD62259E0BDB433DD67B5BB37619, CBD12FF9BBF33D18B0F3D322B12EC62E7DF3BF45C6AD43D2E91FF4C4762E05D0 ] storvsc         C:\Windows\system32\drivers\storvsc.sys
14:10:57.0286 0x0e00  storvsc - ok
14:10:57.0302 0x0e00  [ E58C78A848ADD9610A4DB6D214AF5224, 1575A90EB22A4FB066459BDA00C6CAC10198C3C8C74493721EC6D34B51F50426 ] swenum          C:\Windows\system32\drivers\swenum.sys
14:10:57.0318 0x0e00  swenum - ok
14:10:57.0349 0x0e00  [ A28BD92DF340E57B024BA433165D34D7, 889CC7FF143C3549982128473FF927CD80CF36485A347EF399C1271C8CE12CE4 ] swprv           C:\Windows\System32\swprv.dll
14:10:57.0411 0x0e00  swprv - ok
14:10:57.0411 0x0e00  Synth3dVsc - ok
14:10:57.0458 0x0e00  [ 36650D618CA34C9D357DFD3D89B2C56F, 7C3774E53DCF32CB3A4B3504E32D2A651E18467FA0A6AC4C7993C696741B704B ] SysMain         C:\Windows\system32\sysmain.dll
14:10:57.0520 0x0e00  SysMain - ok
14:10:57.0552 0x0e00  [ 763FECDC3D30C815FE72DD57936C6CD1, 1A62C7E63E426D56894F4121C75D9C60FC9A14469ADBD0D6F0B94B8DE48CDA3E ] TabletInputService C:\Windows\System32\TabSvc.dll
14:10:57.0567 0x0e00  TabletInputService - ok
14:10:57.0598 0x0e00  [ 613BF4820361543956909043A265C6AC, FCFF02E466D2501630B452627FB218C01E5245A0921EE3D2117E7FD63AC7E98E ] TapiSrv         C:\Windows\System32\tapisrv.dll
14:10:57.0645 0x0e00  TapiSrv - ok
14:10:57.0661 0x0e00  [ B799D9FDB26111737F58288D8DC172D9, 409A60819A4305699E2E492A6190637FAAEBD19E745A5DB2A5D6977106C86591 ] TBS             C:\Windows\System32\tbssvc.dll
14:10:57.0708 0x0e00  TBS - ok
14:10:57.0754 0x0e00  [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] Tcpip           C:\Windows\system32\drivers\tcpip.sys
14:10:57.0879 0x0e00  Tcpip - ok
14:10:57.0942 0x0e00  [ 5579DD18546999F5D0EC39D018726C6B, 82432BACEE75C34F21222D9CC1607223C2940947118A63DB239777A4B1442AD3 ] TCPIP6          C:\Windows\system32\DRIVERS\tcpip.sys
14:10:57.0973 0x0e00  TCPIP6 - ok
14:10:58.0004 0x0e00  [ 3EEBD3BD93DA46A26E89893C7AB2FF3B, 2C7204DCD2BCBC6A250FF0F6477616F327AF41FDB7CABE69E5C357361009FB4E ] tcpipreg        C:\Windows\system32\drivers\tcpipreg.sys
14:10:58.0020 0x0e00  tcpipreg - ok
14:10:58.0051 0x0e00  [ 1CB91B2BD8F6DD367DFC2EF26FD751B2, 879E2827354BB21573AC6A7CCEB746D44214540687E6882FFCB4089546FBD954 ] TDPIPE          C:\Windows\system32\drivers\tdpipe.sys
14:10:58.0098 0x0e00  TDPIPE - ok
14:10:58.0113 0x0e00  [ 2C2C5AFE7EE4F620D69C23C0617651A8, E828D974C3F9D7004A030C3AD448096C736FDB4C4C1707D043E567D08C845103 ] TDTCP           C:\Windows\system32\drivers\tdtcp.sys
14:10:58.0144 0x0e00  TDTCP - ok
14:10:58.0160 0x0e00  [ 7FE680A3DFA421C4A8E4879AE4C5AAB0, A4C64E155AB2843823CD3586756BA7681CFDEA50812095468221503BBAD30DCD ] tdx             C:\Windows\system32\DRIVERS\tdx.sys
14:10:58.0222 0x0e00  tdx - ok
14:10:58.0238 0x0e00  [ 04DBF4B01EA4BF25A9A3E84AFFAC9B20, 0D81B427720637882077C5024D738191F858FC734ED040697872D906351EF663 ] TermDD          C:\Windows\system32\drivers\termdd.sys
14:10:58.0269 0x0e00  TermDD - ok
14:10:58.0316 0x0e00  [ FCFD4F50419B4BC72E80066DA10D2E54, 7C2314A57A404525F0444986332DBAE0964A3359374671598387051D7AAE72AE ] TermService     C:\Windows\System32\termsrv.dll
14:10:58.0378 0x0e00  TermService - ok
14:10:58.0410 0x0e00  [ 42FB6AFD6B79D9FE07381609172E7CA4, B57C85091209A2FAD19ED490B8FA7FC98F12911F9C9CACE9AF1E540780CE6700 ] Themes          C:\Windows\system32\themeservice.dll
14:10:58.0441 0x0e00  Themes - ok
14:10:58.0456 0x0e00  [ 146B6F43A673379A3C670E86D89BE5EA, C4412DCF80DE6B55466F399413271364F14BC0819C224AA161EDDC31A9775440 ] THREADORDER     C:\Windows\system32\mmcss.dll
14:10:58.0472 0x0e00  THREADORDER - ok
14:10:58.0488 0x0e00  [ 4792C0378DB99A9BC2AE2DE6CFFF0C3A, 532A3A812578B2DFD83001DE66FC73689D79EC729409EB572E07E6D65B281712 ] TrkWks          C:\Windows\System32\trkwks.dll
14:10:58.0519 0x0e00  TrkWks - ok
14:10:58.0550 0x0e00  [ 2C49B175AEE1D4364B91B531417FE583, 6C7995E18F84E465C376D1D5F153C15ACB66CDEA86EE5BF186677F572E7E129B ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe
14:10:58.0581 0x0e00  TrustedInstaller - ok
14:10:58.0612 0x0e00  [ 6C5139E4283249518F7743D7043775B3, 58684E8C90EBAC65459A97C905CDCFE3A915CFF7E8E96071DE1AC3489F85E67F ] tssecsrv        C:\Windows\system32\DRIVERS\tssecsrv.sys
14:10:58.0628 0x0e00  tssecsrv - ok
14:10:58.0659 0x0e00  [ C6A5FBD4977305E1FA23E02C042DB463, A6EB5E4B8051A258D40A385609E930318EAA3494C8466F48542B806FE6A7C47A ] TsUsbFlt        C:\Windows\system32\drivers\tsusbflt.sys
14:10:58.0690 0x0e00  TsUsbFlt - ok
14:10:58.0690 0x0e00  tsusbhub - ok
14:10:58.0815 0x0e00  [ 0374C25E4893C17E9FF4BF8DB09F0F48, C4EE073181A7D0F060154A28A310C4E939E99016658145560BD4B74B20792FA0 ] TuneUp.UtilitiesSvc C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe
14:10:58.0893 0x0e00  TuneUp.UtilitiesSvc - ok
14:10:58.0924 0x0e00  [ E5049C43601473B5A909058596111229, 96CFE481F767C66FA2877594384086C1BE8B2BADBF12DBF4CB72CF73898D0876 ] TuneUpUtilitiesDrv C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys
14:10:58.0940 0x0e00  TuneUpUtilitiesDrv - ok
14:10:58.0971 0x0e00  [ B2FA25D9B17A68BB93D58B0556E8C90D, 0146931B733CAB1CD87F94C35F97E110D6ED6C55EAFF03345400A29AEDE99BDE ] tunnel          C:\Windows\system32\DRIVERS\tunnel.sys
14:10:59.0065 0x0e00  tunnel - ok
14:10:59.0080 0x0e00  [ 750FBCB269F4D7DD2E420C56B795DB6D, E1A95C59148FE463539C34336FD0E74B31A33B8AB2B8E34AA10349C3347471D7 ] uagp35          C:\Windows\system32\DRIVERS\uagp35.sys
14:10:59.0112 0x0e00  uagp35 - ok
14:10:59.0143 0x0e00  [ EE43346C7E4B5E63E54F927BABBB32FF, BAD6FC3BEE45E644D5A6A0A31428F5B2AEC72A0AA0C74EF8177B1FE23EEF3AA9 ] udfs            C:\Windows\system32\DRIVERS\udfs.sys
14:10:59.0190 0x0e00  udfs - ok
14:10:59.0205 0x0e00  [ 8344FD4FCE927880AA1AA7681D4927E5, 1B54EFA60A221E2B9FFE59BB41C7E7D8B5AC6826F1C5577456D81371D464255A ] UI0Detect       C:\Windows\system32\UI0Detect.exe
14:10:59.0252 0x0e00  UI0Detect - ok
14:10:59.0268 0x0e00  [ 44E8048ACE47BEFBFDC2E9BE4CBC8880, 5D96D90FDF68AE470CC92CA9DF9DA2C05A53EF455A5A109DBBF7C96F3238257C ] uliagpkx        C:\Windows\system32\drivers\uliagpkx.sys
14:10:59.0283 0x0e00  uliagpkx - ok
14:10:59.0314 0x0e00  [ D295BED4B898F0FD999FCFA9B32B071B, D4130DB4AE76EE6DC0B8E7A4FEF5CB8B26EBD822C21021F6FA78FD29C1E211C2 ] umbus           C:\Windows\system32\drivers\umbus.sys
14:10:59.0346 0x0e00  umbus - ok
14:10:59.0377 0x0e00  [ 7550AD0C6998BA1CB4843E920EE0FEAC, 24C001E422C3B3B920CDCF6003A3179CE464DE4284775403DD5122EF9780460D ] UmPass          C:\Windows\system32\DRIVERS\umpass.sys
14:10:59.0392 0x0e00  UmPass - ok
14:10:59.0408 0x0e00  [ 409994A8EACEEE4E328749C0353527A0, FFC57B647147DE2957A7DE4B330CC534DE7AC892A2FCE3BB164F7A516CAB1B56 ] UmRdpService    C:\Windows\System32\umrdp.dll
14:10:59.0439 0x0e00  UmRdpService - ok
14:10:59.0470 0x0e00  [ 833FBB672460EFCE8011D262175FAD33, C0C3067A305993CBF056C229771CB0593DD60C9C7AC5130FF1CA610BCA812AB5 ] upnphost        C:\Windows\System32\upnphost.dll
14:10:59.0517 0x0e00  upnphost - ok
14:10:59.0564 0x0e00  [ EC1C23779BB41A8B2AB2AA6FCE308BDE, D027A2B472CAE97AECB16F69BE52E06CB61E1C61AE196C22662050B711C1C72D ] USBAAPL         C:\Windows\system32\Drivers\usbaapl.sys
14:10:59.0626 0x0e00  USBAAPL - ok
14:10:59.0658 0x0e00  [ 0803FBA9FE829D61AE26EC0BCC910C46, 30D00E2C7DFC630C99C1599587D4F9C272BC30D444E07C961AA05BF84587806B ] usbccgp         C:\Windows\system32\DRIVERS\usbccgp.sys
14:10:59.0704 0x0e00  usbccgp - ok
14:10:59.0736 0x0e00  [ 2352AB5F9F8F097BF9D41D5A4718A041, 25BC7828C625B9B2A5110C25B230C5828CEC18EC97ECF9EC4745E8930CBF472C ] usbcir          C:\Windows\system32\drivers\usbcir.sys
14:10:59.0782 0x0e00  usbcir - ok
14:10:59.0798 0x0e00  [ D40855F89B69305140BBD7E9A3BA2DA6, 745DC6D770666F6B19C2B6AA89C21D1A314732E291453BFA2367F9AF86F97C3C ] usbehci         C:\Windows\system32\DRIVERS\usbehci.sys
14:10:59.0829 0x0e00  usbehci - ok
14:10:59.0845 0x0e00  [ EDF2DF71C4F1E13A6AC75F5224DE655A, 1764D155C6B99201774B57195349304259232A12868ECFC2069CA49443EBDC2C ] usbhub          C:\Windows\system32\DRIVERS\usbhub.sys
14:10:59.0892 0x0e00  usbhub - ok
14:10:59.0907 0x0e00  [ 9828C8D14CC2676421778F0DE638CF97, 479A28211FFB85190A01FAB0283B927588805D2C0CDB03F85F8F814B88E4F453 ] usbohci         C:\Windows\system32\drivers\usbohci.sys
14:10:59.0938 0x0e00  usbohci - ok
14:10:59.0954 0x0e00  [ 797D862FE0875E75C7CC4C1AD7B30252, 1BBE745E4C85F8911076F6032ACD7A35FAC048D3CB1500C64E08D8B2C70A1069 ] usbprint        C:\Windows\system32\DRIVERS\usbprint.sys
14:11:00.0001 0x0e00  usbprint - ok
14:11:00.0016 0x0e00  [ F991AB9CC6B908DB552166768176896A, AD8E7A16B23B244B7F834622D4E38B5844193C6E31EF96F61E0E2EA16C945026 ] USBSTOR         C:\Windows\system32\drivers\USBSTOR.SYS
14:11:00.0063 0x0e00  USBSTOR - ok
14:11:00.0079 0x0e00  [ 800AABFD625EEFF899F7E5496BDE37AB, 3EB7ED07760CB348FCA9A06C2B838EF79B51A83C5F70A9C9EAAEAE54480067E2 ] usbuhci         C:\Windows\system32\DRIVERS\usbuhci.sys
14:11:00.0126 0x0e00  usbuhci - ok
14:11:00.0141 0x0e00  [ 081E6E1C91AEC36758902A9F727CD23C, 9FDAA17A3B99067E035E5D76305427F15FFDBC5D304B2BB78AFC6463EDDE1A75 ] UxSms           C:\Windows\System32\uxsms.dll
14:11:00.0172 0x0e00  UxSms - ok
14:11:00.0204 0x0e00  [ 8247E12200B6FA11A87BCD8CEADD4D5E, 191FA4B712E872B087BB917B9E571010E459084410D681551C28F785EB42FDAA ] UxTuneUp        C:\Windows\System32\uxtuneup.dll
14:11:00.0235 0x0e00  UxTuneUp - ok
14:11:00.0250 0x0e00  [ BF08DE8E4FA1F143D41B3241F7FCE5F6, 4140BE0ECE0D4B8FDD413DBA120F5D7EF6F94628224320EDA2A85E50BEFDA638 ] VaultSvc        C:\Windows\system32\lsass.exe
14:11:00.0266 0x0e00  VaultSvc - ok
14:11:00.0282 0x0e00  [ A059C4C3EDB09E07D21A8E5C0AABD3CB, BDD3729B49DF2E2FC72FFEF9D10235B481A671DE5A721B6B9A80873B7A343F07 ] vdrvroot        C:\Windows\system32\drivers\vdrvroot.sys
14:11:00.0313 0x0e00  vdrvroot - ok
14:11:00.0344 0x0e00  [ C3CD30495687C2A2F66A65CA6FD89BE9, 582E4706C1D6A151020D14B26C7BF166F4E42BDD6E410F30EC452469270C5E9B ] vds             C:\Windows\System32\vds.exe
14:11:00.0406 0x0e00  vds - ok
14:11:00.0422 0x0e00  [ 17C408214EA61696CEC9C66E388B14F3, 829C0416672E2B2DFABCFE641E7F281F41E8DBB3C0EF11C7784CB9BB94F87E97 ] vga             C:\Windows\system32\DRIVERS\vgapnp.sys
14:11:00.0453 0x0e00  vga - ok
14:11:00.0469 0x0e00  [ 8E38096AD5C8570A6F1570A61E251561, 4DBA3C1397A2203548F45F006E66D99F837903F601ABBCE2304754F783CA8A39 ] VgaSave         C:\Windows\System32\drivers\vga.sys
14:11:00.0500 0x0e00  VgaSave - ok
14:11:00.0500 0x0e00  VGPU - ok
14:11:00.0531 0x0e00  [ 5461686CCA2FDA57B024547733AB42E3, 2721D0659AA890172FCAD4EC4D926B58ACD0EE4887DA51545DC7237420D5BF84 ] vhdmp           C:\Windows\system32\drivers\vhdmp.sys
14:11:00.0547 0x0e00  vhdmp - ok
14:11:00.0578 0x0e00  [ C829317A37B4BEA8F39735D4B076E923, 55D1796AE750071E1E05BD7702B6C355CCFFE27B4C00E93E7044C3184732B497 ] viaagp          C:\Windows\system32\drivers\viaagp.sys
14:11:00.0609 0x0e00  viaagp - ok
14:11:00.0609 0x0e00  [ E02F079A6AA107F06B16549C6E5C7B74, B530DCE3EE4F285B3D5F69F7148D17E016D54F04E6F93706B829A34567748788 ] ViaC7           C:\Windows\system32\DRIVERS\viac7.sys
14:11:00.0656 0x0e00  ViaC7 - ok
14:11:00.0672 0x0e00  [ E43574F6A56A0EE11809B48C09E4FD3C, 3687BF638E21C00E62ABFED70D728B91ADA08F7164CA898E654F31DA196589E9 ] viaide          C:\Windows\system32\drivers\viaide.sys
14:11:00.0734 0x0e00  viaide - ok
14:11:00.0765 0x0e00  [ C2F2911156FDC7817C52829C86DA494E, FE499F189B5016FCE0018AA3DE3970B72275B7B15F3D4D608117F6DDEC6B90DC ] vmbus           C:\Windows\system32\drivers\vmbus.sys
14:11:00.0828 0x0e00  vmbus - ok
14:11:00.0828 0x0e00  [ D4D77455211E204F370D08F4963063CE, 2018B2A84C73E0834200A594C02A9D28C74906F126DAD3CCDDFC9CD9A61669E2 ] VMBusHID        C:\Windows\system32\drivers\VMBusHID.sys
14:11:00.0874 0x0e00  VMBusHID - ok
14:11:00.0874 0x0e00  [ 4C63E00F2F4B5F86AB48A58CD990F212, 9796BD4B9CFEEEAF57C5E332A732EFC2770B21F9B35301A5D202F5FC52C1E035 ] volmgr          C:\Windows\system32\drivers\volmgr.sys
14:11:00.0906 0x0e00  volmgr - ok
14:11:00.0937 0x0e00  [ B5BB72067DDDDBBFB04B2F89FF8C3C87, 65B9AD55F43940A5FDD88B6EC5034A7E375DF8E6F5F1AE6519A4BD6B7E992EBC ] volmgrx         C:\Windows\system32\drivers\volmgrx.sys
14:11:00.0968 0x0e00  volmgrx - ok
14:11:00.0984 0x0e00  [ F497F67932C6FA693D7DE2780631CFE7, DAE544ED99D2CF570DA31343BD87D2F856D0D13529656D38E1BF854C77F017F6 ] volsnap         C:\Windows\system32\drivers\volsnap.sys
14:11:01.0077 0x0e00  volsnap - ok
14:11:01.0108 0x0e00  [ 9DFA0CC2F8855A04816729651175B631, 37FD9E43A2A3F125E94A315FB4CD8A1B5499A5FD74806EB2D1E5DA88C070D3A3 ] vsmraid         C:\Windows\system32\DRIVERS\vsmraid.sys
14:11:01.0140 0x0e00  vsmraid - ok
14:11:01.0202 0x0e00  [ 209A3B1901B83AEB8527ED211CCE9E4C, 1A431F6409F8E0531F600F8F988ECECECB902DA26BBAAF1DE74A5CAC29A7CB44 ] VSS             C:\Windows\system32\vssvc.exe
14:11:01.0264 0x0e00  VSS - ok
14:11:01.0264 0x0e00  [ 90567B1E658001E79D7C8BBD3DDE5AA6, EFC23BEEA7F54A2DC56CB523DAD1AF0358D904C5278BF08873910E2DB3F13557 ] vwifibus        C:\Windows\System32\drivers\vwifibus.sys
14:11:01.0311 0x0e00  vwifibus - ok
14:11:01.0342 0x0e00  [ 55187FD710E27D5095D10A472C8BAF1C, AE298E2D3BA366BCBDC092C717214C181E8843FA564A6DFB07FC3238A5A68DC3 ] W32Time         C:\Windows\system32\w32time.dll
14:11:01.0405 0x0e00  W32Time - ok
14:11:01.0436 0x0e00  [ DE3721E89C653AA281428C8A69745D90, 501C78056ED4295625D8A5412025FD2F0CA24077044D3A5800BA79DF3D946516 ] WacomPen        C:\Windows\system32\DRIVERS\wacompen.sys
14:11:01.0467 0x0e00  WacomPen - ok
14:11:01.0483 0x0e00  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] WANARP          C:\Windows\system32\DRIVERS\wanarp.sys
14:11:01.0514 0x0e00  WANARP - ok
14:11:01.0514 0x0e00  [ 3C3C78515F5AB448B022BDF5B8FFDD2E, 35284174A42039C3C1FF8A3C8BC187A5E067C7782FC62D19749C2CB28C4E36C7 ] Wanarpv6        C:\Windows\system32\DRIVERS\wanarp.sys
14:11:01.0545 0x0e00  Wanarpv6 - ok
14:11:01.0576 0x0e00  [ 691E3285E53DCA558E1A84667F13E15A, 12EDB66EF8FC100402BEA221F354D3BD5542F6DDF715B6E7D873D6BAE7E3D329 ] wbengine        C:\Windows\system32\wbengine.exe
14:11:01.0826 0x0e00  wbengine - ok
14:11:01.0873 0x0e00  [ 9614B5D29DC76AC3C29F6D2D3AA70E67, A2FFB92F0030B4CD771E862DA575ECCF2F3A5B4B85858C1241A0C59262C0EC88 ] WbioSrvc        C:\Windows\System32\wbiosrvc.dll
14:11:01.0920 0x0e00  WbioSrvc - ok
14:11:01.0951 0x0e00  [ 34EEE0DFAADB4F691D6D5308A51315DC, A040A03E25A0C78B9E26F86C2DF95BCAF8E7EC90183CEB295615D3265350EBEE ] wcncsvc         C:\Windows\System32\wcncsvc.dll
14:11:01.0998 0x0e00  wcncsvc - ok
14:11:02.0013 0x0e00  [ 5D930B6357A6D2AF4D7653BDABBF352F, 677FF2ED14EE0B0CAA710DA81556CC16D5971DAB10E7C7432D167A87CA6F0EAA ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll
14:11:02.0060 0x0e00  WcsPlugInService - ok
14:11:02.0076 0x0e00  [ 1112A9BADACB47B7C0BB0392E3158DFF, 1AE2AFA125973571F91E6945FE8A735F63D76EBB250A0075D98C580167FD9ED4 ] Wd              C:\Windows\system32\DRIVERS\wd.sys
14:11:02.0107 0x0e00  Wd - ok
14:11:02.0138 0x0e00  [ 25944D2CC49E0A6C581D02A74B7D6645, AF8FFAFEC07F1A6A3D4008E609E8E1D705A8DFCC7995C766E3946887203F7BEE ] Wdf01000        C:\Windows\system32\drivers\Wdf01000.sys
14:11:02.0185 0x0e00  Wdf01000 - ok
14:11:02.0216 0x0e00  [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiServiceHost  C:\Windows\system32\wdi.dll
14:11:02.0263 0x0e00  WdiServiceHost - ok
14:11:02.0263 0x0e00  [ DDE994E9159497D0D5AB2CDF66D1EAD6, 49BEDECA469C47E7622542D3B9BCD31ECDDAA27838495EC5C2F1338E33FEA877 ] WdiSystemHost   C:\Windows\system32\wdi.dll
14:11:02.0278 0x0e00  WdiSystemHost - ok
14:11:02.0294 0x0e00  [ 75E8EBD7040CE238684333F97014762A, 2CA0B267FBAEB303D1F8B639D733DC0DE17BA1276CC9096035B4F2BBBED3EF7F ] WebClient       C:\Windows\System32\webclnt.dll
14:11:02.0341 0x0e00  WebClient - ok
14:11:02.0372 0x0e00  [ 760F0AFE937A77CFF27153206534F275, A53940BA28854486FF18F16B98A3314B36322B0B6EFB54D08B921315BEB0ADD5 ] Wecsvc          C:\Windows\system32\wecsvc.dll
14:11:02.0403 0x0e00  Wecsvc - ok
14:11:02.0419 0x0e00  [ AC804569BB2364FB6017370258A4091B, 1856F354146A5946F3E7D0DD09726FC8A3502B0F0776FEADDF10669C81CC28E2 ] wercplsupport   C:\Windows\System32\wercplsupport.dll
14:11:02.0466 0x0e00  wercplsupport - ok
14:11:02.0497 0x0e00  [ 08E420D873E4FD85241EE2421B02C4A4, E1E9436EB096FF7DE9A76DA6217035257EF9FC7565DDB9016DCA3859E7F1EF0F ] WerSvc          C:\Windows\System32\WerSvc.dll
14:11:02.0528 0x0e00  WerSvc - ok
14:11:02.0544 0x0e00  [ 8B9A943F3B53861F2BFAF6C186168F79, 88E2F79F32AFBA17CB8377A508B83A1EC2315E9F3A365F591C87FE4525AA6713 ] WfpLwf          C:\Windows\system32\DRIVERS\wfplwf.sys
14:11:02.0575 0x0e00  WfpLwf - ok
14:11:02.0590 0x0e00  [ 5CF95B35E59E2A38023836FFF31BE64C, CEA21302B3E855EE592810D4E0DE10E47A47A393064C435463CD54598735CD8D ] WIMMount        C:\Windows\system32\drivers\wimmount.sys
14:11:02.0606 0x0e00  WIMMount - ok
14:11:02.0668 0x0e00  [ 082CF481F659FAE0DE51AD060881EB47, BB67D2AF0BB9192D4CCF66C23D80CE5A1B38715556D94E2561DBF8F805FA30A5 ] WinDefend       C:\Program Files\Windows Defender\mpsvc.dll
14:11:02.0731 0x0e00  WinDefend - ok
14:11:02.0746 0x0e00  WinHttpAutoProxySvc - ok
14:11:02.0793 0x0e00  [ F62E510B6AD4C21EB9FE8668ED251826, FA3E5CAC3E67E49377320CFBE4646585E6B62168292768FEA81E4623F9166890 ] Winmgmt         C:\Windows\system32\wbem\WMIsvc.dll
14:11:02.0840 0x0e00  Winmgmt - ok
14:11:02.0887 0x0e00  [ 1DE9BD23AFA36150586C732D876D9B74, 32CF2C8EC18CFDA677AB72A182EB4B839DCC72BFCD6CA309BE2F434991CAE973 ] WinRM           C:\Windows\system32\WsmSvc.dll
14:11:02.0965 0x0e00  WinRM - ok
14:11:03.0012 0x0e00  [ 16935C98FF639D185086A3529B1F2067, E9C6B73A572A04FCE9B1B0E6815F941B10332D9A6D55B92927C2B1275F119091 ] Wlansvc         C:\Windows\System32\wlansvc.dll
14:11:03.0074 0x0e00  Wlansvc - ok
14:11:03.0090 0x0e00  [ 0217679B8FCA58714C3BF2726D2CA84E, 4494984B922DCF24D37BCD0E6831CEBD07D1CA49235D04E821D17ED3DF84ED2A ] WmiAcpi         C:\Windows\system32\drivers\wmiacpi.sys
14:11:03.0121 0x0e00  WmiAcpi - ok
14:11:03.0152 0x0e00  [ 6EB6B66517B048D87DC1856DDF1F4C3F, EBB534C4829477C70062ADBB5626236B02FE563A544C53FA255E79F3CA170FE8 ] wmiApSrv        C:\Windows\system32\wbem\WmiApSrv.exe
14:11:03.0183 0x0e00  wmiApSrv - ok
14:11:03.0246 0x0e00  [ 3B40D3A61AA8C21B88AE57C58AB3122E, 6C67DCB007C3CDF2EB0BBF5FD89C32CD7800C20F7166872F8C387BE262C5CD21 ] WMPNetworkSvc   C:\Program Files\Windows Media Player\wmpnetwk.exe
14:11:03.0324 0x0e00  WMPNetworkSvc - ok
14:11:03.0339 0x0e00  [ A2F0EC770A92F2B3F9DE6D518E11409C, 6838F2148B11285E00DC449D51F8AD85AAE57694E89BA2C607B87AC1C650D845 ] WPCSvc          C:\Windows\System32\wpcsvc.dll
14:11:03.0370 0x0e00  WPCSvc - ok
14:11:03.0402 0x0e00  [ AA53356D60AF47EACC85BC617A4F3F66, 155CB8112AA382D841C1891750FF29EF4F1BF716CD9CDF0F2243209E2CCCAC98 ] WPDBusEnum      C:\Windows\system32\wpdbusenum.dll
14:11:03.0433 0x0e00  WPDBusEnum - ok
14:11:03.0448 0x0e00  [ 6DB3276587B853BF886B69528FDB048C, 9972FF6DF0DF6F86D1E9BCEF4C29064748B217DA196B0633C30D3D580144951C ] ws2ifsl         C:\Windows\system32\drivers\ws2ifsl.sys
14:11:03.0495 0x0e00  ws2ifsl - ok
14:11:03.0511 0x0e00  [ 6F5D49EFE0E7164E03AE773A3FE25340, 15B6AFF7455538189A96F8863CC995A271E02C6FBDAC15B037D44DDA65E61339 ] wscsvc          C:\Windows\System32\wscsvc.dll
14:11:03.0526 0x0e00  wscsvc - ok
14:11:03.0542 0x0e00  WSearch - ok
14:11:03.0604 0x0e00  [ D9B0134913E5EF007AF82A418C503322, 7418DD28C8E968674382F8352AAFFC4DE77887E2B71B8844D615F19432B4C55A ] wuauserv        C:\Windows\system32\wuaueng.dll
14:11:03.0682 0x0e00  wuauserv - ok
14:11:03.0714 0x0e00  [ 06E6F32C8D0A3F66D956F57B43A2E070, 9A6BD96A28294B0372F16E13D652FD603308F64B74A56E41E0C68C5E8011F943 ] WudfPf          C:\Windows\system32\drivers\WudfPf.sys
14:11:03.0776 0x0e00  WudfPf - ok
14:11:03.0807 0x0e00  [ 867C301E8B790040AE9CF6486E8041DF, D867D6498C987944D99508B2FAD6D6B749FA1EDFE8124B0863D4A642352F0855 ] WUDFRd          C:\Windows\system32\DRIVERS\WUDFRd.sys
14:11:03.0870 0x0e00  WUDFRd - ok
14:11:03.0885 0x0e00  [ FE47B7BC8EA320C2D9B5E5BF6E303765, 34518DBD1E9EA6E5DA62273B18613761E1D9C6B4E074A93C6D639FBAF02222EA ] wudfsvc         C:\Windows\System32\WUDFSvc.dll
14:11:03.0916 0x0e00  wudfsvc - ok
14:11:03.0932 0x0e00  [ 7CC38741B8F68F1E0D5D79DA6123666A, F90D2DA1C9AFB506C381CD386E1430931B5F81813FEDFD720F87FBC54E7A00DA ] WwanSvc         C:\Windows\System32\wwansvc.dll
14:11:03.0994 0x0e00  WwanSvc - ok
14:11:04.0010 0x0e00  ================ Scan global ===============================
14:11:04.0026 0x0e00  [ DAB748AE0439955ED2FA22357533DDDB, 73EDD402C7479DDCE1998D0C7E99E1EC2974F64EFC33A851439CC85D09EDCDF9 ] C:\Windows\system32\basesrv.dll
14:11:04.0057 0x0e00  [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
14:11:04.0072 0x0e00  [ 51BB04243DF6196C06E125898127E397, E1B6C83FC6E455F6806185027C5B56F8BA9ECDF1CD69E97301EC0291F0D3466E ] C:\Windows\system32\winsrv.dll
14:11:04.0088 0x0e00  [ 364455805E64882844EE9ACB72522830, 906561DBBB33F744844CF27E456226044C85DF0FCFD26DE1FD11E09E2CFA6F8F ] C:\Windows\system32\sxssrv.dll
14:11:04.0104 0x0e00  [ 5F1B6A9C35D3D5CA72D6D6FDEF9747D6, D7BC4ED605B32274B45328FD9914FB0E7B90D869A38F0E6F94FB1BF4E9E2B407 ] C:\Windows\system32\services.exe
14:11:04.0119 0x0e00  [ Global ] - ok
14:11:04.0119 0x0e00  ================ Scan MBR ==================================
14:11:04.0119 0x0e00  [ A36C5E4F47E84449FF07ED3517B43A31 ] \Device\Harddisk1\DR1
14:11:04.0353 0x0e00  \Device\Harddisk1\DR1 - ok
14:11:04.0353 0x0e00  [ 8F558EB6672622401DA993E1E865C861 ] \Device\Harddisk0\DR0
14:11:04.0400 0x0e00  \Device\Harddisk0\DR0 - ok
14:11:04.0400 0x0e00  ================ Scan VBR ==================================
14:11:04.0400 0x0e00  [ 88CDB96E3F45F17E7D39DA49F6E2CA70 ] \Device\Harddisk1\DR1\Partition1
14:11:04.0416 0x0e00  \Device\Harddisk1\DR1\Partition1 - ok
14:11:04.0416 0x0e00  [ 97913D5BF4EE25DCD6CF78AB59AF3636 ] \Device\Harddisk0\DR0\Partition1
14:11:04.0416 0x0e00  \Device\Harddisk0\DR0\Partition1 - ok
14:11:04.0416 0x0e00  ================ Scan generic autorun ======================
14:11:04.0494 0x0e00  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
14:11:04.0556 0x0e00  Sidebar - ok
14:11:04.0587 0x0e00  [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
14:11:04.0618 0x0e00  mctadmin - ok
14:11:04.0665 0x0e00  [ DCCA4B04AF87E52EF9EAA2190E06CBAC, 8858CFD159BB32AE9FCCA1A79EA83C876D481A286E914071D48F42FCA5B343D8 ] C:\Program Files\Windows Sidebar\Sidebar.exe
14:11:04.0696 0x0e00  Sidebar - ok
14:11:04.0712 0x0e00  [ BBA1A5B86134F496B926DDAF247DB871, 636990AE49C55189B7EF69C419787440B57EC0BAD98A9C280E1028F741BB222E ] C:\Windows\System32\mctadmin.exe
14:11:04.0728 0x0e00  mctadmin - ok
14:11:04.0759 0x0e00  GoogleDriveSync - ok
14:11:04.0774 0x0e00  Waiting for KSN requests completion. In queue: 60
14:11:05.0788 0x0e00  Waiting for KSN requests completion. In queue: 60
14:11:06.0802 0x0e00  Waiting for KSN requests completion. In queue: 60
14:11:07.0926 0x0e00  AV detected via SS2: Avira Desktop, C:\Program Files\Avira\AntiVir Desktop\wsctool.exe ( 15.0.8.538 ), 0x41000 ( enabled : updated )
14:11:07.0941 0x0e00  Win FW state via NFP2: enabled
14:11:10.0765 0x0e00  ============================================================
14:11:10.0765 0x0e00  Scan finished
14:11:10.0765 0x0e00  ============================================================
14:11:10.0765 0x1078  Detected object count: 0
14:11:10.0765 0x1078  Actual detected object count: 0
         
MBAR Log:

Code:
ATTFilter
---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.08.3.1004

(c) Malwarebytes Corporation 2011-2012

OS version: 6.1.7601 Windows 7 Service Pack 1 x86

Account is Administrative

Internet Explorer version: 11.0.9600.17633

File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, D:\ DRIVE_FIXED
CPU speed: 2.493000 GHz
Memory total: 3488858112, free: 1565167616

---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.08.3.1004

(c) Malwarebytes Corporation 2011-2012

OS version: 6.1.7601 Windows 7 Service Pack 1 x86

Account is Administrative

Internet Explorer version: 11.0.9600.17633

File system is: NTFS
Disk drives: C:\ DRIVE_FIXED, D:\ DRIVE_FIXED
CPU speed: 2.493000 GHz
Memory total: 3488858112, free: 1527513088

Downloaded database version: v2015.02.14.02
Downloaded database version: v2015.02.03.01
Downloaded database version: v2014.12.06.01
=======================================
------------ Kernel report ------------
     02/14/2015 14:15:46
------------ Loaded modules -----------
\SystemRoot\system32\ntoskrnl.exe
\SystemRoot\system32\halmacpi.dll
\SystemRoot\system32\kdcom.dll
\SystemRoot\system32\mcupdate_GenuineIntel.dll
\SystemRoot\system32\PSHED.dll
\SystemRoot\system32\BOOTVID.dll
\SystemRoot\system32\CLFS.SYS
\SystemRoot\system32\CI.dll
\SystemRoot\system32\drivers\Wdf01000.sys
\SystemRoot\system32\drivers\WDFLDR.SYS
\SystemRoot\system32\drivers\ACPI.sys
\SystemRoot\system32\drivers\WMILIB.SYS
\SystemRoot\system32\drivers\msisadrv.sys
\SystemRoot\system32\drivers\pci.sys
\SystemRoot\system32\drivers\vdrvroot.sys
\SystemRoot\System32\drivers\partmgr.sys
\SystemRoot\system32\DRIVERS\compbatt.sys
\SystemRoot\system32\DRIVERS\BATTC.SYS
\SystemRoot\system32\drivers\volmgr.sys
\SystemRoot\System32\drivers\volmgrx.sys
\SystemRoot\system32\drivers\pciide.sys
\SystemRoot\system32\drivers\PCIIDEX.SYS
\SystemRoot\System32\drivers\mountmgr.sys
\SystemRoot\system32\drivers\vmbus.sys
\SystemRoot\system32\drivers\winhv.sys
\SystemRoot\system32\drivers\atapi.sys
\SystemRoot\system32\drivers\ataport.SYS
\SystemRoot\system32\drivers\amdxata.sys
\SystemRoot\system32\drivers\fltmgr.sys
\SystemRoot\system32\drivers\fileinfo.sys
\SystemRoot\System32\Drivers\Ntfs.sys
\SystemRoot\System32\Drivers\msrpc.sys
\SystemRoot\System32\Drivers\ksecdd.sys
\SystemRoot\System32\Drivers\cng.sys
\SystemRoot\System32\drivers\pcw.sys
\SystemRoot\System32\Drivers\Fs_Rec.sys
\SystemRoot\system32\drivers\ndis.sys
\SystemRoot\system32\drivers\NETIO.SYS
\SystemRoot\System32\Drivers\ksecpkg.sys
\SystemRoot\System32\drivers\tcpip.sys
\SystemRoot\System32\drivers\fwpkclnt.sys
\SystemRoot\system32\drivers\vmstorfl.sys
\SystemRoot\system32\drivers\volsnap.sys
\SystemRoot\System32\Drivers\spldr.sys
\SystemRoot\System32\drivers\rdyboost.sys
\SystemRoot\System32\Drivers\mup.sys
\SystemRoot\System32\drivers\hwpolicy.sys
\SystemRoot\System32\DRIVERS\fvevol.sys
\SystemRoot\system32\DRIVERS\disk.sys
\SystemRoot\system32\DRIVERS\CLASSPNP.SYS
\SystemRoot\system32\drivers\cdrom.sys
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\drivers\VIDEOPRT.SYS
\SystemRoot\System32\drivers\watchdog.sys
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\system32\drivers\rdpencdd.sys
\SystemRoot\system32\drivers\rdprefmp.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\tdx.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\system32\drivers\afd.sys
\SystemRoot\System32\DRIVERS\netbt.sys
\SystemRoot\system32\DRIVERS\wfplwf.sys
\SystemRoot\system32\DRIVERS\pacer.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\serial.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\system32\drivers\termdd.sys
\SystemRoot\system32\DRIVERS\ssmdrv.sys
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\drivers\nsiproxy.sys
\SystemRoot\system32\drivers\mssmbios.sys
\SystemRoot\System32\drivers\discache.sys
\SystemRoot\system32\drivers\csc.sys
\SystemRoot\System32\Drivers\dfsc.sys
\SystemRoot\system32\DRIVERS\blbdrive.sys
\SystemRoot\system32\DRIVERS\avkmgr.sys
\SystemRoot\system32\DRIVERS\avipbb.sys
\SystemRoot\system32\DRIVERS\tunnel.sys
\SystemRoot\system32\DRIVERS\intelppm.sys
\SystemRoot\system32\DRIVERS\nvlddmkm.sys
\SystemRoot\System32\drivers\dxgkrnl.sys
\SystemRoot\System32\drivers\dxgmms1.sys
\SystemRoot\system32\DRIVERS\e1e6032.sys
\SystemRoot\system32\DRIVERS\usbuhci.sys
\SystemRoot\system32\DRIVERS\USBPORT.SYS
\SystemRoot\system32\DRIVERS\usbehci.sys
\SystemRoot\system32\drivers\HDAudBus.sys
\SystemRoot\system32\DRIVERS\GEARAspiWDM.sys
\SystemRoot\system32\DRIVERS\fdc.sys
\SystemRoot\system32\DRIVERS\serenum.sys
\SystemRoot\system32\drivers\CompositeBus.sys
\SystemRoot\system32\DRIVERS\AgileVpn.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\rassstp.sys
\SystemRoot\system32\DRIVERS\rdpbus.sys
\SystemRoot\system32\DRIVERS\kbdclass.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\drivers\swenum.sys
\SystemRoot\system32\drivers\ks.sys
\SystemRoot\system32\drivers\umbus.sys
\SystemRoot\system32\DRIVERS\usbhub.sys
\SystemRoot\system32\DRIVERS\flpydisk.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\drivers\HdAudio.sys
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\system32\drivers\USBSTOR.SYS
\SystemRoot\system32\drivers\USBD.SYS
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\System32\Drivers\LEqdUsb.Sys
\SystemRoot\System32\Drivers\LUsbFilt.Sys
\SystemRoot\system32\DRIVERS\kbdhid.sys
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\system32\DRIVERS\LHidFilt.Sys
\SystemRoot\system32\DRIVERS\LMouFilt.Sys
\SystemRoot\System32\Drivers\LHidEqd.Sys
\SystemRoot\System32\Drivers\crashdmp.sys
\SystemRoot\System32\Drivers\dump_dumpata.sys
\SystemRoot\System32\Drivers\dump_atapi.sys
\SystemRoot\System32\Drivers\dump_dumpfve.sys
\SystemRoot\system32\DRIVERS\monitor.sys
\SystemRoot\System32\TSDDD.dll
\SystemRoot\System32\cdd.dll
\SystemRoot\system32\drivers\luafv.sys
\SystemRoot\system32\DRIVERS\avgntflt.sys
\??\C:\Windows\system32\drivers\mbam.sys
\SystemRoot\system32\drivers\WudfPf.sys
\SystemRoot\system32\DRIVERS\lltdio.sys
\SystemRoot\system32\DRIVERS\rspndr.sys
\SystemRoot\system32\drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\bowser.sys
\SystemRoot\System32\drivers\mpsdrv.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\system32\DRIVERS\mrxsmb10.sys
\SystemRoot\system32\DRIVERS\mrxsmb20.sys
\SystemRoot\system32\drivers\peauth.sys
\SystemRoot\System32\Drivers\secdrv.SYS
\SystemRoot\System32\DRIVERS\srvnet.sys
\SystemRoot\System32\drivers\tcpipreg.sys
\SystemRoot\System32\DRIVERS\srv2.sys
\SystemRoot\System32\Drivers\fastfat.SYS
\SystemRoot\System32\DRIVERS\srv.sys
\??\C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys
\SystemRoot\system32\DRIVERS\WUDFRd.sys
\SystemRoot\system32\DRIVERS\asyncmac.sys
\??\C:\Windows\system32\drivers\mbamchameleon.sys
\??\C:\Windows\system32\drivers\MBAMSwissArmy.sys
\Windows\System32\ntdll.dll
\Windows\System32\smss.exe
\Windows\System32\apisetschema.dll
----------- End -----------
Done!

Scan started
Database versions:
  main:    v2015.02.14.02
  rootkit: v2015.02.03.01

<<<2>>>
Physical Sector Size: 512
Drive: 1, DevicePointer: 0xffffffff862b77b8, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff862b8020, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff862b77b8, DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff85d7db10, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xffffffff85dcf908, DeviceName: \Device\Ide\IdeDeviceP2T0L0-2\, DriverName: \Driver\atapi\
------------ End ----------
Alternate DeviceName: \Device\Harddisk1\DR1\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\SYSTEM32\drivers...
Done!
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xffffffff862b7030, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff862b7d10, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff862b7030, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff85d49918, DeviceName: Unknown, DriverName: \Driver\ACPI\
DevicePointer: 0xffffffff86177030, DeviceName: \Device\Ide\IdeDeviceP3T0L0-3\, DriverName: \Driver\atapi\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
Drive 0
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: F3BC08A4

Partition information:

    Partition 0 type is Primary (0x7)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 63  Numsec = 976768002

    Partition 1 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0

    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0

    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0

Disk Size: 500107862016 bytes
Sector size: 512 bytes

Done!
Drive 1
This is a System drive
Scanning MBR on drive 1...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 2A502A4F

Partition information:

    Partition 0 type is Primary (0x7)
    Partition is ACTIVE.
    Partition starts at LBA: 206848  Numsec = 976564224
    Partition file system is NTFS
    Partition is bootable

    Partition 1 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0

    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0

    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0

Disk Size: 500107862016 bytes
Sector size: 512 bytes

Done!
Physical Sector Size: 0
Drive: 2, DevicePointer: 0xffffffff868b0430, DeviceName: \Device\Harddisk2\DR2\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff868b0d10, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff868b0430, DeviceName: \Device\Harddisk2\DR2\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff868276d0, DeviceName: \Device\0000006b\, DriverName: \Driver\USBSTOR\
------------ End ----------
Physical Sector Size: 0
Drive: 3, DevicePointer: 0xffffffff8724c030, DeviceName: \Device\Harddisk3\DR3\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff867d2860, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff8724c030, DeviceName: \Device\Harddisk3\DR3\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff8681f6e8, DeviceName: \Device\0000006c\, DriverName: \Driver\USBSTOR\
------------ End ----------
Physical Sector Size: 0
Drive: 4, DevicePointer: 0xffffffff8724cac8, DeviceName: \Device\Harddisk4\DR4\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff867d6d10, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff8724cac8, DeviceName: \Device\Harddisk4\DR4\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff86825ca8, DeviceName: \Device\0000006d\, DriverName: \Driver\USBSTOR\
------------ End ----------
Physical Sector Size: 0
Drive: 5, DevicePointer: 0xffffffff8724b030, DeviceName: \Device\Harddisk5\DR5\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff86e18b10, DeviceName: Unknown, DriverName: \Driver\partmgr\
DevicePointer: 0xffffffff8724b030, DeviceName: \Device\Harddisk5\DR5\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff868b0998, DeviceName: \Device\0000006e\, DriverName: \Driver\USBSTOR\
------------ End ----------
Scan finished
=======================================


Removal queue found; removal started
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-0-r.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-1-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\VBR-1-0-206848-i.mbam...
Removing C:\ProgramData\Malwarebytes' Anti-Malware (portable)\MBR-1-r.mbam...
Removal finished
=======================================
         
Beide nichts gefunden

Alt 15.02.2015, 08:27   #7
schrauber
/// the machine
/// TB-Ausbilder
 

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



hi,

Scan mit Combofix
WARNUNG an die MITLESER:
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!

Downloade dir bitte Combofix vom folgenden Downloadspiegel: Link
  • WICHTIG: Speichere Combofix auf deinem Desktop.
  • Deaktiviere bitte alle deine Antivirensoftware sowie Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören. Combofix meckert auch manchmal trotzdem noch, das kannst du dann ignorieren, mir aber bitte mitteilen.
  • Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.
  • Während Combofix läuft bitte nicht am Computer arbeiten, die Maus bewegen oder ins Combofixfenster klicken!
  • Wenn Combofix fertig ist, wird es ein Logfile erstellen.
  • Bitte poste die C:\Combofix.txt in deiner nächsten Antwort (möglichst in CODE-Tags).
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.

__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 15.02.2015, 15:36   #8
rubinio73
 
Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



Combofix.txt

Code:
ATTFilter
ComboFix 15-02-13.02 - Rubinio 15.02.2015  15:07:57.1.4 - x86
Microsoft Windows 7 Enterprise   6.1.7601.1.1252.49.1031.18.3071.425 [GMT 1:00]
ausgeführt von:: c:\users\Rubinio\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {4D041356-F94D-285F-8768-AAE50FA36859}
SP: Avira Desktop *Disabled/Updated* {F665F2B2-DF77-27D1-BDD8-9197742422E4}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\_ctypes.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\_elementtree.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\_hashlib.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\_multiprocessing.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\_socket.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\_ssl.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\hashobjs_ext.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\pyexpat.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\pysqlite2._sqlite.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\python27.dll
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\pythoncom27.dll
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\PyWinTypes27.dll
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\select.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\unicodedata.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\win32api.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\win32com.shell.shell.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\win32crypt.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\win32event.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\win32file.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\win32gui.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\win32inet.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\win32pdh.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\win32pipe.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\win32process.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\win32profile.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\win32security.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\win32ts.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\windows._lib_cacheinvalidation.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wx._animate.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wx._controls_.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wx._core_.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wx._gdi_.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wx._html2.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wx._misc_.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wx._windows_.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wx._wizard.pyd
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wxbase294u_net_vc90.dll
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wxbase294u_vc90.dll
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wxmsw294u_adv_vc90.dll
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wxmsw294u_core_vc90.dll
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wxmsw294u_html_vc90.dll
c:\users\Rubinio\AppData\Local\Temp\_MEI26602\wxmsw294u_webview_vc90.dll
c:\users\Rubinio\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll
c:\windows\system32\AdobePDF.dll
c:\windows\wininit.ini
.
.
(((((((((((((((((((((((   Dateien erstellt von 2015-01-15 bis 2015-02-15  ))))))))))))))))))))))))))))))
.
.
2015-11-02 22:55 . 2015-02-12 00:01	--------	d-----w-	C:\Boot
2015-02-15 14:19 . 2015-02-15 14:19	--------	d-----w-	c:\users\Default\AppData\Local\temp
2015-02-14 22:27 . 2015-02-14 22:27	--------	d-----w-	c:\program files\WinToUSB
2015-02-14 21:52 . 2015-02-14 21:52	--------	d-----w-	c:\program files\ImgBurn
2015-02-14 19:03 . 2010-05-26 10:41	470880	----a-w-	c:\windows\system32\d3dx10_43.dll
2015-02-14 19:03 . 2010-05-26 10:41	248672	----a-w-	c:\windows\system32\d3dx11_43.dll
2015-02-14 19:03 . 2010-05-26 10:41	1998168	----a-w-	c:\windows\system32\D3DX9_43.dll
2015-02-14 19:03 . 2014-07-25 14:01	1291280	----a-w-	c:\windows\system32\nvspbridge.dll
2015-02-14 19:03 . 2014-07-25 14:01	1126480	----a-w-	c:\windows\system32\nvspcap.dll
2015-02-14 19:02 . 2015-02-14 19:02	--------	d-----w-	c:\program files\AGEIA Technologies
2015-02-14 19:02 . 2014-07-02 17:39	609240	----a-w-	c:\windows\system32\nvStreaming.exe
2015-02-14 18:57 . 2014-03-31 16:42	34080	----a-w-	c:\windows\system32\drivers\nvvad32v.sys
2015-02-14 18:57 . 2014-03-31 16:42	34760	----a-w-	c:\windows\system32\nvaudcap32v.dll
2015-02-14 18:54 . 2015-02-14 18:54	--------	d-----w-	C:\NVIDIA
2015-02-14 13:15 . 2015-02-14 13:33	--------	d-----w-	c:\programdata\Malwarebytes' Anti-Malware (portable)
2015-02-14 13:01 . 2015-02-14 13:01	71344	----a-w-	c:\windows\system32\FlashPlayerCPLApp.cpl
2015-02-14 13:01 . 2015-02-14 13:01	701616	----a-w-	c:\windows\system32\FlashPlayerApp.exe
2015-02-14 13:01 . 2015-02-14 13:01	--------	d-----w-	c:\windows\system32\Macromed
2015-02-13 20:36 . 2015-02-13 20:36	--------	d-----w-	c:\program files\ClearProg
2015-02-13 16:46 . 2015-02-14 09:46	--------	d-----w-	C:\FRST
2015-02-13 15:44 . 2015-02-14 13:15	119512	----a-w-	c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-02-13 15:43 . 2015-02-14 13:14	82648	----a-w-	c:\windows\system32\drivers\mbamchameleon.sys
2015-02-13 15:43 . 2015-02-13 15:43	--------	d-----w-	c:\program files\ Malwarebytes Anti-Malware 
2015-02-13 15:43 . 2015-02-13 15:43	--------	d-----w-	c:\programdata\Malwarebytes
2015-02-13 15:43 . 2014-11-21 05:14	51928	----a-w-	c:\windows\system32\drivers\mwac.sys
2015-02-13 15:43 . 2014-11-21 05:14	23256	----a-w-	c:\windows\system32\drivers\mbam.sys
2015-02-13 14:20 . 2015-02-15 13:48	--------	d-----w-	c:\programdata\Spybot - Search & Destroy
2015-02-13 14:20 . 2015-02-15 13:50	--------	d-----w-	c:\program files\Spybot - Search & Destroy 2
2015-02-13 13:56 . 2015-02-12 16:39	25912	----a-w-	c:\windows\system32\authuitu.dll
2015-02-13 13:55 . 2015-02-13 13:55	--------	d-----w-	c:\program files\AVG
2015-02-13 13:46 . 2015-02-13 13:46	--------	d-----w-	c:\program files\Usenet.nl
2015-02-13 13:30 . 2015-02-13 13:30	--------	d-----w-	c:\program files\UseNeXT
2015-02-13 09:58 . 2015-02-13 09:58	--------	d--h--w-	c:\programdata\Common Files
2015-02-13 09:58 . 2015-02-13 14:03	--------	d-----w-	c:\programdata\AVG
2015-02-12 18:36 . 2015-02-13 13:21	--------	d-----w-	c:\program files\KMSpico
2015-02-12 18:02 . 2015-02-12 18:02	16400	----a-w-	c:\windows\system32\drivers\LNonPnP.sys
2015-02-12 18:02 . 2015-02-12 18:03	--------	d-----w-	c:\programdata\Logishrd
2015-02-12 18:01 . 2015-02-12 18:01	--------	d-----w-	c:\program files\Logitech
2015-02-12 18:01 . 2015-02-12 18:03	--------	d-----w-	c:\program files\Common Files\Logishrd
2015-02-12 17:43 . 2015-02-12 17:39	37896	----a-w-	c:\windows\system32\drivers\avnetflt.sys
2015-02-12 17:37 . 2015-02-04 16:51	37352	----a-w-	c:\windows\system32\drivers\avkmgr.sys
2015-02-12 17:37 . 2015-02-04 16:51	136216	----a-w-	c:\windows\system32\drivers\avipbb.sys
2015-02-12 17:37 . 2015-02-04 16:51	105864	----a-w-	c:\windows\system32\drivers\avgntflt.sys
2015-02-12 17:26 . 2015-02-12 17:37	--------	d-----w-	c:\programdata\Avira
2015-02-12 17:26 . 2015-02-12 17:37	--------	d-----w-	c:\program files\Avira
2015-02-12 17:25 . 2015-02-12 17:25	--------	d-----w-	c:\programdata\Package Cache
2015-02-12 17:23 . 2015-02-12 17:23	--------	dc----w-	c:\windows\system32\DRVSTORE
2015-02-12 17:23 . 2012-10-03 15:14	26840	----a-w-	c:\windows\system32\drivers\GEARAspiWDM.sys
2015-02-12 17:22 . 2015-02-12 17:22	--------	d-----w-	c:\program files\iPod
2015-02-12 17:22 . 2015-02-12 17:23	--------	d-----w-	c:\programdata\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
2015-02-12 17:22 . 2015-02-12 17:23	--------	d-----w-	c:\program files\iTunes
2015-02-12 17:21 . 2015-02-12 17:21	--------	d-----w-	c:\program files\Bonjour
2015-02-12 17:21 . 2015-02-12 17:48	--------	d-----w-	c:\program files\Common Files\Apple
2015-02-12 17:09 . 2015-02-12 17:09	--------	d-----w-	c:\programdata\regid.1991-06.com.microsoft
2015-02-12 17:09 . 2015-02-12 17:09	--------	d-----w-	c:\program files\Microsoft SQL Server
2015-02-12 17:09 . 2015-02-12 17:09	--------	d-----w-	c:\windows\PCHEALTH
2015-02-12 17:06 . 2015-02-12 17:06	--------	d-----w-	c:\program files\Microsoft Analysis Services
2015-02-12 17:03 . 2015-02-12 17:03	--------	d-----r-	C:\MSOCache
2015-02-12 14:51 . 2015-02-12 14:51	--------	d-----w-	c:\programdata\regid.1986-12.com.adobe
2015-02-12 14:41 . 2015-02-12 15:53	--------	d-----w-	c:\program files\Common Files\Adobe
2015-02-12 14:25 . 2015-02-12 14:25	--------	d-----w-	c:\programdata\StarMoney 9.0
2015-02-12 14:24 . 2015-02-12 14:24	--------	d-----w-	c:\program files\Common Files\StarFinanz
2015-02-12 14:23 . 2015-02-14 14:30	--------	d-----w-	c:\program files\StarMoney 9.0
2015-02-12 14:23 . 2015-02-12 14:23	--------	d--h--w-	c:\program files\InstallShield Installation Information
2015-02-12 14:13 . 2015-02-12 17:22	--------	d-----w-	c:\programdata\Apple Computer
2015-02-12 14:13 . 2015-02-12 14:13	--------	d-----w-	c:\program files\Safari
2015-02-12 14:13 . 2015-02-12 17:21	--------	d-----w-	c:\programdata\Apple
2015-02-12 14:13 . 2015-02-12 14:13	--------	d-----w-	c:\program files\Apple Software Update
2015-02-12 14:11 . 2015-02-12 14:11	--------	d-----w-	c:\program files\Mozilla Maintenance Service
2015-02-12 12:51 . 2015-02-12 17:12	--------	d-----w-	c:\programdata\Microsoft Help
2015-02-12 09:47 . 2015-02-12 18:09	--------	d-----w-	c:\program files\Google
2015-02-12 09:33 . 2015-02-12 09:36	--------	d-----w-	c:\windows\AutoKMS
2015-02-12 09:32 . 2015-02-12 09:32	--------	d-----w-	c:\programdata\Microsoft Toolkit
2015-02-12 09:31 . 2014-08-29 01:44	2744320	----a-w-	c:\windows\system32\rdpcorets.dll
2015-02-12 09:31 . 2014-09-05 01:52	5703168	----a-w-	c:\windows\system32\mstscax.dll
2015-02-12 09:21 . 2014-05-08 09:06	13824	----a-w-	c:\windows\system32\RdpGroupPolicyExtension.dll
2015-02-12 09:11 . 2012-08-23 14:44	14848	----a-w-	c:\windows\system32\drivers\rdpvideominiport.sys
2015-02-12 09:11 . 2012-08-23 14:48	221184	----a-w-	c:\windows\system32\rdpudd.dll
2015-02-12 09:11 . 2012-08-23 11:12	192000	----a-w-	c:\windows\system32\rdpendp_winip.dll
2015-02-12 09:10 . 2013-10-02 00:42	49152	----a-w-	c:\windows\system32\drivers\TsUsbFlt.sys
2015-02-12 09:10 . 2013-10-02 00:14	50176	----a-w-	c:\windows\system32\MsRdpWebAccess.dll
2015-02-12 09:10 . 2013-10-01 23:08	855552	----a-w-	c:\windows\system32\rdvidcrl.dll
2015-02-12 09:10 . 2013-10-01 22:34	1068544	----a-w-	c:\windows\system32\mstsc.exe
2015-02-12 08:50 . 2014-10-18 01:33	3209728	----a-w-	c:\windows\system32\mf.dll
2015-02-12 08:50 . 2014-07-07 01:40	103424	----a-w-	c:\windows\system32\mfps.dll
2015-02-12 08:50 . 2014-07-07 01:39	50176	----a-w-	c:\windows\system32\rrinstaller.exe
2015-02-12 08:50 . 2014-07-07 01:39	23040	----a-w-	c:\windows\system32\mfpmp.exe
2015-02-12 08:50 . 2014-07-07 01:37	2048	----a-w-	c:\windows\system32\mferror.dll
2015-02-12 08:45 . 2014-06-27 01:45	2285056	----a-w-	c:\windows\system32\msmpeg2vdec.dll
2015-02-12 08:38 . 2013-04-09 23:34	1247744	----a-w-	c:\windows\system32\DWrite.dll
2015-02-12 08:37 . 2015-01-10 06:27	248832	----a-w-	c:\windows\system32\schannel.dll
2015-02-12 08:37 . 2015-01-10 06:27	221184	----a-w-	c:\windows\system32\ncrypt.dll
2015-02-12 08:37 . 2015-01-10 06:27	259584	----a-w-	c:\windows\system32\msv1_0.dll
2015-02-12 08:37 . 2015-01-10 06:27	550912	----a-w-	c:\windows\system32\kerberos.dll
2015-02-12 08:37 . 2015-01-10 06:27	17408	----a-w-	c:\windows\system32\credssp.dll
2015-02-12 08:37 . 2014-06-24 02:59	1987584	----a-w-	c:\windows\system32\d3d10warp.dll
2015-02-12 08:37 . 2011-02-25 05:30	2616320	----a-w-	c:\windows\explorer.exe
2015-02-12 08:37 . 2013-11-26 08:16	3419136	----a-w-	c:\windows\system32\d2d1.dll
2015-02-12 07:58 . 2015-02-12 07:58	--------	d-----w-	c:\windows\system32\wbem\en-US
2015-02-12 01:52 . 2014-12-15 03:13	9054624	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{03D99AF9-B63B-4D2F-B6A8-4208F9668CD1}\mpengine.dll
2015-02-12 01:14 . 2012-07-26 02:33	66560	----a-w-	c:\windows\system32\drivers\WUDFPf.sys
2015-02-12 01:14 . 2012-07-26 02:32	155136	----a-w-	c:\windows\system32\drivers\WUDFRd.sys
2015-02-12 01:13 . 2014-03-09 21:47	99480	----a-w-	c:\windows\system32\infocardapi.dll
2015-02-12 01:13 . 2014-06-30 22:14	8856	----a-w-	c:\windows\system32\icardres.dll
2015-02-12 01:13 . 2014-03-09 21:47	619672	----a-w-	c:\windows\system32\icardagt.exe
2015-02-12 01:12 . 2012-03-01 05:46	19824	----a-w-	c:\windows\system32\drivers\fs_rec.sys
2015-02-12 01:00 . 2015-02-12 17:09	--------	d-----w-	c:\program files\Microsoft.NET
2015-02-12 01:00 . 2015-02-12 01:00	--------	d-----w-	c:\windows\Migration
2015-02-12 00:59 . 2015-02-14 21:50	--------	d-sh--w-	c:\windows\Installer
2015-02-12 00:55 . 2013-05-10 03:48	164864	----a-w-	c:\program files\Windows Media Player\wmplayer.exe
2015-02-12 00:44 . 2015-02-12 00:44	9728	---ha-w-	c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-02-12 00:43 . 2015-02-12 00:43	1505280	----a-w-	c:\windows\system32\d3d11.dll
2015-02-12 00:38 . 2013-12-04 02:03	87040	----a-w-	c:\windows\system32\secproc_ssp_isv.dll
2015-02-12 00:38 . 2013-12-04 02:03	87040	----a-w-	c:\windows\system32\secproc_ssp.dll
2015-02-12 00:38 . 2013-12-04 02:03	423936	----a-w-	c:\windows\system32\secproc_isv.dll
2015-02-12 00:38 . 2013-12-04 02:03	428032	----a-w-	c:\windows\system32\secproc.dll
2015-02-12 00:38 . 2013-12-04 02:02	390144	----a-w-	c:\windows\system32\msdrm.dll
2015-02-12 00:38 . 2013-12-04 01:54	510976	----a-w-	c:\windows\system32\RMActivate_ssp.exe
2015-02-12 00:38 . 2013-12-04 01:54	594944	----a-w-	c:\windows\system32\RMActivate_isv.exe
2015-02-12 00:38 . 2013-12-04 01:54	572416	----a-w-	c:\windows\system32\RMActivate.exe
2015-02-12 00:38 . 2013-12-04 01:54	508928	----a-w-	c:\windows\system32\RMActivate_ssp_isv.exe
2015-02-12 00:35 . 2014-06-18 22:23	81560	----a-w-	c:\windows\system32\mscories.dll
2015-02-12 00:35 . 2014-06-18 22:23	156824	----a-w-	c:\windows\system32\mscorier.dll
2015-02-12 00:35 . 2014-06-18 22:23	1131664	----a-w-	c:\windows\system32\dfshim.dll
2015-02-12 00:35 . 2012-07-04 21:14	41984	----a-w-	c:\windows\system32\browcli.dll
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-02-12 16:39 . 2015-02-13 13:56	37176	----a-w-	c:\windows\system32\TURegOpt.exe
2015-02-12 16:39 . 2015-02-13 14:01	36664	----a-w-	c:\windows\system32\uxtuneup.dll
2015-02-12 00:46 . 2015-02-12 00:46	62464	----a-w-	c:\windows\system32\tdc.ocx
2015-02-12 00:46 . 2015-02-12 00:46	139264	----a-w-	c:\windows\system32\wextract.exe
2015-02-12 00:46 . 2015-02-12 00:46	69632	----a-w-	c:\windows\system32\smss.exe
2015-02-12 00:46 . 2015-02-12 00:46	619520	----a-w-	c:\windows\system32\tdh.dll
2015-02-12 00:45 . 2015-02-12 00:45	49152	----a-w-	c:\windows\system32\taskhost.exe
2015-02-12 00:44 . 2015-02-12 00:44	364544	----a-w-	c:\windows\system32\XpsGdiConverter.dll
2015-02-12 00:44 . 2015-02-12 00:44	207872	----a-w-	c:\windows\system32\WindowsCodecsExt.dll
2015-02-12 00:44 . 2015-02-12 00:44	187392	----a-w-	c:\windows\system32\UIAnimation.dll
2015-02-12 00:44 . 2015-02-12 00:44	1158144	----a-w-	c:\windows\system32\XpsPrint.dll
2015-02-11 23:53 . 2009-07-14 02:05	152576	----a-w-	c:\windows\system32\msclmd.dll
2015-01-15 07:43 . 2015-02-12 00:32	15872	----a-w-	c:\windows\system32\sspisrv.dll
2015-01-15 07:43 . 2015-02-12 00:32	100352	----a-w-	c:\windows\system32\sspicli.dll
2015-01-13 02:49 . 2015-02-12 08:36	1230336	----a-w-	c:\windows\system32\WindowsCodecs.dll
2015-01-12 02:08 . 2015-02-12 08:40	503296	----a-w-	c:\windows\system32\vbscript.dll
2015-01-12 01:00 . 2015-02-12 08:40	1888256	----a-w-	c:\windows\system32\wininet.dll
2015-01-10 06:27 . 2015-02-12 08:37	172032	----a-w-	c:\windows\system32\wdigest.dll
2015-01-10 06:27 . 2015-02-12 08:37	65536	----a-w-	c:\windows\system32\TSpkg.dll
2015-01-09 02:48 . 2015-02-12 00:33	76800	----a-w-	c:\windows\system32\wdi.dll
2015-01-09 01:45 . 2015-02-12 00:27	2380288	----a-w-	c:\windows\system32\win32k.sys
2014-12-22 23:50 . 2010-03-24 04:47	249488	------w-	c:\windows\system32\MpSigStub.exe
2014-12-11 17:47 . 2015-02-12 09:40	74240	----a-w-	c:\windows\system32\TSWbPrxy.exe
.
.
------- Sigcheck -------
Note: Unsigned files aren't necessarily malware.
.
[7] 2009-07-14 . 8A4883F5E7AC37444F23279239553878 . 398336 . . [6.1.7600.16385] . . c:\windows\winsxs\x86_microsoft-windows-registry-editor_31bf3856ad364e35_6.1.7600.16385_none_f4050b883d2c3c08\regedit.exe
.
c:\windows\regedit.exe ... Fehlt !!
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2012-10-01 19:33	1720976	----a-w-	c:\progra~1\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2012-10-01 19:33	1720976	----a-w-	c:\progra~1\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2012-10-01 19:33	1720976	----a-w-	c:\progra~1\MICROS~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt1"]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2015-02-11 01:12	152544	----a-w-	c:\users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt2"]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2015-02-11 01:12	152544	----a-w-	c:\users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt3"]
@="{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}]
2015-02-11 01:12	152544	----a-w-	c:\users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt4"]
@="{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}]
2015-02-11 01:12	152544	----a-w-	c:\users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt5"]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2015-02-11 01:12	152544	----a-w-	c:\users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt6"]
@="{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}]
2015-02-11 01:12	152544	----a-w-	c:\users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt7"]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2015-02-11 01:12	152544	----a-w-	c:\users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt8"]
@="{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}]
2015-02-11 01:12	152544	----a-w-	c:\users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2015-01-15 15:59	577864	----a-w-	c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2015-01-15 15:59	577864	----a-w-	c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2015-01-15 15:59	577864	----a-w-	c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2015-01-15 15:59	577864	----a-w-	c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2015-01-15 15:59	577864	----a-w-	c:\program files\Google\Drive\googledrivesync32.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\SharingPrivate]
@="{08244EE6-92F0-47f2-9FC9-929BAA2E7235}"
[HKEY_CLASSES_ROOT\CLSID\{08244EE6-92F0-47f2-9FC9-929BAA2E7235}]
2012-01-04 08:58	442880	----a-w-	c:\windows\System32\ntshrui.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"GoogleDriveSync"="c:\program files\Google\Drive\googledrivesync.exe" [2015-01-15 23308256]
"iCloudServices"="c:\program files\Common Files\Apple\Internet Services\iCloudServices.exe" [2014-11-21 43816]
"ApplePhotoStreams"="c:\program files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" [2014-11-21 43816]
"iCloudDrive"="c:\program files\Common Files\Apple\Internet Services\iCloudDrive.exe" [2014-11-21 43816]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Avira Systray"="c:\program files\Avira\My Avira\Avira.OE.Systray.exe" [2015-01-19 126712]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2015-02-04 703280]
"EvtMgr6"="c:\program files\Logitech\SetPointP\SetPoint.exe" [2014-05-19 2303256]
"NvBackend"="c:\program files\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-07-25 2403104]
"ShadowPlay"="c:\windows\system32\nvspcap.dll" [2014-07-25 1126480]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"SPReview"="c:\windows\System32\SPReview\SPReview.exe" [2015-02-11 280576]
.
c:\users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
ClearProg.lnk - c:\program files\ClearProg\ClearProg.exe  /IECO/IECA/IEV/IEU/IEAC/OPCO/OPCA/OPV/OPU/OPD/NNCO/NNCA/NNV/NNU/NND/NNAC/Recycle/Tmp/STmp/Run/Docs/OS/FF/FPC/NDRIVE/LKEY/ZA/Access/Excel/FP/PP/Word/PB/LU/MP/Real/PE/PAINT/AR/WP/GR/GTB/OO/WZ/PAV/PLI [2009-6-27 178176]
Dropbox.lnk - c:\users\Rubinio\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2015-2-12 42555824]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\LBTWlgn]
2014-03-24 22:50	64280	----a-w-	c:\program files\Common Files\Logishrd\Bluetooth\LBTWLgn.dll
.
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"Microsoft Task Planning"=c:\programdata\Microsoft\Windows\Caches\taskengcon.exe
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"iTunesHelper"="c:\program files\iTunes\iTunesHelper.exe"
"Acrobat Assistant 8.0"="c:\program files\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe"
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe"
"Logitech Download Assistant"=c:\windows\system32\rundll32.exe c:\windows\System32\LogiLDA.dll,LogiFetch
"NvBackend"="c:\program files\NVIDIA Corporation\Update Core\NvBackend.exe"
"SDTray"="c:\program files\Spybot - Search & Destroy 2\SDTray.exe"
.
R2 MBAMService;MBAMService;c:\program files\ Malwarebytes Anti-Malware \mbamservice.exe [2014-11-21 969016]
R2 StarMoney 9.0 OnlineUpdate;StarMoney 9.0 OnlineUpdate;c:\program files\StarMoney 9.0\ouservice\StarMoneyOnlineUpdate.exe [2014-07-04 697488]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe [2015-01-12 102912]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys [2014-11-21 51928]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys [2012-08-23 14848]
R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys [2013-10-02 49152]
R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys [x]
R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys [x]
R4 MBAMScheduler;MBAMScheduler;c:\program files\ Malwarebytes Anti-Malware \mbamscheduler.exe [2014-11-21 1871160]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys [2015-02-04 37352]
S2 AntiVirSchedulerService;Avira Planer;c:\program files\Avira\AntiVir Desktop\sched.exe [2015-02-04 432888]
S2 Avira.OE.ServiceHost;Avira Service Host;c:\program files\Avira\My Avira\Avira.OE.ServiceHost.exe [2015-01-19 182520]
S2 NvNetworkService;NVIDIA Network Service;c:\program files\NVIDIA Corporation\NetService\NvNetworkService.exe [2014-07-25 1720608]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2014-07-25 17536800]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-07-02 413128]
S2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service;c:\program files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe [2015-02-12 2161976]
S3 LEqdUsb;Logitech SetPoint Unifying KMDF USB Filter;c:\windows\system32\Drivers\LEqdUsb.Sys [2014-03-19 42264]
S3 LHidEqd;Logitech SetPoint Unifying KMDF HID Filter;c:\windows\system32\Drivers\LHidEqd.Sys [2014-03-19 10136]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys [2014-11-21 23256]
S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2014-07-25 19232]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad32v.sys [2014-03-31 34080]
S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys [2015-01-13 12320]
.
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost  - NetSvcs
UxTuneUp
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost  - LocalSystemNetworkRestricted
homegrouplistener
StorSvc
.
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost  - LocalService
WdiServiceHost
sppuinotify
FontCache
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost  - NetworkService
lanmanworkstation
.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost  - LocalServiceNetworkRestricted
BthHFSrv
homegroupprovider
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-02-12 09:50	1086280	----a-w-	c:\program files\Google\Chrome\Application\40.0.2214.111\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2015-02-15 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-14 13:01]
.
2015-02-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2015-02-12 09:47]
.
2015-02-15 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2015-02-12 09:47]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://www.google.de/
uInternet Settings,ProxyOverride = *.local
uInternet Settings,ProxyServer = localhost:8080
IE: An OneNote s&enden - c:\progra~1\MICROS~1\Office15\ONBttnIE.dll/105
IE: Nach Microsoft E&xcel exportieren - c:\progra~1\MICROS~1\Office15\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.178.1
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL
FF - ProfilePath - c:\users\Rubinio\AppData\Roaming\Mozilla\Firefox\Profiles\v5rhoxu3.default\
FF - user.js: network.http.max-persistent-connections-per-server - 4
FF - user.js: nglayout.initialpaint.delay - 600
FF - user.js: content.notify.interval - 600000
FF - user.js: content.max.tokenizing.time - 1800000
FF - user.js: content.switch.threshold - 600000
.
.
**************************************************************************
Scanne versteckte Prozesse... 
.
Scanne versteckte Autostarteinträge... 
.
Scanne versteckte Dateien... 
.
.
**************************************************************************
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Weitere laufende Prozesse ------------------------
.
c:\windows\system32\nvvsvc.exe
c:\program files\NVIDIA Corporation\Display\nvxdsync.exe
c:\windows\system32\nvvsvc.exe
c:\windows\system32\taskhost.exe
c:\program files\Common Files\Adobe\ARM\1.0\armsvc.exe
c:\program files\Avira\AntiVir Desktop\avguard.exe
c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
c:\program files\Bonjour\mDNSResponder.exe
c:\program files\AVG\AVG PC TuneUp\TuneUpUtilitiesApp32.exe
c:\program files\NVIDIA Corporation\Display\nvtray.exe
c:\program files\Avira\AntiVir Desktop\avshadow.exe
c:\windows\System32\rundll32.exe
c:\windows\system32\conhost.exe
c:\windows\system32\conhost.exe
c:\windows\System32\WUDFHost.exe
c:\windows\system32\conhost.exe
c:\program files\ClearProg\ClearProg.exe
c:\users\Rubinio\AppData\Roaming\Dropbox\bin\Dropbox.exe
c:\program files\Windows Media Player\wmpnetwk.exe
c:\program files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE
c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe
c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
c:\program files\Adobe\Reader 11.0\Reader\Reader_sl.exe
c:\program files\Adobe\Acrobat 11.0\Acrobat\Acrobat_sl.exe
.
**************************************************************************
.
Zeit der Fertigstellung: 2015-02-15  15:33:18 - PC wurde neu gestartet
ComboFix-quarantined-files.txt  2015-02-15 14:32
.
Nach Suchlauf: 13 Verzeichnis(se), 415.157.583.872 Bytes frei
.
- - End Of File - - 6493AB975CDB328E9C73A70C96549886
         

Alt 15.02.2015, 19:34   #9
schrauber
/// the machine
/// TB-Ausbilder
 

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 16.02.2015, 11:15   #10
rubinio73
 
Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



Vielen Dank!
Dann fange ich mal an.

mbam.xt

Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlauf Datum: 16.02.2015
Suchlauf-Zeit: 10:39:25
Logdatei: mbam.txt
Administrator: Ja

Version: 2.00.4.1028
Malware Datenbank: v2015.02.16.03
Rootkit Datenbank: v2015.02.03.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x86
Dateisystem: NTFS
Benutzer: Rubinio

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 322964
Verstrichene Zeit: 11 Min, 18 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(Keine schädliche Elemente erkannt)

Module: 0
(Keine schädliche Elemente erkannt)

Registrierungsschlüssel: 0
(Keine schädliche Elemente erkannt)

Registrierungswerte: 0
(Keine schädliche Elemente erkannt)

Registrierungsdaten: 0
(Keine schädliche Elemente erkannt)

Ordner: 0
(Keine schädliche Elemente erkannt)

Dateien: 0
(Keine schädliche Elemente erkannt)

Physische Sektoren: 0
(Keine schädliche Elemente erkannt)


(end)
         
AdwCleaner[S0].txt

Code:
ATTFilter
# AdwCleaner v4.110 - Bericht erstellt 16/02/2015 um 10:56:14
# Aktualisiert 05/02/2015 von Xplode
# Datenbank : 2015-02-14.2 [Server]
# Betriebssystem : Windows 7 Enterprise Service Pack 1 (x86)
# Benutzername : Rubinio - RUBINIO-PC
# Gestarted von : C:\Users\Rubinio\Desktop\AdwCleaner_4.110.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Datei Gelöscht : C:\Users\Rubinio\AppData\Roaming\Mozilla\Firefox\Profiles\v5rhoxu3.default\user.js

***** [ Geplante Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel Gelöscht : HKCU\Software\OCS
Daten Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local
Daten Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyServer] - localhost:8080

***** [ Internetbrowser ] *****

-\\ Internet Explorer v11.0.9600.17631


-\\ Mozilla Firefox v35.0.1 (x86 de)


-\\ Google Chrome v40.0.2214.111

[C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://www.softonic.de/s/{searchTerms}

*************************

AdwCleaner[R0].txt - [1343 Bytes] - [16/02/2015 10:52:25]
AdwCleaner[S0].txt - [1265 Bytes] - [16/02/2015 10:56:14]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1324  Bytes] ##########
         
JRT.txt

Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.2 (02.02.2015:1)
OS: Windows 7 Enterprise x86
Ran by Rubinio on 16.02.2015 at 11:02:38,85
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 16.02.2015 at 11:05:06,52
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         
FRST Log neu

Teil 1:

Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 15-02-2015
Ran by Rubinio (administrator) on RUBINIO-PC on 16-02-2015 11:08:12
Running from C:\Users\Rubinio\Desktop
Loaded Profiles: Rubinio (Available profiles: Rubinio)
Platform: Microsoft Windows 7 Enterprise  Service Pack 1 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Malwarebytes Corporation) C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(AVG Technologies) C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe
(Google) C:\Program Files\Google\Drive\googledrivesync.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Internet Services\iCloudDrive.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Dropbox, Inc.) C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(AVG Technologies) C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesApp32.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office15\OUTLOOK.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Avira Systray] => C:\Program Files\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [703280 2015-02-04] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [2303256 2014-05-19] (Logitech, Inc.)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
HKU\S-1-5-21-830496087-3815240866-1769002787-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [23308256 2015-01-15] (Google)
HKU\S-1-5-21-830496087-3815240866-1769002787-1001\...\Run: [iCloudServices] => C:\Program Files\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2014-11-21] (Apple Inc.)
HKU\S-1-5-21-830496087-3815240866-1769002787-1001\...\Run: [ApplePhotoStreams] => C:\Program Files\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2014-11-21] (Apple Inc.)
HKU\S-1-5-21-830496087-3815240866-1769002787-1001\...\Run: [iCloudDrive] => C:\Program Files\Common Files\Apple\Internet Services\iCloudDrive.exe [43816 2014-11-21] (Apple Inc.)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2015-02-12] (Microsoft Corporation)
Startup: C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ClearProg.lnk
ShortcutTarget: ClearProg.lnk -> C:\Program Files\ClearProg\ClearProg.exe (privat)
Startup: C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Rubinio\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [GDriveBlacklistedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedEditOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSharedViewOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSyncedOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)
ShellIconOverlayIdentifiers: [GDriveSyncingOverlay] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync32.dll (Google)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-830496087-3815240866-1769002787-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-830496087-3815240866-1769002787-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-830496087-3815240866-1769002787-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-830496087-3815240866-1769002787-1001 -> {CC7CE7C7-4C62-413D-9993-135384EFEDCE} URL = https://www.google.com/search?q={searchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\Rubinio\AppData\Roaming\Mozilla\Firefox\Profiles\v5rhoxu3.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_305.dll ()
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Extension: Avira Browser Safety - C:\Users\Rubinio\AppData\Roaming\Mozilla\Firefox\Profiles\v5rhoxu3.default\Extensions\abs@avira.com [2015-02-12]
FF Extension: Adblock Plus - C:\Users\Rubinio\AppData\Roaming\Mozilla\Firefox\Profiles\v5rhoxu3.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-02-13]
FF HKLM\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2015-02-12]
FF HKLM\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2015-02-12]

Chrome: 
=======
CHR StartupUrls: Default -> "hxxp://www.google.de/"
CHR Profile: C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Präsentationen) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-02-12]
CHR Extension: (Google Docs) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-12]
CHR Extension: (Google Drive) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-12]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-02-12]
CHR Extension: (YouTube) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-12]
CHR Extension: (Google-Suche) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-12]
CHR Extension: (Logitech Smooth Scrolling) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkpejdfnpdkhifgbancbammdijojoffk [2015-02-12]
CHR Extension: (Adobe Acrobat – PDF-Datei erstellen) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2015-02-12]
CHR Extension: (Google Tabellen) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-02-12]
CHR Extension: (Avira Browserschutz) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-02-13]
CHR Extension: (AdBlock) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-02-14]
CHR Extension: (Google Wallet) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-12]
CHR Extension: (Google Mail) - C:\Users\Rubinio\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-12]
CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2012-09-23]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path
CHR HKU\S-1-5-21-830496087-3815240866-1769002787-1001\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - No Path

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [432888 2015-02-04] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [432888 2015-02-04] (Avira Operations GmbH & Co. KG)
R2 Avira.OE.ServiceHost; C:\Program Files\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG)
R2 MBAMScheduler; C:\Program Files\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files\ Malwarebytes Anti-Malware \mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [17536800 2014-07-25] (NVIDIA Corporation)
S2 StarMoney 9.0 OnlineUpdate; C:\Program Files\StarMoney 9.0\ouservice\StarMoneyOnlineUpdate.exe [697488 2014-07-04] (Star Finanz-Software Entwicklung und Vertriebs GmbH)
R2 TuneUp.UtilitiesSvc; C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesService32.exe [2161976 2015-02-12] (AVG Technologies)
R2 UxTuneUp; C:\Windows\System32\uxtuneup.dll [36664 2015-02-12] (AVG Technologies)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105864 2015-02-04] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136216 2015-02-04] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2015-02-04] (Avira Operations GmbH & Co. KG)
R3 LEqdUsb; C:\Windows\System32\Drivers\LEqdUsb.Sys [42264 2014-03-19] (Logitech, Inc.)
R3 LHidEqd; C:\Windows\System32\Drivers\LHidEqd.Sys [10136 2014-03-19] (Logitech, Inc.)
R3 LUsbFilt; C:\Windows\System32\Drivers\LUsbFilt.Sys [28312 2014-03-19] (Logitech, Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2014-11-21] (Malwarebytes Corporation)
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [114904 2015-02-16] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2014-11-21] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19232 2014-07-25] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad32v.sys [34080 2014-03-31] (NVIDIA Corporation)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2015-02-04] (Avira GmbH)
R3 TuneUpUtilitiesDrv; C:\Program Files\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver32.sys [12320 2015-01-13] (TuneUp Software)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-11-02 23:57 - 2015-11-02 23:57 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2015-11-02 23:56 - 2015-11-02 23:56 - 00000000 ____D () C:\Windows\CSC
2015-11-02 23:55 - 2015-11-02 23:55 - 00008192 __RSH () C:\BOOTSECT.BAK
2015-11-02 23:55 - 2010-11-20 13:40 - 00383786 __RSH () C:\bootmgr
2015-02-16 11:08 - 2015-02-16 11:08 - 00019097 _____ () C:\Users\Rubinio\Desktop\FRST.txt
2015-02-16 11:07 - 2015-02-16 11:07 - 01125888 _____ (Farbar) C:\Users\Rubinio\Desktop\FRST.exe
2015-02-16 11:07 - 2015-02-16 11:07 - 00000000 ____D () C:\Users\Rubinio\Desktop\FRST-OlderVersion
2015-02-16 11:05 - 2015-02-16 11:05 - 00000625 _____ () C:\Users\Rubinio\Desktop\JRT.txt
2015-02-16 11:01 - 2015-02-16 10:56 - 00001404 _____ () C:\Users\Rubinio\Desktop\AdwCleaner[S0].txt
2015-02-16 10:52 - 2015-02-16 10:56 - 00000000 ____D () C:\AdwCleaner
2015-02-16 10:51 - 2015-02-16 10:51 - 00001203 _____ () C:\Users\Rubinio\Desktop\mbam.txt
2015-02-16 10:36 - 2015-02-16 10:36 - 01388274 _____ (Thisisu) C:\Users\Rubinio\Desktop\JRT.exe
2015-02-16 10:35 - 2015-02-16 10:36 - 02112512 _____ () C:\Users\Rubinio\Desktop\AdwCleaner_4.110.exe
2015-02-15 19:40 - 2015-02-15 19:40 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Registry Toolkit
2015-02-15 19:36 - 2015-02-15 19:38 - 00000000 ____D () C:\Program Files\Registrar Registry Manager
2015-02-15 19:35 - 2015-02-15 19:35 - 04968008 _____ (Resplendence Software Projects Sp. ) C:\Users\Rubinio\Downloads\RegistrarHomeV7.60.exe
2015-02-15 18:30 - 2015-02-15 19:12 - 00000000 ____D () C:\Kaspersky Rescue Disk 10.0
2015-02-15 15:52 - 2015-02-15 15:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ClearProg
2015-02-15 15:05 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-02-15 15:05 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-02-15 15:05 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-02-15 15:05 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-02-15 15:05 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-02-15 15:05 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2015-02-15 15:05 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2015-02-15 15:05 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2015-02-15 14:47 - 2015-02-15 15:33 - 00000000 ____D () C:\Qoobox
2015-02-15 14:47 - 2015-02-15 15:29 - 00000000 ____D () C:\Windows\erdnt
2015-02-15 14:43 - 2015-02-15 14:43 - 05611771 ____R (Swearware) C:\Users\Rubinio\Downloads\ComboFix.exe
2015-02-14 23:27 - 2015-02-15 15:43 - 00000000 ____D () C:\Program Files\WinToUSB
2015-02-14 22:53 - 2015-02-14 23:49 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\ImgBurn
2015-02-14 22:52 - 2015-02-14 22:52 - 00001823 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn.lnk
2015-02-14 22:52 - 2015-02-14 22:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImgBurn
2015-02-14 22:52 - 2015-02-14 22:52 - 00000000 ____D () C:\Program Files\ImgBurn
2015-02-14 22:50 - 2015-02-14 22:50 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool
2015-02-14 22:50 - 2015-02-14 22:50 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Apps\Windows 7 USB DVD Download Tool
2015-02-14 20:03 - 2015-02-15 14:35 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\NVIDIA Corporation
2015-02-14 20:03 - 2015-02-15 00:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2015-02-14 20:03 - 2014-07-25 15:01 - 01291280 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge.dll
2015-02-14 20:03 - 2014-07-25 15:01 - 01126480 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap.dll
2015-02-14 20:03 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2015-02-14 20:03 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2015-02-14 20:03 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2015-02-14 20:02 - 2015-02-14 20:02 - 00000000 ____D () C:\Program Files\AGEIA Technologies
2015-02-14 20:02 - 2014-07-02 18:39 - 00609240 _____ (NVIDIA Corporation) C:\Windows\system32\nvStreaming.exe
2015-02-14 19:57 - 2014-03-31 17:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap32v.dll
2015-02-14 19:57 - 2014-03-31 17:42 - 00034080 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad32v.sys
2015-02-14 19:54 - 2015-02-14 19:54 - 00000000 ____D () C:\NVIDIA
2015-02-14 19:35 - 2015-02-14 19:53 - 218685256 _____ (NVIDIA Corporation) C:\Users\Rubinio\Downloads\340.52-desktop-win8-win7-winvista-32bit-international-whql.exe
2015-02-14 15:25 - 2015-02-14 15:25 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Apple Inc
2015-02-14 15:17 - 2015-02-16 11:00 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\5CF4A954-89A2-4EEF-BD27-EDBA35A18DF1.aplzod
2015-02-14 15:04 - 2015-02-14 15:04 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Macromedia
2015-02-14 14:15 - 2015-02-15 16:22 - 00000000 ____D () C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-02-14 14:13 - 2015-02-14 14:33 - 00000000 ____D () C:\Users\Rubinio\Downloads\mbar
2015-02-14 14:01 - 2015-02-15 19:13 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-02-14 14:01 - 2015-02-14 14:01 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-02-14 14:01 - 2015-02-14 14:01 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2015-02-14 14:01 - 2015-02-14 14:01 - 00000000 ____D () C:\Windows\system32\Macromed
2015-02-14 11:53 - 2015-02-14 11:54 - 16466552 _____ (Malwarebytes Corp.) C:\Users\Rubinio\Downloads\mbar-1.08.3.1004.exe
2015-02-14 11:51 - 2015-02-14 11:52 - 04197016 _____ (Kaspersky Lab ZAO) C:\Users\Rubinio\Downloads\tdsskiller.exe
2015-02-14 10:29 - 2015-02-14 10:29 - 00000000 _____ () C:\Windows\setuperr.log
2015-02-13 21:36 - 2015-02-15 15:52 - 00000000 ____D () C:\Program Files\ClearProg
2015-02-13 18:34 - 2015-02-13 18:42 - 79407448 _____ (Logitech Inc.) C:\Users\Rubinio\Downloads\SetPoint6.65.62_32.exe
2015-02-13 17:47 - 2015-02-13 17:48 - 00031522 _____ () C:\Users\Rubinio\Downloads\Addition.txt
2015-02-13 17:46 - 2015-02-16 11:08 - 00000000 ____D () C:\FRST
2015-02-13 17:46 - 2015-02-13 17:48 - 00171337 _____ () C:\Users\Rubinio\Downloads\FRST.txt
2015-02-13 17:45 - 2015-02-13 17:45 - 01125376 _____ (Farbar) C:\Users\Rubinio\Downloads\FRST.exe
2015-02-13 17:15 - 2015-02-13 17:15 - 00009353 _____ () C:\Users\Rubinio\Downloads\hijackthis.log
2015-02-13 16:44 - 2015-02-16 10:39 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-02-13 16:43 - 2015-02-14 14:14 - 00082648 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-02-13 16:43 - 2015-02-13 16:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-02-13 16:43 - 2015-02-13 16:43 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-13 16:43 - 2015-02-13 16:43 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware 
2015-02-13 16:43 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-02-13 16:43 - 2014-11-21 06:14 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-02-13 15:20 - 2015-02-15 14:50 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2015-02-13 15:20 - 2015-02-15 14:48 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2015-02-13 15:01 - 2015-02-12 17:39 - 00036664 _____ (AVG Technologies) C:\Windows\system32\uxtuneup.dll
2015-02-13 14:56 - 2015-02-13 14:56 - 00002159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2015.lnk
2015-02-13 14:56 - 2015-02-13 14:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2015
2015-02-13 14:56 - 2015-02-12 17:39 - 00037176 _____ (AVG Technologies) C:\Windows\system32\TURegOpt.exe
2015-02-13 14:56 - 2015-02-12 17:39 - 00025912 _____ (AVG Technologies) C:\Windows\system32\authuitu.dll
2015-02-13 14:55 - 2015-02-13 14:55 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\AVG
2015-02-13 14:55 - 2015-02-13 14:55 - 00000000 ____D () C:\Program Files\AVG
2015-02-13 14:46 - 2015-02-13 14:52 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Usenet.nl
2015-02-13 14:46 - 2015-02-13 14:46 - 00000000 ____D () C:\Users\Rubinio\Documents\Usenet.nl
2015-02-13 14:46 - 2015-02-13 14:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Usenet.nl
2015-02-13 14:46 - 2015-02-13 14:46 - 00000000 ____D () C:\Program Files\Usenet.nl
2015-02-13 14:45 - 2015-02-13 14:46 - 07457256 _____ ( ) C:\Users\Rubinio\Downloads\UsenetNLSetup_1.30.exe
2015-02-13 14:30 - 2015-02-15 17:18 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\UseNeXT
2015-02-13 14:30 - 2015-02-15 17:15 - 00000000 ____D () C:\Users\Rubinio\Documents\UseNeXT
2015-02-13 14:30 - 2015-02-15 17:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UseNeXT
2015-02-13 14:30 - 2015-02-15 17:15 - 00000000 ____D () C:\Program Files\UseNeXT
2015-02-13 14:24 - 2015-02-13 14:24 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Avg
2015-02-13 11:23 - 2015-02-13 11:24 - 00388608 _____ (Trend Micro Inc.) C:\Users\Rubinio\Downloads\HiJackThis204.exe
2015-02-13 11:11 - 2015-02-13 11:12 - 05343592 _____ (Tangysoft Ltd. ) C:\Users\Rubinio\Downloads\UseNeXT_freetrial_436770w.exe
2015-02-13 11:04 - 2015-02-13 11:08 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Rubinio\Downloads\mbam-setup-2.0.4.1028.exe
2015-02-13 11:03 - 2015-02-13 11:08 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Rubinio\Downloads\spybot-2.4.exe
2015-02-13 10:58 - 2015-02-13 15:03 - 00000000 ____D () C:\ProgramData\AVG
2015-02-12 19:36 - 2015-02-13 14:21 - 00000000 ____D () C:\Program Files\KMSpico
2015-02-12 19:25 - 2015-02-12 19:26 - 00454147 _____ () C:\Users\Rubinio\Downloads\Setup_ClearProg_1.6.0_Final_neu.exe
2015-02-12 19:24 - 2015-02-12 19:32 - 49950520 _____ (AVG Technologies) C:\Users\Rubinio\Downloads\avg_tuht_stf_de_2015_373_15cmp16.exe
2015-02-12 19:09 - 2015-02-12 19:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-02-12 19:05 - 2015-02-12 19:05 - 00880208 _____ (Google Inc.) C:\Users\Rubinio\Downloads\googledrivesync.exe
2015-02-12 19:03 - 2015-02-12 19:03 - 00000000 ____D () C:\Users\Public\Documents\Logishrd
2015-02-12 19:02 - 2015-02-12 19:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2015-02-12 19:02 - 2015-02-12 19:03 - 00010862 _____ () C:\Windows\LDPINST.LOG
2015-02-12 19:02 - 2015-02-12 19:03 - 00001276 _____ () C:\Windows\LkmdfCoInst.log
2015-02-12 19:02 - 2015-02-12 19:03 - 00000000 ____D () C:\ProgramData\Logishrd
2015-02-12 19:02 - 2015-02-12 19:02 - 00016400 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys
2015-02-12 19:01 - 2015-02-12 19:03 - 00000000 ____D () C:\Program Files\Common Files\Logishrd
2015-02-12 19:01 - 2015-02-12 19:01 - 00000000 ____D () C:\Program Files\Logitech
2015-02-12 18:54 - 2015-02-12 19:04 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Logishrd
2015-02-12 18:54 - 2015-02-12 19:03 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Logitech
2015-02-12 18:52 - 2015-02-12 18:53 - 04147600 _____ ($Co_Name Inc.) C:\Users\Rubinio\Downloads\unifying250.exe
2015-02-12 18:52 - 2015-02-12 18:53 - 04109832 _____ (Logitech Inc.) C:\Users\Rubinio\Downloads\scroll_app_smart_4.00.33.exe
2015-02-12 18:52 - 2015-02-12 18:53 - 03677488 _____ (Logitech Inc.) C:\Users\Rubinio\Downloads\SetPoint6.65.62_smart.exe
2015-02-12 18:52 - 2015-02-12 18:52 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-02-12 18:49 - 2015-02-12 18:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2015-02-12 18:45 - 2015-02-16 10:59 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Dropbox
2015-02-12 18:45 - 2015-02-12 18:45 - 00355464 _____ (Dropbox, Inc.) C:\Users\Rubinio\Downloads\DropboxInstaller.exe
2015-02-12 18:44 - 2015-02-12 18:44 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Avira
2015-02-12 18:43 - 2015-02-12 18:39 - 00037896 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2015-02-12 18:39 - 2015-02-12 18:46 - 71647536 _____ (Apple Inc.) C:\Users\Rubinio\Downloads\icloudsetup.exe
2015-02-12 18:37 - 2015-02-04 17:51 - 00136216 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2015-02-12 18:37 - 2015-02-04 17:51 - 00105864 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2015-02-12 18:37 - 2015-02-04 17:51 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2015-02-12 18:37 - 2015-02-04 17:51 - 00028520 _____ (Avira GmbH) C:\Windows\system32\Drivers\ssmdrv.sys
2015-02-12 18:26 - 2015-02-15 18:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2015-02-12 18:26 - 2015-02-12 18:37 - 00000000 ____D () C:\ProgramData\Avira
2015-02-12 18:26 - 2015-02-12 18:37 - 00000000 ____D () C:\Program Files\Avira
2015-02-12 18:25 - 2015-02-12 18:25 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-12 18:24 - 2015-02-14 15:25 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Apple Computer
2015-02-12 18:24 - 2015-02-14 15:11 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Apple Computer
2015-02-12 18:24 - 2015-02-12 18:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-02-12 18:23 - 2012-10-03 16:14 - 00026840 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2015-02-12 18:22 - 2015-02-12 18:23 - 00000000 ____D () C:\ProgramData\B0FFCDD9-5261-4e59-B29A-17A4FABDEBAB
2015-02-12 18:22 - 2015-02-12 18:23 - 00000000 ____D () C:\Program Files\iTunes
2015-02-12 18:22 - 2015-02-12 18:22 - 00000000 ____D () C:\Program Files\iPod
2015-02-12 18:21 - 2015-02-12 18:48 - 00000000 ____D () C:\Program Files\Common Files\Apple
2015-02-12 18:21 - 2015-02-12 18:21 - 00000000 ____D () C:\Program Files\Bonjour
2015-02-12 18:11 - 2015-02-12 18:19 - 108785968 _____ (Apple Inc.) C:\Users\Rubinio\Downloads\itunessetup.exe
2015-02-12 18:10 - 2015-02-12 18:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-02-12 18:10 - 2015-02-12 18:10 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-02-12 18:09 - 2015-02-12 18:09 - 00000000 ____D () C:\Windows\PCHEALTH
2015-02-12 18:09 - 2015-02-12 18:09 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2015-02-12 18:06 - 2015-02-12 18:06 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-02-12 18:04 - 2015-02-12 18:05 - 04515896 _____ (Avira Operations & Co. KG) C:\Users\Rubinio\Downloads\avira_de_av_5846847356__ws.exe
2015-02-12 18:03 - 2015-02-12 18:03 - 00000000 ___RD () C:\MSOCache
2015-02-12 17:07 - 2015-02-12 17:07 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Macromedia
2015-02-12 17:07 - 2015-02-12 17:07 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\com.adobe.formscentral.FormsCentralForAcrobat
2015-02-12 16:53 - 2015-02-12 16:53 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-02-12 16:01 - 2015-02-15 18:17 - 00093696 ___SH () C:\Users\Rubinio\Thumbs.db
2015-02-12 15:51 - 2015-02-14 14:01 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Adobe
2015-02-12 15:51 - 2015-02-12 15:51 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2015-02-12 15:50 - 2015-02-12 15:50 - 00002453 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat XI Pro.lnk
2015-02-12 15:50 - 2015-02-12 15:50 - 00002180 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe FormsCentral.lnk
2015-02-12 15:50 - 2015-02-12 15:50 - 00002019 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller XI.lnk
2015-02-12 15:49 - 2015-02-12 15:49 - 00000000 ____D () C:\Users\Rubinio\Tracing
2015-02-12 15:49 - 2008-07-08 23:26 - 03633413 _____ () C:\Users\Rubinio\Opa.3gp
2015-02-12 15:41 - 2015-02-12 17:09 - 00000000 ____D () C:\ProgramData\Adobe
2015-02-12 15:41 - 2015-02-12 16:53 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2015-02-12 15:41 - 2015-02-12 16:53 - 00000000 ____D () C:\Program Files\Adobe
2015-02-12 15:38 - 2015-02-16 10:58 - 00000000 ___RD () C:\Users\Rubinio\iCloudDrive
2015-02-12 15:38 - 2015-02-16 10:57 - 00000000 ___RD () C:\Users\Rubinio\Google Drive
2015-02-12 15:38 - 2015-02-12 18:00 - 00000000 ____D () C:\Users\Rubinio\Starmoney
2015-02-12 15:38 - 2015-02-12 15:38 - 00000000 ____D () C:\Users\Rubinio\Postbank
2015-02-12 15:38 - 2015-02-12 15:38 - 00000000 ____D () C:\Users\Rubinio\Meine Musik
2015-02-12 15:38 - 2015-02-12 15:38 - 00000000 ____D () C:\Users\Rubinio\M&S
2015-02-12 15:38 - 2012-02-27 15:31 - 00000000 ____D () C:\Users\Rubinio\restore
2015-02-12 15:34 - 2015-02-12 15:38 - 00000000 ____D () C:\Users\Rubinio\Ebay
2015-02-12 15:33 - 2015-02-16 10:59 - 00000000 ___RD () C:\Users\Rubinio\Dropbox
2015-02-12 15:30 - 2015-02-12 15:33 - 00000000 ____D () C:\Users\Rubinio\Desktop\Stefanie
2015-02-12 15:29 - 2015-02-12 15:29 - 00000000 ____D () C:\Users\Rubinio\Desktop\Neuer Ordner
2015-02-12 15:29 - 2015-02-12 15:29 - 00000000 ____D () C:\Users\Rubinio\Desktop\Mediapanel
2015-02-12 15:28 - 2015-02-12 15:29 - 00000000 ____D () C:\Users\Rubinio\Desktop\kalender2012
2015-02-12 15:28 - 2015-02-12 15:28 - 00000000 ____D () C:\Users\Rubinio\ChromeExtensions
2015-02-12 15:28 - 2015-02-12 15:28 - 00000000 ____D () C:\Users\Rubinio\Audible
2015-02-12 15:28 - 2015-02-12 15:28 - 00000000 ____D () C:\Users\Rubinio\AA
2015-02-12 15:25 - 2015-02-12 15:25 - 00000000 ____D () C:\ProgramData\StarMoney 9.0
2015-02-12 15:25 - 2015-02-12 15:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarMoney 9.0
2015-02-12 15:24 - 2015-02-12 15:24 - 00000000 ____D () C:\Program Files\Common Files\StarFinanz
2015-02-12 15:23 - 2015-02-14 15:30 - 00000000 ____D () C:\Program Files\StarMoney 9.0
2015-02-12 15:23 - 2015-02-12 15:23 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2015-02-12 15:13 - 2015-02-12 18:22 - 00000000 ____D () C:\ProgramData\Apple Computer
2015-02-12 15:13 - 2015-02-12 18:21 - 00000000 ____D () C:\ProgramData\Apple
2015-02-12 15:13 - 2015-02-12 15:13 - 00002519 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2015-02-12 15:13 - 2015-02-12 15:13 - 00002491 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Safari.lnk
2015-02-12 15:13 - 2015-02-12 15:13 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Apple
2015-02-12 15:13 - 2015-02-12 15:13 - 00000000 ____D () C:\Program Files\Safari
2015-02-12 15:13 - 2015-02-12 15:13 - 00000000 ____D () C:\Program Files\Apple Software Update
2015-02-12 15:12 - 2015-02-12 15:12 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Mozilla
2015-02-12 15:12 - 2015-02-12 15:12 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Mozilla
2015-02-12 15:11 - 2015-02-12 15:26 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2015-02-12 15:11 - 2015-02-12 15:11 - 00001117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-02-12 15:11 - 2015-02-12 15:11 - 00000000 ____D () C:\ProgramData\Mozilla
2015-02-12 15:11 - 2015-02-12 15:11 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2015-02-12 13:51 - 2015-02-12 18:12 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-02-12 13:51 - 2015-02-12 18:09 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-02-12 13:51 - 2015-02-12 13:51 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Microsoft Help
2015-02-12 13:50 - 2015-02-12 14:07 - 188090912 _____ () C:\Users\Rubinio\Downloads\smoney.exe
2015-02-12 13:46 - 2015-02-12 13:46 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\WinRAR
2015-02-12 13:46 - 2015-02-12 13:46 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-02-12 13:46 - 2015-02-12 13:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-02-12 13:46 - 2015-02-12 13:46 - 00000000 ____D () C:\Program Files\WinRAR
2015-02-12 10:50 - 2015-02-12 10:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-02-12 10:47 - 2015-02-16 10:57 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-02-12 10:47 - 2015-02-16 10:52 - 00001100 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-02-12 10:47 - 2015-02-12 19:09 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Google
2015-02-12 10:47 - 2015-02-12 19:09 - 00000000 ____D () C:\Program Files\Google
2015-02-12 10:46 - 2015-02-12 10:47 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Deployment
2015-02-12 10:46 - 2015-02-12 10:46 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\Apps\2.0
2015-02-12 10:40 - 2014-12-11 18:47 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2015-02-12 10:33 - 2015-02-12 10:36 - 00000000 ____D () C:\Windows\AutoKMS
2015-02-12 10:32 - 2015-02-12 18:26 - 00112304 _____ () C:\Users\Rubinio\AppData\Local\GDIPFONTCACHEV1.DAT
2015-02-12 10:32 - 2015-02-12 10:32 - 00000000 ____D () C:\ProgramData\Microsoft Toolkit
2015-02-12 10:31 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2015-02-12 10:31 - 2014-08-29 02:44 - 02744320 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2015-02-12 10:21 - 2014-05-08 10:06 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2015-02-12 10:11 - 2015-02-12 10:11 - 00000000 __SHD () C:\Users\Rubinio\AppData\Local\EmieUserList
2015-02-12 10:11 - 2015-02-12 10:11 - 00000000 __SHD () C:\Users\Rubinio\AppData\Local\EmieSiteList
2015-02-12 10:11 - 2015-02-12 10:11 - 00000000 __SHD () C:\Users\Rubinio\AppData\Local\EmieBrowserModeList
2015-02-12 10:11 - 2012-08-23 15:48 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2015-02-12 10:11 - 2012-08-23 15:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2015-02-12 10:11 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2015-02-12 10:10 - 2013-10-02 01:42 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2015-02-12 10:10 - 2013-10-02 01:32 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2015-02-12 10:10 - 2013-10-02 01:30 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2015-02-12 10:10 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2015-02-12 10:10 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2015-02-12 10:10 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2015-02-12 10:10 - 2013-10-02 00:45 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2015-02-12 10:10 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2015-02-12 10:10 - 2013-10-01 23:53 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2015-02-12 10:10 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2015-02-12 10:09 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-02-12 10:09 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-02-12 10:09 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2015-02-12 10:09 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2015-02-12 10:09 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2015-02-12 10:09 - 2014-07-09 02:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2015-02-12 10:09 - 2014-07-09 02:29 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2015-02-12 10:09 - 2014-07-08 23:30 - 00419992 _____ () C:\Windows\system32\locale.nls
2015-02-12 10:09 - 2011-03-11 06:39 - 00143744 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2015-02-12 10:09 - 2011-03-11 06:39 - 00117120 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2015-02-12 10:09 - 2011-03-11 06:38 - 00332160 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2015-02-12 10:09 - 2011-03-11 06:38 - 00080256 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2015-02-12 10:09 - 2011-03-11 06:38 - 00022400 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2015-02-12 10:09 - 2011-03-11 06:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2015-02-12 10:09 - 2011-03-11 06:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2015-02-12 10:09 - 2011-03-11 05:01 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2015-02-12 09:50 - 2014-10-18 02:33 - 03209728 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll
2015-02-12 09:50 - 2014-07-07 02:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2015-02-12 09:50 - 2014-07-07 02:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe
2015-02-12 09:50 - 2014-07-07 02:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe
2015-02-12 09:50 - 2014-07-07 02:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll
2015-02-12 09:45 - 2014-06-27 02:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2015-02-12 09:40 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-02-12 09:40 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-02-12 09:40 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-02-12 09:40 - 2015-01-12 03:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-02-12 09:40 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-02-12 09:40 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-02-12 09:40 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-02-12 09:40 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-02-12 09:40 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-02-12 09:40 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-02-12 09:40 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-02-12 09:40 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-02-12 09:40 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-02-12 09:40 - 2015-01-12 02:55 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-02-12 09:40 - 2015-01-12 02:48 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-02-12 09:40 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-02-12 09:40 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-02-12 09:40 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-02-12 09:40 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-02-12 09:40 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-02-12 09:40 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-02-12 09:40 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-02-12 09:40 - 2015-01-12 02:23 - 00684544 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-02-12 09:40 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-02-12 09:40 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-02-12 09:40 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-02-12 09:40 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-02-12 09:40 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-02-12 09:38 - 2013-04-10 00:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-02-12 09:37 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-02-12 09:37 - 2014-06-24 03:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2015-02-12 09:37 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2015-02-12 09:37 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2015-02-12 09:37 - 2012-02-11 06:37 - 00317440 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2015-02-12 09:37 - 2011-02-25 06:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2015-02-12 09:36 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2015-02-12 09:07 - 2015-02-12 17:14 - 00000000 ____D () C:\Users\Rubinio\AppData\Roaming\Adobe
2015-02-12 08:52 - 2015-02-15 18:25 - 00164666 _____ () C:\Windows\PFRO.log
2015-02-12 02:14 - 2012-07-26 04:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2015-02-12 02:14 - 2012-07-26 04:20 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2015-02-12 02:14 - 2012-07-26 04:20 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2015-02-12 02:14 - 2012-07-26 04:20 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2015-02-12 02:14 - 2012-07-26 04:20 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2015-02-12 02:14 - 2012-07-26 03:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2015-02-12 02:14 - 2012-07-26 03:32 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2015-02-12 02:14 - 2012-06-02 15:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2015-02-12 02:13 - 2014-06-30 23:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2015-02-12 02:13 - 2014-06-06 07:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2015-02-12 02:13 - 2014-03-09 22:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2015-02-12 02:13 - 2014-03-09 22:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2015-02-12 02:12 - 2012-03-01 06:46 - 00019824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2015-02-12 02:12 - 2012-03-01 06:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2015-02-12 02:00 - 2015-02-12 18:09 - 00000000 ____D () C:\Program Files\Microsoft.NET
2015-02-12 01:55 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2015-02-12 01:55 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 01289096 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00645120 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00640512 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00619520 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2015-02-12 01:46 - 2015-02-12 01:46 - 00610304 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-02-12 01:46 - 2015-02-12 01:46 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00231424 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00208384 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00151552 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2015-02-12 01:46 - 2015-02-12 01:46 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2015-02-12 01:46 - 2015-02-12 01:46 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00083456 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2015-02-12 01:46 - 2015-02-12 01:46 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2015-02-12 01:46 - 2015-02-12 01:46 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-02-12 01:46 - 2015-02-12 01:46 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-02-12 01:46 - 2015-02-12 01:46 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2015-02-12 01:46 - 2015-02-12 01:46 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2015-02-12 01:46 - 2015-02-12 01:46 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2015-02-12 01:45 - 2015-02-12 01:45 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2015-02-12 01:44 - 2015-02-12 01:44 - 01158144 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 01080832 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00906240 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00604160 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00364544 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2015-02-12 01:44 - 2015-02-12 01:44 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2015-02-12 01:43 - 2015-02-12 01:43 - 01505280 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2015-02-12 01:42 - 2015-02-12 01:50 - 00016567 _____ () C:\Windows\IE11_main.log
2015-02-12 01:38 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2015-02-12 01:38 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2015-02-12 01:38 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2015-02-12 01:38 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2015-02-12 01:38 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2015-02-12 01:38 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2015-02-12 01:38 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2015-02-12 01:38 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2015-02-12 01:38 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2015-02-12 01:37 - 2014-12-19 02:34 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2015-02-12 01:37 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-02-12 01:37 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-02-12 01:37 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2015-02-12 01:37 - 2014-07-17 02:39 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2015-02-12 01:37 - 2014-07-17 02:39 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2015-02-12 01:37 - 2014-07-17 02:03 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2015-02-12 01:37 - 2014-07-17 02:02 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2015-02-12 01:37 - 2014-06-03 10:30 - 00101824 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-02-12 01:37 - 2014-06-03 10:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-02-12 01:37 - 2014-06-03 10:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-02-12 01:37 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2015-02-12 01:37 - 2013-08-28 01:57 - 00434688 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2015-02-12 01:37 - 2013-06-25 23:56 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2015-02-12 01:37 - 2013-05-13 04:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2015-02-12 01:37 - 2013-05-13 04:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2015-02-12 01:37 - 2012-11-28 23:57 - 00047720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2015-02-12 01:37 - 2012-11-28 23:57 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2015-02-12 01:37 - 2012-11-28 23:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2015-02-12 01:37 - 2012-04-26 05:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll
2015-02-12 01:37 - 2012-04-26 05:41 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe
2015-02-12 01:37 - 2012-01-04 09:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll
2015-02-12 01:37 - 2011-12-30 06:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2015-02-12 01:37 - 2011-11-17 06:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2015-02-12 01:36 - 2014-12-06 04:50 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2015-02-12 01:36 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00868352 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2015-02-12 01:36 - 2014-03-04 10:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2015-02-12 01:36 - 2014-01-28 03:07 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2015-02-12 01:36 - 2013-08-02 02:50 - 00169984 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 01:52 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-02-12 01:36 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-02-12 01:36 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-02-12 01:36 - 2013-05-10 04:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2015-02-12 01:36 - 2013-03-19 04:33 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2015-02-12 01:36 - 2012-11-02 06:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2015-02-12 01:36 - 2012-10-03 17:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2015-02-12 01:36 - 2012-10-03 17:42 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2015-02-12 01:36 - 2012-09-25 23:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll
2015-02-12 01:36 - 2012-03-17 08:27 - 00056176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys
2015-02-12 01:36 - 2011-05-04 05:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2015-02-12 01:36 - 2011-05-04 05:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2015-02-12 01:36 - 2011-05-04 05:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2015-02-12 01:36 - 2011-05-04 05:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2015-02-12 01:36 - 2011-05-04 05:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2015-02-12 01:36 - 2011-05-04 05:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2015-02-12 01:36 - 2011-05-04 05:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2015-02-12 01:36 - 2011-05-04 05:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2015-02-12 01:36 - 2011-05-04 05:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2015-02-12 01:35 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2015-02-12 01:35 - 2014-08-23 02:46 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-02-12 01:35 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2015-02-12 01:35 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2015-02-12 01:35 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2015-02-12 01:35 - 2014-03-26 15:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2015-02-12 01:35 - 2014-03-26 15:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2015-02-12 01:35 - 2012-07-04 22:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll
2015-02-12 01:35 - 2012-07-04 22:14 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll
2015-02-12 01:35 - 2012-07-04 22:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll
2015-02-12 01:34 - 2014-12-12 06:07 - 01174528 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-02-12 01:34 - 2014-07-07 02:40 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-02-12 01:34 - 2014-07-07 02:40 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-02-12 01:34 - 2014-06-25 02:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-02-12 01:34 - 2014-06-18 02:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2015-02-12 01:34 - 2013-07-09 05:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-02-12 01:34 - 2012-02-17 06:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2015-02-12 01:34 - 2012-02-17 05:13 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2015-02-12 01:34 - 2011-04-29 03:46 - 00311808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2015-02-12 01:34 - 2011-04-29 03:46 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2015-02-12 01:34 - 2011-04-29 03:46 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2015-02-12 01:34 - 2010-12-23 06:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll
2015-02-12 01:34 - 2010-12-23 06:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll
2015-02-12 01:34 - 2010-12-23 06:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2015-02-12 01:33 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2015-02-12 01:33 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-02-12 01:33 - 2015-01-09 03:48 - 00635904 _____ (Microsoft Corporation) C:\Windows\system32\perftrack.dll
2015-02-12 01:33 - 2015-01-09 03:48 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\wdi.dll
2015-02-12 01:33 - 2015-01-09 03:48 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\powertracker.dll
2015-02-12 01:33 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2015-02-12 01:33 - 2014-02-04 03:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2015-02-12 01:33 - 2014-02-04 03:07 - 00149440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2015-02-12 01:33 - 2014-02-04 03:07 - 00027072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2015-02-12 01:33 - 2014-02-04 03:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2015-02-12 01:33 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2015-02-12 01:33 - 2013-10-12 03:01 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2015-02-12 01:33 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2015-02-12 01:33 - 2012-12-07 13:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll
2015-02-12 01:33 - 2012-12-07 13:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll
2015-02-12 01:33 - 2012-12-07 11:46 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs
2015-02-12 01:33 - 2012-12-07 11:46 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs
2015-02-12 01:33 - 2012-10-03 17:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll
2015-02-12 01:33 - 2012-10-03 17:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll
2015-02-12 01:33 - 2012-10-03 17:40 - 00499712 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2015-02-12 01:33 - 2012-10-03 16:21 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-02-12 01:33 - 2012-08-21 21:12 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe
2015-02-12 01:33 - 2011-07-09 03:30 - 00223744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-02-12 01:33 - 2011-04-27 03:17 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-02-12 01:33 - 2011-04-27 03:17 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-02-12 01:32 - 2015-01-15 08:46 - 00136640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-02-12 01:32 - 2015-01-15 08:46 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-02-12 01:32 - 2015-01-15 08:43 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-02-12 01:32 - 2015-01-15 08:43 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-02-12 01:32 - 2015-01-15 08:42 - 01061376 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-02-12 01:32 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-02-12 01:32 - 2015-01-15 08:42 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-02-12 01:32 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-02-12 01:32 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-02-12 01:32 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-02-12 01:32 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-02-12 01:32 - 2015-01-15 05:21 - 00369968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2015-02-12 01:32 - 2014-12-19 03:43 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-02-12 01:32 - 2014-10-14 02:50 - 00523776 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2015-02-12 01:32 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2015-02-12 01:32 - 2014-08-01 12:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2015-02-12 01:32 - 2014-04-25 03:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2015-02-12 01:32 - 2014-04-05 03:25 - 01294272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2015-02-12 01:32 - 2014-04-05 03:24 - 00187840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2015-02-12 01:32 - 2013-11-26 12:11 - 00240576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2015-02-12 01:32 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2015-02-12 01:32 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2015-02-12 01:32 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2015-02-12 01:32 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2015-02-12 01:32 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2015-02-12 01:32 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2015-02-12 01:32 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2015-02-12 01:32 - 2013-08-05 02:56 - 00133056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2015-02-12 01:32 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2015-02-12 01:32 - 2013-07-12 11:07 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2015-02-12 01:32 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2015-02-12 01:32 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2015-02-12 01:32 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2015-02-12 01:32 - 2013-06-06 05:52 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-02-12 01:32 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-02-12 01:32 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-02-12 01:32 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-02-12 01:32 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-02-12 01:32 - 2013-02-12 04:32 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-02-12 01:32 - 2013-01-24 05:47 - 00196328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2015-02-12 01:32 - 2012-10-09 18:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2015-02-12 01:32 - 2012-10-09 18:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2015-02-12 01:32 - 2012-08-22 18:16 - 00712048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2015-02-12 01:32 - 2012-07-04 20:45 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys
2015-02-12 01:32 - 2012-06-06 06:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2015-02-12 01:32 - 2012-05-14 05:33 - 00769024 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2015-02-12 01:32 - 2011-12-16 08:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll
2015-02-12 01:32 - 2011-08-27 05:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll
2015-02-12 01:32 - 2011-08-17 05:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll
2015-02-12 01:32 - 2011-08-17 05:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax
2015-02-12 01:32 - 2011-06-15 09:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\system32\odbcjt32.dll
2015-02-12 01:32 - 2011-06-15 09:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll
2015-02-12 01:32 - 2011-06-15 09:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll
2015-02-12 01:32 - 2011-06-15 09:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll
2015-02-12 01:32 - 2011-06-15 09:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll
2015-02-12 01:32 - 2011-03-03 06:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2015-02-12 01:32 - 2011-03-03 06:38 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2015-02-12 01:32 - 2011-03-03 06:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe
2015-02-12 01:32 - 2011-02-23 05:47 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2015-02-12 01:32 - 2011-02-12 06:35 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe
2015-02-12 01:31 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe
2015-02-12 01:31 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2015-02-12 01:31 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-02-12 01:31 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-02-12 01:31 - 2014-05-30 07:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2015-02-12 01:29 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2015-02-12 01:29 - 2014-11-11 02:32 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys
2015-02-12 01:29 - 2013-11-27 02:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2015-02-12 01:29 - 2013-11-27 02:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2015-02-12 01:29 - 2013-11-27 02:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2015-02-12 01:29 - 2013-11-27 02:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2015-02-12 01:29 - 2013-11-27 02:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2015-02-12 01:29 - 2013-11-27 02:13 - 00020480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2015-02-12 01:29 - 2013-11-27 02:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2015-02-12 01:29 - 2013-07-25 09:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2015-02-12 01:29 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-02-12 01:29 - 2011-10-15 06:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll
2015-02-12 01:29 - 2011-05-03 05:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-02-12 01:29 - 2011-02-18 06:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe
2015-02-12 01:27 - 2015-01-09 02:45 - 02380288 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-02-12 01:27 - 2014-11-26 04:32 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2015-02-12 01:27 - 2014-10-03 02:44 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-02-12 01:27 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2015-02-12 01:27 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2015-02-12 01:27 - 2014-10-03 02:44 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2015-02-12 01:27 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2015-02-12 01:27 - 2014-07-14 02:42 - 00654336 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-02-12 01:27 - 2014-06-16 02:44 - 00730048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2015-02-12 01:27 - 2014-06-16 02:44 - 00219072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2015-02-12 01:27 - 2014-06-16 02:40 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2015-02-12 01:27 - 2014-06-06 10:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2015-02-12 01:27 - 2014-01-24 03:18 - 01212352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2015-02-12 01:27 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2015-02-12 01:27 - 2013-07-03 04:36 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-02-12 01:27 - 2013-07-03 04:36 - 00025728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2015-02-12 01:27 - 2013-04-26 05:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2015-02-12 01:27 - 2012-05-05 08:46 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-02-12 01:27 - 2011-10-26 05:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll
2015-02-12 01:27 - 2011-06-16 05:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2015-02-12 01:27 - 2011-03-11 06:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll
2015-02-12 01:27 - 2011-03-11 06:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll
2015-02-12 01:18 - 2013-10-04 02:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2015-02-12 01:18 - 2013-10-04 02:17 - 00177152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2015-02-12 01:15 - 2013-02-27 05:49 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-02-12 01:15 - 2011-05-24 11:44 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll
2015-02-12 01:14 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll
2015-02-12 01:14 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll
2015-02-12 01:14 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll
2015-02-12 01:14 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll
2015-02-12 01:14 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe
2015-02-12 01:04 - 2014-05-14 17:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-02-12 01:04 - 2014-05-14 17:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-02-12 01:04 - 2014-05-14 17:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-02-12 01:04 - 2014-05-14 17:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-02-12 01:04 - 2014-05-14 17:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-02-12 01:04 - 2014-05-14 17:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-02-12 01:04 - 2014-05-14 17:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-02-12 01:04 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-02-12 01:04 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-02-12 00:51 - 2015-02-12 00:51 - 00000000 ____D () C:\Windows\system32\SPReview
2015-02-12 00:51 - 2015-02-12 00:51 - 00000000 ____D () C:\Windows\system32\EventProviders
2015-02-12 00:50 - 2010-11-20 13:32 - 05066752 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll
2015-02-12 00:50 - 2010-11-20 13:29 - 00520064 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll
2015-02-12 00:50 - 2010-11-20 13:29 - 00014208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys
2015-02-12 00:50 - 2010-11-20 13:21 - 01159168 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2015-02-12 00:50 - 2010-11-20 13:21 - 01115136 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll
2015-02-12 00:50 - 2010-11-20 13:21 - 00750592 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2015-02-12 00:50 - 2010-11-20 13:21 - 00253952 _____ (Microsoft Corporation) C:\Windows\system32\spwizui.dll
2015-02-12 00:50 - 2010-11-20 13:21 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\tssrvlic.dll
2015-02-12 00:50 - 2010-11-20 13:19 - 00954752 _____ (Microsoft Corporation) C:\Windows\system32\mfc40.dll
2015-02-12 00:50 - 2010-11-20 13:19 - 00954288 _____ (Microsoft Corporation) C:\Windows\system32\mfc40u.dll
2015-02-12 00:50 - 2010-11-20 13:19 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\LSCSHostPolicy.dll
2015-02-12 00:50 - 2010-11-20 13:18 - 01334272 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll
2015-02-12 00:50 - 2010-11-20 13:17 - 00080896 _____ () C:\Windows\system32\RDVGHelper.exe
2015-02-12 00:50 - 2010-11-05 02:58 - 00297808 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll
2015-02-12 00:50 - 2010-11-05 02:53 - 00295264 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe
2015-02-12 00:50 - 2010-11-05 02:53 - 00099176 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll
2015-02-12 00:49 - 2010-11-20 13:36 - 01077248 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe
2015-02-12 00:49 - 2010-11-20 13:36 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\NAPHLPR.DLL
2015-02-12 00:49 - 2010-11-20 13:36 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\NAPCRYPT.DLL
2015-02-12 00:49 - 2010-11-20 13:30 - 00245632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00175360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmbus.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00173440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00160128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00153984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00140160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00130432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpio.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00116096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msdsm.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00085376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sbp2port.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00078208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00053120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00053120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00040704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vmstorfl.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00028032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storvsc.sys
2015-02-12 00:49 - 2010-11-20 13:30 - 00028032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msahci.sys
2015-02-12 00:49 - 2010-11-20 13:29 - 02217856 _____ (Microsoft Corporation) C:\Windows\system32\bootres.dll
2015-02-12 00:49 - 2010-11-20 13:29 - 00274304 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2015-02-12 00:49 - 2010-11-20 13:29 - 00194432 _____ (Microsoft Corporation) C:\Windows\system32\halmacpi.dll
2015-02-12 00:49 - 2010-11-20 13:29 - 00194432 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2015-02-12 00:49 - 2010-11-20 13:29 - 00137088 _____ (Microsoft Corporation) C:\Windows\system32\halacpi.dll
2015-02-12 00:49 - 2010-11-20 13:29 - 00043392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winhv.sys
2015-02-12 00:49 - 2010-11-20 13:24 - 00690680 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2015-02-12 00:49 - 2010-11-20 13:24 - 00508904 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2015-02-12 00:49 - 2010-11-20 13:24 - 00442720 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2015-02-12 00:49 - 2010-11-20 13:24 - 00271664 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2015-02-12 00:49 - 2010-11-20 13:23 - 00144768 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 02983424 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 02755072 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 02311168 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 02202624 _____ (Microsoft Corporation) C:\Windows\system32\SensorsCpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 02157568 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 02146304 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01712640 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01667584 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01624064 _____ (Microsoft Corporation) C:\Windows\system32\WMPEncEn.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01363456 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01326592 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01227776 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01128448 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01086976 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01063936 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 01003008 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00974336 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\Vault.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00907776 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00902656 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL
2015-02-12 00:49 - 2010-11-20 13:21 - 00811520 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00782336 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00778240 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00766464 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00755200 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00750080 _____ (Microsoft Corporation) C:\Windows\system32\sdcpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00739328 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL
2015-02-12 00:49 - 2010-11-20 13:21 - 00738816 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00697344 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00638976 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00616960 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00600064 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00577024 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00551424 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00541184 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL
2015-02-12 00:49 - 2010-11-20 13:21 - 00507392 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00505856 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00473600 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\scrptadm.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00463360 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00458752 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00436736 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00428544 _____ (Microsoft Corporation) C:\Windows\system32\shwebsvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00416768 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00411648 _____ (Microsoft Corporation)
         

Alt 16.02.2015, 11:17   #11
rubinio73
 
Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



FRST Log neu
Teil 2:

Code:
ATTFilter
C:\Windows\system32\wlangpui.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00410624 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00380416 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00376832 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00352256 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00351232 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00351232 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00350720 _____ (Microsoft Corporation) C:\Windows\system32\WPDSp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00335872 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00328192 _____ (Microsoft Corporation) C:\Windows\system32\shsvcs.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00327680 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00318976 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese30.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00305152 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00276992 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00233472 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00228352 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\unattend.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00198144 _____ (Microsoft Corporation) C:\Windows\system32\wpdwcn.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00198144 _____ (Microsoft Corporation) C:\Windows\system32\sysclass.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\vaultsvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\wdscore.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00182272 _____ (Microsoft Corporation) C:\Windows\system32\wmpsrcwp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00181760 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00171008 _____ (Microsoft Corporation) C:\Windows\system32\umrdp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\tscfgwmi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00151040 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\recovery.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00134656 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\tspubwmi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00125952 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\setupcln.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\wiavideo.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\sppinst.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\srvcli.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL
2015-02-12 00:49 - 2010-11-20 13:21 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\rastapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\unimdmat.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\sppuinotify.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\rdpd3d.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00051200 _____ (Twain Working Group) C:\Windows\twain_32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\samcli.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\wkscli.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\RpcRtRemote.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\wtsapi32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\wiarpc.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\wdiasqmmodule.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\utildll.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\vpnikeapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\TRAPI.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\rdprefdrvapi.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\sisbkup.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\schedcli.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\tsbyuv.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wshirda.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\shunimpl.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00008704 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll
2015-02-12 00:49 - 2010-11-20 13:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2015-02-12 00:49 - 2010-11-20 13:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 02504192 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL
2015-02-12 00:49 - 2010-11-20 13:20 - 02494464 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 02130944 _____ (Microsoft Corporation) C:\Windows\system32\networkmap.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01750528 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01661440 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01644032 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01508864 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01414144 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 01111552 _____ (Microsoft Corporation) C:\Windows\system32\onexui.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00988160 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00932352 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\PerfCenterCPL.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00585728 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00573440 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00563712 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00547840 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00427520 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceStatus.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00395264 _____ (Microsoft Corporation) C:\Windows\system32\prnfldr.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00330240 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL
2015-02-12 00:49 - 2010-11-20 13:20 - 00324608 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00297472 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00283136 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00225792 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00218112 _____ (Microsoft Corporation) C:\Windows\system32\OnLineIDCpl.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\qcap.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceSyncProvider.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00174592 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL
2015-02-12 00:49 - 2010-11-20 13:20 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL
2015-02-12 00:49 - 2010-11-20 13:20 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\netjoin.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00121344 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\prncache.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL
2015-02-12 00:49 - 2010-11-20 13:20 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\olepro32.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\olethk32.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL
2015-02-12 00:49 - 2010-11-20 13:20 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\ncryptui.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\pdhui.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationProxy.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\netutils.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\perfts.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00011776 _____ (Microsoft Corporation) C:\Windows\system32\nrpsrv.dll
2015-02-12 00:49 - 2010-11-20 13:20 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 02291712 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 02151936 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 01493504 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 01066496 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00856576 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL
2015-02-12 00:49 - 2010-11-20 13:19 - 00828928 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00732160 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00593408 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00592384 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00566272 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00481792 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00429056 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\mspbda.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00400896 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00392192 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2015-02-12 00:49 - 2010-11-20 13:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00271360 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00266752 _____ (Microsoft Corporation) C:\Windows\system32\MediaMetadataHandler.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00265216 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL
2015-02-12 00:49 - 2010-11-20 13:19 - 00219648 _____ (Microsoft Corporation) C:\Windows\system32\iTVData.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\MMDevAPI.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\input.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\msorcl32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00176128 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00175104 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00167936 _____ (Microsoft Corporation) C:\Windows\system32\msutb.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\hgprint.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00120320 _____ (Microsoft Corporation) C:\Windows\system32\msvfw32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\imm32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL
2015-02-12 00:49 - 2010-11-20 13:19 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00093696 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\fms.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\mciavi32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00082944 _____ (Radius Inc.) C:\Windows\system32\iccvid.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL
2015-02-12 00:49 - 2010-11-20 13:19 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\Mcx2Svc.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\iyuv_32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00039424 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\mciqtz32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\httpapi.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\msvidc32.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\msyuv.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\HotStartUserAgent.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\muifontsetup.dll
2015-02-12 00:49 - 2010-11-20 13:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msrle32.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 03727872 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 02522624 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01828352 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01555456 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01400320 _____ (Microsoft Corporation) C:\Windows\system32\DxpTaskSync.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01371136 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01188864 _____ (Microsoft Corporation) C:\Windows\system32\DiagCpl.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01040384 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 01003520 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00863744 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00854016 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00762880 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00740864 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00685056 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00665600 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayCpl.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00630784 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00546304 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00537600 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00494592 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2015-02-12 00:49 - 2010-11-20 13:18 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00438272 _____ (Microsoft Corporation) C:\Windows\system32\AdmTmpl.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\biocpl.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00418816 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00402944 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00399872 _____ (Microsoft Corporation) C:\Windows\system32\DXP.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00339968 _____ (Microsoft Corporation) C:\Windows\system32\appmgr.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00333824 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\dpx.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00252928 _____ (Microsoft) C:\Windows\system32\DShowRdpFilter.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\audiodev.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00230912 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\defaultlocationcpl.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00214016 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00205312 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\activeds.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\adsldp.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00179200 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\cscobj.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAPI.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayServices.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\CscMig.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\dnscmmc.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00094208 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\avifil32.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\cca.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\CertPolEng.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\elsTrans.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\bitsperf.dll
2015-02-12 00:49 - 2010-11-20 13:18 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\C_ISCII.DLL
2015-02-12 00:49 - 2010-11-20 13:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\browseui.dll
2015-02-12 00:49 - 2010-11-20 13:17 - 03367424 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 01203200 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 01131008 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 01025536 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00802304 _____ (Microsoft Corporation) C:\Windows\system32\WFS.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00586752 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00477696 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00456192 _____ (Microsoft Corporation) C:\Windows\system32\spinstall.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00453632 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00334336 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00327680 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00280576 _____ (Microsoft Corporation) C:\Windows\system32\spreview.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00276480 _____ (Microsoft Corporation) C:\Windows\system32\diskraid.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00270336 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\lsm.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00260608 _____ (Microsoft Corporation) C:\Windows\system32\rdpshell.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00233984 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\taskmgr.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00197632 _____ (Microsoft Corporation) C:\Windows\system32\ocsetup.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00182784 _____ (Microsoft Corporation) C:\Windows\system32\RelPost.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00179712 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\PresentationSettings.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00161280 _____ (Microsoft Corporation) C:\Windows\system32\rdpinit.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00157184 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\iscsicli.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\setupugc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\setupcl.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00098816 _____ (Microsoft) C:\Windows\system32\Robocopy.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\logagent.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\isoburn.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\MuiUnattend.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00066048 _____ () C:\Windows\system32\PrintBrmUi.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\lpremove.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\djoin.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\repair-bde.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\rdpsign.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\MultiDigiMon.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\PushPrinterConnections.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\tzutil.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\unlodctr.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\proquota.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\qwinsta.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\netiougc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\netcfg.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\qprocess.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\msg.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\quser.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\tskill.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\tsdiscon.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\ReAgentc.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\tscon.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\qappsrv.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\logoff.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\shadow.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\rwinsta.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\reset.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\query.exe
2015-02-12 00:49 - 2010-11-20 13:17 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00905216 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr
2015-02-12 00:49 - 2010-11-20 13:16 - 00776192 _____ (Microsoft Corporation) C:\Windows\system32\calc.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00668160 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00658944 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00649216 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00600576 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00516096 _____ (Microsoft Corporation) C:\Windows\system32\main.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2015-02-12 00:49 - 2010-11-20 13:16 - 00389632 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx
2015-02-12 00:49 - 2010-11-20 13:16 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00326656 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00320000 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2015-02-12 00:49 - 2010-11-20 13:16 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00293888 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr
2015-02-12 00:49 - 2010-11-20 13:16 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp
2015-02-12 00:49 - 2010-11-20 13:16 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr
2015-02-12 00:49 - 2010-11-20 13:16 - 00220672 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr
2015-02-12 00:49 - 2010-11-20 13:16 - 00204288 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv
2015-02-12 00:49 - 2010-11-20 13:16 - 00153600 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl
2015-02-12 00:49 - 2010-11-20 13:16 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfg.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00119808 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00107008 _____ (Microsoft Corporation) C:\Windows\system32\Kswdmcap.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00065024 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax
2015-02-12 00:49 - 2010-11-20 13:16 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\chgport.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\chglogon.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\chgusr.exe
2015-02-12 00:49 - 2010-11-20 13:16 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\change.exe
2015-02-12 00:49 - 2010-11-20 13:07 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll
2015-02-12 00:49 - 2010-11-20 13:07 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll
2015-02-12 00:49 - 2010-11-20 13:06 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll
2015-02-12 00:49 - 2010-11-20 13:05 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\RDPENCDD.dll
2015-02-12 00:49 - 2010-11-20 13:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\pifmgr.dll
2015-02-12 00:49 - 2010-11-20 13:03 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\vmicres.dll
2015-02-12 00:49 - 2010-11-20 13:03 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\vmbusres.dll
2015-02-12 00:49 - 2010-11-20 13:03 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\vmstorfltres.dll
2015-02-12 00:49 - 2010-11-20 13:00 - 01027584 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME
2015-02-12 00:49 - 2010-11-20 13:00 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime
2015-02-12 00:49 - 2010-11-20 13:00 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDSG.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\kbdlk41a.dll
2015-02-12 00:49 - 2010-11-20 13:00 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDCZ1.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUQ.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUF.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDSF.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDPO.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDNEPR.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDINBEN.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDGR1.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDGKL.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDUS.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDUGHR1.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDTURME.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAJIK.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDMON.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDMAORI.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDLT1.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTEL.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTAM.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINORI.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINMAR.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINKAN.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDINHIN.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBULG.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00006144 _____ (Microsoft Corporation) C:\Windows\system32\KBDBLR.DLL
2015-02-12 00:49 - 2010-11-20 13:00 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\KBDGEO.DLL
2015-02-12 00:49 - 2010-11-20 12:57 - 00002560 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2015-02-12 00:49 - 2010-11-20 12:56 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\BlbEvents.dll
2015-02-12 00:49 - 2010-11-20 12:54 - 00302592 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-02-12 00:49 - 2010-11-20 11:52 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys
2015-02-12 00:49 - 2010-11-20 11:24 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys
2015-02-12 00:49 - 2010-11-20 11:22 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\rdpdd.dll
2015-02-12 00:49 - 2010-11-20 11:22 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RDPCDD.sys
2015-02-12 00:49 - 2010-11-20 11:21 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\RDPREFDD.dll
2015-02-12 00:49 - 2010-11-20 11:21 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdpipe.sys
2015-02-12 00:49 - 2010-11-20 11:07 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys
2015-02-12 00:49 - 2010-11-20 11:07 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2015-02-12 00:49 - 2010-11-20 11:07 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2015-02-12 00:49 - 2010-11-20 11:06 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys
2015-02-12 00:49 - 2010-11-20 11:06 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys
2015-02-12 00:49 - 2010-11-20 11:06 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys
2015-02-12 00:49 - 2010-11-20 11:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\1394ohci.sys
2015-02-12 00:49 - 2010-11-20 11:00 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys
2015-02-12 00:49 - 2010-11-20 11:00 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys
2015-02-12 00:49 - 2010-11-20 11:00 - 00025856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys
2015-02-12 00:49 - 2010-11-20 11:00 - 00025856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD.sys
2015-02-12 00:49 - 2010-11-20 10:59 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys
2015-02-12 00:49 - 2010-11-20 10:59 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2015-02-12 00:49 - 2010-11-20 10:50 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys
2015-02-12 00:49 - 2010-11-20 10:50 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CompositeBus.sys
2015-02-12 00:49 - 2010-11-20 10:50 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2015-02-12 00:49 - 2010-11-20 10:50 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffp_sd.sys
2015-02-12 00:49 - 2010-11-20 10:29 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2015-02-12 00:49 - 2010-11-20 10:24 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys
2015-02-12 00:49 - 2010-11-20 10:19 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys
2015-02-12 00:49 - 2010-11-20 10:14 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\vmicsvc.exe
2015-02-12 00:49 - 2010-11-20 10:14 - 00116224 _____ (Microsoft Corporation) C:\Windows\system32\VmbusCoinstaller.dll
2015-02-12 00:49 - 2010-11-20 10:14 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\VmdCoinstall.dll
2015-02-12 00:49 - 2010-11-20 10:14 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\IcCoinstall.dll
2015-02-12 00:49 - 2010-11-20 10:14 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll
2015-02-12 00:49 - 2010-11-20 10:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VMBusHID.sys
2015-02-12 00:49 - 2010-11-20 10:14 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\vmbuspipe.dll
2015-02-12 00:49 - 2010-11-20 10:14 - 00005632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vms3cap.sys
2015-02-12 00:49 - 2010-11-20 09:47 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipmi.sys
2015-02-12 00:49 - 2010-11-20 09:44 - 00388096 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys
2015-02-12 00:49 - 2010-11-20 09:44 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2015-02-12 00:49 - 2010-11-20 09:42 - 00246784 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2015-02-12 00:49 - 2010-11-20 09:42 - 00078336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2015-02-12 00:49 - 2010-11-20 09:40 - 00513536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-02-12 00:49 - 2010-11-20 09:39 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2015-02-12 00:49 - 2010-11-20 09:39 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys
2015-02-12 00:49 - 2010-11-20 09:38 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdrom.sys
2015-02-12 00:49 - 2010-11-20 06:23 - 00053600 _____ () C:\Windows\system32\dosx.exe
2015-02-12 00:49 - 2010-11-10 02:45 - 00010429 _____ () C:\Windows\system32\ScavengeSpace.xml
2015-02-12 00:49 - 2010-11-05 03:20 - 00146852 _____ () C:\Windows\system32\systemsf.ebd
2015-02-12 00:49 - 2010-11-05 03:20 - 00105559 _____ () C:\Windows\system32\RacRules.xml
2015-02-12 00:49 - 2010-11-05 03:11 - 00312168 _____ (Microsoft Corporation) C:\Windows\system32\MCEWMDRMNDBootstrap.dll
2015-02-12 00:49 - 2010-11-05 02:58 - 00049488 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll
2015-02-12 00:34 - 2015-02-12 00:34 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\NVIDIA
2015-02-12 00:29 - 2015-02-12 00:31 - 00000000 ____D () C:\Windows\system32\MRT
2015-02-12 00:29 - 2015-02-12 00:29 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_LUsbFilt_01005.Wdf
2015-02-12 00:28 - 2015-02-16 10:57 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-02-12 00:28 - 2014-08-19 22:16 - 00061728 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2015-02-12 00:28 - 2014-07-02 20:42 - 04389848 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-02-12 00:28 - 2014-07-02 20:42 - 03063256 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc.dll
2015-02-12 00:28 - 2014-07-02 20:42 - 02556360 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-02-12 00:28 - 2014-07-02 20:42 - 00670552 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-02-12 00:28 - 2014-07-02 20:42 - 00377288 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-02-12 00:28 - 2014-07-02 20:42 - 00062936 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-02-12 00:28 - 2014-07-02 06:14 - 03826628 _____ () C:\Windows\system32\nvcoproc.bin
2015-02-12 00:27 - 2015-02-15 14:35 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2015-02-12 00:27 - 2015-02-14 20:03 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2015-02-12 00:10 - 2011-04-09 06:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-02-12 00:05 - 2015-02-12 00:05 - 00001409 _____ () C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-02-12 00:04 - 2015-02-16 11:08 - 01907318 _____ () C:\Windows\WindowsUpdate.log
2015-02-12 00:03 - 2015-02-15 14:47 - 00000000 ____D () C:\Users\Rubinio
2015-02-12 00:03 - 2015-02-14 21:43 - 00000000 ____D () C:\Users\Rubinio\AppData\Local\VirtualStore
2015-02-12 00:03 - 2015-02-12 00:03 - 00000020 ___SH () C:\Users\Rubinio\ntuser.ini
2015-02-12 00:03 - 2015-02-12 00:03 - 00000000 _SHDL () C:\Users\Rubinio\Startmenü
2015-02-12 00:03 - 2015-02-12 00:03 - 00000000 _SHDL () C:\Users\Rubinio\Netzwerkumgebung
2015-02-12 00:03 - 2015-02-12 00:03 - 00000000 _SHDL () C:\Users\Rubinio\Druckumgebung
2015-02-12 00:03 - 2015-02-12 00:03 - 00000000 _SHDL () C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-02-12 00:03 - 2015-02-12 00:03 - 00000000 _SHDL () C:\Users\Rubinio\AppData\Local\Verlauf
2015-02-12 00:03 - 2009-07-14 05:42 - 00000000 ___RD () C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-12 00:03 - 2009-07-14 05:37 - 00000000 ___RD () C:\Users\Rubinio\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\Startmenü
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\Programme
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\ProgramData\Startmenü
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 _SHDL () C:\ProgramData\Dokumente
2015-02-12 00:02 - 2015-02-12 00:02 - 00000000 ____D () C:\Recovery

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-11-02 23:59 - 2010-03-24 05:38 - 00003540 _____ () C:\Windows\TSSysprep.log
2015-11-02 23:56 - 2009-07-14 05:34 - 00002790 _____ () C:\Windows\DtcInstall.log
2015-11-02 23:55 - 2009-07-14 05:57 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2015-11-02 23:55 - 2009-07-14 05:52 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2015-02-16 11:05 - 2009-07-14 05:34 - 00012192 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-02-16 11:05 - 2009-07-14 05:34 - 00012192 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-02-16 10:57 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-02-16 10:57 - 2009-07-14 05:39 - 00029826 _____ () C:\Windows\setupact.log
2015-02-15 16:21 - 2009-07-14 10:03 - 00000000 ____D () C:\Windows\DigitalLocker
2015-02-15 15:33 - 2009-07-14 03:37 - 00000000 __RHD () C:\Users\Default
2015-02-15 15:33 - 2009-07-14 03:37 - 00000000 ___RD () C:\Users\Public
2015-02-15 00:14 - 2010-03-24 05:48 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-02-14 22:00 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\rescache
2015-02-14 10:28 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\de-DE
2015-02-13 13:00 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2015-02-13 10:41 - 2009-07-14 05:33 - 00434312 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-12 19:01 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-02-12 18:10 - 2009-07-14 10:15 - 00000000 ____D () C:\Windows\ShellNew
2015-02-12 18:07 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\System
2015-02-12 18:07 - 2009-07-14 03:04 - 00000478 _____ () C:\Windows\win.ini
2015-02-12 10:14 - 2009-07-14 03:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-12 10:13 - 2009-07-14 10:03 - 00000000 ____D () C:\Windows\system32\Drivers\de-DE
2015-02-12 10:13 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\tracing
2015-02-12 10:00 - 2009-07-14 10:14 - 00000000 ____D () C:\Program Files\Windows Journal
2015-02-12 08:58 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\Windows Defender
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\zh-TW
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\zh-HK
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\zh-CN
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\tr-TR
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\sv-SE
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\ru-RU
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\pt-PT
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\pt-BR
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\pl-PL
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\nl-NL
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\nb-NO
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\ko-KR
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\ja-JP
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\it-IT
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\hu-HU
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\fr-FR
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\fi-FI
2015-02-12 08:58 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\el-GR
2015-02-12 01:22 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\LogFiles
2015-02-12 00:58 - 2009-07-14 10:03 - 00000000 ____D () C:\Windows\de-DE
2015-02-12 00:58 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\Windows Sidebar
2015-02-12 00:58 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\Windows Portable Devices
2015-02-12 00:58 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-02-12 00:58 - 2009-07-14 05:52 - 00000000 ____D () C:\Program Files\DVD Maker
2015-02-12 00:57 - 2009-07-14 10:15 - 00000000 __SHD () C:\Windows\BitLockerDiscoveryVolumeContents
2015-02-12 00:57 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers
2015-02-12 00:53 - 2009-07-14 03:05 - 00152576 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2015-02-12 00:28 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\Help
2015-02-12 00:07 - 2009-07-14 05:52 - 00000000 ____D () C:\Windows\system32\restore
2015-02-12 00:03 - 2009-07-14 03:37 - 00000000 __RHD () C:\Users\Public\Libraries
2015-02-12 00:02 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Windows NT
2015-01-29 17:49 - 2010-03-24 05:46 - 113756392 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe

Some content of TEMP:
====================
C:\Users\Rubinio\AppData\Local\Temp\avgnt.exe
C:\Users\Rubinio\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpsic_6q.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-02-13 13:45

==================== End Of Log ============================
         
Aufgefallen ist mir weiterhin das die Datei REGEDIT nicht gefunden wird.
Dies kam auch als Hinweis bei dem Farbar Tool .

Alt 16.02.2015, 18:26   #12
schrauber
/// the machine
/// TB-Ausbilder
 

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



Kannste mir von der Meldung mal nen Screenshot machen?
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 18.02.2015, 17:05   #13
rubinio73
 
Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



Sorry für die etwas verspätete Rückmeldung.
Hier ein Bild der Fehlermeldung.


Alt 19.02.2015, 06:51   #14
schrauber
/// the machine
/// TB-Ausbilder
 

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



Bitte das Bild anhängen, ich seh das sonst nicht, wird geblockt.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 19.02.2015, 10:45   #15
rubinio73
 
Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Standard

Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere



Alles klar, jetzt sollte es klappen.
Miniaturansicht angehängter Grafiken
Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere-img_1602.jpg  

Antwort

Themen zu Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere
angezeigt, bereits, dankbar, folge, folgende, gefunde, heute, hilfe, malware, malwarebytes, meldungen, nichts, problem, programm, rojaner gefunden, suchlauf, tr/atraps.gen, tr/dropper.gen, tr/dropper.gen2, troja, trojaner, trojaner gefunden, trojaner gefunden tr/atraps.gen




Ähnliche Themen: Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere


  1. Trojaner von Avira gefunden (EXP/Java.HLP.CJ und TR/ATRAPS.Gen2). Windows 7 64 Bit
    Log-Analyse und Auswertung - 14.09.2015 (9)
  2. Trojaner / Malware TR/ATRAPS.Gen2 in C:\RECYCLER\S-1-5-18\...\80000032.@
    Plagegeister aller Art und deren Bekämpfung - 31.05.2013 (16)
  3. Trojaner: tr/atraps.gen2, tr/atraps.gen, tr/atraps.gen3, tr/atraps.gen4, tr/atraps.gen5, tr/atraps.gen7 und services.exe virus
    Plagegeister aller Art und deren Bekämpfung - 11.01.2013 (29)
  4. Trojaner TR/ATRAPS.Gen2 und weitere eingefangen
    Log-Analyse und Auswertung - 27.12.2012 (3)
  5. TR/ATRAPS.Gen & TR/ATRAPS.Gen2 durch Avira gefunden
    Plagegeister aller Art und deren Bekämpfung - 10.11.2012 (3)
  6. Avira: 800000cb.@ TR/ATRAPS.Gen und TR/ATRAPS.Gen2 in C:\Windows\Installer\.. und weitere Pfaden
    Plagegeister aller Art und deren Bekämpfung - 16.08.2012 (25)
  7. TR/ATRAPS.Gen, TR/ATRAPS.Gen2, TR/Fraud.Gen8, TR/Dropper.Gen, BDS/Agent.rze, BDS/ZAccess.V, EXP/JAVA.Vedenbi.Gen
    Plagegeister aller Art und deren Bekämpfung - 15.08.2012 (1)
  8. 4 Trojaner & veränderte Systemdatei (ATRAPS.Gen & Gen2, Dropper.BCMiner, ZAccess.H)
    Plagegeister aller Art und deren Bekämpfung - 17.07.2012 (9)
  9. TR/ATRAPS.Gen , TR/ATRAPS.Gen2 und Live Security Platinum gefunden
    Plagegeister aller Art und deren Bekämpfung - 12.07.2012 (3)
  10. Virus gefunden: TR/ATRAPS.Gen, TR/ATRAPS.Gen2
    Plagegeister aller Art und deren Bekämpfung - 12.07.2012 (1)
  11. TR/ATRAPS.Gen2 und Trojan.Dropper.BCMiner
    Plagegeister aller Art und deren Bekämpfung - 11.07.2012 (3)
  12. Trojan.Dropper und TR/ATRAPS.Gen2
    Plagegeister aller Art und deren Bekämpfung - 26.06.2012 (30)
  13. Auch hier W32/Patched.UA, ATRAPS.Gen2 und weitere.
    Log-Analyse und Auswertung - 26.06.2012 (4)
  14. TR/Small.FI, TR/ATRAPS.Gen und TR/ATRAPS.Gen2 gefunden, aber nach Systemwiederherstellung weg?
    Plagegeister aller Art und deren Bekämpfung - 25.06.2012 (4)
  15. Trojaner TR/ATRAPS.GEN2 und TR/Sirefef.AG.35 von Avira gefunden
    Plagegeister aller Art und deren Bekämpfung - 21.06.2012 (31)
  16. TR/ATRAPS.Gen2 und weitere
    Plagegeister aller Art und deren Bekämpfung - 02.03.2012 (5)
  17. TR/ATRAPS.Gen2, TR/Kryptik.FYC, TR/Kazy.47207.1 und andere Trojaner gefunden.
    Log-Analyse und Auswertung - 09.12.2011 (5)

Zum Thema Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere - Hallo Leute Jetzt lese ich hier schon eine ganze Zeit mit und bin jetzt selber von einem Problem betroffen. Avira hat mir heute folgende Meldungen als Virus/Trojaner/Malware angezeigt: TR/ATR/AtRAPS.GEN TR/Dropper.Gen2 - Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere...
Archiv
Du betrachtest: Malware und Trojaner gefunden TR/AtRAPS.GEN, TR/Dropper.Gen2 und weitere auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.