![]() |
Log-Analyse und Auswertung: Laptop über LAN an Router Internet bricht abWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
![]() | #1 |
![]() | ![]() Laptop über LAN an Router Internet bricht ab Hallo liebe Community, ich habe folgendes Problem: Mein Wlan funktioniert meistens einwandfrei, doch wenn ich meinen Laptop direkt an den Router anschließe, dann bricht die Internetverbindung nach 20 Minuten ab und ich kriege diese auch nicht wieder stabil, selbst wenn ich den Laptop entferne und dergleichen. Ich muss den Router dann resetten und dann geht wieder. Nach dem letzten Reset erschienen nur meine gewohnten Geräte in der Übersicht der verbundenen Geräte im Router (Easybox 602), allerdings hatte ich davor meinen Laptop doppelt drin (18.02.15) und davor hatte ich eine fremde IP-Adresse/Mac-Adresse (14.02.15) im Router gelistet. Ich habe diese Adressen gesperrt. (Mehr Informationen kann ich dazu leider nciht geben, da ich heute den Router wieder geresettet habe und diese nun nicht mehr erscheinen). Als die Verbindung gestern wieder abbrach, erschien ganz kurz eine Seite (ich konnte nicht erkennen welche, aber nicht die gewünschte Seite) und dann wurde mir sofort angezeigt, dass ich keine Internetverbindung aufbauen kann. Meine Frage ist nun, ob ich vielleicht einen Virus auf meinem Rechner habe, der meinen Router angreift oder beschädigt und als Reaktion darauf der Router dicht macht/die Internetverbindung abgebrochen wird. Virenscanner (AVAST) schlägt nicht an. Tut mir leid, wenn das alles ein wenig Wirr ist, aber ich kanns nicht besser beschreiben. Hier die files: Defogger Code:
ATTFilter defogger_disable by jpshortstuff ( Log created at 10:08 on 19/02/2015 (Chin) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-02-2015 01 Ran by Chin (administrator) on CHIN-LP on 19-02-2015 09:17:08 Running from C:\Users\Chin\Desktop Loaded Profiles: Chin (Available profiles: Chin) Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AMD) C:\Windows\System32\atieclxx.exe (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe (AppEx Networks Corporation) C:\Program Files\AMD Quick Stream\AMDQuickStream.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (ATI Technologies Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (OldTimer Tools) C:\Users\Chin\Desktop\otl.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2014-11-20] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-27] (AVAST Software) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2109952 2014-10-07] (Dominik Reichl) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2015-01-30] (Raptr, Inc) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [134784 2014-02-25] ( (Atheros Communications)) HKU\S-1-5-21-2240681411-2449356942-1176590736-1000\...\Run: [AppEx Accelerator UI] => C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [482528 2014-03-31] (AppEx Networks Corporation) HKU\S-1-5-21-2240681411-2449356942-1176590736-1000\...\Run: [ownCloud] => H:\ownCloud-programm\owncloud.exe HKU\S-1-5-21-2240681411-2449356942-1176590736-1000\...\MountPoints2: {018f8c7e-a236-11e4-9cc9-806e6f6e6963} - D:\wubi.exe HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-01-22] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ OCError] -> {0960F090-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCErrorShared] -> {0960F091-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCOK] -> {0960F092-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCOKShared] -> {0960F093-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCSync] -> {0960F094-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCSyncShared] -> {0960F095-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCWarning] -> {0960F096-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCWarningShared] -> {0960F097-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) BHO: No Name -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> No File BHO: No Name -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> No File BHO: No Name -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> No File BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File BHO-x32: No Name -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> No File BHO-x32: No Name -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> No File Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\Chin\AppData\Roaming\Mozilla\Firefox\Profiles\cw2aiiqm.default FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-01-22] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found] Chrome: ======= CHR HomePage: Default -> CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} CHR Profile: C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Drive) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-22] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-01-22] CHR Extension: (YouTube) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-22] CHR Extension: (Adblock Plus) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-01-22] CHR Extension: (Telegram) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\clhhggbfdinjmjhajaheehoeibfljjno [2015-01-22] CHR Extension: (Google Search) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-22] CHR Extension: (MightyText - SMS from PC & Text from PC / Mac) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkfhfaphfkopdgpbfkebjfcblcafcmpi [2015-01-22] CHR Extension: (ZenMate Security & Privacy VPN) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2015-01-22] CHR Extension: (Readium) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fepbnnnkkadjhjahcafoaglimekefifl [2015-01-22] CHR Extension: (AdBlock) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-01-22] CHR Extension: (Clearly) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\iooicodkiihhpojmmeghjclgihfjdjhj [2015-01-22] CHR Extension: (Hangouts) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nckgahadagoaajjgafhacjanaoiihapd [2015-01-22] CHR Extension: (Google Wallet) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-22] CHR Extension: (Citavi Picker) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohgndokldibnndfnjnagojmheejlengn [2015-01-26] CHR Extension: (chromeIPass) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ompiailgknfdndiefoaoiligalphfdae [2015-01-22] CHR Extension: (Evernote Web Clipper) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2015-01-22] CHR Extension: (Gmail) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-22] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-01-22] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-01-22] CHR HKLM-x32\...\Chrome\Extension: [ohgndokldibnndfnjnagojmheejlengn] - No Path ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-02-25] (Windows (R) Win 7 DDK provider) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-22] (AVAST Software) R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2015-01-22] (Avast Software) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2449592 2014-11-12] (Microsoft Corporation) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [294600 2014-11-21] (Advanced Micro Devices) R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [62152 2014-10-28] (Advanced Micro Devices, Inc.) R2 APXACC; C:\Windows\System32\DRIVERS\appexDrv.sys [229056 2014-10-28] (AppEx Networks Corporation) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-22] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2015-01-22] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-22] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-22] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-23] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-22] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-22] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-22] () S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2014-02-25] (Qualcomm Atheros) R3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [466136 2014-01-14] (Realsil Semiconductor Corporation) R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2015-01-22] (Avast Software) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-19 09:17 - 2015-02-19 09:17 - 00016583 _____ () C:\Users\Chin\Desktop\FRST.txt 2015-02-19 09:16 - 2015-02-19 09:17 - 00000000 ____D () C:\FRST 2015-02-19 09:08 - 2015-02-19 09:09 - 02086912 _____ (Farbar) C:\Users\Chin\Desktop\FRST64.exe 2015-02-19 09:07 - 2015-02-19 09:07 - 00141242 _____ () C:\Users\Chin\Desktop\OTL.Txt 2015-02-19 09:07 - 2015-02-19 09:07 - 00060886 _____ () C:\Users\Chin\Desktop\Extras_OTL.Txt 2015-02-19 09:06 - 2015-02-19 09:06 - 00060886 _____ () C:\Users\Chin\Downloads\Extras.Txt 2015-02-19 09:03 - 2015-02-19 09:03 - 00141242 _____ () C:\Users\Chin\Downloads\OTL.Txt 2015-02-19 08:52 - 2015-02-19 08:52 - 00602112 _____ (OldTimer Tools) C:\Users\Chin\Desktop\otl.exe 2015-02-18 19:56 - 2015-02-18 19:57 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-02-18 19:56 - 2015-02-18 19:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-02-18 19:56 - 2015-02-18 19:56 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-02-18 19:56 - 2015-02-18 19:56 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-02-18 19:56 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-02-18 19:56 - 2014-11-21 06:14 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-02-18 19:56 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-02-17 12:30 - 2015-02-18 20:26 - 00000000 ___RD () C:\Users\Chin\Dropbox 2015-02-17 12:29 - 2015-02-17 12:29 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-02-17 12:26 - 2015-02-19 07:11 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Dropbox 2015-02-12 12:11 - 2015-02-12 12:11 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2015-02-12 12:11 - 2015-02-12 12:11 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client 2015-02-12 08:50 - 2015-02-12 08:59 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2015-02-12 08:50 - 2015-02-12 08:55 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2015-02-12 08:50 - 2015-02-12 08:50 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk 2015-02-12 08:50 - 2015-02-12 08:50 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2015-02-12 08:50 - 2015-02-12 08:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 2015-02-12 08:50 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2015-02-12 08:06 - 2015-01-23 05:42 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-02-12 08:06 - 2015-01-23 05:41 - 06041600 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-02-12 08:06 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-02-12 08:06 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-02-11 22:03 - 2015-02-11 22:03 - 00000000 ____D () C:\Users\Chin\AppData\Local\CrashDumps 2015-02-11 12:51 - 2015-02-11 12:59 - 00000000 ____D () C:\Users\Chin\AppData\Local\calibre-cache 2015-02-11 12:43 - 2015-02-11 12:59 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\calibre 2015-02-11 12:42 - 2015-02-11 12:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management 2015-02-11 12:42 - 2015-02-11 12:43 - 00000000 ____D () C:\Program Files\Calibre2 2015-02-11 12:37 - 2015-01-10 07:48 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-02-11 12:37 - 2015-01-10 07:48 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-02-11 12:37 - 2015-01-10 07:48 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-02-11 12:37 - 2015-01-10 07:48 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-02-11 12:37 - 2015-01-10 07:48 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-02-11 12:37 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-02-11 12:37 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-02-11 12:37 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-02-11 12:37 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-02-11 12:36 - 2015-01-14 06:47 - 00389808 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-02-11 12:36 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-02-11 12:36 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-02-11 12:36 - 2015-01-12 04:05 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-02-11 12:36 - 2015-01-12 04:05 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-02-11 12:36 - 2015-01-12 03:49 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-02-11 12:36 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-02-11 12:36 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-02-11 12:36 - 2015-01-12 03:48 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-02-11 12:36 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-02-11 12:36 - 2015-01-12 03:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-02-11 12:36 - 2015-01-12 03:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-02-11 12:36 - 2015-01-12 03:36 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-02-11 12:36 - 2015-01-12 03:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-02-11 12:36 - 2015-01-12 03:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-02-11 12:36 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-02-11 12:36 - 2015-01-12 03:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-02-11 12:36 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-02-11 12:36 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-02-11 12:36 - 2015-01-12 03:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-02-11 12:36 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-02-11 12:36 - 2015-01-12 03:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-02-11 12:36 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-02-11 12:36 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-02-11 12:36 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-02-11 12:36 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-02-11 12:36 - 2015-01-12 03:04 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-02-11 12:36 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-02-11 12:36 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-02-11 12:36 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-02-11 12:36 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-02-11 12:36 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-02-11 12:36 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-02-11 12:36 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-02-11 12:36 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-02-11 12:36 - 2015-01-12 02:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-02-11 12:36 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-02-11 12:36 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-02-11 12:36 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-02-11 12:36 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-02-11 12:36 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-02-11 12:36 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-02-11 12:36 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-02-11 12:36 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-02-11 12:36 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-02-11 12:36 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-02-11 12:36 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-02-11 12:36 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-02-11 12:36 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-02-11 12:36 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-02-11 12:36 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-02-11 12:36 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-02-11 12:36 - 2015-01-10 07:48 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-02-11 12:36 - 2015-01-10 07:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-02-11 12:36 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-02-11 12:36 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-02-11 12:36 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-02-11 12:35 - 2015-01-15 09:14 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-02-11 12:35 - 2015-01-15 09:14 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-02-11 12:35 - 2015-01-15 09:09 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-02-11 12:35 - 2015-01-15 09:09 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-02-11 12:35 - 2015-01-15 09:09 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-02-11 12:35 - 2015-01-15 09:09 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-02-11 12:35 - 2015-01-15 09:09 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-02-11 12:35 - 2015-01-15 09:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-02-11 12:35 - 2015-01-15 09:04 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-02-11 12:35 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-02-11 12:35 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-02-11 12:35 - 2015-01-15 08:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-02-11 12:35 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-02-11 12:35 - 2015-01-15 05:22 - 00458824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-02-11 12:35 - 2015-01-13 04:10 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2015-02-11 12:35 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2015-02-11 12:34 - 2015-01-15 09:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-02-11 12:34 - 2015-01-15 09:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-02-11 12:34 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-02-11 12:34 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-02-11 12:34 - 2015-01-14 07:09 - 05554112 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-02-11 12:34 - 2015-01-14 07:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-02-11 12:34 - 2015-01-14 07:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-02-11 12:34 - 2015-01-14 07:04 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-02-11 12:34 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2015-02-11 12:34 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2015-02-11 12:34 - 2015-01-14 06:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-02-11 12:34 - 2014-12-08 04:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-02-11 12:34 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-02-11 12:33 - 2015-01-09 03:03 - 03201536 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-02-08 14:54 - 2015-02-19 07:59 - 00000000 ____D () C:\Users\Chin\Documents\Bluetooth Folder 2015-02-07 19:46 - 2015-02-15 22:01 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\vlc 2015-02-03 19:04 - 2015-02-03 19:04 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2015-02-03 11:53 - 2015-02-03 11:53 - 00000000 ____D () C:\Users\Chin\Documents\Telekom 2015-02-01 18:17 - 2015-02-01 18:17 - 00000000 ____D () C:\Users\Chin\Desktop\franzstrich.de 2015-01-28 07:03 - 2013-04-10 00:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-01-28 07:03 - 2013-04-02 23:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-01-27 18:07 - 2015-02-17 12:39 - 00000000 ____D () C:\Users\Chin\owncloud 2015-01-27 18:03 - 2015-01-27 18:03 - 00000547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ownCloud.lnk 2015-01-27 18:02 - 2015-01-27 18:02 - 00000000 ____D () C:\Program Files (x86)\ownCloud 2015-01-27 00:32 - 2015-02-12 17:35 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\FileZilla 2015-01-26 23:07 - 2015-01-28 13:26 - 00000600 _____ () C:\Users\Chin\AppData\Local\PUTTY.RND 2015-01-26 19:50 - 2015-01-26 19:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Writer 2015-01-26 19:50 - 2015-01-26 19:50 - 00000000 ____D () C:\Program Files (x86)\ImageWriter 2015-01-26 14:54 - 2015-01-26 14:54 - 00000000 ____D () C:\ProgramData\Gibraltar 2015-01-26 14:50 - 2015-01-26 14:50 - 00000000 ____D () C:\ProgramData\Sun 2015-01-26 14:50 - 2015-01-26 14:50 - 00000000 ____D () C:\ProgramData\Oracle 2015-01-26 14:39 - 2015-01-26 14:39 - 00000000 ____D () C:\Users\Chin\Documents\Benutzerdefinierte Office-Vorlagen 2015-01-26 13:30 - 2015-01-26 13:30 - 00000000 ____D () C:\Users\Chin\AppData\Local\Swiss Academic Software 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Zimmermann 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Zeitschriften 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Wohnung 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Weihnachtsfeier Psychos 2011 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Wahlen 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Wachstumsökonomie 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\VPV-Versicherung 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Vortrag Projektmanagement 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Volition 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Versicherung Schadensfall Hunde 2015-01-26 13:10 - 2014-10-16 15:44 - 00040893 _____ () C:\Users\Chin\Documents\Unbenannt.wma 2015-01-26 13:10 - 2007-04-23 01:14 - 41307085 ____R () C:\Users\Chin\Documents\VirtualCD + Keyg.rar 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Two Worlds Saves 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Trainingsplan 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Tattoo 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Tagung Nürnberg 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\StudIp 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Square Enix 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\SPSSInc 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Software Download 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Simpol 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\self-html 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Schadensfall Post 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Runes of Magic 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\route 2015-01-26 13:09 - 2014-11-07 10:34 - 1028653056 _____ () C:\Users\Chin\Documents\ubuntu-14.04.1-desktop-amd64.iso 2015-01-26 13:09 - 2013-11-28 07:56 - 00010839 _____ () C:\Users\Chin\Documents\training.xlsx 2015-01-26 13:09 - 2010-10-10 12:24 - 00063567 _____ () C:\Users\Chin\Documents\studip.ics 2015-01-26 13:08 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\rom 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Rentenversicherung 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Pronto-Pizza 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Praktikumsbericht 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Praktikum Psychatrie 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Praktikum BW 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Praktikum 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\postbank 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\PersBackup 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\pebl-exp.0.11 2015-01-26 13:08 - 2012-11-22 19:29 - 01335612 _____ () C:\Users\Chin\Documents\perso.odg 2015-01-26 13:08 - 2011-02-27 21:27 - 05303303 _____ () C:\Users\Chin\Documents\papa kindergeld.odg 2015-01-26 13:07 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Outlook-Dateien 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\OpenOffice.org 3.3 (de) Installation Files 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\OneNote-Notizbücher 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\oma tele 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Nexus Mod Manager 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\My Digital Editions 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Mietvertrag Lessingstr. 20 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Microsoft office Rechnung 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\michael 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Meine Datenquellen 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Loge 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\League of Legends 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Kündigung McFit 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Kündigung LaFamilia 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Kindergeld 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Karten 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\kalender 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Integrales Forum 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\HUK 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\HTML 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\font 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Fahrraddiebstahl Tabea 2015-01-26 13:06 - 2014-11-30 19:30 - 01869971 _____ () C:\Users\Chin\Documents\jabref.txt 2015-01-26 13:06 - 2014-01-12 14:03 - 09123877 _____ () C:\Users\Chin\Documents\Fit ohne Geräte_ Trainieren mit dem eigenen Körpergewicht - Clark, Joshua.epub 2015-01-26 13:06 - 2011-05-07 11:04 - 00011956 _____ () C:\Users\Chin\Documents\Kündigung Wohnung.odt 2015-01-26 13:05 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Exes 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\Evernote 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\Erasmus 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\DVDVideoSoft 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\DIE SIEDLER - DEdK 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\Deutschland Stipendium 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\DayZ 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\Criterion Games 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\cleverfit halle 2015-01-26 13:05 - 2013-11-10 15:36 - 993792096 _____ () C:\Users\Chin\Documents\EsPeEsEs 21.zip 2015-01-26 13:05 - 2008-08-29 09:32 - 00000143 _____ () C:\Users\Chin\Documents\Click Here to Pre-Order Red Alert 3.url 2015-01-26 13:04 - 2015-01-26 13:04 - 00000000 ____D () C:\Users\Chin\Documents\CCleaner 2015-01-26 13:02 - 2015-02-11 14:32 - 00000000 ____D () C:\Users\Chin\Documents\Calibre-Springer 2015-01-26 13:01 - 2015-01-26 13:02 - 00000000 ____D () C:\Users\Chin\Documents\Calibre-Bibliothek 2015-01-26 13:00 - 2015-01-26 13:01 - 00000000 ____D () C:\Users\Chin\Documents\Bund Überbleibsel 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bücherliste 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bücher 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Briefe 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\BlackBerry 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\BKK 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bewerbungsunterlagen generell 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bewerbung Praktikum Bundeswehr Königsbrück 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bewerbung Master 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bewerbung Klinik Bernbrug 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Beschäftigung Bib Brandbergweg 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Befragung Offshore 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bayreuth 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Banished 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bafög 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Backups 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Artikel 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\ADAC 2015-01-26 13:00 - 2014-10-18 07:56 - 00012606 _____ () C:\Users\Chin\Documents\101814.kdbx 2015-01-26 13:00 - 2014-09-23 15:27 - 00012014 _____ () C:\Users\Chin\Documents\092014.kdbx 2015-01-26 13:00 - 2011-09-10 07:51 - 00015504 _____ () C:\Users\Chin\Documents\anschreiben 901011.odt 2015-01-26 12:56 - 2015-02-17 12:52 - 00000000 ____D () C:\Users\Chin\Documents\Citavi 4 2015-01-26 12:56 - 2015-02-09 17:47 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Swiss Academic Software 2015-01-26 12:56 - 2015-01-26 12:56 - 00000000 ____D () C:\ProgramData\Swiss Academic Software 2015-01-26 12:43 - 2015-01-26 12:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Citavi 4 2015-01-26 12:42 - 2015-01-26 12:43 - 00000000 ____D () C:\Program Files (x86)\Citavi 4 2015-01-26 12:40 - 2015-01-26 12:40 - 00000000 ____D () C:\Users\Chin\AppData\Local\Downloaded Installations 2015-01-24 09:19 - 2015-01-24 09:19 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\EFSoftware 2015-01-24 09:14 - 2015-01-24 09:14 - 00000000 ____D () C:\Program Files\VideoLAN 2015-01-24 08:57 - 2015-01-24 08:57 - 00000000 ____D () C:\Program Files (x86)\Total Commander 2015-01-24 08:56 - 2015-01-24 08:56 - 00000000 ____D () C:\Users\Chin\AppData\Local\Adobe 2015-01-24 08:53 - 2015-01-24 08:53 - 00000000 ____D () C:\Users\Chin\AppData\Local\javasharedresources 2015-01-24 08:53 - 2015-01-24 08:53 - 00000000 ____D () C:\Users\Chin\.spss 2015-01-24 08:49 - 2015-01-24 08:49 - 00000000 ___HD () C:\Users\Chin\InstallAnywhere 2015-01-24 08:49 - 2015-01-24 08:49 - 00000000 ___HD () C:\Program Files (x86)\Zero G Registry 2015-01-24 08:49 - 2015-01-24 08:49 - 00000000 ____D () C:\ProgramData\SafeNet Sentinel 2015-01-24 08:49 - 2015-01-24 08:49 - 00000000 ____D () C:\Program Files\Common Files\IBM 2015-01-24 08:48 - 2015-01-24 08:48 - 00000000 ____D () C:\ProgramData\SPSS 2015-01-24 08:48 - 2015-01-24 08:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics 2015-01-24 08:47 - 2015-01-24 08:47 - 00000000 ____D () C:\Program Files (x86)\IBM 2015-01-24 08:46 - 2015-01-24 08:46 - 00001025 _____ () C:\Windows\SysWOW64\sysprs7.tgz 2015-01-24 08:46 - 2015-01-24 08:46 - 00001025 _____ () C:\Windows\SysWOW64\sysprs7.dll 2015-01-24 08:46 - 2015-01-24 08:46 - 00000219 _____ () C:\Windows\SysWOW64\lsprst7.tgz 2015-01-24 08:46 - 2015-01-24 08:46 - 00000205 _____ () C:\Windows\SysWOW64\lsprst7.dll 2015-01-24 08:46 - 2015-01-24 08:46 - 00000016 ____H () C:\Windows\SysWOW64\servdat.slm 2015-01-23 18:19 - 2014-09-05 03:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-01-23 18:19 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-01-23 18:19 - 2012-02-11 07:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2015-01-23 18:19 - 2012-02-11 07:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe 2015-01-23 18:19 - 2011-02-25 07:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-01-23 18:19 - 2011-02-25 06:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-01-23 18:13 - 2015-01-23 18:13 - 00000000 ____D () C:\Users\Chin\AppData\Local\BigHugeEngine 2015-01-23 13:03 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\My Games 2015-01-23 11:55 - 2015-01-23 11:55 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2015-01-23 11:49 - 2015-01-23 11:59 - 00011754 _____ () C:\Windows\DPINST.LOG 2015-01-23 11:44 - 2015-01-23 11:59 - 00001506 _____ () C:\Windows\Synaptics.log 2015-01-23 11:42 - 2015-01-23 11:42 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2015-01-23 11:41 - 2015-01-23 11:41 - 00000000 ____D () C:\Program Files (x86)\Adobe 2015-01-23 11:29 - 2015-01-23 11:29 - 00000000 __SHD () C:\Users\Chin\AppData\Local\EmieUserList 2015-01-23 11:29 - 2015-01-23 11:29 - 00000000 __SHD () C:\Users\Chin\AppData\Local\EmieSiteList 2015-01-23 11:29 - 2015-01-23 11:29 - 00000000 __SHD () C:\Users\Chin\AppData\Local\EmieBrowserModeList 2015-01-23 11:10 - 2015-01-23 11:10 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\library_dir 2015-01-23 11:10 - 2015-01-23 11:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2015-01-23 11:08 - 2015-02-19 08:05 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Raptr 2015-01-23 11:08 - 2015-02-01 18:11 - 00000000 ____D () C:\Program Files (x86)\Raptr 2015-01-23 11:08 - 2015-01-23 11:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Quick Stream 2015-01-23 11:08 - 2015-01-23 11:08 - 00000000 ____D () C:\Program Files\AMD Quick Stream 2015-01-23 09:59 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2015-01-23 09:59 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2015-01-23 09:59 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2015-01-23 09:59 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2015-01-23 09:59 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2015-01-23 09:59 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2015-01-23 09:59 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2015-01-23 09:59 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2015-01-23 09:59 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2015-01-23 09:59 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2015-01-23 09:59 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2015-01-23 09:59 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2015-01-23 09:59 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2015-01-23 09:59 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2015-01-23 09:59 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2015-01-23 09:59 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2015-01-23 09:59 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2015-01-23 09:59 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2015-01-23 09:59 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2015-01-23 09:59 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2015-01-23 09:59 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2015-01-23 09:59 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2015-01-23 09:59 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2015-01-23 09:59 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2015-01-23 09:59 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2015-01-23 09:59 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2015-01-23 09:59 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2015-01-23 09:59 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2015-01-23 09:59 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2015-01-23 09:59 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2015-01-23 09:59 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2015-01-23 09:59 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2015-01-23 09:59 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2015-01-23 09:59 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2015-01-23 09:59 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2015-01-23 09:59 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2015-01-23 09:59 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2015-01-23 09:59 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2015-01-23 09:59 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2015-01-23 09:59 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2015-01-23 09:59 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2015-01-23 09:59 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2015-01-23 09:59 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2015-01-23 09:59 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2015-01-23 09:59 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2015-01-23 09:59 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2015-01-23 09:59 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2015-01-23 09:59 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2015-01-23 09:59 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2015-01-23 09:59 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2015-01-23 09:59 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2015-01-23 09:59 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2015-01-23 09:59 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2015-01-23 09:59 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2015-01-23 09:59 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2015-01-23 09:59 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2015-01-23 09:59 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2015-01-23 09:59 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2015-01-23 09:59 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2015-01-23 09:59 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2015-01-23 09:58 - 2015-01-23 18:12 - 00027803 _____ () C:\Windows\DirectX.log 2015-01-23 09:58 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2015-01-23 09:58 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2015-01-23 09:58 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2015-01-23 09:58 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2015-01-23 09:58 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2015-01-23 09:58 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2015-01-23 09:58 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2015-01-23 09:58 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2015-01-23 09:58 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2015-01-23 09:58 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2015-01-23 09:58 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2015-01-23 09:58 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2015-01-23 09:58 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2015-01-23 09:58 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2015-01-23 09:58 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2015-01-23 09:58 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2015-01-23 09:58 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2015-01-23 09:58 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2015-01-23 09:58 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2015-01-23 09:58 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2015-01-23 09:58 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2015-01-23 09:58 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2015-01-23 09:58 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2015-01-23 09:58 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2015-01-23 09:58 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2015-01-23 09:58 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2015-01-23 09:58 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2015-01-23 09:58 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2015-01-23 09:58 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2015-01-23 09:58 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2015-01-23 09:58 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2015-01-23 09:58 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2015-01-23 09:58 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2015-01-23 09:58 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2015-01-23 09:56 - 2014-12-11 18:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-01-23 09:09 - 2015-01-23 09:09 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2015-01-23 09:09 - 2015-01-23 09:09 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2015-01-23 09:03 - 2015-01-23 09:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2015-01-23 09:00 - 2015-01-23 09:00 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2015-01-23 08:38 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2015-01-23 08:38 - 2014-05-08 10:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2015-01-22 23:19 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2015-01-22 23:19 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2015-01-22 23:19 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2015-01-22 23:19 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2015-01-22 23:15 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2015-01-22 23:15 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2015-01-22 23:15 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2015-01-22 23:15 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2015-01-22 23:15 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2015-01-22 23:15 - 2013-10-02 02:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-01-22 23:15 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2015-01-22 23:15 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-01-22 23:15 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2015-01-22 23:15 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2015-01-22 23:15 - 2013-10-02 01:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2015-01-22 23:15 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-01-22 23:15 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2015-01-22 23:15 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-01-22 23:15 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2015-01-22 23:10 - 2015-01-23 11:53 - 00000000 ____D () C:\ProgramData\Adobe 2015-01-22 22:59 - 2012-08-23 15:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2015-01-22 22:59 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2015-01-22 22:59 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll 2015-01-22 22:59 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll 2015-01-22 22:50 - 2014-10-18 03:05 - 04121600 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2015-01-22 22:50 - 2014-10-18 02:33 - 03209728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2015-01-22 22:50 - 2014-07-07 03:06 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2015-01-22 22:50 - 2014-07-07 03:06 - 00055808 _____ (Microsoft Corporation) C:\Windows\system32\rrinstaller.exe 2015-01-22 22:50 - 2014-07-07 03:06 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2015-01-22 22:50 - 2014-07-07 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\mferror.dll 2015-01-22 22:50 - 2014-07-07 02:40 - 00103424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll 2015-01-22 22:50 - 2014-07-07 02:39 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rrinstaller.exe 2015-01-22 22:50 - 2014-07-07 02:39 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfpmp.exe 2015-01-22 22:50 - 2014-07-07 02:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mferror.dll 2015-01-22 22:49 - 2012-07-26 04:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2015-01-22 22:49 - 2012-07-26 04:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2015-01-22 22:49 - 2012-07-26 04:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2015-01-22 22:49 - 2012-07-26 04:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2015-01-22 22:49 - 2012-07-26 04:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2015-01-22 22:49 - 2012-07-26 03:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2015-01-22 22:49 - 2012-07-26 03:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2015-01-22 22:49 - 2012-06-02 15:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2015-01-22 22:45 - 2014-06-27 03:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2015-01-22 22:45 - 2014-06-27 02:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2015-01-22 22:42 - 2012-12-07 14:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2015-01-22 22:42 - 2012-12-07 14:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2015-01-22 22:42 - 2012-12-07 13:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2015-01-22 22:42 - 2012-12-07 13:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2015-01-22 22:42 - 2012-12-07 12:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs 2015-01-22 22:42 - 2012-12-07 12:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs 2015-01-22 22:42 - 2012-12-07 12:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs 2015-01-22 22:42 - 2012-12-07 12:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs 2015-01-22 22:42 - 2012-12-07 12:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs 2015-01-22 22:42 - 2012-12-07 12:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs 2015-01-22 22:42 - 2012-12-07 12:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs 2015-01-22 22:42 - 2012-12-07 12:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs 2015-01-22 22:42 - 2012-12-07 12:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs 2015-01-22 22:42 - 2012-12-07 12:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs 2015-01-22 22:42 - 2012-12-07 12:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs 2015-01-22 22:42 - 2012-12-07 12:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs 2015-01-22 22:42 - 2012-12-07 12:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs 2015-01-22 22:42 - 2012-12-07 12:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs 2015-01-22 22:42 - 2012-12-07 11:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs 2015-01-22 22:41 - 2014-08-01 12:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2015-01-22 22:41 - 2014-08-01 12:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2015-01-22 22:41 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2015-01-22 22:41 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2015-01-22 22:41 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2015-01-22 22:41 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2015-01-22 22:41 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2015-01-22 22:41 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2015-01-22 22:41 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2015-01-22 22:41 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2015-01-22 22:41 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2015-01-22 22:41 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2015-01-22 22:41 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2015-01-22 22:41 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2015-01-22 22:41 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2015-01-22 22:41 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2015-01-22 22:41 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2015-01-22 22:41 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2015-01-22 22:41 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2015-01-22 22:41 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2015-01-22 22:41 - 2012-10-09 19:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2015-01-22 22:41 - 2012-10-09 19:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2015-01-22 22:41 - 2012-10-09 18:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2015-01-22 22:41 - 2012-10-09 18:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2015-01-22 22:41 - 2012-10-03 18:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2015-01-22 22:41 - 2012-10-03 18:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll 2015-01-22 22:41 - 2012-10-03 18:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2015-01-22 22:41 - 2012-10-03 17:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll 2015-01-22 22:41 - 2012-10-03 17:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll 2015-01-22 22:41 - 2012-10-03 17:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2015-01-22 22:40 - 2014-09-25 03:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2015-01-22 22:40 - 2014-09-25 02:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2015-01-22 22:40 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL 2015-01-22 22:40 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL 2015-01-22 22:40 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL 2015-01-22 22:40 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL 2015-01-22 22:40 - 2014-07-09 03:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL 2015-01-22 22:40 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL 2015-01-22 22:40 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL 2015-01-22 22:40 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL 2015-01-22 22:40 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL 2015-01-22 22:40 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL 2015-01-22 22:40 - 2014-07-08 23:38 - 00419992 _____ () C:\Windows\system32\locale.nls 2015-01-22 22:40 - 2014-07-08 23:30 - 00419992 _____ () C:\Windows\SysWOW64\locale.nls 2015-01-22 22:40 - 2014-06-24 04:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-01-22 22:40 - 2014-06-24 03:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-01-22 22:40 - 2014-01-28 03:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2015-01-22 22:40 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll 2015-01-22 22:40 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll 2015-01-22 22:40 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2015-01-22 22:40 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2015-01-22 22:40 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2015-01-22 22:40 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2015-01-22 22:40 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2015-01-22 22:40 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2015-01-22 22:40 - 2013-08-05 03:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2015-01-22 22:40 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-01-22 22:40 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-01-22 22:40 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-01-22 22:40 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-01-22 22:40 - 2013-03-19 06:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2015-01-22 22:40 - 2012-08-22 19:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-01-22 22:40 - 2012-08-21 22:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe 2015-01-22 22:40 - 2012-07-06 21:07 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys 2015-01-22 22:40 - 2012-07-04 21:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys 2015-01-22 22:40 - 2012-01-04 11:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2015-01-22 22:40 - 2012-01-04 09:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll 2015-01-22 22:40 - 2011-12-30 07:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2015-01-22 22:40 - 2011-12-30 06:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2015-01-22 22:40 - 2011-06-16 06:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll 2015-01-22 22:40 - 2011-06-16 05:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll 2015-01-22 22:40 - 2011-05-04 06:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2015-01-22 22:40 - 2011-05-04 06:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2015-01-22 22:40 - 2011-05-04 06:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2015-01-22 22:40 - 2011-05-04 06:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2015-01-22 22:40 - 2011-05-04 06:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2015-01-22 22:40 - 2011-05-04 06:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2015-01-22 22:40 - 2011-05-04 06:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2015-01-22 22:40 - 2011-05-04 06:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2015-01-22 22:40 - 2011-05-04 06:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2015-01-22 22:40 - 2011-05-04 05:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2015-01-22 22:40 - 2011-05-04 05:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2015-01-22 22:40 - 2011-05-04 05:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2015-01-22 22:40 - 2011-05-04 05:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2015-01-22 22:40 - 2011-05-04 05:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2015-01-22 22:40 - 2011-05-04 05:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll 2015-01-22 22:40 - 2011-05-04 05:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2015-01-22 22:40 - 2011-05-04 05:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2015-01-22 22:40 - 2011-05-04 05:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2015-01-22 22:39 - 2014-11-11 02:46 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2015-01-22 22:39 - 2011-03-11 07:41 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys 2015-01-22 22:39 - 2011-03-11 07:41 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys 2015-01-22 22:39 - 2011-03-11 07:41 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys 2015-01-22 22:39 - 2011-03-11 07:41 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys 2015-01-22 22:39 - 2011-03-11 07:41 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys 2015-01-22 22:39 - 2011-03-11 07:33 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2015-01-22 22:39 - 2011-03-11 07:30 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe 2015-01-22 22:39 - 2011-03-11 06:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll 2015-01-22 22:39 - 2011-03-11 06:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe 2015-01-22 22:39 - 2011-03-11 05:37 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2015-01-22 22:38 - 2014-11-08 04:16 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2015-01-22 22:38 - 2014-11-08 03:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2015-01-22 22:34 - 2014-10-30 03:03 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\charmap.exe 2015-01-22 22:34 - 2014-10-30 02:45 - 00155136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\charmap.exe 2015-01-22 22:34 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-01-22 22:34 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-01-22 22:34 - 2014-10-03 03:12 - 02020352 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2015-01-22 22:34 - 2014-10-03 03:12 - 00346624 _____ (Microsoft Corporation) C:\Windows\system32\WSManMigrationPlugin.dll 2015-01-22 22:34 - 2014-10-03 03:12 - 00310272 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2015-01-22 22:34 - 2014-10-03 03:12 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\WsmAuto.dll 2015-01-22 22:34 - 2014-10-03 03:11 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\WSManHTTPConfig.exe 2015-01-22 22:34 - 2014-10-03 02:45 - 01177088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll 2015-01-22 22:34 - 2014-10-03 02:45 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManMigrationPlugin.dll 2015-01-22 22:34 - 2014-10-03 02:45 - 00214016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmWmiPl.dll 2015-01-22 22:34 - 2014-10-03 02:45 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmAuto.dll 2015-01-22 22:34 - 2014-10-03 02:44 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSManHTTPConfig.exe 2015-01-22 22:34 - 2014-06-25 03:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-01-22 22:34 - 2014-06-25 02:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-01-22 22:34 - 2014-02-04 03:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2015-01-22 22:34 - 2014-02-04 03:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2015-01-22 22:34 - 2014-02-04 03:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2015-01-22 22:34 - 2014-02-04 03:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2015-01-22 22:34 - 2014-02-04 03:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll 2015-01-22 22:34 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2015-01-22 22:34 - 2013-05-10 06:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2015-01-22 22:34 - 2013-05-10 04:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2015-01-22 22:34 - 2013-01-24 07:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2015-01-22 22:30 - 2014-01-24 03:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2015-01-22 22:30 - 2011-02-18 11:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe 2015-01-22 22:30 - 2011-02-18 06:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe 2015-01-22 22:16 - 2015-01-22 22:16 - 00000000 ____D () C:\Users\Chin\AppData\Local\KeePass 2015-01-22 22:08 - 2015-02-18 19:54 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\KeePass 2015-01-22 21:53 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2015-01-22 21:53 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2015-01-22 21:53 - 2011-04-28 04:54 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS 2015-01-22 21:36 - 2015-01-27 21:19 - 00000000 ____D () C:\Users\Chin\Documents\keepass save 2015-01-22 21:10 - 2015-01-22 21:10 - 00000000 ____D () C:\Users\Chin\AppData\Local\BMExplorer 2015-01-22 21:09 - 2015-01-24 08:56 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Adobe 2015-01-22 21:09 - 2015-01-22 21:10 - 00000000 ____D () C:\ProgramData\Atheros 2015-01-22 21:09 - 2015-01-22 21:09 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Atheros 2015-01-22 20:32 - 2015-01-22 20:32 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2015-01-22 20:31 - 2015-01-22 20:31 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2015-01-22 20:31 - 2015-01-22 20:31 - 00001313 _____ () C:\Windows\TSSysprep.log 2015-01-22 20:29 - 2015-02-19 08:53 - 01561344 _____ () C:\Windows\WindowsUpdate.log 2015-01-22 20:25 - 2015-01-22 13:36 - 00000000 ____D () C:\Windows\Panther 2015-01-22 20:07 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE 2015-01-22 19:56 - 2015-01-22 19:56 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2015-01-22 19:56 - 2015-01-22 19:56 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2015-01-22 19:56 - 2015-01-22 19:56 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-01-22 19:56 - 2015-01-22 19:56 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-01-22 19:56 - 2015-01-22 19:56 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2015-01-22 19:56 - 2015-01-22 19:56 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2015-01-22 19:56 - 2015-01-22 19:56 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2015-01-22 19:56 - 2015-01-22 19:56 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2015-01-22 19:56 - 2015-01-22 19:56 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2015-01-22 19:56 - 2015-01-22 19:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2015-01-22 19:56 - 2015-01-22 19:56 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2015-01-22 19:56 - 2015-01-22 19:56 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2015-01-22 19:56 - 2015-01-22 19:56 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2015-01-22 19:56 - 2015-01-22 19:56 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2015-01-22 19:56 - 2015-01-22 19:56 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2015-01-22 19:56 - 2015-01-22 19:56 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2015-01-22 19:56 - 2015-01-22 19:56 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2015-01-22 19:56 - 2015-01-22 19:56 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2015-01-22 19:56 - 2015-01-22 19:56 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe |
![]() | #2 |
![]() | ![]() Laptop über LAN an Router Internet bricht ab Hier gehts weiter mit dem FRST
ATTFilter 2015-01-22 19:54 - 2015-01-22 19:54 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-01-22 19:54 - 2015-01-22 19:54 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-01-22 19:54 - 2015-01-22 19:54 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2015-01-22 19:54 - 2015-01-22 19:54 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2015-01-22 19:54 - 2015-01-22 19:54 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2015-01-22 19:54 - 2015-01-22 19:54 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2015-01-22 19:53 - 2015-01-22 19:53 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2015-01-22 19:53 - 2015-01-22 19:53 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll 2015-01-22 19:44 - 2015-01-22 19:44 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll 2015-01-22 19:41 - 2015-01-22 19:41 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2015-01-22 19:41 - 2015-01-22 19:41 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2015-01-22 19:40 - 2015-01-22 20:07 - 00016686 _____ () C:\Windows\IE11_main.log 2015-01-22 18:33 - 2012-03-01 07:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2015-01-22 18:33 - 2012-03-01 07:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2015-01-22 18:33 - 2012-03-01 06:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2015-01-22 18:25 - 2015-01-22 18:25 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_btath_hcrp_01009.Wdf 2015-01-22 18:25 - 2014-06-30 23:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2015-01-22 18:25 - 2014-06-30 23:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll 2015-01-22 18:25 - 2014-03-09 22:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2015-01-22 18:25 - 2014-03-09 22:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2015-01-22 18:25 - 2014-03-09 22:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe 2015-01-22 18:25 - 2014-03-09 22:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll 2015-01-22 18:24 - 2014-06-06 07:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2015-01-22 18:24 - 2014-06-06 07:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2015-01-22 18:23 - 2015-01-22 18:25 - 00000000 ____D () C:\Program Files\Common Files\QCA_Bluetooth 2015-01-22 18:23 - 2015-01-22 18:23 - 00000000 ____D () C:\ProgramData\{EB5F5A55-037A-4E47-806B-2C8AA9374701} 2015-01-22 18:22 - 2015-01-22 18:26 - 00000000 ____D () C:\Program Files (x86)\Qualcomm Atheros 2015-01-22 18:22 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2015-01-22 18:22 - 2014-02-21 00:49 - 04044800 _____ (Qualcomm Atheros Communications, Inc.) C:\Windows\system32\Drivers\athrx.sys 2015-01-22 18:20 - 2014-03-04 10:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2015-01-22 18:20 - 2014-03-04 10:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-01-22 18:20 - 2014-03-04 10:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2015-01-22 18:20 - 2014-03-04 10:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2015-01-22 18:20 - 2014-03-04 10:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2015-01-22 18:20 - 2014-03-04 10:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2015-01-22 18:20 - 2014-03-04 10:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2015-01-22 18:20 - 2014-03-04 10:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2015-01-22 18:20 - 2014-03-04 10:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2015-01-22 18:20 - 2014-03-04 10:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2015-01-22 18:20 - 2014-03-04 10:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2015-01-22 18:20 - 2014-03-04 10:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2015-01-22 18:20 - 2014-03-04 10:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2015-01-22 18:20 - 2014-03-04 10:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2015-01-22 18:20 - 2014-03-04 10:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2015-01-22 18:20 - 2014-03-04 10:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-01-22 18:19 - 2015-01-22 18:22 - 00000000 ____D () C:\ProgramData\Qualcomm Atheros 2015-01-22 18:19 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2015-01-22 18:19 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll 2015-01-22 18:19 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-01-22 18:19 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2015-01-22 18:19 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-01-22 18:19 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2015-01-22 18:19 - 2014-06-18 03:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2015-01-22 18:19 - 2014-06-18 02:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2015-01-22 18:19 - 2014-06-03 11:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-01-22 18:19 - 2014-06-03 11:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-01-22 18:19 - 2014-06-03 11:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-01-22 18:19 - 2014-06-03 10:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-01-22 18:19 - 2014-06-03 10:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-01-22 18:19 - 2013-02-27 06:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-01-22 18:19 - 2011-04-29 04:06 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2015-01-22 18:19 - 2011-04-29 04:05 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2015-01-22 18:19 - 2011-04-29 04:05 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2015-01-22 18:19 - 2011-03-11 07:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2015-01-22 18:19 - 2011-03-11 07:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2015-01-22 18:19 - 2011-03-11 06:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll 2015-01-22 18:19 - 2011-03-11 06:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll 2015-01-22 18:19 - 2010-12-23 11:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll 2015-01-22 18:19 - 2010-12-23 11:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2015-01-22 18:19 - 2010-12-23 11:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax 2015-01-22 18:19 - 2010-12-23 06:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll 2015-01-22 18:19 - 2010-12-23 06:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2015-01-22 18:19 - 2010-12-23 06:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax 2015-01-22 18:18 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-01-22 18:18 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-01-22 18:18 - 2013-07-26 03:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2015-01-22 18:18 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2015-01-22 18:18 - 2013-07-09 06:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-01-22 18:18 - 2013-07-09 06:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2015-01-22 18:18 - 2013-07-09 06:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2015-01-22 18:18 - 2013-07-09 05:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-01-22 18:18 - 2013-07-09 05:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2015-01-22 18:18 - 2013-07-09 05:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2015-01-22 18:17 - 2014-12-06 05:17 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2015-01-22 18:17 - 2014-12-06 04:50 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll 2015-01-22 18:17 - 2014-12-06 04:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2015-01-22 18:17 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL 2015-01-22 18:17 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL 2015-01-22 18:17 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll 2015-01-22 18:17 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll 2015-01-22 18:17 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll 2015-01-22 18:17 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll 2015-01-22 18:17 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll 2015-01-22 18:17 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll 2015-01-22 18:17 - 2014-06-06 11:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2015-01-22 18:17 - 2014-06-06 10:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2015-01-22 18:17 - 2014-04-25 03:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2015-01-22 18:17 - 2014-04-25 03:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2015-01-22 18:17 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2015-01-22 18:17 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2015-01-22 18:17 - 2013-07-12 11:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys 2015-01-22 18:17 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2015-01-22 18:17 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2015-01-22 18:17 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2015-01-22 18:17 - 2012-11-02 06:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2015-01-22 18:17 - 2012-11-02 06:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2015-01-22 18:17 - 2012-10-03 18:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2015-01-22 18:17 - 2012-10-03 18:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2015-01-22 18:17 - 2012-09-25 23:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2015-01-22 18:17 - 2012-09-25 23:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2015-01-22 18:17 - 2011-02-05 18:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2015-01-22 18:17 - 2011-02-05 18:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll 2015-01-22 18:17 - 2011-02-05 18:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll 2015-01-22 18:17 - 2011-02-05 18:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll 2015-01-22 18:17 - 2011-02-05 18:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2015-01-22 18:17 - 2011-02-05 18:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2015-01-22 18:17 - 2011-02-05 18:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2015-01-22 18:16 - 2015-01-22 18:16 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2015-01-22 18:16 - 2014-12-19 04:06 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2015-01-22 18:16 - 2014-12-19 02:46 - 00141312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2015-01-22 18:16 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2015-01-22 18:16 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2015-01-22 18:16 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2015-01-22 18:16 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2015-01-22 18:16 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2015-01-22 18:16 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2015-01-22 18:16 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2015-01-22 18:16 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2015-01-22 18:16 - 2014-06-16 03:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2015-01-22 18:16 - 2014-05-30 07:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2015-01-22 18:16 - 2014-04-05 03:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2015-01-22 18:16 - 2014-04-05 03:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2015-01-22 18:16 - 2014-03-26 15:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-01-22 18:16 - 2014-03-26 15:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2015-01-22 18:16 - 2014-03-26 15:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-01-22 18:16 - 2014-03-26 15:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2015-01-22 18:16 - 2014-01-29 03:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2015-01-22 18:16 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2015-01-22 18:16 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2015-01-22 18:16 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2015-01-22 18:16 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2015-01-22 18:16 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2015-01-22 18:16 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2015-01-22 18:16 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2015-01-22 18:16 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-01-22 18:16 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-01-22 18:16 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-01-22 18:16 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-01-22 18:16 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-01-22 18:16 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-01-22 18:16 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-01-22 18:16 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-01-22 18:16 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-01-22 18:16 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-01-22 18:16 - 2013-04-10 07:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2015-01-22 18:16 - 2012-11-28 23:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2015-01-22 18:16 - 2012-11-28 23:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2015-01-22 18:16 - 2012-11-28 23:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2015-01-22 18:16 - 2011-11-17 07:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2015-01-22 18:16 - 2011-11-17 06:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2015-01-22 18:16 - 2011-10-26 06:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2015-01-22 18:16 - 2011-10-26 05:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll 2015-01-22 18:16 - 2011-08-17 06:26 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll 2015-01-22 18:16 - 2011-08-17 06:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax 2015-01-22 18:16 - 2011-08-17 05:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll 2015-01-22 18:16 - 2011-08-17 05:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax 2015-01-22 18:16 - 2011-07-09 03:46 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-01-22 18:16 - 2011-06-15 11:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2015-01-22 18:16 - 2011-06-15 11:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll 2015-01-22 18:16 - 2011-06-15 11:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2015-01-22 18:16 - 2011-06-15 11:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2015-01-22 18:16 - 2011-06-15 09:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll 2015-01-22 18:16 - 2011-06-15 09:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll 2015-01-22 18:16 - 2011-06-15 09:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll 2015-01-22 18:16 - 2011-06-15 09:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll 2015-01-22 18:16 - 2011-06-15 09:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll 2015-01-22 18:16 - 2011-04-27 03:40 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-01-22 18:16 - 2011-04-27 03:39 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-01-22 18:16 - 2011-03-03 07:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2015-01-22 18:16 - 2011-03-03 07:24 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2015-01-22 18:16 - 2011-03-03 07:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe 2015-01-22 18:16 - 2011-03-03 06:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2015-01-22 18:16 - 2011-03-03 06:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe 2015-01-22 18:16 - 2011-02-03 12:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2015-01-22 18:15 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2015-01-22 18:15 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2015-01-22 18:15 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2015-01-22 18:15 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2015-01-22 18:15 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2015-01-22 18:15 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys 2015-01-22 18:15 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2015-01-22 18:15 - 2012-03-17 08:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2015-01-22 18:08 - 2013-07-25 10:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2015-01-22 18:08 - 2013-07-25 09:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2015-01-22 18:08 - 2013-02-12 05:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2015-01-22 18:02 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2015-01-22 18:02 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2015-01-22 18:02 - 2013-08-02 03:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2015-01-22 18:02 - 2013-08-02 03:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2015-01-22 18:02 - 2013-08-02 02:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2015-01-22 18:02 - 2013-08-02 01:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2015-01-22 18:02 - 2013-04-26 06:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2015-01-22 18:02 - 2013-04-26 05:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2015-01-22 18:02 - 2012-11-23 04:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2015-01-22 18:02 - 2011-05-24 12:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2015-01-22 18:02 - 2011-05-24 11:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll 2015-01-22 18:02 - 2011-05-24 11:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll 2015-01-22 18:02 - 2011-05-24 11:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll 2015-01-22 18:02 - 2011-05-24 11:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2015-01-22 18:01 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2015-01-22 18:01 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2015-01-22 18:01 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2015-01-22 18:01 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 2015-01-22 18:01 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2015-01-22 18:01 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll 2015-01-22 18:01 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2015-01-22 18:01 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2015-01-22 18:01 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-01-22 18:01 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-01-22 18:01 - 2012-04-26 06:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2015-01-22 18:01 - 2012-04-26 06:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe 2015-01-22 18:01 - 2011-02-23 05:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2015-01-22 18:00 - 2013-05-13 06:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2015-01-22 18:00 - 2013-05-13 04:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2015-01-22 18:00 - 2013-05-13 04:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2015-01-22 18:00 - 2013-05-13 04:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2015-01-22 17:58 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2015-01-22 17:58 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2015-01-22 17:58 - 2014-08-23 03:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-01-22 17:58 - 2014-08-23 02:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-01-22 17:58 - 2014-07-14 03:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-01-22 17:58 - 2014-07-14 02:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-01-22 17:58 - 2014-03-04 10:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-01-22 17:58 - 2014-03-04 10:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2015-01-22 17:58 - 2014-03-04 10:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-01-22 17:58 - 2014-03-04 10:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-01-22 17:58 - 2014-03-04 10:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-01-22 17:58 - 2014-03-04 10:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-01-22 17:58 - 2014-03-04 10:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-01-22 17:58 - 2014-03-04 10:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-01-22 17:58 - 2014-03-04 10:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-01-22 17:58 - 2014-03-04 09:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-01-22 17:58 - 2014-03-04 09:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-01-22 17:58 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2015-01-22 17:58 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2015-01-22 17:58 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2015-01-22 17:58 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2015-01-22 17:58 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2015-01-22 17:58 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2015-01-22 17:58 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2015-01-22 17:58 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2015-01-22 17:58 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2015-01-22 17:58 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2015-01-22 17:58 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2015-01-22 17:58 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2015-01-22 17:58 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2015-01-22 17:58 - 2013-08-02 03:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 02:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-01-22 17:58 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2015-01-22 17:58 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2015-01-22 17:58 - 2012-07-04 23:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2015-01-22 17:58 - 2012-07-04 23:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2015-01-22 17:58 - 2012-07-04 23:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2015-01-22 17:58 - 2012-07-04 22:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll 2015-01-22 17:58 - 2012-07-04 22:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll 2015-01-22 17:58 - 2012-06-06 07:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2015-01-22 17:58 - 2012-06-06 06:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll 2015-01-22 17:58 - 2012-05-14 06:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2015-01-22 17:58 - 2011-12-16 09:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2015-01-22 17:58 - 2011-12-16 08:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll 2015-01-22 17:58 - 2011-10-15 07:31 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2015-01-22 17:58 - 2011-10-15 06:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2015-01-22 17:58 - 2011-08-27 06:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll 2015-01-22 17:58 - 2011-08-27 05:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll 2015-01-22 17:58 - 2011-05-03 06:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2015-01-22 17:58 - 2011-05-03 05:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2015-01-22 17:58 - 2011-02-12 12:34 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe 2015-01-22 17:40 - 2012-02-17 07:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2015-01-22 17:40 - 2012-02-17 06:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2015-01-22 17:40 - 2012-02-17 05:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2015-01-22 17:31 - 2014-05-14 17:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-01-22 17:31 - 2014-05-14 17:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-01-22 17:31 - 2014-05-14 17:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-01-22 17:31 - 2014-05-14 17:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-01-22 17:30 - 2014-05-14 17:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-01-22 17:30 - 2014-05-14 17:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-01-22 17:30 - 2014-05-14 17:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-01-22 17:30 - 2014-05-14 17:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-01-22 17:30 - 2014-05-14 17:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-01-22 17:30 - 2014-05-14 17:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-01-22 17:30 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-01-22 17:30 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-01-22 17:30 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-01-22 17:30 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-01-22 17:13 - 2015-01-22 17:13 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Thunderbird 2015-01-22 17:13 - 2015-01-22 17:13 - 00000000 ____D () C:\Users\Chin\AppData\Local\Thunderbird 2015-01-22 17:12 - 2015-01-22 17:12 - 00002102 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2015-01-22 17:12 - 2015-01-22 17:12 - 00000000 ____D () C:\ProgramData\Mozilla 2015-01-22 17:12 - 2015-01-22 17:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird 2015-01-22 17:12 - 2015-01-22 17:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2015-01-22 17:10 - 2015-01-22 17:10 - 00000000 ____D () C:\Windows\system32\SPReview 2015-01-22 17:09 - 2015-01-22 17:09 - 00000000 ____D () C:\Windows\system32\EventProviders 2015-01-22 17:08 - 2015-02-11 12:58 - 00000000 ____D () C:\Program Files (x86)\Steam 2015-01-22 17:08 - 2015-01-22 17:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-01-22 17:08 - 2010-11-20 14:27 - 03650560 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll 2015-01-22 17:08 - 2010-11-20 14:27 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2015-01-22 17:08 - 2010-11-20 13:19 - 00954752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc40.dll 2015-01-22 17:08 - 2010-11-20 13:19 - 00954288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc40u.dll 2015-01-22 17:08 - 2010-11-05 02:57 - 00048976 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll 2015-01-22 17:07 - 2010-11-20 14:39 - 05066752 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll 2015-01-22 17:07 - 2010-11-20 14:34 - 00295808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2015-01-22 17:07 - 2010-11-20 14:34 - 00215936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys 2015-01-22 17:07 - 2010-11-20 14:33 - 00366976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys 2015-01-22 17:07 - 2010-11-20 14:33 - 00299392 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2015-01-22 17:07 - 2010-11-20 14:29 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 03860992 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 03027968 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL 2015-01-22 17:07 - 2010-11-20 14:27 - 03008000 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 02652160 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 02543616 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 02262528 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 02086912 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 02072576 _____ (Microsoft Corporation) C:\Windows\system32\WMPEncEn.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 02055680 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01900544 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01808384 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01753088 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01646080 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01556992 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01509888 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01441280 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01326080 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01281024 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01243136 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01212416 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01197056 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01158656 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01110016 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01098240 _____ (Microsoft Corporation) C:\Windows\system32\Vault.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01082880 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01024512 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 01008128 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00867840 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00849920 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00758784 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00720896 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00695808 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00605696 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00582656 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00577536 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00481280 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00476160 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL 2015-01-22 17:07 - 2010-11-20 14:27 - 00473600 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00444416 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00409600 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\shsvcs.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL 2015-01-22 17:07 - 2010-11-20 14:27 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\spwizui.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00244736 _____ (Microsoft Corporation) C:\Windows\system32\sqmapi.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\prncache.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2015-01-22 17:07 - 2010-11-20 14:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 03391488 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 03205120 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 02067456 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 01866240 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 01632256 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 01340416 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 01244160 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 01009152 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 00777728 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 00630272 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL 2015-01-22 17:07 - 2010-11-20 14:26 - 00422912 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 00317952 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 00281600 _____ (Microsoft) C:\Windows\system32\DShowRdpFilter.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\hgprint.dll 2015-01-22 17:07 - 2010-11-20 14:26 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll 2015-01-22 17:07 - 2010-11-20 14:25 - 03957760 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe 2015-01-22 17:07 - 2010-11-20 14:25 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll 2015-01-22 17:07 - 2010-11-20 14:25 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll 2015-01-22 17:07 - 2010-11-20 14:25 - 01600512 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2015-01-22 17:07 - 2010-11-20 14:25 - 01504256 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe 2015-01-22 17:07 - 2010-11-20 14:25 - 00958464 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2015-01-22 17:07 - 2010-11-20 14:25 - 00897536 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll 2015-01-22 17:07 - 2010-11-20 14:25 - 00705024 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2015-01-22 17:07 - 2010-11-20 14:25 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\spinstall.exe 2015-01-22 17:07 - 2010-11-20 14:25 - 00594432 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll 2015-01-22 17:07 - 2010-11-20 14:25 - 00464384 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe 2015-01-22 17:07 - 2010-11-20 14:25 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-01-22 17:07 - 2010-11-20 14:25 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll 2015-01-22 17:07 - 2010-11-20 14:25 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\spreview.exe 2015-01-22 17:07 - 2010-11-20 14:25 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe 2015-01-22 17:07 - 2010-11-20 14:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe 2015-01-22 17:07 - 2010-11-20 14:24 - 00653312 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe 2015-01-22 17:07 - 2010-11-20 14:24 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe 2015-01-22 17:07 - 2010-11-20 14:24 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\lsm.exe 2015-01-22 17:07 - 2010-11-20 14:24 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\MSNP.ax 2015-01-22 17:07 - 2010-11-20 14:24 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe 2015-01-22 17:07 - 2010-11-20 13:32 - 05066752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWSnapin.dll 2015-01-22 17:07 - 2010-11-20 13:21 - 01712640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsservices.dll 2015-01-22 17:07 - 2010-11-20 13:21 - 01667584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll 2015-01-22 17:07 - 2010-11-20 13:21 - 01363456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Query.dll 2015-01-22 17:07 - 2010-11-20 13:21 - 01128448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll 2015-01-22 17:07 - 2010-11-20 13:21 - 01115136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RacEngn.dll 2015-01-22 17:07 - 2010-11-20 13:21 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2015-01-22 17:07 - 2010-11-20 13:21 - 00505856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll 2015-01-22 17:07 - 2010-11-20 13:21 - 00351232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll 2015-01-22 17:07 - 2010-11-20 13:21 - 00350208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shlwapi.dll 2015-01-22 17:07 - 2010-11-20 13:21 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll 2015-01-22 17:07 - 2010-11-20 13:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnp.dll 2015-01-22 17:07 - 2010-11-20 13:21 - 00113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll 2015-01-22 17:07 - 2010-11-20 13:21 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll 2015-01-22 17:07 - 2010-11-20 13:20 - 01414144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-01-22 17:07 - 2010-11-20 13:20 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll 2015-01-22 17:07 - 2010-11-20 13:20 - 00563712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll 2015-01-22 17:07 - 2010-11-20 13:20 - 00547840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceApi.dll 2015-01-22 17:07 - 2010-11-20 13:20 - 00406528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll 2015-01-22 17:07 - 2010-11-20 13:19 - 02291712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll 2015-01-22 17:07 - 2010-11-20 13:19 - 02151936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll 2015-01-22 17:07 - 2010-11-20 13:19 - 01493504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2015-01-22 17:07 - 2010-11-20 13:19 - 00732160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2fs.dll 2015-01-22 17:07 - 2010-11-20 13:18 - 02522624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll 2015-01-22 17:07 - 2010-11-20 13:18 - 01828352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2015-01-22 17:07 - 2010-11-20 13:18 - 01555456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certmgr.dll 2015-01-22 17:07 - 2010-11-20 13:18 - 01371136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-01-22 17:07 - 2010-11-20 13:18 - 01334272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll 2015-01-22 17:07 - 2010-11-20 13:18 - 00485888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll 2015-01-22 17:07 - 2010-11-20 13:18 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2015-01-22 17:07 - 2010-11-20 13:18 - 00323072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll 2015-01-22 17:07 - 2010-11-20 13:18 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll 2015-01-22 17:07 - 2010-11-20 13:18 - 00252928 _____ (Microsoft) C:\Windows\SysWOW64\DShowRdpFilter.dll 2015-01-22 17:07 - 2010-11-20 13:18 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3api.dll 2015-01-22 17:07 - 2010-11-20 13:17 - 00302592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe 2015-01-22 17:07 - 2010-11-20 13:17 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe 2015-01-22 17:07 - 2010-11-20 12:05 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\rdpdd.dll 2015-01-22 17:07 - 2010-11-20 11:44 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\1394ohci.sys 2015-01-22 17:07 - 2010-11-20 10:27 - 00309248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys 2015-01-22 17:07 - 2010-11-20 10:25 - 00753664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys 2015-01-22 17:07 - 2010-11-20 10:23 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys 2015-01-22 17:07 - 2010-11-05 03:20 - 00347904 _____ () C:\Windows\system32\systemsf.ebd 2015-01-22 17:07 - 2010-11-05 02:58 - 00297808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscoree.dll 2015-01-22 17:07 - 2010-11-05 02:58 - 00049488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netfxperf.dll 2015-01-22 17:07 - 2010-11-05 02:57 - 00444752 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll 2015-01-22 17:07 - 2010-11-05 02:53 - 00320352 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe 2015-01-22 17:07 - 2010-11-05 02:53 - 00295264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHost.exe 2015-01-22 17:07 - 2010-11-05 02:53 - 00109928 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll 2015-01-22 17:07 - 2010-11-05 02:53 - 00099176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHostProxy.dll 2015-01-22 17:07 - 2009-07-14 02:16 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpmonui.dll 2015-01-22 17:06 - 2010-11-20 14:44 - 01077248 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe 2015-01-22 17:06 - 2010-11-20 14:34 - 00363392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys 2015-01-22 17:06 - 2010-11-20 14:34 - 00071552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys 2015-01-22 17:06 - 2010-11-20 14:33 - 00289664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys 2015-01-22 17:06 - 2010-11-20 14:33 - 00263040 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2015-01-22 17:06 - 2010-11-20 14:33 - 00213888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys 2015-01-22 17:06 - 2010-11-20 14:33 - 00184704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys 2015-01-22 17:06 - 2010-11-20 14:33 - 00171392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys 2015-01-22 17:06 - 2010-11-20 14:33 - 00155008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpio.sys 2015-01-22 17:06 - 2010-11-20 14:33 - 00140672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msdsm.sys 2015-01-22 17:06 - 2010-11-20 14:33 - 00103808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sbp2port.sys 2015-01-22 17:06 - 2010-11-20 14:33 - 00094592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2015-01-22 17:06 - 2010-11-20 14:33 - 00078720 _____ (Hewlett-Packard Company) C:\Windows\system32\Drivers\HpSAMD.sys 2015-01-22 17:06 - 2010-11-20 14:33 - 00063360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys 2015-01-22 17:06 - 2010-11-20 14:33 - 00031104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msahci.sys 2015-01-22 17:06 - 2010-11-20 14:33 - 00014720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys 2015-01-22 17:06 - 2010-11-20 14:32 - 02217856 _____ (Microsoft Corporation) C:\Windows\system32\bootres.dll 2015-01-22 17:06 - 2010-11-20 14:32 - 00334208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys 2015-01-22 17:06 - 2010-11-20 14:32 - 00179072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2015-01-22 17:06 - 2010-11-20 14:28 - 00780008 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-01-22 17:06 - 2010-11-20 14:28 - 00298104 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2015-01-22 17:06 - 2010-11-20 14:28 - 00166784 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 02250752 _____ (Microsoft Corporation) C:\Windows\system32\SensorsCpl.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 02193920 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 02146816 _____ (Microsoft Corporation) C:\Windows\system32\networkmap.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 01689600 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 01363968 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL 2015-01-22 17:06 - 2010-11-20 14:27 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 01050624 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00898560 _____ (Microsoft Corporation) C:\Windows\system32\OobeFldr.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00812032 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00799744 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00769536 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\sdcpl.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00691200 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\PerfCenterCPL.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00633344 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00625664 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00625664 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00611840 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\mspbda.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00451072 _____ (Microsoft Corporation) C:\Windows\system32\shwebsvc.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00445952 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00421888 _____ (Microsoft Corporation) C:\Windows\system32\termmgr.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\systemcpl.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00418816 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\prnfldr.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00414720 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL 2015-01-22 17:06 - 2010-11-20 14:27 - 00264192 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00253440 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\taskbarcpl.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00232960 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\wmpsrcwp.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL 2015-01-22 17:06 - 2010-11-20 14:27 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00221696 _____ (Microsoft Corporation) C:\Windows\system32\OnLineIDCpl.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\sysclass.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\syncui.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00193024 _____ (Microsoft Corporation) C:\Windows\system32\netplwiz.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\netjoin.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\twext.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00170496 _____ (Microsoft Corporation) C:\Windows\system32\sdrsvc.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00154624 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\recovery.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL 2015-01-22 17:06 - 2010-11-20 14:27 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\samcli.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\ncryptui.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\RpcRtRemote.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\vpnikeapi.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\msvidc32.dll 2015-01-22 17:06 - 2010-11-20 14:27 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\sisbkup.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 01457664 _____ (Microsoft Corporation) C:\Windows\system32\DxpTaskSync.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\DiagCpl.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 01066496 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00934912 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00861184 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00701440 _____ (Microsoft Corporation) C:\Windows\system32\dsuiext.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00675328 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00551936 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00459776 _____ (Microsoft Corporation) C:\Windows\system32\DXP.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00348160 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\MediaMetadataHandler.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00304128 _____ (Microsoft Corporation) C:\Windows\system32\efscore.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00240640 _____ (Microsoft Corporation) C:\Windows\system32\MFPlay.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00233984 _____ (Microsoft Corporation) C:\Windows\system32\defaultlocationcpl.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL 2015-01-22 17:06 - 2010-11-20 14:26 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\dnscmmc.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00116224 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\fms.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\httpapi.dll 2015-01-22 17:06 - 2010-11-20 14:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 03745792 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 03524608 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 01264640 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 01065984 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00974336 _____ (Microsoft Corporation) C:\Windows\system32\WFS.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00780800 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00749568 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayCpl.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00549888 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00533504 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\biocpl.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00472064 _____ (Microsoft Corporation) C:\Windows\system32\azroleui.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00460800 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00349696 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\taskmgr.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00238080 _____ (Microsoft Corporation) C:\Windows\system32\recdisc.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\cfgmgr32.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\ocsetup.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\autoplay.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayServices.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00128000 _____ (Microsoft) C:\Windows\system32\Robocopy.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\cca.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\setupcl.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll 2015-01-22 17:06 - 2010-11-20 14:25 - 00058368 _____ (Microsoft Corporation) C:\Windows\system32\tzutil.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\proquota.exe 2015-01-22 17:06 - 2010-11-20 14:25 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe 2015-01-22 17:06 - 2010-11-20 14:24 - 00957440 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe 2015-01-22 17:06 - 2010-11-20 14:24 - 00850944 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl 2015-01-22 17:06 - 2010-11-20 14:24 - 00793088 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe 2015-01-22 17:06 - 2010-11-20 14:24 - 00777728 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe 2015-01-22 17:06 - 2010-11-20 14:24 - 00763904 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe 2015-01-22 17:06 - 2010-11-20 14:24 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl 2015-01-22 17:06 - 2010-11-20 14:24 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl 2015-01-22 17:06 - 2010-11-20 14:24 - 00684032 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl 2015-01-22 17:06 - 2010-11-20 14:24 - 00477696 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr 2015-01-22 17:06 - 2010-11-20 14:24 - 00474112 _____ (Microsoft Corporation) C:\Windows\system32\sysmon.ocx 2015-01-22 17:06 - 2010-11-20 14:24 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2015-01-22 17:06 - 2010-11-20 14:24 - 00378880 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe 2015-01-22 17:06 - 2010-11-20 14:24 - 00373248 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl 2015-01-22 17:06 - 2010-11-20 14:24 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe 2015-01-22 17:06 - 2010-11-20 14:24 - 00352768 _____ (Microsoft Corporation) C:\Windows\system32\sysdm.cpl 2015-01-22 17:06 - 2010-11-20 14:24 - 00346112 _____ (Microsoft Corporation) C:\Windows\system32\bcdedit.exe 2015-01-22 17:06 - 2010-11-20 14:24 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe 2015-01-22 17:06 - 2010-11-20 14:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax 2015-01-22 17:06 - 2010-11-20 14:24 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv 2015-01-22 17:06 - 2010-11-20 14:24 - 00196096 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax 2015-01-22 17:06 - 2010-11-20 14:24 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2015-01-22 17:06 - 2010-11-20 14:24 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe 2015-01-22 17:06 - 2010-11-20 14:24 - 00104960 _____ (Microsoft Corporation) C:\Windows\system32\Mpeg2Data.ax 2015-01-22 17:06 - 2010-11-20 14:24 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax 2015-01-22 17:06 - 2010-11-20 14:24 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\isoburn.exe 2015-01-22 17:06 - 2010-11-20 14:24 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\ksxbar.ax 2015-01-22 17:06 - 2010-11-20 13:51 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-01-22 17:06 - 2010-11-20 13:23 - 00144768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 02983424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 02755072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 02202624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsCpl.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 02157568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 02146304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncCenter.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 01624064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPEncEn.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 01326592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanpref.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 01227776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 01003008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMNetMgr.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00933376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vault.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00782336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00778240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlsrv32.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00755200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sud.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00638976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00600064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usercpl.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00416768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiadefui.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00411648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00410112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanui.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\termmgr.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizeng.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00352256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpeffects.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00346624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSATAPI.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsvcs.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\zipfldr.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srchadmin.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00276992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcncsvc.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00246272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scansetting.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapisrv.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00228352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVolSSO.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcomapi.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpipcfg.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasppp.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regapi.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samcli.dll 2015-01-22 17:06 - 2010-11-20 13:21 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcRtRemote.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 02504192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVCORE.DLL 2015-01-22 17:06 - 2010-11-20 13:20 - 02494464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 02130944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkmap.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 01750528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pnidui.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 01644032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcenter.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 01508864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pla.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00932352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00801280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00600576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PerfCenterCPL.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercpl.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00395264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnfldr.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00324608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00295424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\photowiz.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netdiagfx.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OnLineIDCpl.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onex.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QAGENT.DLL 2015-01-22 17:06 - 2010-11-20 13:20 - 00167936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSHVHOST.DLL 2015-01-22 17:06 - 2010-11-20 13:20 - 00166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiohlp.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netjoin.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prntvpt.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netid.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prncache.dll 2015-01-22 17:06 - 2010-11-20 13:20 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nci.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00856576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallControlPanel.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00830464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL 2015-01-22 17:06 - 2010-11-20 13:19 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00488448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00481792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00429056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\localsec.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00400896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipsmsnap.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00392192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxclu.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hgcpl.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00268800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprddm.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MediaMetadataHandler.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSAC3ENC.DLL 2015-01-22 17:06 - 2010-11-20 13:19 - 00213504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00167936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msutb.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00124416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fde.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IPHLPAPI.DLL 2015-01-22 17:06 - 2010-11-20 13:19 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasacct.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hbaapi.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdeploy.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mimefilt.dll 2015-01-22 17:06 - 2010-11-20 13:19 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msasn1.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 03727872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\accessibilitycpl.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 01400320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DxpTaskSync.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 01040384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 01003520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 00854016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 00762880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroles.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 00744448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 00740864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\batmeter.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 00665600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuxiliaryDisplayCpl.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 00630784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXPTaskRingtone.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroleui.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 00309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 00222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adsldp.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabview.dll 2015-01-22 17:06 - 2010-11-20 13:18 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscmmc.dll 2015-01-22 17:06 - 2010-11-20 13:17 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe 2015-01-22 17:06 - 2010-11-20 13:17 - 00314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe 2015-01-22 17:06 - 2010-11-20 13:17 - 00303104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe 2015-01-22 17:06 - 2010-11-20 13:17 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eudcedit.exe 2015-01-22 17:06 - 2010-11-20 13:17 - 00227328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskmgr.exe 2015-01-22 17:06 - 2010-11-20 13:17 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskeng.exe 2015-01-22 17:06 - 2010-11-20 13:17 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe 2015-01-22 17:06 - 2010-11-20 13:17 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\net1.exe 2015-01-22 17:06 - 2010-11-20 13:17 - 00098816 _____ (Microsoft) C:\Windows\SysWOW64\Robocopy.exe 2015-01-22 17:06 - 2010-11-20 13:17 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe 2015-01-22 17:06 - 2010-11-20 13:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\proquota.exe 2015-01-22 17:06 - 2010-11-20 13:17 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userinit.exe 2015-01-22 17:06 - 2010-11-20 13:16 - 00905216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl 2015-01-22 17:06 - 2010-11-20 13:16 - 00776192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\calc.exe 2015-01-22 17:06 - 2010-11-20 13:16 - 00679424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoconv.exe 2015-01-22 17:06 - 2010-11-20 13:16 - 00668160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autochk.exe 2015-01-22 17:06 - 2010-11-20 13:16 - 00658944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autofmt.exe 2015-01-22 17:06 - 2010-11-20 13:16 - 00649216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl 2015-01-22 17:06 - 2010-11-20 13:16 - 00516096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\main.cpl 2015-01-22 17:06 - 2010-11-20 13:16 - 00413696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr 2015-01-22 17:06 - 2010-11-20 13:16 - 00326656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysdm.cpl 2015-01-22 17:06 - 2010-11-20 13:16 - 00320000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2015-01-22 17:06 - 2010-11-20 13:16 - 00204288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSNP.ax 2015-01-22 17:06 - 2010-11-20 13:08 - 00833024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2015-01-22 17:06 - 2010-11-20 11:52 - 00164352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndiswan.sys 2015-01-22 17:06 - 2010-11-20 11:52 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rasl2tp.sys 2015-01-22 17:06 - 2010-11-20 11:52 - 00111104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\raspptp.sys 2015-01-22 17:06 - 2010-11-20 11:52 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys 2015-01-22 17:06 - 2010-11-20 11:52 - 00082944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipfltdrv.sys 2015-01-22 17:06 - 2010-11-20 11:43 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\winusb.sys 2015-01-22 17:06 - 2010-11-20 11:33 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys 2015-01-22 17:06 - 2010-11-20 10:26 - 00328192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys 2015-01-22 17:06 - 2010-11-05 03:11 - 00433512 _____ (Microsoft Corporation) C:\Windows\system32\MCEWMDRMNDBootstrap.dll 2015-01-22 17:06 - 2010-11-05 03:11 - 00312168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCEWMDRMNDBootstrap.dll 2015-01-22 17:05 - 2015-01-22 22:16 - 00000000 ____D () C:\Program Files (x86)\KeePass Password Safe 2 2015-01-22 17:05 - 2015-01-22 17:05 - 00001121 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk 2015-01-22 17:05 - 2010-11-20 14:44 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\NAPHLPR.DLL 2015-01-22 17:05 - 2010-11-20 14:44 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\NAPCRYPT.DLL 2015-01-22 17:05 - 2010-11-20 14:27 - 01911808 _____ (Microsoft Corporation) C:\Windows\system32\OpcServices.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 01672704 _____ (Microsoft Corporation) C:\Windows\system32\networkexplorer.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 01232896 _____ (Microsoft Corporation) C:\Windows\system32\WMADMOD.DLL 2015-01-22 17:05 - 2010-11-20 14:27 - 01080320 _____ (Microsoft Corporation) C:\Windows\system32\onexui.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00978944 _____ (Microsoft Corporation) C:\Windows\system32\WMSPDMOD.DLL 2015-01-22 17:05 - 2010-11-20 14:27 - 00781312 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmsdk.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00666112 _____ (Microsoft Corporation) C:\Windows\system32\WMVSDECD.DLL 2015-01-22 17:05 - 2010-11-20 14:27 - 00641024 _____ (Microsoft Corporation) C:\Windows\system32\msscp.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00636416 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmdev.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00594432 _____ (Microsoft Corporation) C:\Windows\system32\wvc.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00527872 _____ (Microsoft Corporation) C:\Windows\system32\wmdrmnet.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\sqlcese30.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00435712 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceStatus.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00431104 _____ (Microsoft Corporation) C:\Windows\system32\WPDSp.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00358400 _____ (Microsoft Corporation) C:\Windows\system32\wmpdxm.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00337920 _____ (Microsoft Corporation) C:\Windows\system32\raschap.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\msnetobj.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00313856 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\srrstr.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\wavemsp.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\qasf.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\qdv.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00238080 _____ (Microsoft Corporation) C:\Windows\system32\mstask.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceSyncProvider.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00217600 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\wpdwcn.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\vdsbas.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00181248 _____ (Microsoft Corporation) C:\Windows\system32\qcap.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00153088 _____ (Microsoft Corporation) C:\Windows\system32\remotepg.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00143360 _____ (Microsoft Corporation) C:\Windows\system32\mydocs.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\shacct.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\ntlanman.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\srvcli.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00124928 _____ (Microsoft Corporation) C:\Windows\system32\wiavideo.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL 2015-01-22 17:05 - 2010-11-20 14:27 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\sppnp.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\UserAccountControlSettings.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\QCLIPROV.DLL 2015-01-22 17:05 - 2010-11-20 14:27 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\spbcd.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00073728 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\unimdmat.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\napdsnap.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\wkscli.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\vfwwdm32.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\rdpd3d.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\WavDest.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\vss_ps.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\umb.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\odbcconf.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\PrintIsolationProxy.dll |
![]() | #3 |
![]() | ![]() Laptop über LAN an Router Internet bricht ab der dritte Teil:
ATTFilter 2015-01-22 17:05 - 2010-11-20 14:27 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\shimgvw.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00036352 _____ (Microsoft Corporation) C:\Windows\system32\wdiasqmmodule.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\msdmo.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\profprov.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\seclogon.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\netutils.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\shgina.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\wsdchngr.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\msyuv.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\schedcli.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00023040 _____ (Microsoft Corporation) C:\Windows\system32\rdprefdrvapi.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00021504 _____ (Microsoft Corporation) C:\Windows\system32\TRAPI.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\syssetup.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\muifontsetup.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\msrle32.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\slwga.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\nrpsrv.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\tsbyuv.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\wshirda.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\shunimpl.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\riched32.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00010240 _____ (Microsoft Corporation) C:\Windows\system32\rdpcfgex.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll 2015-01-22 17:05 - 2010-11-20 14:27 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx 2015-01-22 17:05 - 2010-11-20 14:27 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 01087488 _____ (Microsoft Corporation) C:\Windows\system32\dbghelp.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00623104 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00495104 _____ (Microsoft Corporation) C:\Windows\system32\drmmgrtn.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00434688 _____ (Microsoft Corporation) C:\Windows\system32\FXSTIFF.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00313344 _____ (Microsoft Corporation) C:\Windows\system32\dot3ui.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00282624 _____ (Microsoft Corporation) C:\Windows\system32\iTVData.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00281088 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairingFolder.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\iasrecst.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00180736 _____ (Microsoft Corporation) C:\Windows\system32\ifsutil.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\EhStorAPI.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00121344 _____ (Microsoft Corporation) C:\Windows\system32\fphc.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\dot3msm.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapistub.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\mapi32.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\KMSVC.DLL 2015-01-22 17:05 - 2010-11-20 14:26 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\Mcx2Svc.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00074240 _____ (Microsoft Corporation) C:\Windows\system32\fdProxy.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\inetmib1.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\iyuv_32.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\luainstall.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\FXSMON.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\mciqtz32.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\iscsium.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\dsauth.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00027136 _____ (Microsoft Corporation) C:\Windows\system32\HotStartUserAgent.dll 2015-01-22 17:05 - 2010-11-20 14:26 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\elsTrans.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00840192 _____ (Microsoft Corporation) C:\Windows\system32\blackbox.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeResults.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00293888 _____ (Microsoft Corporation) C:\Windows\system32\wsqmcons.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\sethc.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00213504 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\perfmon.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\net1.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00109568 _____ (Microsoft Corporation) C:\Windows\system32\nslookup.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\cabinet.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\amstream.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00080384 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\tabcal.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\CertPolEng.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\takeown.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\PnPUnattend.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\runonce.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\acppage.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\repair-bde.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\MultiDigiMon.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00046080 _____ (Microsoft Corporation) C:\Windows\system32\cscapi.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\relog.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\AzSqlExt.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\cscdll.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00026112 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe 2015-01-22 17:05 - 2010-11-20 14:25 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\bitsperf.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\BWUnpairElevated.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\browseui.dll 2015-01-22 17:05 - 2010-11-20 14:25 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\C_ISCII.DLL 2015-01-22 17:05 - 2010-11-20 14:24 - 00899584 _____ (Microsoft Corporation) C:\Windows\system32\Bubbles.scr 2015-01-22 17:05 - 2010-11-20 14:24 - 00606208 _____ (Microsoft Corporation) C:\Windows\system32\dfrgui.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00497664 _____ (Microsoft Corporation) C:\Windows\system32\main.cpl 2015-01-22 17:05 - 2010-11-20 14:24 - 00363520 _____ (Microsoft Corporation) C:\Windows\system32\diskraid.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00333824 _____ (Microsoft Corporation) C:\Windows\system32\ssText3d.scr 2015-01-22 17:05 - 2010-11-20 14:24 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\unimdm.tsp 2015-01-22 17:05 - 2010-11-20 14:24 - 00242688 _____ (Microsoft Corporation) C:\Windows\system32\Mystify.scr 2015-01-22 17:05 - 2010-11-20 14:24 - 00241664 _____ (Microsoft Corporation) C:\Windows\system32\Ribbons.scr 2015-01-22 17:05 - 2010-11-20 14:24 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\bitsadmin.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\fsquirt.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\bcdboot.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl 2015-01-22 17:05 - 2010-11-20 14:24 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\diskpart.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\iscsicli.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\MdSched.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\Kswdmcap.ax 2015-01-22 17:05 - 2010-11-20 14:24 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\desk.cpl 2015-01-22 17:05 - 2010-11-20 14:24 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00104448 _____ (Microsoft Corporation) C:\Windows\system32\logman.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\kstvtune.ax 2015-01-22 17:05 - 2010-11-20 14:24 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\mobsync.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\cmstp.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\manage-bde.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\MSDvbNP.ax 2015-01-22 17:05 - 2010-11-20 14:24 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\findstr.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00071168 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\djoin.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\g711codc.ax 2015-01-22 17:05 - 2010-11-20 14:24 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\vbisurf.ax 2015-01-22 17:05 - 2010-11-20 14:24 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\choice.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\LogonUI.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\FXSUNATD.exe 2015-01-22 17:05 - 2010-11-20 14:24 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\fixmapi.exe 2015-01-22 17:05 - 2010-11-20 14:15 - 01164800 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbonRes.dll 2015-01-22 17:05 - 2010-11-20 14:14 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\spwizres.dll 2015-01-22 17:05 - 2010-11-20 14:13 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\RDPENCDD.dll 2015-01-22 17:05 - 2010-11-20 14:13 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\nlsbres.dll 2015-01-22 17:05 - 2010-11-20 14:12 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\pifmgr.dll 2015-01-22 17:05 - 2010-11-20 14:02 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10.IME 2015-01-22 17:05 - 2010-11-20 14:02 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\imkr80.ime 2015-01-22 17:05 - 2010-11-20 14:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUQ.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDTUF.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDSG.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\kbdlk41a.dll 2015-01-22 17:05 - 2010-11-20 14:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDGKL.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDCZ1.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDSF.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDPO.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDNEPR.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTAM.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDINBEN.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007680 _____ (Microsoft Corporation) C:\Windows\system32\KBDGR1.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDUS.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDUGHR1.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTURME.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAJIK.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDMON.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDMAORI.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDLT1.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINTEL.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINORI.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINMAR.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINKAN.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDINHIN.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBULG.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBLR.DLL 2015-01-22 17:05 - 2010-11-20 14:02 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDGEO.DLL 2015-01-22 17:05 - 2010-11-20 13:58 - 00003072 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll 2015-01-22 17:05 - 2010-11-20 13:54 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\BlbEvents.dll 2015-01-22 17:05 - 2010-11-20 13:51 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-ums-l1-1-0.dll 2015-01-22 17:05 - 2010-11-20 13:36 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPHLPR.DLL 2015-01-22 17:05 - 2010-11-20 13:36 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NAPCRYPT.DLL 2015-01-22 17:05 - 2010-11-20 13:21 - 00902656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMADMOD.DLL 2015-01-22 17:05 - 2010-11-20 13:21 - 00739328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMSPDMOD.DLL 2015-01-22 17:05 - 2010-11-20 13:21 - 00738816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpmde.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00616960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmsdk.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00541184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVSDECD.DLL 2015-01-22 17:05 - 2010-11-20 13:21 - 00507392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmdev.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00473600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched20.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wvc.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00436736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmdrmnet.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00428544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shwebsvc.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00410624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\systemcpl.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00406528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00350720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDSp.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00318976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\raschap.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlcese30.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00299520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpdxm.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wavemsp.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00198144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdwcn.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqmapi.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpsrcwp.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vdsbas.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syncui.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\remotepg.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twext.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpps.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxlib.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupcln.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00109568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiavideo.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00108032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shacct.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WPDShServiceObj.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00105472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpshell.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppinst.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srvcli.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QUTIL.DLL 2015-01-22 17:05 - 2010-11-20 13:21 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UserAccountControlSettings.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastapi.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spbcd.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdmat.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vfwwdm32.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpd3d.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsnmp32.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00051200 _____ (Twain Working Group) C:\Windows\twain_32.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wkscli.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wtsapi32.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtutils.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shimgvw.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\utildll.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vpnikeapi.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsdchngr.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TRAPI.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdprefdrvapi.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00020992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shgina.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spopk.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sisbkup.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schedcli.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00014848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\syssetup.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slwga.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsbyuv.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshirda.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shunimpl.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\riched32.dll 2015-01-22 17:05 - 2010-11-20 13:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx 2015-01-22 17:05 - 2010-11-20 13:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 01661440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\networkexplorer.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 01160192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OpcServices.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 01111552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onexui.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00859648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\OobeFldr.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceStatus.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00346112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshipsec.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00283136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdv.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00236544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qasf.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00190976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qcap.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00183296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceSyncProvider.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netplwiz.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00174592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ocsetapi.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00165376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\provsvc.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mydocs.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00121344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSVRMGMT.DLL 2015-01-22 17:05 - 2010-11-20 13:20 - 00090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olepro32.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\olethk32.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QCLIPROV.DLL 2015-01-22 17:05 - 2010-11-20 13:20 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntlanman.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00068096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\napdsnap.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptui.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdhui.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcconf.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netutils.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfts.dll 2015-01-22 17:05 - 2010-11-20 13:20 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00592384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscp.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msnetobj.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00219648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iTVData.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstask.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00202240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\input.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msorcl32.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00176128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFPlay.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrad.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprapi.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ifsutil.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasrecst.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00120320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvfw32.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\migisol.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fphc.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00093696 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\SysWOW64\fms.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciavi32.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00082944 _____ (Radius Inc.) C:\Windows\SysWOW64\iccvid.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapistub.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mapi32.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetmib1.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iyuv_32.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\luainstall.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mciqtz32.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\httpapi.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvidc32.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdmo.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsium.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msyuv.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00021504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lsmproxy.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\muifontsetup.dll 2015-01-22 17:05 - 2010-11-20 13:19 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrle32.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00743424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\blackbox.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00685056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsuiext.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00537600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00484864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceCenter.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00402944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drmmgrtn.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00333824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3ui.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00257024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpx.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00243712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\audiodev.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00230912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\defaultlocationcpl.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00211456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairingFolder.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxdiagn.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00205312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\efscore.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\activeds.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dskquoui.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00146944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autoplay.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00128512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EhStorAPI.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00115200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3msm.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00091648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\avifil32.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3cfg.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabinet.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\amstream.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cca.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertPolEng.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\acppage.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscapi.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dsauth.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AzSqlExt.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscdll.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elsTrans.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00019456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsperf.dll 2015-01-22 17:05 - 2010-11-20 13:18 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\C_ISCII.DLL 2015-01-22 17:05 - 2010-11-20 13:18 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browseui.dll 2015-01-22 17:05 - 2010-11-20 13:17 - 00586752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfrgui.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00327680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimserv.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00276480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskraid.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sethc.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PkgMgr.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ocsetup.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00157184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\perfmon.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00144896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iscsicli.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\diskpart.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00113152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupugc.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00101376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mobsync.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00098304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nslookup.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logagent.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\isoburn.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmstp.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logman.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MuiUnattend.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\findstr.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\takeown.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\runonce.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzutil.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ftp.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\relog.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unlodctr.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiougc.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe 2015-01-22 17:05 - 2010-11-20 13:17 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgentc.exe 2015-01-22 17:05 - 2010-11-20 13:16 - 00878592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Bubbles.scr 2015-01-22 17:05 - 2010-11-20 13:16 - 00692736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl 2015-01-22 17:05 - 2010-11-20 13:16 - 00389632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sysmon.ocx 2015-01-22 17:05 - 2010-11-20 13:16 - 00345088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl 2015-01-22 17:05 - 2010-11-20 13:16 - 00293888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ssText3d.scr 2015-01-22 17:05 - 2010-11-20 13:16 - 00281088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\unimdm.tsp 2015-01-22 17:05 - 2010-11-20 13:16 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mystify.scr 2015-01-22 17:05 - 2010-11-20 13:16 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Ribbons.scr 2015-01-22 17:05 - 2010-11-20 13:16 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax 2015-01-22 17:05 - 2010-11-20 13:16 - 00186368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bitsadmin.exe 2015-01-22 17:05 - 2010-11-20 13:16 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdmaud.drv 2015-01-22 17:05 - 2010-11-20 13:16 - 00153600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax 2015-01-22 17:05 - 2010-11-20 13:16 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl 2015-01-22 17:05 - 2010-11-20 13:16 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\desk.cpl 2015-01-22 17:05 - 2010-11-20 13:16 - 00107008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Kswdmcap.ax 2015-01-22 17:05 - 2010-11-20 13:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kstvtune.ax 2015-01-22 17:05 - 2010-11-20 13:16 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Mpeg2Data.ax 2015-01-22 17:05 - 2010-11-20 13:16 - 00068608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSTPager.ax 2015-01-22 17:05 - 2010-11-20 13:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSDvbNP.ax 2015-01-22 17:05 - 2010-11-20 13:16 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksxbar.ax 2015-01-22 17:05 - 2010-11-20 13:16 - 00045568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\g711codc.ax 2015-01-22 17:05 - 2010-11-20 13:16 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbisurf.ax 2015-01-22 17:05 - 2010-11-20 13:08 - 00119808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imm32.dll 2015-01-22 17:05 - 2010-11-20 13:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTUQ.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTUF.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDSG.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdlk41a.dll 2015-01-22 17:05 - 2010-11-20 13:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDGR1.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDGKL.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDCZ1.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDSF.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDPO.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDNEPR.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINTAM.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINORI.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINMAR.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINKAN.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINHIN.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINBEN.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDUS.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDUGHR1.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTURME.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAJIK.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDMON.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDMAORI.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDLT1.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDINTEL.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDGEO.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBULG.DLL 2015-01-22 17:05 - 2010-11-20 13:08 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBLR.DLL 2015-01-22 17:05 - 2010-11-20 13:07 - 01164800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbonRes.dll 2015-01-22 17:05 - 2010-11-20 13:07 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizres.dll 2015-01-22 17:05 - 2010-11-20 13:06 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlsbres.dll 2015-01-22 17:05 - 2010-11-20 13:05 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pifmgr.dll 2015-01-22 17:05 - 2010-11-20 13:00 - 01027584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10.IME 2015-01-22 17:05 - 2010-11-20 13:00 - 00430080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imkr80.ime 2015-01-22 17:05 - 2010-11-20 12:57 - 00002560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll 2015-01-22 17:05 - 2010-11-20 12:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbrpm.sys 2015-01-22 17:05 - 2010-11-20 11:52 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys 2015-01-22 17:05 - 2010-11-20 11:52 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys 2015-01-22 17:05 - 2010-11-20 11:51 - 00125440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tunnel.sys 2015-01-22 17:05 - 2010-11-20 11:50 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndisuio.sys 2015-01-22 17:05 - 2010-11-20 11:49 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rmcast.sys 2015-01-22 17:05 - 2010-11-20 11:44 - 00350208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys 2015-01-22 17:05 - 2010-11-20 11:44 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\umbus.sys 2015-01-22 17:05 - 2010-11-20 11:44 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBCAMD2.sys 2015-01-22 17:05 - 2010-11-20 11:43 - 00122368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys 2015-01-22 17:05 - 2010-11-20 11:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys 2015-01-22 17:05 - 2010-11-20 11:34 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sffp_sd.sys 2015-01-22 17:05 - 2010-11-20 11:33 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\CompositeBus.sys 2015-01-22 17:05 - 2010-11-20 11:33 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys 2015-01-22 17:05 - 2010-11-20 11:14 - 00061440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2015-01-22 17:05 - 2010-11-20 11:09 - 00029696 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys 2015-01-22 17:05 - 2010-11-20 11:04 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys 2015-01-22 17:05 - 2010-11-20 10:30 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpipmi.sys 2015-01-22 17:05 - 2010-11-20 10:26 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys 2015-01-22 17:05 - 2010-11-20 10:22 - 00026624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdi.sys 2015-01-22 17:05 - 2010-11-20 10:19 - 00147456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdrom.sys 2015-01-22 17:05 - 2010-11-10 02:48 - 00010429 _____ () C:\Windows\system32\ScavengeSpace.xml 2015-01-22 17:05 - 2010-11-05 03:20 - 00105559 _____ () C:\Windows\SysWOW64\RacRules.xml 2015-01-22 17:05 - 2010-11-05 03:20 - 00105559 _____ () C:\Windows\system32\RacRules.xml 2015-01-22 17:04 - 2015-01-22 17:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-01-22 17:03 - 2010-11-20 14:26 - 00399872 _____ (Microsoft Corporation) C:\Windows\system32\dpx.dll 2015-01-22 17:03 - 2010-11-20 13:21 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdscore.dll 2015-01-22 17:03 - 2009-06-10 22:39 - 00001041 _____ () C:\Windows\SysWOW64\tcpbidi.xml 2015-01-22 17:02 - 2010-11-20 13:21 - 00363008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wbemcomn.dll 2015-01-22 17:01 - 2010-11-20 14:27 - 00529408 _____ (Microsoft Corporation) C:\Windows\system32\wbemcomn.dll 2015-01-22 16:59 - 2015-02-19 08:36 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-01-22 16:59 - 2015-02-19 07:29 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-01-22 16:59 - 2015-02-06 21:23 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-01-22 16:59 - 2015-02-06 21:23 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-01-22 16:57 - 2015-01-22 16:57 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Mozilla 2015-01-22 16:57 - 2015-01-22 16:57 - 00000000 ____D () C:\Users\Chin\AppData\Local\Mozilla 2015-01-22 15:08 - 2015-01-22 15:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2015-01-22 15:08 - 2015-01-22 15:08 - 00000000 ____D () C:\Program Files\CPUID 2015-01-22 14:36 - 2015-02-19 07:09 - 00013156 _____ () C:\Windows\PFRO.log 2015-01-22 14:33 - 2015-02-11 13:11 - 00000000 ____D () C:\Windows\system32\MRT 2015-01-22 14:33 - 2015-02-11 13:00 - 116773704 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-01-22 14:27 - 2015-01-22 14:27 - 00000247 _____ () C:\Windows\system32\2015-01-22-13-27-29.041-aswFe.exe-2024.log 2015-01-22 14:27 - 2015-01-22 14:27 - 00000197 _____ () C:\Windows\system32\2015-01-22-13-27-27.045-AvastVBoxSVC.exe-4972.log 2015-01-22 14:26 - 2011-04-09 07:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2015-01-22 14:26 - 2011-04-09 06:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2015-01-22 14:23 - 2015-01-22 14:23 - 00000247 _____ () C:\Windows\system32\2015-01-22-13-23-38.088-aswFe.exe-4336.log 2015-01-22 14:23 - 2015-01-22 14:23 - 00000197 _____ () C:\Windows\system32\2015-01-22-13-23-36.083-AvastVBoxSVC.exe-2960.log 2015-01-22 14:22 - 2014-12-23 00:41 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2015-01-22 14:16 - 2015-01-22 14:17 - 00000247 _____ () C:\Windows\system32\2015-01-22-13-16-59.084-aswFe.exe-3428.log 2015-01-22 14:14 - 2015-01-22 14:14 - 00000247 _____ () C:\Windows\system32\2015-01-22-13-14-52.029-aswFe.exe-2564.log 2015-01-22 14:14 - 2015-01-22 14:14 - 00000197 _____ () C:\Windows\system32\2015-01-22-13-14-49.064-AvastVBoxSVC.exe-3320.log 2015-01-22 14:12 - 2015-02-19 08:05 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2015-01-22 14:12 - 2015-01-22 14:13 - 00000000 ____D () C:\Windows\SysWOW64\vbox 2015-01-22 14:12 - 2015-01-22 14:13 - 00000000 ____D () C:\Windows\system32\vbox 2015-01-22 14:12 - 2015-01-22 14:12 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\AVAST Software 2015-01-22 14:12 - 2015-01-22 14:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2015-01-22 14:11 - 2015-01-23 08:31 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys 2015-01-22 14:11 - 2015-01-22 17:04 - 00000000 ____D () C:\Users\Chin\AppData\Local\Google 2015-01-22 14:11 - 2015-01-22 17:02 - 00000000 ____D () C:\Program Files (x86)\Google 2015-01-22 14:11 - 2015-01-22 14:11 - 00436624 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2015-01-22 14:11 - 2015-01-22 14:11 - 00364512 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2015-01-22 14:11 - 2015-01-22 14:11 - 00267632 _____ () C:\Windows\system32\Drivers\aswVmm.sys 2015-01-22 14:11 - 2015-01-22 14:11 - 00116728 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2015-01-22 14:11 - 2015-01-22 14:11 - 00093568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2015-01-22 14:11 - 2015-01-22 14:11 - 00083280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2015-01-22 14:11 - 2015-01-22 14:11 - 00065776 _____ () C:\Windows\system32\Drivers\aswRvrt.sys 2015-01-22 14:11 - 2015-01-22 14:11 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr 2015-01-22 14:11 - 2015-01-22 14:11 - 00029208 _____ () C:\Windows\system32\Drivers\aswHwid.sys 2015-01-22 14:11 - 2015-01-22 14:11 - 00000000 ____D () C:\Program Files\AVAST Software 2015-01-22 14:08 - 2015-01-22 14:11 - 00000000 ____D () C:\ProgramData\AVAST Software 2015-01-22 14:06 - 2015-01-22 14:06 - 00003414 _____ () C:\Windows\System32\Tasks\{C9DF0A06-51CA-48EB-9D0E-3DB2A56AECE3} 2015-01-22 14:06 - 2015-01-22 14:06 - 00000000 ____D () C:\Windows\SysWOW64\sda 2015-01-22 14:06 - 2014-01-14 07:17 - 00466136 ____R (Realsil Semiconductor Corporation) C:\Windows\system32\Drivers\RtsPer.sys 2015-01-22 14:06 - 2013-04-25 11:12 - 09889352 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RsCRIcon.dll 2015-01-22 14:04 - 2015-01-22 14:04 - 00003462 _____ () C:\Windows\System32\Tasks\{7CAC292B-36A1-444D-9D1D-6C95578AD387} 2015-01-22 14:01 - 2015-01-22 18:22 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2015-01-22 14:01 - 2015-01-22 14:06 - 00000000 ____D () C:\Program Files (x86)\Realtek 2015-01-22 14:01 - 2013-12-18 04:34 - 00888536 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2015-01-22 14:01 - 2013-12-18 04:34 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2015-01-22 14:01 - 2013-12-18 04:34 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2015-01-22 13:55 - 2014-02-16 17:23 - 00060640 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys 2015-01-22 13:50 - 2015-01-24 09:10 - 00111776 _____ () C:\Users\Chin\AppData\Local\GDIPFONTCACHEV1.DAT 2015-01-22 13:50 - 2015-01-22 13:50 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\ATI 2015-01-22 13:50 - 2015-01-22 13:50 - 00000000 ____D () C:\Users\Chin\AppData\Local\ATI 2015-01-22 13:50 - 2015-01-22 13:50 - 00000000 ____D () C:\Users\Chin\AppData\Local\AppEx Networks 2015-01-22 13:50 - 2015-01-22 13:50 - 00000000 ____D () C:\ProgramData\ATI 2015-01-22 13:49 - 2015-02-19 08:11 - 00065536 _____ () C:\Windows\system32\spu_storage.bin 2015-01-22 13:49 - 2015-01-22 13:49 - 00000000 _____ () C:\Windows\ativpsrm.bin 2015-01-22 13:48 - 2015-01-22 13:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center 2015-01-22 13:48 - 2015-01-22 13:48 - 00000000 ____D () C:\ProgramData\AMD 2015-01-22 13:48 - 2015-01-22 13:48 - 00000000 ____D () C:\Program Files (x86)\AMD AVT 2015-01-22 13:48 - 2014-10-28 14:24 - 00229056 _____ (AppEx Networks Corporation) C:\Windows\system32\Drivers\appexDrv.sys 2015-01-22 13:46 - 2015-01-22 13:48 - 00000000 ____D () C:\Program Files (x86)\AMD 2015-01-22 13:46 - 2015-01-22 13:46 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2015-01-22 13:45 - 2015-01-23 18:21 - 01593564 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2015-01-22 13:43 - 2015-01-27 18:03 - 00000000 ____D () C:\ProgramData\Package Cache 2015-01-22 13:42 - 2015-01-23 11:06 - 00000000 ____D () C:\Program Files\AMD 2015-01-22 13:41 - 2015-01-22 13:54 - 00000000 ____D () C:\AMD 2015-01-22 13:37 - 2015-01-29 14:50 - 00000000 ____D () C:\Users\Chin\AppData\Local\VirtualStore 2015-01-22 13:37 - 2015-01-22 21:09 - 00001413 _____ () C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-01-22 13:36 - 2015-02-17 12:30 - 00000000 ____D () C:\Users\Chin 2015-01-22 13:36 - 2015-01-22 13:36 - 00000020 ___SH () C:\Users\Chin\ntuser.ini 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default\Startmenü 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Chin\Vorlagen 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Chin\Startmenü 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Chin\Netzwerkumgebung 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Chin\Lokale Einstellungen 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Chin\Eigene Dateien 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Chin\Druckumgebung 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Chin\Documents\Eigene Musik 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Chin\Documents\Eigene Bilder 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Chin\AppData\Local\Verlauf 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Chin\AppData\Local\Anwendungsdaten 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Users\Chin\Anwendungsdaten 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Programme 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\ProgramData\Startmenü 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\ProgramData\Favoriten 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\ProgramData\Dokumente 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2015-01-22 13:36 - 2015-01-22 13:36 - 00000000 __SHD () C:\Recovery 2015-01-22 13:36 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-01-22 13:36 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-19 08:43 - 2009-07-14 05:45 - 00015472 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-02-19 08:43 - 2009-07-14 05:45 - 00015472 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-02-19 08:41 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF 2015-02-19 08:35 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-02-19 08:35 - 2009-07-14 05:51 - 00025591 _____ () C:\Windows\setupact.log 2015-02-19 07:58 - 2009-07-14 18:58 - 00699342 _____ () C:\Windows\system32\perfh007.dat 2015-02-19 07:58 - 2009-07-14 18:58 - 00149450 _____ () C:\Windows\system32\perfc007.dat 2015-02-19 07:58 - 2009-07-14 06:13 - 01619284 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-02-14 09:30 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2015-02-11 13:17 - 2009-07-14 05:45 - 00437584 _____ () C:\Windows\system32\FNTCACHE.DAT 2015-01-23 09:09 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2015-01-22 23:34 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-01-22 23:31 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2015-01-22 23:31 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Dism 2015-01-22 23:31 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2015-01-22 21:02 - 2009-07-14 19:18 - 00000000 ____D () C:\Program Files\Windows Journal 2015-01-22 21:02 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender 2015-01-22 21:02 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2015-01-22 21:02 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2015-01-22 21:02 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2015-01-22 21:02 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2015-01-22 21:02 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2015-01-22 21:02 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System 2015-01-22 20:31 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-01-22 20:31 - 2009-07-14 05:46 - 00001774 _____ () C:\Windows\DtcInstall.log 2015-01-22 20:31 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sysprep 2015-01-22 20:25 - 2009-07-14 06:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2015-01-22 20:25 - 2009-07-14 06:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2015-01-22 17:18 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Sidebar 2015-01-22 17:18 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Portable Devices 2015-01-22 17:18 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2015-01-22 17:18 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\DVD Maker 2015-01-22 17:18 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar 2015-01-22 17:18 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Portable Devices 2015-01-22 17:18 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer 2015-01-22 17:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\sppui 2015-01-22 17:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Setup 2015-01-22 17:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\oobe 2015-01-22 17:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz 2015-01-22 17:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\manifeststore 2015-01-22 17:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\AdvancedInstallers 2015-01-22 17:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\sppui 2015-01-22 17:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Setup 2015-01-22 17:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\oobe 2015-01-22 17:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\migwiz 2015-01-22 17:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\manifeststore 2015-01-22 17:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\AdvancedInstallers 2015-01-22 17:18 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\servicing 2015-01-22 17:14 - 2009-07-14 03:36 - 00175616 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll 2015-01-22 17:14 - 2009-07-14 03:36 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll 2015-01-22 13:43 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore 2015-01-22 13:36 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default 2015-01-22 13:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Recovery 2015-01-22 13:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT ==================== Files in the root of some directories ======= 2015-01-26 23:07 - 2015-01-28 13:26 - 0000600 _____ () C:\Users\Chin\AppData\Local\PUTTY.RND Some content of TEMP: ==================== C:\Users\Chin\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpuab0yq.dll C:\Users\Chin\AppData\Local\Temp\raptrpatch.exe C:\Users\Chin\AppData\Local\Temp\raptr_stub.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-02-14 09:21 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-02-2015 01 Ran by Chin at 2015-02-19 09:18:27 Running from C:\Users\Chin\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) ACP Application (Version: - Advanced Micro Devices, Inc.) Hidden Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) AMD Catalyst Install Manager (HKLM\...\{F2A7CE36-57BF-5C86-952D-90DBF3746D82}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AMD Quick Stream (HKLM\...\{E9EED4AE-682B-4501-9574-D09A21717599}_is1) (Version: - AppEx Networks) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software) Banished (HKLM-x32\...\Steam App 242920) (Version: - Shining Rock Software LLC) calibre 64bit (HKLM\...\{994A15FB-0FA3-455E-8161-A558C7BC4A73}) (Version: 2.19.0 - Kovid Goyal) Citavi 4 (HKLM-x32\...\{CC0A85B2-734A-45B3-B678-05F6A6499AC7}) (Version: - Swiss Academic Software) CPUID CPU-Z 1.71.1 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) Dropbox (HKU\S-1-5-21-2240681411-2449356942-1176590736-1000\...\Dropbox) (Version: 3.2.6 - Dropbox, Inc.) FileZilla Client (HKU\S-1-5-21-2240681411-2449356942-1176590736-1000\...\FileZilla Client) (Version: - Tim Kosse) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.111 - Google Inc.) Google Update Helper (x32 Version: - Google Inc.) Hidden Google Update Helper (x32 Version: - Google Inc.) Hidden IBM SPSS Statistics 19 (HKLM-x32\...\{06C43FAA-7226-41EF-A05E-9AE0AA849FFE}) (Version: 19.0.0 - SPSS Inc., an IBM Company) KeePass Password Safe 2.28 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.28 - Dominik Reichl) Kingdoms of Amalur: Reckoning™ (HKLM-x32\...\Steam App 102500) (Version: - Big Huge Games) Malwarebytes Anti-Malware Version (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: - Malwarebytes Corporation) Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Office Professional Plus 2013 - de-de (HKLM\...\ProPlusRetail - de-de) (Version: 15.0.4675.1003 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.4.0 - Mozilla) Mozilla Thunderbird 31.4.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 31.4.0 (x86 de)) (Version: 31.4.0 - Mozilla) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: - Qualcomm Atheros Communications) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.29 - Qualcomm Atheros) Raptr (HKLM-x32\...\Raptr) (Version: - ) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.21247 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.78.1218.2013 - Realtek) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Torchlight II (HKLM-x32\...\Steam App 200710) (Version: - Runic Games) VLC media player (HKLM\...\VLC media player) (Version: 2.2.0-rc2 - VideoLAN) Win32DiskImager version 0.9.5 (HKLM-x32\...\{D074CE74-912A-4AD3-A0BF-3937D9D01F17}_is1) (Version: 0.9.5 - ImageWriter Developers) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2240681411-2449356942-1176590736-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Chin\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2240681411-2449356942-1176590736-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2240681411-2449356942-1176590736-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2240681411-2449356942-1176590736-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2240681411-2449356942-1176590736-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2240681411-2449356942-1176590736-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2240681411-2449356942-1176590736-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2240681411-2449356942-1176590736-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2240681411-2449356942-1176590736-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2240681411-2449356942-1176590736-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ==================== Restore Points ========================= 23-01-2015 11:38:34 Windows Update 23-01-2015 11:41:30 Installed Adobe Reader XI - Deutsch. 23-01-2015 11:49:59 Gerätetreiber-Paketinstallation: Synaptics Mäuse und andere Zeigegeräte 23-01-2015 15:37:17 DirectX wurde installiert 23-01-2015 18:11:24 DirectX wurde installiert 23-01-2015 18:19:15 Windows Update 24-01-2015 08:46:37 Installed IBM SPSS Statistics 19. 26-01-2015 12:13:04 Windows-Sicherung 26-01-2015 12:41:33 Installed Citavi 4. 26-01-2015 15:22:12 Removed Java 8 Update 31 27-01-2015 11:58:47 Windows Update 27-01-2015 18:02:44 Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 27-01-2015 20:12:15 Windows-Sicherung 28-01-2015 07:35:20 Windows Update 01-02-2015 18:14:50 Windows Update 06-02-2015 20:42:15 Windows Update 11-02-2015 12:33:58 Windows Update 11-02-2015 12:42:09 Installed calibre 64bit 11-02-2015 12:58:12 Windows Update 12-02-2015 09:07:53 Windows Update 17-02-2015 12:41:59 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0577BA72-8BAE-4194-8E72-37128DB483B7} - System32\Tasks\{C9DF0A06-51CA-48EB-9D0E-3DB2A56AECE3} => pcalua.exe -a "D:\Neuer Laptop\CardReader_Realtek_6.3.9600.21247_W7x64_A\CardReader_Realtek_6.3.9600.21247_W7x64\setup.exe" -d "D:\Neuer Laptop\CardReader_Realtek_6.3.9600.21247_W7x64_A\CardReader_Realtek_6.3.9600.21247_W7x64" Task: {19C05130-C94D-4BB4-94AA-A700EC9C8400} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {21668CDD-FD3C-441F-B907-5B87B64FABAA} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2015-01-22] (AVAST Software) Task: {277B52B5-B2AB-42D6-8BC4-DEE249D5B38B} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {28CB880B-9ECC-4452-BFB4-AC0D16BD516E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-01-23] (Microsoft Corporation) Task: {49F19E37-76A7-4CCD-89FB-517AD9F21011} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {4A187840-4110-47EC-B87E-2F99258286DE} - System32\Tasks\{7CAC292B-36A1-444D-9D1D-6C95578AD387} => pcalua.exe -a "D:\Neuer Laptop\Bluetooth_Broadcom_6.5.1.5300_W7x64_A\ACER_BTW6.5.1.5300_WLAN_6.30.223.228_Win7_WHQL_20140411\Setup.exe" -d "D:\Neuer Laptop\Bluetooth_Broadcom_6.5.1.5300_W7x64_A\ACER_BTW6.5.1.5300_WLAN_6.30.223.228_Win7_WHQL_20140411" Task: {842E72FC-8B75-4A2B-BD6A-8C77B264C5A7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [2015-01-23] (Microsoft Corporation) Task: {9BEBFEC3-5E72-4748-AC15-0C29CE623A6F} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-11-04] (Microsoft Corporation) Task: {B14DCFC1-EF38-40B0-BEB9-C96577E0D24B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-22] (Google Inc.) Task: {B1D60314-0A07-40A6-99E4-23B5059CD246} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-01-22] (Google Inc.) Task: {B1F4080F-5531-4D78-89AD-B740023B9729} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2015-01-23 09:00 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-12-08 11:10 - 2014-12-08 11:10 - 00102176 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2014-02-25 22:11 - 2014-02-25 22:11 - 00086016 _____ () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\Modules\Map\MAP.dll 2015-01-22 14:11 - 2015-01-22 14:11 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll 2015-01-22 14:11 - 2015-01-22 14:11 - 05851328 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll 2015-02-19 07:53 - 2015-02-19 07:53 - 02911744 _____ () C:\Program Files\AVAST Software\Avast\defs\15021802\algo.dll 2015-01-22 14:11 - 2015-01-22 14:11 - 04495336 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll 2015-01-22 14:11 - 2015-01-22 14:11 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2015-02-12 08:50 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2015-02-12 08:50 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2015-02-12 08:50 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2015-02-12 08:50 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2015-02-12 08:50 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2015-02-01 12:17 - 2015-02-01 12:17 - 00039200 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll 2014-05-24 17:41 - 2014-05-24 17:41 - 00091648 _____ () C:\Program Files (x86)\FileZilla FTP Client\libgcc_s_sjlj-1.dll 2014-05-24 17:41 - 2014-05-24 17:41 - 00892416 _____ () C:\Program Files (x86)\FileZilla FTP Client\libstdc++-6.dll 2015-02-06 21:47 - 2015-02-04 10:02 - 01117512 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libglesv2.dll 2015-02-06 21:47 - 2015-02-04 10:02 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libegl.dll 2015-02-06 21:47 - 2015-02-04 10:02 - 09170760 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\pdf.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2240681411-2449356942-1176590736-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrator (S-1-5-21-2240681411-2449356942-1176590736-500 - Administrator - Disabled) Chin (S-1-5-21-2240681411-2449356942-1176590736-1000 - Administrator - Enabled) => C:\Users\Chin Gast (S-1-5-21-2240681411-2449356942-1176590736-501 - Limited - Disabled) ==================== Faulty Device Manager Devices ============= Name: Bluetooth USB Module Description: Bluetooth USB Module Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974} Manufacturer: Qualcomm Atheros Communications Service: BTHUSB Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (02/14/2015 09:23:43 AM) (Source: SideBySide) (EventID: 35) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "UccApi,processorArchitecture="AMD64",type="win32",version=""1". Fehler in Manifest- oder Richtliniendatei "UccApi,processorArchitecture="AMD64",type="win32",version=""2" in Zeile UccApi,processorArchitecture="AMD64",type="win32",version=""3. Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein. Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="". Definition: UccApi,processorArchitecture="x86",type="win32",version="". Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose. Error: (02/14/2015 09:23:08 AM) (Source: SideBySide) (EventID: 63) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3. Der Wert "" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error: (02/14/2015 09:22:27 AM) (Source: SideBySide) (EventID: 63) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3. Der Wert "" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error: (02/11/2015 10:03:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: owncloud.exe, Version:, Zeitstempel: 0x5492c052 Name des fehlerhaften Moduls: libowncloudsync.dll, Version:, Zeitstempel: 0x5492c037 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0007ab97 ID des fehlerhaften Prozesses: 0xbe0 Startzeit der fehlerhaften Anwendung: 0xowncloud.exe0 Pfad der fehlerhaften Anwendung: owncloud.exe1 Pfad des fehlerhaften Moduls: owncloud.exe2 Berichtskennung: owncloud.exe3 Error: (02/03/2015 08:29:49 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: svchost.exe_SysMain, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bc3c1 Name des fehlerhaften Moduls: sysmain.dll, Version: 6.1.7601.17514, Zeitstempel: 0x4ce7c9db Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000004f55 ID des fehlerhaften Prozesses: 0x198 Startzeit der fehlerhaften Anwendung: 0xsvchost.exe_SysMain0 Pfad der fehlerhaften Anwendung: svchost.exe_SysMain1 Pfad des fehlerhaften Moduls: svchost.exe_SysMain2 Berichtskennung: svchost.exe_SysMain3 Error: (01/29/2015 08:07:42 PM) (Source: SideBySide) (EventID: 35) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "UccApi,processorArchitecture="AMD64",type="win32",version=""1". Fehler in Manifest- oder Richtliniendatei "UccApi,processorArchitecture="AMD64",type="win32",version=""2" in Zeile UccApi,processorArchitecture="AMD64",type="win32",version=""3. Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein. Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="". Definition: UccApi,processorArchitecture="x86",type="win32",version="". Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose. Error: (01/29/2015 08:07:19 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3. Der Wert "" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error: (01/29/2015 08:06:51 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3. Der Wert "" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error: (01/27/2015 07:02:18 PM) (Source: SideBySide) (EventID: 35) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "UccApi,processorArchitecture="AMD64",type="win32",version=""1". Fehler in Manifest- oder Richtliniendatei "UccApi,processorArchitecture="AMD64",type="win32",version=""2" in Zeile UccApi,processorArchitecture="AMD64",type="win32",version=""3. Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein. Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="". Definition: UccApi,processorArchitecture="x86",type="win32",version="". Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose. Error: (01/27/2015 07:01:56 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3. Der Wert "" des "version"-Attributs im assemblyIdentity-Element ist ungültig. System errors: ============= Error: (02/19/2015 08:36:25 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/19/2015 08:36:25 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (02/19/2015 08:11:00 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} Error: (02/19/2015 08:05:00 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/19/2015 08:05:00 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (02/19/2015 08:03:43 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} Error: (02/19/2015 07:10:19 AM) (Source: Schannel) (EventID: 4114) (User: NT-AUTORITÄT) Description: Das vom Remoteserver erhaltene Zertifikat wurde von einer nicht vertrauenswürdigen Zertifizierungsstelle ausgestellt. Aus diesem Grund können keine der im Zertifikat enthalten Daten verifiziert werden. Fehler bei der SSL-Verbindungsanforderung. Die angehängten Daten enthalten das Serverzertifikat. Error: (02/19/2015 07:10:19 AM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 48. Der interne Fehlerstatus lautet: 552. Error: (02/19/2015 07:10:18 AM) (Source: Schannel) (EventID: 4114) (User: NT-AUTORITÄT) Description: Das vom Remoteserver erhaltene Zertifikat wurde von einer nicht vertrauenswürdigen Zertifizierungsstelle ausgestellt. Aus diesem Grund können keine der im Zertifikat enthalten Daten verifiziert werden. Fehler bei der SSL-Verbindungsanforderung. Die angehängten Daten enthalten das Serverzertifikat. Error: (02/19/2015 07:10:18 AM) (Source: Schannel) (EventID: 4120) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 48. Der interne Fehlerstatus lautet: 552. Microsoft Office Sessions: ========================= Error: (02/14/2015 09:23:43 AM) (Source: SideBySide) (EventID: 35) (User: ) Description: UccApi,processorArchitecture="AMD64",type="win32",version=""UccApi,processorArchitecture="x86",type="win32",version=""c:\program files\microsoft office 15\root\office15\lync.exe.Manifestc:\program files\microsoft office 15\root\office15\UccApi.DLL1 Error: (02/14/2015 09:23:08 AM) (Source: SideBySide) (EventID: 63) (User: ) Description: assemblyIdentityversion6.0.0.6u9b41C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dllC:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dll19 Error: (02/14/2015 09:22:27 AM) (Source: SideBySide) (EventID: 63) (User: ) Description: assemblyIdentityversion6.0.0.6u9b41C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack200.exeC:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack200.exe19 Error: (02/11/2015 10:03:55 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: owncloud.exe0.0.0.05492c052libowncloudsync.dll0.0.0.05492c037c00000050007ab97be001d0463c6a40060cH:\ownCloud-programm\owncloud.exeH:\ownCloud-programm\libowncloudsync.dll7cf255dd-b231-11e4-9492-f0761c341ab8 Error: (02/03/2015 08:29:49 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: svchost.exe_SysMain6.1.7600.163854a5bc3c1sysmain.dll6.1.7601.175144ce7c9dbc00000050000000000004f5519801d03f8f6c6cf007C:\Windows\System32\svchost.exec:\windows\system32\sysmain.dll04392488-abdb-11e4-8976-f0761c341ab8 Error: (01/29/2015 08:07:42 PM) (Source: SideBySide) (EventID: 35) (User: ) Description: UccApi,processorArchitecture="AMD64",type="win32",version=""UccApi,processorArchitecture="x86",type="win32",version=""c:\program files\microsoft office 15\root\office15\lync.exe.Manifestc:\program files\microsoft office 15\root\office15\UccApi.DLL1 Error: (01/29/2015 08:07:19 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: assemblyIdentityversion6.0.0.6u9b41C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dllC:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dll19 Error: (01/29/2015 08:06:51 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: assemblyIdentityversion6.0.0.6u9b41C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack200.exeC:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack200.exe19 Error: (01/27/2015 07:02:18 PM) (Source: SideBySide) (EventID: 35) (User: ) Description: UccApi,processorArchitecture="AMD64",type="win32",version=""UccApi,processorArchitecture="x86",type="win32",version=""c:\program files\microsoft office 15\root\office15\lync.exe.Manifestc:\program files\microsoft office 15\root\office15\UccApi.DLL1 Error: (01/27/2015 07:01:56 PM) (Source: SideBySide) (EventID: 63) (User: ) Description: assemblyIdentityversion6.0.0.6u9b41C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dllC:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dll19 ==================== Memory info =========================== Processor: AMD A10-7300 Radeon R6, 10 Compute Cores 4C+6G Percentage of memory in use: 39% Total physical RAM: 7118.36 MB Available physical RAM: 4341.77 MB Total Pagefile: 14234.91 MB Available Pagefile: 11006.27 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:262.84 GB) (Free:98.11 GB) NTFS Drive h: (Uni) (Fixed) (Total:101.26 GB) (Free:89.71 GB) NTFS Drive l: (Volume) (Fixed) (Total:101.56 GB) (Free:101.35 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: BAC8C0AD) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=262.8 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=101.3 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=101.6 GB) - (Type=OF Extended) ==================== End Of Log ============================ |
![]() | #4 |
![]() | ![]() Laptop über LAN an Router Internet bricht ab GMER Code:
ATTFilter GMER 2.1.19357 - hxxp://www.gmer.net Rootkit scan 2015-02-19 09:34:52 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\00000060 TOSHIBA_ rev.AM00 465,76GB Running: Gmer-19357.exe; Driver: C:\Users\Chin\AppData\Local\Temp\kwldqpog.sys ---- User code sections - GMER 2.1 ---- .text C:\Program Files\AVAST Software\Avast\avastui.exe[2772] C:\Windows\syswow64\kernel32.dll!SetUnhandledExceptionFilter 0000000075d88791 8 bytes [31, C0, C2, 04, 00, 90, 90, ...] .text C:\Program Files\AVAST Software\Avast\avastui.exe[2772] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000076221465 2 bytes [22, 76] .text C:\Program Files\AVAST Software\Avast\avastui.exe[2772] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000762214bb 2 bytes [22, 76] .text ... * 2 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe[2484] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69 0000000076221465 2 bytes [22, 76] .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe[2484] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155 00000000762214bb 2 bytes [22, 76] .text ... * 2 ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\acb57d00fd20 Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\acb57d00fd20 (not active ControlSet) ---- EOF - GMER 2.1 ---- Code:
ATTFilter OTL logfile created on: 19.02.2015 08:53:00 - Run 1 OTL by OldTimer - Version Folder = C:\Users\Chin\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17633) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 6,95 Gb Total Physical Memory | 4,77 Gb Available Physical Memory | 68,64% Memory free 13,90 Gb Paging File | 11,19 Gb Available in Paging File | 80,51% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 262,84 Gb Total Space | 98,21 Gb Free Space | 37,36% Space Free | Partition Type: NTFS Drive H: | 101,26 Gb Total Space | 89,71 Gb Free Space | 88,59% Space Free | Partition Type: NTFS Drive L: | 101,56 Gb Total Space | 101,35 Gb Free Space | 99,79% Space Free | Partition Type: NTFS Computer Name: CHIN-LP | User Name: Chin | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - [2015.02.19 08:52:42 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Chin\Downloads\otl.exe PRC - [2015.02.04 10:02:55 | 000,843,592 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe PRC - [2015.01.27 19:55:31 | 005,227,112 | ---- | M] (AVAST Software) -- C:\Programme\AVAST Software\Avast\avastui.exe PRC - [2015.01.22 14:11:36 | 000,050,344 | ---- | M] (AVAST Software) -- C:\Programme\AVAST Software\Avast\AvastSvc.exe PRC - [2014.12.19 08:48:18 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe PRC - [2014.06.27 11:52:26 | 002,088,408 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe PRC - [2014.06.24 10:42:12 | 004,101,576 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe PRC - [2014.06.24 10:41:42 | 001,738,168 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe PRC - [2014.04.25 14:12:20 | 000,171,928 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe ========== Modules (No Company Name) ========== MOD - [2015.02.04 10:02:51 | 009,170,760 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\pdf.dll MOD - [2015.02.04 10:02:47 | 001,117,512 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libglesv2.dll MOD - [2015.02.04 10:02:45 | 000,211,272 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libegl.dll MOD - [2015.02.01 12:17:28 | 000,039,200 | ---- | M] () -- C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll MOD - [2015.01.22 14:11:36 | 038,562,088 | ---- | M] () -- C:\Programme\AVAST Software\Avast\libcef.dll MOD - [2014.05.24 17:41:24 | 000,892,416 | ---- | M] () -- C:\Program Files (x86)\FileZilla FTP Client\libstdc++-6.dll MOD - [2014.05.24 17:41:24 | 000,091,648 | ---- | M] () -- C:\Program Files (x86)\FileZilla FTP Client\libgcc_s_sjlj-1.dll MOD - [2014.05.13 12:04:48 | 000,167,768 | ---- | M] () -- C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl MOD - [2014.05.13 12:04:46 | 000,109,400 | ---- | M] () -- C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl MOD - [2014.05.13 12:04:42 | 000,416,600 | ---- | M] () -- C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl ========== Services (SafeList) ========== SRV:64bit: - [2015.01.12 03:34:30 | 000,114,688 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService) SRV:64bit: - [2014.11.21 03:12:40 | 000,244,736 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility) SRV:64bit: - [2014.11.12 00:06:52 | 002,449,592 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe -- (ClickToRunSvc) SRV - [2015.01.23 23:33:44 | 000,834,752 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service) SRV - [2015.01.22 14:11:36 | 000,050,344 | ---- | M] (AVAST Software) [Auto | Running] -- C:\Programme\AVAST Software\Avast\AvastSvc.exe -- (avast! Antivirus) SRV - [2015.01.22 14:11:33 | 004,012,248 | ---- | M] (Avast Software) [On_Demand | Running] -- C:\Programme\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe -- (AvastVBoxSvc) SRV - [2015.01.09 22:45:26 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance) SRV - [2014.12.19 08:48:18 | 000,081,088 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2014.12.13 01:50:38 | 005,132,888 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programme\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE -- (osppsvc) SRV - [2014.04.11 23:08:08 | 000,103,608 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2014.03.20 23:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) SRV - [2014.02.25 22:17:38 | 000,319,104 | ---- | M] (Windows (R) Win 7 DDK provider) [Auto | Running] -- C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe -- (AtherosSvc) ========== Driver Services (SafeList) ========== DRV:64bit: - [2015.01.23 08:31:47 | 001,050,432 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswsnx.sys -- (aswSnx) DRV:64bit: - [2015.01.22 14:11:37 | 000,436,624 | ---- | M] (AVAST Software) [File_System | System | Running] -- C:\Windows\SysNative\drivers\aswSP.sys -- (aswSP) DRV:64bit: - [2015.01.22 14:11:37 | 000,267,632 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswVmm.sys -- (aswVmm) DRV:64bit: - [2015.01.22 14:11:37 | 000,116,728 | ---- | M] (AVAST Software) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswStm.sys -- (aswStm) DRV:64bit: - [2015.01.22 14:11:37 | 000,093,568 | ---- | M] (AVAST Software) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\aswRdr2.sys -- (aswRdr) DRV:64bit: - [2015.01.22 14:11:37 | 000,083,280 | ---- | M] (AVAST Software) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\aswMonFlt.sys -- (aswMonFlt) DRV:64bit: - [2015.01.22 14:11:37 | 000,065,776 | ---- | M] () [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\aswRvrt.sys -- (aswRvrt) DRV:64bit: - [2015.01.22 14:11:37 | 000,029,208 | ---- | M] () [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\aswHwid.sys -- (aswHwid) DRV:64bit: - [2014.11.21 03:41:36 | 000,294,600 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\amdacpksd.sys -- (amdacpksd) DRV:64bit: - [2014.11.21 03:40:00 | 018,959,360 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag) DRV:64bit: - [2014.11.21 03:08:54 | 000,589,312 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap) DRV:64bit: - [2014.10.28 14:24:52 | 000,229,056 | ---- | M] (AppEx Networks Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\appexDrv.sys -- (APXACC) DRV:64bit: - [2014.10.28 00:46:12 | 000,062,152 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdkmpfd.sys -- (amdkmpfd) DRV:64bit: - [2014.09.23 18:56:58 | 000,083,656 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_sata.sys -- (amd_sata) DRV:64bit: - [2014.09.23 18:56:58 | 000,043,720 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amd_xata.sys -- (amd_xata) DRV:64bit: - [2014.06.21 18:01:22 | 000,094,720 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService) DRV:64bit: - [2014.02.25 21:53:00 | 000,597,192 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btfilter.sys -- (BtFilter) DRV:64bit: - [2014.02.25 21:53:00 | 000,338,120 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_a2dp.sys -- (BTATH_A2DP) DRV:64bit: - [2014.02.25 21:53:00 | 000,179,432 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_hcrp.sys -- (BTATH_HCRP) DRV:64bit: - [2014.02.25 21:53:00 | 000,137,928 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_rcp.sys -- (BTATH_RCP) DRV:64bit: - [2014.02.25 21:53:00 | 000,116,424 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_avdt.sys -- (btath_avdt) DRV:64bit: - [2014.02.25 21:53:00 | 000,089,800 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_flt.sys -- (AthBTPort) DRV:64bit: - [2014.02.25 21:53:00 | 000,077,464 | ---- | M] (Qualcomm Atheros) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btath_lwflt.sys -- (BTATH_LWFLT) DRV:64bit: - [2014.02.25 21:53:00 | 000,035,016 | ---- | M] (Qualcomm Atheros) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\btath_bus.sys -- (BTATH_BUS) DRV:64bit: - [2014.02.21 00:49:14 | 004,044,800 | ---- | M] (Qualcomm Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr) DRV:64bit: - [2014.02.16 17:23:54 | 000,060,640 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\usbfilter.sys -- (usbfilter) DRV:64bit: - [2014.01.14 07:17:20 | 000,466,136 | R--- | M] (Realsil Semiconductor Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\RtsPer.sys -- (RTSPER) DRV:64bit: - [2013.12.18 04:34:38 | 000,888,536 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167) DRV:64bit: - [2013.10.02 03:22:20 | 000,056,832 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:64bit: - [2013.05.28 09:09:38 | 000,227,648 | ---- | M] (Advanced Micro Devices, INC.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\amdxhc.sys -- (amdxhc) DRV:64bit: - [2013.05.28 09:09:38 | 000,106,816 | ---- | M] (Advanced Micro Devices, INC.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\amdhub30.sys -- (amdhub30) DRV:64bit: - [2012.08.23 15:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport) DRV:64bit: - [2012.03.01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec) DRV:64bit: - [2011.03.11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:64bit: - [2011.03.11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:64bit: - [2010.11.20 14:33:35 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV - [2015.01.22 14:11:33 | 000,271,752 | ---- | M] (Avast Software) [Kernel | Auto | Running] -- C:\Programme\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys -- (VBoxAswDrv) DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A} IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.search.isUS: false FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:35.0 FF - user.js - File not found FF - HKLM\Software\MozillaPlugins\@microsoft.com/Lync,version=15.0: C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\wrc@avast.com: C:\Program Files\AVAST Software\Avast\WebRep\FF [2015.01.28 06:52:24 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 31.4.0\extensions\\Components: C:\Program Files (x86)\Mozilla Thunderbird\components FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 31.4.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Thunderbird\plugins [2015.01.22 16:57:12 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Chin\AppData\Roaming\mozilla\Extensions ========== Chrome ========== CHR - default_search_provider: () CHR - default_search_provider: search_url = CHR - default_search_provider: suggest_url = CHR - plugin: Widevine Content Decryption Module (Enabled) = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\WidevineCDM\\_platform_specific\win_x86\widevinecdmadapter.dll CHR - plugin: Shockwave Flash (Disabled) = C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\PepperFlash\pepflashplayer.dll CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\internal-nacl-plugin CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\pdf.dll CHR - plugin: Adobe Acrobat (Enabled) = C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll CHR - plugin: Microsoft Office 2013 (Enabled) = C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL CHR - plugin: Microsoft Office 2013 (Enabled) = C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.4_0\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn\\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.8.10_0\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\clhhggbfdinjmjhajaheehoeibfljjno\0.4.0_0\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkfhfaphfkopdgpbfkebjfcblcafcmpi\13.6_0\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme\4.2.1_0\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fepbnnnkkadjhjahcafoaglimekefifl\2.15.2_0\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.18_0\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\iooicodkiihhpojmmeghjclgihfjdjhj\\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nckgahadagoaajjgafhacjanaoiihapd\2015.120.1719.1_0\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohgndokldibnndfnjnagojmheejlengn\2015.1.27.2_0\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ompiailgknfdndiefoaoiligalphfdae\2.6.8_0\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc\6.3_0\ CHR - Extension: No name found = C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\ O1 HOSTS File: ([2009.06.10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:64bit: - BHO: (no name) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - No CLSID value found. O2:64bit: - BHO: (no name) - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - No CLSID value found. O2:64bit: - BHO: (no name) - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - No CLSID value found. O2:64bit: - BHO: (Office Document Cache Handler) - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Programme\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) O2:64bit: - BHO: (no name) - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - No CLSID value found. O2 - BHO: (no name) - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - No CLSID value found. O2 - BHO: (no name) - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - No CLSID value found. O4 - HKLM..\Run: [AvastUI.exe] C:\Program Files\AVAST Software\Avast\AvastUI.exe (AVAST Software) O4 - HKLM..\Run: [KeePass 2 PreLoad] C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe (Dominik Reichl) O4 - HKLM..\Run: [Raptr] C:\Program Files (x86)\Raptr\raptrstub.exe (Raptr, Inc) O4 - HKLM..\Run: [SDTray] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.) O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKCU..\Run: [AppEx Accelerator UI] C:\Program Files\AMD Quick Stream\AMDQuickStream.exe (AppEx Networks Corporation) O4 - HKCU..\Run: [ownCloud] H:\ownCloud-programm\owncloud.exe File not found O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\Run: BtvStack = "C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe" (Atheros Communications) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: SoftwareSASGeneration = 1 O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation) O8:64bit: - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation) O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE (Microsoft Corporation) O8 - Extra context menu item: Se&nd to OneNote - C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll (Microsoft Corporation) O9:64bit: - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation) O9:64bit: - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIE.dll (Microsoft Corporation) O9:64bit: - Extra Button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - Reg Error: Key error. File not found O9:64bit: - Extra 'Tools' menuitem : Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - Reg Error: Key error. File not found O9:64bit: - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9:64bit: - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office 15\root\office15\ONBttnIE.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office 15\root\office15\ONBttnIE.dll (Microsoft Corporation) O9 - Extra Button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll (Microsoft Corporation) O9 - Extra 'Tools' menuitem : OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Programme\Microsoft Office 15\root\office15\ONBttnIELinkedNotes.dll (Microsoft Corporation) O1364bit: - gopher Prefix: missing O13 - gopher Prefix: missing O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{558B2D36-464B-4563-A132-078D59DF9DC0}: DhcpNameServer = O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{7AD4139E-C256-49B9-8F93-856DF49D335A}: DhcpNameServer = O18:64bit: - Protocol\Handler\osf - No CLSID value found O18 - Protocol\Handler\osf {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Programme\Microsoft Office 15\root\office15\MSOSB.DLL (Microsoft Corporation) O18:64bit: - Protocol\Filter\video/mp4 {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Programme\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) O18:64bit: - Protocol\Filter\video/x-flv {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Programme\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) O18 - Protocol\Filter\video/mp4 {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) O18 - Protocol\Filter\video/x-flv {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation) O20 - Winlogon\Notify\SDWinLogon: DllName - (SDWinLogon.dll) - File not found O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{018f8c7e-a236-11e4-9cc9-806e6f6e6963}\Shell - "" = AutoRun O33 - MountPoints2\{018f8c7e-a236-11e4-9cc9-806e6f6e6963}\Shell\AutoRun\command - "" = D:\wubi.exe O34 - HKLM BootExecute: (autocheck autochk *) O35:64bit: - HKLM\..comfile [open] -- "%1" %* O35:64bit: - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %* O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2015.02.18 19:56:39 | 000,129,752 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys [2015.02.18 19:56:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware [2015.02.18 19:56:24 | 000,093,400 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbamchameleon.sys [2015.02.18 19:56:24 | 000,063,704 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mwac.sys [2015.02.18 19:56:24 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys [2015.02.18 19:56:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ Malwarebytes Anti-Malware [2015.02.18 19:56:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2015.02.17 12:30:28 | 000,000,000 | R--D | C] -- C:\Users\Chin\Dropbox [2015.02.17 12:29:16 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox [2015.02.17 12:26:50 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\Dropbox [2015.02.12 12:11:38 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client [2015.02.12 12:11:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\FileZilla FTP Client [2015.02.12 08:50:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 [2015.02.12 08:50:39 | 000,021,040 | ---- | C] (Safer Networking Limited) -- C:\Windows\SysNative\sdnclean64.exe [2015.02.12 08:50:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy [2015.02.12 08:50:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Spybot - Search & Destroy 2 [2015.02.11 22:03:59 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\CrashDumps [2015.02.11 12:51:00 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\calibre-cache [2015.02.11 12:43:27 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\calibre [2015.02.11 12:42:33 | 000,000,000 | ---D | C] -- C:\Program Files\Calibre2 [2015.02.11 12:42:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management [2015.02.08 14:54:09 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Bluetooth Folder [2015.02.07 19:46:12 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\vlc [2015.02.03 11:53:07 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Telekom [2015.02.01 18:17:33 | 000,000,000 | ---D | C] -- C:\Users\Chin\Desktop\franzstrich.de [2015.01.28 12:55:30 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\Diagnostics [2015.01.27 18:07:51 | 000,000,000 | ---D | C] -- C:\Users\Chin\owncloud [2015.01.27 18:02:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ownCloud [2015.01.27 00:32:02 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\FileZilla [2015.01.26 19:50:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Writer [2015.01.26 19:50:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ImageWriter [2015.01.26 14:54:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Gibraltar [2015.01.26 14:50:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun [2015.01.26 14:50:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle [2015.01.26 14:39:10 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Benutzerdefinierte Office-Vorlagen [2015.01.26 13:30:30 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\Swiss Academic Software [2015.01.26 13:10:25 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Zimmermann [2015.01.26 13:10:06 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Zeitschriften [2015.01.26 13:10:05 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Wohnung [2015.01.26 13:10:05 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Weihnachtsfeier Psychos 2011 [2015.01.26 13:10:05 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Wahlen [2015.01.26 13:10:05 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Wachstumsökonomie [2015.01.26 13:10:05 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\VPV-Versicherung [2015.01.26 13:10:04 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Vortrag Projektmanagement [2015.01.26 13:10:02 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Volition [2015.01.26 13:10:00 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Versicherung Schadensfall Hunde [2015.01.26 13:09:42 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Two Worlds Saves [2015.01.26 13:09:42 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Trainingsplan [2015.01.26 13:09:42 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Tattoo [2015.01.26 13:09:42 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Tagung Nürnberg [2015.01.26 13:09:42 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\StudIp [2015.01.26 13:09:41 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Square Enix [2015.01.26 13:09:41 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\SPSSInc [2015.01.26 13:09:28 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Software Download [2015.01.26 13:09:28 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Simpol [2015.01.26 13:09:01 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\self-html [2015.01.26 13:09:01 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Schadensfall Post [2015.01.26 13:09:01 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Runes of Magic [2015.01.26 13:09:00 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\route [2015.01.26 13:08:57 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\rom [2015.01.26 13:08:57 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Rentenversicherung [2015.01.26 13:08:56 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Pronto-Pizza [2015.01.26 13:08:56 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Praktikumsbericht [2015.01.26 13:08:55 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Praktikum Psychatrie [2015.01.26 13:08:55 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Praktikum [2015.01.26 13:08:53 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Praktikum BW [2015.01.26 13:08:53 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\postbank [2015.01.26 13:08:53 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\PersBackup [2015.01.26 13:08:51 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\pebl-exp.0.11 [2015.01.26 13:07:34 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Outlook-Dateien [2015.01.26 13:07:31 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\OpenOffice.org 3.3 (de) Installation Files [2015.01.26 13:07:30 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\OneNote-Notizbücher [2015.01.26 13:07:30 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\oma tele [2015.01.26 13:07:30 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Nexus Mod Manager [2015.01.26 13:07:17 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\My Digital Editions [2015.01.26 13:07:17 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Mietvertrag Lessingstr. 20 [2015.01.26 13:07:17 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Microsoft office Rechnung [2015.01.26 13:07:17 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\michael [2015.01.26 13:07:17 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Meine Datenquellen [2015.01.26 13:07:13 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Loge [2015.01.26 13:06:54 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\League of Legends [2015.01.26 13:06:54 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Kündigung McFit [2015.01.26 13:06:54 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Kündigung LaFamilia [2015.01.26 13:06:54 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Kindergeld [2015.01.26 13:06:54 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Karten [2015.01.26 13:06:54 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\kalender [2015.01.26 13:06:53 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Integrales Forum [2015.01.26 13:06:53 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\HUK [2015.01.26 13:06:53 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\HTML [2015.01.26 13:06:53 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\font [2015.01.26 13:06:53 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Fahrraddiebstahl Tabea [2015.01.26 13:05:44 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Exes [2015.01.26 13:05:30 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Evernote [2015.01.26 13:05:19 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Erasmus [2015.01.26 13:05:18 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\DVDVideoSoft [2015.01.26 13:05:13 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\DIE SIEDLER - DEdK [2015.01.26 13:05:13 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Deutschland Stipendium [2015.01.26 13:05:13 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\DayZ [2015.01.26 13:05:13 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Criterion Games [2015.01.26 13:05:12 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\cleverfit halle [2015.01.26 13:04:54 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\CCleaner [2015.01.26 13:02:04 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Calibre-Springer [2015.01.26 13:01:01 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Calibre-Bibliothek [2015.01.26 13:00:56 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Bund Überbleibsel [2015.01.26 13:00:56 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Bücherliste [2015.01.26 13:00:39 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Bücher [2015.01.26 13:00:39 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Briefe [2015.01.26 13:00:38 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\BlackBerry [2015.01.26 13:00:38 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\BKK [2015.01.26 13:00:37 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Bewerbungsunterlagen generell [2015.01.26 13:00:37 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Bewerbung Praktikum Bundeswehr Königsbrück [2015.01.26 13:00:37 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Bewerbung Master [2015.01.26 13:00:37 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Bewerbung Klinik Bernbrug [2015.01.26 13:00:37 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Beschäftigung Bib Brandbergweg [2015.01.26 13:00:37 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Befragung Offshore [2015.01.26 13:00:35 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Bayreuth [2015.01.26 13:00:35 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Banished [2015.01.26 13:00:34 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Bafög [2015.01.26 13:00:34 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Backups [2015.01.26 13:00:05 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Artikel [2015.01.26 13:00:05 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\ADAC [2015.01.26 12:56:30 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\Swiss Academic Software [2015.01.26 12:56:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Swiss Academic Software [2015.01.26 12:56:30 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\Citavi 4 [2015.01.26 12:43:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Citavi 4 [2015.01.26 12:42:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Citavi 4 [2015.01.26 12:40:32 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\Downloaded Installations [2015.01.24 09:19:18 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\EFSoftware [2015.01.24 09:14:04 | 000,000,000 | ---D | C] -- C:\Program Files\VideoLAN [2015.01.24 08:57:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Total Commander [2015.01.24 08:56:04 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\Adobe [2015.01.24 08:53:04 | 000,000,000 | ---D | C] -- C:\Users\Chin\.spss [2015.01.24 08:53:03 | 000,000,000 | ---D | C] -- C:\Users\Chin\Application Data [2015.01.24 08:53:00 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\javasharedresources [2015.01.24 08:49:42 | 000,000,000 | ---D | C] -- C:\ProgramData\SafeNet Sentinel [2015.01.24 08:49:16 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\IBM [2015.01.24 08:49:11 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Zero G Registry [2015.01.24 08:49:10 | 000,000,000 | -H-D | C] -- C:\Users\Chin\InstallAnywhere [2015.01.24 08:48:32 | 000,000,000 | ---D | C] -- C:\ProgramData\SPSS [2015.01.24 08:48:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics [2015.01.24 08:47:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\IBM [2015.01.24 08:47:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\IBM [2015.01.23 18:13:08 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\BigHugeEngine [2015.01.23 13:03:05 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\My Games [2015.01.23 11:41:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe [2015.01.23 11:41:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe [2015.01.23 11:29:41 | 000,000,000 | -HSD | C] -- C:\Users\Chin\AppData\Local\EmieUserList [2015.01.23 11:29:41 | 000,000,000 | -HSD | C] -- C:\Users\Chin\AppData\Local\EmieSiteList [2015.01.23 11:29:41 | 000,000,000 | -HSD | C] -- C:\Users\Chin\AppData\Local\EmieBrowserModeList [2015.01.23 11:10:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved [2015.01.23 11:10:00 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\library_dir [2015.01.23 11:08:26 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\Raptr [2015.01.23 11:08:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Raptr [2015.01.23 11:08:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Quick Stream [2015.01.23 11:08:09 | 000,000,000 | ---D | C] -- C:\Program Files\AMD Quick Stream [2015.01.23 09:31:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER [2015.01.23 09:09:50 | 000,000,000 | ---D | C] -- C:\ProgramData\regid.1991-06.com.microsoft [2015.01.23 09:09:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office [2015.01.23 09:03:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 [2015.01.23 09:00:09 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office 15 [2015.01.22 23:10:26 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe [2015.01.22 23:06:00 | 000,000,000 | ---D | C] -- C:\Windows\Migration [2015.01.22 22:16:55 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\KeePass [2015.01.22 22:08:10 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\KeePass [2015.01.22 22:00:01 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome-Apps [2015.01.22 21:36:30 | 000,000,000 | ---D | C] -- C:\Users\Chin\Documents\keepass save [2015.01.22 21:10:15 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\BMExplorer [2015.01.22 21:09:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Atheros [2015.01.22 21:09:41 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\Atheros [2015.01.22 21:09:27 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\Adobe [2015.01.22 20:29:55 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution [2015.01.22 20:27:41 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch [2015.01.22 20:26:11 | 000,000,000 | -HSD | C] -- C:\System Volume Information [2015.01.22 20:25:12 | 000,000,000 | ---D | C] -- C:\Windows\Panther [2015.01.22 18:24:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Atheros [2015.01.22 18:23:40 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\QCA_Bluetooth [2015.01.22 18:23:26 | 000,000,000 | ---D | C] -- C:\ProgramData\{EB5F5A55-037A-4E47-806B-2C8AA9374701} [2015.01.22 18:22:05 | 004,044,800 | ---- | C] (Qualcomm Atheros Communications, Inc.) -- C:\Windows\SysNative\drivers\athrx.sys [2015.01.22 18:22:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Qualcomm Atheros [2015.01.22 18:19:39 | 000,000,000 | ---D | C] -- C:\ProgramData\Qualcomm Atheros [2015.01.22 17:13:12 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\Thunderbird [2015.01.22 17:13:12 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\Thunderbird [2015.01.22 17:12:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla [2015.01.22 17:12:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service [2015.01.22 17:12:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Thunderbird [2015.01.22 17:10:08 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\SPReview [2015.01.22 17:09:44 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\EventProviders [2015.01.22 17:08:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam [2015.01.22 17:08:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam [2015.01.22 17:08:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Steam [2015.01.22 17:06:27 | 000,116,224 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysNative\fms.dll [2015.01.22 17:05:56 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\KeePass Password Safe 2 [2015.01.22 17:05:53 | 000,093,696 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\SysWow64\fms.dll [2015.01.22 17:04:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome [2015.01.22 16:57:03 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\Mozilla [2015.01.22 16:57:03 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\Mozilla [2015.01.22 15:08:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID [2015.01.22 15:08:55 | 000,000,000 | ---D | C] -- C:\Program Files\CPUID [2015.01.22 14:33:48 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT [2015.01.22 14:12:44 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\AVAST Software [2015.01.22 14:12:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\vbox [2015.01.22 14:12:42 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\vbox [2015.01.22 14:12:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software [2015.01.22 14:11:55 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\Google [2015.01.22 14:11:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google [2015.01.22 14:11:41 | 001,050,432 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsnx.sys [2015.01.22 14:11:41 | 000,436,624 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys [2015.01.22 14:11:41 | 000,116,728 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswStm.sys [2015.01.22 14:11:41 | 000,093,568 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys [2015.01.22 14:11:41 | 000,083,280 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys [2015.01.22 14:11:40 | 000,364,512 | ---- | C] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe [2015.01.22 14:11:37 | 000,043,152 | ---- | C] (AVAST Software) -- C:\Windows\avastSS.scr [2015.01.22 14:11:16 | 000,000,000 | ---D | C] -- C:\Program Files\AVAST Software [2015.01.22 14:08:57 | 000,000,000 | ---D | C] -- C:\ProgramData\AVAST Software [2015.01.22 14:06:23 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\sda [2015.01.22 14:06:08 | 000,466,136 | R--- | C] (Realsil Semiconductor Corporation) -- C:\Windows\SysNative\drivers\RtsPer.sys [2015.01.22 14:01:50 | 000,888,536 | ---- | C] (Realtek ) -- C:\Windows\SysNative\drivers\Rt64win7.sys [2015.01.22 14:01:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek [2015.01.22 14:01:39 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information [2015.01.22 13:55:20 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE [2015.01.22 13:50:39 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\ATI [2015.01.22 13:50:39 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\ATI [2015.01.22 13:50:39 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI [2015.01.22 13:50:28 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\AppEx Networks [2015.01.22 13:48:51 | 000,229,056 | ---- | C] (AppEx Networks Corporation) -- C:\Windows\SysNative\drivers\appexDrv.sys [2015.01.22 13:48:51 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\Programs [2015.01.22 13:48:50 | 000,000,000 | ---D | C] -- C:\ProgramData\AMD [2015.01.22 13:48:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD AVT [2015.01.22 13:48:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ATI Technologies [2015.01.22 13:48:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center [2015.01.22 13:46:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies [2015.01.22 13:46:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD [2015.01.22 13:44:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET [2015.01.22 13:43:19 | 000,000,000 | -HSD | C] -- C:\Windows\Installer [2015.01.22 13:43:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache [2015.01.22 13:42:57 | 000,000,000 | ---D | C] -- C:\Program Files\AMD [2015.01.22 13:41:56 | 000,000,000 | ---D | C] -- C:\AMD [2015.01.22 13:37:25 | 000,000,000 | R--D | C] -- C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [2015.01.22 13:37:25 | 000,000,000 | R--D | C] -- C:\Users\Chin\Searches [2015.01.22 13:37:25 | 000,000,000 | R--D | C] -- C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [2015.01.22 13:37:12 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\Identities [2015.01.22 13:37:09 | 000,000,000 | R--D | C] -- C:\Users\Chin\Contacts [2015.01.22 13:37:07 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\VirtualStore [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\Vorlagen [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\AppData\Local\Verlauf [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\AppData\Local\Temporary Internet Files [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\Startmenü [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\SendTo [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\Recent [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\Netzwerkumgebung [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\Lokale Einstellungen [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\Documents\Eigene Videos [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\Documents\Eigene Musik [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\Eigene Dateien [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\Documents\Eigene Bilder [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\Druckumgebung [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\Cookies [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\AppData\Local\Anwendungsdaten [2015.01.22 13:36:56 | 000,000,000 | -HSD | C] -- C:\Users\Chin\Anwendungsdaten [2015.01.22 13:36:55 | 000,000,000 | --SD | C] -- C:\Users\Chin\AppData\Roaming\Microsoft [2015.01.22 13:36:55 | 000,000,000 | R--D | C] -- C:\Users\Chin\Videos [2015.01.22 13:36:55 | 000,000,000 | R--D | C] -- C:\Users\Chin\Saved Games [2015.01.22 13:36:55 | 000,000,000 | R--D | C] -- C:\Users\Chin\Pictures [2015.01.22 13:36:55 | 000,000,000 | R--D | C] -- C:\Users\Chin\Music [2015.01.22 13:36:55 | 000,000,000 | R--D | C] -- C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [2015.01.22 13:36:55 | 000,000,000 | R--D | C] -- C:\Users\Chin\Links [2015.01.22 13:36:55 | 000,000,000 | R--D | C] -- C:\Users\Chin\Favorites [2015.01.22 13:36:55 | 000,000,000 | R--D | C] -- C:\Users\Chin\Downloads [2015.01.22 13:36:55 | 000,000,000 | R--D | C] -- C:\Users\Chin\Documents [2015.01.22 13:36:55 | 000,000,000 | R--D | C] -- C:\Users\Chin\Desktop [2015.01.22 13:36:55 | 000,000,000 | R--D | C] -- C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [2015.01.22 13:36:55 | 000,000,000 | -H-D | C] -- C:\Users\Chin\AppData [2015.01.22 13:36:55 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\Temp [2015.01.22 13:36:55 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Local\Microsoft [2015.01.22 13:36:55 | 000,000,000 | ---D | C] -- C:\Users\Chin\AppData\Roaming\Media Center Programs [2015.01.22 13:36:46 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen [2015.01.22 13:36:46 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü [2015.01.22 13:36:46 | 000,000,000 | -HSD | C] -- C:\Recovery [2015.01.22 13:36:46 | 000,000,000 | -HSD | C] -- C:\Programme [2015.01.22 13:36:46 | 000,000,000 | -HSD | C] -- C:\Program Files\Gemeinsame Dateien [2015.01.22 13:36:46 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten [2015.01.22 13:36:46 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos [2015.01.22 13:36:46 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik [2015.01.22 13:36:46 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder [2015.01.22 13:36:46 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen [2015.01.22 13:36:46 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente [2015.01.22 13:36:46 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten ========== Files - Modified Within 30 Days ========== [2015.02.19 08:43:33 | 000,015,472 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2015.02.19 08:43:33 | 000,015,472 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2015.02.19 08:36:19 | 000,001,106 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2015.02.19 08:35:45 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2015.02.19 08:35:42 | 1303,138,303 | -HS- | M] () -- C:\hiberfil.sys [2015.02.19 08:11:14 | 000,065,536 | ---- | M] () -- C:\Windows\SysNative\spu_storage.bin [2015.02.19 07:58:05 | 001,619,284 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2015.02.19 07:58:05 | 000,699,342 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat [2015.02.19 07:58:05 | 000,654,140 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2015.02.19 07:58:05 | 000,149,450 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat [2015.02.19 07:58:05 | 000,122,012 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2015.02.19 07:29:04 | 000,001,110 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2015.02.18 19:57:04 | 000,129,752 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys [2015.02.12 14:37:21 | 000,167,520 | ---- | M] () -- C:\Users\Chin\Desktop\JRSM Open-2014-McMurtry-.pdf [2015.02.11 13:17:23 | 000,437,584 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2015.02.03 19:04:22 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf [2015.01.28 13:26:41 | 000,000,600 | ---- | M] () -- C:\Users\Chin\AppData\Local\PUTTY.RND [2015.01.24 08:46:54 | 000,001,025 | ---- | M] () -- C:\Windows\SysWow64\sysprs7.tgz [2015.01.24 08:46:54 | 000,001,025 | ---- | M] () -- C:\Windows\SysWow64\sysprs7.dll [2015.01.24 08:46:54 | 000,000,219 | ---- | M] () -- C:\Windows\SysWow64\lsprst7.tgz [2015.01.24 08:46:54 | 000,000,205 | ---- | M] () -- C:\Windows\SysWow64\lsprst7.dll [2015.01.24 08:46:54 | 000,000,016 | -H-- | M] () -- C:\Windows\SysWow64\servdat.slm [2015.01.23 18:21:36 | 001,593,564 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2015.01.23 08:31:47 | 001,050,432 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswsnx.sys [2015.01.22 20:32:12 | 000,056,735 | ---- | M] () -- C:\Windows\SysWow64\license.rtf [2015.01.22 20:32:12 | 000,056,735 | ---- | M] () -- C:\Windows\SysNative\license.rtf [2015.01.22 19:56:29 | 000,016,284 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf [2015.01.22 19:56:26 | 000,016,284 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf [2015.01.22 18:25:35 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_btath_hcrp_01009.Wdf [2015.01.22 18:16:49 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf [2015.01.22 14:11:37 | 000,436,624 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswSP.sys [2015.01.22 14:11:37 | 000,364,512 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\aswBoot.exe [2015.01.22 14:11:37 | 000,267,632 | ---- | M] () -- C:\Windows\SysNative\drivers\aswVmm.sys [2015.01.22 14:11:37 | 000,116,728 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswStm.sys [2015.01.22 14:11:37 | 000,093,568 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswRdr2.sys [2015.01.22 14:11:37 | 000,083,280 | ---- | M] (AVAST Software) -- C:\Windows\SysNative\drivers\aswMonFlt.sys [2015.01.22 14:11:37 | 000,065,776 | ---- | M] () -- C:\Windows\SysNative\drivers\aswRvrt.sys [2015.01.22 14:11:37 | 000,043,152 | ---- | M] (AVAST Software) -- C:\Windows\avastSS.scr [2015.01.22 14:11:37 | 000,029,208 | ---- | M] () -- C:\Windows\SysNative\drivers\aswHwid.sys [2015.01.22 13:49:57 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin ========== Files Created - No Company Name ========== [2015.02.12 14:37:20 | 000,167,520 | ---- | C] () -- C:\Users\Chin\Desktop\JRSM Open-2014-McMurtry-.pdf [2015.02.12 08:50:47 | 000,001,395 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk [2015.02.03 19:04:22 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf [2015.01.27 18:03:29 | 000,000,547 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ownCloud.lnk [2015.01.26 23:07:27 | 000,000,600 | ---- | C] () -- C:\Users\Chin\AppData\Local\PUTTY.RND [2015.01.26 13:10:02 | 000,408,046 | ---- | C] () -- C:\Users\Chin\Documents\V-Kg5-Einkuenfte.pdf [2015.01.26 13:10:01 | 041,307,085 | R--- | C] () -- C:\Users\Chin\Documents\VirtualCD + Keyg.rar [2015.01.26 13:10:01 | 000,357,459 | ---- | C] () -- C:\Users\Chin\Documents\V-Kg1-Antrag.pdf [2015.01.26 13:10:01 | 000,028,260 | ---- | C] () -- C:\Users\Chin\Documents\Versicherungsbestätigung.pdf [2015.01.26 13:10:00 | 000,040,893 | ---- | C] () -- C:\Users\Chin\Documents\Unbenannt.wma [2015.01.26 13:09:43 | 1028,653,056 | ---- | C] () -- C:\Users\Chin\Documents\ubuntu-14.04.1-desktop-amd64.iso [2015.01.26 13:09:42 | 000,063,567 | ---- | C] () -- C:\Users\Chin\Documents\studip.ics [2015.01.26 13:08:57 | 000,195,738 | ---- | C] () -- C:\Users\Chin\Documents\retour best secret.pdf [2015.01.26 13:08:53 | 001,335,612 | ---- | C] () -- C:\Users\Chin\Documents\perso.odg [2015.01.26 13:08:53 | 000,256,510 | ---- | C] () -- C:\Users\Chin\Documents\Perso.pdf [2015.01.26 13:08:53 | 000,063,691 | ---- | C] () -- C:\Users\Chin\Documents\Postbank Überweisung Katleen Müller.pdf [2015.01.26 13:08:50 | 005,303,303 | ---- | C] () -- C:\Users\Chin\Documents\papa kindergeld.odg [2015.01.26 13:08:50 | 002,332,652 | ---- | C] () -- C:\Users\Chin\Documents\papa kindergeld.pdf [2015.01.26 13:07:30 | 000,164,508 | ---- | C] () -- C:\Users\Chin\Documents\Notenspiegel 051013.pdf [2015.01.26 13:07:17 | 000,117,623 | ---- | C] () -- C:\Users\Chin\Documents\Modulschein Franz Strich.pdf [2015.01.26 13:07:13 | 000,072,837 | ---- | C] () -- C:\Users\Chin\Documents\Lebenslauf 1.0 ohne Bild 072612.pdf [2015.01.26 13:06:54 | 000,011,956 | ---- | C] () -- C:\Users\Chin\Documents\Kündigung Wohnung.odt [2015.01.26 13:06:53 | 009,123,877 | ---- | C] () -- C:\Users\Chin\Documents\Fit ohne Geräte_ Trainieren mit dem eigenen Körpergewicht - Clark, Joshua.epub [2015.01.26 13:06:53 | 000,055,445 | ---- | C] () -- C:\Users\Chin\Documents\Imma WiSe 20142015_neu.pdf [2015.01.26 13:06:53 | 000,055,439 | ---- | C] () -- C:\Users\Chin\Documents\Imma WiSe 20142015.pdf [2015.01.26 13:06:53 | 000,055,438 | ---- | C] () -- C:\Users\Chin\Documents\Imma SoSe 2014 (2).pdf [2015.01.26 13:06:53 | 000,042,933 | ---- | C] () -- C:\Users\Chin\Documents\Imma WiSe 20122013.pdf [2015.01.26 13:06:53 | 000,042,932 | ---- | C] () -- C:\Users\Chin\Documents\Imma WiSe 20122013 (2).pdf [2015.01.26 13:06:53 | 000,042,816 | ---- | C] () -- C:\Users\Chin\Documents\Imma WiSe 20132014_Master.pdf [2015.01.26 13:06:53 | 000,042,748 | ---- | C] () -- C:\Users\Chin\Documents\Imma WiSe 20132014.pdf [2015.01.26 13:06:53 | 000,042,743 | ---- | C] () -- C:\Users\Chin\Documents\Imma SoSe 2014.pdf [2015.01.26 13:06:53 | 000,042,743 | ---- | C] () -- C:\Users\Chin\Documents\Imma SoSe 2013_02.pdf [2015.01.26 13:06:53 | 000,042,743 | ---- | C] () -- C:\Users\Chin\Documents\Imma SoSe 2013.pdf [2015.01.26 13:06:53 | 000,042,696 | ---- | C] () -- C:\Users\Chin\Documents\Imma SoSe 02062012.pdf [2015.01.26 13:06:53 | 000,042,692 | ---- | C] () -- C:\Users\Chin\Documents\Imma WiSe 20112012.pdf [2015.01.26 13:06:53 | 000,035,588 | ---- | C] () -- C:\Users\Chin\Documents\Fahrplan 7 Kröllwitz - Fiete-Schulz-Straße.pdf [2015.01.26 13:06:52 | 000,021,932 | ---- | C] () -- C:\Users\Chin\Documents\Fahrplan 5 Steintor - Kröllwitz.pdf [2015.01.26 13:05:19 | 993,792,096 | ---- | C] () -- C:\Users\Chin\Documents\EsPeEsEs 21.zip [2015.01.26 13:05:19 | 000,970,871 | ---- | C] () -- C:\Users\Chin\Documents\Einkünfte.pdf [2015.01.26 13:05:12 | 000,000,143 | ---- | C] () -- C:\Users\Chin\Documents\Click Here to Pre-Order Red Alert 3.url [2015.01.26 13:00:37 | 000,275,447 | ---- | C] () -- C:\Users\Chin\Documents\BA-Zeugnis.pdf [2015.01.26 13:00:37 | 000,081,045 | ---- | C] () -- C:\Users\Chin\Documents\best secret Rechnung 201011.pdf [2015.01.26 13:00:05 | 002,583,170 | ---- | C] () -- C:\Users\Chin\Documents\20140501_084147.jpg [2015.01.26 13:00:05 | 001,567,313 | ---- | C] () -- C:\Users\Chin\Documents\20140501_084116.jpg [2015.01.26 13:00:05 | 000,087,749 | ---- | C] () -- C:\Users\Chin\Documents\Amazon.de - Rücksendezentrum.pdf [2015.01.26 13:00:05 | 000,015,504 | ---- | C] () -- C:\Users\Chin\Documents\anschreiben 901011.odt [2015.01.26 13:00:05 | 000,012,606 | ---- | C] () -- C:\Users\Chin\Documents\101814.kdbx [2015.01.26 13:00:05 | 000,012,014 | ---- | C] () -- C:\Users\Chin\Documents\092014.kdbx [2015.01.24 08:46:54 | 000,001,025 | ---- | C] () -- C:\Windows\SysWow64\sysprs7.tgz [2015.01.24 08:46:54 | 000,001,025 | ---- | C] () -- C:\Windows\SysWow64\sysprs7.dll [2015.01.24 08:46:54 | 000,000,219 | ---- | C] () -- C:\Windows\SysWow64\lsprst7.tgz [2015.01.24 08:46:54 | 000,000,205 | ---- | C] () -- C:\Windows\SysWow64\lsprst7.dll [2015.01.24 08:46:54 | 000,000,016 | -H-- | C] () -- C:\Windows\SysWow64\servdat.slm [2015.01.23 11:42:18 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk [2015.01.22 22:49:32 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf [2015.01.22 20:32:01 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk [2015.01.22 20:31:56 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk [2015.01.22 20:26:52 | 1303,138,303 | -HS- | C] () -- C:\hiberfil.sys [2015.01.22 19:56:29 | 000,016,284 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf [2015.01.22 19:56:26 | 000,016,284 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf [2015.01.22 18:25:35 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_btath_hcrp_01009.Wdf [2015.01.22 18:16:49 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf [2015.01.22 18:16:33 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf [2015.01.22 17:12:08 | 000,002,102 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk [2015.01.22 17:07:43 | 000,347,904 | ---- | C] () -- C:\Windows\SysNative\systemsf.ebd [2015.01.22 17:05:57 | 000,001,121 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk [2015.01.22 17:05:27 | 000,010,429 | ---- | C] () -- C:\Windows\SysNative\ScavengeSpace.xml [2015.01.22 17:05:01 | 000,105,559 | ---- | C] () -- C:\Windows\SysWow64\RacRules.xml [2015.01.22 17:05:01 | 000,105,559 | ---- | C] () -- C:\Windows\SysNative\RacRules.xml [2015.01.22 17:03:18 | 000,001,041 | ---- | C] () -- C:\Windows\SysWow64\tcpbidi.xml [2015.01.22 16:59:02 | 000,001,110 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job [2015.01.22 16:59:01 | 000,001,106 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job [2015.01.22 14:11:41 | 000,267,632 | ---- | C] () -- C:\Windows\SysNative\drivers\aswVmm.sys [2015.01.22 14:11:41 | 000,065,776 | ---- | C] () -- C:\Windows\SysNative\drivers\aswRvrt.sys [2015.01.22 14:11:41 | 000,029,208 | ---- | C] () -- C:\Windows\SysNative\drivers\aswHwid.sys [2015.01.22 13:49:57 | 000,065,536 | ---- | C] () -- C:\Windows\SysNative\spu_storage.bin [2015.01.22 13:49:57 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin [2015.01.22 13:45:52 | 001,593,564 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI [2015.01.22 13:37:27 | 000,001,413 | ---- | C] () -- C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk [2014.11.21 03:35:54 | 000,073,216 | ---- | C] () -- C:\Windows\SysWow64\hsaumd.dll [2014.11.21 03:35:42 | 001,947,136 | ---- | C] () -- C:\Windows\SysWow64\hsaservices.dll [2014.11.21 03:34:56 | 000,392,192 | ---- | C] () -- C:\Windows\SysWow64\newhsacore.dll [2014.11.21 03:33:08 | 000,995,342 | ---- | C] () -- C:\Windows\SysWow64\amdocl_as32.exe [2014.11.21 03:33:08 | 000,798,734 | ---- | C] () -- C:\Windows\SysWow64\amdocl_ld32.exe [2014.11.21 03:16:24 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat [2014.11.21 03:16:24 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat [2014.11.20 21:35:00 | 000,038,912 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll ========== ZeroAccess Check ========== [2009.07.14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 "" = C:\Windows\SysNative\shell32.dll -- [2014.06.25 03:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2014.06.25 02:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] ========== LOP Check ========== [2015.01.22 14:12:44 | 000,000,000 | ---D | M] -- C:\Users\Chin\AppData\Roaming\AVAST Software [2015.02.11 12:59:06 | 000,000,000 | ---D | M] -- C:\Users\Chin\AppData\Roaming\calibre [2015.02.19 07:11:38 | 000,000,000 | ---D | M] -- C:\Users\Chin\AppData\Roaming\Dropbox [2015.01.24 09:19:18 | 000,000,000 | ---D | M] -- C:\Users\Chin\AppData\Roaming\EFSoftware [2015.02.12 17:35:11 | 000,000,000 | ---D | M] -- C:\Users\Chin\AppData\Roaming\FileZilla [2015.02.18 19:54:28 | 000,000,000 | ---D | M] -- C:\Users\Chin\AppData\Roaming\KeePass [2015.01.23 11:10:00 | 000,000,000 | ---D | M] -- C:\Users\Chin\AppData\Roaming\library_dir [2015.02.19 08:05:11 | 000,000,000 | ---D | M] -- C:\Users\Chin\AppData\Roaming\Raptr [2015.02.09 17:47:31 | 000,000,000 | ---D | M] -- C:\Users\Chin\AppData\Roaming\Swiss Academic Software [2015.01.22 17:13:12 | 000,000,000 | ---D | M] -- C:\Users\Chin\AppData\Roaming\Thunderbird ========== Purity Check ========== < End of report > Code:
ATTFilter OTL Extras logfile created on: 19.02.2015 08:53:00 - Run 1 OTL by OldTimer - Version Folder = C:\Users\Chin\Downloads 64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.17633) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 6,95 Gb Total Physical Memory | 4,77 Gb Available Physical Memory | 68,64% Memory free 13,90 Gb Paging File | 11,19 Gb Available in Paging File | 80,51% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 262,84 Gb Total Space | 98,21 Gb Free Space | 37,36% Space Free | Partition Type: NTFS Drive H: | 101,26 Gb Total Space | 89,71 Gb Free Space | 88,59% Space Free | Partition Type: NTFS Drive L: | 101,56 Gb Total Space | 101,35 Gb Free Space | 99,79% Space Free | Partition Type: NTFS Computer Name: CHIN-LP | User Name: Chin | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) .html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = ChromeHTML] -- Reg Error: Key error. File not found ========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) htmlfile [print] -- "%systemroot%\system32\rundll32.exe" "%systemroot%\system32\mshtml.dll",PrintHTML "%1" http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" (VideoLAN) Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" (VideoLAN) Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation) CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error. ========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "DisableNotifications" = 0 "EnableFirewall" = 1 ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot - Search & Destroy tray access -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.) "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.) ========== Vista Active Open Ports Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{12709624-FE90-4E40-AA0B-2388C9312EE0}" = lport=6004 | protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\outlook.exe | "{2816A60A-799E-4402-936F-DD3F99953C8B}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | ========== Vista Active Application Exception List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules] "{04053C63-9C9A-40E4-B73D-8F003F33C446}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\torchlight ii\modlauncher.exe | "{05BED579-482F-4A26-A712-087EDEFF5E8C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\koareckoning\reckoning.exe | "{06E7B0F0-52FD-469D-8FFD-CA889C5C0701}" = protocol=6 | dir=in | app=c:\program files\microsoft office 15\root\office15\lync.exe | "{09A8921D-765C-45A8-AE57-1FFB48D66307}" = protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\lync.exe | "{0A68D474-386E-482A-8D7C-39D7011B7D2C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\torchlight ii\modlauncher.exe | "{0B58FFC7-79C2-41C4-8223-9765F0E47CA3}" = protocol=17 | dir=in | app=c:\users\chin\appdata\roaming\dropbox\bin\dropbox.exe | "{5C9BBBE6-BE37-4BF0-9B13-E2DDC62E3D3A}" = protocol=17 | dir=in | app=c:\program files (x86)\raptr\raptr_im.exe | "{636EFAB3-5803-4B39-B4FE-22DD60C87F60}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\banished\application-steam-x64.exe | "{66409F19-931E-4383-8E64-2BEED35FD0A8}" = protocol=17 | dir=in | app=c:\program files\avast software\avast\ng\vbox\aswfe.exe | "{6B6771DC-D428-4361-A539-AED9CCDD3439}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{7C5A87D8-1AB6-4BA0-A5E9-F21634625C3A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\koareckoning\reckoning.exe | "{7F753CF3-83EE-44A2-BF82-6336AAB91F86}" = protocol=17 | dir=in | app=c:\program files\avast software\avast\ng\vbox\aswfe.exe | "{8484278E-31E6-451E-92DA-8541108CD5C5}" = protocol=6 | dir=in | app=c:\program files\avast software\avast\ng\vbox\aswfe.exe | "{96CCDC50-580B-4F9F-80A9-503437C4D7F3}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\banished\application-steam-x64.exe | "{BC3A8499-B9F3-401F-B31A-A0C8B494C598}" = protocol=6 | dir=in | app=c:\users\chin\appdata\roaming\dropbox\bin\dropbox.exe | "{C25DF78F-3F95-42A7-9A61-AE83FF503208}" = protocol=6 | dir=in | app=c:\program files\microsoft office 15\root\office15\ucmapi.exe | "{D257544E-E7DE-40FF-BE2B-EB12F8A862E7}" = protocol=17 | dir=in | app=c:\program files\microsoft office 15\root\office15\ucmapi.exe | "{D2E27B6B-1A24-4638-B3C0-419FDB44E4ED}" = protocol=6 | dir=in | app=c:\program files\avast software\avast\ng\vbox\aswfe.exe | "{D35BCB63-8FB7-40F8-A204-F5E1F033FBF7}" = protocol=6 | dir=in | app=c:\program files (x86)\raptr\raptr_im.exe | "{D76F3D0E-458F-491B-86C0-4E3877C9FD9C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe | "{DBD767B3-A10D-49D5-B7FD-25F9479A0E3C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | "{EBD0B0E5-1C68-4CAC-979D-60AAF5EB2626}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\bin\steamwebhelper.exe | "{F399F7FD-B73D-48D9-A722-BD99D821E1DA}" = protocol=6 | dir=in | app=c:\program files (x86)\raptr\raptr.exe | "{F76BEC88-0BD7-4AFE-A1F8-AFA5277F2E19}" = protocol=17 | dir=in | app=c:\program files (x86)\raptr\raptr.exe | "TCP Query User{1D1138C7-F3E3-43CB-8D74-D3B9C161C17B}C:\program files (x86)\ibm\spss\statistics\19\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ibm\spss\statistics\19\jre\bin\javaw.exe | "TCP Query User{3F0FD984-32CA-414D-8701-168C15038B3B}C:\program files (x86)\ibm\spss\statistics\19\stats.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ibm\spss\statistics\19\stats.exe | "TCP Query User{4A54B8C3-D910-476D-8898-CFBA9444F99D}C:\users\chin\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=6 | dir=in | app=c:\users\chin\appdata\roaming\dropbox\bin\dropbox.exe | "TCP Query User{655FBA66-F425-463E-AB6C-2B4C9B7CBDB3}C:\program files (x86)\ibm\spss\statistics\19\stats.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ibm\spss\statistics\19\stats.exe | "TCP Query User{84F83C38-5D51-4ACA-84E8-1566624420B8}C:\program files (x86)\ibm\spss\statistics\19\jre\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\ibm\spss\statistics\19\jre\bin\javaw.exe | "TCP Query User{906F101D-EAE5-44AC-91C3-4F49907FE2BB}C:\program files (x86)\total commander\totalcmd.exe" = protocol=6 | dir=in | app=c:\program files (x86)\total commander\totalcmd.exe | "UDP Query User{4D5F4DED-11B5-4745-B58C-1D1A393B9B5F}C:\program files (x86)\ibm\spss\statistics\19\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ibm\spss\statistics\19\jre\bin\javaw.exe | "UDP Query User{58B6EC9B-E915-4BFE-B924-D874588C0B64}C:\program files (x86)\ibm\spss\statistics\19\stats.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ibm\spss\statistics\19\stats.exe | "UDP Query User{6869BAE7-9887-4A3E-8915-5D52599CAD9A}C:\program files (x86)\ibm\spss\statistics\19\jre\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ibm\spss\statistics\19\jre\bin\javaw.exe | "UDP Query User{894CFEB3-5509-4E98-9952-98F3CBB1A8BC}C:\users\chin\appdata\roaming\dropbox\bin\dropbox.exe" = protocol=17 | dir=in | app=c:\users\chin\appdata\roaming\dropbox\bin\dropbox.exe | "UDP Query User{89BB6768-155B-42A5-BFC0-8C24441ABE87}C:\program files (x86)\ibm\spss\statistics\19\stats.exe" = protocol=17 | dir=in | app=c:\program files (x86)\ibm\spss\statistics\19\stats.exe | "UDP Query User{E46A867C-F7D5-4DF4-841C-406E28C1A7C9}C:\program files (x86)\total commander\totalcmd.exe" = protocol=17 | dir=in | app=c:\program files (x86)\total commander\totalcmd.exe | ========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{1DB0C90B-2A9F-3A1E-B1DF-616C5A2A1417}" = Microsoft .NET Framework 4.5.2 (DEU) "{26784146-6E05-3FF9-9335-786C7C0FB5BE}" = Microsoft .NET Framework 4.5.2 "{2C637DB1-3E0A-4089-8366-C6C0B01E5C2B}" = AMD Steady Video Plug-In "{426582A8-202F-D13C-8BD5-F00551BAFC93}" = AMD Wireless Display v3.0 "{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 "{8F2415FA-72F2-F029-0450-4EB2FAE484C5}" = AMD Accelerated Video Transcoding "{90150000-008F-0000-1000-0000000FF1CE}" = Office 15 Click-to-Run Licensing Component "{929FBD26-9020-399B-9A7A-751D61F0B942}" = Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031" = Microsoft .NET Framework 4.5.2 (Deutsch) "{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.2 "{994A15FB-0FA3-455E-8161-A558C7BC4A73}" = calibre 64bit "{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 "{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}" = Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 "{A84A4FB1-D703-48DB-89E0-68B6499D2801}" = Qualcomm Atheros Bluetooth Suite (64) "{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 "{D5A2E1F8-66E3-FBB5-7F83-78D7EFE0E347}" = ACP Application "{DBAFD1B4-DDC5-DD01-D1C4-E7AEB5139097}" = AMD Fuel "{E9EED4AE-682B-4501-9574-D09A21717599}_is1" = AMD Quick Stream "{F2A7CE36-57BF-5C86-952D-90DBF3746D82}" = AMD Catalyst Install Manager "{F6BF49D7-479E-23FE-A8A9-63D193D05697}" = AMD Drag and Drop Transcoding "{F7FE0989-5F4C-3499-B78F-A63E942D100B}" = ccc-utility64 "CPUID CPU-Z_is1" = CPUID CPU-Z 1.71.1 "ProPlusRetail - de-de" = Microsoft Office Professional Plus 2013 - de-de "VLC media player" = VLC media player [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{06C43FAA-7226-41EF-A05E-9AE0AA849FFE}" = IBM SPSS Statistics 19 "{0FE3F13F-8A37-46BA-F973-762F81E833C3}" = CCC Help French "{11087D24-567D-7D88-69C6-D7A08B5F4C47}" = Catalyst Control Center - Branding "{15134cb0-b767-4960-a911-f2d16ae54797}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 "{1543E140-FADF-9E99-D388-4435C2FBC55E}" = CCC Help Chinese Standard "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 "{28006915-2739-4EBE-B5E8-49B25D32EB33}" = Qualcomm Atheros WLAN and Bluetooth Client Installation Program "{2C9A2369-162D-7AD7-D50F-5F59CEC8A046}" = CCC Help Danish "{2D61415B-F99C-8161-F452-760B6E441428}" = CCC Help Hungarian "{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 "{339647D6-A277-974F-FF29-83CA6284559B}" = CCC Help German "{4BD8FB0D-9407-429D-C412-FAE0A318A8AE}" = CCC Help Polish "{4D594F78-0C6D-1442-61CC-94D735FEC05D}" = CCC Help English "{5958C669-28BF-D667-A004-E6FBF448027D}" = CCC Help Spanish "{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}" = Realtek Card Reader "{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}" = Google Update Helper "{637B1239-84B7-0B0F-2549-7020CA57C831}" = CCC Help Thai "{6AE0A655-9BB8-460E-1956-ED37E3B221FA}" = CCC Help Greek "{6B254D2F-6F6F-5455-DD3B-E71E5C1C0C9A}" = AMD Catalyst Control Center "{7481E13B-EC16-1B14-0E32-E88165CD4C57}" = Catalyst Control Center Graphics Previews Common "{7ABA4B54-3672-0548-C1CC-97405F767061}" = CCC Help Russian "{7f51bdb9-ee21-49ee-94d6-90afc321780e}" = Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 "{7FE73251-50FA-E864-67EB-19C4BC7AA1C9}" = CCC Help Portuguese "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{894CBED0-8225-D59B-5632-D01B14C6D520}" = CCC Help Norwegian "{8BD7C51C-0CC4-3E28-CFDC-F7D4C5583783}" = CCC Help Finnish "{8ECCC07B-83E3-3877-26DF-815CD2B30749}" = CCC Help Italian "{900FD4B9-9C27-D907-36E7-E9CCF170E2FC}" = Catalyst Control Center InstallProxy "{90150000-008C-0000-0000-0000000FF1CE}" = Office 15 Click-to-Run Extensibility Component "{90150000-008C-0407-0000-0000000FF1CE}" = Office 15 Click-to-Run Localization Component "{988949CE-DE9A-D187-A010-22B9085FB813}" = CCC Help Swedish "{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 "{A85092B2-8FB5-5A8C-B27A-69A3D78979D8}" = CCC Help Korean "{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper "{AC76BA86-0804-1033-1959-001802114130}" = Adobe Refresh Manager "{AC76BA86-7AD7-1031-7B44-AB0000000001}" = Adobe Reader XI (11.0.10) - Deutsch "{B1977E93-5FC0-0BA4-2D5A-D3E69870C7D4}" = CCC Help Chinese Traditional "{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1" = Spybot - Search & Destroy "{BBC9BF50-A35D-B0C2-9117-F3CA2F6BB64A}" = CCC Help Czech "{CC0A85B2-734A-45B3-B678-05F6A6499AC7}" = Citavi 4 "{D074CE74-912A-4AD3-A0BF-3937D9D01F17}_is1" = Win32DiskImager version 0.9.5 "{D0FD2FF9-1BE9-E729-3878-9A603B5F1529}" = Catalyst Control Center Localization All "{D94F2DE6-55B4-B211-A381-54089BC791A0}" = CCC Help Japanese "{EEFDBD75-0BD9-AC5F-8F61-903C6A19C0ED}" = CCC Help Dutch "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{FB415F81-DC5E-ED99-D2FE-3DC4D88BCA58}" = CCC Help Turkish "{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 "{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 "Avast" = Avast Free Antivirus "Google Chrome" = Google Chrome "KeePassPasswordSafe2_is1" = KeePass Password Safe 2.28 "Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware Version "Mozilla Thunderbird 31.4.0 (x86 de)" = Mozilla Thunderbird 31.4.0 (x86 de) "MozillaMaintenanceService" = Mozilla Maintenance Service "Raptr" = Raptr "Steam" = Steam "Steam App 102500" = Kingdoms of Amalur: Reckoning™ "Steam App 200710" = Torchlight II "Steam App 242920" = Banished ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Dropbox" = Dropbox "FileZilla Client" = FileZilla Client ========== Last 20 Event Log Errors ========== [ Application Events ] Error - 27.01.2015 14:01:56 | Computer Name = Chin-LP | Source = SideBySide | ID = 16842815 Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dll". Fehler in Manifest- oder Richtliniendatei "C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dll" in Zeile 19. Der Wert "" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error - 27.01.2015 14:02:18 | Computer Name = Chin-LP | Source = SideBySide | ID = 16842787 Description = Fehler beim Generieren des Aktivierungskontextes für "c:\program files\microsoft office 15\root\office15\lync.exe.Manifest". Fehler in Manifest- oder Richtliniendatei "c:\program files\microsoft office 15\root\office15\UccApi.DLL" in Zeile 1. Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein. Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="". Definition: UccApi,processorArchitecture="x86",type="win32",version="". Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose. Error - 29.01.2015 15:06:51 | Computer Name = Chin-LP | Source = SideBySide | ID = 16842815 Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack200.exe". Fehler in Manifest- oder Richtliniendatei "C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack200.exe" in Zeile 19. Der Wert "" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error - 29.01.2015 15:07:19 | Computer Name = Chin-LP | Source = SideBySide | ID = 16842815 Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dll". Fehler in Manifest- oder Richtliniendatei "C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dll" in Zeile 19. Der Wert "" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error - 29.01.2015 15:07:42 | Computer Name = Chin-LP | Source = SideBySide | ID = 16842787 Description = Fehler beim Generieren des Aktivierungskontextes für "c:\program files\microsoft office 15\root\office15\lync.exe.Manifest". Fehler in Manifest- oder Richtliniendatei "c:\program files\microsoft office 15\root\office15\UccApi.DLL" in Zeile 1. Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein. Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="". Definition: UccApi,processorArchitecture="x86",type="win32",version="". Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose. Error - 03.02.2015 15:29:49 | Computer Name = Chin-LP | Source = Application Error | ID = 1000 Description = Name der fehlerhaften Anwendung: svchost.exe_SysMain, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bc3c1 Name des fehlerhaften Moduls: sysmain.dll, Version: 6.1.7601.17514, Zeitstempel: 0x4ce7c9db Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000004f55 ID des fehlerhaften Prozesses: 0x198 Startzeit der fehlerhaften Anwendung: 0x01d03f8f6c6cf007 Pfad der fehlerhaften Anwendung: C:\Windows\System32\svchost.exe Pfad des fehlerhaften Moduls: c:\windows\system32\sysmain.dll Berichtskennung: 04392488-abdb-11e4-8976-f0761c341ab8 Error - 11.02.2015 17:03:55 | Computer Name = Chin-LP | Source = Application Error | ID = 1000 Description = Name der fehlerhaften Anwendung: owncloud.exe, Version:, Zeitstempel: 0x5492c052 Name des fehlerhaften Moduls: libowncloudsync.dll, Version:, Zeitstempel: 0x5492c037 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0007ab97 ID des fehlerhaften Prozesses: 0xbe0 Startzeit der fehlerhaften Anwendung: 0x01d0463c6a40060c Pfad der fehlerhaften Anwendung: H:\ownCloud-programm\owncloud.exe Pfad des fehlerhaften Moduls: H:\ownCloud-programm\libowncloudsync.dll Berichtskennung: 7cf255dd-b231-11e4-9492-f0761c341ab8 Error - 14.02.2015 04:22:27 | Computer Name = Chin-LP | Source = SideBySide | ID = 16842815 Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack200.exe". Fehler in Manifest- oder Richtliniendatei "C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack200.exe" in Zeile 19. Der Wert "" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error - 14.02.2015 04:23:08 | Computer Name = Chin-LP | Source = SideBySide | ID = 16842815 Description = Fehler beim Generieren des Aktivierungskontextes für "C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dll". Fehler in Manifest- oder Richtliniendatei "C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dll" in Zeile 19. Der Wert "" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error - 14.02.2015 04:23:43 | Computer Name = Chin-LP | Source = SideBySide | ID = 16842787 Description = Fehler beim Generieren des Aktivierungskontextes für "c:\program files\microsoft office 15\root\office15\lync.exe.Manifest". Fehler in Manifest- oder Richtliniendatei "c:\program files\microsoft office 15\root\office15\UccApi.DLL" in Zeile 1. Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein. Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="". Definition: UccApi,processorArchitecture="x86",type="win32",version="". Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose. [ System Events ] Error - 19.02.2015 02:10:18 | Computer Name = Chin-LP | Source = Schannel | ID = 36888 Description = Es wurde eine schwerwiegende Warnung generiert: 48. Der interne Fehlerstatus lautet: 552. Error - 19.02.2015 02:10:18 | Computer Name = Chin-LP | Source = Schannel | ID = 36882 Description = Das vom Remoteserver erhaltene Zertifikat wurde von einer nicht vertrauenswürdigen Zertifizierungsstelle ausgestellt. Aus diesem Grund können keine der im Zertifikat enthalten Daten verifiziert werden. Fehler bei der SSL-Verbindungsanforderung. Die angehängten Daten enthalten das Serverzertifikat. Error - 19.02.2015 02:10:19 | Computer Name = Chin-LP | Source = Schannel | ID = 36888 Description = Es wurde eine schwerwiegende Warnung generiert: 48. Der interne Fehlerstatus lautet: 552. Error - 19.02.2015 02:10:19 | Computer Name = Chin-LP | Source = Schannel | ID = 36882 Description = Das vom Remoteserver erhaltene Zertifikat wurde von einer nicht vertrauenswürdigen Zertifizierungsstelle ausgestellt. Aus diesem Grund können keine der im Zertifikat enthalten Daten verifiziert werden. Fehler bei der SSL-Verbindungsanforderung. Die angehängten Daten enthalten das Serverzertifikat. Error - 19.02.2015 03:03:43 | Computer Name = Chin-LP | Source = DCOM | ID = 10010 Description = Error - 19.02.2015 03:05:00 | Computer Name = Chin-LP | Source = Service Control Manager | ID = 7009 Description = Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error - 19.02.2015 03:05:00 | Computer Name = Chin-LP | Source = Service Control Manager | ID = 7000 Description = Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error - 19.02.2015 03:11:00 | Computer Name = Chin-LP | Source = DCOM | ID = 10010 Description = Error - 19.02.2015 03:36:25 | Computer Name = Chin-LP | Source = Service Control Manager | ID = 7009 Description = Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error - 19.02.2015 03:36:25 | Computer Name = Chin-LP | Source = Service Control Manager | ID = 7000 Description = Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 < End of report > Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Scan Date: 19.02.2015 Scan Time: 09:48:48 Logfile: MWB.txt Administrator: Yes Version: Malware Database: v2015.02.19.04 Rootkit Database: v2015.02.03.01 License: Free Malware Protection: Disabled Malicious Website Protection: Disabled Self-protection: Disabled OS: Windows 7 Service Pack 1 CPU: x64 File System: NTFS User: Chin Scan Type: Threat Scan Result: Completed Objects Scanned: 328710 Time Elapsed: 16 min, 32 sec Memory: Enabled Startup: Enabled Filesystem: Enabled Archives: Enabled Rootkits: Disabled Heuristics: Enabled PUP: Enabled PUM: Enabled Processes: 0 (No malicious items detected) Modules: 0 (No malicious items detected) Registry Keys: 0 (No malicious items detected) Registry Values: 0 (No malicious items detected) Registry Data: 0 (No malicious items detected) Folders: 0 (No malicious items detected) Files: 1 PUP.Optional.Downloader, C:\$Recycle.Bin\S-1-5-21-2240681411-2449356942-1176590736-1000\$R8MARW8.exe, , [371945dbdeac979f408bf230a55de719], Physical Sectors: 0 (No malicious items detected) (end) |
![]() | #5 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Laptop über LAN an Router Internet bricht ab hi, Downloade dir bitte Farbar's MiniToolBox auf deinen Desktop und starte das Tool Setze einen Haken bei folgenden Einträgen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #6 |
![]() | ![]() Laptop über LAN an Router Internet bricht ab Gleich Hallo Schrauber, vielen Dank für deine Antwort. Ich war leider gerade am falschen Rechner und hab da nicht dran gedacht, deswegen der vorherige editierte Post. Hier ist nun das Ergebnis vom Laptop. Code:
ATTFilter MiniToolBox by Farbar Version: 30-11-2014 Ran by Chin (administrator) on 20-02-2015 at 19:47:58 Running from "C:\Users\Chin\Desktop" Microsoft Windows 7 Home Premium Service Pack 1 (X64) Boot Mode: Normal *************************************************************************** ========================= Flush DNS: =================================== Windows-IP-Konfiguration Der DNS-Aufl�sungscache wurde geleert. ========================= IE Proxy Settings: ============================== Proxy is not enabled. No Proxy Server is set. "Reset IE Proxy Settings": IE Proxy Settings were reset. ========================= FF Proxy Settings: ============================== "Reset FF Proxy Settings": Firefox Proxy settings were reset. ========================= Hosts content: ================================= ========================= IP Configuration: ================================ Qualcomm Atheros AR956x Wireless Network Adapter = Drahtlosnetzwerkverbindung (Connected) Realtek PCIe GBE Family Controller = LAN-Verbindung (Media disconnected) # ---------------------------------- # IPv4-Konfiguration # ---------------------------------- pushd interface ipv4 reset set global icmpredirects=enabled popd # Ende der IPv4-Konfiguration Windows-IP-Konfiguration Hostname . . . . . . . . . . . . : Chin-LP Prim�res DNS-Suffix . . . . . . . : Knotentyp . . . . . . . . . . . . : Hybrid IP-Routing aktiviert . . . . . . : Nein WINS-Proxy aktiviert . . . . . . : Nein Drahtlos-LAN-Adapter Drahtlosnetzwerkverbindung: Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Qualcomm Atheros AR956x Wireless Network Adapter Physikalische Adresse . . . . . . : AC-B5-7D-00-AF-00 DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Verbindungslokale IPv6-Adresse . : fe80::dcda:f4bc:4ff4:d7c4%13(Bevorzugt) IPv4-Adresse . . . . . . . . . . : Subnetzmaske . . . . . . . . . . : Lease erhalten. . . . . . . . . . : Freitag, 20. Februar 2015 19:42:55 Lease l�uft ab. . . . . . . . . . : Dienstag, 30. M�rz 2151 02:16:30 Standardgateway . . . . . . . . . : DHCP-Server . . . . . . . . . . . : DHCPv6-IAID . . . . . . . . . . . : 413971837 DHCPv6-Client-DUID. . . . . . . . : 00-01-00-01-1C-52-AD-36-F0-76-1C-34-1A-B8 DNS-Server . . . . . . . . . . . : NetBIOS �ber TCP/IP . . . . . . . : Aktiviert Ethernet-Adapter LAN-Verbindung: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Realtek PCIe GBE Family Controller Physikalische Adresse . . . . . . : F0-76-1C-34-1A-B8 DHCP aktiviert. . . . . . . . . . : Ja Autokonfiguration aktiviert . . . : Ja Tunneladapter isatap.{7AD4139E-C256-49B9-8F93-856DF49D335A}: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Microsoft-ISATAP-Adapter Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja Tunneladapter Teredo Tunneling Pseudo-Interface: Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Teredo Tunneling Pseudo-Interface Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja IPv6-Adresse. . . . . . . . . . . : 2001:0:9d38:6abd:4f0:34ae:3f57:fd8f(Bevorzugt) Verbindungslokale IPv6-Adresse . : fe80::4f0:34ae:3f57:fd8f%11(Bevorzugt) Standardgateway . . . . . . . . . : :: NetBIOS �ber TCP/IP . . . . . . . : Deaktiviert Tunneladapter isatap.{558B2D36-464B-4563-A132-078D59DF9DC0}: Medienstatus. . . . . . . . . . . : Medium getrennt Verbindungsspezifisches DNS-Suffix: Beschreibung. . . . . . . . . . . : Microsoft-ISATAP-Adapter #2 Physikalische Adresse . . . . . . : 00-00-00-00-00-00-00-E0 DHCP aktiviert. . . . . . . . . . : Nein Autokonfiguration aktiviert . . . : Ja Server: easy.box Address: Name: google.com Addresses: 2a00:1450:4008:800::1008 Ping wird ausgef�hrt f�r google.com [] mit 32 Bytes Daten: Antwort von Bytes=32 Zeit=17ms TTL=57 Antwort von Bytes=32 Zeit=10ms TTL=57 Ping-Statistik f�r Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 10ms, Maximum = 17ms, Mittelwert = 13ms Server: easy.box Address: Name: yahoo.com Addresses: Ping wird ausgef�hrt f�r yahoo.com [] mit 32 Bytes Daten: Antwort von Bytes=32 Zeit=217ms TTL=52 Antwort von Bytes=32 Zeit=222ms TTL=52 Ping-Statistik f�r Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 217ms, Maximum = 222ms, Mittelwert = 219ms Ping wird ausgef�hrt f�r mit 32 Bytes Daten: Antwort von Bytes=32 Zeit<1ms TTL=128 Antwort von Bytes=32 Zeit<1ms TTL=128 Ping-Statistik f�r Pakete: Gesendet = 2, Empfangen = 2, Verloren = 0 (0% Verlust), Ca. Zeitangaben in Millisek.: Minimum = 0ms, Maximum = 0ms, Mittelwert = 0ms =========================================================================== Schnittstellenliste 13...ac b5 7d 00 af 00 ......Qualcomm Atheros AR956x Wireless Network Adapter 10...f0 76 1c 34 1a b8 ......Realtek PCIe GBE Family Controller 1...........................Software Loopback Interface 1 17...00 00 00 00 00 00 00 e0 Microsoft-ISATAP-Adapter 11...00 00 00 00 00 00 00 e0 Teredo Tunneling Pseudo-Interface 18...00 00 00 00 00 00 00 e0 Microsoft-ISATAP-Adapter #2 =========================================================================== IPv4-Routentabelle =========================================================================== Aktive Routen: Netzwerkziel Netzwerkmaske Gateway Schnittstelle Metrik 25 Auf Verbindung 306 Auf Verbindung 306 Auf Verbindung 306 Auf Verbindung 281 Auf Verbindung 281 Auf Verbindung 281 Auf Verbindung 306 Auf Verbindung 281 Auf Verbindung 306 Auf Verbindung 281 =========================================================================== St�ndige Routen: Keine IPv6-Routentabelle =========================================================================== Aktive Routen: If Metrik Netzwerkziel Gateway 11 58 ::/0 Auf Verbindung 1 306 ::1/128 Auf Verbindung 11 58 2001::/32 Auf Verbindung 11 306 2001:0:9d38:6abd:4f0:34ae:3f57:fd8f/128 Auf Verbindung 13 281 fe80::/64 Auf Verbindung 11 306 fe80::/64 Auf Verbindung 11 306 fe80::4f0:34ae:3f57:fd8f/128 Auf Verbindung 13 281 fe80::dcda:f4bc:4ff4:d7c4/128 Auf Verbindung 1 306 ff00::/8 Auf Verbindung 11 306 ff00::/8 Auf Verbindung 13 281 ff00::/8 Auf Verbindung =========================================================================== St�ndige Routen: Keine ========================= Winsock entries ===================================== Catalog5 01 C:\Windows\SysWOW64\NLAapi.dll [52224] (Microsoft Corporation) Catalog5 02 C:\Windows\SysWOW64\napinsp.dll [52224] (Microsoft Corporation) Catalog5 03 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation) Catalog5 04 C:\Windows\SysWOW64\pnrpnsp.dll [65024] (Microsoft Corporation) Catalog5 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Catalog5 06 C:\Windows\SysWOW64\winrnr.dll [20992] (Microsoft Corporation) Catalog5 07 C:\Windows\SysWOW64\wshbth.dll [36352] (Microsoft Corporation) Catalog9 01 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Catalog9 02 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Catalog9 03 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Catalog9 04 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Catalog9 05 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Catalog9 06 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Catalog9 07 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Catalog9 08 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Catalog9 09 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Catalog9 10 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) Catalog9 11 C:\Windows\SysWOW64\mswsock.dll [231424] (Microsoft Corporation) x64-Catalog5 01 C:\Windows\System32\NLAapi.dll [70656] (Microsoft Corporation) x64-Catalog5 02 C:\Windows\System32\napinsp.dll [68096] (Microsoft Corporation) x64-Catalog5 03 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation) x64-Catalog5 04 C:\Windows\System32\pnrpnsp.dll [86016] (Microsoft Corporation) x64-Catalog5 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation) x64-Catalog5 06 C:\Windows\System32\winrnr.dll [28672] (Microsoft Corporation) x64-Catalog5 07 C:\Windows\System32\wshbth.dll [47104] (Microsoft Corporation) x64-Catalog9 01 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation) x64-Catalog9 02 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation) x64-Catalog9 03 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation) x64-Catalog9 04 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation) x64-Catalog9 05 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation) x64-Catalog9 06 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation) x64-Catalog9 07 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation) x64-Catalog9 08 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation) x64-Catalog9 09 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation) x64-Catalog9 10 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation) x64-Catalog9 11 C:\Windows\System32\mswsock.dll [327168] (Microsoft Corporation) ========================= Event log errors: =============================== Application errors: ================== Error: (02/19/2015 02:32:28 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: vlc.exe, Version:, Zeitstempel: 0x00000000 Name des fehlerhaften Moduls: libqt4_plugin.dll, Version:, Zeitstempel: 0xa2b0a2a0 Ausnahmecode: 0x40000015 Fehleroffset: 0x000000000088b413 ID des fehlerhaften Prozesses: 0xb2c Startzeit der fehlerhaften Anwendung: 0xvlc.exe0 Pfad der fehlerhaften Anwendung: vlc.exe1 Pfad des fehlerhaften Moduls: vlc.exe2 Berichtskennung: vlc.exe3 Error: (02/19/2015 02:32:14 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: vlc.exe, Version:, Zeitstempel: 0x00000000 Name des fehlerhaften Moduls: libqt4_plugin.dll, Version:, Zeitstempel: 0xa2b0a2a0 Ausnahmecode: 0x40000015 Fehleroffset: 0x000000000088b413 ID des fehlerhaften Prozesses: 0x13a8 Startzeit der fehlerhaften Anwendung: 0xvlc.exe0 Pfad der fehlerhaften Anwendung: vlc.exe1 Pfad des fehlerhaften Moduls: vlc.exe2 Berichtskennung: vlc.exe3 Error: (02/19/2015 09:23:19 AM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Gmer-19357.exe, Version: 2.1.19357.0, Zeitstempel: 0x52e7ea83 Name des fehlerhaften Moduls: Gmer-19357.exe, Version: 2.1.19357.0, Zeitstempel: 0x52e7ea83 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000011aa ID des fehlerhaften Prozesses: 0x1380 Startzeit der fehlerhaften Anwendung: 0xGmer-19357.exe0 Pfad der fehlerhaften Anwendung: Gmer-19357.exe1 Pfad des fehlerhaften Moduls: Gmer-19357.exe2 Berichtskennung: Gmer-19357.exe3 Error: (02/14/2015 09:23:43 AM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "UccApi,processorArchitecture="AMD64",type="win32",version=""1". Fehler in Manifest- oder Richtliniendatei "UccApi,processorArchitecture="AMD64",type="win32",version=""2" in Zeile UccApi,processorArchitecture="AMD64",type="win32",version=""3. Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein. Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="". Definition: UccApi,processorArchitecture="x86",type="win32",version="". Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose. Error: (02/14/2015 09:23:08 AM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3. Der Wert "" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error: (02/14/2015 09:22:27 AM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3. Der Wert "" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error: (02/11/2015 10:03:55 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: owncloud.exe, Version:, Zeitstempel: 0x5492c052 Name des fehlerhaften Moduls: libowncloudsync.dll, Version:, Zeitstempel: 0x5492c037 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0007ab97 ID des fehlerhaften Prozesses: 0xbe0 Startzeit der fehlerhaften Anwendung: 0xowncloud.exe0 Pfad der fehlerhaften Anwendung: owncloud.exe1 Pfad des fehlerhaften Moduls: owncloud.exe2 Berichtskennung: owncloud.exe3 Error: (02/03/2015 08:29:49 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: svchost.exe_SysMain, Version: 6.1.7600.16385, Zeitstempel: 0x4a5bc3c1 Name des fehlerhaften Moduls: sysmain.dll, Version: 6.1.7601.17514, Zeitstempel: 0x4ce7c9db Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000004f55 ID des fehlerhaften Prozesses: 0x198 Startzeit der fehlerhaften Anwendung: 0xsvchost.exe_SysMain0 Pfad der fehlerhaften Anwendung: svchost.exe_SysMain1 Pfad des fehlerhaften Moduls: svchost.exe_SysMain2 Berichtskennung: svchost.exe_SysMain3 Error: (01/29/2015 08:07:42 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "UccApi,processorArchitecture="AMD64",type="win32",version=""1". Fehler in Manifest- oder Richtliniendatei "UccApi,processorArchitecture="AMD64",type="win32",version=""2" in Zeile UccApi,processorArchitecture="AMD64",type="win32",version=""3. Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein. Verweis: UccApi,processorArchitecture="AMD64",type="win32",version="". Definition: UccApi,processorArchitecture="x86",type="win32",version="". Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose. Error: (01/29/2015 08:07:19 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3. Der Wert "" des "version"-Attributs im assemblyIdentity-Element ist ungültig. System errors: ============= Error: (02/20/2015 07:43:30 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/20/2015 07:43:30 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (02/19/2015 08:36:25 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/19/2015 08:36:25 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (02/19/2015 08:11:00 AM) (Source: DCOM) (User: ) Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} Error: (02/19/2015 08:05:00 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (02/19/2015 08:05:00 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (02/19/2015 08:03:43 AM) (Source: DCOM) (User: ) Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E} Error: (02/19/2015 07:10:19 AM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Das vom Remoteserver erhaltene Zertifikat wurde von einer nicht vertrauenswürdigen Zertifizierungsstelle ausgestellt. Aus diesem Grund können keine der im Zertifikat enthalten Daten verifiziert werden. Fehler bei der SSL-Verbindungsanforderung. Die angehängten Daten enthalten das Serverzertifikat. Error: (02/19/2015 07:10:19 AM) (Source: Schannel) (User: NT-AUTORITÄT) Description: Es wurde eine schwerwiegende Warnung generiert: 48. Der interne Fehlerstatus lautet: 552. Microsoft Office Sessions: ========================= Error: (02/19/2015 02:32:28 PM) (Source: Application Error)(User: ) Description: vlc.exe2.2.0.000000000libqt4_plugin.dll2.2.0.0a2b0a2a040000015000000000088b413b2c01d04c487db6e65dC:\Program Files\VideoLAN\VLC\vlc.exeC:\Program Files\VideoLAN\VLC\plugins\gui\libqt4_plugin.dllbf419e01-b83b-11e4-a31f-f0761c341ab8 Error: (02/19/2015 02:32:14 PM) (Source: Application Error)(User: ) Description: vlc.exe2.2.0.000000000libqt4_plugin.dll2.2.0.0a2b0a2a040000015000000000088b41313a801d04c486dafc661C:\Program Files\VideoLAN\VLC\vlc.exeC:\Program Files\VideoLAN\VLC\plugins\gui\libqt4_plugin.dllb6eb9c79-b83b-11e4-a31f-f0761c341ab8 Error: (02/19/2015 09:23:19 AM) (Source: Application Error)(User: ) Description: Gmer-19357.exe2.1.19357.052e7ea83Gmer-19357.exe2.1.19357.052e7ea83c0000005000011aa138001d04c1d4c4273b9C:\Users\Chin\AppData\Local\Temp\DMR\Downloads\fc14996dfa99adfc7baae624196888c5\7b485ad519eff9d7d5dd42c4b366b648\Gmer-19357.exeC:\Users\Chin\AppData\Local\Temp\DMR\Downloads\fc14996dfa99adfc7baae624196888c5\7b485ad519eff9d7d5dd42c4b366b648\Gmer-19357.exe8f085b12-b810-11e4-a613-f0761c341ab8 Error: (02/14/2015 09:23:43 AM) (Source: SideBySide)(User: ) Description: UccApi,processorArchitecture="AMD64",type="win32",version=""UccApi,processorArchitecture="x86",type="win32",version=""c:\program files\microsoft office 15\root\office15\lync.exe.Manifestc:\program files\microsoft office 15\root\office15\UccApi.DLL1 Error: (02/14/2015 09:23:08 AM) (Source: SideBySide)(User: ) Description: assemblyIdentityversion6.0.0.6u9b41C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dllC:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dll19 Error: (02/14/2015 09:22:27 AM) (Source: SideBySide)(User: ) Description: assemblyIdentityversion6.0.0.6u9b41C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack200.exeC:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack200.exe19 Error: (02/11/2015 10:03:55 PM) (Source: Application Error)(User: ) Description: owncloud.exe0.0.0.05492c052libowncloudsync.dll0.0.0.05492c037c00000050007ab97be001d0463c6a40060cH:\ownCloud-programm\owncloud.exeH:\ownCloud-programm\libowncloudsync.dll7cf255dd-b231-11e4-9492-f0761c341ab8 Error: (02/03/2015 08:29:49 PM) (Source: Application Error)(User: ) Description: svchost.exe_SysMain6.1.7600.163854a5bc3c1sysmain.dll6.1.7601.175144ce7c9dbc00000050000000000004f5519801d03f8f6c6cf007C:\Windows\System32\svchost.exec:\windows\system32\sysmain.dll04392488-abdb-11e4-8976-f0761c341ab8 Error: (01/29/2015 08:07:42 PM) (Source: SideBySide)(User: ) Description: UccApi,processorArchitecture="AMD64",type="win32",version=""UccApi,processorArchitecture="x86",type="win32",version=""c:\program files\microsoft office 15\root\office15\lync.exe.Manifestc:\program files\microsoft office 15\root\office15\UccApi.DLL1 Error: (01/29/2015 08:07:19 PM) (Source: SideBySide)(User: ) Description: assemblyIdentityversion6.0.0.6u9b41C:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dllC:\Program Files (x86)\IBM\SPSS\Statistics\19\JRE\bin\unpack.dll19 =========================== Installed Programs ============================ ACP Application (Version: - Advanced Micro Devices, Inc.) Hidden Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) Adobe Refresh Manager (x32 Version: 1.8.0 - Adobe Systems Incorporated) Hidden AMD Accelerated Video Transcoding (Version: - Advanced Micro Devices, Inc.) Hidden AMD Catalyst Control Center (x32 Version: 2014.1120.2123.38423 - Ihr Firmenname) Hidden AMD Catalyst Install Manager (HKLM\...\{F2A7CE36-57BF-5C86-952D-90DBF3746D82}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.) AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden AMD Fuel (Version: 2014.1120.2123.38423 - Ihr Firmenname) Hidden AMD Quick Stream (HKLM\...\{E9EED4AE-682B-4501-9574-D09A21717599}_is1) (Version: - AppEx Networks) AMD Steady Video Plug-In (Version: 2.07.0000 - AMD) Hidden AMD Wireless Display v3.0 (Version: - Advanced Micro Devices, Inc.) Hidden Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software) Banished (HKLM-x32\...\Steam App 242920) (Version: - Shining Rock Software LLC) calibre 64bit (HKLM\...\{994A15FB-0FA3-455E-8161-A558C7BC4A73}) (Version: 2.19.0 - Kovid Goyal) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2014.1120.2123.38423 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2014.1120.2123.38423 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2014.1120.2123.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2014.1120.2122.38423 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2014.1120.2123.38423 - Advanced Micro Devices, Inc.) Hidden Citavi 4 (HKLM-x32\...\{CC0A85B2-734A-45B3-B678-05F6A6499AC7}) (Version: - Swiss Academic Software) CPUID CPU-Z 1.71.1 (HKLM\...\CPUID CPU-Z_is1) (Version: - ) Dropbox (HKCU\...\Dropbox) (Version: 3.2.6 - Dropbox, Inc.) FileZilla Client (HKCU\...\FileZilla Client) (Version: - Tim Kosse) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.111 - Google Inc.) Google Update Helper (x32 Version: - Google Inc.) Hidden Google Update Helper (x32 Version: - Google Inc.) Hidden IBM SPSS Statistics 19 (HKLM-x32\...\{06C43FAA-7226-41EF-A05E-9AE0AA849FFE}) (Version: 19.0.0 - SPSS Inc., an IBM Company) KeePass Password Safe 2.28 (HKLM-x32\...\KeePassPasswordSafe2_is1) (Version: 2.28 - Dominik Reichl) Kingdoms of Amalur: Reckoning™ (HKLM-x32\...\Steam App 102500) (Version: - Big Huge Games) Malwarebytes Anti-Malware Version (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: - Malwarebytes Corporation) Microsoft .NET Framework 4.5.2 (DEU) (Version: 4.5.51209 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.2 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (Version: 4.5.51209 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2013 - de-de (HKLM\...\ProPlusRetail - de-de) (Version: 15.0.4675.1003 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (Version: 12.0.21005 - Microsoft Corporation) Hidden Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 31.4.0 - Mozilla) Mozilla Thunderbird 31.4.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 31.4.0 (x86 de)) (Version: 31.4.0 - Mozilla) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4675.1003 - Microsoft Corporation) Hidden Qualcomm Atheros Bluetooth Suite (64) (HKLM\...\{A84A4FB1-D703-48DB-89E0-68B6499D2801}) (Version: - Qualcomm Atheros Communications) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 12.29 - Qualcomm Atheros) Raptr (HKLM-x32\...\Raptr) (Version: - ) Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.21247 - Realtek Semiconductor Corp.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.78.1218.2013 - Realtek) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Torchlight II (HKLM-x32\...\Steam App 200710) (Version: - Runic Games) VLC media player (HKLM\...\VLC media player) (Version: 2.2.0-rc2 - VideoLAN) Win32DiskImager version 0.9.5 (HKLM-x32\...\{D074CE74-912A-4AD3-A0BF-3937D9D01F17}_is1) (Version: 0.9.5 - ImageWriter Developers) ========================= Devices: ================================ ========================= Memory info: =================================== Percentage of memory in use: 43% Total physical RAM: 7118.36 MB Available physical RAM: 4054.63 MB Total Pagefile: 14234.91 MB Available Pagefile: 10721.58 MB Total Virtual: 4095.88 MB Available Virtual: 3972.3 MB ========================= Partitions: ===================================== 1 Drive c: () (Fixed) (Total:262.84 GB) (Free:97.98 GB) NTFS 3 Drive h: (Uni) (Fixed) (Total:101.26 GB) (Free:89.71 GB) NTFS 4 Drive l: (Volume) (Fixed) (Total:101.56 GB) (Free:101.35 GB) NTFS ========================= Users: ======================================== Benutzerkonten fr \\CHIN-LP Administrator Chin Gast Der Befehl wurde erfolgreich ausgefhrt. ========================= Minidump Files ================================== No minidump file found **** End of log **** Geändert von CHin (20.02.2015 um 19:46 Uhr) |
![]() | #7 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Laptop über LAN an Router Internet bricht ab hi, Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #8 |
![]() | ![]() Laptop über LAN an Router Internet bricht ab Hi Schrauber, vielen Dank für deine Antwort. Spybot hab ich geschlossen und es war auch nicht mehr bei den Prozessen zu finden. Es wird trotzdem noch als "enabled" angezeigt und ich kann mir das nicht erklären. Geht das trotzdem? Hier das Log-File Code:
ATTFilter ComboFix 15-02-16.01 - Chin 21.02.2015 16:00:11.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.7118.5570 [GMT 1:00] ausgeführt von:: c:\users\Chin\Desktop\blabla.exe AV: avast! Antivirus *Disabled/Updated* {17AD7D40-BA12-9C46-7131-94903A54AD8B} SP: avast! Antivirus *Disabled/Updated* {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} SP: Spybot - Search and Destroy *Enabled/Outdated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\windows\SysWow64\lsprst7.dll . . ((((((((((((((((((((((( Dateien erstellt von 2015-01-21 bis 2015-02-21 )))))))))))))))))))))))))))))) . . 2015-02-21 15:08 . 2015-02-21 15:08 -------- d-----w- c:\users\Default\AppData\Local\temp 2015-02-20 18:50 . 2015-01-29 09:07 11910896 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{225489CA-4198-4BBC-B472-37C4A578FA26}\mpengine.dll 2015-02-19 08:16 . 2015-02-19 08:19 -------- d-----w- C:\FRST 2015-02-18 18:56 . 2015-02-19 08:48 129752 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys 2015-02-18 18:56 . 2015-02-18 18:56 -------- d-----w- c:\program files (x86)\ Malwarebytes Anti-Malware 2015-02-18 18:56 . 2015-02-18 18:56 -------- d-----w- c:\programdata\Malwarebytes 2015-02-18 18:56 . 2014-11-21 05:14 63704 ----a-w- c:\windows\system32\drivers\mwac.sys 2015-02-18 18:56 . 2014-11-21 05:14 93400 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys 2015-02-18 18:56 . 2014-11-21 05:14 25816 ----a-w- c:\windows\system32\drivers\mbam.sys 2015-02-17 11:30 . 2015-02-18 19:26 -------- d-----r- c:\users\Chin\Dropbox 2015-02-17 11:26 . 2015-02-19 06:11 -------- d-----w- c:\users\Chin\AppData\Roaming\Dropbox 2015-02-12 11:11 . 2015-02-12 11:11 -------- d-----w- c:\program files (x86)\FileZilla FTP Client 2015-02-12 07:50 . 2013-09-20 09:49 21040 ----a-w- c:\windows\system32\sdnclean64.exe 2015-02-12 07:50 . 2015-02-12 07:59 -------- d-----w- c:\programdata\Spybot - Search & Destroy 2015-02-12 07:50 . 2015-02-12 07:55 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2 2015-02-12 07:06 . 2015-01-23 03:43 620032 ----a-w- c:\windows\SysWow64\jscript9diag.dll 2015-02-12 07:06 . 2015-01-23 04:41 6041600 ----a-w- c:\windows\system32\jscript9.dll 2015-02-12 07:06 . 2015-01-23 03:17 4300800 ----a-w- c:\windows\SysWow64\jscript9.dll 2015-02-12 07:06 . 2015-01-23 04:42 814080 ----a-w- c:\windows\system32\jscript9diag.dll 2015-02-11 21:03 . 2015-02-19 13:32 -------- d-----w- c:\users\Chin\AppData\Local\CrashDumps 2015-02-11 11:51 . 2015-02-11 11:59 -------- d-----w- c:\users\Chin\AppData\Local\calibre-cache 2015-02-11 11:43 . 2015-02-11 11:59 -------- d-----w- c:\users\Chin\AppData\Roaming\calibre 2015-02-11 11:42 . 2015-02-11 11:43 -------- d-----w- c:\program files\Calibre2 2015-02-11 11:37 . 2015-01-10 06:48 341504 ----a-w- c:\windows\system32\schannel.dll 2015-02-11 11:37 . 2015-01-10 06:27 248832 ----a-w- c:\windows\SysWow64\schannel.dll 2015-02-11 11:37 . 2015-01-10 06:48 210944 ----a-w- c:\windows\system32\wdigest.dll 2015-02-11 11:37 . 2015-01-10 06:48 309760 ----a-w- c:\windows\system32\ncrypt.dll 2015-02-11 11:37 . 2015-01-10 06:48 314880 ----a-w- c:\windows\system32\msv1_0.dll 2015-02-11 11:37 . 2015-01-10 06:48 728064 ----a-w- c:\windows\system32\kerberos.dll 2015-02-11 11:37 . 2015-01-10 06:27 221184 ----a-w- c:\windows\SysWow64\ncrypt.dll 2015-02-11 11:37 . 2015-01-10 06:27 259584 ----a-w- c:\windows\SysWow64\msv1_0.dll 2015-02-11 11:37 . 2015-01-10 06:27 550912 ----a-w- c:\windows\SysWow64\kerberos.dll 2015-02-11 11:35 . 2015-01-13 03:10 1424384 ----a-w- c:\windows\system32\WindowsCodecs.dll 2015-02-11 11:34 . 2015-01-15 08:06 60416 ----a-w- c:\windows\system32\msobjs.dll 2015-02-11 11:34 . 2015-01-15 08:06 146432 ----a-w- c:\windows\system32\msaudite.dll 2015-02-11 11:34 . 2015-01-15 07:39 60416 ----a-w- c:\windows\SysWow64\msobjs.dll 2015-02-11 11:34 . 2015-01-15 07:39 146432 ----a-w- c:\windows\SysWow64\msaudite.dll 2015-02-11 11:34 . 2014-12-08 03:09 406528 ----a-w- c:\windows\system32\scesrv.dll 2015-02-11 11:34 . 2014-12-08 02:46 308224 ----a-w- c:\windows\SysWow64\scesrv.dll 2015-02-11 11:34 . 2015-01-14 06:09 5554112 ----a-w- c:\windows\system32\ntoskrnl.exe 2015-02-11 11:34 . 2015-01-14 05:44 3972544 ----a-w- c:\windows\SysWow64\ntkrnlpa.exe 2015-02-11 11:34 . 2015-01-14 05:44 3917760 ----a-w- c:\windows\SysWow64\ntoskrnl.exe 2015-02-11 11:34 . 2015-01-14 06:05 503808 ----a-w- c:\windows\system32\srcore.dll 2015-02-11 11:34 . 2015-01-14 06:04 296960 ----a-w- c:\windows\system32\rstrui.exe 2015-02-11 11:34 . 2015-01-14 06:05 50176 ----a-w- c:\windows\system32\srclient.dll 2015-02-11 11:34 . 2015-01-14 05:41 43008 ----a-w- c:\windows\SysWow64\srclient.dll 2015-02-11 11:33 . 2015-01-09 02:03 3201536 ----a-w- c:\windows\system32\win32k.sys 2015-02-07 18:46 . 2015-02-15 21:01 -------- d-----w- c:\users\Chin\AppData\Roaming\vlc 2015-01-28 11:55 . 2015-01-28 11:55 -------- d-----w- c:\users\Chin\AppData\Local\Diagnostics 2015-01-28 06:03 . 2013-04-02 22:51 1643520 ----a-w- c:\windows\system32\DWrite.dll 2015-01-28 06:03 . 2013-04-09 23:34 1247744 ----a-w- c:\windows\SysWow64\DWrite.dll 2015-01-27 17:07 . 2015-02-17 11:39 -------- d-----w- c:\users\Chin\owncloud 2015-01-27 17:02 . 2015-01-27 17:02 -------- d-----w- c:\program files (x86)\ownCloud 2015-01-26 23:32 . 2015-02-12 16:35 -------- d-----w- c:\users\Chin\AppData\Roaming\FileZilla 2015-01-26 18:50 . 2015-01-26 18:50 -------- d-----w- c:\program files (x86)\ImageWriter 2015-01-26 13:54 . 2015-01-26 13:54 -------- d-----w- c:\programdata\Gibraltar 2015-01-26 13:50 . 2015-01-26 13:50 -------- d-----w- c:\programdata\Oracle 2015-01-26 12:30 . 2015-01-26 12:30 -------- d-----w- c:\users\Chin\AppData\Local\Swiss Academic Software 2015-01-26 11:56 . 2015-02-09 16:47 -------- d-----w- c:\users\Chin\AppData\Roaming\Swiss Academic Software 2015-01-26 11:56 . 2015-01-26 11:56 -------- d-----w- c:\programdata\Swiss Academic Software 2015-01-26 11:42 . 2015-01-26 11:43 -------- d-----w- c:\program files (x86)\Citavi 4 2015-01-26 11:40 . 2015-01-26 11:40 -------- d-----w- c:\users\Chin\AppData\Local\Downloaded Installations 2015-01-24 08:19 . 2015-01-24 08:19 -------- d-----w- c:\users\Chin\AppData\Roaming\EFSoftware 2015-01-24 08:14 . 2015-01-24 08:14 -------- d-----w- c:\program files\VideoLAN 2015-01-24 07:57 . 2015-01-24 07:57 -------- d-----w- c:\program files (x86)\Total Commander 2015-01-24 07:56 . 2015-01-24 07:56 -------- d-----w- c:\users\Chin\AppData\Local\Adobe 2015-01-24 07:53 . 2015-01-24 07:53 -------- d-----w- c:\users\Chin\.spss 2015-01-24 07:53 . 2015-01-24 07:53 -------- d-----w- c:\users\Chin\AppData\Local\javasharedresources 2015-01-24 07:49 . 2015-01-24 07:49 -------- d-----w- c:\programdata\SafeNet Sentinel 2015-01-24 07:49 . 2015-01-24 07:49 -------- d-----w- c:\program files\Common Files\IBM 2015-01-24 07:49 . 2015-01-24 07:49 -------- d--h--w- c:\program files (x86)\Zero G Registry 2015-01-24 07:49 . 2015-01-24 07:49 -------- d--h--w- c:\users\Chin\InstallAnywhere 2015-01-24 07:48 . 2015-01-24 07:48 -------- d-----w- c:\programdata\SPSS 2015-01-24 07:47 . 2015-01-24 07:47 -------- d-----w- c:\program files (x86)\Common Files\IBM 2015-01-24 07:47 . 2015-01-24 07:47 -------- d-----w- c:\program files (x86)\IBM 2015-01-24 07:46 . 2015-01-24 07:46 1025 ----a-w- c:\windows\SysWow64\sysprs7.dll 2015-01-23 17:19 . 2014-09-05 01:52 5703168 ----a-w- c:\windows\SysWow64\mstscax.dll 2015-01-23 17:19 . 2014-09-05 02:11 6584320 ----a-w- c:\windows\system32\mstscax.dll 2015-01-23 17:19 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe 2015-01-23 17:19 . 2011-02-25 05:30 2616320 ----a-w- c:\windows\SysWow64\explorer.exe 2015-01-23 17:19 . 2012-02-11 06:36 559104 ----a-w- c:\windows\system32\spoolsv.exe 2015-01-23 17:19 . 2012-02-11 06:36 67072 ----a-w- c:\windows\splwow64.exe 2015-01-23 17:13 . 2015-01-23 17:13 -------- d-----w- c:\users\Chin\AppData\Local\BigHugeEngine 2015-01-23 10:41 . 2015-01-23 10:42 -------- d-----w- c:\program files (x86)\Common Files\Adobe 2015-01-23 10:29 . 2015-01-23 10:29 -------- d-sh--w- c:\users\Chin\AppData\Local\EmieUserList 2015-01-23 10:29 . 2015-01-23 10:29 -------- d-sh--w- c:\users\Chin\AppData\Local\EmieSiteList 2015-01-23 10:29 . 2015-01-23 10:29 -------- d-sh--w- c:\users\Chin\AppData\Local\EmieBrowserModeList 2015-01-23 10:10 . 2015-01-23 10:10 -------- d-----w- c:\users\Chin\AppData\Roaming\library_dir 2015-01-23 10:08 . 2015-02-20 18:43 -------- d-----w- c:\users\Chin\AppData\Roaming\Raptr 2015-01-23 10:08 . 2015-02-01 17:11 -------- d-----w- c:\program files (x86)\Raptr 2015-01-23 10:08 . 2015-01-23 10:08 -------- d-----w- c:\program files\AMD Quick Stream 2015-01-23 08:58 . 2007-03-05 11:42 15128 ----a-w- c:\windows\SysWow64\x3daudio1_1.dll 2015-01-23 08:56 . 2014-12-11 17:47 87040 ----a-w- c:\windows\system32\TSWbPrxy.exe 2015-01-23 08:13 . 2015-01-23 08:09 590536 ----a-w- c:\programdata\Microsoft\ClickToRun\{9AC08E99-230B-47e8-9721-4577B7F124EA}\integrator.exe 2015-01-23 08:09 . 2015-01-23 08:32 -------- d-----w- c:\programdata\regid.1991-06.com.microsoft 2015-01-23 08:00 . 2015-01-23 08:00 -------- d-----w- c:\program files\Microsoft Office 15 2015-01-23 07:38 . 2014-08-29 02:07 3179520 ----a-w- c:\windows\system32\rdpcorets.dll 2015-01-23 07:38 . 2014-05-08 09:32 16384 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll 2015-01-22 22:19 . 2013-05-10 03:48 164864 ----a-w- c:\program files (x86)\Windows Media Player\wmplayer.exe 2015-01-22 22:19 . 2013-05-10 04:30 167424 ----a-w- c:\program files\Windows Media Player\wmplayer.exe 2015-01-22 22:19 . 2013-05-10 05:56 12625920 ----a-w- c:\windows\system32\wmploc.DLL 2015-01-22 22:19 . 2013-05-10 04:56 12625408 ----a-w- c:\windows\SysWow64\wmploc.DLL 2015-01-22 22:19 . 2013-05-10 05:56 14631424 ----a-w- c:\windows\system32\wmp.dll 2015-01-22 22:06 . 2015-01-22 22:06 -------- d-----w- c:\windows\Migration 2015-01-22 22:02 . 2012-07-26 07:46 2560 ----a-w- c:\windows\system32\drivers\de-DE\wdf01000.sys.mui 2015-01-22 21:59 . 2012-08-23 14:10 19456 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys 2015-01-22 21:59 . 2012-08-23 14:13 243200 ----a-w- c:\windows\system32\rdpudd.dll 2015-01-22 21:59 . 2012-08-23 11:12 192000 ----a-w- c:\windows\SysWow64\rdpendp_winip.dll 2015-01-22 21:59 . 2012-08-23 10:51 228864 ----a-w- c:\windows\system32\rdpendp_winip.dll 2015-01-22 21:50 . 2014-07-07 02:06 24576 ----a-w- c:\windows\system32\mfpmp.exe 2015-01-22 21:50 . 2014-07-07 02:02 2048 ----a-w- c:\windows\system32\mferror.dll 2015-01-22 21:50 . 2014-07-07 01:37 2048 ----a-w- c:\windows\SysWow64\mferror.dll 2015-01-22 21:50 . 2014-10-18 01:33 3209728 ----a-w- c:\windows\SysWow64\mf.dll 2015-01-22 21:50 . 2014-07-07 02:06 206848 ----a-w- c:\windows\system32\mfps.dll 2015-01-22 21:50 . 2014-07-07 02:06 55808 ----a-w- c:\windows\system32\rrinstaller.exe 2015-01-22 21:50 . 2014-07-07 01:40 103424 ----a-w- c:\windows\SysWow64\mfps.dll 2015-01-22 21:50 . 2014-07-07 01:39 50176 ----a-w- c:\windows\SysWow64\rrinstaller.exe 2015-01-22 21:50 . 2014-07-07 01:39 23040 ----a-w- c:\windows\SysWow64\mfpmp.exe 2015-01-22 21:50 . 2014-10-18 02:05 4121600 ----a-w- c:\windows\system32\mf.dll 2015-01-22 21:49 . 2012-07-26 02:26 87040 ----a-w- c:\windows\system32\drivers\WUDFPf.sys 2015-01-22 21:49 . 2012-07-26 02:26 198656 ----a-w- c:\windows\system32\drivers\WUDFRd.sys 2015-01-22 21:49 . 2012-07-26 03:08 84992 ----a-w- c:\windows\system32\WUDFSvc.dll 2015-01-22 21:49 . 2012-07-26 03:08 194048 ----a-w- c:\windows\system32\WUDFPlatform.dll 2015-01-22 21:49 . 2012-07-26 03:08 229888 ----a-w- c:\windows\system32\WUDFHost.exe 2015-01-22 21:49 . 2012-07-26 03:08 45056 ----a-w- c:\windows\system32\WUDFCoinstaller.dll . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2015-02-21 14:50 . 2015-01-22 12:49 65536 ----a-w- c:\windows\system32\spu_storage.bin 2015-02-11 12:00 . 2015-01-22 13:33 116773704 ----a-w- c:\windows\system32\MRT.exe 2015-01-23 07:31 . 2015-01-22 13:11 1050432 ----a-w- c:\windows\system32\drivers\aswsnx.sys 2015-01-22 16:14 . 2009-07-14 02:36 152576 ----a-w- c:\windows\SysWow64\msclmd.dll 2015-01-22 16:14 . 2009-07-14 02:36 175616 ----a-w- c:\windows\system32\msclmd.dll 2015-01-22 13:11 . 2015-01-22 13:11 93568 ----a-w- c:\windows\system32\drivers\aswRdr2.sys 2015-01-22 13:11 . 2015-01-22 13:11 83280 ----a-w- c:\windows\system32\drivers\aswMonFlt.sys 2015-01-22 13:11 . 2015-01-22 13:11 65776 ----a-w- c:\windows\system32\drivers\aswRvrt.sys 2015-01-22 13:11 . 2015-01-22 13:11 436624 ----a-w- c:\windows\system32\drivers\aswSP.sys 2015-01-22 13:11 . 2015-01-22 13:11 29208 ----a-w- c:\windows\system32\drivers\aswHwid.sys 2015-01-22 13:11 . 2015-01-22 13:11 267632 ----a-w- c:\windows\system32\drivers\aswVmm.sys 2015-01-22 13:11 . 2015-01-22 13:11 116728 ----a-w- c:\windows\system32\drivers\aswStm.sys 2015-01-22 13:11 . 2015-01-22 13:11 364512 ----a-w- c:\windows\system32\aswBoot.exe 2015-01-22 13:11 . 2015-01-22 13:11 43152 ----a-w- c:\windows\avastSS.scr 2014-12-22 23:41 . 2015-01-22 13:22 298120 ------w- c:\windows\system32\MpSigStub.exe . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "AppEx Accelerator UI"="c:\program files\AMD Quick Stream\AMDQuickStream.exe" [2014-03-31 482528] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "StartCCC"="c:\program files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2014-11-20 767176] "AvastUI.exe"="c:\program files\AVAST Software\Avast\AvastUI.exe" [2015-01-27 5227112] "KeePass 2 PreLoad"="c:\program files (x86)\KeePass Password Safe 2\KeePass.exe" [2014-10-07 2109952] "Raptr"="c:\program files (x86)\Raptr\raptrstub.exe" [2015-01-30 55568] "SDTray"="c:\program files (x86)\Spybot - Search & Destroy 2\SDTray.exe" [2014-06-24 4101576] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "SoftwareSASGeneration"= 1 (0x1) . [HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager] BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe . R2 aswStm;aswStm;c:\windows\system32\drivers\aswStm.sys;c:\windows\SYSNATIVE\drivers\aswStm.sys [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R3 AthBTPort;Qualcomm Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x] R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x] R3 btath_avdt;Qualcomm Atheros Bluetooth AVDT Service;c:\windows\system32\drivers\btath_avdt.sys;c:\windows\SYSNATIVE\drivers\btath_avdt.sys [x] R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x] R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x] R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x] R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] S0 amd_sata;amd_sata;c:\windows\system32\DRIVERS\amd_sata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_sata.sys [x] S0 amd_xata;amd_xata;c:\windows\system32\DRIVERS\amd_xata.sys;c:\windows\SYSNATIVE\DRIVERS\amd_xata.sys [x] S0 amdkmpfd;AMD PCI Root Bus Lower Filter;c:\windows\system32\DRIVERS\amdkmpfd.sys;c:\windows\SYSNATIVE\DRIVERS\amdkmpfd.sys [x] S0 aswRvrt;avast! Revert; [x] S0 aswVmm;avast! VM Monitor; [x] S0 BTATH_BUS;Qualcomm Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x] S1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys;c:\windows\SYSNATIVE\drivers\aswSnx.sys [x] S1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys;c:\windows\SYSNATIVE\drivers\aswSP.sys [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] S2 amdacpksd;ACP Kernel Service Driver;c:\windows\system32\drivers\amdacpksd.sys;c:\windows\SYSNATIVE\drivers\amdacpksd.sys [x] S2 APXACC;AppEx Networks Accelerator LWF;c:\windows\system32\DRIVERS\appexDrv.sys;c:\windows\SYSNATIVE\DRIVERS\appexDrv.sys [x] S2 aswHwid;avast! HardwareID;c:\windows\system32\drivers\aswHwid.sys;c:\windows\SYSNATIVE\drivers\aswHwid.sys [x] S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x] S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [x] S2 ClickToRunSvc;Microsoft Office-Klick-und-Los-Dienst;c:\program files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe;c:\program files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [x] S2 SDScannerService;Spybot-S&D 2 Scanner Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [x] S2 SDUpdateService;Spybot-S&D 2 Updating Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [x] S2 SDWSCService;Spybot-S&D 2 Security Center Service;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe;c:\program files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [x] S2 VBoxAswDrv;VBoxAsw Support Driver;c:\program files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys;c:\program files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [x] S3 amdhub30;AMD USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\amdhub30.sys;c:\windows\SYSNATIVE\DRIVERS\amdhub30.sys [x] S3 amdxhc;AMD USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\amdxhc.sys;c:\windows\SYSNATIVE\DRIVERS\amdxhc.sys [x] S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x] S3 AvastVBoxSvc;AvastVBox COM Service;c:\program files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe;c:\program files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 RTSPER;Realtek PCIE Card Reader - PER;c:\windows\system32\DRIVERS\RtsPer.sys;c:\windows\SYSNATIVE\DRIVERS\RtsPer.sys [x] S3 usbfilter;AMD USB Filter Driver;c:\windows\system32\DRIVERS\usbfilter.sys;c:\windows\SYSNATIVE\DRIVERS\usbfilter.sys [x] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - WS2IFSL . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2015-02-21 07:01 1084744 ----a-w- c:\program files (x86)\Google\Chrome\Application\40.0.2214.115\Installer\chrmstp.exe . Inhalt des "geplante Tasks" Ordners . 2015-02-21 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2015-01-22 15:58] . 2015-02-21 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2015-01-22 15:58] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)] @="{8BA85C75-763B-4103-94EB-9470F12FE0F7}" [HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}] 2015-01-23 08:15 2334928 ----a-w- c:\program files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)] @="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}" [HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}] 2015-01-23 08:15 2334928 ----a-w- c:\program files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)] @="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}" [HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}] 2015-01-23 08:15 2334928 ----a-w- c:\program files\Microsoft Office 15\root\vfs\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt1"] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2015-02-11 01:12 185824 ----a-w- c:\users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt2"] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2015-02-11 01:12 185824 ----a-w- c:\users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt3"] @="{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}] 2015-02-11 01:12 185824 ----a-w- c:\users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt4"] @="{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}] 2015-02-11 01:12 185824 ----a-w- c:\users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt5"] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2015-02-11 01:12 185824 ----a-w- c:\users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt6"] @="{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}] 2015-02-11 01:12 185824 ----a-w- c:\users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt7"] @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}] 2015-02-11 01:12 185824 ----a-w- c:\users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\"DropboxExt8"] @="{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}] 2015-02-11 01:12 185824 ----a-w- c:\users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast] @="{472083B0-C522-11CF-8763-00608CC02F24}" [HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}] 2015-01-22 13:11 860984 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm mLocal Page = c:\windows\SysWOW64\blank.htm IE: E&xport to Microsoft Excel - c:\program files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000 IE: Se&nd to OneNote - c:\program files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105 TCP: DhcpNameServer = . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Wow6432Node-HKCU-Run-ownCloud - h:\owncloud-programm\owncloud.exe Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe Notify-SDWinLogon - SDWinLogon.dll ShellIconOverlayIdentifiers-{0960F090-F328-48A3-B746-276B1E3C3722} - h:\owncloud\shellext\OCOverlays_x64.dll ShellIconOverlayIdentifiers-{0960F091-F328-48A3-B746-276B1E3C3722} - h:\owncloud\shellext\OCOverlays_x64.dll ShellIconOverlayIdentifiers-{0960F092-F328-48A3-B746-276B1E3C3722} - h:\owncloud\shellext\OCOverlays_x64.dll ShellIconOverlayIdentifiers-{0960F093-F328-48A3-B746-276B1E3C3722} - h:\owncloud\shellext\OCOverlays_x64.dll ShellIconOverlayIdentifiers-{0960F094-F328-48A3-B746-276B1E3C3722} - h:\owncloud\shellext\OCOverlays_x64.dll ShellIconOverlayIdentifiers-{0960F095-F328-48A3-B746-276B1E3C3722} - h:\owncloud\shellext\OCOverlays_x64.dll ShellIconOverlayIdentifiers-{0960F096-F328-48A3-B746-276B1E3C3722} - h:\owncloud\shellext\OCOverlays_x64.dll ShellIconOverlayIdentifiers-{0960F097-F328-48A3-B746-276B1E3C3722} - h:\owncloud\shellext\OCOverlays_x64.dll . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}] @Denied: (A) (Everyone) "Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3] @Denied: (A) (Everyone) . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0] "Key"="ActionsPane3" "Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2015-02-21 16:11:30 ComboFix-quarantined-files.txt 2015-02-21 15:11 . Vor Suchlauf: 8 Verzeichnis(se), 108.405.530.624 Bytes frei Nach Suchlauf: 11 Verzeichnis(se), 108.688.846.848 Bytes frei . - - End Of File - - 935DB61AFEEACDC1DC11E71CCFC4C5D5 A36C5E4F47E84449FF07ED3517B43A31 Danke für die Hilfe! |
![]() | #9 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Laptop über LAN an Router Internet bricht ab Downloade Dir bitte ![]()
Downloade Dir bitte ![]()
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #10 |
![]() | ![]() Laptop über LAN an Router Internet bricht ab Hi Schrauber, anbei die gewünschten Files. Kannst Du mir schon eine Info geben, was da los ist? Ich kann die Logfiles leider schlecht oder wohl eher gar nicht interpretieren. Danke Dir! MWB Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 22.02.2015 Suchlauf-Zeit: 08:52:45 Logdatei: MWB2.txt Administrator: Ja Version: Malware Datenbank: v2015.02.22.03 Rootkit Datenbank: v2015.02.20.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Chin Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 342505 Verstrichene Zeit: 25 Min, 0 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (Keine schädliche Elemente erkannt) Module: 0 (Keine schädliche Elemente erkannt) Registrierungsschlüssel: 0 (Keine schädliche Elemente erkannt) Registrierungswerte: 0 (Keine schädliche Elemente erkannt) Registrierungsdaten: 0 (Keine schädliche Elemente erkannt) Ordner: 0 (Keine schädliche Elemente erkannt) Dateien: 0 (Keine schädliche Elemente erkannt) Physische Sektoren: 0 (Keine schädliche Elemente erkannt) (end) Code:
ATTFilter # AdwCleaner v4.111 - Bericht erstellt 22/02/2015 um 09:30:36 # Aktualisiert 18/02/2015 von Xplode # Datenbank : 2015-02-18.3 [Server] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (x64) # Benutzername : Chin - CHIN-LP # Gestarted von : C:\Users\Chin\Desktop\AdwCleaner_4.111.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Datei Gelöscht : C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.olark.com_0.localstorage-journal Datei Gelöscht : C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.olark.com_0.localstorage ***** [ Geplante Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck Schlüssel Gelöscht : HKCU\Software\OCS ***** [ Internetbrowser ] ***** -\\ Internet Explorer v11.0.9600.17631 -\\ Mozilla Firefox v -\\ Google Chrome v40.0.2214.115 [C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://websearch.urz.uni-halle.de/cgi-bin/htsearch?words={searchTerms}&offset=0&config=htdig.std.search&matchesperpage=5 ************************* AdwCleaner[R0].txt - [1484 Bytes] - [22/02/2015 09:22:12] AdwCleaner[R1].txt - [1543 Bytes] - [22/02/2015 09:26:46] AdwCleaner[S0].txt - [1419 Bytes] - [22/02/2015 09:30:36] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1478 Bytes] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.4.2 (02.02.2015:1) OS: Windows 7 Home Premium x64 Ran by Chin on 22.02.2015 at 9:36:04,78 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6C680BAE-655C-4E3D-8FC4-E6A520C3D928} Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{6C680BAE-655C-4E3D-8FC4-E6A520C3D928} Successfully deleted: [Registry Key - Orphan] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6C680BAE-655C-4E3D-8FC4-E6A520C3D928} Successfully deleted: [Registry Key - Orphan] HKEY_CLASSES_ROOT\CLSID\{6C680BAE-655C-4E3D-8FC4-E6A520C3D928} ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 22.02.2015 at 9:41:24,65 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-02-2015 01 Ran by Chin (administrator) on CHIN-LP on 22-02-2015 09:45:57 Running from C:\Users\Chin\Desktop Loaded Profiles: Chin (Available profiles: Chin) Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: IE) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (AppEx Networks Corporation) C:\Program Files\AMD Quick Stream\AMDQuickStream.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe (Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (ATI Technologies Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2014-11-20] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-27] (AVAST Software) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2109952 2014-10-07] (Dominik Reichl) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2015-01-30] (Raptr, Inc) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-2240681411-2449356942-1176590736-1000\...\Run: [AppEx Accelerator UI] => C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [482528 2014-03-31] (AppEx Networks Corporation) ShellIconOverlayIdentifiers: [ OCError] -> {0960F090-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCErrorShared] -> {0960F091-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCOK] -> {0960F092-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCOKShared] -> {0960F093-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCSync] -> {0960F094-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCSyncShared] -> {0960F095-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCWarning] -> {0960F096-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCWarningShared] -> {0960F097-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software) ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-2240681411-2449356942-1176590736-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-2240681411-2449356942-1176590736-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: No Name -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> No File BHO: No Name -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> No File BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\Chin\AppData\Roaming\Mozilla\Firefox\Profiles\cw2aiiqm.default FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-01-22] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found] Chrome: ======= CHR HomePage: Default -> CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} CHR Profile: C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Drive) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-22] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-01-22] CHR Extension: (YouTube) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-22] CHR Extension: (Adblock Plus) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-01-22] CHR Extension: (Telegram) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\clhhggbfdinjmjhajaheehoeibfljjno [2015-01-22] CHR Extension: (Google Search) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-22] CHR Extension: (MightyText - SMS from PC & Text from PC / Mac) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkfhfaphfkopdgpbfkebjfcblcafcmpi [2015-01-22] CHR Extension: (ZenMate Security & Privacy VPN) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2015-01-22] CHR Extension: (Readium) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fepbnnnkkadjhjahcafoaglimekefifl [2015-01-22] CHR Extension: (AdBlock) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-01-22] CHR Extension: (Clearly) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\iooicodkiihhpojmmeghjclgihfjdjhj [2015-01-22] CHR Extension: (Hangouts) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nckgahadagoaajjgafhacjanaoiihapd [2015-01-22] CHR Extension: (Google Wallet) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-22] CHR Extension: (Citavi Picker) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohgndokldibnndfnjnagojmheejlengn [2015-01-26] CHR Extension: (chromeIPass) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ompiailgknfdndiefoaoiligalphfdae [2015-01-22] CHR Extension: (Evernote Web Clipper) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2015-01-22] CHR Extension: (Gmail) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-22] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-01-22] CHR HKLM-x32\...\Chrome\Extension: [ohgndokldibnndfnjnagojmheejlengn] - No Path ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-02-25] (Windows (R) Win 7 DDK provider) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-22] (AVAST Software) R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2015-01-22] (Avast Software) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2711736 2015-01-13] (Microsoft Corporation) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [294600 2014-11-21] (Advanced Micro Devices) R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [62152 2014-10-28] (Advanced Micro Devices, Inc.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R2 APXACC; C:\Windows\System32\DRIVERS\appexDrv.sys [229056 2014-10-28] (AppEx Networks Corporation) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-22] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2015-01-22] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-22] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-22] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-23] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-22] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-22] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-22] () S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2014-02-25] (Qualcomm Atheros) R3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [466136 2014-01-14] (Realsil Semiconductor Corporation) R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2015-01-22] (Avast Software) S3 catchme; \??\C:\blabla\catchme.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-22 09:41 - 2015-02-22 09:41 - 00001216 _____ () C:\Users\Chin\Desktop\JRT.txt 2015-02-22 09:35 - 2015-02-22 09:35 - 01388274 _____ (Thisisu) C:\Users\Chin\Desktop\JRT.exe 2015-02-22 09:33 - 2015-02-22 09:33 - 00001558 _____ () C:\Users\Chin\Desktop\AdwCleaner[S0].txt 2015-02-22 09:22 - 2015-02-22 09:30 - 00000000 ____D () C:\AdwCleaner 2015-02-22 09:20 - 2015-02-22 09:20 - 02126848 _____ () C:\Users\Chin\Desktop\AdwCleaner_4.111.exe 2015-02-22 09:18 - 2015-02-22 09:18 - 00001201 _____ () C:\Users\Chin\Desktop\MWB2.txt 2015-02-21 16:11 - 2015-02-21 16:11 - 00027042 _____ () C:\Users\Chin\Desktop\ComboFix.txt 2015-02-21 15:57 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe 2015-02-21 15:57 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe 2015-02-21 15:57 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2015-02-21 15:57 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2015-02-21 15:57 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2015-02-21 15:57 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe 2015-02-21 15:57 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe 2015-02-21 15:57 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe 2015-02-21 15:42 - 2015-02-21 16:11 - 00000000 ____D () C:\Qoobox 2015-02-21 15:42 - 2015-02-21 16:09 - 00000000 ____D () C:\Windows\erdnt 2015-02-21 15:39 - 2015-02-21 15:39 - 05611903 ____R (Swearware) C:\Users\Chin\Desktop\blabla.exe 2015-02-20 19:47 - 2015-02-20 19:48 - 00032285 _____ () C:\Users\Chin\Desktop\Result.txt 2015-02-20 19:47 - 2015-02-20 19:47 - 00401920 _____ (Farbar) C:\Users\Chin\Desktop\MiniToolBox.exe 2015-02-19 10:25 - 2015-02-19 10:25 - 00413650 _____ () C:\Users\Chin\Desktop\Gesamt.txt 2015-02-19 10:08 - 2015-02-19 10:08 - 00000470 _____ () C:\Users\Chin\Desktop\defogger_disable.log 2015-02-19 10:08 - 2015-02-19 10:08 - 00000000 _____ () C:\Users\Chin\defogger_reenable 2015-02-19 10:07 - 2015-02-19 10:07 - 00050477 _____ () C:\Users\Chin\Desktop\Defogger.exe 2015-02-19 10:06 - 2015-02-19 10:06 - 00001165 _____ () C:\Users\Chin\Desktop\MWB.txt 2015-02-19 09:34 - 2015-02-19 09:34 - 00001788 _____ () C:\Users\Chin\Desktop\Gmer.txt 2015-02-19 09:24 - 2015-02-19 09:24 - 00380416 _____ () C:\Users\Chin\Desktop\Gmer-19357.exe 2015-02-19 09:18 - 2015-02-19 09:19 - 00028746 _____ () C:\Users\Chin\Desktop\Addition.txt 2015-02-19 09:17 - 2015-02-22 09:45 - 00016761 _____ () C:\Users\Chin\Desktop\FRST.txt 2015-02-19 09:16 - 2015-02-22 09:45 - 00000000 ____D () C:\FRST 2015-02-19 09:08 - 2015-02-19 09:09 - 02086912 _____ (Farbar) C:\Users\Chin\Desktop\FRST64.exe 2015-02-19 09:07 - 2015-02-19 09:07 - 00141242 _____ () C:\Users\Chin\Desktop\OTL.Txt 2015-02-19 09:07 - 2015-02-19 09:07 - 00060886 _____ () C:\Users\Chin\Desktop\Extras_OTL.Txt 2015-02-19 08:52 - 2015-02-19 08:52 - 00602112 _____ (OldTimer Tools) C:\Users\Chin\Desktop\otl.exe 2015-02-18 19:56 - 2015-02-22 08:52 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-02-18 19:56 - 2015-02-18 19:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-02-18 19:56 - 2015-02-18 19:56 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-02-18 19:56 - 2015-02-18 19:56 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-02-18 19:56 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-02-18 19:56 - 2014-11-21 06:14 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-02-18 19:56 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-02-17 12:30 - 2015-02-18 20:26 - 00000000 ___RD () C:\Users\Chin\Dropbox 2015-02-17 12:29 - 2015-02-17 12:29 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-02-17 12:26 - 2015-02-19 07:11 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Dropbox 2015-02-12 12:11 - 2015-02-12 12:11 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2015-02-12 12:11 - 2015-02-12 12:11 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client 2015-02-12 08:50 - 2015-02-12 08:59 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2015-02-12 08:50 - 2015-02-12 08:55 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2015-02-12 08:50 - 2015-02-12 08:50 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk 2015-02-12 08:50 - 2015-02-12 08:50 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2015-02-12 08:50 - 2015-02-12 08:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 2015-02-12 08:50 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2015-02-12 08:06 - 2015-01-23 05:42 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-02-12 08:06 - 2015-01-23 05:41 - 06041600 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-02-12 08:06 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-02-12 08:06 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-02-11 22:03 - 2015-02-19 14:32 - 00000000 ____D () C:\Users\Chin\AppData\Local\CrashDumps 2015-02-11 12:51 - 2015-02-11 12:59 - 00000000 ____D () C:\Users\Chin\AppData\Local\calibre-cache 2015-02-11 12:43 - 2015-02-11 12:59 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\calibre 2015-02-11 12:42 - 2015-02-11 12:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management 2015-02-11 12:42 - 2015-02-11 12:43 - 00000000 ____D () C:\Program Files\Calibre2 2015-02-11 12:37 - 2015-01-10 07:48 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-02-11 12:37 - 2015-01-10 07:48 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-02-11 12:37 - 2015-01-10 07:48 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-02-11 12:37 - 2015-01-10 07:48 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-02-11 12:37 - 2015-01-10 07:48 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-02-11 12:37 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-02-11 12:37 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-02-11 12:37 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-02-11 12:37 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-02-11 12:36 - 2015-01-14 06:47 - 00389808 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-02-11 12:36 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-02-11 12:36 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-02-11 12:36 - 2015-01-12 04:05 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-02-11 12:36 - 2015-01-12 04:05 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-02-11 12:36 - 2015-01-12 03:49 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-02-11 12:36 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-02-11 12:36 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-02-11 12:36 - 2015-01-12 03:48 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-02-11 12:36 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-02-11 12:36 - 2015-01-12 03:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-02-11 12:36 - 2015-01-12 03:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-02-11 12:36 - 2015-01-12 03:36 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-02-11 12:36 - 2015-01-12 03:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-02-11 12:36 - 2015-01-12 03:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-02-11 12:36 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-02-11 12:36 - 2015-01-12 03:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-02-11 12:36 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-02-11 12:36 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-02-11 12:36 - 2015-01-12 03:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-02-11 12:36 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-02-11 12:36 - 2015-01-12 03:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-02-11 12:36 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-02-11 12:36 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-02-11 12:36 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-02-11 12:36 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-02-11 12:36 - 2015-01-12 03:04 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-02-11 12:36 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-02-11 12:36 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-02-11 12:36 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-02-11 12:36 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-02-11 12:36 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-02-11 12:36 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-02-11 12:36 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-02-11 12:36 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-02-11 12:36 - 2015-01-12 02:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-02-11 12:36 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-02-11 12:36 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-02-11 12:36 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-02-11 12:36 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-02-11 12:36 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-02-11 12:36 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-02-11 12:36 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-02-11 12:36 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-02-11 12:36 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-02-11 12:36 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-02-11 12:36 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-02-11 12:36 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-02-11 12:36 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-02-11 12:36 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-02-11 12:36 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-02-11 12:36 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-02-11 12:36 - 2015-01-10 07:48 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-02-11 12:36 - 2015-01-10 07:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-02-11 12:36 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-02-11 12:36 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-02-11 12:36 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-02-11 12:35 - 2015-01-15 09:14 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-02-11 12:35 - 2015-01-15 09:14 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-02-11 12:35 - 2015-01-15 09:09 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-02-11 12:35 - 2015-01-15 09:09 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-02-11 12:35 - 2015-01-15 09:09 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-02-11 12:35 - 2015-01-15 09:09 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-02-11 12:35 - 2015-01-15 09:09 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-02-11 12:35 - 2015-01-15 09:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-02-11 12:35 - 2015-01-15 09:04 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-02-11 12:35 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-02-11 12:35 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-02-11 12:35 - 2015-01-15 08:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-02-11 12:35 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-02-11 12:35 - 2015-01-15 05:22 - 00458824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-02-11 12:35 - 2015-01-13 04:10 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2015-02-11 12:35 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2015-02-11 12:34 - 2015-01-15 09:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-02-11 12:34 - 2015-01-15 09:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-02-11 12:34 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-02-11 12:34 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-02-11 12:34 - 2015-01-14 07:09 - 05554112 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-02-11 12:34 - 2015-01-14 07:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-02-11 12:34 - 2015-01-14 07:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-02-11 12:34 - 2015-01-14 07:04 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-02-11 12:34 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2015-02-11 12:34 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2015-02-11 12:34 - 2015-01-14 06:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-02-11 12:34 - 2014-12-08 04:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-02-11 12:34 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-02-11 12:33 - 2015-01-09 03:03 - 03201536 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-02-08 14:54 - 2015-02-19 07:59 - 00000000 ____D () C:\Users\Chin\Documents\Bluetooth Folder 2015-02-07 19:46 - 2015-02-15 22:01 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\vlc 2015-02-03 19:04 - 2015-02-03 19:04 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2015-02-03 11:53 - 2015-02-03 11:53 - 00000000 ____D () C:\Users\Chin\Documents\Telekom 2015-02-01 18:17 - 2015-02-01 18:17 - 00000000 ____D () C:\Users\Chin\Desktop\franzstrich.de 2015-01-28 07:03 - 2013-04-10 00:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-01-28 07:03 - 2013-04-02 23:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-01-27 18:07 - 2015-02-17 12:39 - 00000000 ____D () C:\Users\Chin\owncloud 2015-01-27 18:03 - 2015-01-27 18:03 - 00000547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ownCloud.lnk 2015-01-27 18:02 - 2015-01-27 18:02 - 00000000 ____D () C:\Program Files (x86)\ownCloud 2015-01-27 00:32 - 2015-02-12 17:35 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\FileZilla 2015-01-26 23:07 - 2015-01-28 13:26 - 00000600 _____ () C:\Users\Chin\AppData\Local\PUTTY.RND 2015-01-26 19:50 - 2015-01-26 19:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Writer 2015-01-26 19:50 - 2015-01-26 19:50 - 00000000 ____D () C:\Program Files (x86)\ImageWriter 2015-01-26 14:54 - 2015-01-26 14:54 - 00000000 ____D () C:\ProgramData\Gibraltar 2015-01-26 14:50 - 2015-01-26 14:50 - 00000000 ____D () C:\ProgramData\Sun 2015-01-26 14:50 - 2015-01-26 14:50 - 00000000 ____D () C:\ProgramData\Oracle 2015-01-26 14:39 - 2015-01-26 14:39 - 00000000 ____D () C:\Users\Chin\Documents\Benutzerdefinierte Office-Vorlagen 2015-01-26 13:30 - 2015-01-26 13:30 - 00000000 ____D () C:\Users\Chin\AppData\Local\Swiss Academic Software 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Zimmermann 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Zeitschriften 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Wohnung 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Weihnachtsfeier Psychos 2011 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Wahlen 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Wachstumsökonomie 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\VPV-Versicherung 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Vortrag Projektmanagement 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Volition 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Versicherung Schadensfall Hunde 2015-01-26 13:10 - 2014-10-16 15:44 - 00040893 _____ () C:\Users\Chin\Documents\Unbenannt.wma 2015-01-26 13:10 - 2007-04-23 01:14 - 41307085 ____R () C:\Users\Chin\Documents\VirtualCD + Keyg.rar 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Two Worlds Saves 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Trainingsplan 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Tattoo 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Tagung Nürnberg 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\StudIp 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Square Enix 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\SPSSInc 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Software Download 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Simpol 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\self-html 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Schadensfall Post 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Runes of Magic 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\route 2015-01-26 13:09 - 2014-11-07 10:34 - 1028653056 _____ () C:\Users\Chin\Documents\ubuntu-14.04.1-desktop-amd64.iso 2015-01-26 13:09 - 2013-11-28 07:56 - 00010839 _____ () C:\Users\Chin\Documents\training.xlsx 2015-01-26 13:09 - 2010-10-10 12:24 - 00063567 _____ () C:\Users\Chin\Documents\studip.ics 2015-01-26 13:08 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\rom 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Rentenversicherung 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Pronto-Pizza 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Praktikumsbericht 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Praktikum Psychatrie 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Praktikum BW 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Praktikum 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\postbank 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\PersBackup 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\pebl-exp.0.11 2015-01-26 13:08 - 2012-11-22 19:29 - 01335612 _____ () C:\Users\Chin\Documents\perso.odg 2015-01-26 13:08 - 2011-02-27 21:27 - 05303303 _____ () C:\Users\Chin\Documents\papa kindergeld.odg 2015-01-26 13:07 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Outlook-Dateien 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\OpenOffice.org 3.3 (de) Installation Files 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\OneNote-Notizbücher 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\oma tele 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Nexus Mod Manager 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\My Digital Editions 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Mietvertrag Lessingstr. 20 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Microsoft office Rechnung 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\michael 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Meine Datenquellen 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Loge 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\League of Legends 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Kündigung McFit 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Kündigung LaFamilia 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Kindergeld 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Karten 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\kalender 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Integrales Forum 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\HUK 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\HTML 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\font 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Fahrraddiebstahl Tabea 2015-01-26 13:06 - 2014-11-30 19:30 - 01869971 _____ () C:\Users\Chin\Documents\jabref.txt 2015-01-26 13:06 - 2014-01-12 14:03 - 09123877 _____ () C:\Users\Chin\Documents\Fit ohne Geräte_ Trainieren mit dem eigenen Körpergewicht - Clark, Joshua.epub 2015-01-26 13:06 - 2011-05-07 11:04 - 00011956 _____ () C:\Users\Chin\Documents\Kündigung Wohnung.odt 2015-01-26 13:05 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Exes 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\Evernote 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\Erasmus 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\DVDVideoSoft 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\DIE SIEDLER - DEdK 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\Deutschland Stipendium 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\DayZ 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\Criterion Games 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\cleverfit halle 2015-01-26 13:05 - 2013-11-10 15:36 - 993792096 _____ () C:\Users\Chin\Documents\EsPeEsEs 21.zip 2015-01-26 13:05 - 2008-08-29 09:32 - 00000143 _____ () C:\Users\Chin\Documents\Click Here to Pre-Order Red Alert 3.url 2015-01-26 13:04 - 2015-01-26 13:04 - 00000000 ____D () C:\Users\Chin\Documents\CCleaner 2015-01-26 13:02 - 2015-02-11 14:32 - 00000000 ____D () C:\Users\Chin\Documents\Calibre-Springer 2015-01-26 13:01 - 2015-01-26 13:02 - 00000000 ____D () C:\Users\Chin\Documents\Calibre-Bibliothek 2015-01-26 13:00 - 2015-01-26 13:01 - 00000000 ____D () C:\Users\Chin\Documents\Bund Überbleibsel 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bücherliste 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bücher 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Briefe 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\BlackBerry 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\BKK 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bewerbungsunterlagen generell 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bewerbung Praktikum Bundeswehr Königsbrück 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bewerbung Master 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bewerbung Klinik Bernbrug 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Beschäftigung Bib Brandbergweg 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Befragung Offshore 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bayreuth 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Banished 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bafög 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Backups 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Artikel 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\ADAC 2015-01-26 13:00 - 2014-10-18 07:56 - 00012606 _____ () C:\Users\Chin\Documents\101814.kdbx 2015-01-26 13:00 - 2014-09-23 15:27 - 00012014 _____ () C:\Users\Chin\Documents\092014.kdbx 2015-01-26 13:00 - 2011-09-10 07:51 - 00015504 _____ () C:\Users\Chin\Documents\anschreiben 901011.odt 2015-01-26 12:56 - 2015-02-17 12:52 - 00000000 ____D () C:\Users\Chin\Documents\Citavi 4 2015-01-26 12:56 - 2015-02-09 17:47 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Swiss Academic Software 2015-01-26 12:56 - 2015-01-26 12:56 - 00000000 ____D () C:\ProgramData\Swiss Academic Software 2015-01-26 12:43 - 2015-01-26 12:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Citavi 4 2015-01-26 12:42 - 2015-01-26 12:43 - 00000000 ____D () C:\Program Files (x86)\Citavi 4 2015-01-26 12:40 - 2015-01-26 12:40 - 00000000 ____D () C:\Users\Chin\AppData\Local\Downloaded Installations 2015-01-24 09:19 - 2015-01-24 09:19 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\EFSoftware 2015-01-24 09:14 - 2015-01-24 09:14 - 00000000 ____D () C:\Program Files\VideoLAN 2015-01-24 08:57 - 2015-01-24 08:57 - 00000000 ____D () C:\Program Files (x86)\Total Commander 2015-01-24 08:56 - 2015-01-24 08:56 - 00000000 ____D () C:\Users\Chin\AppData\Local\Adobe 2015-01-24 08:53 - 2015-01-24 08:53 - 00000000 ____D () C:\Users\Chin\AppData\Local\javasharedresources 2015-01-24 08:53 - 2015-01-24 08:53 - 00000000 ____D () C:\Users\Chin\.spss 2015-01-24 08:49 - 2015-01-24 08:49 - 00000000 ___HD () C:\Users\Chin\InstallAnywhere 2015-01-24 08:49 - 2015-01-24 08:49 - 00000000 ___HD () C:\Program Files (x86)\Zero G Registry 2015-01-24 08:49 - 2015-01-24 08:49 - 00000000 ____D () C:\ProgramData\SafeNet Sentinel 2015-01-24 08:49 - 2015-01-24 08:49 - 00000000 ____D () C:\Program Files\Common Files\IBM 2015-01-24 08:48 - 2015-01-24 08:48 - 00000000 ____D () C:\ProgramData\SPSS 2015-01-24 08:48 - 2015-01-24 08:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics 2015-01-24 08:47 - 2015-01-24 08:47 - 00000000 ____D () C:\Program Files (x86)\IBM 2015-01-24 08:46 - 2015-01-24 08:46 - 00001025 _____ () C:\Windows\SysWOW64\sysprs7.tgz 2015-01-24 08:46 - 2015-01-24 08:46 - 00001025 _____ () C:\Windows\SysWOW64\sysprs7.dll 2015-01-24 08:46 - 2015-01-24 08:46 - 00000219 _____ () C:\Windows\SysWOW64\lsprst7.tgz 2015-01-24 08:46 - 2015-01-24 08:46 - 00000016 ____H () C:\Windows\SysWOW64\servdat.slm 2015-01-23 18:19 - 2014-09-05 03:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-01-23 18:19 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-01-23 18:19 - 2012-02-11 07:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2015-01-23 18:19 - 2012-02-11 07:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe 2015-01-23 18:19 - 2011-02-25 07:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-01-23 18:19 - 2011-02-25 06:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-01-23 18:13 - 2015-01-23 18:13 - 00000000 ____D () C:\Users\Chin\AppData\Local\BigHugeEngine 2015-01-23 13:03 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\My Games 2015-01-23 11:55 - 2015-01-23 11:55 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2015-01-23 11:49 - 2015-01-23 11:59 - 00011754 _____ () C:\Windows\DPINST.LOG 2015-01-23 11:44 - 2015-01-23 11:59 - 00001506 _____ () C:\Windows\Synaptics.log 2015-01-23 11:42 - 2015-01-23 11:42 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2015-01-23 11:41 - 2015-01-23 11:41 - 00000000 ____D () C:\Program Files (x86)\Adobe 2015-01-23 11:29 - 2015-01-23 11:29 - 00000000 __SHD () C:\Users\Chin\AppData\Local\EmieUserList 2015-01-23 11:29 - 2015-01-23 11:29 - 00000000 __SHD () C:\Users\Chin\AppData\Local\EmieSiteList 2015-01-23 11:29 - 2015-01-23 11:29 - 00000000 __SHD () C:\Users\Chin\AppData\Local\EmieBrowserModeList 2015-01-23 11:10 - 2015-01-23 11:10 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\library_dir 2015-01-23 11:10 - 2015-01-23 11:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2015-01-23 11:08 - 2015-02-22 09:32 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Raptr 2015-01-23 11:08 - 2015-02-01 18:11 - 00000000 ____D () C:\Program Files (x86)\Raptr 2015-01-23 11:08 - 2015-01-23 11:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Quick Stream 2015-01-23 11:08 - 2015-01-23 11:08 - 00000000 ____D () C:\Program Files\AMD Quick Stream 2015-01-23 09:59 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2015-01-23 09:59 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2015-01-23 09:59 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2015-01-23 09:59 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2015-01-23 09:59 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2015-01-23 09:59 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2015-01-23 09:59 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2015-01-23 09:59 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2015-01-23 09:59 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2015-01-23 09:59 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2015-01-23 09:59 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2015-01-23 09:59 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2015-01-23 09:59 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2015-01-23 09:59 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2015-01-23 09:59 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2015-01-23 09:59 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2015-01-23 09:59 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2015-01-23 09:59 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2015-01-23 09:59 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2015-01-23 09:59 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2015-01-23 09:59 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2015-01-23 09:59 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2015-01-23 09:59 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2015-01-23 09:59 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2015-01-23 09:59 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2015-01-23 09:59 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2015-01-23 09:59 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2015-01-23 09:59 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2015-01-23 09:59 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2015-01-23 09:59 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2015-01-23 09:59 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2015-01-23 09:59 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2015-01-23 09:59 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2015-01-23 09:59 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2015-01-23 09:59 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2015-01-23 09:59 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2015-01-23 09:59 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2015-01-23 09:59 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2015-01-23 09:59 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2015-01-23 09:59 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2015-01-23 09:59 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2015-01-23 09:59 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2015-01-23 09:59 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2015-01-23 09:59 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2015-01-23 09:59 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2015-01-23 09:59 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2015-01-23 09:59 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2015-01-23 09:59 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2015-01-23 09:59 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2015-01-23 09:59 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2015-01-23 09:59 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2015-01-23 09:59 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2015-01-23 09:59 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2015-01-23 09:59 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2015-01-23 09:59 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2015-01-23 09:59 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2015-01-23 09:59 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2015-01-23 09:59 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2015-01-23 09:59 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2015-01-23 09:59 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2015-01-23 09:58 - 2015-01-23 18:12 - 00027803 _____ () C:\Windows\DirectX.log 2015-01-23 09:58 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2015-01-23 09:58 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2015-01-23 09:58 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2015-01-23 09:58 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2015-01-23 09:58 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2015-01-23 09:58 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2015-01-23 09:58 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2015-01-23 09:58 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2015-01-23 09:58 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2015-01-23 09:58 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2015-01-23 09:58 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2015-01-23 09:58 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2015-01-23 09:58 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2015-01-23 09:58 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2015-01-23 09:58 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2015-01-23 09:58 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2015-01-23 09:58 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2015-01-23 09:58 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2015-01-23 09:58 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2015-01-23 09:58 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2015-01-23 09:58 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2015-01-23 09:58 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2015-01-23 09:58 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2015-01-23 09:58 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2015-01-23 09:58 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2015-01-23 09:58 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2015-01-23 09:58 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2015-01-23 09:58 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2015-01-23 09:58 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2015-01-23 09:58 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2015-01-23 09:58 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2015-01-23 09:58 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2015-01-23 09:58 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2015-01-23 09:58 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2015-01-23 09:56 - 2014-12-11 18:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-01-23 09:09 - 2015-01-23 09:09 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2015-01-23 09:09 - 2015-01-23 09:09 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2015-01-23 09:03 - 2015-01-23 09:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2015-01-23 09:00 - 2015-02-22 08:55 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2015-01-23 08:38 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2015-01-23 08:38 - 2014-05-08 10:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-22 09:39 - 2009-07-14 05:45 - 00015472 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-02-22 09:39 - 2009-07-14 05:45 - 00015472 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-02-22 09:32 - 2015-01-22 16:59 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-02-22 09:31 - 2015-01-22 20:29 - 01633343 _____ () C:\Windows\WindowsUpdate.log 2015-02-22 09:31 - 2015-01-22 14:36 - 00020488 _____ () C:\Windows\PFRO.log 2015-02-22 09:31 - 2015-01-22 13:49 - 00065536 _____ () C:\Windows\system32\spu_storage.bin 2015-02-22 09:31 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-02-22 09:31 - 2009-07-14 05:51 - 00025871 _____ () C:\Windows\setupact.log 2015-02-22 09:28 - 2015-01-22 16:59 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-02-21 16:08 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini 2015-02-19 10:08 - 2015-01-22 13:36 - 00000000 ____D () C:\Users\Chin 2015-02-19 08:41 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF 2015-02-19 08:05 - 2015-01-22 14:12 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2015-02-19 07:58 - 2009-07-14 18:58 - 00699342 _____ () C:\Windows\system32\perfh007.dat 2015-02-19 07:58 - 2009-07-14 18:58 - 00149450 _____ () C:\Windows\system32\perfc007.dat 2015-02-19 07:58 - 2009-07-14 06:13 - 01619284 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-02-18 19:54 - 2015-01-22 22:08 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\KeePass 2015-02-14 09:30 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2015-02-11 13:17 - 2009-07-14 05:45 - 00437584 _____ () C:\Windows\system32\FNTCACHE.DAT 2015-02-11 13:11 - 2015-01-22 14:33 - 00000000 ____D () C:\Windows\system32\MRT 2015-02-11 13:00 - 2015-01-22 14:33 - 116773704 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-02-11 12:58 - 2015-01-22 17:08 - 00000000 ____D () C:\Program Files (x86)\Steam 2015-02-06 21:23 - 2015-01-22 16:59 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-02-06 21:23 - 2015-01-22 16:59 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-01-29 14:50 - 2015-01-22 13:37 - 00000000 ____D () C:\Users\Chin\AppData\Local\VirtualStore 2015-01-27 21:19 - 2015-01-22 21:36 - 00000000 ____D () C:\Users\Chin\Documents\keepass save 2015-01-27 18:03 - 2015-01-22 13:43 - 00000000 ____D () C:\ProgramData\Package Cache 2015-01-24 09:10 - 2015-01-22 13:50 - 00111776 _____ () C:\Users\Chin\AppData\Local\GDIPFONTCACHEV1.DAT 2015-01-24 08:56 - 2015-01-22 21:09 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Adobe 2015-01-23 18:21 - 2015-01-22 13:45 - 01593564 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2015-01-23 11:53 - 2015-01-22 23:10 - 00000000 ____D () C:\ProgramData\Adobe 2015-01-23 11:06 - 2015-01-22 13:42 - 00000000 ____D () C:\Program Files\AMD 2015-01-23 09:09 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2015-01-23 08:31 - 2015-01-22 14:11 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys ==================== Files in the root of some directories ======= 2015-01-26 23:07 - 2015-01-28 13:26 - 0000600 _____ () C:\Users\Chin\AppData\Local\PUTTY.RND Some content of TEMP: ==================== C:\Users\Chin\AppData\Local\Temp\Quarantine.exe C:\Users\Chin\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-02-14 09:21 ==================== End Of Log ============================ --- --- --- Danke! |
![]() | #11 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Laptop über LAN an Router Internet bricht abESET Online Scanner
Downloade Dir bitte ![]()
und ein frisches FRST log bitte. Noch Probleme? ![]()
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #12 |
![]() | ![]() Laptop über LAN an Router Internet bricht ab Hier sind die Logfiles. Ich weiß leider nicht ob es noch Probleme gibt, daher frage ich ja hier, ob sich was ergeben hat oder ob es schon Hinweise gibt, worauf das Problem zurückzuführen sei. Ich kann mit den Logs nur wirklich wenig anfangen :-/ Ich möchte aber nicht unhöflich klingen und bin sehr dankbar für die Hilfe, insbesondere in Anbetracht der Tatsache, dass dies alles freiwillig geschieht, ich keine große Hilfe bin und ich auch nicht weiß, ob sich das Problem durch Deine Hilfe schon behoben hat. Also hier die Logs, vielleicht ist ja alles wieder in Ordnung :-) und wirklich, vielen Dank für die Zeit ESET Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe= # OnlineScanner.ocx= # api_version=3.0.2 # EOSSerial=d80f08eb0fb6be428edcb31fc179fbb9 # engine=22593 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2015-02-22 07:14:34 # local_time=2015-02-22 08:14:34 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='avast! Antivirus' # compatibility_mode=783 16777213 71 94 2211730 2703935 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 177841 176262324 0 0 # scanned=168570 # found=10 # cleaned=0 # scan_time=6015 sh=E341AC3E4CB6A9312D9649F04DED7C8DE83F981B ft=1 fh=bdd7afd760e25730 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Chin\Documents\Exes\FreeAudioCDToMP3Converter1.3.12.908.exe" sh=041EF710959447CD95623AD3E5EE14969DE65C3F ft=1 fh=d52e7fe20e7e5917 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Chin\Documents\Exes\FreeStudio533.exe" sh=BEB2872C5EE9890C656B293C5EFBAD0220B4E538 ft=1 fh=3852d8d68dbe73c3 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Chin\Documents\Exes\FreeYouTubeToMP3Converter31014.exe" sh=C5388074F31DF07BE6C1DDEF0D762EC5A8819E77 ft=1 fh=fcf810b56806cfeb vn="Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Chin\Documents\Exes\FreeYouTubeToMp3Converter39.exe" sh=C95708F43A748061D4C31D39204F5D2FAAE9410D ft=1 fh=4d6416c07f3bf995 vn="Variante von Win32/Toolbar.Conduit.AI evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Chin\Documents\Exes\isobuster_3_0.exe" sh=56B73A78C28AF357F18FC9CB1402B5EB9359E6DB ft=1 fh=16883c458a85e77c vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Chin\Documents\Exes\zaSetupWeb_101_065_000.exe" sh=F704A4253111993D9C9F0CFEF6FC693FBDEA011F ft=1 fh=e7e2fb16ce752c3a vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Chin\Documents\Exes\zaSetupWeb_101_079_000.exe" sh=C9352C798D66F96D4F894C2BC2CDAD192B662D62 ft=1 fh=7209dc7ad243ecb3 vn="Variante von Win32/Toolbar.Conduit.AI evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Chin\Documents\Exes\zaSetup_92_105_000_de.exe" sh=C5388074F31DF07BE6C1DDEF0D762EC5A8819E77 ft=1 fh=fcf810b56806cfeb vn="Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Chin\Documents\Software Download\FreeYouTubeToMp3Converter39.exe" sh=C9352C798D66F96D4F894C2BC2CDAD192B662D62 ft=1 fh=7209dc7ad243ecb3 vn="Variante von Win32/Toolbar.Conduit.AI evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Chin\Documents\Software Download\zaSetup_92_105_000_de.exe" Code:
ATTFilter Results of screen317's Security Check version 0.99.96 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` avast! Antivirus Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Spybot - Search & Destroy Java 64-bit 8 Update 31 Adobe Reader XI Mozilla Thunderbird (31.4.0) Google Chrome (40.0.2214.111) Google Chrome (40.0.2214.115) ````````Process Check: objlist.exe by Laurent```````` Spybot Teatimer.exe is disabled! AVAST Software Avast AvastSvc.exe AVAST Software Avast avastui.exe AVAST Software Avast ng vbox\AvastVBoxSVC.exe AVAST Software Avast ng ngservice.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 22-02-2015 Ran by Chin (administrator) on CHIN-LP on 22-02-2015 21:21:30 Running from C:\Users\Chin\Desktop Loaded Profiles: Chin (Available profiles: Chin) Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: IE) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (AppEx Networks Corporation) C:\Program Files\AMD Quick Stream\AMDQuickStream.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (ATI Technologies Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2014-11-20] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5227112 2015-01-27] (AVAST Software) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2109952 2014-10-07] (Dominik Reichl) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr\raptrstub.exe [55568 2015-01-30] (Raptr, Inc) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-21-2240681411-2449356942-1176590736-1000\...\Run: [AppEx Accelerator UI] => C:\Program Files\AMD Quick Stream\AMDQuickStream.exe [482528 2014-03-31] (AppEx Networks Corporation) ShellIconOverlayIdentifiers: [ OCError] -> {0960F090-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCErrorShared] -> {0960F091-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCOK] -> {0960F092-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCOKShared] -> {0960F093-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCSync] -> {0960F094-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCSyncShared] -> {0960F095-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCWarning] -> {0960F096-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: [ OCWarningShared] -> {0960F097-F328-48A3-B746-276B1E3C3722} => H:\ownCloud\shellext\OCOverlays_x64.dll No File ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Chin\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software) ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-2240681411-2449356942-1176590736-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-2240681411-2449356942-1176590736-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: No Name -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> No File BHO: No Name -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> No File BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\Chin\AppData\Roaming\Mozilla\Firefox\Profiles\cw2aiiqm.default FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-01-22] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} [Not Found] Chrome: ======= CHR HomePage: Default -> CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} CHR Profile: C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Drive) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-01-22] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-01-22] CHR Extension: (YouTube) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-01-22] CHR Extension: (Adblock Plus) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-01-22] CHR Extension: (Telegram) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\clhhggbfdinjmjhajaheehoeibfljjno [2015-01-22] CHR Extension: (Google Search) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-01-22] CHR Extension: (MightyText - SMS from PC & Text from PC / Mac) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkfhfaphfkopdgpbfkebjfcblcafcmpi [2015-01-22] CHR Extension: (ZenMate Security & Privacy VPN) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdcgdnkidjaadafnichfpabhfomcebme [2015-01-22] CHR Extension: (Readium) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fepbnnnkkadjhjahcafoaglimekefifl [2015-01-22] CHR Extension: (AdBlock) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-01-22] CHR Extension: (Clearly) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\iooicodkiihhpojmmeghjclgihfjdjhj [2015-01-22] CHR Extension: (Hangouts) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nckgahadagoaajjgafhacjanaoiihapd [2015-01-22] CHR Extension: (Google Wallet) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-01-22] CHR Extension: (Citavi Picker) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ohgndokldibnndfnjnagojmheejlengn [2015-01-26] CHR Extension: (chromeIPass) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ompiailgknfdndiefoaoiligalphfdae [2015-01-22] CHR Extension: (Evernote Web Clipper) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2015-01-22] CHR Extension: (Gmail) - C:\Users\Chin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-01-22] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-01-22] CHR HKLM-x32\...\Chrome\Extension: [ohgndokldibnndfnjnagojmheejlengn] - https://clients2.google.com/service/update2/crx ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [319104 2014-02-25] (Windows (R) Win 7 DDK provider) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2015-01-22] (AVAST Software) R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4012248 2015-01-22] (Avast Software) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2711736 2015-01-13] (Microsoft Corporation) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 amdacpksd; C:\Windows\system32\drivers\amdacpksd.sys [294600 2014-11-21] (Advanced Micro Devices) R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [62152 2014-10-28] (Advanced Micro Devices, Inc.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R2 APXACC; C:\Windows\System32\DRIVERS\appexDrv.sys [229056 2014-10-28] (AppEx Networks Corporation) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2015-01-22] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2015-01-22] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2015-01-22] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2015-01-22] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2015-01-23] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2015-01-22] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2015-01-22] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2015-01-22] () S3 BTATH_LWFLT; C:\Windows\System32\DRIVERS\btath_lwflt.sys [77464 2014-02-25] (Qualcomm Atheros) R3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [466136 2014-01-14] (Realsil Semiconductor Corporation) R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [271752 2015-01-22] (Avast Software) S3 catchme; \??\C:\blabla\catchme.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-22 21:19 - 2015-02-22 21:19 - 00000000 ____D () C:\Users\Chin\Desktop\FRST-OlderVersion 2015-02-22 21:18 - 2015-02-22 21:18 - 00000998 _____ () C:\Users\Chin\Desktop\checkup.txt 2015-02-22 21:15 - 2015-02-22 21:15 - 00852594 _____ () C:\Users\Chin\Desktop\SecurityCheck.exe 2015-02-22 21:12 - 2015-02-22 21:12 - 00001195 _____ () C:\Users\Chin\Desktop\1.txt 2015-02-22 18:23 - 2015-02-22 18:23 - 00000000 ____D () C:\Program Files (x86)\ESET 2015-02-22 18:22 - 2015-02-22 18:22 - 02347384 _____ (ESET) C:\Users\Chin\Desktop\esetsmartinstaller_deu.exe 2015-02-22 09:49 - 2015-02-22 09:49 - 00075891 _____ () C:\Users\Chin\Desktop\FRST2.txt 2015-02-22 09:41 - 2015-02-22 09:41 - 00001216 _____ () C:\Users\Chin\Desktop\JRT.txt 2015-02-22 09:35 - 2015-02-22 09:35 - 01388274 _____ (Thisisu) C:\Users\Chin\Desktop\JRT.exe 2015-02-22 09:33 - 2015-02-22 09:33 - 00001558 _____ () C:\Users\Chin\Desktop\AdwCleaner[S0].txt 2015-02-22 09:22 - 2015-02-22 09:30 - 00000000 ____D () C:\AdwCleaner 2015-02-22 09:20 - 2015-02-22 09:20 - 02126848 _____ () C:\Users\Chin\Desktop\AdwCleaner_4.111.exe 2015-02-22 09:18 - 2015-02-22 09:18 - 00001201 _____ () C:\Users\Chin\Desktop\MWB2.txt 2015-02-21 16:11 - 2015-02-21 16:11 - 00027042 _____ () C:\Users\Chin\Desktop\ComboFix.txt 2015-02-21 15:57 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe 2015-02-21 15:57 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe 2015-02-21 15:57 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2015-02-21 15:57 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2015-02-21 15:57 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2015-02-21 15:57 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe 2015-02-21 15:57 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe 2015-02-21 15:57 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe 2015-02-21 15:42 - 2015-02-21 16:11 - 00000000 ____D () C:\Qoobox 2015-02-21 15:42 - 2015-02-21 16:09 - 00000000 ____D () C:\Windows\erdnt 2015-02-21 15:39 - 2015-02-21 15:39 - 05611903 ____R (Swearware) C:\Users\Chin\Desktop\blabla.exe 2015-02-20 19:47 - 2015-02-20 19:48 - 00032285 _____ () C:\Users\Chin\Desktop\Result.txt 2015-02-20 19:47 - 2015-02-20 19:47 - 00401920 _____ (Farbar) C:\Users\Chin\Desktop\MiniToolBox.exe 2015-02-19 10:25 - 2015-02-19 10:25 - 00413650 _____ () C:\Users\Chin\Desktop\Gesamt.txt 2015-02-19 10:08 - 2015-02-19 10:08 - 00000470 _____ () C:\Users\Chin\Desktop\defogger_disable.log 2015-02-19 10:08 - 2015-02-19 10:08 - 00000000 _____ () C:\Users\Chin\defogger_reenable 2015-02-19 10:07 - 2015-02-19 10:07 - 00050477 _____ () C:\Users\Chin\Desktop\Defogger.exe 2015-02-19 10:06 - 2015-02-19 10:06 - 00001165 _____ () C:\Users\Chin\Desktop\MWB.txt 2015-02-19 09:34 - 2015-02-19 09:34 - 00001788 _____ () C:\Users\Chin\Desktop\Gmer.txt 2015-02-19 09:24 - 2015-02-19 09:24 - 00380416 _____ () C:\Users\Chin\Desktop\Gmer-19357.exe 2015-02-19 09:18 - 2015-02-19 09:19 - 00028746 _____ () C:\Users\Chin\Desktop\Addition.txt 2015-02-19 09:17 - 2015-02-22 21:21 - 00017773 _____ () C:\Users\Chin\Desktop\FRST.txt 2015-02-19 09:16 - 2015-02-22 21:21 - 00000000 ____D () C:\FRST 2015-02-19 09:08 - 2015-02-22 21:19 - 02087424 _____ (Farbar) C:\Users\Chin\Desktop\FRST64.exe 2015-02-19 09:07 - 2015-02-19 09:07 - 00141242 _____ () C:\Users\Chin\Desktop\OTL.Txt 2015-02-19 09:07 - 2015-02-19 09:07 - 00060886 _____ () C:\Users\Chin\Desktop\Extras_OTL.Txt 2015-02-19 08:52 - 2015-02-19 08:52 - 00602112 _____ (OldTimer Tools) C:\Users\Chin\Desktop\otl.exe 2015-02-18 19:56 - 2015-02-22 08:52 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-02-18 19:56 - 2015-02-18 19:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-02-18 19:56 - 2015-02-18 19:56 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-02-18 19:56 - 2015-02-18 19:56 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-02-18 19:56 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-02-18 19:56 - 2014-11-21 06:14 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-02-18 19:56 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-02-17 12:30 - 2015-02-18 20:26 - 00000000 ___RD () C:\Users\Chin\Dropbox 2015-02-17 12:29 - 2015-02-17 12:29 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-02-17 12:26 - 2015-02-19 07:11 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Dropbox 2015-02-12 12:11 - 2015-02-12 12:11 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2015-02-12 12:11 - 2015-02-12 12:11 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client 2015-02-12 08:50 - 2015-02-12 08:59 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy 2015-02-12 08:50 - 2015-02-12 08:55 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2 2015-02-12 08:50 - 2015-02-12 08:50 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk 2015-02-12 08:50 - 2015-02-12 08:50 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking 2015-02-12 08:50 - 2015-02-12 08:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 2015-02-12 08:50 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2015-02-12 08:06 - 2015-01-23 05:42 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-02-12 08:06 - 2015-01-23 05:41 - 06041600 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-02-12 08:06 - 2015-01-23 04:43 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-02-12 08:06 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-02-11 22:03 - 2015-02-19 14:32 - 00000000 ____D () C:\Users\Chin\AppData\Local\CrashDumps 2015-02-11 12:51 - 2015-02-11 12:59 - 00000000 ____D () C:\Users\Chin\AppData\Local\calibre-cache 2015-02-11 12:43 - 2015-02-11 12:59 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\calibre 2015-02-11 12:42 - 2015-02-11 12:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management 2015-02-11 12:42 - 2015-02-11 12:43 - 00000000 ____D () C:\Program Files\Calibre2 2015-02-11 12:37 - 2015-01-10 07:48 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-02-11 12:37 - 2015-01-10 07:48 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-02-11 12:37 - 2015-01-10 07:48 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-02-11 12:37 - 2015-01-10 07:48 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-02-11 12:37 - 2015-01-10 07:48 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-02-11 12:37 - 2015-01-10 07:27 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-02-11 12:37 - 2015-01-10 07:27 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-02-11 12:37 - 2015-01-10 07:27 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-02-11 12:37 - 2015-01-10 07:27 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-02-11 12:36 - 2015-01-14 06:47 - 00389808 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-02-11 12:36 - 2015-01-14 06:09 - 00342712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-02-11 12:36 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-02-11 12:36 - 2015-01-12 04:05 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-02-11 12:36 - 2015-01-12 04:05 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-02-11 12:36 - 2015-01-12 03:49 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-02-11 12:36 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-02-11 12:36 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-02-11 12:36 - 2015-01-12 03:48 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-02-11 12:36 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-02-11 12:36 - 2015-01-12 03:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-02-11 12:36 - 2015-01-12 03:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-02-11 12:36 - 2015-01-12 03:36 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-02-11 12:36 - 2015-01-12 03:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-02-11 12:36 - 2015-01-12 03:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-02-11 12:36 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-02-11 12:36 - 2015-01-12 03:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-02-11 12:36 - 2015-01-12 03:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-02-11 12:36 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-02-11 12:36 - 2015-01-12 03:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-02-11 12:36 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-02-11 12:36 - 2015-01-12 03:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-02-11 12:36 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-02-11 12:36 - 2015-01-12 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-02-11 12:36 - 2015-01-12 03:07 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-02-11 12:36 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-02-11 12:36 - 2015-01-12 03:04 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-02-11 12:36 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-02-11 12:36 - 2015-01-12 03:00 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-02-11 12:36 - 2015-01-12 02:59 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-02-11 12:36 - 2015-01-12 02:57 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-02-11 12:36 - 2015-01-12 02:55 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-02-11 12:36 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-02-11 12:36 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-02-11 12:36 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-02-11 12:36 - 2015-01-12 02:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-02-11 12:36 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-02-11 12:36 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-02-11 12:36 - 2015-01-12 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-02-11 12:36 - 2015-01-12 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-02-11 12:36 - 2015-01-12 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-02-11 12:36 - 2015-01-12 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-02-11 12:36 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-02-11 12:36 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-02-11 12:36 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-02-11 12:36 - 2015-01-12 02:22 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-02-11 12:36 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-02-11 12:36 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-02-11 12:36 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-02-11 12:36 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-02-11 12:36 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-02-11 12:36 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-02-11 12:36 - 2015-01-10 07:48 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-02-11 12:36 - 2015-01-10 07:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-02-11 12:36 - 2015-01-10 07:27 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-02-11 12:36 - 2015-01-10 07:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-02-11 12:36 - 2015-01-10 07:27 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-02-11 12:35 - 2015-01-15 09:14 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-02-11 12:35 - 2015-01-15 09:14 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-02-11 12:35 - 2015-01-15 09:09 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-02-11 12:35 - 2015-01-15 09:09 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-02-11 12:35 - 2015-01-15 09:09 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-02-11 12:35 - 2015-01-15 09:09 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-02-11 12:35 - 2015-01-15 09:09 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-02-11 12:35 - 2015-01-15 09:08 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-02-11 12:35 - 2015-01-15 09:04 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-02-11 12:35 - 2015-01-15 08:42 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-02-11 12:35 - 2015-01-15 08:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-02-11 12:35 - 2015-01-15 08:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-02-11 12:35 - 2015-01-15 08:37 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-02-11 12:35 - 2015-01-15 05:22 - 00458824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-02-11 12:35 - 2015-01-13 04:10 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2015-02-11 12:35 - 2015-01-13 03:49 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2015-02-11 12:34 - 2015-01-15 09:06 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-02-11 12:34 - 2015-01-15 09:06 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-02-11 12:34 - 2015-01-15 08:39 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-02-11 12:34 - 2015-01-15 08:39 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-02-11 12:34 - 2015-01-14 07:09 - 05554112 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-02-11 12:34 - 2015-01-14 07:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-02-11 12:34 - 2015-01-14 07:05 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-02-11 12:34 - 2015-01-14 07:04 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-02-11 12:34 - 2015-01-14 06:44 - 03972544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2015-02-11 12:34 - 2015-01-14 06:44 - 03917760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2015-02-11 12:34 - 2015-01-14 06:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-02-11 12:34 - 2014-12-08 04:09 - 00406528 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-02-11 12:34 - 2014-12-08 03:46 - 00308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-02-11 12:33 - 2015-01-09 03:03 - 03201536 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-02-08 14:54 - 2015-02-19 07:59 - 00000000 ____D () C:\Users\Chin\Documents\Bluetooth Folder 2015-02-07 19:46 - 2015-02-15 22:01 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\vlc 2015-02-03 19:04 - 2015-02-03 19:04 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf 2015-02-03 11:53 - 2015-02-03 11:53 - 00000000 ____D () C:\Users\Chin\Documents\Telekom 2015-02-01 18:17 - 2015-02-01 18:17 - 00000000 ____D () C:\Users\Chin\Desktop\franzstrich.de 2015-01-28 07:03 - 2013-04-10 00:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-01-28 07:03 - 2013-04-02 23:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-01-27 18:07 - 2015-02-17 12:39 - 00000000 ____D () C:\Users\Chin\owncloud 2015-01-27 18:03 - 2015-01-27 18:03 - 00000547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ownCloud.lnk 2015-01-27 18:02 - 2015-01-27 18:02 - 00000000 ____D () C:\Program Files (x86)\ownCloud 2015-01-27 00:32 - 2015-02-12 17:35 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\FileZilla 2015-01-26 23:07 - 2015-01-28 13:26 - 00000600 _____ () C:\Users\Chin\AppData\Local\PUTTY.RND 2015-01-26 19:50 - 2015-01-26 19:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Writer 2015-01-26 19:50 - 2015-01-26 19:50 - 00000000 ____D () C:\Program Files (x86)\ImageWriter 2015-01-26 14:54 - 2015-01-26 14:54 - 00000000 ____D () C:\ProgramData\Gibraltar 2015-01-26 14:50 - 2015-01-26 14:50 - 00000000 ____D () C:\ProgramData\Sun 2015-01-26 14:50 - 2015-01-26 14:50 - 00000000 ____D () C:\ProgramData\Oracle 2015-01-26 14:39 - 2015-01-26 14:39 - 00000000 ____D () C:\Users\Chin\Documents\Benutzerdefinierte Office-Vorlagen 2015-01-26 13:30 - 2015-01-26 13:30 - 00000000 ____D () C:\Users\Chin\AppData\Local\Swiss Academic Software 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Zimmermann 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Zeitschriften 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Wohnung 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Weihnachtsfeier Psychos 2011 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Wahlen 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Wachstumsökonomie 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\VPV-Versicherung 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Vortrag Projektmanagement 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Volition 2015-01-26 13:10 - 2015-01-26 13:10 - 00000000 ____D () C:\Users\Chin\Documents\Versicherung Schadensfall Hunde 2015-01-26 13:10 - 2014-10-16 15:44 - 00040893 _____ () C:\Users\Chin\Documents\Unbenannt.wma 2015-01-26 13:10 - 2007-04-23 01:14 - 41307085 ____R () C:\Users\Chin\Documents\VirtualCD + Keyg.rar 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Two Worlds Saves 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Trainingsplan 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Tattoo 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Tagung Nürnberg 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\StudIp 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Square Enix 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\SPSSInc 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Software Download 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Simpol 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\self-html 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Schadensfall Post 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\Runes of Magic 2015-01-26 13:09 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\route 2015-01-26 13:09 - 2014-11-07 10:34 - 1028653056 _____ () C:\Users\Chin\Documents\ubuntu-14.04.1-desktop-amd64.iso 2015-01-26 13:09 - 2013-11-28 07:56 - 00010839 _____ () C:\Users\Chin\Documents\training.xlsx 2015-01-26 13:09 - 2010-10-10 12:24 - 00063567 _____ () C:\Users\Chin\Documents\studip.ics 2015-01-26 13:08 - 2015-01-26 13:09 - 00000000 ____D () C:\Users\Chin\Documents\rom 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Rentenversicherung 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Pronto-Pizza 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Praktikumsbericht 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Praktikum Psychatrie 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Praktikum BW 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Praktikum 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\postbank 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\PersBackup 2015-01-26 13:08 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\pebl-exp.0.11 2015-01-26 13:08 - 2012-11-22 19:29 - 01335612 _____ () C:\Users\Chin\Documents\perso.odg 2015-01-26 13:08 - 2011-02-27 21:27 - 05303303 _____ () C:\Users\Chin\Documents\papa kindergeld.odg 2015-01-26 13:07 - 2015-01-26 13:08 - 00000000 ____D () C:\Users\Chin\Documents\Outlook-Dateien 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\OpenOffice.org 3.3 (de) Installation Files 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\OneNote-Notizbücher 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\oma tele 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Nexus Mod Manager 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\My Digital Editions 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Mietvertrag Lessingstr. 20 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Microsoft office Rechnung 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\michael 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Meine Datenquellen 2015-01-26 13:07 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\Loge 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\League of Legends 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Kündigung McFit 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Kündigung LaFamilia 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Kindergeld 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Karten 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\kalender 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Integrales Forum 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\HUK 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\HTML 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\font 2015-01-26 13:06 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Fahrraddiebstahl Tabea 2015-01-26 13:06 - 2014-11-30 19:30 - 01869971 _____ () C:\Users\Chin\Documents\jabref.txt 2015-01-26 13:06 - 2014-01-12 14:03 - 09123877 _____ () C:\Users\Chin\Documents\Fit ohne Geräte_ Trainieren mit dem eigenen Körpergewicht - Clark, Joshua.epub 2015-01-26 13:06 - 2011-05-07 11:04 - 00011956 _____ () C:\Users\Chin\Documents\Kündigung Wohnung.odt 2015-01-26 13:05 - 2015-01-26 13:06 - 00000000 ____D () C:\Users\Chin\Documents\Exes 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\Evernote 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\Erasmus 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\DVDVideoSoft 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\DIE SIEDLER - DEdK 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\Deutschland Stipendium 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\DayZ 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\Criterion Games 2015-01-26 13:05 - 2015-01-26 13:05 - 00000000 ____D () C:\Users\Chin\Documents\cleverfit halle 2015-01-26 13:05 - 2013-11-10 15:36 - 993792096 _____ () C:\Users\Chin\Documents\EsPeEsEs 21.zip 2015-01-26 13:05 - 2008-08-29 09:32 - 00000143 _____ () C:\Users\Chin\Documents\Click Here to Pre-Order Red Alert 3.url 2015-01-26 13:04 - 2015-01-26 13:04 - 00000000 ____D () C:\Users\Chin\Documents\CCleaner 2015-01-26 13:02 - 2015-02-11 14:32 - 00000000 ____D () C:\Users\Chin\Documents\Calibre-Springer 2015-01-26 13:01 - 2015-01-26 13:02 - 00000000 ____D () C:\Users\Chin\Documents\Calibre-Bibliothek 2015-01-26 13:00 - 2015-01-26 13:01 - 00000000 ____D () C:\Users\Chin\Documents\Bund Überbleibsel 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bücherliste 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bücher 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Briefe 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\BlackBerry 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\BKK 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bewerbungsunterlagen generell 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bewerbung Praktikum Bundeswehr Königsbrück 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bewerbung Master 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bewerbung Klinik Bernbrug 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Beschäftigung Bib Brandbergweg 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Befragung Offshore 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bayreuth 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Banished 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Bafög 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Backups 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\Artikel 2015-01-26 13:00 - 2015-01-26 13:00 - 00000000 ____D () C:\Users\Chin\Documents\ADAC 2015-01-26 13:00 - 2014-10-18 07:56 - 00012606 _____ () C:\Users\Chin\Documents\101814.kdbx 2015-01-26 13:00 - 2014-09-23 15:27 - 00012014 _____ () C:\Users\Chin\Documents\092014.kdbx 2015-01-26 13:00 - 2011-09-10 07:51 - 00015504 _____ () C:\Users\Chin\Documents\anschreiben 901011.odt 2015-01-26 12:56 - 2015-02-17 12:52 - 00000000 ____D () C:\Users\Chin\Documents\Citavi 4 2015-01-26 12:56 - 2015-02-09 17:47 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Swiss Academic Software 2015-01-26 12:56 - 2015-01-26 12:56 - 00000000 ____D () C:\ProgramData\Swiss Academic Software 2015-01-26 12:43 - 2015-01-26 12:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Citavi 4 2015-01-26 12:42 - 2015-01-26 12:43 - 00000000 ____D () C:\Program Files (x86)\Citavi 4 2015-01-26 12:40 - 2015-01-26 12:40 - 00000000 ____D () C:\Users\Chin\AppData\Local\Downloaded Installations 2015-01-24 09:19 - 2015-01-24 09:19 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\EFSoftware 2015-01-24 09:14 - 2015-01-24 09:14 - 00000000 ____D () C:\Program Files\VideoLAN 2015-01-24 08:57 - 2015-01-24 08:57 - 00000000 ____D () C:\Program Files (x86)\Total Commander 2015-01-24 08:56 - 2015-01-24 08:56 - 00000000 ____D () C:\Users\Chin\AppData\Local\Adobe 2015-01-24 08:53 - 2015-01-24 08:53 - 00000000 ____D () C:\Users\Chin\AppData\Local\javasharedresources 2015-01-24 08:53 - 2015-01-24 08:53 - 00000000 ____D () C:\Users\Chin\.spss 2015-01-24 08:49 - 2015-01-24 08:49 - 00000000 ___HD () C:\Users\Chin\InstallAnywhere 2015-01-24 08:49 - 2015-01-24 08:49 - 00000000 ___HD () C:\Program Files (x86)\Zero G Registry 2015-01-24 08:49 - 2015-01-24 08:49 - 00000000 ____D () C:\ProgramData\SafeNet Sentinel 2015-01-24 08:49 - 2015-01-24 08:49 - 00000000 ____D () C:\Program Files\Common Files\IBM 2015-01-24 08:48 - 2015-01-24 08:48 - 00000000 ____D () C:\ProgramData\SPSS 2015-01-24 08:48 - 2015-01-24 08:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IBM SPSS Statistics 2015-01-24 08:47 - 2015-01-24 08:47 - 00000000 ____D () C:\Program Files (x86)\IBM 2015-01-24 08:46 - 2015-01-24 08:46 - 00001025 _____ () C:\Windows\SysWOW64\sysprs7.tgz 2015-01-24 08:46 - 2015-01-24 08:46 - 00001025 _____ () C:\Windows\SysWOW64\sysprs7.dll 2015-01-24 08:46 - 2015-01-24 08:46 - 00000219 _____ () C:\Windows\SysWOW64\lsprst7.tgz 2015-01-24 08:46 - 2015-01-24 08:46 - 00000016 ____H () C:\Windows\SysWOW64\servdat.slm 2015-01-23 18:19 - 2014-09-05 03:11 - 06584320 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-01-23 18:19 - 2014-09-05 02:52 - 05703168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-01-23 18:19 - 2012-02-11 07:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2015-01-23 18:19 - 2012-02-11 07:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe 2015-01-23 18:19 - 2011-02-25 07:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-01-23 18:19 - 2011-02-25 06:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-01-23 18:13 - 2015-01-23 18:13 - 00000000 ____D () C:\Users\Chin\AppData\Local\BigHugeEngine 2015-01-23 13:03 - 2015-01-26 13:07 - 00000000 ____D () C:\Users\Chin\Documents\My Games 2015-01-23 11:55 - 2015-01-23 11:55 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2015-01-23 11:49 - 2015-01-23 11:59 - 00011754 _____ () C:\Windows\DPINST.LOG 2015-01-23 11:44 - 2015-01-23 11:59 - 00001506 _____ () C:\Windows\Synaptics.log 2015-01-23 11:42 - 2015-01-23 11:42 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2015-01-23 11:41 - 2015-01-23 11:41 - 00000000 ____D () C:\Program Files (x86)\Adobe 2015-01-23 11:29 - 2015-01-23 11:29 - 00000000 __SHD () C:\Users\Chin\AppData\Local\EmieUserList 2015-01-23 11:29 - 2015-01-23 11:29 - 00000000 __SHD () C:\Users\Chin\AppData\Local\EmieSiteList 2015-01-23 11:29 - 2015-01-23 11:29 - 00000000 __SHD () C:\Users\Chin\AppData\Local\EmieBrowserModeList 2015-01-23 11:10 - 2015-01-23 11:10 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\library_dir 2015-01-23 11:10 - 2015-01-23 11:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Gaming Evolved 2015-01-23 11:08 - 2015-02-22 18:20 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Raptr 2015-01-23 11:08 - 2015-02-01 18:11 - 00000000 ____D () C:\Program Files (x86)\Raptr 2015-01-23 11:08 - 2015-01-23 11:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Quick Stream 2015-01-23 11:08 - 2015-01-23 11:08 - 00000000 ____D () C:\Program Files\AMD Quick Stream 2015-01-23 09:59 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll 2015-01-23 09:59 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2015-01-23 09:59 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll 2015-01-23 09:59 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2015-01-23 09:59 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2015-01-23 09:59 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2015-01-23 09:59 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2015-01-23 09:59 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2015-01-23 09:59 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2015-01-23 09:59 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2015-01-23 09:59 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2015-01-23 09:59 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2015-01-23 09:59 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2015-01-23 09:59 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2015-01-23 09:59 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2015-01-23 09:59 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2015-01-23 09:59 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2015-01-23 09:59 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2015-01-23 09:59 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2015-01-23 09:59 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2015-01-23 09:59 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2015-01-23 09:59 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2015-01-23 09:59 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2015-01-23 09:59 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2015-01-23 09:59 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2015-01-23 09:59 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2015-01-23 09:59 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2015-01-23 09:59 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2015-01-23 09:59 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2015-01-23 09:59 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2015-01-23 09:59 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2015-01-23 09:59 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2015-01-23 09:59 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2015-01-23 09:59 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2015-01-23 09:59 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2015-01-23 09:59 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2015-01-23 09:59 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2015-01-23 09:59 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2015-01-23 09:59 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2015-01-23 09:59 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2015-01-23 09:59 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2015-01-23 09:59 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2015-01-23 09:59 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2015-01-23 09:59 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2015-01-23 09:59 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2015-01-23 09:59 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2015-01-23 09:59 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2015-01-23 09:59 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2015-01-23 09:59 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2015-01-23 09:59 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2015-01-23 09:59 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2015-01-23 09:59 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2015-01-23 09:59 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2015-01-23 09:59 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2015-01-23 09:59 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2015-01-23 09:59 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2015-01-23 09:59 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2015-01-23 09:59 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2015-01-23 09:59 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2015-01-23 09:59 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2015-01-23 09:59 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2015-01-23 09:59 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2015-01-23 09:59 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2015-01-23 09:59 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2015-01-23 09:59 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2015-01-23 09:59 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2015-01-23 09:59 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2015-01-23 09:59 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2015-01-23 09:59 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2015-01-23 09:59 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2015-01-23 09:59 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2015-01-23 09:59 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2015-01-23 09:59 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2015-01-23 09:58 - 2015-01-23 18:12 - 00027803 _____ () C:\Windows\DirectX.log 2015-01-23 09:58 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2015-01-23 09:58 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2015-01-23 09:58 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2015-01-23 09:58 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2015-01-23 09:58 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2015-01-23 09:58 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2015-01-23 09:58 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2015-01-23 09:58 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2015-01-23 09:58 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2015-01-23 09:58 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2015-01-23 09:58 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2015-01-23 09:58 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2015-01-23 09:58 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2015-01-23 09:58 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2015-01-23 09:58 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2015-01-23 09:58 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2015-01-23 09:58 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2015-01-23 09:58 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2015-01-23 09:58 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2015-01-23 09:58 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2015-01-23 09:58 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2015-01-23 09:58 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2015-01-23 09:58 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2015-01-23 09:58 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2015-01-23 09:58 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2015-01-23 09:58 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2015-01-23 09:58 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2015-01-23 09:58 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2015-01-23 09:58 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2015-01-23 09:58 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2015-01-23 09:58 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2015-01-23 09:58 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2015-01-23 09:58 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2015-01-23 09:58 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2015-01-23 09:56 - 2014-12-11 18:47 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-01-23 09:09 - 2015-01-23 09:09 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2015-01-23 09:09 - 2015-01-23 09:09 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2015-01-23 09:03 - 2015-01-23 09:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2015-01-23 09:00 - 2015-02-22 08:55 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2015-01-23 08:38 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2015-01-23 08:38 - 2014-05-08 10:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-22 20:28 - 2015-01-22 16:59 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-02-22 18:35 - 2015-01-22 20:29 - 01650134 _____ () C:\Windows\WindowsUpdate.log 2015-02-22 18:28 - 2009-07-14 05:45 - 00015472 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-02-22 18:28 - 2009-07-14 05:45 - 00015472 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-02-22 18:20 - 2015-01-22 16:59 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-02-22 18:20 - 2015-01-22 14:12 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2015-02-22 18:20 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-02-22 18:20 - 2009-07-14 05:51 - 00025927 _____ () C:\Windows\setupact.log 2015-02-22 10:10 - 2015-01-22 13:49 - 00065536 _____ () C:\Windows\system32\spu_storage.bin 2015-02-22 09:31 - 2015-01-22 14:36 - 00020488 _____ () C:\Windows\PFRO.log 2015-02-21 16:08 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini 2015-02-19 10:08 - 2015-01-22 13:36 - 00000000 ____D () C:\Users\Chin 2015-02-19 08:41 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF 2015-02-19 07:58 - 2009-07-14 18:58 - 00699342 _____ () C:\Windows\system32\perfh007.dat 2015-02-19 07:58 - 2009-07-14 18:58 - 00149450 _____ () C:\Windows\system32\perfc007.dat 2015-02-19 07:58 - 2009-07-14 06:13 - 01619284 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-02-18 19:54 - 2015-01-22 22:08 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\KeePass 2015-02-14 09:30 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2015-02-11 13:17 - 2009-07-14 05:45 - 00437584 _____ () C:\Windows\system32\FNTCACHE.DAT 2015-02-11 13:11 - 2015-01-22 14:33 - 00000000 ____D () C:\Windows\system32\MRT 2015-02-11 13:00 - 2015-01-22 14:33 - 116773704 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-02-11 12:58 - 2015-01-22 17:08 - 00000000 ____D () C:\Program Files (x86)\Steam 2015-02-06 21:23 - 2015-01-22 16:59 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-02-06 21:23 - 2015-01-22 16:59 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-01-29 14:50 - 2015-01-22 13:37 - 00000000 ____D () C:\Users\Chin\AppData\Local\VirtualStore 2015-01-27 21:19 - 2015-01-22 21:36 - 00000000 ____D () C:\Users\Chin\Documents\keepass save 2015-01-27 18:03 - 2015-01-22 13:43 - 00000000 ____D () C:\ProgramData\Package Cache 2015-01-24 09:10 - 2015-01-22 13:50 - 00111776 _____ () C:\Users\Chin\AppData\Local\GDIPFONTCACHEV1.DAT 2015-01-24 08:56 - 2015-01-22 21:09 - 00000000 ____D () C:\Users\Chin\AppData\Roaming\Adobe 2015-01-23 18:21 - 2015-01-22 13:45 - 01593564 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2015-01-23 11:53 - 2015-01-22 23:10 - 00000000 ____D () C:\ProgramData\Adobe 2015-01-23 11:06 - 2015-01-22 13:42 - 00000000 ____D () C:\Program Files\AMD 2015-01-23 09:09 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2015-01-23 08:31 - 2015-01-22 14:11 - 01050432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys ==================== Files in the root of some directories ======= 2015-01-26 23:07 - 2015-01-28 13:26 - 0000600 _____ () C:\Users\Chin\AppData\Local\PUTTY.RND Some content of TEMP: ==================== C:\Users\Chin\AppData\Local\Temp\Quarantine.exe C:\Users\Chin\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-02-14 09:21 ==================== End Of Log ============================ --- --- --- |
![]() | #13 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Laptop über LAN an Router Internet bricht ab Naja, Du hast dich ja aufgrund eines Problemes hier gemeldet, das meine ich mit der Frage "Noch Probleme" ![]() BEstehen diese Probleme noch?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #14 |
![]() | ![]() Laptop über LAN an Router Internet bricht ab Hi Schrauber, ich habe diese Probleme nicht mehr feststellen können. Wenn ich meinen Laptop direkt mit dem Router verbinde, dann bleibt die Verbindung konstant. Kann ich auch irgendwie rausbekommen, woran es lagt, dass die Verbindung abgebrochen ist, oder geht das zwecks Zeitaufwand einer Erklärung zu weit? Ist denn irgendeine Malware oder nen Virus daran schuld gewesen? Konnte man aus den ganzen Protokollen irgendwas lesen? Danke für die Hilfe! Beste Grüße |
![]() | #15 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() Laptop über LAN an Router Internet bricht ab Wir haben schon einiges an Adware entfernt. Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter C:\Users\Chin\Documents\Exes\FreeAudioCDToMP3Converter1.3.12.908.exe C:\Users\Chin\Documents\Exes\FreeStudio533.exe C:\Users\Chin\Documents\Exes\FreeYouTubeToMP3Converter31014.exe C:\Users\Chin\Documents\Exes\FreeYouTubeToMp3Converter39.exe C:\Users\Chin\Documents\Exes\isobuster_3_0.exe C:\Users\Chin\Documents\Exes\zaSetupWeb_101_065_000.exe C:\Users\Chin\Documents\Exes\zaSetupWeb_101_079_000.exe C:\Users\Chin\Documents\Exes\zaSetup_92_105_000_de.exe C:\Users\Chin\Documents\Software Download\FreeYouTubeToMp3Converter39.exe C:\Users\Chin\Documents\Software Download\zaSetup_92_105_000_de.exe Emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Fertig ![]() Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun ![]() Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() |
Themen zu Laptop über LAN an Router Internet bricht ab |
adobe, alert, antivirus, avast, browser, defender, explorer, frage, ftp, google, home, homepage, installation, internet, karte, mozilla, problem, registry, safer networking, scan, security, software, system, virus, windows, wlan |