![]() |
Log-Analyse und Auswertung: McAfee blockt alle paar minuten "loadit.exe"Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
![]() | #1 |
| ![]() McAfee blockt alle paar minuten "loadit.exe" McAfee blockt mir alle paar minuten folgendes: ![]() Der Ursprung war vermutlich ein Zip file das ich gestern runtergeladen habe. Das ist bereits entfernt, aber der Trojaner scheint sich noch wohl zu fühlen. Das System ist komplett frisch aufgesetzt (Win8.1) vor 3 Tagen. Ein kompletter Systemscan läuft gerade, hat aber bisher nichts erbracht. die Forensuche hat ergeben dass das Problem schon das eine oder andere mal aufgetaucht ist, ich wollte aber nicht einfach blind irgendwelche "Säuberer" drüber jagen. Danke für eure Hilfe. |
![]() | #2 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() McAfee blockt alle paar minuten "loadit.exe" hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
![]() | #3 |
| ![]() FRST Log Teil 1Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-02-2015 01 Ran by Philip (administrator) on IGOR on 26-02-2015 12:37:38 Running from C:\Users\Philip\Downloads\Chrome Loaded Profiles: Philip (Available profiles: Philip) Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\mfeann.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\mDNSResponder.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe (BlackBerry Limited) C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\tunmgr.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\naPrdMgr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (BlackBerry Limited) C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Mindjet) C:\Program Files\Mindjet\MindManager 15\MmReminderService.exe (Spotify Ltd) C:\Users\Philip\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe () C:\Users\Philip\AppData\Roaming\autostarter.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Dropbox, Inc.) C:\Users\Philip\AppData\Roaming\Dropbox\bin\Dropbox.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\McTray.exe (BlackBerry Limited) C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (BlackBerry Limited) C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\PeerManager.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\shstat.exe () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\mcconsol.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\x64\Scan64.Exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [MMReminderService] => C:\Program Files\Mindjet\MindManager 15\MMReminderService.exe [123200 2014-09-04] (Mindjet) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [557768 2014-09-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [McAfeeUpdaterUI] => C:\Program Files (x86)\McAfee\Common Framework\udaterui.exe [333416 2012-09-05] (McAfee, Inc.) HKLM-x32\...\Run: [ShStatEXE] => C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE [242792 2013-01-14] (McAfee, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [508800 2014-12-17] (Oracle Corporation) HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [707472 2013-12-12] (Cisco Systems, Inc.) HKLM-x32\...\Run: [RIMBBLaunchAgent.exe] => C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe [443640 2014-10-31] (BlackBerry Limited) HKLM-x32\...\Run: [RIM PeerManager] => C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\PeerManager.exe [4857592 2014-11-28] (BlackBerry Limited) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2694320 2015-01-07] (Adobe Systems Incorporated) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [NoFolderOptions] 0 HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd) HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Run: [Spotify Web Helper] => C:\Users\Philip\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1676344 2015-02-23] (Spotify Ltd) HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31090792 2015-01-23] (Skype Technologies S.A.) HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2874048 2015-02-19] (Valve Corporation) HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\MountPoints2: {c931202f-bb56-11e4-8250-485b393ae20c} - "F:\SETUP.EXE" AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [167312 2015-02-04] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [147576 2015-02-04] (NVIDIA Corporation) IFEO\notepad.exe: [Debugger] "C:\Program Files\Notepad2\Notepad2.exe" /z Startup: C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutoStarter.lnk ShortcutTarget: AutoStarter.lnk -> C:\Users\Philip\AppData\Roaming\autostarter.exe () Startup: C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Philip\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll () ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-1974623646-547660712-2476049583-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: CmjBrowserHelperObject Object -> {6FE6A929-59D1-4763-91AD-29B61CFFB35B} -> C:\Program Files\Mindjet\MindManager 15\Mm8InternetExplorer.dll (Mindjet) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation) BHO: scriptproxy -> {7DB2D5A0-7241-4E79-B68D-6309F01C5231} -> C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20150223131549.dll (McAfee, Inc.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation) BHO-x32: scriptproxy -> {7DB2D5A0-7241-4E79-B68D-6309F01C5231} -> C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20150223131549.dll (McAfee, Inc.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\Philip\AppData\Roaming\Mozilla\Firefox\Profiles\ewgym3hh.default FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect_x86_64 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems) FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore FF Extension: McAfee ScriptScan for Firefox - C:\Program Files (x86)\Common Files\McAfee\SystemCore [2015-02-23] Chrome: ======= CHR HomePage: Default -> hxxp://www.google.com/ig/redirectdomain?brand=ASUT&bmod=ASUT CHR StartupUrls: Default -> "hxxp://www.google.com" CHR DefaultSearchKeyword: Default -> google.de___ CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} CHR Profile: C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Drive) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-23] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-02-23] CHR Extension: (YouTube) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-23] CHR Extension: (Google Search) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-23] CHR Extension: (Fast Image Research) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\epelbghekfokpolcmhhabjgehmplhjgp [2015-02-23] CHR Extension: (AdBlock) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-02-23] CHR Extension: (Bookmark Manager) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-02-23] CHR Extension: (Google Wallet) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-23] CHR Extension: (Gmail) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-23] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 BlackBerry Device Manager; C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe [588024 2014-10-31] (BlackBerry Limited) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2711736 2015-01-13] (Microsoft Corporation) R2 McAfeeFramework; C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe [132712 2012-09-05] (McAfee, Inc.) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [241016 2015-02-23] (McAfee, Inc.) R2 McTaskManager; C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe [206448 2013-01-14] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [177680 2015-02-23] (McAfee, Inc.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation) R2 RIM MDNS; C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\mDNSResponder.exe [396024 2014-11-28] (Apple Inc.) R2 RIM Tunnel Service; C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\tunmgr.exe [1348344 2014-11-28] (BlackBerry Limited) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 athr; C:\Windows\system32\DRIVERS\athwnx.sys [3680256 2013-06-18] (Qualcomm Atheros Communications, Inc.) S3 blackberryncm; C:\Windows\system32\DRIVERS\blackberryncm6_AMD64.sys [25088 2014-09-08] (BlackBerry) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2015-02-23] (Disc Soft Ltd) R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [178840 2015-02-23] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [309400 2015-02-23] (McAfee, Inc.) U3 mfeavfk01; No ImagePath S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [69168 2015-02-23] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [771096 2015-02-23] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [106112 2015-02-23] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [339392 2015-02-23] (McAfee, Inc.) R3 MTsensor; C:\Windows\system32\DRIVERS\ATK64AMD.sys [13680 2007-08-09] () R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [79872 2014-05-06] (BlackBerry Limited) R3 rimvndis; C:\Windows\System32\Drivers\rimvndis6_AMD64.sys [17920 2014-11-28] (Research in Motion Limited) R3 RimVSerPort; C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys [44544 2012-12-10] (Research in Motion Ltd) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () S3 vpnva; C:\Windows\system32\DRIVERS\vpnva64-6.sys [52080 2013-12-12] (Cisco Systems, Inc.) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) |
![]() | #4 |
| ![]() FRST Log Teil 2Code:
ATTFilter ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-26 12:37 - 2015-02-26 12:37 - 00000000 ____D () C:\FRST 2015-02-25 18:46 - 2015-02-03 20:31 - 00714720 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-02-25 18:46 - 2015-02-03 20:31 - 00106976 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-02-25 18:42 - 2015-02-25 18:42 - 00000000 ___SD () C:\Windows\system32\CompatTel 2015-02-25 18:42 - 2015-02-25 18:42 - 00000000 ____D () C:\Windows\system32\appraiser 2015-02-25 18:33 - 2015-02-25 18:33 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker 2015-02-25 18:33 - 2015-02-25 18:33 - 00000000 ____D () C:\Program Files\Unlocker 2015-02-25 18:28 - 2015-02-25 18:28 - 00001096 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Dreamweaver CC 2014.1.lnk 2015-02-25 18:15 - 2015-02-25 18:15 - 00001113 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Content Viewer.lnk 2015-02-25 18:14 - 2015-02-25 18:14 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2015-02-25 18:14 - 2015-02-25 18:14 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2015-02-25 18:04 - 2015-02-26 12:39 - 00002184 _____ () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\McAfee VirusScan Scan Messages.lnk 2015-02-25 18:04 - 2015-02-26 12:39 - 00000032 _____ () C:\Users\Philip\AppData\Roaming\url.txt 2015-02-25 18:04 - 2015-02-26 12:34 - 00000000 ____D () C:\QUARANTINE 2015-02-25 17:59 - 2015-01-20 04:32 - 93253791 _____ () C:\Users\Philip\AppData\Roaming\autostarter.exe 2015-02-25 17:58 - 2015-02-25 18:27 - 00067883 _____ () C:\Users\Philip\Desktop\ofenmodell 2.fsm 2015-02-25 17:46 - 2015-02-25 17:56 - 00209152 _____ () C:\Users\Philip\Desktop\test_autosave.fsm 2015-02-25 17:17 - 2015-02-25 17:39 - 00209164 _____ () C:\Users\Philip\Desktop\test.fsm 2015-02-25 17:08 - 2015-02-25 17:08 - 05512037 _____ () C:\Users\Philip\Desktop\Flexsim Ofenmodell.pptx 2015-02-25 16:47 - 2015-02-25 16:47 - 00000000 ____D () C:\Windows\SysWOW64\NV 2015-02-25 16:47 - 2015-02-25 16:47 - 00000000 ____D () C:\Windows\system32\NV 2015-02-25 16:47 - 2015-02-04 01:00 - 00608072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2015-02-25 16:45 - 2015-02-04 04:56 - 31515280 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 24198856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 22993224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 18634072 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 17559432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 16128576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 15294280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 13916280 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 13828032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 12894024 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2015-02-25 16:45 - 2015-02-04 04:56 - 11272240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 11209192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 04244680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 03987600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 01907400 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434144.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 01555656 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434144.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00944328 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00907464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00902344 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00870032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00355272 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00307184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00031376 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2015-02-25 16:38 - 2015-02-25 16:38 - 00000000 ____D () C:\Users\Philip\AppData\Local\Mindjet 2015-02-25 12:05 - 2015-02-25 12:10 - 00000000 ____D () C:\Windows\system32\MRT 2015-02-25 12:05 - 2015-01-29 17:49 - 116773704 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-02-25 12:02 - 2014-04-14 04:29 - 01018880 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2015-02-25 11:29 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\SysWOW64\locale.nls 2015-02-25 11:29 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\system32\locale.nls 2015-02-25 11:29 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll 2015-02-25 11:29 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll 2015-02-25 11:29 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll 2015-02-25 11:29 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll 2015-02-25 11:29 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-02-25 11:29 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-02-25 11:29 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-02-25 11:29 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-02-25 11:29 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-02-25 11:29 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-02-25 11:29 - 2014-10-08 06:32 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-02-25 11:29 - 2014-10-08 06:19 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-02-25 11:29 - 2014-09-22 05:38 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-02-25 11:29 - 2014-09-22 04:06 - 00258368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2015-02-25 11:29 - 2014-09-22 04:06 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys 2015-02-25 11:29 - 2014-09-22 03:49 - 00035320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2015-02-25 11:29 - 2014-09-19 01:16 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2015-02-25 11:29 - 2014-09-02 23:08 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll 2015-02-25 11:29 - 2014-09-02 23:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll 2015-02-25 11:28 - 2015-02-04 00:38 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-02-25 11:28 - 2015-02-04 00:08 - 00761856 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-02-25 11:28 - 2015-02-04 00:08 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-02-25 11:28 - 2015-02-03 00:11 - 01098752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-02-25 11:28 - 2015-02-03 00:11 - 00894464 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-02-25 11:28 - 2015-02-03 00:11 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-02-25 11:28 - 2015-01-19 19:42 - 01487976 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2015-02-25 11:28 - 2014-12-19 09:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2015-02-25 11:28 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2015-02-25 11:28 - 2014-12-09 00:12 - 00391526 _____ () C:\Windows\system32\ApnDatabase.xml 2015-02-25 11:28 - 2014-12-03 00:09 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2015-02-25 11:28 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll 2015-02-25 11:28 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll 2015-02-25 11:28 - 2014-11-01 00:57 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2015-02-25 11:28 - 2014-11-01 00:47 - 00790528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2015-02-25 11:28 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-02-25 11:28 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-02-25 11:28 - 2014-04-08 23:46 - 00086688 _____ (Microsoft Corporation) C:\Windows\system32\mrt_map.dll 2015-02-25 11:28 - 2014-04-08 23:46 - 00028320 _____ (Microsoft Corporation) C:\Windows\system32\mrt100.dll 2015-02-25 11:28 - 2014-04-08 19:54 - 00080032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt_map.dll 2015-02-25 11:28 - 2014-04-08 19:54 - 00026784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt100.dll 2015-02-25 11:28 - 2014-03-13 08:42 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe 2015-02-25 11:28 - 2014-03-13 07:51 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe 2015-02-25 11:26 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys 2015-02-25 11:26 - 2014-07-30 02:56 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll 2015-02-25 11:26 - 2014-07-29 06:22 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll 2015-02-25 11:22 - 2014-05-30 04:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2015-02-25 11:19 - 2014-03-20 05:19 - 01291200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-02-25 11:19 - 2014-03-20 04:41 - 02013016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2015-02-25 11:19 - 2014-03-20 04:41 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys 2015-02-25 11:19 - 2014-03-20 01:53 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2015-02-25 11:19 - 2014-03-20 01:48 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll 2015-02-25 11:19 - 2014-03-20 00:55 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-02-25 11:19 - 2014-03-20 00:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2015-02-25 11:19 - 2014-03-20 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll 2015-02-25 11:19 - 2014-03-19 06:50 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe 2015-02-25 11:19 - 2014-03-19 06:31 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2015-02-25 11:19 - 2014-03-19 06:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe 2015-02-25 11:19 - 2014-03-19 06:08 - 01351168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2015-02-25 11:19 - 2014-03-13 13:35 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys 2015-02-25 11:19 - 2014-03-11 16:18 - 01015808 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll 2015-02-25 11:19 - 2014-03-11 15:28 - 00887296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll 2015-02-25 11:19 - 2014-03-08 21:38 - 01542768 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-02-25 11:19 - 2014-03-08 16:29 - 00356848 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll 2015-02-25 11:19 - 2014-03-08 12:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-02-25 11:19 - 2014-03-08 10:02 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll 2015-02-25 11:19 - 2014-03-08 09:33 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll 2015-02-25 11:19 - 2014-03-08 09:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll 2015-02-25 11:19 - 2014-03-08 09:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll 2015-02-25 11:19 - 2014-03-08 08:53 - 01843712 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll 2015-02-25 11:19 - 2014-03-08 08:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll 2015-02-25 11:19 - 2014-03-08 08:12 - 01816576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2015-02-25 11:19 - 2014-03-08 08:04 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll 2015-02-25 11:19 - 2014-03-08 07:48 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll 2015-02-25 11:19 - 2014-03-08 07:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll 2015-02-25 11:19 - 2014-03-08 07:31 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll 2015-02-25 11:19 - 2014-03-08 07:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll 2015-02-25 11:19 - 2014-03-08 06:41 - 01306624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2015-02-25 11:19 - 2014-03-08 06:11 - 00924160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll 2015-02-25 11:19 - 2014-03-06 15:34 - 02331000 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-02-25 11:19 - 2014-03-06 15:34 - 00113648 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2015-02-25 11:19 - 2014-03-06 13:51 - 00488280 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2015-02-25 11:19 - 2014-03-06 12:19 - 00390488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll 2015-02-25 11:19 - 2014-03-06 12:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll 2015-02-25 11:19 - 2014-03-06 11:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-02-25 11:19 - 2014-03-06 10:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2015-02-25 11:19 - 2014-03-06 10:24 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys 2015-02-25 11:19 - 2014-03-06 10:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys 2015-02-25 11:19 - 2014-03-06 10:22 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys 2015-02-25 11:19 - 2014-03-06 10:19 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-02-25 11:19 - 2014-03-06 10:19 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2015-02-25 11:19 - 2014-03-06 10:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll 2015-02-25 11:19 - 2014-03-06 09:41 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll 2015-02-25 11:19 - 2014-03-06 09:38 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-02-25 11:19 - 2014-03-06 09:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll 2015-02-25 11:19 - 2014-03-06 09:00 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll 2015-02-25 11:19 - 2014-03-06 08:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-02-25 11:19 - 2014-03-06 08:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll 2015-02-25 11:19 - 2014-03-06 08:02 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2015-02-25 11:19 - 2014-03-06 07:51 - 02900992 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2015-02-25 11:19 - 2014-03-06 07:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll 2015-02-25 11:19 - 2014-03-06 07:27 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2015-02-25 11:19 - 2014-03-06 07:24 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll 2015-02-25 11:19 - 2014-03-06 07:23 - 02270208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2015-02-25 11:19 - 2014-03-06 07:23 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll 2015-02-25 11:19 - 2014-03-06 07:21 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll 2015-02-25 11:19 - 2014-03-06 07:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll 2015-02-25 11:19 - 2014-03-06 07:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll 2015-02-25 11:19 - 2014-03-06 07:01 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll 2015-02-25 11:19 - 2014-03-06 06:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll 2015-02-25 11:19 - 2014-03-06 06:47 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2015-02-25 11:19 - 2014-03-06 06:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll 2015-02-25 11:19 - 2014-03-04 13:14 - 00360512 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2015-02-25 11:19 - 2014-03-04 12:10 - 00355832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll 2015-02-25 11:19 - 2014-03-04 09:11 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\AdmTmpl.dll 2015-02-25 11:19 - 2014-03-04 08:26 - 00444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AdmTmpl.dll 2015-02-25 11:19 - 2014-03-04 08:16 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2015-02-25 11:19 - 2014-03-04 08:13 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2015-02-25 11:19 - 2014-03-04 08:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll 2015-02-25 11:19 - 2014-03-04 08:00 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll 2015-02-25 11:19 - 2014-03-04 07:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll 2015-02-25 11:19 - 2014-03-04 07:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2015-02-25 11:19 - 2014-03-04 07:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll 2015-02-25 11:19 - 2014-03-04 07:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll 2015-02-25 11:19 - 2014-03-04 07:15 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll 2015-02-25 11:19 - 2014-03-04 07:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll 2015-02-25 11:19 - 2014-03-04 07:03 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll 2015-02-25 11:19 - 2014-03-04 07:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll 2015-02-25 11:19 - 2014-03-04 06:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll 2015-02-25 11:19 - 2014-03-04 06:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll 2015-02-25 11:19 - 2013-12-24 00:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll 2015-02-25 11:19 - 2013-12-24 00:26 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll 2015-02-25 11:18 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-02-25 11:18 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-02-25 11:18 - 2015-01-14 05:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2015-02-25 11:18 - 2015-01-14 04:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2015-02-25 11:18 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-02-25 11:18 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-02-25 11:18 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-02-25 11:18 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-02-25 11:18 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-02-25 11:14 - 2015-01-13 23:11 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2015-02-25 11:14 - 2015-01-13 23:04 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2015-02-25 11:14 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-02-25 11:14 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-02-25 11:14 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2015-02-25 11:14 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2015-02-25 11:14 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2015-02-25 11:14 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll 2015-02-25 11:14 - 2014-08-07 03:12 - 01336624 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-02-25 11:14 - 2014-08-02 04:56 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-02-25 11:14 - 2014-06-20 02:48 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-02-25 11:14 - 2014-06-20 00:52 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-02-25 11:14 - 2014-06-16 23:26 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2015-02-25 11:14 - 2014-06-16 23:24 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2015-02-25 11:14 - 2014-06-13 02:15 - 00517528 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2015-02-25 11:14 - 2014-06-13 02:14 - 01557848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2015-02-25 11:14 - 2014-06-13 01:10 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2015-02-25 11:14 - 2014-06-06 12:34 - 02133504 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-02-25 11:14 - 2014-03-06 13:53 - 02141912 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2015-02-25 11:14 - 2014-03-06 13:51 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2015-02-25 11:14 - 2014-03-06 13:39 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2015-02-25 11:14 - 2014-03-06 12:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2015-02-25 11:14 - 2014-03-06 07:09 - 01764864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-02-25 11:12 - 2015-01-10 08:00 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-02-25 11:12 - 2015-01-10 07:38 - 00359424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-02-25 11:12 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-02-25 11:12 - 2014-10-10 02:58 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2015-02-25 11:12 - 2014-10-08 08:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2015-02-25 11:12 - 2014-10-08 08:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll 2015-02-25 11:12 - 2014-10-08 06:23 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2015-02-25 11:12 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe 2015-02-25 11:12 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2015-02-25 11:12 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll 2015-02-25 11:12 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2015-02-25 11:12 - 2014-04-11 09:25 - 00419928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll 2015-02-25 11:12 - 2014-04-11 07:04 - 00056320 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-02-25 11:12 - 2014-04-11 06:22 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-02-25 11:12 - 2014-04-11 04:54 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll 2015-02-25 11:12 - 2014-04-11 04:06 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-02-25 11:12 - 2014-04-11 04:05 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-02-25 11:12 - 2014-04-11 04:02 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-02-25 11:12 - 2014-04-11 04:01 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-02-25 11:12 - 2014-04-11 03:57 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2015-02-25 11:12 - 2014-04-11 03:56 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2015-02-25 11:12 - 2014-04-11 03:46 - 01705472 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-02-25 11:11 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-02-25 11:11 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-02-25 11:11 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-02-25 11:11 - 2015-01-12 03:34 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-02-25 11:11 - 2015-01-12 03:32 - 06041088 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-02-25 11:11 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-02-25 11:11 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-02-25 11:11 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-02-25 11:11 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-02-25 11:11 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-02-25 11:11 - 2015-01-12 02:58 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2015-02-25 11:11 - 2015-01-12 02:55 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-02-25 11:11 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-02-25 11:11 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-02-25 11:11 - 2015-01-12 02:48 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-02-25 11:11 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-02-25 11:11 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-02-25 11:11 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-02-25 11:11 - 2015-01-12 02:30 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2015-02-25 11:11 - 2015-01-12 02:29 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-02-25 11:11 - 2015-01-12 02:27 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2015-02-25 11:11 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-02-25 11:11 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-02-25 11:11 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-02-25 11:11 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-02-25 11:11 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-02-25 11:11 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-02-25 11:11 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-02-25 11:11 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-02-25 11:11 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-02-25 11:11 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-02-25 11:11 - 2015-01-10 10:10 - 07472960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-02-25 11:11 - 2015-01-10 10:10 - 01733440 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-02-25 11:11 - 2015-01-10 09:28 - 01498360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-02-25 11:11 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2015-02-25 11:11 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys 2015-02-25 11:11 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-02-25 11:11 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-02-25 11:11 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-02-25 11:11 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-02-25 11:11 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-02-25 11:11 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-02-25 11:11 - 2014-10-31 05:50 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-02-25 11:11 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-02-25 11:11 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2015-02-25 11:11 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-02-25 11:11 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-02-25 11:11 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-02-25 11:11 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2015-02-25 11:11 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2015-02-25 11:11 - 2014-10-29 03:02 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-02-25 11:11 - 2014-10-29 03:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-02-25 11:11 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-02-25 11:11 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-02-25 11:11 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-02-25 11:11 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-02-25 11:11 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-02-25 11:11 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-02-25 11:11 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2015-02-25 11:11 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2015-02-25 11:11 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2015-02-25 11:10 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-02-25 11:10 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-02-25 11:10 - 2015-01-12 02:51 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2015-02-25 11:10 - 2015-01-12 02:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2015-02-25 11:10 - 2015-01-12 02:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2015-02-25 11:10 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-02-25 11:10 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-02-25 11:10 - 2014-11-22 03:06 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2015-02-25 11:10 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2015-02-25 11:10 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2015-02-25 11:10 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2015-02-25 11:10 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2015-02-25 11:10 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2015-02-25 11:10 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2015-02-25 11:10 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-02-25 11:10 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-02-25 11:10 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-02-25 11:10 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2015-02-25 11:10 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll 2015-02-25 11:10 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-02-25 11:10 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2015-02-25 11:10 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2015-02-25 11:10 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2015-02-25 11:10 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2015-02-25 11:10 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-02-25 11:10 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2015-02-25 11:10 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2015-02-25 11:10 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2015-02-25 11:10 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2015-02-25 11:10 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2015-02-25 11:10 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2015-02-25 11:10 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2015-02-25 11:10 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2015-02-25 11:10 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-02-25 11:10 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-02-25 11:10 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-02-25 11:10 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-02-25 11:10 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2015-02-25 11:10 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll 2015-02-25 11:10 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-02-25 11:10 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2015-02-25 11:10 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2015-02-25 11:10 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2015-02-25 11:10 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2015-02-25 11:10 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-02-25 11:10 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2015-02-25 11:10 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2015-02-25 11:10 - 2014-08-23 08:48 - 02374784 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-02-25 11:10 - 2014-08-23 08:13 - 02084520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-02-25 11:10 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2015-02-25 11:10 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2015-02-25 11:10 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2015-02-25 11:10 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2015-02-25 11:10 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-02-25 11:10 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2015-02-25 11:10 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-02-25 11:10 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll 2015-02-25 11:10 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll 2015-02-25 11:10 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll 2015-02-25 11:10 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll 2015-02-25 11:10 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll 2015-02-25 11:10 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll 2015-02-25 11:10 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll 2015-02-25 11:10 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2015-02-25 11:10 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll 2015-02-25 11:10 - 2014-08-16 01:29 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-02-25 11:10 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll 2015-02-25 11:10 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2015-02-25 11:10 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll 2015-02-25 11:10 - 2014-08-16 01:19 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-02-25 11:10 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2015-02-25 11:10 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll 2015-02-25 11:10 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll 2015-02-25 11:10 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-02-25 11:10 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2015-02-25 11:10 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2015-02-25 11:10 - 2014-08-16 01:11 - 00920064 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2015-02-25 11:10 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2015-02-25 11:10 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-02-25 11:10 - 2014-08-16 01:07 - 00756224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2015-02-25 11:10 - 2014-07-24 16:28 - 00468288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2015-02-25 11:10 - 2014-07-24 12:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys 2015-02-25 11:10 - 2014-07-24 11:09 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-02-25 11:10 - 2014-07-24 10:27 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-02-25 11:10 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2015-02-25 11:10 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2015-02-25 11:10 - 2014-04-11 06:53 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe 2015-02-25 11:10 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-02-25 11:10 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-02-25 11:10 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-02-25 11:09 - 2014-05-31 07:27 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-02-25 11:07 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-02-25 11:07 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-02-25 11:06 - 2014-05-19 07:31 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe 2015-02-25 11:06 - 2014-05-19 07:21 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe 2015-02-25 11:06 - 2014-05-19 06:23 - 00098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2015-02-25 11:06 - 2014-03-06 10:19 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2015-02-25 11:05 - 2014-05-13 08:01 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe 2015-02-25 11:05 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2015-02-25 11:05 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll 2015-02-25 11:05 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2015-02-25 11:05 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2015-02-25 11:05 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll 2015-02-25 11:05 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll 2015-02-25 11:05 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll 2015-02-25 11:05 - 2014-05-03 00:26 - 00050745 _____ () C:\Windows\system32\srms.dat 2015-02-25 11:05 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys 2015-02-25 11:05 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-02-25 11:05 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys 2015-02-25 11:05 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys 2015-02-25 11:05 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2015-02-25 11:05 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2015-02-25 11:05 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2015-02-25 11:05 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2015-02-25 11:05 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2015-02-25 11:05 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2015-02-25 11:05 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2015-02-25 11:05 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2015-02-25 11:05 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2015-02-25 11:05 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2015-02-25 11:05 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2015-02-25 11:05 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll 2015-02-25 11:05 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll 2015-02-25 11:05 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2015-02-25 11:05 - 2014-04-26 23:03 - 02140888 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2015-02-25 11:05 - 2014-04-26 21:14 - 02144984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2015-02-25 11:05 - 2014-04-26 19:41 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfg.exe 2015-02-25 11:05 - 2014-04-26 19:22 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfgLib.dll 2015-02-25 11:05 - 2014-04-26 19:04 - 00311296 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll 2015-02-25 11:05 - 2014-04-26 18:36 - 00794112 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll 2015-02-25 11:05 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll 2015-02-25 11:05 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2015-02-25 11:05 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2015-02-25 11:05 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll 2015-02-25 11:05 - 2014-04-09 07:11 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-02-25 11:05 - 2014-04-09 06:20 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-02-25 11:05 - 2014-03-08 21:40 - 00136024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys 2015-02-25 11:05 - 2014-03-08 07:41 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2015-02-25 11:05 - 2014-03-08 07:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2015-02-25 11:05 - 2014-03-08 07:04 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2015-02-25 11:05 - 2014-03-08 06:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2015-02-25 11:02 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-02-25 11:02 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-02-25 11:02 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2015-02-25 11:02 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll 2015-02-25 10:59 - 2015-01-10 09:22 - 04175872 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-02-25 10:59 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2015-02-25 10:59 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2015-02-25 10:56 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2015-02-25 10:56 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2015-02-25 10:56 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2015-02-25 10:56 - 2014-09-04 23:30 - 00822272 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2015-02-25 10:56 - 2014-09-04 23:21 - 01053184 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2015-02-25 10:56 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2015-02-25 10:56 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2015-02-25 10:56 - 2014-09-04 02:01 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2015-02-25 10:56 - 2014-09-04 01:32 - 00334336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll 2015-02-25 10:56 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll 2015-02-25 10:56 - 2014-08-31 01:17 - 00148800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2015-02-25 10:56 - 2014-08-31 01:15 - 21197152 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-02-25 10:56 - 2014-08-30 23:59 - 18723112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-02-25 10:56 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll 2015-02-25 10:56 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll 2015-02-25 10:56 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2015-02-25 10:56 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll 2015-02-25 10:56 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2015-02-25 10:56 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2015-02-25 10:56 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll 2015-02-25 10:56 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2015-02-25 10:56 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2015-02-25 10:56 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll 2015-02-25 10:56 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll 2015-02-25 10:56 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll 2015-02-25 10:56 - 2014-07-24 12:22 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll 2015-02-25 10:56 - 2014-07-24 10:58 - 00785408 _____ (Microsoft Corporation) C:\Windows\system32\pmcsnap.dll 2015-02-25 10:56 - 2014-07-24 10:54 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\ppcsnap.dll 2015-02-25 10:56 - 2014-07-24 10:53 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll 2015-02-25 10:56 - 2014-07-24 10:13 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll 2015-02-25 10:56 - 2014-07-24 09:20 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll 2015-02-25 10:56 - 2014-07-24 09:08 - 00162816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll 2015-02-25 10:56 - 2014-07-24 08:49 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll 2015-02-25 10:56 - 2014-07-24 08:43 - 00200192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll 2015-02-25 10:51 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll 2015-02-25 10:51 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll 2015-02-25 09:52 - 2014-06-05 15:13 - 00216368 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll 2015-02-25 09:52 - 2014-06-05 14:14 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll 2015-02-25 09:52 - 2014-05-31 11:07 - 00440664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2015-02-25 09:52 - 2014-05-31 11:07 - 00419672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2015-02-25 09:52 - 2014-05-31 07:26 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2015-02-25 09:52 - 2014-05-31 05:01 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2015-02-25 09:52 - 2014-05-17 05:59 - 16871936 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2015-02-25 09:52 - 2014-05-17 05:13 - 12711424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2015-02-25 09:52 - 2014-04-30 05:43 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-02-25 09:52 - 2014-04-30 05:30 - 00668160 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll 2015-02-25 09:52 - 2014-04-30 05:26 - 01345536 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-02-25 09:52 - 2014-04-30 04:47 - 01509888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-02-25 09:51 - 2014-06-02 03:10 - 00423768 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2015-02-25 09:51 - 2014-05-31 11:07 - 00089944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2015-02-25 09:51 - 2014-05-31 11:07 - 00027480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2015-02-25 09:51 - 2014-05-31 07:30 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2015-02-25 09:51 - 2014-05-31 07:27 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2015-02-25 09:51 - 2014-05-31 05:01 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2015-02-25 09:51 - 2014-05-31 05:01 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2015-02-25 09:51 - 2014-05-29 07:21 - 00655872 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll 2015-02-25 09:51 - 2014-05-27 10:56 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\DaOtpCredentialProvider.dll 2015-02-25 09:51 - 2014-05-27 10:53 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll 2015-02-25 09:51 - 2014-04-30 04:52 - 00590336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll 2015-02-25 09:49 - 2014-04-18 15:57 - 00032600 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll 2015-02-25 09:49 - 2014-04-18 10:44 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll 2015-02-25 09:49 - 2014-04-14 10:20 - 00324888 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll 2015-02-25 09:49 - 2014-04-14 09:01 - 00285144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll 2015-02-25 09:49 - 2014-04-11 05:51 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll 2015-02-25 09:49 - 2014-04-11 05:23 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll 2015-02-25 09:49 - 2014-04-11 04:30 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll 2015-02-25 09:49 - 2014-04-09 12:53 - 00337240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2015-02-25 09:49 - 2014-04-09 07:39 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2015-02-25 09:49 - 2014-04-09 06:44 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2015-02-25 09:49 - 2014-04-09 04:33 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll 2015-02-25 09:49 - 2014-04-08 03:01 - 00589656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2015-02-25 09:49 - 2014-04-06 17:34 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2015-02-25 09:49 - 2014-04-06 17:34 - 00275800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2015-02-25 09:49 - 2014-04-06 17:32 - 00125496 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2015-02-25 09:49 - 2014-04-06 17:30 - 00201920 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll 2015-02-25 09:49 - 2014-04-06 17:24 - 00360792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys 2015-02-25 09:49 - 2014-04-06 17:20 - 01403856 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2015-02-25 09:49 - 2014-04-06 17:20 - 01379064 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2015-02-25 09:49 - 2014-04-06 17:20 - 00881616 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2015-02-25 09:49 - 2014-04-06 17:20 - 00765408 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll 2015-02-25 09:49 - 2014-04-06 17:20 - 00609448 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2015-02-25 09:49 - 2014-04-06 17:20 - 00491744 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll 2015-02-25 09:49 - 2014-04-06 17:20 - 00028408 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2015-02-25 09:49 - 2014-04-06 16:23 - 00098584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2015-02-25 09:49 - 2014-04-06 16:22 - 00178184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll 2015-02-25 09:49 - 2014-04-06 16:16 - 01209616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2015-02-25 09:49 - 2014-04-06 16:16 - 00707048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2015-02-25 09:49 - 2014-04-06 16:16 - 00669856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll 2015-02-25 09:49 - 2014-04-06 16:16 - 00518544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2015-02-25 09:49 - 2014-04-06 16:16 - 00387896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll 2015-02-25 09:49 - 2014-04-06 13:58 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-02-25 09:49 - 2014-04-06 13:51 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-02-25 09:49 - 2014-04-06 13:33 - 00335872 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe 2015-02-25 09:49 - 2014-04-06 13:24 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-02-25 09:49 - 2014-04-06 13:06 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-02-25 09:49 - 2014-04-06 12:26 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll 2015-02-25 09:49 - 2014-04-06 11:51 - 01230336 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2015-02-25 09:49 - 2014-04-06 11:36 - 00888320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2015-02-25 09:49 - 2014-04-06 11:05 - 01222656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll 2015-02-25 09:49 - 2014-04-06 10:59 - 00982016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll 2015-02-25 09:49 - 2014-04-03 09:12 - 00307304 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-02-25 09:49 - 2014-04-03 09:12 - 00130144 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2015-02-25 09:49 - 2014-04-03 05:03 - 00230808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-02-25 09:49 - 2014-04-03 05:03 - 00111528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll 2015-02-25 09:49 - 2014-04-03 03:53 - 00677376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2015-02-25 09:49 - 2014-04-03 03:51 - 01584128 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll 2015-02-25 09:49 - 2014-04-03 03:23 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll 2015-02-25 09:49 - 2014-04-03 03:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll 2015-02-25 09:49 - 2014-04-01 07:23 - 00384856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2015-02-25 09:49 - 2014-03-31 01:01 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll 2015-02-25 09:49 - 2014-03-31 00:43 - 00761856 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll 2015-02-25 09:49 - 2014-03-30 23:54 - 01308160 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2015-02-25 09:49 - 2014-03-30 23:49 - 01287168 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll 2015-02-25 09:49 - 2014-03-30 23:35 - 01029120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll 2015-02-25 09:49 - 2014-03-28 16:58 - 00407016 _____ (Microsoft Corporation) C:\Windows\system32\services.exe 2015-02-25 09:49 - 2014-03-27 07:16 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2015-02-25 09:49 - 2014-03-27 06:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll 2015-02-25 09:49 - 2014-03-27 05:59 - 00426496 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2015-02-25 09:49 - 2014-03-27 05:48 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll 2015-02-25 09:49 - 2014-03-27 05:19 - 00313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll 2015-02-25 09:49 - 2014-03-27 04:46 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll 2015-02-25 09:49 - 2014-03-27 04:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll 2015-02-25 09:49 - 2014-03-27 04:10 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2015-02-25 09:49 - 2014-03-21 05:14 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\tscfgwmi.dll 2015-02-25 09:49 - 2014-03-20 04:48 - 00263424 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe 2015-02-25 09:49 - 2014-03-19 09:15 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll 2015-02-25 09:49 - 2014-03-19 09:07 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2015-02-25 09:49 - 2014-03-19 08:24 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-02-25 09:49 - 2014-03-19 08:17 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll 2015-02-25 09:49 - 2014-03-19 06:45 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2015-02-25 09:49 - 2014-03-19 06:19 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll 2015-02-25 09:49 - 2014-03-19 06:07 - 00370176 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2015-02-25 09:49 - 2014-03-19 06:02 - 01527296 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2015-02-25 09:49 - 2014-03-19 06:00 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll 2015-02-25 09:49 - 2014-03-19 05:51 - 00300544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2015-02-25 09:49 - 2014-03-19 05:31 - 02100736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll 2015-02-25 09:49 - 2014-03-18 09:19 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys 2015-02-25 09:49 - 2014-03-18 06:00 - 07173120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2015-02-25 09:49 - 2014-03-18 05:52 - 05104640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2015-02-25 09:49 - 2014-03-17 06:09 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2015-02-25 09:49 - 2014-03-17 05:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2015-02-25 09:49 - 2014-03-17 04:01 - 00486912 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2015-02-25 09:49 - 2014-03-17 03:45 - 00370176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2015-02-25 09:49 - 2014-03-14 07:26 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll 2015-02-25 09:49 - 2014-03-14 07:10 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll 2015-02-25 09:49 - 2014-03-06 13:42 - 00310616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2015-02-25 09:49 - 2014-03-06 10:19 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll 2015-02-25 09:49 - 2014-03-06 09:20 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll 2015-02-25 09:49 - 2014-01-27 19:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-02-25 09:46 - 2015-02-25 09:46 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-02-25 09:46 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2015-02-25 09:46 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-02-25 09:46 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2015-02-25 09:46 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2015-02-25 09:46 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll 2015-02-25 09:46 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2015-02-25 09:46 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe 2015-02-25 09:46 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe 2015-02-25 09:46 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2015-02-25 09:46 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2015-02-25 09:46 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2015-02-25 09:46 - 2014-10-29 05:00 - 00465320 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2015-02-25 09:46 - 2014-10-29 05:00 - 00139984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe 2015-02-25 09:46 - 2014-10-29 04:52 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2015-02-25 09:46 - 2014-10-29 04:52 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2015-02-25 09:46 - 2014-10-29 04:52 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2015-02-25 09:46 - 2014-10-29 04:52 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2015-02-25 09:46 - 2014-10-29 04:12 - 00413136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe 2015-02-25 09:46 - 2014-10-29 04:12 - 00136296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe 2015-02-25 09:46 - 2014-10-29 04:07 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2015-02-25 09:46 - 2014-10-29 04:07 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2015-02-25 09:46 - 2014-10-29 04:07 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2015-02-25 09:46 - 2014-10-29 03:44 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll 2015-02-25 09:46 - 2014-10-29 02:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll 2015-02-25 09:46 - 2014-10-29 02:24 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2015-02-25 09:46 - 2014-10-29 02:02 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2015-02-25 09:46 - 2014-10-29 02:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2015-02-25 09:46 - 2014-06-06 14:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2015-02-25 09:46 - 2014-06-06 13:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2015-02-25 09:45 - 2014-05-31 11:07 - 00054776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-02-25 09:45 - 2014-05-31 11:06 - 00555736 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2015-02-25 09:45 - 2014-05-31 04:06 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-02-25 09:45 - 2014-05-31 04:03 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-02-25 09:45 - 2014-05-31 03:56 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-02-25 09:45 - 2014-05-31 03:54 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-02-25 09:45 - 2014-05-31 03:48 - 03463680 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-02-25 09:45 - 2014-05-31 03:37 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll 2015-02-25 09:45 - 2014-05-31 03:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll 2015-02-25 09:45 - 2014-05-01 14:31 - 00055328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys 2015-02-25 09:45 - 2014-05-01 06:24 - 02834944 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll 2015-02-25 09:44 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2015-02-25 09:44 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2015-02-25 09:44 - 2014-10-13 03:43 - 00238912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2015-02-25 09:44 - 2014-10-13 03:43 - 00153920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2015-02-25 09:44 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2015-02-25 09:44 - 2014-10-13 03:43 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys 2015-02-25 09:43 - 2014-07-12 05:17 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe 2015-02-25 09:29 - 2015-02-25 09:29 - 00000000 ____D () C:\Users\Philip\AppData\Local\Steam 2015-02-25 09:27 - 2015-02-26 11:02 - 00000000 ____D () C:\Program Files (x86)\Steam 2015-02-25 09:27 - 2015-02-25 09:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-02-23 18:23 - 2015-02-23 18:23 - 00003496 _____ () C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-Philip.Diem@live.de 2015-02-23 18:20 - 2015-02-23 18:29 - 00001456 _____ () C:\Users\Philip\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2015-02-23 18:07 - 2015-02-26 11:33 - 00054784 ___SH () C:\Users\Philip\Desktop\Thumbs.db 2015-02-23 18:07 - 2015-02-23 18:07 - 00001329 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2015-02-23 18:07 - 2015-02-23 18:07 - 00000000 ___RD () C:\Users\Philip\Creative Cloud Files 2015-02-23 18:05 - 2015-02-23 18:05 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe 2015-02-23 17:56 - 2015-02-23 17:56 - 00001044 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe InDesign CC 2014.lnk 2015-02-23 17:52 - 2015-02-23 17:52 - 00001046 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CC (64bit).lnk 2015-02-23 17:51 - 2015-02-23 17:51 - 00001004 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Flash Professional CC 2014.lnk 2015-02-23 17:49 - 2015-02-23 17:49 - 00001511 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator CC 2014.lnk 2015-02-23 17:49 - 2015-02-23 17:49 - 00001357 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CC.lnk 2015-02-23 17:49 - 2015-02-23 17:49 - 00000000 ____D () C:\ProgramData\ALM 2015-02-23 17:48 - 2015-02-25 18:27 - 00000000 ____D () C:\Program Files\Adobe 2015-02-23 17:48 - 2015-02-23 17:48 - 00001056 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2014.lnk 2015-02-23 17:47 - 2015-02-25 18:27 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2015-02-23 17:45 - 2015-02-25 18:25 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\UseNeXT 2015-02-23 17:45 - 2015-02-23 17:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UseNeXT 2015-02-23 17:45 - 2015-02-23 17:45 - 00000000 ____D () C:\Program Files (x86)\UseNeXT 2015-02-23 17:43 - 2015-02-23 17:43 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2015-02-23 17:43 - 2015-02-23 17:43 - 00000000 ____D () C:\Program Files\Reference Assemblies 2015-02-23 17:43 - 2015-02-23 17:43 - 00000000 ____D () C:\Program Files\MSBuild 2015-02-23 17:43 - 2015-02-23 17:43 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies 2015-02-23 17:43 - 2015-02-23 17:43 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2015-02-23 17:42 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll 2015-02-23 17:42 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-02-23 17:42 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll 2015-02-23 17:42 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-02-23 17:03 - 2015-02-23 17:03 - 00000000 ____D () C:\Users\Philip\Tracing 2015-02-23 17:03 - 2015-02-23 17:03 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\vlc 2015-02-23 17:02 - 2015-02-26 12:13 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Skype 2015-02-23 17:02 - 2015-02-23 17:02 - 00000000 ____D () C:\Users\Philip\AppData\Local\Skype 2015-02-23 17:02 - 2015-02-23 17:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-02-23 17:02 - 2015-02-23 17:02 - 00000000 ____D () C:\Program Files\VideoLAN 2015-02-23 17:01 - 2015-02-23 17:02 - 00000000 ____D () C:\ProgramData\Skype 2015-02-23 17:01 - 2015-02-23 17:01 - 00000000 ___RD () C:\Program Files (x86)\Skype 2015-02-23 17:01 - 2015-02-23 17:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-02-23 16:57 - 2015-02-23 16:57 - 00000000 ___SD () C:\Users\Philip\Documents\Meine Shapes 2015-02-23 16:56 - 2015-02-23 16:56 - 00000000 ____D () C:\Windows\PCHEALTH 2015-02-23 16:55 - 2015-02-23 17:00 - 00000000 ____D () C:\ProgramData\Microsoft Help 2015-02-23 16:55 - 2015-02-23 16:55 - 00000000 __RHD () C:\MSOCache 2015-02-23 16:55 - 2015-02-23 16:55 - 00000000 ____D () C:\Users\Philip\Downloads\InfoPath 2013 (x86 and x64) - DVD (German) 2015-02-23 16:55 - 2015-02-23 16:55 - 00000000 ____D () C:\Users\Philip\AppData\Local\Microsoft Help 2015-02-23 16:55 - 2015-02-23 16:55 - 00000000 ____D () C:\Program Files\Microsoft Office 2015-02-23 16:55 - 2015-02-23 16:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services 2015-02-23 16:54 - 2015-02-23 16:54 - 00002785 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Mindjet MindManager 15.lnk 2015-02-23 16:54 - 2015-02-23 16:54 - 00000000 ____D () C:\ProgramData\Mindjet 2015-02-23 16:54 - 2015-02-23 16:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mindjet MindManager 15 2015-02-23 16:54 - 2015-02-23 16:54 - 00000000 ____D () C:\Program Files\Mindjet 2015-02-23 16:53 - 2015-02-23 16:53 - 00000000 ____D () C:\Users\Philip\AppData\Local\{463F9BF0-77DB-4910-92A0-11C19B92619F} 2015-02-23 16:46 - 2015-02-23 16:46 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\e-academy Inc 2015-02-23 16:46 - 2015-02-23 16:46 - 00000000 ____D () C:\Users\Philip\AppData\Local\e-academy Inc 2015-02-23 16:29 - 2015-02-23 16:29 - 00000000 ____D () C:\Windows\system32\appmgmt 2015-02-23 15:52 - 2015-02-23 18:05 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\NVIDIA 2015-02-23 15:46 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2015-02-23 15:46 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2015-02-23 15:46 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2015-02-23 15:46 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2015-02-23 15:46 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2015-02-23 15:46 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2015-02-23 15:45 - 2015-02-25 16:37 - 00000000 ____D () C:\Users\Philip\AppData\Local\NVIDIA Corporation 2015-02-23 15:45 - 2015-02-25 16:37 - 00000000 ____D () C:\Users\Philip\AppData\Local\NVIDIA 2015-02-23 15:45 - 2015-02-23 15:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-02-23 15:45 - 2015-02-23 15:45 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2015-02-23 15:45 - 2014-07-25 15:01 - 01715224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2015-02-23 15:45 - 2014-07-25 15:01 - 01291280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2015-02-23 15:45 - 2014-07-25 15:01 - 01283136 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2015-02-23 15:45 - 2014-07-25 15:01 - 01126480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2015-02-23 15:43 - 2015-02-04 04:56 - 14497568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2015-02-23 15:43 - 2015-02-04 04:56 - 02823992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2015-02-23 15:43 - 2015-02-04 04:56 - 00846880 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2015-02-23 15:43 - 2014-07-02 21:48 - 01890080 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434052.dll 2015-02-23 15:43 - 2014-07-02 21:48 - 01539928 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434052.dll 2015-02-23 15:43 - 2014-03-31 17:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2015-02-23 15:43 - 2014-03-31 17:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2015-02-23 15:43 - 2014-03-31 17:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2015-02-23 15:42 - 2015-02-23 15:42 - 00000000 ____D () C:\NVIDIA 2015-02-23 15:29 - 2015-02-23 15:29 - 00000020 ___SH () C:\Users\UpdatusUser\ntuser.ini 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Vorlagen 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Startmenü 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Netzwerkumgebung 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Lokale Einstellungen 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Eigene Dateien 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Druckumgebung 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Documents\Eigene Musik 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Documents\Eigene Bilder 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\AppData\Local\Verlauf 2015-02-23 15:29 - 2014-03-18 11:32 - 00000000 ___RD () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-02-23 15:29 - 2014-03-18 11:32 - 00000000 ___RD () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-02-23 15:29 - 2014-03-18 11:12 - 00000369 _____ () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-02-23 15:29 - 2014-03-18 11:12 - 00000369 _____ () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-02-23 15:29 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-02-23 15:29 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-02-23 15:28 - 2015-02-25 18:46 - 00000000 ____D () C:\ProgramData\NVIDIA 2015-02-23 15:28 - 2015-02-04 03:21 - 06782152 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2015-02-23 15:28 - 2015-02-04 03:21 - 03522376 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2015-02-23 15:28 - 2015-02-04 03:21 - 02558792 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2015-02-23 15:28 - 2015-02-04 03:21 - 01082568 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2015-02-23 15:28 - 2015-02-04 03:21 - 00932040 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2015-02-23 15:28 - 2015-02-04 03:21 - 00384200 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2015-02-23 15:28 - 2015-02-04 03:21 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2015-02-23 15:28 - 2015-02-04 03:21 - 00062792 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2015-02-23 15:28 - 2015-02-03 17:18 - 04229086 _____ () C:\Windows\system32\nvcoproc.bin 2015-02-23 15:26 - 2015-02-23 15:26 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-02-23 15:24 - 2015-02-25 16:37 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2015-02-23 15:24 - 2015-02-23 15:24 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2015-02-23 15:21 - 2015-02-04 04:56 - 00167312 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2015-02-23 15:21 - 2015-02-04 04:56 - 00147576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2015-02-23 15:21 - 2015-02-04 04:56 - 00026155 _____ () C:\Windows\system32\nvinfo.pb 2015-02-23 15:21 - 2011-06-05 07:22 - 01626728 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6420141.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 01394280 _____ (NVIDIA Corporation) C:\Windows\system32\nvgenco642061.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00446056 _____ (NVIDIA Corporation) C:\Windows\system32\nvoptimusmft.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00391784 _____ (NVIDIA Corporation) C:\Windows\system32\nvdecodemft.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00380520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoptimusmft.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00320104 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvdecodemft.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00067176 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00057960 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00011240 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvBridge.kmd 2015-02-23 15:19 - 2015-02-23 15:19 - 00002207 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk 2015-02-23 15:19 - 2015-02-23 15:19 - 00000000 ____D () C:\Users\Philip\AppData\Local\WinZip 2015-02-23 15:18 - 2015-02-23 15:19 - 00000000 ____D () C:\ProgramData\WinZip 2015-02-23 15:18 - 2015-02-23 15:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 2015-02-23 15:18 - 2015-02-23 15:18 - 00000000 ____D () C:\Program Files\WinZip 2015-02-23 14:57 - 2015-02-25 18:32 - 00000000 ____D () C:\Program Files (x86)\Adobe 2015-02-23 14:57 - 2015-02-23 14:57 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2015-02-23 14:56 - 2015-02-26 11:04 - 00000000 ____D () C:\Users\Philip\AppData\Local\Adobe 2015-02-23 14:56 - 2015-02-25 18:14 - 00000000 ____D () C:\ProgramData\Adobe 2015-02-23 14:53 - 2015-02-23 14:53 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Apple Computer 2015-02-23 14:53 - 2015-02-23 14:53 - 00000000 ____D () C:\Users\Philip\AppData\Local\flexsim 2015-02-23 14:53 - 2015-02-23 14:53 - 00000000 ____D () C:\Users\Philip\AppData\Local\Apple Computer 2015-02-23 14:52 - 2015-02-25 10:59 - 00000000 ____D () C:\ProgramData\FLEXnet 2015-02-23 14:52 - 2015-02-23 14:53 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Flexsim 2015-02-23 14:51 - 2015-02-23 14:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlexSim 7.3 2015-02-23 14:51 - 2015-02-23 14:51 - 00000000 ____D () C:\Program Files\Common Files\Macrovision Shared 2015-02-23 14:50 - 2015-02-23 14:53 - 00000000 ____D () C:\ProgramData\Flexsim 2015-02-23 14:50 - 2015-02-23 14:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlexSim 6 2015-02-23 14:50 - 2015-02-23 14:50 - 00000000 ____D () C:\Program Files\FlexSim7.3 2015-02-23 14:50 - 2015-02-23 14:50 - 00000000 ____D () C:\Program Files (x86)\Flexsim6 2015-02-23 14:30 - 2015-02-23 15:24 - 00000000 ____D () C:\Users\Philip\AppData\Local\BlackBerry 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_blackberryncm6_AMD64_01007.Wdf 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 ____D () C:\Users\Philip\AppData\Local\Research In Motion 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 ____D () C:\ProgramData\Research In Motion 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlackBerry Blend 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 ____D () C:\Program Files (x86)\BlackBerry 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 _____ () C:\Windows\SysWOW64\out.txt 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 _____ () C:\Windows\SysWOW64\err.txt 2015-02-23 14:28 - 2015-02-23 18:07 - 00000000 ____D () C:\ProgramData\Package Cache 2015-02-23 14:28 - 2015-02-23 14:28 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_RimSerial_AMD64_01007.Wdf 2015-02-23 14:28 - 2012-12-10 15:48 - 00044544 _____ (Research in Motion Ltd) C:\Windows\system32\Drivers\RimSerial_AMD64.sys 2015-02-23 14:18 - 2015-02-26 11:02 - 00000000 ___RD () C:\Users\Philip\Dropbox 2015-02-23 14:18 - 2015-02-23 14:18 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-02-23 14:17 - 2015-02-26 12:37 - 00000000 ____D () C:\Users\Philip\Downloads\Chrome 2015-02-23 14:17 - 2015-02-26 11:02 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Dropbox 2015-02-23 14:17 - 2015-02-23 14:17 - 00000000 ____D () C:\Users\Philip\Downloads\Usenext 2015-02-23 14:17 - 2015-02-23 14:17 - 00000000 ____D () C:\Users\Philip\Downloads\FHNW 2015-02-23 14:09 - 2015-02-25 18:29 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Spotify 2015-02-23 14:09 - 2015-02-25 16:17 - 00000000 ____D () C:\Users\Philip\AppData\Local\Spotify 2015-02-23 14:09 - 2015-02-23 14:09 - 00001838 _____ () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2015-02-23 14:06 - 2015-02-23 14:09 - 00000000 ____D () C:\Users\Philip\ARISExpress 2015-02-23 14:05 - 2015-02-23 14:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ARIS Platform 2015-02-23 14:04 - 2015-02-23 14:04 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2015-02-23 14:04 - 2015-02-23 14:04 - 00000000 ____D () C:\Program Files\ARIS Express 2015-02-23 14:03 - 2015-02-23 16:52 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\DAEMON Tools Lite 2015-02-23 14:03 - 2015-02-23 14:03 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2015-02-23 14:03 - 2015-02-23 14:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2015-02-23 14:03 - 2015-02-23 14:03 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2015-02-23 14:02 - 2015-02-23 16:52 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite 2015-02-23 14:02 - 2015-02-23 14:02 - 00000182 _____ () C:\Windows\venple.ini 2015-02-23 14:02 - 2015-02-23 14:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vensim 2015-02-23 14:01 - 2015-02-23 14:02 - 00000000 ____D () C:\Users\Public\Vensim 2015-02-23 14:01 - 2015-02-23 14:02 - 00000000 ____D () C:\Program Files (x86)\Vensim 2015-02-23 13:59 - 2015-02-23 13:59 - 00000000 ____D () C:\Users\Philip\AppData\Local\Cisco 2015-02-23 13:59 - 2015-02-23 13:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco 2015-02-23 13:59 - 2015-02-23 13:59 - 00000000 ____D () C:\ProgramData\Cisco 2015-02-23 13:59 - 2015-02-23 13:59 - 00000000 ____D () C:\Program Files (x86)\Cisco 2015-02-23 13:59 - 2013-12-12 23:14 - 00112496 ____R (Cisco Systems, Inc.) C:\Windows\system32\Drivers\acsock64.sys 2015-02-23 13:58 - 2015-02-23 13:58 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2015-02-23 13:58 - 2015-02-23 13:58 - 00000000 ____D () C:\Program Files (x86)\Java 2015-02-23 13:54 - 2015-02-23 13:54 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2015-02-23 13:54 - 2015-02-23 13:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-02-23 13:54 - 2015-02-23 13:54 - 00000000 ____D () C:\Program Files\Java 2015-02-23 13:45 - 2015-02-23 13:58 - 00000000 ____D () C:\ProgramData\Oracle 2015-02-23 13:45 - 2015-02-23 13:46 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Mozilla 2015-02-23 13:45 - 2015-02-23 13:46 - 00000000 ____D () C:\Users\Philip\AppData\Local\Mozilla 2015-02-23 13:45 - 2015-02-23 13:45 - 00001171 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-02-23 13:45 - 2015-02-23 13:45 - 00000000 ____D () C:\ProgramData\Sun 2015-02-23 13:45 - 2015-02-23 13:45 - 00000000 ____D () C:\ProgramData\Mozilla 2015-02-23 13:45 - 2015-02-23 13:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2015-02-23 13:45 - 2015-02-23 13:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2015-02-23 13:42 - 2015-02-26 11:18 - 00005124 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for IGOR-Philip Igor 2015-02-23 13:42 - 2015-02-23 13:42 - 00003090 _____ () C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1974623646-547660712-2476049583-1001 2015-02-23 13:42 - 2015-02-23 13:42 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2015-02-23 13:34 - 2015-02-23 17:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2015-02-23 13:34 - 2015-02-23 16:56 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2015-02-23 13:33 - 2015-02-23 13:33 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2015-02-23 13:29 - 2015-02-23 13:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-02-23 13:28 - 2015-02-26 12:33 - 00000908 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-02-23 13:28 - 2015-02-26 11:02 - 00000904 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-02-23 13:28 - 2015-02-23 13:29 - 00000000 ____D () C:\Users\Philip\AppData\Local\Google 2015-02-23 13:28 - 2015-02-23 13:29 - 00000000 ____D () C:\Program Files (x86)\Google 2015-02-23 13:28 - 2015-02-23 13:28 - 00003880 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-02-23 13:28 - 2015-02-23 13:28 - 00003644 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-02-23 13:27 - 2015-02-23 13:27 - 00000000 __SHD () C:\Users\Philip\AppData\Local\EmieUserList 2015-02-23 13:27 - 2015-02-23 13:27 - 00000000 __SHD () C:\Users\Philip\AppData\Local\EmieSiteList 2015-02-23 13:27 - 2015-02-23 13:27 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Macromedia 2015-02-23 13:24 - 2015-02-26 11:06 - 00003918 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{1CC53448-E437-4213-962C-0497FA1A6564} 2015-02-23 13:22 - 2015-02-24 16:03 - 00023992 _____ () C:\Users\Philip\AppData\Roaming\Notepad2.ini 2015-02-23 13:22 - 2015-02-23 13:22 - 00000000 ____D () C:\Program Files\Notepad2 2015-02-23 13:17 - 2015-02-23 13:17 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\McAfee 2015-02-23 13:15 - 2015-02-23 13:15 - 00771096 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfehidk.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00339392 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfewfpk.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00309400 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeavfk.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00178840 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeapfk.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00177680 _____ (McAfee, Inc.) C:\Windows\system32\mfevtps.exe 2015-02-23 13:15 - 2015-02-23 13:15 - 00118416 _____ (McAfee, Inc.) C:\Windows\system32\MfeOtlkAddin.dll 2015-02-23 13:15 - 2015-02-23 13:15 - 00106112 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mferkdet.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00090576 _____ (McAfee, Inc.) C:\Windows\SysWOW64\MfeOtlkAddin.dll 2015-02-23 13:15 - 2015-02-23 13:15 - 00069168 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeelamk.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00024168 _____ (McAfee, Inc.) C:\Windows\SysWOW64\MFEOtlk.dll 2015-02-23 13:15 - 2015-02-23 13:15 - 00010288 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeclnk.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2015-02-23 13:15 - 2015-02-23 13:15 - 00000000 ____D () C:\ProgramData\McAfee 2015-02-23 13:15 - 2015-02-23 13:15 - 00000000 ____D () C:\Program Files\Common Files\McAfee 2015-02-23 13:15 - 2015-02-23 13:15 - 00000000 ____D () C:\Program Files (x86)\McAfee 2015-02-23 13:12 - 2015-02-23 13:14 - 00001554 _____ () C:\Windows\KB893803v2.log 2015-02-23 13:11 - 2015-02-23 15:45 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2015-02-23 13:11 - 2015-02-23 15:45 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2015-02-23 13:09 - 2015-02-26 12:39 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1974623646-547660712-2476049583-1001 2015-02-23 13:09 - 2015-02-23 13:09 - 00000000 ____D () C:\Program Files (x86)\Intel 2015-02-23 13:09 - 2015-02-23 13:09 - 00000000 ____D () C:\Intel 2015-02-23 13:08 - 2015-02-26 11:04 - 00000000 ___DO () C:\Users\Philip\OneDrive 2015-02-23 13:04 - 2015-02-25 18:29 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Adobe 2015-02-23 13:04 - 2015-02-25 17:59 - 00000000 ____D () C:\Users\Philip\AppData\Local\Packages 2015-02-23 13:04 - 2015-02-24 16:08 - 00000000 ____D () C:\Users\Philip 2015-02-23 13:04 - 2015-02-23 14:52 - 00000000 ____D () C:\Users\Philip\AppData\Local\VirtualStore 2015-02-23 13:04 - 2015-02-23 13:05 - 00000000 ____D () C:\Users\Philip\AppData\Local\PackageStaging 2015-02-23 13:04 - 2015-02-23 13:04 - 00001450 _____ () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-02-23 13:04 - 2015-02-23 13:04 - 00000020 ___SH () C:\Users\Philip\ntuser.ini 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Vorlagen 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Startmenü 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Netzwerkumgebung 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Lokale Einstellungen 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Eigene Dateien 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Druckumgebung 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Documents\Eigene Musik 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Documents\Eigene Bilder 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\AppData\Local\Verlauf 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\AppData\Local\Anwendungsdaten 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Anwendungsdaten 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 ____D () C:\Windows\System32\Tasks\WPD 2015-02-23 13:04 - 2014-03-18 11:32 - 00000000 ___RD () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-02-23 13:04 - 2014-03-18 11:32 - 00000000 ___RD () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-02-23 13:04 - 2014-03-18 11:12 - 00000369 _____ () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-02-23 13:04 - 2014-03-18 11:12 - 00000369 _____ () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-02-23 13:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-02-23 13:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-02-23 12:59 - 2015-02-26 11:29 - 02024378 _____ () C:\Windows\WindowsUpdate.log 2015-02-23 12:59 - 2015-02-23 12:59 - 00000000 ____D () C:\Windows\CSC 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Startmenü 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Programme 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\ProgramData\Startmenü 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\ProgramData\Dokumente 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2015-02-23 12:43 - 2015-02-23 13:04 - 00000000 ____D () C:\Windows\Panther 2015-02-23 12:43 - 2015-02-23 12:43 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-26 12:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru 2015-02-26 11:10 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp 2015-02-25 18:53 - 2014-03-18 11:04 - 01776918 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-02-25 18:53 - 2014-03-18 10:25 - 00765582 _____ () C:\Windows\system32\perfh007.dat 2015-02-25 18:53 - 2014-03-18 10:25 - 00159366 _____ () C:\Windows\system32\perfc007.dat 2015-02-25 18:47 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2015-02-25 18:46 - 2013-08-22 15:46 - 00021028 _____ () C:\Windows\setupact.log 2015-02-25 18:46 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-02-25 18:46 - 2013-08-22 15:44 - 00487448 _____ () C:\Windows\system32\FNTCACHE.DAT 2015-02-25 18:45 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI 2015-02-25 18:44 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData 2015-02-25 18:44 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\setup 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2015-02-25 18:43 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\oobe 2015-02-25 18:42 - 2014-03-18 10:40 - 00000000 ____D () C:\Program Files\Windows Journal 2015-02-25 17:26 - 2015-01-16 16:20 - 00000000 ____D () C:\Users\Philip\Desktop\Vensim nach Flexsim(Ofen) 2015-02-25 11:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2015-02-25 09:38 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness 2015-02-23 17:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\MUI 2015-02-23 17:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\MUI 2015-02-23 15:28 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Help 2015-02-23 15:22 - 2014-03-18 02:51 - 00002118 _____ () C:\Windows\PFRO.log 2015-02-23 13:15 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\ELAMBKUP 2015-02-23 13:15 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\restore 2015-02-23 12:45 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows NT 2015-02-23 12:45 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default 2015-02-23 12:44 - 2013-08-22 16:37 - 00002664 _____ () C:\Windows\DtcInstall.log 2015-02-23 12:44 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Recovery 2015-02-23 12:43 - 2013-08-22 16:36 - 00262144 _____ () C:\Windows\system32\config\BCD-Template 2015-02-04 04:56 - 2013-09-05 02:37 - 00965360 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2015-02-04 04:56 - 2013-09-05 02:35 - 03209736 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll ==================== Files in the root of some directories ======= 2015-02-25 17:59 - 2015-01-20 04:32 - 93253791 _____ () C:\Users\Philip\AppData\Roaming\autostarter.exe 2015-02-23 13:22 - 2015-02-24 16:03 - 0023992 _____ () C:\Users\Philip\AppData\Roaming\Notepad2.ini 2015-02-25 18:04 - 2015-02-26 12:39 - 0000032 _____ () C:\Users\Philip\AppData\Roaming\url.txt 2015-02-23 18:20 - 2015-02-23 18:29 - 0001456 _____ () C:\Users\Philip\AppData\Local\Adobe Für Web speichern 13.0 Prefs Some content of TEMP: ==================== C:\Users\Philip\AppData\Local\Temp\20150223015906531jniverify.dll C:\Users\Philip\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpztpu_v.dll C:\Users\Philip\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Philip\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\Philip\AppData\Local\Temp\nvStInst.exe C:\Users\Philip\AppData\Local\Temp\proxy_vole5338398748353483046.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-02-23 12:43 ==================== End Of Log ============================ |
![]() | #5 |
| ![]() Addition LogCode:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 25-02-2015 01 Ran by Philip at 2015-02-26 12:39:52 Running from C:\Users\Philip\Downloads\Chrome Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: McAfee VirusScan Enterprise (Enabled - Up to date) {ADA629C7-7F48-5689-624A-3B76997E0892} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: McAfee VirusScan Enterprise Antispyware Module (Enabled - Up to date) {16C7C823-5972-5907-58FA-0004E2F9422F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: - Adobe Systems Incorporated) Adobe Bridge CC (64 Bit) (HKLM-x32\...\{359F8007-6486-429C-A8C5-D67F6897C88C}) (Version: 6.0 - Adobe Systems Incorporated) Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: - Adobe Systems Incorporated) Adobe Dreamweaver CC 2014 (HKLM-x32\...\{7F823F8E-4348-11E4-8BF8-81763C49AA32}) (Version: 15.1.0 - Adobe Systems Incorporated) Adobe Extension Manager CC (HKLM-x32\...\{244FD30F-63F1-49B9-9D98-1150FF4FFCB1}) (Version: 7.3.2 - Adobe Systems Incorporated) Adobe Flash Professional CC 2014 (HKLM-x32\...\{AA704223-E11C-11E3-8A38-C09A633B72AF}) (Version: 14.2 - Adobe Systems Incorporated) Adobe Illustrator CC 2014 (HKLM-x32\...\{2B4B4082-8043-4646-8334-B0A29E641211}) (Version: 18.1.1 - Adobe Systems Incorporated) Adobe InDesign CC 2014 (HKLM-x32\...\{CCDCB9C4-72BA-1014-A3F8-D123F2F18BC2}) (Version: - Adobe Systems Incorporated) Adobe Photoshop CC 2014 (HKLM-x32\...\{D7A4F897-B20A-42D0-862D-CB5F6DB7391D}) (Version: 15.2.2 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) Adobe® Content Viewer (HKLM-x32\...\com.adobe.dmp.contentviewer) (Version: 3.4.3 - Adobe Systems, Incorporated) ARIS EXPRESS (HKLM-x32\...\{49ABE0DF-5BC9-40E8-8996-7A2938BFB5C2}) (Version: 2.4 - Software AG) Besiege (HKLM-x32\...\Steam App 346010) (Version: - Spiderling Studios) BlackBerry 10 Desktop Software (HKLM-x32\...\{ddaa6aab-c1ec-45ea-a8f2-a95d10f57295}) (Version: - BlackBerry) BlackBerry Blend (x32 Version: - BlackBerry Ltd.) Hidden BlackBerry Communication Drivers (x32 Version: - BlackBerry Ltd.) Hidden BlackBerry Device Drivers (x32 Version: - BlackBerry Ltd.) Hidden BlackBerry Link Remover (x32 Version: - BlackBerry Ltd.) Hidden Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 3.1.05152 - Cisco Systems, Inc.) Cisco AnyConnect Secure Mobility Client (x32 Version: 3.1.05152 - Cisco Systems, Inc.) Hidden Cisco AnyConnect Start Before Login Module (HKLM-x32\...\{861B49DF-AB21-4A9A-97D8-AD02F3FF3677}) (Version: 3.1.05152 - Cisco Systems, Inc.) CreativeCloud_Win64 (Version: 1.2.0000 - Adobe Systems Incorporated) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: - Disc Soft Ltd) Dropbox (HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Dropbox) (Version: 3.2.6 - Dropbox, Inc.) FlexSim 6.0.2 (HKLM-x32\...\{8C275A9D-629B-4EF4-A853-382DB327EA6A}) (Version: 6.0.2 - FlexSim Software Products Inc.) FlexSim 7.3.6 (HKLM\...\{876F0791-7E4E-4F13-B72F-CBD1B1746AC4}) (Version: 7.3.6 - FlexSim Software Products Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.115 - Google Inc.) Google Update Helper (x32 Version: - Google Inc.) Hidden Java 8 Update 31 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418031F0}) (Version: 8.0.310 - Oracle Corporation) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) McAfee Agent (HKLM-x32\...\{D107EA80-023A-443C-AA79-1C4B0CB2E227}) (Version: - McAfee, Inc.) McAfee VirusScan Enterprise (HKLM-x32\...\{CE15D1B6-19B6-4D4D-8F43-CF5D2C3356FF}) (Version: 8.8.03000 - McAfee, Inc.) Microsoft InfoPath 2013 (HKLM-x32\...\Office15.InfoPathr) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 15.0.4693.1002 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\OneDriveSetup.exe) (Version: 17.3.1171.0714 - Microsoft Corporation) Microsoft Visio Professional 2013 (HKLM-x32\...\Office15.VISPROR) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Mindjet MindManager 15 (HKLM\...\{6DC22521-28B0-40A0-A80E-5C71A4495D92}) (Version: 15.0.160 - Mindjet) Mozilla Firefox 35.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 35.0.1 (x86 de)) (Version: 35.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 35.0.1 - Mozilla) Notepad2 (Notepad Replacement) (HKLM\...\Notepad2) (Version: 4.2.25 - Florian Balmer) NVIDIA 3D Vision Treiber 341.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 341.44 - NVIDIA Corporation) NVIDIA GeForce Experience 2.1.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.1 - NVIDIA Corporation) NVIDIA Grafiktreiber 341.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.44 - NVIDIA Corporation) NVIDIA PhysX-Systemsoftware 9.13.1220 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.1220 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4693.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4693.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4693.1002 - Microsoft Corporation) Hidden Outils de vérification linguistique 2013 de Microsoft Office*- Français (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Secure Download Manager (HKLM-x32\...\{C58626D6-7EBD-460D-8B6C-75B3C3464879}) (Version: 3.1.60 - Kivuto Solutions Inc.) SHIELD Streaming (Version: 3.1.100 - NVIDIA Corporation) Hidden Skype™ 7.1 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.1.105 - Skype Technologies S.A.) Spotify (HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Spotify) (Version: - Spotify AB) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) UseNeXT by Tangysoft (HKLM-x32\...\UseNeXT by Tangysoft_is1) (Version: - Tangysoft Ltd.) Vensim PLE (HKLM-x32\...\Vensim PLE) (Version: - ) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) WinZip 19.0 (HKLM\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240E5}) (Version: 19.0.11293 - WinZip Computing, S.L. ) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-1974623646-547660712-2476049583-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Philip\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1974623646-547660712-2476049583-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1974623646-547660712-2476049583-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Philip\AppData\Local\Microsoft\SkyDrive\17.3.1171.0714\amd64\FileSyncApi64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1974623646-547660712-2476049583-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1974623646-547660712-2476049583-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1974623646-547660712-2476049583-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1974623646-547660712-2476049583-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1974623646-547660712-2476049583-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1974623646-547660712-2476049583-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1974623646-547660712-2476049583-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1974623646-547660712-2476049583-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ==================== Restore Points ========================= 23-02-2015 13:15:23 McAfee VirusScan Enterprise wurde installiert. 25-02-2015 18:25:42 Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {08EA988B-A086-448B-8B58-3A6B6A5EEBED} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-23] (Google Inc.) Task: {397E18B6-0F4C-42A7-853A-2B08EEB241D7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {597291F4-BB68-43EF-B771-3FACE0508FB0} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {85C7F4FF-C8E5-426D-922E-6F5E2E53A688} - System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1974623646-547660712-2476049583-1001 => %localappdata%\Microsoft\SkyDrive\SkyDrive.exe Task: {96EC7A6C-C870-47D5-A262-2D8A62CA5F86} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2015-01-29] (Microsoft Corporation) Task: {996B1411-69E4-4FA5-ACE9-EB4EB2BC8E38} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-23] (Google Inc.) Task: {A1CB7789-19AC-4B4E-8A62-F14E1AB65848} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-Philip.Diem@live.de => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-09-19] (Adobe Systems Incorporated) Task: {B7319A7D-273F-4618-8E7C-2054B96898DA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {C49A087C-1291-4C10-90AA-3A8FB99AA364} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-12-30] (Microsoft Corporation) Task: {CD2809AE-FB39-4A49-B95F-652C9FDF7F46} - System32\Tasks\Microsoft Office 15 Sync Maintenance for IGOR-Philip Igor => C:\Program Files\Microsoft Office 15\Root\Office15\MsoSync.exe [2015-02-23] (Microsoft Corporation) Task: {D6A7F8DD-5339-41FE-A598-0D4ED950E777} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-12-30] (Microsoft Corporation) Task: {D89A5FD3-5CE2-4DE9-ABD5-E22BC9B73393} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe Task: {DECDF4D5-55BB-48D0-8047-54E8D336BE7F} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2015-02-23] (Microsoft Corporation) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============== 2015-02-23 15:28 - 2015-02-04 03:21 - 00115400 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll 2015-02-23 13:33 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-12-19 15:57 - 2014-12-19 15:57 - 01039008 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll 2010-07-15 05:44 - 2010-07-15 05:44 - 00020032 _____ () C:\Program Files\Unlocker\UnlockerCOM.dll 2012-11-26 23:54 - 2012-11-26 23:54 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2014-09-04 14:53 - 2014-09-04 14:53 - 00178992 _____ () C:\Program Files\Mindjet\MindManager 15\zlib64.dll 2015-02-25 17:59 - 2015-01-20 04:32 - 93253791 _____ () C:\Users\Philip\AppData\Roaming\autostarter.exe 2014-12-19 15:57 - 2014-12-19 15:57 - 05979808 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe 2015-02-23 13:29 - 2015-02-18 02:34 - 01450312 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\libglesv2.dll 2015-02-23 13:29 - 2015-02-18 02:34 - 00205128 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\libegl.dll 2015-02-23 13:29 - 2015-02-18 02:34 - 10864456 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.115\pdf.dll 2013-12-12 23:36 - 2013-12-12 23:36 - 00063376 _____ () C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\zlib1.dll 2007-04-18 20:30 - 2007-04-18 20:30 - 00393216 _____ () C:\Program Files (x86)\McAfee\Common Framework\cryptocme2.dll 2007-04-18 20:30 - 2007-04-18 20:30 - 00471040 _____ () C:\Program Files (x86)\McAfee\Common Framework\ccme_base.dll 2014-11-28 11:18 - 2014-11-28 11:18 - 00094208 _____ () C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\libxpmux.dll 2015-02-25 09:28 - 2014-11-11 19:47 - 00774656 _____ () C:\Program Files (x86)\Steam\SDL2.dll 2015-02-25 09:28 - 2014-12-02 01:29 - 05002752 _____ () C:\Program Files (x86)\Steam\v8.dll 2015-02-25 09:28 - 2015-02-19 00:51 - 02360000 _____ () C:\Program Files (x86)\Steam\video.dll 2015-02-25 09:28 - 2014-12-02 01:29 - 01612800 _____ () C:\Program Files (x86)\Steam\icui18n.dll 2015-02-25 09:28 - 2014-12-02 01:29 - 01210368 _____ () C:\Program Files (x86)\Steam\icuuc.dll 2015-02-25 09:28 - 2014-12-01 22:31 - 02396672 _____ () C:\Program Files (x86)\Steam\libavcodec-56.dll 2015-02-25 09:28 - 2014-12-01 22:31 - 00479744 _____ () C:\Program Files (x86)\Steam\libavformat-56.dll 2015-02-25 09:28 - 2014-12-01 22:31 - 00332800 _____ () C:\Program Files (x86)\Steam\libavresample-2.dll 2015-02-25 09:28 - 2014-12-01 22:31 - 00442880 _____ () C:\Program Files (x86)\Steam\libavutil-54.dll 2015-02-25 09:28 - 2014-12-01 22:31 - 00485888 _____ () C:\Program Files (x86)\Steam\libswscale-3.dll 2015-02-25 09:28 - 2015-02-19 00:51 - 00702656 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL 2015-02-25 09:28 - 2015-01-28 02:30 - 34641288 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll 2015-02-23 14:18 - 2015-02-10 22:00 - 00750080 _____ () C:\Users\Philip\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2015-02-26 11:02 - 2015-02-26 11:02 - 00043008 _____ () c:\users\philip\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpztpu_v.dll 2015-02-23 14:18 - 2015-02-10 22:00 - 00047616 _____ () C:\Users\Philip\AppData\Roaming\Dropbox\bin\libEGL.dll 2015-02-23 14:18 - 2015-02-10 22:00 - 00865280 _____ () C:\Users\Philip\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll 2015-02-23 14:18 - 2015-02-10 22:00 - 00200704 _____ () C:\Users\Philip\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll 2015-01-07 21:27 - 2015-01-07 21:27 - 36730032 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libcef.dll 2015-01-07 21:27 - 2015-01-07 21:27 - 00746160 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libglesv2.dll 2015-01-07 21:27 - 2015-01-07 21:27 - 00136368 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CEF\libegl.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Philip\OneDrive:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1974623646-547660712-2476049583-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Philip\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\panoramic_waves7.jpg DNS Servers: - ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrator (S-1-5-21-1974623646-547660712-2476049583-500 - Administrator - Disabled) Gast (S-1-5-21-1974623646-547660712-2476049583-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1974623646-547660712-2476049583-1003 - Limited - Enabled) Philip (S-1-5-21-1974623646-547660712-2476049583-1001 - Administrator - Enabled) => C:\Users\Philip ==================== Faulty Device Manager Devices ============= Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Cisco Systems Service: vpnva Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (02/26/2015 11:02:27 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 14 PTR Igor-2.local. Error: (02/26/2015 11:02:27 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Received from 0000:0000:0000:0000:0000:0000:0000:0001:5353 12 PTR Igor.local. Error: (02/26/2015 11:02:27 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: Local Hostname Igor.local already in use; will try Igor-2.local instead Error: (02/26/2015 11:02:27 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: ProbeCount 1; will deregister 4 Igor.local. Addr Error: (02/26/2015 11:02:27 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Received from 4 Igor.local. Addr Error: (02/26/2015 11:02:26 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Ignoring response received before we even began probing: 4 Igor.local. Addr Error: (02/26/2015 11:02:26 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Ignoring response received before we even began probing: 4 Igor.local. Addr Error: (02/26/2015 11:02:26 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: ResolveSimultaneousProbe: 00DCC288 Our Record 3 lost: 002C8E08 4 Igor.local. Addr Error: (02/26/2015 11:02:26 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: ResolveSimultaneousProbe: 00DCC288 Pkt Record: 83F5DEC6 16 Igor.local. AAAA FE80:0000:0000:0000:2931:946A:DFAD:41D1 Error: (02/26/2015 11:02:26 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: ResolveSimultaneousProbe: 00DCC288 Our Record 3 won: 002C8E08 4 Igor.local. Addr System errors: ============= Error: (02/26/2015 11:09:06 AM) (Source: DCOM) (EventID: 10010) (User: IGOR) Description: {14286318-B6CF-49A1-81FC-D74AD94902F9} Error: (02/26/2015 11:06:37 AM) (Source: DCOM) (EventID: 10010) (User: IGOR) Description: {14286318-B6CF-49A1-81FC-D74AD94902F9} Error: (02/26/2015 11:04:47 AM) (Source: DCOM) (EventID: 10010) (User: IGOR) Description: {14286318-B6CF-49A1-81FC-D74AD94902F9} Error: (02/25/2015 06:35:17 PM) (Source: DCOM) (EventID: 10010) (User: IGOR) Description: {14286318-B6CF-49A1-81FC-D74AD94902F9} Error: (02/25/2015 06:34:54 PM) (Source: DCOM) (EventID: 10010) (User: IGOR) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (02/25/2015 06:24:25 PM) (Source: DCOM) (EventID: 10010) (User: IGOR) Description: {14286318-B6CF-49A1-81FC-D74AD94902F9} Error: (02/25/2015 06:16:33 PM) (Source: DCOM) (EventID: 10010) (User: IGOR) Description: {14286318-B6CF-49A1-81FC-D74AD94902F9} Error: (02/25/2015 06:11:28 PM) (Source: DCOM) (EventID: 10010) (User: IGOR) Description: {14286318-B6CF-49A1-81FC-D74AD94902F9} Error: (02/25/2015 06:05:36 PM) (Source: DCOM) (EventID: 10010) (User: IGOR) Description: {14286318-B6CF-49A1-81FC-D74AD94902F9} Error: (02/25/2015 06:00:15 PM) (Source: DCOM) (EventID: 10010) (User: IGOR) Description: {14286318-B6CF-49A1-81FC-D74AD94902F9} Microsoft Office Sessions: ========================= Error: (02/26/2015 11:02:27 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 14 PTR Igor-2.local. Error: (02/26/2015 11:02:27 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Received from 0000:0000:0000:0000:0000:0000:0000:0001:5353 12 PTR Igor.local. Error: (02/26/2015 11:02:27 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: Local Hostname Igor.local already in use; will try Igor-2.local instead Error: (02/26/2015 11:02:27 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: ProbeCount 1; will deregister 4 Igor.local. Addr Error: (02/26/2015 11:02:27 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Received from 4 Igor.local. Addr Error: (02/26/2015 11:02:26 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Ignoring response received before we even began probing: 4 Igor.local. Addr Error: (02/26/2015 11:02:26 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: mDNSCoreReceiveResponse: Ignoring response received before we even began probing: 4 Igor.local. Addr Error: (02/26/2015 11:02:26 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: ResolveSimultaneousProbe: 00DCC288 Our Record 3 lost: 002C8E08 4 Igor.local. Addr Error: (02/26/2015 11:02:26 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: ResolveSimultaneousProbe: 00DCC288 Pkt Record: 83F5DEC6 16 Igor.local. AAAA FE80:0000:0000:0000:2931:946A:DFAD:41D1 Error: (02/26/2015 11:02:26 AM) (Source: RIM MDNS) (EventID: 100) (User: ) Description: ResolveSimultaneousProbe: 00DCC288 Our Record 3 won: 002C8E08 4 Igor.local. Addr ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5 CPU M 430 @ 2.27GHz Percentage of memory in use: 68% Total physical RAM: 3885.54 MB Available physical RAM: 1222.81 MB Total Pagefile: 5293.54 MB Available Pagefile: 1941.01 MB Total Virtual: 131072 MB Available Virtual: 131071.8 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:232.54 GB) (Free:173.11 GB) NTFS Drive f: (15.0.4420.1017) (CDROM) (Total:0.62 GB) (Free:0 GB) UDF ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 232.9 GB) (Disk ID: 7E701389) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.5 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
![]() | #6 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() McAfee blockt alle paar minuten "loadit.exe" Downloade Dir bitte ![]()
Downloade Dir bitte ![]()
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ --> McAfee blockt alle paar minuten "loadit.exe" |
![]() | #7 |
| ![]() Logfiles Alles gemacht und zum Dank hab ich dann direkt den nen unbeweglichen Screen mit "Ihr Computer wurde von der GVU gesperrt" etc. aufm Hauptbildschirm gehabt. Muss das so sein? mbam log: Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 26.02.2015 Suchlauf-Zeit: 19:04:27 Logdatei: Malewarebytes Log.txt Administrator: Ja Version: Malware Datenbank: v2015.02.26.04 Rootkit Datenbank: v2015.02.25.01 Lizenz: Testversion Malware Schutz: Aktiviert Bösartiger Webseiten Schutz: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 8.1 CPU: x64 Dateisystem: NTFS Benutzer: Philip Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 380208 Verstrichene Zeit: 10 Min, 36 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (Keine schädliche Elemente erkannt) Module: 0 (Keine schädliche Elemente erkannt) Registrierungsschlüssel: 0 (Keine schädliche Elemente erkannt) Registrierungswerte: 0 (Keine schädliche Elemente erkannt) Registrierungsdaten: 0 (Keine schädliche Elemente erkannt) Ordner: 0 (Keine schädliche Elemente erkannt) Dateien: 0 (Keine schädliche Elemente erkannt) Physische Sektoren: 0 (Keine schädliche Elemente erkannt) (end) JRT Logfile: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.4.2 (02.02.2015:1) OS: Windows 8.1 Pro x64 Ran by Philip on 26.02.2015 at 19:44:52,79 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 26.02.2015 at 19:48:39,94 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ AdwCleaner Log: AdwCleaner Logfile: Code:
ATTFilter # AdwCleaner v4.111 - Bericht erstellt 26/02/2015 um 19:31:41 # Aktualisiert 18/02/2015 von Xplode # Datenbank : 2015-02-18.3 [Server] # Betriebssystem : Windows 8.1 Pro (x64) # Benutzername : Philip - IGOR # Gestarted von : C:\Users\Philip\Downloads\Chrome\AdwCleaner_4.111.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Geplante Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKCU\Software\OCS ***** [ Internetbrowser ] ***** -\\ Internet Explorer v11.0.9600.17416 -\\ Mozilla Firefox v35.0.1 (x86 de) -\\ Google Chrome v40.0.2214.115 ************************* AdwCleaner[R0].txt - [900 Bytes] - [26/02/2015 19:28:22] AdwCleaner[S0].txt - [777 Bytes] - [26/02/2015 19:31:41] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [835 Bytes] ########## Frisches FRST Log Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 25-02-2015 01 Ran by Philip (administrator) on IGOR on 26-02-2015 19:53:54 Running from C:\Users\Philip\Downloads\Chrome Loaded Profiles: Philip (Available profiles: Philip) Platform: Windows 8.1 Pro (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\mfeann.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\mDNSResponder.exe (Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe (BlackBerry Limited) C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\tunmgr.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (BlackBerry Limited) C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\naPrdMgr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\livecomm.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Mindjet) C:\Program Files\Mindjet\MindManager 15\MmReminderService.exe (Spotify Ltd) C:\Users\Philip\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe () C:\Users\Philip\AppData\Roaming\autostarter.exe (Dropbox, Inc.) C:\Users\Philip\AppData\Roaming\Dropbox\bin\Dropbox.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\UdaterUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe (BlackBerry Limited) C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe (BlackBerry Limited) C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\PeerManager.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\Common Framework\McTray.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\VirusScan Enterprise\shstat.exe () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\MSOSYNC.EXE (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17477_none_fa2b7d3b9b36c7b4\TiWorker.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [MMReminderService] => C:\Program Files\Mindjet\MindManager 15\MMReminderService.exe [123200 2014-09-04] (Mindjet) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [557768 2014-09-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [McAfeeUpdaterUI] => C:\Program Files (x86)\McAfee\Common Framework\udaterui.exe [333416 2012-09-05] (McAfee, Inc.) HKLM-x32\...\Run: [ShStatEXE] => C:\Program Files (x86)\McAfee\VirusScan Enterprise\SHSTAT.EXE [242792 2013-01-14] (McAfee, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [508800 2014-12-17] (Oracle Corporation) HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [707472 2013-12-12] (Cisco Systems, Inc.) HKLM-x32\...\Run: [RIMBBLaunchAgent.exe] => C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe [443640 2014-10-31] (BlackBerry Limited) HKLM-x32\...\Run: [RIM PeerManager] => C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\PeerManager.exe [4857592 2014-11-28] (BlackBerry Limited) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2694320 2015-01-07] (Adobe Systems Incorporated) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [NoFolderOptions] 0 HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd) HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Run: [Spotify Web Helper] => C:\Users\Philip\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1676344 2015-02-23] (Spotify Ltd) HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [31090792 2015-01-23] (Skype Technologies S.A.) HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2874048 2015-02-19] (Valve Corporation) HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\MountPoints2: {c931202f-bb56-11e4-8250-485b393ae20c} - "F:\SETUP.EXE" HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Winlogon: [Userinit] userinit.exe, [25088 2013-08-22] (Microsoft Corporation) HKU\S-1-5-21-1974623646-547660712-2476049583-1001\...\Winlogon: [Shell] C:\Windows\explorer.exe [2374784 2014-08-23] (Microsoft Corporation) <==== ATTENTION AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [167312 2015-02-04] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [147576 2015-02-04] (NVIDIA Corporation) IFEO\notepad.exe: [Debugger] "C:\Program Files\Notepad2\Notepad2.exe" /z Startup: C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutoStarter.lnk ShortcutTarget: AutoStarter.lnk -> C:\Users\Philip\AppData\Roaming\autostarter.exe () Startup: C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Philip\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ja.lnk ShortcutTarget: ja.lnk -> C:\Users\Philip\AppData\Roaming\loadit.exe (No File) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll () ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Philip\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-1974623646-547660712-2476049583-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: CmjBrowserHelperObject Object -> {6FE6A929-59D1-4763-91AD-29B61CFFB35B} -> C:\Program Files\Mindjet\MindManager 15\Mm8InternetExplorer.dll (Mindjet) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation) BHO: scriptproxy -> {7DB2D5A0-7241-4E79-B68D-6309F01C5231} -> C:\Program Files\Common Files\McAfee\SystemCore\ScriptSn.20150223131549.dll (McAfee, Inc.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll (Oracle Corporation) BHO-x32: scriptproxy -> {7DB2D5A0-7241-4E79-B68D-6309F01C5231} -> C:\Program Files (x86)\Common Files\McAfee\SystemCore\ScriptSn.20150223131549.dll (McAfee, Inc.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll (Oracle Corporation) FireFox: ======== FF ProfilePath: C:\Users\Philip\AppData\Roaming\Mozilla\Firefox\Profiles\ewgym3hh.default FF Plugin: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect_x86_64 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems) FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems) FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore FF Extension: McAfee ScriptScan for Firefox - C:\Program Files (x86)\Common Files\McAfee\SystemCore [2015-02-23] Chrome: ======= CHR HomePage: Default -> hxxp://www.google.com/ig/redirectdomain?brand=ASUT&bmod=ASUT CHR StartupUrls: Default -> "hxxp://www.google.com" CHR DefaultSearchKeyword: Default -> google.de___ CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter} CHR Profile: C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Drive) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-02-23] CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2015-02-23] CHR Extension: (YouTube) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-02-23] CHR Extension: (Google Search) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-02-23] CHR Extension: (Fast Image Research) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\epelbghekfokpolcmhhabjgehmplhjgp [2015-02-23] CHR Extension: (AdBlock) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-02-23] CHR Extension: (Bookmark Manager) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmlllbghnfkpflemihljekbapjopfjik [2015-02-23] CHR Extension: (Google Wallet) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-02-23] CHR Extension: (Gmail) - C:\Users\Philip\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-02-23] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 BlackBerry Device Manager; C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe [588024 2014-10-31] (BlackBerry Limited) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2711736 2015-01-13] (Microsoft Corporation) S4 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation) R2 McAfeeFramework; C:\Program Files (x86)\McAfee\Common Framework\FrameworkService.exe [132712 2012-09-05] (McAfee, Inc.) R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [241016 2015-02-23] (McAfee, Inc.) R2 McTaskManager; C:\Program Files (x86)\McAfee\VirusScan Enterprise\VsTskMgr.exe [206448 2013-01-14] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [177680 2015-02-23] (McAfee, Inc.) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation) R2 RIM MDNS; C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\mDNSResponder.exe [396024 2014-11-28] (Apple Inc.) R2 RIM Tunnel Service; C:\Program Files (x86)\Common Files\Research In Motion\Tunnel Manager\tunmgr.exe [1348344 2014-11-28] (BlackBerry Limited) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R3 athr; C:\Windows\system32\DRIVERS\athwnx.sys [3680256 2013-06-18] (Qualcomm Atheros Communications, Inc.) S3 blackberryncm; C:\Windows\system32\DRIVERS\blackberryncm6_AMD64.sys [25088 2014-09-08] (BlackBerry) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2015-02-23] (Disc Soft Ltd) S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation) R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [178840 2015-02-23] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [309400 2015-02-23] (McAfee, Inc.) U3 mfeavfk01; No ImagePath S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [69168 2015-02-23] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [771096 2015-02-23] (McAfee, Inc.) S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [106112 2015-02-23] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [339392 2015-02-23] (McAfee, Inc.) R3 MTsensor; C:\Windows\system32\DRIVERS\ATK64AMD.sys [13680 2007-08-09] () R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation) S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [79872 2014-05-06] (BlackBerry Limited) R3 rimvndis; C:\Windows\System32\Drivers\rimvndis6_AMD64.sys [17920 2014-11-28] (Research in Motion Limited) R3 RimVSerPort; C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys [44544 2012-12-10] (Research in Motion Ltd) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () S3 vpnva; C:\Windows\system32\DRIVERS\vpnva64-6.sys [52080 2013-12-12] (Cisco Systems, Inc.) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) |
![]() | #8 |
| ![]() FRST Log Teil 2 Problem besteht übrigens nach wie vor, grade eben kams wieder. Code:
ATTFilter ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-26 19:48 - 2015-02-26 19:48 - 00000619 _____ () C:\Users\Philip\Desktop\JRT.txt 2015-02-26 19:36 - 2015-02-26 19:36 - 00000914 _____ () C:\Users\Philip\Desktop\AdwCleaner[S0].txt 2015-02-26 19:35 - 2015-02-26 19:35 - 01388274 _____ (Thisisu) C:\Users\Philip\Desktop\JRT.exe 2015-02-26 19:28 - 2015-02-26 19:31 - 00000000 ____D () C:\AdwCleaner 2015-02-26 19:26 - 2015-02-26 19:26 - 00001202 _____ () C:\Users\Philip\Desktop\Mbam.txt 2015-02-26 19:05 - 2015-02-26 19:53 - 00002184 _____ () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\McAfee VirusScan Scan Messages.lnk 2015-02-26 19:03 - 2015-02-26 19:52 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-02-26 19:03 - 2015-02-26 19:03 - 00001114 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-02-26 19:03 - 2015-02-26 19:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-02-26 19:03 - 2015-02-26 19:03 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-02-26 19:03 - 2015-02-26 19:03 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-02-26 19:03 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-02-26 19:03 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-02-26 19:03 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-02-26 16:55 - 2015-02-26 16:55 - 00000000 ____D () C:\Users\Philip\Documents\Flexsim 6 Projects 2015-02-26 16:54 - 2015-02-26 16:54 - 00211400 _____ () C:\Users\Philip\Desktop\Ofenmodell erweitert.fsm 2015-02-26 16:54 - 2015-02-26 16:54 - 00211028 _____ () C:\Users\Philip\Desktop\Ofenmodell erweitert.fsm! 2015-02-26 15:38 - 2015-02-26 15:38 - 00000000 ____D () C:\Users\Philip\Documents\FlexSim 7 Projects 2015-02-26 15:19 - 2015-02-26 15:37 - 00638456 _____ () C:\Users\Philip\Desktop\150227_Projektmeeting.pptx 2015-02-26 15:18 - 2015-02-26 15:18 - 00000000 ____D () C:\Users\Philip\Documents\Benutzerdefinierte Office-Vorlagen 2015-02-26 14:59 - 2015-02-26 14:59 - 00000000 ____D () C:\Users\Philip\Documents\ARIS Express 2015-02-26 14:16 - 2015-02-26 14:16 - 00010240 ___SH () C:\Users\Philip\Downloads\Thumbs.db 2015-02-26 14:08 - 2015-02-26 14:08 - 00656665 _____ () C:\Users\Philip\Downloads\Expertensysteme.pptx 2015-02-26 14:08 - 2015-02-26 14:08 - 00000000 __SHD () C:\Users\Philip\AppData\Local\EmieBrowserModeList 2015-02-26 12:37 - 2015-02-26 19:53 - 00000000 ____D () C:\FRST 2015-02-26 11:18 - 2014-07-24 16:28 - 00419648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2015-02-26 11:18 - 2014-07-24 16:28 - 00412992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2015-02-26 11:18 - 2014-07-24 16:28 - 00280384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys 2015-02-26 11:18 - 2014-07-24 16:28 - 00143680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2015-02-26 11:18 - 2014-07-24 16:25 - 00054752 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-02-26 11:18 - 2014-07-24 16:23 - 00125472 _____ (Microsoft Corporation) C:\Windows\system32\dwmapi.dll 2015-02-26 11:18 - 2014-07-24 16:20 - 00645592 _____ (Microsoft Corporation) C:\Windows\system32\SHCore.dll 2015-02-26 11:18 - 2014-07-24 16:20 - 00263400 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlows.exe 2015-02-26 11:18 - 2014-07-24 16:16 - 02574208 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2015-02-26 11:18 - 2014-07-24 16:16 - 00211216 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe 2015-02-26 11:18 - 2014-07-24 16:07 - 02009920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2015-02-26 11:18 - 2014-07-24 16:05 - 01660048 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2015-02-26 11:18 - 2014-07-24 16:05 - 01519560 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2015-02-26 11:18 - 2014-07-24 16:05 - 01488008 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2015-02-26 11:18 - 2014-07-24 16:05 - 01356840 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2015-02-26 11:18 - 2014-07-24 16:03 - 02141920 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2015-02-26 11:18 - 2014-07-24 16:03 - 00882136 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2015-02-26 11:18 - 2014-07-24 16:03 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2015-02-26 11:18 - 2014-07-24 16:03 - 00233888 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll 2015-02-26 11:18 - 2014-07-24 16:03 - 00205512 _____ (Microsoft Corporation) C:\Windows\system32\mftranscode.dll 2015-02-26 11:18 - 2014-07-24 14:50 - 00098048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmapi.dll 2015-02-26 11:18 - 2014-07-24 14:48 - 02410976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2015-02-26 11:18 - 2014-07-24 14:48 - 00180208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SndVol.exe 2015-02-26 11:18 - 2014-07-24 14:46 - 00477200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SHCore.dll 2015-02-26 11:18 - 2014-07-24 14:36 - 02145472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2015-02-26 11:18 - 2014-07-24 14:36 - 00707536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2015-02-26 11:18 - 2014-07-24 14:36 - 00355800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll 2015-02-26 11:18 - 2014-07-24 14:36 - 00180720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mftranscode.dll 2015-02-26 11:18 - 2014-07-24 12:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\system32\KBDRUM.DLL 2015-02-26 11:18 - 2014-07-24 12:46 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\IPMIDrv.sys 2015-02-26 11:18 - 2014-07-24 12:45 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hdaudbus.sys 2015-02-26 11:18 - 2014-07-24 12:44 - 00674816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2015-02-26 11:18 - 2014-07-24 12:43 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2015-02-26 11:18 - 2014-07-24 12:42 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\nwifi.sys 2015-02-26 11:18 - 2014-07-24 12:42 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\NdisImPlatform.sys 2015-02-26 11:18 - 2014-07-24 12:33 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-02-26 11:18 - 2014-07-24 12:33 - 00050688 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-02-26 11:18 - 2014-07-24 12:06 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\iasnap.dll 2015-02-26 11:18 - 2014-07-24 12:05 - 00287232 _____ (Microsoft Corporation) C:\Windows\system32\usbmon.dll 2015-02-26 11:18 - 2014-07-24 12:05 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-02-26 11:18 - 2014-07-24 11:51 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRUM.DLL 2015-02-26 11:18 - 2014-07-24 11:49 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersGPExt.dll 2015-02-26 11:18 - 2014-07-24 11:33 - 00026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-02-26 11:18 - 2014-07-24 11:32 - 00207360 _____ (Microsoft Corporation) C:\Windows\system32\powercfg.cpl 2015-02-26 11:18 - 2014-07-24 11:20 - 02050560 _____ (Microsoft Corporation) C:\Windows\system32\SRH.dll 2015-02-26 11:18 - 2014-07-24 11:18 - 01089024 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll 2015-02-26 11:18 - 2014-07-24 11:12 - 00878592 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll 2015-02-26 11:18 - 2014-07-24 11:10 - 01844224 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll 2015-02-26 11:18 - 2014-07-24 11:10 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2015-02-26 11:18 - 2014-07-24 11:10 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-02-26 11:18 - 2014-07-24 11:10 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iasnap.dll 2015-02-26 11:18 - 2014-07-24 11:05 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll 2015-02-26 11:18 - 2014-07-24 10:52 - 00621056 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll 2015-02-26 11:18 - 2014-07-24 10:44 - 16874496 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll 2015-02-26 11:18 - 2014-07-24 10:40 - 00557056 _____ (Microsoft Corporation) C:\Windows\system32\PrintDialogs.dll 2015-02-26 11:18 - 2014-07-24 10:39 - 00770048 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll 2015-02-26 11:18 - 2014-07-24 10:33 - 01741824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SRH.dll 2015-02-26 11:18 - 2014-07-24 10:32 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll 2015-02-26 11:18 - 2014-07-24 10:27 - 00779264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2015-02-26 11:18 - 2014-07-24 10:25 - 00832512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll 2015-02-26 11:18 - 2014-07-24 10:24 - 01817088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2015-02-26 11:18 - 2014-07-24 10:21 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2015-02-26 11:18 - 2014-07-24 10:18 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wlansvcpal.dll 2015-02-26 11:18 - 2014-07-24 10:16 - 12730880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll 2015-02-26 11:18 - 2014-07-24 10:12 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll 2015-02-26 11:18 - 2014-07-24 10:11 - 00356864 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-02-26 11:18 - 2014-07-24 10:11 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wshbth.dll 2015-02-26 11:18 - 2014-07-24 10:10 - 00540672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll 2015-02-26 11:18 - 2014-07-24 10:04 - 00183808 _____ (Microsoft Corp.) C:\Windows\system32\Defrag.exe 2015-02-26 11:18 - 2014-07-24 10:03 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll 2015-02-26 11:18 - 2014-07-24 09:53 - 01261056 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2015-02-26 11:18 - 2014-07-24 09:53 - 00449536 _____ (Microsoft Corporation) C:\Windows\system32\defragsvc.dll 2015-02-26 11:18 - 2014-07-24 09:49 - 01287680 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll 2015-02-26 11:18 - 2014-07-24 09:49 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll 2015-02-26 11:18 - 2014-07-24 09:48 - 00659968 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Bluetooth.dll 2015-02-26 11:18 - 2014-07-24 09:47 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\wcmcsp.dll 2015-02-26 11:18 - 2014-07-24 09:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshbth.dll 2015-02-26 11:18 - 2014-07-24 09:39 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll 2015-02-26 11:18 - 2014-07-24 09:38 - 00371200 _____ (Microsoft Corporation) C:\Windows\system32\wlanmsm.dll 2015-02-26 11:18 - 2014-07-24 09:32 - 01532416 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll 2015-02-26 11:18 - 2014-07-24 09:30 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll 2015-02-26 11:18 - 2014-07-24 09:29 - 00439296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Bluetooth.dll 2015-02-26 11:18 - 2014-07-24 09:28 - 00595456 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.dll 2015-02-26 11:18 - 2014-07-24 09:23 - 01404416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll 2015-02-26 11:18 - 2014-07-24 09:22 - 00487936 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2015-02-26 11:18 - 2014-07-24 09:21 - 01231872 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll 2015-02-26 11:18 - 2014-07-24 09:21 - 00302080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanmsm.dll 2015-02-26 11:18 - 2014-07-24 09:19 - 00388608 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2015-02-26 11:18 - 2014-07-24 09:18 - 00795136 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2015-02-26 11:18 - 2014-07-24 09:16 - 00505344 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll 2015-02-26 11:18 - 2014-07-24 09:16 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll 2015-02-26 11:18 - 2014-07-24 09:15 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-02-26 11:18 - 2014-07-24 09:15 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.dll 2015-02-26 11:18 - 2014-07-24 09:15 - 00432128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.dll 2015-02-26 11:18 - 2014-07-24 09:10 - 00889344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll 2015-02-26 11:18 - 2014-07-24 09:10 - 00371712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2015-02-26 11:18 - 2014-07-24 09:08 - 00321536 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2015-02-26 11:18 - 2014-07-24 09:07 - 01705472 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-02-26 11:18 - 2014-07-24 09:05 - 00448000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VAN.dll 2015-02-26 11:18 - 2014-07-24 09:04 - 00667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-02-26 11:18 - 2014-07-24 09:02 - 03465216 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-02-26 11:18 - 2014-07-24 09:01 - 01992192 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2015-02-26 11:18 - 2014-07-24 08:58 - 00432640 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll 2015-02-26 11:18 - 2014-07-24 08:58 - 00288768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2015-02-26 11:18 - 2014-07-24 08:54 - 01290752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2015-02-26 11:18 - 2014-07-24 08:50 - 01182208 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll 2015-02-26 11:18 - 2014-07-24 08:47 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\SettingSync.dll 2015-02-26 11:18 - 2014-07-24 08:44 - 01057792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll 2015-02-26 11:18 - 2014-07-24 08:41 - 00459264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSync.dll 2015-02-26 11:18 - 2014-07-24 08:28 - 01600000 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll 2015-02-26 11:18 - 2014-07-12 06:55 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\wisp.dll 2015-02-26 11:18 - 2014-07-12 05:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wisp.dll 2015-02-26 11:18 - 2014-07-04 13:59 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ks.sys 2015-02-26 11:18 - 2014-07-04 11:29 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSip.dll 2015-02-26 11:18 - 2014-07-04 11:20 - 01656832 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2015-02-26 11:18 - 2014-07-04 11:06 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxSip.dll 2015-02-26 11:18 - 2014-07-04 11:00 - 01351168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2015-02-26 11:18 - 2014-07-04 10:30 - 00544768 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll 2015-02-26 11:18 - 2014-07-04 10:27 - 00474112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll 2015-02-26 11:18 - 2014-06-27 07:22 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2015-02-26 11:18 - 2014-06-26 01:32 - 01029632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll 2015-02-26 11:18 - 2014-06-26 01:29 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll 2015-02-26 11:18 - 2014-06-20 00:37 - 00206848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-02-26 11:18 - 2014-06-19 03:13 - 00310080 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2015-02-26 11:18 - 2014-06-14 07:03 - 02389504 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-02-26 11:18 - 2014-06-14 06:46 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-02-26 11:18 - 2014-06-07 13:46 - 00216368 _____ (Microsoft Corporation) C:\Windows\system32\rsaenh.dll 2015-02-26 11:18 - 2014-06-07 11:20 - 00189016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rsaenh.dll 2015-02-26 11:18 - 2014-06-05 15:00 - 01118040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-02-26 11:18 - 2014-06-05 11:18 - 01018368 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll 2015-02-26 11:18 - 2014-06-05 10:42 - 00889856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll 2015-02-26 11:18 - 2014-05-31 06:00 - 01463808 _____ (Microsoft Corporation) C:\Windows\system32\wsecedit.dll 2015-02-26 11:18 - 2014-05-31 05:18 - 01319936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsecedit.dll 2015-02-26 11:18 - 2014-05-29 07:23 - 00427008 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2015-02-26 11:18 - 2014-05-29 06:25 - 00313856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll 2015-02-26 11:18 - 2014-05-26 08:26 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\AppxSysprep.dll 2015-02-26 11:18 - 2014-05-10 11:12 - 00387896 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2015-02-26 11:18 - 2014-05-10 09:46 - 00335680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll 2015-02-26 11:18 - 2014-05-06 05:41 - 00486744 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2015-02-26 11:18 - 2014-05-06 01:55 - 00391000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll 2015-02-26 11:18 - 2014-03-25 03:27 - 00160600 _____ (Microsoft Corporation) C:\Windows\system32\winmmbase.dll 2015-02-26 11:18 - 2014-03-25 03:27 - 00123920 _____ (Microsoft Corporation) C:\Windows\system32\winmm.dll 2015-02-26 11:18 - 2014-03-25 02:20 - 00128568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll 2015-02-26 11:18 - 2014-03-25 02:20 - 00127544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmmbase.dll 2015-02-26 11:17 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL 2015-02-26 11:17 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTT102.DLL 2015-02-26 11:17 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL 2015-02-26 11:17 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL 2015-02-26 11:17 - 2014-07-24 12:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL 2015-02-26 11:17 - 2014-07-24 12:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL 2015-02-26 11:17 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL 2015-02-26 11:17 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTT102.DLL 2015-02-26 11:17 - 2014-07-24 11:52 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL 2015-02-26 11:17 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL 2015-02-26 11:17 - 2014-07-24 11:51 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL 2015-02-26 11:17 - 2014-07-24 11:51 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL 2015-02-26 11:17 - 2014-07-24 10:42 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercfg.cpl 2015-02-26 11:17 - 2014-07-24 10:14 - 00443904 _____ (Microsoft Corporation) C:\Windows\system32\wlansec.dll 2015-02-26 11:17 - 2014-07-24 10:04 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintDialogs.dll 2015-02-26 11:17 - 2014-07-24 09:58 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll 2015-02-26 11:17 - 2014-07-24 09:36 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll 2015-02-26 11:17 - 2014-07-24 09:18 - 01144320 _____ (Microsoft Corporation) C:\Windows\system32\wwanmm.dll 2015-02-26 11:17 - 2014-07-24 09:18 - 00093696 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-02-26 11:17 - 2014-07-24 09:13 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll 2015-02-26 11:17 - 2014-07-24 09:06 - 00080896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-02-26 11:17 - 2014-07-24 09:00 - 02100736 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettingsAdminFlowUI.dll 2015-02-26 11:11 - 2015-01-23 05:41 - 06041600 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-02-26 11:11 - 2015-01-23 04:17 - 04300800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-02-25 18:46 - 2015-02-03 20:31 - 00714720 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-02-25 18:46 - 2015-02-03 20:31 - 00106976 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-02-25 18:42 - 2015-02-25 18:42 - 00000000 ___SD () C:\Windows\system32\CompatTel 2015-02-25 18:42 - 2015-02-25 18:42 - 00000000 ____D () C:\Windows\system32\appraiser 2015-02-25 18:33 - 2015-02-25 18:33 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker 2015-02-25 18:33 - 2015-02-25 18:33 - 00000000 ____D () C:\Program Files\Unlocker 2015-02-25 18:28 - 2015-02-25 18:28 - 00001096 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Dreamweaver CC 2014.1.lnk 2015-02-25 18:15 - 2015-02-25 18:15 - 00001113 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Content Viewer.lnk 2015-02-25 18:14 - 2015-02-25 18:14 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2015-02-25 18:14 - 2015-02-25 18:14 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2015-02-25 18:04 - 2015-02-26 19:52 - 00000000 ____D () C:\QUARANTINE 2015-02-25 18:04 - 2015-02-26 19:47 - 00000032 _____ () C:\Users\Philip\AppData\Roaming\url.txt 2015-02-25 17:59 - 2015-01-20 04:32 - 93253791 _____ () C:\Users\Philip\AppData\Roaming\autostarter.exe 2015-02-25 17:58 - 2015-02-25 18:27 - 00067883 _____ () C:\Users\Philip\Desktop\ofenmodell 2.fsm 2015-02-25 17:46 - 2015-02-25 17:56 - 00209152 _____ () C:\Users\Philip\Desktop\test_autosave.fsm 2015-02-25 17:17 - 2015-02-25 17:39 - 00209164 _____ () C:\Users\Philip\Desktop\test.fsm 2015-02-25 17:08 - 2015-02-25 17:08 - 05512037 _____ () C:\Users\Philip\Desktop\Flexsim Ofenmodell.pptx 2015-02-25 16:47 - 2015-02-25 16:47 - 00000000 ____D () C:\Windows\SysWOW64\NV 2015-02-25 16:47 - 2015-02-25 16:47 - 00000000 ____D () C:\Windows\system32\NV 2015-02-25 16:47 - 2015-02-04 01:00 - 00608072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2015-02-25 16:45 - 2015-02-04 04:56 - 31515280 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 24198856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 22993224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 18634072 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 17559432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 16128576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 15294280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 13916280 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 13828032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 12894024 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2015-02-25 16:45 - 2015-02-04 04:56 - 11272240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 11209192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 04244680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 03987600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 01907400 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434144.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 01555656 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434144.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00944328 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00907464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00902344 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00870032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00355272 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00307184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2015-02-25 16:45 - 2015-02-04 04:56 - 00031376 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvpciflt.sys 2015-02-25 16:38 - 2015-02-25 16:38 - 00000000 ____D () C:\Users\Philip\AppData\Local\Mindjet 2015-02-25 12:05 - 2015-02-25 12:10 - 00000000 ____D () C:\Windows\system32\MRT 2015-02-25 12:05 - 2015-01-29 17:49 - 116773704 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-02-25 12:02 - 2014-04-14 04:29 - 01018880 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2015-02-25 11:29 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\SysWOW64\locale.nls 2015-02-25 11:29 - 2014-12-13 22:28 - 00513488 _____ () C:\Windows\system32\locale.nls 2015-02-25 11:29 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll 2015-02-25 11:29 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\Windows\system32\GlobCollationHost.dll 2015-02-25 11:29 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll 2015-02-25 11:29 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GlobCollationHost.dll 2015-02-25 11:29 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-02-25 11:29 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-02-25 11:29 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-02-25 11:29 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-02-25 11:29 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-02-25 11:29 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-02-25 11:29 - 2014-10-08 06:32 - 02773504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-02-25 11:29 - 2014-10-08 06:19 - 02459136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-02-25 11:29 - 2014-09-22 05:38 - 01519488 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-02-25 11:29 - 2014-09-22 04:06 - 00258368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2015-02-25 11:29 - 2014-09-22 04:06 - 00114496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys 2015-02-25 11:29 - 2014-09-22 03:49 - 00035320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2015-02-25 11:29 - 2014-09-19 01:16 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2015-02-25 11:29 - 2014-09-02 23:08 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\winshfhc.dll 2015-02-25 11:29 - 2014-09-02 23:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winshfhc.dll 2015-02-25 11:28 - 2015-02-04 00:38 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-02-25 11:28 - 2015-02-04 00:08 - 00761856 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-02-25 11:28 - 2015-02-04 00:08 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-02-25 11:28 - 2015-02-03 00:11 - 01098752 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-02-25 11:28 - 2015-02-03 00:11 - 00894464 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-02-25 11:28 - 2015-02-03 00:11 - 00609280 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-02-25 11:28 - 2015-01-19 19:42 - 01487976 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2015-02-25 11:28 - 2014-12-19 09:57 - 00788680 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2015-02-25 11:28 - 2014-12-19 09:25 - 00602776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2015-02-25 11:28 - 2014-12-09 00:12 - 00391526 _____ () C:\Windows\system32\ApnDatabase.xml 2015-02-25 11:28 - 2014-12-03 00:09 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2015-02-25 11:28 - 2014-11-10 03:29 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupStatusProvider.dll 2015-02-25 11:28 - 2014-11-10 02:51 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DeviceSetupStatusProvider.dll 2015-02-25 11:28 - 2014-11-01 00:57 - 01091072 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll 2015-02-25 11:28 - 2014-11-01 00:47 - 00790528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll 2015-02-25 11:28 - 2014-10-31 00:39 - 01970432 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-02-25 11:28 - 2014-10-31 00:38 - 01612992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-02-25 11:28 - 2014-04-08 23:46 - 00086688 _____ (Microsoft Corporation) C:\Windows\system32\mrt_map.dll 2015-02-25 11:28 - 2014-04-08 23:46 - 00028320 _____ (Microsoft Corporation) C:\Windows\system32\mrt100.dll 2015-02-25 11:28 - 2014-04-08 19:54 - 00080032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt_map.dll 2015-02-25 11:28 - 2014-04-08 19:54 - 00026784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mrt100.dll 2015-02-25 11:28 - 2014-03-13 08:42 - 00308224 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe 2015-02-25 11:28 - 2014-03-13 07:51 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wusa.exe 2015-02-25 11:26 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msgpioclx.sys 2015-02-25 11:26 - 2014-07-30 02:56 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll 2015-02-25 11:26 - 2014-07-29 06:22 - 00205824 _____ (Microsoft Corporation) C:\Windows\system32\tcpmon.dll 2015-02-25 11:22 - 2014-05-30 04:03 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2015-02-25 11:19 - 2014-03-20 05:19 - 01291200 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-02-25 11:19 - 2014-03-20 04:41 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys 2015-02-25 11:19 - 2014-03-20 01:53 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll 2015-02-25 11:19 - 2014-03-20 01:48 - 00201216 _____ (Microsoft Corporation) C:\Windows\system32\ReInfo.dll 2015-02-25 11:19 - 2014-03-20 00:55 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-02-25 11:19 - 2014-03-20 00:39 - 00800256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll 2015-02-25 11:19 - 2014-03-20 00:36 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReInfo.dll 2015-02-25 11:19 - 2014-03-19 06:50 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\w32tm.exe 2015-02-25 11:19 - 2014-03-19 06:20 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\w32tm.exe 2015-02-25 11:19 - 2014-03-13 13:35 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys 2015-02-25 11:19 - 2014-03-08 21:38 - 01542768 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-02-25 11:19 - 2014-03-08 16:29 - 00356848 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll 2015-02-25 11:19 - 2014-03-08 12:34 - 01095488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-02-25 11:19 - 2014-03-08 10:02 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\sxproxy.dll 2015-02-25 11:19 - 2014-03-08 09:33 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll 2015-02-25 11:19 - 2014-03-08 09:25 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\SetNetworkLocation.dll 2015-02-25 11:19 - 2014-03-08 09:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxproxy.dll 2015-02-25 11:19 - 2014-03-08 08:47 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll 2015-02-25 11:19 - 2014-03-08 08:04 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll 2015-02-25 11:19 - 2014-03-08 07:48 - 00252928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll 2015-02-25 11:19 - 2014-03-08 07:40 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll 2015-02-25 11:19 - 2014-03-08 07:31 - 00222720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll 2015-02-25 11:19 - 2014-03-08 07:30 - 00197632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll 2015-02-25 11:19 - 2014-03-08 06:41 - 01306624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll 2015-02-25 11:19 - 2014-03-08 06:11 - 00924160 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll 2015-02-25 11:19 - 2014-03-06 15:34 - 02331000 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-02-25 11:19 - 2014-03-06 15:34 - 00113648 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2015-02-25 11:19 - 2014-03-06 12:19 - 00094016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll 2015-02-25 11:19 - 2014-03-06 11:46 - 01679128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-02-25 11:19 - 2014-03-06 10:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2015-02-25 11:19 - 2014-03-06 10:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys 2015-02-25 11:19 - 2014-03-06 10:22 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys 2015-02-25 11:19 - 2014-03-06 10:19 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-02-25 11:19 - 2014-03-06 10:19 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2015-02-25 11:19 - 2014-03-06 10:08 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\l2gpstore.dll 2015-02-25 11:19 - 2014-03-06 09:41 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\DevPropMgr.dll 2015-02-25 11:19 - 2014-03-06 09:38 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-02-25 11:19 - 2014-03-06 09:10 - 00058368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\l2gpstore.dll 2015-02-25 11:19 - 2014-03-06 09:00 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\SensorsApi.dll 2015-02-25 11:19 - 2014-03-06 08:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-02-25 11:19 - 2014-03-06 08:16 - 00171008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsApi.dll 2015-02-25 11:19 - 2014-03-06 08:02 - 00834560 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2015-02-25 11:19 - 2014-03-06 07:51 - 02900992 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2015-02-25 11:19 - 2014-03-06 07:29 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll 2015-02-25 11:19 - 2014-03-06 07:27 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\WsmWmiPl.dll 2015-02-25 11:19 - 2014-03-06 07:24 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll 2015-02-25 11:19 - 2014-03-06 07:23 - 02270208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll 2015-02-25 11:19 - 2014-03-06 07:23 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll 2015-02-25 11:19 - 2014-03-06 07:21 - 00291840 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll 2015-02-25 11:19 - 2014-03-06 07:06 - 00386560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll 2015-02-25 11:19 - 2014-03-06 07:04 - 00226304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll 2015-02-25 11:19 - 2014-03-06 07:01 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Scanners.dll 2015-02-25 11:19 - 2014-03-06 06:51 - 00151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Scanners.dll 2015-02-25 11:19 - 2014-03-06 06:47 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2015-02-25 11:19 - 2014-03-06 06:42 - 00280576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll 2015-02-25 11:19 - 2014-03-04 09:11 - 00563200 _____ (Microsoft Corporation) C:\Windows\system32\AdmTmpl.dll 2015-02-25 11:19 - 2014-03-04 08:26 - 00444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AdmTmpl.dll 2015-02-25 11:19 - 2014-03-04 08:16 - 00655360 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2015-02-25 11:19 - 2014-03-04 08:13 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2015-02-25 11:19 - 2014-03-04 08:08 - 00299008 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll 2015-02-25 11:19 - 2014-03-04 08:00 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll 2015-02-25 11:19 - 2014-03-04 07:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RMapi.dll 2015-02-25 11:19 - 2014-03-04 07:42 - 00494592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2015-02-25 11:19 - 2014-03-04 07:39 - 00254976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pdh.dll 2015-02-25 11:19 - 2014-03-04 07:32 - 00356864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll 2015-02-25 11:19 - 2014-03-04 07:15 - 00542208 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.dll 2015-02-25 11:19 - 2014-03-04 07:05 - 00402432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.dll 2015-02-25 11:19 - 2014-03-04 07:03 - 00669696 _____ (Microsoft Corporation) C:\Windows\system32\rasapi32.dll 2015-02-25 11:19 - 2014-03-04 07:03 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll 2015-02-25 11:19 - 2014-03-04 06:54 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll 2015-02-25 11:19 - 2014-03-04 06:52 - 00605184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasapi32.dll 2015-02-25 11:19 - 2013-12-24 00:28 - 00262656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\LocationApi.dll 2015-02-25 11:19 - 2013-12-24 00:26 - 00325632 _____ (Microsoft Corporation) C:\Windows\system32\LocationApi.dll 2015-02-25 11:18 - 2015-01-15 23:43 - 00563504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2015-02-25 11:18 - 2015-01-15 23:43 - 00177984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-02-25 11:18 - 2015-01-14 05:22 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2015-02-25 11:18 - 2015-01-14 04:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2015-02-25 11:18 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-02-25 11:18 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-02-25 11:18 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-02-25 11:18 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-02-25 11:18 - 2014-10-29 02:31 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-02-25 11:14 - 2015-01-13 23:11 - 01762840 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2015-02-25 11:14 - 2015-01-13 23:04 - 01489072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2015-02-25 11:14 - 2014-12-09 04:45 - 00393728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-02-25 11:14 - 2014-12-09 02:56 - 00538624 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-02-25 11:14 - 2014-12-09 02:50 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2015-02-25 11:14 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll 2015-02-25 11:14 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll 2015-02-25 11:14 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\dpapisrv.dll 2015-02-25 11:14 - 2014-08-07 03:12 - 01336624 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-02-25 11:14 - 2014-08-02 04:56 - 01064448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-02-25 11:14 - 2014-06-20 02:48 - 01273184 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-02-25 11:14 - 2014-06-20 00:52 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-02-25 11:14 - 2014-06-13 02:15 - 00517528 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2015-02-25 11:14 - 2014-06-13 02:14 - 01557848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2015-02-25 11:14 - 2014-06-13 01:10 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2015-02-25 11:14 - 2014-06-06 12:34 - 02133504 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-02-25 11:14 - 2014-03-06 13:53 - 02141912 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2015-02-25 11:14 - 2014-03-06 13:51 - 00379224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2015-02-25 11:14 - 2014-03-06 13:39 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2015-02-25 11:14 - 2014-03-06 12:13 - 01779800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2015-02-25 11:14 - 2014-03-06 07:09 - 01764864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-02-25 11:12 - 2015-01-10 08:00 - 00430080 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-02-25 11:12 - 2015-01-10 07:38 - 00359424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-02-25 11:12 - 2014-12-12 03:04 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2015-02-25 11:12 - 2014-10-10 02:58 - 00027456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2015-02-25 11:12 - 2014-10-08 08:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2015-02-25 11:12 - 2014-10-08 08:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll 2015-02-25 11:12 - 2014-10-08 06:23 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2015-02-25 11:12 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\Windows\system32\WpcMon.exe 2015-02-25 11:12 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2015-02-25 11:12 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\Windows\system32\WpcWebSync.dll 2015-02-25 11:12 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2015-02-25 11:12 - 2014-04-11 09:25 - 00419928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll 2015-02-25 11:12 - 2014-04-11 04:54 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll 2015-02-25 11:12 - 2014-04-11 04:06 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-02-25 11:12 - 2014-04-11 04:05 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-02-25 11:12 - 2014-04-11 04:02 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-02-25 11:12 - 2014-04-11 04:01 - 00137728 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-02-25 11:12 - 2014-04-11 03:57 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll 2015-02-25 11:11 - 2015-01-12 04:09 - 25056256 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-02-25 11:11 - 2015-01-12 03:48 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-02-25 11:11 - 2015-01-12 03:48 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-02-25 11:11 - 2015-01-12 03:34 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-02-25 11:11 - 2015-01-12 03:25 - 19740160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-02-25 11:11 - 2015-01-12 03:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-02-25 11:11 - 2015-01-12 03:08 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-02-25 11:11 - 2015-01-12 03:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-02-25 11:11 - 2015-01-12 03:02 - 02277888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-02-25 11:11 - 2015-01-12 02:58 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2015-02-25 11:11 - 2015-01-12 02:55 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-02-25 11:11 - 2015-01-12 02:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-02-25 11:11 - 2015-01-12 02:48 - 00718848 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-02-25 11:11 - 2015-01-12 02:48 - 00374272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-02-25 11:11 - 2015-01-12 02:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-02-25 11:11 - 2015-01-12 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-02-25 11:11 - 2015-01-12 02:43 - 14401024 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-02-25 11:11 - 2015-01-12 02:30 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2015-02-25 11:11 - 2015-01-12 02:27 - 02865152 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2015-02-25 11:11 - 2015-01-12 02:27 - 02358272 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-02-25 11:11 - 2015-01-12 02:23 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-02-25 11:11 - 2015-01-12 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-02-25 11:11 - 2015-01-12 02:23 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-02-25 11:11 - 2015-01-12 02:14 - 12829184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-02-25 11:11 - 2015-01-12 02:14 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-02-25 11:11 - 2015-01-12 02:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-02-25 11:11 - 2015-01-12 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-02-25 11:11 - 2015-01-12 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-02-25 11:11 - 2015-01-12 01:55 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-02-25 11:11 - 2015-01-10 10:10 - 07472960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-02-25 11:11 - 2015-01-10 10:10 - 01733440 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-02-25 11:11 - 2015-01-10 09:28 - 01498360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-02-25 11:11 - 2014-12-19 07:26 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2015-02-25 11:11 - 2014-12-12 01:51 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ahcache.sys 2015-02-25 11:11 - 2014-11-22 03:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-02-25 11:11 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-02-25 11:11 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-02-25 11:11 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-02-25 11:11 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-02-25 11:11 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-02-25 11:11 - 2014-10-31 05:50 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-02-25 11:11 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-02-25 11:11 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2015-02-25 11:11 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-02-25 11:11 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-02-25 11:11 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-02-25 11:11 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2015-02-25 11:11 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2015-02-25 11:11 - 2014-10-29 03:02 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-02-25 11:11 - 2014-10-29 03:02 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-02-25 11:11 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-02-25 11:11 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-02-25 11:11 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-02-25 11:11 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-02-25 11:11 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-02-25 11:11 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-02-25 11:11 - 2014-09-04 01:12 - 00590336 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2015-02-25 11:11 - 2014-09-04 01:01 - 00514048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2015-02-25 11:11 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2015-02-25 11:10 - 2015-01-12 03:47 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-02-25 11:10 - 2015-01-12 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-02-25 11:10 - 2015-01-12 02:51 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2015-02-25 11:10 - 2015-01-12 02:34 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2015-02-25 11:10 - 2015-01-12 02:25 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2015-02-25 11:10 - 2014-11-22 03:49 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-02-25 11:10 - 2014-11-22 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-02-25 11:10 - 2014-11-22 03:06 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2015-02-25 11:10 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2015-02-25 11:10 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2015-02-25 11:10 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2015-02-25 11:10 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2015-02-25 11:10 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2015-02-25 11:10 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2015-02-25 11:10 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-02-25 11:10 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-02-25 11:10 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-02-25 11:10 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2015-02-25 11:10 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\Windows\system32\hlink.dll 2015-02-25 11:10 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-02-25 11:10 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2015-02-25 11:10 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2015-02-25 11:10 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2015-02-25 11:10 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2015-02-25 11:10 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-02-25 11:10 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2015-02-25 11:10 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2015-02-25 11:10 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2015-02-25 11:10 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2015-02-25 11:10 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2015-02-25 11:10 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2015-02-25 11:10 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2015-02-25 11:10 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2015-02-25 11:10 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-02-25 11:10 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-02-25 11:10 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-02-25 11:10 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-02-25 11:10 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2015-02-25 11:10 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hlink.dll 2015-02-25 11:10 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-02-25 11:10 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2015-02-25 11:10 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2015-02-25 11:10 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2015-02-25 11:10 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2015-02-25 11:10 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-02-25 11:10 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2015-02-25 11:10 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2015-02-25 11:10 - 2014-08-23 08:48 - 02374784 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-02-25 11:10 - 2014-08-23 08:13 - 02084520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-02-25 11:10 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll 2015-02-25 11:10 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll 2015-02-25 11:10 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll 2015-02-25 11:10 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2015-02-25 11:10 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-02-25 11:10 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2015-02-25 11:10 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-02-25 11:10 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll 2015-02-25 11:10 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll 2015-02-25 11:10 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\httpprxm.dll 2015-02-25 11:10 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll 2015-02-25 11:10 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll 2015-02-25 11:10 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll 2015-02-25 11:10 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\adhsvc.dll 2015-02-25 11:10 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2015-02-25 11:10 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll 2015-02-25 11:10 - 2014-08-16 01:29 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2015-02-25 11:10 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll 2015-02-25 11:10 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2015-02-25 11:10 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll 2015-02-25 11:10 - 2014-08-16 01:19 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2015-02-25 11:10 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2015-02-25 11:10 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll 2015-02-25 11:10 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll 2015-02-25 11:10 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-02-25 11:10 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll 2015-02-25 11:10 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2015-02-25 11:10 - 2014-08-16 01:11 - 00920064 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll 2015-02-25 11:10 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2015-02-25 11:10 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-02-25 11:10 - 2014-08-16 01:07 - 00756224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll 2015-02-25 11:10 - 2014-07-24 16:28 - 00468288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBHUB3.SYS 2015-02-25 11:10 - 2014-07-24 12:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys 2015-02-25 11:10 - 2014-07-24 11:09 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2015-02-25 11:10 - 2014-07-24 10:27 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2015-02-25 11:10 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2015-02-25 11:10 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2015-02-25 11:10 - 2014-04-11 06:53 - 00079872 _____ (Microsoft Corporation) C:\Windows\system32\WSReset.exe 2015-02-25 11:10 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-02-25 11:10 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-02-25 11:10 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-02-25 11:07 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-02-25 11:07 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-02-25 11:06 - 2014-05-19 07:31 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\drvcfg.exe 2015-02-25 11:06 - 2014-05-19 07:21 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\drvinst.exe 2015-02-25 11:06 - 2014-05-19 06:23 - 00098816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2015-02-25 11:06 - 2014-03-06 10:19 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2015-02-25 11:05 - 2014-05-13 08:01 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\BulkOperationHost.exe 2015-02-25 11:05 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll 2015-02-25 11:05 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\Windows\system32\ncobjapi.dll 2015-02-25 11:05 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2015-02-25 11:05 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2015-02-25 11:05 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncobjapi.dll 2015-02-25 11:05 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll 2015-02-25 11:05 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll 2015-02-25 11:05 - 2014-05-03 00:26 - 00050745 _____ () C:\Windows\system32\srms.dat 2015-02-25 11:05 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwififlt.sys 2015-02-25 11:05 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-02-25 11:05 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\agilevpn.sys 2015-02-25 11:05 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vwifimp.sys 2015-02-25 11:05 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\Robocopy.exe 2015-02-25 11:05 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Robocopy.exe 2015-02-25 11:05 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2015-02-25 11:05 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2015-02-25 11:05 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2015-02-25 11:05 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll 2015-02-25 11:05 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2015-02-25 11:05 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2015-02-25 11:05 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2015-02-25 11:05 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2015-02-25 11:05 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2015-02-25 11:05 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll 2015-02-25 11:05 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll 2015-02-25 11:05 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2015-02-25 11:05 - 2014-04-26 19:41 - 00130560 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfg.exe 2015-02-25 11:05 - 2014-04-26 19:22 - 00099328 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfgLib.dll 2015-02-25 11:05 - 2014-04-26 19:04 - 00311296 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll 2015-02-25 11:05 - 2014-04-26 18:36 - 00794112 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll 2015-02-25 11:05 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll 2015-02-25 11:05 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2015-02-25 11:05 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2015-02-25 11:05 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d8thk.dll 2015-02-25 11:05 - 2014-03-08 21:40 - 00136024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys 2015-02-25 11:05 - 2014-03-08 07:41 - 00412672 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2015-02-25 11:05 - 2014-03-08 07:25 - 00264192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2015-02-25 11:05 - 2014-03-08 07:04 - 00717312 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2015-02-25 11:05 - 2014-03-08 06:58 - 00567296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2015-02-25 11:02 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-02-25 11:02 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-02-25 11:02 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2015-02-25 11:02 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll 2015-02-25 10:59 - 2015-01-10 09:22 - 04175872 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-02-25 10:59 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2015-02-25 10:59 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2015-02-25 10:56 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2015-02-25 10:56 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2015-02-25 10:56 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2015-02-25 10:56 - 2014-09-04 23:30 - 00822272 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2015-02-25 10:56 - 2014-09-04 23:21 - 01053184 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2015-02-25 10:56 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2015-02-25 10:56 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2015-02-25 10:56 - 2014-09-04 02:01 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2015-02-25 10:56 - 2014-09-04 01:32 - 00334336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll 2015-02-25 10:56 - 2014-09-04 01:10 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll 2015-02-25 10:56 - 2014-08-31 01:17 - 00148800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS 2015-02-25 10:56 - 2014-08-31 01:15 - 21197152 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-02-25 10:56 - 2014-08-30 23:59 - 18723112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-02-25 10:56 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOMEX.dll 2015-02-25 10:56 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\Windows\system32\FXSAPI.dll 2015-02-25 10:56 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2015-02-25 10:56 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FXSAPI.dll 2015-02-25 10:56 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2015-02-25 10:56 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2015-02-25 10:56 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll 2015-02-25 10:56 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll 2015-02-25 10:56 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll 2015-02-25 10:56 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll 2015-02-25 10:56 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll 2015-02-25 10:56 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll 2015-02-25 10:56 - 2014-07-24 12:22 - 00308736 _____ (Microsoft Corporation) C:\Windows\system32\compstui.dll 2015-02-25 10:56 - 2014-07-24 10:58 - 00785408 _____ (Microsoft Corporation) C:\Windows\system32\pmcsnap.dll 2015-02-25 10:56 - 2014-07-24 10:54 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\ppcsnap.dll 2015-02-25 10:56 - 2014-07-24 10:53 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\prnntfy.dll 2015-02-25 10:56 - 2014-07-24 10:13 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prnntfy.dll 2015-02-25 10:56 - 2014-07-24 09:20 - 00187392 _____ (Microsoft Corporation) C:\Windows\system32\puiapi.dll 2015-02-25 10:56 - 2014-07-24 09:08 - 00162816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiapi.dll 2015-02-25 10:56 - 2014-07-24 08:49 - 00263680 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll 2015-02-25 10:56 - 2014-07-24 08:43 - 00200192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll 2015-02-25 10:51 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll 2015-02-25 10:51 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll 2015-02-25 09:52 - 2014-05-31 11:07 - 00440664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2015-02-25 09:52 - 2014-05-31 07:26 - 00227840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2015-02-25 09:52 - 2014-05-31 05:01 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2015-02-25 09:52 - 2014-04-30 05:43 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-02-25 09:52 - 2014-04-30 05:30 - 00668160 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll 2015-02-25 09:52 - 2014-04-30 05:26 - 01345536 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-02-25 09:52 - 2014-04-30 04:47 - 01509888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-02-25 09:51 - 2014-06-02 03:10 - 00423768 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2015-02-25 09:51 - 2014-05-31 11:07 - 00089944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2015-02-25 09:51 - 2014-05-31 11:07 - 00027480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2015-02-25 09:51 - 2014-05-31 07:30 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys 2015-02-25 09:51 - 2014-05-31 07:27 - 00110592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2015-02-25 09:51 - 2014-05-31 05:01 - 00209408 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2015-02-25 09:51 - 2014-05-31 05:01 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2015-02-25 09:51 - 2014-05-29 07:21 - 00655872 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll 2015-02-25 09:51 - 2014-05-27 10:56 - 00323584 _____ (Microsoft Corporation) C:\Windows\system32\DaOtpCredentialProvider.dll 2015-02-25 09:51 - 2014-05-27 10:53 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DaOtpCredentialProvider.dll 2015-02-25 09:51 - 2014-04-30 04:52 - 00590336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll 2015-02-25 09:49 - 2014-04-18 15:57 - 00032600 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll 2015-02-25 09:49 - 2014-04-18 10:44 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\energyprov.dll 2015-02-25 09:49 - 2014-04-14 10:20 - 00324888 _____ (Microsoft Corporation) C:\Windows\system32\MFCaptureEngine.dll 2015-02-25 09:49 - 2014-04-14 09:01 - 00285144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFCaptureEngine.dll 2015-02-25 09:49 - 2014-04-11 05:51 - 00250368 _____ (Microsoft Corporation) C:\Windows\system32\rdpencom.dll 2015-02-25 09:49 - 2014-04-11 05:23 - 00209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpencom.dll 2015-02-25 09:49 - 2014-04-09 12:53 - 00337240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2015-02-25 09:49 - 2014-04-09 07:39 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2015-02-25 09:49 - 2014-04-09 06:44 - 00144384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2015-02-25 09:49 - 2014-04-09 04:33 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\wscsvc.dll 2015-02-25 09:49 - 2014-04-08 03:01 - 00589656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2015-02-25 09:49 - 2014-04-06 17:34 - 00372568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2015-02-25 09:49 - 2014-04-06 17:34 - 00275800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2015-02-25 09:49 - 2014-04-06 17:30 - 00201920 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll 2015-02-25 09:49 - 2014-04-06 17:24 - 00360792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys 2015-02-25 09:49 - 2014-04-06 17:20 - 01403856 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll 2015-02-25 09:49 - 2014-04-06 17:20 - 01379064 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2015-02-25 09:49 - 2014-04-06 17:20 - 00765408 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll 2015-02-25 09:49 - 2014-04-06 17:20 - 00609448 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2015-02-25 09:49 - 2014-04-06 17:20 - 00491744 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll 2015-02-25 09:49 - 2014-04-06 17:20 - 00028408 _____ (Microsoft Corporation) C:\Windows\system32\mfpmp.exe 2015-02-25 09:49 - 2014-04-06 16:22 - 00178184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll 2015-02-25 09:49 - 2014-04-06 16:16 - 01209616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll 2015-02-25 09:49 - 2014-04-06 16:16 - 00669856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll 2015-02-25 09:49 - 2014-04-06 16:16 - 00518544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2015-02-25 09:49 - 2014-04-06 16:16 - 00387896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll 2015-02-25 09:49 - 2014-04-06 13:58 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-02-25 09:49 - 2014-04-06 13:51 - 00467968 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-02-25 09:49 - 2014-04-06 13:33 - 00335872 _____ (Microsoft Corporation) C:\Windows\system32\MDEServer.exe 2015-02-25 09:49 - 2014-04-06 13:24 - 00271872 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-02-25 09:49 - 2014-04-06 13:06 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-02-25 09:49 - 2014-04-06 12:26 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\BootMenuUX.dll 2015-02-25 09:49 - 2014-04-06 11:05 - 01222656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll 2015-02-25 09:49 - 2014-04-06 10:59 - 00982016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll 2015-02-25 09:49 - 2014-04-03 09:12 - 00307304 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-02-25 09:49 - 2014-04-03 09:12 - 00130144 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll 2015-02-25 09:49 - 2014-04-03 05:03 - 00230808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-02-25 09:49 - 2014-04-03 05:03 - 00111528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll 2015-02-25 09:49 - 2014-04-03 03:23 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tlscsp.dll 2015-02-25 09:49 - 2014-04-03 03:22 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\tlscsp.dll 2015-02-25 09:49 - 2014-03-28 16:58 - 00407016 _____ (Microsoft Corporation) C:\Windows\system32\services.exe 2015-02-25 09:49 - 2014-03-27 06:36 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll 2015-02-25 09:49 - 2014-03-27 05:48 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll 2015-02-25 09:49 - 2014-03-27 04:15 - 00718336 _____ (Microsoft Corporation) C:\Windows\system32\swprv.dll 2015-02-25 09:49 - 2014-03-27 04:10 - 01436160 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2015-02-25 09:49 - 2014-03-21 05:14 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\tscfgwmi.dll 2015-02-25 09:49 - 2014-03-19 09:15 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\wlanhlp.dll 2015-02-25 09:49 - 2014-03-19 08:24 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-02-25 09:49 - 2014-03-19 08:17 - 00011264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanhlp.dll 2015-02-25 09:49 - 2014-03-18 06:00 - 07173120 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2015-02-25 09:49 - 2014-03-18 05:52 - 05104640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2015-02-25 09:49 - 2014-03-17 06:09 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2015-02-25 09:49 - 2014-03-17 05:11 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2015-02-25 09:49 - 2014-03-14 07:26 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll 2015-02-25 09:49 - 2014-03-14 07:10 - 00357376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll 2015-02-25 09:49 - 2014-03-06 10:19 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Shell.Search.UriHandler.dll 2015-02-25 09:49 - 2014-03-06 09:20 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Shell.Search.UriHandler.dll 2015-02-25 09:49 - 2014-01-27 19:21 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-02-25 09:46 - 2015-02-25 09:46 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2015-02-25 09:46 - 2014-12-08 20:42 - 00535640 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2015-02-25 09:46 - 2014-12-08 20:42 - 00531616 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-02-25 09:46 - 2014-12-08 20:42 - 00448792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2015-02-25 09:46 - 2014-12-08 20:42 - 00413248 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2015-02-25 09:46 - 2014-12-08 20:42 - 00372408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll 2015-02-25 09:46 - 2014-12-08 20:42 - 00108944 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2015-02-25 09:46 - 2014-12-08 20:42 - 00038264 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe 2015-02-25 09:46 - 2014-12-08 20:42 - 00033584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe 2015-02-25 09:46 - 2014-12-06 04:17 - 00360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2015-02-25 09:46 - 2014-12-06 02:41 - 00391680 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2015-02-25 09:46 - 2014-12-06 02:35 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll 2015-02-25 09:46 - 2014-10-29 05:00 - 00465320 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe 2015-02-25 09:46 - 2014-10-29 05:00 - 00139984 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe 2015-02-25 09:46 - 2014-10-29 04:52 - 00500016 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2015-02-25 09:46 - 2014-10-29 04:52 - 00482872 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2015-02-25 09:46 - 2014-10-29 04:52 - 00394120 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2015-02-25 09:46 - 2014-10-29 04:52 - 00272248 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2015-02-25 09:46 - 2014-10-29 04:12 - 00413136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe 2015-02-25 09:46 - 2014-10-29 04:12 - 00136296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe 2015-02-25 09:46 - 2014-10-29 04:07 - 00424544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2015-02-25 09:46 - 2014-10-29 04:07 - 00370424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2015-02-25 09:46 - 2014-10-29 04:07 - 00344536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2015-02-25 09:46 - 2014-10-29 03:44 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll 2015-02-25 09:46 - 2014-10-29 02:59 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werdiagcontroller.dll 2015-02-25 09:46 - 2014-10-29 02:24 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2015-02-25 09:46 - 2014-10-29 02:02 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2015-02-25 09:46 - 2014-10-29 02:01 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2015-02-25 09:46 - 2014-06-06 14:04 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2015-02-25 09:46 - 2014-06-06 13:18 - 00488960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2015-02-25 09:45 - 2014-05-31 11:06 - 00555736 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll 2015-02-25 09:45 - 2014-05-31 03:37 - 01054208 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll 2015-02-25 09:45 - 2014-05-31 03:35 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll 2015-02-25 09:45 - 2014-05-01 14:31 - 00055328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wpcfltr.sys 2015-02-25 09:45 - 2014-05-01 06:24 - 02834944 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll 2015-02-25 09:44 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2015-02-25 09:44 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2015-02-25 09:44 - 2014-10-13 03:43 - 00238912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2015-02-25 09:44 - 2014-10-13 03:43 - 00153920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2015-02-25 09:44 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2015-02-25 09:44 - 2014-10-13 03:43 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys 2015-02-25 09:43 - 2014-07-12 05:17 - 00623616 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe 2015-02-25 09:29 - 2015-02-25 09:29 - 00000000 ____D () C:\Users\Philip\AppData\Local\Steam 2015-02-25 09:27 - 2015-02-26 19:52 - 00000000 ____D () C:\Program Files (x86)\Steam 2015-02-25 09:27 - 2015-02-25 09:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2015-02-23 18:23 - 2015-02-23 18:23 - 00003496 _____ () C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-Philip.Diem@live.de 2015-02-23 18:20 - 2015-02-23 18:29 - 00001456 _____ () C:\Users\Philip\AppData\Local\Adobe Für Web speichern 13.0 Prefs 2015-02-23 18:07 - 2015-02-26 16:23 - 00060928 ___SH () C:\Users\Philip\Desktop\Thumbs.db 2015-02-23 18:07 - 2015-02-23 18:07 - 00001329 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2015-02-23 18:07 - 2015-02-23 18:07 - 00000000 ___RD () C:\Users\Philip\Creative Cloud Files 2015-02-23 18:05 - 2015-02-23 18:05 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe 2015-02-23 17:56 - 2015-02-23 17:56 - 00001044 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe InDesign CC 2014.lnk 2015-02-23 17:52 - 2015-02-23 17:52 - 00001046 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge CC (64bit).lnk 2015-02-23 17:51 - 2015-02-23 17:51 - 00001004 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Flash Professional CC 2014.lnk 2015-02-23 17:49 - 2015-02-23 17:49 - 00001511 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator CC 2014.lnk 2015-02-23 17:49 - 2015-02-23 17:49 - 00001357 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Extension Manager CC.lnk 2015-02-23 17:49 - 2015-02-23 17:49 - 00000000 ____D () C:\ProgramData\ALM 2015-02-23 17:48 - 2015-02-25 18:27 - 00000000 ____D () C:\Program Files\Adobe 2015-02-23 17:48 - 2015-02-23 17:48 - 00001056 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2014.lnk 2015-02-23 17:47 - 2015-02-25 18:27 - 00000000 ____D () C:\Program Files\Common Files\Adobe 2015-02-23 17:45 - 2015-02-25 18:25 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\UseNeXT 2015-02-23 17:45 - 2015-02-23 17:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UseNeXT 2015-02-23 17:45 - 2015-02-23 17:45 - 00000000 ____D () C:\Program Files (x86)\UseNeXT 2015-02-23 17:43 - 2015-02-23 17:43 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2015-02-23 17:43 - 2015-02-23 17:43 - 00000000 ____D () C:\Program Files\Reference Assemblies 2015-02-23 17:43 - 2015-02-23 17:43 - 00000000 ____D () C:\Program Files\MSBuild 2015-02-23 17:43 - 2015-02-23 17:43 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies 2015-02-23 17:43 - 2015-02-23 17:43 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2015-02-23 17:42 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll 2015-02-23 17:42 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-02-23 17:42 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll 2015-02-23 17:42 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-02-23 17:03 - 2015-02-23 17:03 - 00000000 ____D () C:\Users\Philip\Tracing 2015-02-23 17:03 - 2015-02-23 17:03 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\vlc 2015-02-23 17:02 - 2015-02-26 19:53 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Skype 2015-02-23 17:02 - 2015-02-23 17:02 - 00000000 ____D () C:\Users\Philip\AppData\Local\Skype 2015-02-23 17:02 - 2015-02-23 17:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2015-02-23 17:02 - 2015-02-23 17:02 - 00000000 ____D () C:\Program Files\VideoLAN 2015-02-23 17:01 - 2015-02-23 17:02 - 00000000 ____D () C:\ProgramData\Skype 2015-02-23 17:01 - 2015-02-23 17:01 - 00000000 ___RD () C:\Program Files (x86)\Skype 2015-02-23 17:01 - 2015-02-23 17:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-02-23 16:57 - 2015-02-23 16:57 - 00000000 ___SD () C:\Users\Philip\Documents\Meine Shapes 2015-02-23 16:56 - 2015-02-23 16:56 - 00000000 ____D () C:\Windows\PCHEALTH 2015-02-23 16:55 - 2015-02-23 17:00 - 00000000 ____D () C:\ProgramData\Microsoft Help 2015-02-23 16:55 - 2015-02-23 16:55 - 00000000 __RHD () C:\MSOCache 2015-02-23 16:55 - 2015-02-23 16:55 - 00000000 ____D () C:\Users\Philip\Downloads\InfoPath 2013 (x86 and x64) - DVD (German) 2015-02-23 16:55 - 2015-02-23 16:55 - 00000000 ____D () C:\Users\Philip\AppData\Local\Microsoft Help 2015-02-23 16:55 - 2015-02-23 16:55 - 00000000 ____D () C:\Program Files\Microsoft Office 2015-02-23 16:55 - 2015-02-23 16:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services 2015-02-23 16:54 - 2015-02-23 16:54 - 00002785 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Mindjet MindManager 15.lnk 2015-02-23 16:54 - 2015-02-23 16:54 - 00000000 ____D () C:\ProgramData\Mindjet 2015-02-23 16:54 - 2015-02-23 16:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mindjet MindManager 15 2015-02-23 16:54 - 2015-02-23 16:54 - 00000000 ____D () C:\Program Files\Mindjet 2015-02-23 16:53 - 2015-02-23 16:53 - 00000000 ____D () C:\Users\Philip\AppData\Local\{463F9BF0-77DB-4910-92A0-11C19B92619F} 2015-02-23 16:46 - 2015-02-23 16:46 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\e-academy Inc 2015-02-23 16:46 - 2015-02-23 16:46 - 00000000 ____D () C:\Users\Philip\AppData\Local\e-academy Inc 2015-02-23 16:29 - 2015-02-23 16:29 - 00000000 ____D () C:\Windows\system32\appmgmt 2015-02-23 15:52 - 2015-02-23 18:05 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\NVIDIA 2015-02-23 15:46 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll 2015-02-23 15:46 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll 2015-02-23 15:46 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll 2015-02-23 15:46 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll 2015-02-23 15:46 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll 2015-02-23 15:46 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll 2015-02-23 15:45 - 2015-02-25 16:37 - 00000000 ____D () C:\Users\Philip\AppData\Local\NVIDIA Corporation 2015-02-23 15:45 - 2015-02-25 16:37 - 00000000 ____D () C:\Users\Philip\AppData\Local\NVIDIA 2015-02-23 15:45 - 2015-02-23 15:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2015-02-23 15:45 - 2015-02-23 15:45 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies 2015-02-23 15:45 - 2014-07-25 15:01 - 01715224 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll 2015-02-23 15:45 - 2014-07-25 15:01 - 01291280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll 2015-02-23 15:45 - 2014-07-25 15:01 - 01283136 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2015-02-23 15:45 - 2014-07-25 15:01 - 01126480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2015-02-23 15:43 - 2015-02-04 04:56 - 14497568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2015-02-23 15:43 - 2015-02-04 04:56 - 02823992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2015-02-23 15:43 - 2015-02-04 04:56 - 00846880 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2015-02-23 15:43 - 2014-07-02 21:48 - 01890080 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434052.dll 2015-02-23 15:43 - 2014-07-02 21:48 - 01539928 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434052.dll 2015-02-23 15:43 - 2014-03-31 17:42 - 00040392 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2015-02-23 15:43 - 2014-03-31 17:42 - 00037320 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2015-02-23 15:43 - 2014-03-31 17:42 - 00034760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2015-02-23 15:42 - 2015-02-23 15:42 - 00000000 ____D () C:\NVIDIA 2015-02-23 15:29 - 2015-02-23 15:29 - 00000020 ___SH () C:\Users\UpdatusUser\ntuser.ini 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Vorlagen 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Startmenü 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Netzwerkumgebung 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Lokale Einstellungen 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Eigene Dateien 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Druckumgebung 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Documents\Eigene Musik 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\Documents\Eigene Bilder 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-02-23 15:29 - 2015-02-23 15:29 - 00000000 _SHDL () C:\Users\UpdatusUser\AppData\Local\Verlauf 2015-02-23 15:29 - 2014-03-18 11:32 - 00000000 ___RD () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-02-23 15:29 - 2014-03-18 11:32 - 00000000 ___RD () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-02-23 15:29 - 2014-03-18 11:12 - 00000369 _____ () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-02-23 15:29 - 2014-03-18 11:12 - 00000369 _____ () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-02-23 15:29 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-02-23 15:29 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-02-23 15:28 - 2015-02-26 19:51 - 00000000 ____D () C:\ProgramData\NVIDIA 2015-02-23 15:28 - 2015-02-04 03:21 - 06782152 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2015-02-23 15:28 - 2015-02-04 03:21 - 03522376 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2015-02-23 15:28 - 2015-02-04 03:21 - 02558792 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2015-02-23 15:28 - 2015-02-04 03:21 - 01082568 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2015-02-23 15:28 - 2015-02-04 03:21 - 00932040 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2015-02-23 15:28 - 2015-02-04 03:21 - 00384200 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2015-02-23 15:28 - 2015-02-04 03:21 - 00067072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2015-02-23 15:28 - 2015-02-04 03:21 - 00062792 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2015-02-23 15:28 - 2015-02-03 17:18 - 04229086 _____ () C:\Windows\system32\nvcoproc.bin 2015-02-23 15:26 - 2015-02-23 15:26 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-02-23 15:24 - 2015-02-25 16:37 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation 2015-02-23 15:24 - 2015-02-23 15:24 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2015-02-23 15:21 - 2015-02-04 04:56 - 00167312 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2015-02-23 15:21 - 2015-02-04 04:56 - 00147576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2015-02-23 15:21 - 2015-02-04 04:56 - 00026155 _____ () C:\Windows\system32\nvinfo.pb 2015-02-23 15:21 - 2011-06-05 07:22 - 01626728 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6420141.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 01394280 _____ (NVIDIA Corporation) C:\Windows\system32\nvgenco642061.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00446056 _____ (NVIDIA Corporation) C:\Windows\system32\nvoptimusmft.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00391784 _____ (NVIDIA Corporation) C:\Windows\system32\nvdecodemft.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00380520 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoptimusmft.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00320104 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvdecodemft.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00067176 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00057960 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2015-02-23 15:21 - 2011-06-05 07:22 - 00011240 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvBridge.kmd 2015-02-23 15:19 - 2015-02-23 15:19 - 00002207 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\WinZip.lnk 2015-02-23 15:19 - 2015-02-23 15:19 - 00000000 ____D () C:\Users\Philip\AppData\Local\WinZip 2015-02-23 15:18 - 2015-02-23 15:19 - 00000000 ____D () C:\ProgramData\WinZip 2015-02-23 15:18 - 2015-02-23 15:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip 2015-02-23 15:18 - 2015-02-23 15:18 - 00000000 ____D () C:\Program Files\WinZip 2015-02-23 14:57 - 2015-02-25 18:32 - 00000000 ____D () C:\Program Files (x86)\Adobe 2015-02-23 14:57 - 2015-02-23 14:57 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2015-02-23 14:56 - 2015-02-26 11:04 - 00000000 ____D () C:\Users\Philip\AppData\Local\Adobe 2015-02-23 14:56 - 2015-02-25 18:14 - 00000000 ____D () C:\ProgramData\Adobe 2015-02-23 14:53 - 2015-02-23 14:53 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Apple Computer 2015-02-23 14:53 - 2015-02-23 14:53 - 00000000 ____D () C:\Users\Philip\AppData\Local\flexsim 2015-02-23 14:53 - 2015-02-23 14:53 - 00000000 ____D () C:\Users\Philip\AppData\Local\Apple Computer 2015-02-23 14:52 - 2015-02-25 10:59 - 00000000 ____D () C:\ProgramData\FLEXnet 2015-02-23 14:52 - 2015-02-23 14:53 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Flexsim 2015-02-23 14:51 - 2015-02-23 14:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlexSim 7.3 2015-02-23 14:51 - 2015-02-23 14:51 - 00000000 ____D () C:\Program Files\Common Files\Macrovision Shared 2015-02-23 14:50 - 2015-02-23 14:53 - 00000000 ____D () C:\ProgramData\Flexsim 2015-02-23 14:50 - 2015-02-23 14:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FlexSim 6 2015-02-23 14:50 - 2015-02-23 14:50 - 00000000 ____D () C:\Program Files\FlexSim7.3 2015-02-23 14:50 - 2015-02-23 14:50 - 00000000 ____D () C:\Program Files (x86)\Flexsim6 2015-02-23 14:30 - 2015-02-23 15:24 - 00000000 ____D () C:\Users\Philip\AppData\Local\BlackBerry 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_blackberryncm6_AMD64_01007.Wdf 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 ____D () C:\Users\Philip\AppData\Local\Research In Motion 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 ____D () C:\ProgramData\Research In Motion 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlackBerry Blend 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 ____D () C:\Program Files (x86)\BlackBerry 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 _____ () C:\Windows\SysWOW64\out.txt 2015-02-23 14:29 - 2015-02-23 14:29 - 00000000 _____ () C:\Windows\SysWOW64\err.txt 2015-02-23 14:28 - 2015-02-23 18:07 - 00000000 ____D () C:\ProgramData\Package Cache 2015-02-23 14:28 - 2015-02-23 14:28 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_RimSerial_AMD64_01007.Wdf 2015-02-23 14:28 - 2012-12-10 15:48 - 00044544 _____ (Research in Motion Ltd) C:\Windows\system32\Drivers\RimSerial_AMD64.sys 2015-02-23 14:18 - 2015-02-26 19:53 - 00000000 ___RD () C:\Users\Philip\Dropbox 2015-02-23 14:18 - 2015-02-23 14:18 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-02-23 14:17 - 2015-02-26 19:53 - 00000000 ____D () C:\Users\Philip\Downloads\Chrome 2015-02-23 14:17 - 2015-02-26 19:53 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Dropbox 2015-02-23 14:17 - 2015-02-23 14:17 - 00000000 ____D () C:\Users\Philip\Downloads\Usenext 2015-02-23 14:17 - 2015-02-23 14:17 - 00000000 ____D () C:\Users\Philip\Downloads\FHNW 2015-02-23 14:09 - 2015-02-26 14:10 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Spotify 2015-02-23 14:09 - 2015-02-25 16:17 - 00000000 ____D () C:\Users\Philip\AppData\Local\Spotify 2015-02-23 14:09 - 2015-02-23 14:09 - 00001838 _____ () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2015-02-23 14:06 - 2015-02-26 15:16 - 00000000 ____D () C:\Users\Philip\ARISExpress 2015-02-23 14:05 - 2015-02-23 14:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ARIS Platform 2015-02-23 14:04 - 2015-02-23 14:04 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2015-02-23 14:04 - 2015-02-23 14:04 - 00000000 ____D () C:\Program Files\ARIS Express 2015-02-23 14:03 - 2015-02-23 16:52 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\DAEMON Tools Lite 2015-02-23 14:03 - 2015-02-23 14:03 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2015-02-23 14:03 - 2015-02-23 14:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2015-02-23 14:03 - 2015-02-23 14:03 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2015-02-23 14:02 - 2015-02-23 16:52 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite 2015-02-23 14:02 - 2015-02-23 14:02 - 00000182 _____ () C:\Windows\venple.ini 2015-02-23 14:02 - 2015-02-23 14:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vensim 2015-02-23 14:01 - 2015-02-23 14:02 - 00000000 ____D () C:\Users\Public\Vensim 2015-02-23 14:01 - 2015-02-23 14:02 - 00000000 ____D () C:\Program Files (x86)\Vensim 2015-02-23 13:59 - 2015-02-23 13:59 - 00000000 ____D () C:\Users\Philip\AppData\Local\Cisco 2015-02-23 13:59 - 2015-02-23 13:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cisco 2015-02-23 13:59 - 2015-02-23 13:59 - 00000000 ____D () C:\ProgramData\Cisco 2015-02-23 13:59 - 2015-02-23 13:59 - 00000000 ____D () C:\Program Files (x86)\Cisco 2015-02-23 13:59 - 2013-12-12 23:14 - 00112496 ____R (Cisco Systems, Inc.) C:\Windows\system32\Drivers\acsock64.sys 2015-02-23 13:58 - 2015-02-23 13:58 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2015-02-23 13:58 - 2015-02-23 13:58 - 00000000 ____D () C:\Program Files (x86)\Java 2015-02-23 13:54 - 2015-02-23 13:54 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2015-02-23 13:54 - 2015-02-23 13:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-02-23 13:54 - 2015-02-23 13:54 - 00000000 ____D () C:\Program Files\Java 2015-02-23 13:45 - 2015-02-23 13:58 - 00000000 ____D () C:\ProgramData\Oracle 2015-02-23 13:45 - 2015-02-23 13:46 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Mozilla 2015-02-23 13:45 - 2015-02-23 13:46 - 00000000 ____D () C:\Users\Philip\AppData\Local\Mozilla 2015-02-23 13:45 - 2015-02-23 13:45 - 00001171 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2015-02-23 13:45 - 2015-02-23 13:45 - 00000000 ____D () C:\ProgramData\Sun 2015-02-23 13:45 - 2015-02-23 13:45 - 00000000 ____D () C:\ProgramData\Mozilla 2015-02-23 13:45 - 2015-02-23 13:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2015-02-23 13:45 - 2015-02-23 13:45 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2015-02-23 13:42 - 2015-02-26 19:53 - 00005124 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for IGOR-Philip Igor 2015-02-23 13:42 - 2015-02-23 13:42 - 00003090 _____ () C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1974623646-547660712-2476049583-1001 2015-02-23 13:42 - 2015-02-23 13:42 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive 2015-02-23 13:34 - 2015-02-23 17:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2015-02-23 13:34 - 2015-02-23 16:56 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2015-02-23 13:33 - 2015-02-23 13:33 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2015-02-23 13:29 - 2015-02-23 13:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-02-23 13:28 - 2015-02-26 19:52 - 00000904 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-02-23 13:28 - 2015-02-26 19:33 - 00000908 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-02-23 13:28 - 2015-02-23 13:29 - 00000000 ____D () C:\Users\Philip\AppData\Local\Google 2015-02-23 13:28 - 2015-02-23 13:29 - 00000000 ____D () C:\Program Files (x86)\Google 2015-02-23 13:28 - 2015-02-23 13:28 - 00003880 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-02-23 13:28 - 2015-02-23 13:28 - 00003644 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-02-23 13:27 - 2015-02-23 13:27 - 00000000 __SHD () C:\Users\Philip\AppData\Local\EmieUserList 2015-02-23 13:27 - 2015-02-23 13:27 - 00000000 __SHD () C:\Users\Philip\AppData\Local\EmieSiteList 2015-02-23 13:27 - 2015-02-23 13:27 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Macromedia 2015-02-23 13:24 - 2015-02-26 19:03 - 00003918 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{1CC53448-E437-4213-962C-0497FA1A6564} 2015-02-23 13:22 - 2015-02-26 19:51 - 00024200 _____ () C:\Users\Philip\AppData\Roaming\Notepad2.ini 2015-02-23 13:22 - 2015-02-23 13:22 - 00000000 ____D () C:\Program Files\Notepad2 2015-02-23 13:17 - 2015-02-23 13:17 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\McAfee 2015-02-23 13:15 - 2015-02-23 13:15 - 00771096 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfehidk.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00339392 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfewfpk.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00309400 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeavfk.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00178840 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeapfk.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00177680 _____ (McAfee, Inc.) C:\Windows\system32\mfevtps.exe 2015-02-23 13:15 - 2015-02-23 13:15 - 00118416 _____ (McAfee, Inc.) C:\Windows\system32\MfeOtlkAddin.dll 2015-02-23 13:15 - 2015-02-23 13:15 - 00106112 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mferkdet.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00090576 _____ (McAfee, Inc.) C:\Windows\SysWOW64\MfeOtlkAddin.dll 2015-02-23 13:15 - 2015-02-23 13:15 - 00069168 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeelamk.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00024168 _____ (McAfee, Inc.) C:\Windows\SysWOW64\MFEOtlk.dll 2015-02-23 13:15 - 2015-02-23 13:15 - 00010288 _____ (McAfee, Inc.) C:\Windows\system32\Drivers\mfeclnk.sys 2015-02-23 13:15 - 2015-02-23 13:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2015-02-23 13:15 - 2015-02-23 13:15 - 00000000 ____D () C:\ProgramData\McAfee 2015-02-23 13:15 - 2015-02-23 13:15 - 00000000 ____D () C:\Program Files\Common Files\McAfee 2015-02-23 13:15 - 2015-02-23 13:15 - 00000000 ____D () C:\Program Files (x86)\McAfee 2015-02-23 13:12 - 2015-02-23 13:14 - 00001554 _____ () C:\Windows\KB893803v2.log 2015-02-23 13:11 - 2015-02-23 15:45 - 00000000 ____D () C:\Program Files\NVIDIA Corporation 2015-02-23 13:11 - 2015-02-23 15:45 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation 2015-02-23 13:09 - 2015-02-26 19:51 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1974623646-547660712-2476049583-1001 2015-02-23 13:09 - 2015-02-23 13:09 - 00000000 ____D () C:\Program Files (x86)\Intel 2015-02-23 13:09 - 2015-02-23 13:09 - 00000000 ____D () C:\Intel 2015-02-23 13:08 - 2015-02-26 19:52 - 00000000 __RDO () C:\Users\Philip\OneDrive 2015-02-23 13:04 - 2015-02-26 14:09 - 00000000 ____D () C:\Users\Philip\AppData\Local\Packages 2015-02-23 13:04 - 2015-02-25 18:29 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Adobe 2015-02-23 13:04 - 2015-02-24 16:08 - 00000000 ____D () C:\Users\Philip 2015-02-23 13:04 - 2015-02-23 14:52 - 00000000 ____D () C:\Users\Philip\AppData\Local\VirtualStore 2015-02-23 13:04 - 2015-02-23 13:05 - 00000000 ____D () C:\Users\Philip\AppData\Local\PackageStaging 2015-02-23 13:04 - 2015-02-23 13:04 - 00001450 _____ () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-02-23 13:04 - 2015-02-23 13:04 - 00000020 ___SH () C:\Users\Philip\ntuser.ini 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Vorlagen 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Startmenü 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Netzwerkumgebung 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Lokale Einstellungen 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Eigene Dateien 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Druckumgebung 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Documents\Eigene Musik 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Documents\Eigene Bilder 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\AppData\Local\Verlauf 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\AppData\Local\Anwendungsdaten 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 _SHDL () C:\Users\Philip\Anwendungsdaten 2015-02-23 13:04 - 2015-02-23 13:04 - 00000000 ____D () C:\Windows\System32\Tasks\WPD 2015-02-23 13:04 - 2014-03-18 11:32 - 00000000 ___RD () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-02-23 13:04 - 2014-03-18 11:32 - 00000000 ___RD () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-02-23 13:04 - 2014-03-18 11:12 - 00000369 _____ () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2015-02-23 13:04 - 2014-03-18 11:12 - 00000369 _____ () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2015-02-23 13:04 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-02-23 13:04 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Philip\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2015-02-23 12:59 - 2015-02-26 19:51 - 01151690 _____ () C:\Windows\WindowsUpdate.log 2015-02-23 12:59 - 2015-02-23 12:59 - 00000000 ____D () C:\Windows\CSC 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Startmenü 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Programme 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\ProgramData\Startmenü 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\ProgramData\Dokumente 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2015-02-23 12:45 - 2015-02-23 12:45 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2015-02-23 12:43 - 2015-02-23 13:04 - 00000000 ____D () C:\Windows\Panther 2015-02-23 12:43 - 2015-02-23 12:43 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-26 19:51 - 2013-08-22 15:46 - 00022420 _____ () C:\Windows\setupact.log 2015-02-26 19:51 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2015-02-26 19:46 - 2014-03-18 11:04 - 01776918 _____ () C:\Windows\system32\PerfStringBackup.INI 2015-02-26 19:46 - 2014-03-18 10:25 - 00765582 _____ () C:\Windows\system32\perfh007.dat 2015-02-26 19:46 - 2014-03-18 10:25 - 00159366 _____ () C:\Windows\system32\perfc007.dat 2015-02-26 19:32 - 2014-03-18 02:51 - 00006986 _____ () C:\Windows\PFRO.log 2015-02-26 19:32 - 2013-08-22 15:44 - 00487448 _____ () C:\Windows\system32\FNTCACHE.DAT 2015-02-26 19:32 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI 2015-02-26 19:06 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru 2015-02-26 19:01 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM 2015-02-26 18:59 - 2014-03-18 10:40 - 00000000 ____D () C:\Program Files\Windows Journal 2015-02-26 18:59 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData 2015-02-26 18:59 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel 2015-02-26 18:59 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-02-26 18:59 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-02-26 18:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\setup 2015-02-26 18:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\InputMethod 2015-02-26 18:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\setup 2015-02-26 18:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions 2015-02-26 18:59 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\oobe 2015-02-26 14:42 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp 2015-02-26 14:40 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender 2015-02-25 18:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2015-02-25 17:26 - 2015-01-16 16:20 - 00000000 ____D () C:\Users\Philip\Desktop\Vensim nach Flexsim(Ofen) 2015-02-25 11:59 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared |
![]() | #9 |
| ![]() FRST Log Teil 3 Was meint der Profi? Komm ich ums neu aufsetzen rum? wär lästig, hab ich ja grad erst gemacht ^^ Danke Euch ![]() Code:
ATTFilter 2015-02-25 09:38 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness 2015-02-23 17:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\MUI 2015-02-23 17:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\MUI 2015-02-23 15:28 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Help 2015-02-23 13:15 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\ELAMBKUP 2015-02-23 13:15 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\restore 2015-02-23 12:45 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows NT 2015-02-23 12:45 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default 2015-02-23 12:44 - 2013-08-22 16:37 - 00002664 _____ () C:\Windows\DtcInstall.log 2015-02-23 12:44 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Recovery 2015-02-23 12:43 - 2013-08-22 16:36 - 00262144 _____ () C:\Windows\system32\config\BCD-Template 2015-02-04 04:56 - 2013-09-05 02:37 - 00965360 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2015-02-04 04:56 - 2013-09-05 02:35 - 03209736 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll ==================== Files in the root of some directories ======= 2015-02-25 17:59 - 2015-01-20 04:32 - 93253791 _____ () C:\Users\Philip\AppData\Roaming\autostarter.exe 2015-02-23 13:22 - 2015-02-26 19:51 - 0024200 _____ () C:\Users\Philip\AppData\Roaming\Notepad2.ini 2015-02-25 18:04 - 2015-02-26 19:47 - 0000032 _____ () C:\Users\Philip\AppData\Roaming\url.txt 2015-02-23 18:20 - 2015-02-23 18:29 - 0001456 _____ () C:\Users\Philip\AppData\Local\Adobe Für Web speichern 13.0 Prefs Some content of TEMP: ==================== C:\Users\Philip\AppData\Local\Temp\20150223015906531jniverify.dll C:\Users\Philip\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpht9kex.dll C:\Users\Philip\AppData\Local\Temp\nvSCPAPI.dll C:\Users\Philip\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\Philip\AppData\Local\Temp\nvStInst.exe C:\Users\Philip\AppData\Local\Temp\proxy_vole5764824186992554578.dll C:\Users\Philip\AppData\Local\Temp\Quarantine.exe C:\Users\Philip\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-02-23 12:43 ==================== End Of Log ============================ |
![]() | #10 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() McAfee blockt alle paar minuten "loadit.exe"ESET Online Scanner
Downloade Dir bitte ![]()
und ein frisches FRST log bitte. Noch Probleme? ![]()
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #11 |
| ![]() Thema Schliessen Ich hab Windows jetzt neu aufgesetzt. Weiter mit ausgesetztem Virenscanner und deaktivierter Firewall im trüben zu fischen war mir einfach zu unsicher. Herzlichen Dank trotzdem für deine Zeit Beste Grüsse Phil |
![]() | #12 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() McAfee blockt alle paar minuten "loadit.exe" im Trüben fischen? Wir waren eigentlich fast durch, aber egal ![]()
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() |
Themen zu McAfee blockt alle paar minuten "loadit.exe" |
andere, aufgetaucht, bereits, bli, blockt, einfach, entfernt, file, folge, folgendes, frisch, gestern, komplett, loadit.exe, mcafee, minute, minuten, nichts, problem, schei, suche, system, troja, trojaner, vermutlich, win, win8.1 |