|
Plagegeister aller Art und deren Bekämpfung: Yahoo mail versendet mails zu meinen kontaktenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
18.03.2015, 14:37 | #31 |
| Yahoo mail versendet mails zu meinen kontaktenCode:
ATTFilter 2015-03-03 09:27 - 2014-10-29 02:04 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esentprf.dll 2015-03-03 09:27 - 2014-10-29 02:04 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll 2015-03-03 09:27 - 2014-10-29 02:04 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pots.dll 2015-03-03 09:27 - 2014-10-29 02:04 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wcmapi.dll 2015-03-03 09:27 - 2014-10-29 02:04 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cacls.exe 2015-03-03 09:27 - 2014-10-29 02:04 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ARP.EXE 2015-03-03 09:27 - 2014-10-29 02:04 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll 2015-03-03 09:27 - 2014-10-29 02:04 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userinitext.dll 2015-03-03 09:27 - 2014-10-29 02:04 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HOSTNAME.EXE 2015-03-03 09:27 - 2014-10-29 02:03 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidnsp.dll 2015-03-03 09:27 - 2014-10-29 02:03 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XInput1_4.dll 2015-03-03 09:27 - 2014-10-29 02:02 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winipsec.dll 2015-03-03 09:27 - 2014-10-29 02:01 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\slpts.dll 2015-03-03 09:27 - 2014-10-29 02:00 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ipconfig.exe 2015-03-03 09:27 - 2014-10-29 02:00 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundTransferHost.exe 2015-03-03 09:27 - 2014-10-29 02:00 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmAgent.dll 2015-03-03 09:27 - 2014-10-29 02:00 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvps.dll 2015-03-03 09:27 - 2014-10-29 02:00 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\delegatorprovider.dll 2015-03-03 09:27 - 2014-10-29 02:00 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ROUTE.EXE 2015-03-03 09:27 - 2014-10-29 02:00 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.RemoteDesktop.dll 2015-03-03 09:27 - 2014-10-29 02:00 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TtlsExt.dll 2015-03-03 09:27 - 2014-10-29 02:00 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ProximityCommonPal.dll 2015-03-03 09:27 - 2014-10-29 01:59 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\raschapext.dll 2015-03-03 09:27 - 2014-10-29 01:59 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll 2015-03-03 09:27 - 2014-10-29 01:58 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll 2015-03-03 09:27 - 2014-10-29 01:58 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdPHost.dll 2015-03-03 09:27 - 2014-10-29 01:58 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxshared.dll 2015-03-03 09:27 - 2014-10-29 01:57 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FwRemoteSvr.dll 2015-03-03 09:27 - 2014-10-29 01:57 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winrshost.exe 2015-03-03 09:27 - 2014-10-29 01:57 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\energytask.dll 2015-03-03 09:27 - 2014-10-29 01:57 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\msshooks.dll 2015-03-03 09:27 - 2014-10-29 01:56 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nci.dll 2015-03-03 09:27 - 2014-10-29 01:55 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSaProxy.exe 2015-03-03 09:27 - 2014-10-29 01:54 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSaUacHelper.exe 2015-03-03 09:27 - 2014-10-29 01:53 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ifmon.dll 2015-03-03 09:27 - 2014-10-29 01:50 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe 2015-03-03 09:27 - 2014-10-29 01:48 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slpts.dll 2015-03-03 09:27 - 2014-10-29 01:46 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll 2015-03-03 09:27 - 2014-10-29 01:45 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msshooks.dll 2015-03-03 09:27 - 2014-10-29 01:44 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CheckNetIsolation.exe 2015-03-03 09:27 - 2014-10-29 01:44 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RdpSaUacHelper.exe 2015-03-03 09:27 - 2014-06-21 08:33 - 00212736 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys 2015-03-03 09:26 - 2014-10-29 04:54 - 05120000 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthFWSnapin.dll 2015-03-03 09:26 - 2014-10-29 04:07 - 05120000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthFWSnapin.dll 2015-03-03 09:26 - 2014-10-29 03:48 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\txfw32.dll 2015-03-03 09:26 - 2014-10-29 03:48 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Locator.exe 2015-03-03 09:26 - 2014-10-29 03:47 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netbios.sys 2015-03-03 09:26 - 2014-10-29 03:46 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc63.sys 2015-03-03 09:26 - 2014-10-29 03:46 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys 2015-03-03 09:26 - 2014-10-29 03:46 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys 2015-03-03 09:26 - 2014-10-29 03:45 - 00183296 _____ (Microsoft Corporation) C:\WINDOWS\system32\miguiresource.dll 2015-03-03 09:26 - 2014-10-29 03:45 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SortWindows6Compat.dll 2015-03-03 09:26 - 2014-10-29 03:45 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll 2015-03-03 09:26 - 2014-10-29 03:45 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SortWindows61.dll 2015-03-03 09:26 - 2014-10-29 03:45 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciseq.dll 2015-03-03 09:26 - 2014-10-29 03:45 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\netbios.dll 2015-03-03 09:26 - 2014-10-29 03:45 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensApi.dll 2015-03-03 09:26 - 2014-10-29 03:45 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\browseui.dll 2015-03-03 09:26 - 2014-10-29 03:45 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll 2015-03-03 09:26 - 2014-10-29 03:45 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AutoWorkplaceN.dll 2015-03-03 09:26 - 2014-10-29 03:45 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\system32\osuninst.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSchedExe.exe 2015-03-03 09:26 - 2014-10-29 03:44 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\fthsvc.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\SortServer2003Compat.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\regini.exe 2015-03-03 09:26 - 2014-10-29 03:44 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Nlsdl.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\blb_ps.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\davhlpr.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\sisbkup.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mgmtapi.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WofUtil.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\clb.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsock32.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\msidcrl40.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\sas.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlS0WndH.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiwer.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mscat32.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcfgex.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\nddeapi.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\XInput9_1_0.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\softpub.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\OskSupport.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\riched32.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\getuname.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxex.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssip32.dll 2015-03-03 09:26 - 2014-10-29 03:44 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\comcat.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\telephon.cpl 2015-03-03 09:26 - 2014-10-29 03:43 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.exe 2015-03-03 09:26 - 2014-10-29 03:43 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntprint.exe 2015-03-03 09:26 - 2014-10-29 03:43 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzutil.exe 2015-03-03 09:26 - 2014-10-29 03:43 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasser.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\osbaseln.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\sort.exe 2015-03-03 09:26 - 2014-10-29 03:43 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbnmpntw.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskperf.exe 2015-03-03 09:26 - 2014-10-29 03:43 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\hh.exe 2015-03-03 09:26 - 2014-10-29 03:43 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdkey.exe 2015-03-03 09:26 - 2014-10-29 03:43 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\label.exe 2015-03-03 09:26 - 2014-10-29 03:43 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\subst.exe 2015-03-03 09:26 - 2014-10-29 03:43 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfts.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MUILanguageCleanup.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\LangCleanupSysprepAction.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwinsat.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnpts.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\chcp.com 2015-03-03 09:26 - 2014-10-29 03:43 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\recover.exe 2015-03-03 09:26 - 2014-10-29 03:43 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskcopy.com 2015-03-03 09:26 - 2014-10-29 03:43 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\tapiperf.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dvdplay.exe 2015-03-03 09:26 - 2014-10-29 03:43 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeDateMUICallback.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsied.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\spmpm.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\acledit.dll 2015-03-03 09:26 - 2014-10-29 03:43 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\plasrv.exe 2015-03-03 09:26 - 2014-10-29 03:42 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\colorcpl.exe 2015-03-03 09:26 - 2014-10-29 03:42 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iyuv_32.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\hwrcomp.exe 2015-03-03 09:26 - 2014-10-29 03:42 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\efssvc.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\klist.exe 2015-03-03 09:26 - 2014-10-29 03:42 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDOIProxy.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\syskey.exe 2015-03-03 09:26 - 2014-10-29 03:42 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\cliconfg.exe 2015-03-03 09:26 - 2014-10-29 03:42 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\drprov.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msyuv.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\jnwmon.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcacli.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\netbtugc.exe 2015-03-03 09:26 - 2014-10-29 03:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnpinst.exe 2015-03-03 09:26 - 2014-10-29 03:42 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\umdmxfrm.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\muifontsetup.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrle32.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsbyuv.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\snmptrap.exe 2015-03-03 09:26 - 2014-10-29 03:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshnetbs.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbperf.dll 2015-03-03 09:26 - 2014-10-29 03:42 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonUI.exe 2015-03-03 09:26 - 2014-10-29 03:41 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysclass.dll 2015-03-03 09:26 - 2014-10-29 03:41 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmintf.dll 2015-03-03 09:26 - 2014-10-29 03:41 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll 2015-03-03 09:26 - 2014-10-29 03:41 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpnotify.exe 2015-03-03 09:26 - 2014-10-29 03:41 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpupdate.exe 2015-03-03 09:26 - 2014-10-29 03:41 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\syssetup.dll 2015-03-03 09:26 - 2014-10-29 03:41 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\localui.dll 2015-03-03 09:26 - 2014-10-29 03:41 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidcertstorecheck.exe 2015-03-03 09:26 - 2014-10-29 03:41 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\RdpSaPs.dll 2015-03-03 09:26 - 2014-10-29 03:41 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshirda.dll 2015-03-03 09:26 - 2014-10-29 03:41 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncHostps.dll 2015-03-03 09:26 - 2014-10-29 03:41 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmcico.dll 2015-03-03 09:26 - 2014-10-29 03:41 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\panmap.dll 2015-03-03 09:26 - 2014-10-29 03:41 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmcodecdspps.dll 2015-03-03 09:26 - 2014-10-29 03:41 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrnsave.scr 2015-03-03 09:26 - 2014-10-29 03:41 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\spnet.dll 2015-03-03 09:26 - 2014-10-29 03:41 - 00010752 ____C (Microsoft Corporation) C:\WINDOWS\system32\CIRCoInst.dll 2015-03-03 09:26 - 2014-10-29 03:41 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\shfolder.dll 2015-03-03 09:26 - 2014-10-29 03:40 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\sccls.dll 2015-03-03 09:26 - 2014-10-29 03:40 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.proxystub.dll 2015-03-03 09:26 - 2014-10-29 03:40 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\irclass.dll 2015-03-03 09:26 - 2014-10-29 03:40 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSChannel.dll 2015-03-03 09:26 - 2014-10-29 03:40 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx7.dll 2015-03-03 09:26 - 2014-10-29 03:40 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll 2015-03-03 09:26 - 2014-10-29 03:40 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx6.dll 2015-03-03 09:26 - 2014-10-29 03:40 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx3.dll 2015-03-03 09:26 - 2014-10-29 03:40 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx4.dll 2015-03-03 09:26 - 2014-10-29 03:40 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\VmApplicationHealthMonitorProxy.dll 2015-03-03 09:26 - 2014-10-29 03:39 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\icmui.dll 2015-03-03 09:26 - 2014-10-29 03:38 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\capisp.dll 2015-03-03 09:26 - 2014-10-29 03:38 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\nbtstat.exe 2015-03-03 09:26 - 2014-10-29 03:38 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfime.ime 2015-03-03 09:26 - 2014-10-29 03:37 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsauth.dll 2015-03-03 09:26 - 2014-10-29 03:37 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\VscMgrPS.dll 2015-03-03 09:26 - 2014-10-29 03:37 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\secinit.exe 2015-03-03 09:26 - 2014-10-29 03:36 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\extrac32.exe 2015-03-03 09:26 - 2014-10-29 03:36 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcnsh.dll 2015-03-03 09:26 - 2014-10-29 03:36 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ktmutil.exe 2015-03-03 09:26 - 2014-10-29 03:36 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bitsprx2.dll 2015-03-03 09:26 - 2014-10-29 03:36 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\verclsid.exe 2015-03-03 09:26 - 2014-10-29 03:36 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\acproxy.dll 2015-03-03 09:26 - 2014-10-29 03:35 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\cofiredm.dll 2015-03-03 09:26 - 2014-10-29 03:35 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\PnPutil.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsicpl.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSCollect.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\eventvwr.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hdwwiz.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\winver.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UI0Detect.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\where.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdrleakdiag.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialer.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\timeout.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\clip.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\at.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEject.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdbinst.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\cofire.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2015-03-03 09:26 - 2014-10-29 03:34 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\spopk.dll 2015-03-03 09:26 - 2014-10-29 03:34 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\compact.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdial.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\fsavailux.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcmonitor.dll 2015-03-03 09:26 - 2014-10-29 03:34 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\TapiSysprep.dll 2015-03-03 09:26 - 2014-10-29 03:34 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmdext.dll 2015-03-03 09:26 - 2014-10-29 03:34 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\write.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\write.exe 2015-03-03 09:26 - 2014-10-29 03:34 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\regedt32.exe 2015-03-03 09:26 - 2014-10-29 03:33 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ndadmin.exe 2015-03-03 09:26 - 2014-10-29 03:33 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\takeown.exe 2015-03-03 09:26 - 2014-10-29 03:33 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Apphlpdm.dll 2015-03-03 09:26 - 2014-10-29 03:33 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\winusb.dll 2015-03-03 09:26 - 2014-10-29 03:33 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetppui.dll 2015-03-03 09:26 - 2014-10-29 03:33 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\runas.exe 2015-03-03 09:26 - 2014-10-29 03:33 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe 2015-03-03 09:26 - 2014-10-29 03:33 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\svsvc.dll 2015-03-03 09:26 - 2014-10-29 03:33 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\LAPRXY.DLL 2015-03-03 09:26 - 2014-10-29 03:32 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprtPS.dll 2015-03-03 09:26 - 2014-10-29 03:31 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingProxy.dll 2015-03-03 09:26 - 2014-10-29 03:31 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlaninst.dll 2015-03-03 09:26 - 2014-10-29 03:30 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\sigverif.exe 2015-03-03 09:26 - 2014-10-29 03:30 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\forfiles.exe 2015-03-03 09:26 - 2014-10-29 03:30 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\eventcreate.exe 2015-03-03 09:26 - 2014-10-29 03:30 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\choice.exe 2015-03-03 09:26 - 2014-10-29 03:30 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\RmClient.exe 2015-03-03 09:26 - 2014-10-29 03:29 - 00151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsicli.exe 2015-03-03 09:26 - 2014-10-29 03:29 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\waitfor.exe 2015-03-03 09:26 - 2014-10-29 03:29 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\setspn.exe 2015-03-03 09:26 - 2014-10-29 03:29 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhsvcctl.dll 2015-03-03 09:26 - 2014-10-29 03:29 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshelper.dll 2015-03-03 09:26 - 2014-10-29 03:28 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcad32.exe 2015-03-03 09:26 - 2014-10-29 03:27 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmci.dll 2015-03-03 09:26 - 2014-10-29 03:27 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\serialui.dll 2015-03-03 09:26 - 2014-10-29 03:25 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\hwrreg.exe 2015-03-03 09:26 - 2014-10-29 03:25 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontview.exe 2015-03-03 09:26 - 2014-10-29 03:25 - 00109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\resmon.exe 2015-03-03 09:26 - 2014-10-29 03:25 - 00096256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe 2015-03-03 09:26 - 2014-10-29 03:24 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserAccountControlSettings.exe 2015-03-03 09:26 - 2014-10-29 03:24 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationNotifications.exe 2015-03-03 09:26 - 2014-10-29 03:24 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcaApi.dll 2015-03-03 09:26 - 2014-10-29 03:24 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcwrun.exe 2015-03-03 09:26 - 2014-10-29 03:23 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerWizardElev.exe 2015-03-03 09:26 - 2014-10-29 03:23 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\montr_ci.dll 2015-03-03 09:26 - 2014-10-29 03:23 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wowreg32.exe 2015-03-03 09:26 - 2014-10-29 03:22 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\newdev.exe 2015-03-03 09:26 - 2014-10-29 03:22 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\radarrs.dll 2015-03-03 09:26 - 2014-10-29 03:22 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\PNPXAssocPrx.dll 2015-03-03 09:26 - 2014-10-29 03:22 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFCoinstaller.dll 2015-03-03 09:26 - 2014-10-29 03:22 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ndproxystub.dll 2015-03-03 09:26 - 2014-10-29 03:22 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgwdi.dll 2015-03-03 09:26 - 2014-10-29 03:20 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl 2015-03-03 09:26 - 2014-10-29 03:20 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\proquota.exe 2015-03-03 09:26 - 2014-10-29 03:20 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\WallpaperHost.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\control.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceProperties.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\tabcal.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesRemote.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesProtection.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesPerformance.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesHardware.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesDataExecutionPrevention.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesComputerName.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemPropertiesAdvanced.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingWizard.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MultiDigiMon.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Netplwiz.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Eap3Host.exe 2015-03-03 09:26 - 2014-10-29 03:19 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\DefaultDeviceManager.dll 2015-03-03 09:26 - 2014-10-29 03:18 - 00219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmartScreenSettings.exe 2015-03-03 09:26 - 2014-10-29 03:18 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\OptionalFeatures.exe 2015-03-03 09:26 - 2014-10-29 03:18 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Fondue.exe 2015-03-03 09:26 - 2014-10-29 03:18 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdRes.exe 2015-03-03 09:26 - 2014-10-29 03:18 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\DpiScaling.exe 2015-03-03 09:26 - 2014-10-29 03:18 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\RunLegacyCPLElevated.exe 2015-03-03 09:26 - 2014-10-29 03:18 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComputerDefaults.exe 2015-03-03 09:26 - 2014-10-29 03:17 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdSched.exe 2015-03-03 09:26 - 2014-10-29 03:17 - 00045056 ____C (Microsoft Corporation) C:\WINDOWS\system32\TsUsbGDCoInstaller.dll 2015-03-03 09:26 - 2014-10-29 03:17 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSUNATD.exe 2015-03-03 09:26 - 2014-10-29 03:17 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDACLSys.dll 2015-03-03 09:26 - 2014-10-29 03:17 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoveDeviceElevated.dll 2015-03-03 09:26 - 2014-10-29 03:09 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthudtask.exe 2015-03-03 09:26 - 2014-10-29 03:08 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\credwiz.exe 2015-03-03 09:26 - 2014-10-29 03:08 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwmp.dll 2015-03-03 09:26 - 2014-10-29 03:05 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\gptext.dll 2015-03-03 09:26 - 2014-10-29 03:03 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ktmw32.dll 2015-03-03 09:26 - 2014-10-29 03:03 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\txfw32.dll 2015-03-03 09:26 - 2014-10-29 03:03 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wship6.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\miguiresource.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\tpmcompc.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mciseq.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiatrace.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mscat32.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\browseui.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensApi.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\softpub.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleacchooks.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nddeapi.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msiwer.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssip32.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ir50_32.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ir41_32.ax 2015-03-03 09:26 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OskSupport.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ir50_qcx.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ir50_qc.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ir41_qcx.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ir41_qc.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ir32_32.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\getuname.dll 2015-03-03 09:26 - 2014-10-29 03:00 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\osuninst.dll 2015-03-03 09:26 - 2014-10-29 02:59 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lsmproxy.dll 2015-03-03 09:26 - 2014-10-29 02:59 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsock32.dll 2015-03-03 09:26 - 2014-10-29 02:59 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msidcrl40.dll 2015-03-03 09:26 - 2014-10-29 02:59 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WlS0WndH.dll 2015-03-03 09:26 - 2014-10-29 02:59 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sas.dll 2015-03-03 09:26 - 2014-10-29 02:59 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XInput9_1_0.dll 2015-03-03 09:26 - 2014-10-29 02:59 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comcat.dll 2015-03-03 09:26 - 2014-10-29 02:59 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxex.dll 2015-03-03 09:26 - 2014-10-29 02:58 - 00107008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\telephon.cpl 2015-03-03 09:26 - 2014-10-29 02:58 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\colorcpl.exe 2015-03-03 09:26 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.exe 2015-03-03 09:26 - 2014-10-29 02:58 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntprint.exe 2015-03-03 09:26 - 2014-10-29 02:58 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzutil.exe 2015-03-03 09:26 - 2014-10-29 02:58 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cliconfg.exe 2015-03-03 09:26 - 2014-10-29 02:58 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msyuv.dll 2015-03-03 09:26 - 2014-10-29 02:58 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sort.exe 2015-03-03 09:26 - 2014-10-29 02:58 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\umdmxfrm.dll 2015-03-03 09:26 - 2014-10-29 02:58 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hh.exe 2015-03-03 09:26 - 2014-10-29 02:58 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshrm.dll 2015-03-03 09:26 - 2014-10-29 02:58 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmdkey.exe 2015-03-03 09:26 - 2014-10-29 02:58 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfts.dll 2015-03-03 09:26 - 2014-10-29 02:58 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsbyuv.dll 2015-03-03 09:26 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TapiUnattend.exe 2015-03-03 09:26 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwinsat.dll 2015-03-03 09:26 - 2014-10-29 02:58 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chcp.com 2015-03-03 09:26 - 2014-10-29 02:58 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dvdplay.exe 2015-03-03 09:26 - 2014-10-29 02:58 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iscsied.dll 2015-03-03 09:26 - 2014-10-29 02:58 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tapiperf.dll 2015-03-03 09:26 - 2014-10-29 02:58 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtprio.dll 2015-03-03 09:26 - 2014-10-29 02:58 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeDateMUICallback.dll 2015-03-03 09:26 - 2014-10-29 02:58 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\acledit.dll 2015-03-03 09:26 - 2014-10-29 02:57 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmintf.dll 2015-03-03 09:26 - 2014-10-29 02:57 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpupdate.exe 2015-03-03 09:26 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tcmsetup.exe 2015-03-03 09:26 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\muifontsetup.dll 2015-03-03 09:26 - 2014-10-29 02:57 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DDOIProxy.dll 2015-03-03 09:26 - 2014-10-29 02:57 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usbperf.dll 2015-03-03 09:26 - 2014-10-29 02:57 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshirda.dll 2015-03-03 09:26 - 2014-10-29 02:57 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RdpSaPs.dll 2015-03-03 09:26 - 2014-10-29 02:57 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrnsave.scr 2015-03-03 09:26 - 2014-10-29 02:57 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spnet.dll 2015-03-03 09:26 - 2014-10-29 02:56 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncInfrastructureps.dll 2015-03-03 09:26 - 2014-10-29 02:56 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSChannel.dll 2015-03-03 09:26 - 2014-10-29 02:56 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscproxystub.dll 2015-03-03 09:26 - 2014-10-29 02:56 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncHostps.dll 2015-03-03 09:26 - 2014-10-29 02:56 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmcodecdspps.dll 2015-03-03 09:26 - 2014-10-29 02:56 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcji32.dll 2015-03-03 09:26 - 2014-10-29 02:56 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odtext32.dll 2015-03-03 09:26 - 2014-10-29 02:56 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odpdx32.dll 2015-03-03 09:26 - 2014-10-29 02:56 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odfox32.dll 2015-03-03 09:26 - 2014-10-29 02:56 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oddbse32.dll 2015-03-03 09:26 - 2014-10-29 02:56 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odexl32.dll 2015-03-03 09:26 - 2014-10-29 02:55 - 00008192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctfime.ime 2015-03-03 09:26 - 2014-10-29 02:54 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secinit.exe 2015-03-03 09:26 - 2014-10-29 02:54 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VscMgrPS.dll 2015-03-03 09:26 - 2014-10-29 02:54 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ctfmon.exe 2015-03-03 09:26 - 2014-10-29 02:53 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapimig.exe 2015-03-03 09:26 - 2014-10-29 02:53 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\verclsid.exe 2015-03-03 09:26 - 2014-10-29 02:53 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\winhlp32.exe 2015-03-03 09:26 - 2014-10-29 02:52 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iscsicpl.exe 2015-03-03 09:26 - 2014-10-29 02:52 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msra.exe 2015-03-03 09:26 - 2014-10-29 02:52 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hdwwiz.exe 2015-03-03 09:26 - 2014-10-29 02:52 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winver.exe 2015-03-03 09:26 - 2014-10-29 02:52 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regedt32.exe 2015-03-03 09:26 - 2014-10-29 02:52 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmdext.dll 2015-03-03 09:26 - 2014-10-29 02:52 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\write.exe 2015-03-03 09:26 - 2014-10-29 02:52 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TapiSysprep.dll 2015-03-03 09:26 - 2014-10-29 02:51 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ndadmin.exe 2015-03-03 09:26 - 2014-10-29 02:51 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\runas.exe 2015-03-03 09:26 - 2014-10-29 02:51 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdial.exe 2015-03-03 09:26 - 2014-10-29 02:51 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe 2015-03-03 09:26 - 2014-10-29 02:51 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LAPRXY.DLL 2015-03-03 09:26 - 2014-10-29 02:51 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InfDefaultInstall.exe 2015-03-03 09:26 - 2014-10-29 02:51 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\systray.exe 2015-03-03 09:26 - 2014-10-29 02:49 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairingProxy.dll 2015-03-03 09:26 - 2014-10-29 02:48 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RmClient.exe 2015-03-03 09:26 - 2014-10-29 02:46 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcad32.exe 2015-03-03 09:26 - 2014-10-29 02:45 - 00108032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resmon.exe 2015-03-03 09:26 - 2014-10-29 02:45 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe 2015-03-03 09:26 - 2014-10-29 02:44 - 00218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserAccountControlSettings.exe 2015-03-03 09:26 - 2014-10-29 02:44 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Narrator.exe 2015-03-03 09:26 - 2014-10-29 02:44 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationNotifications.exe 2015-03-03 09:26 - 2014-10-29 02:43 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wowreg32.exe 2015-03-03 09:26 - 2014-10-29 02:42 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\newdev.exe 2015-03-03 09:26 - 2014-10-29 02:42 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmdmps.dll 2015-03-03 09:26 - 2014-10-29 02:42 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ndproxystub.dll 2015-03-03 09:26 - 2014-10-29 02:40 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl 2015-03-03 09:26 - 2014-10-29 02:40 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DevicePairingWizard.exe 2015-03-03 09:26 - 2014-10-29 02:40 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Netplwiz.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SmartScreenSettings.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\control.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Fondue.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceProperties.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemPropertiesRemote.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemPropertiesProtection.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemPropertiesPerformance.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemPropertiesHardware.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemPropertiesDataExecutionPrevention.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemPropertiesComputerName.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemPropertiesAdvanced.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DpiScaling.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RunLegacyCPLElevated.exe 2015-03-03 09:26 - 2014-10-29 02:39 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComputerDefaults.exe 2015-03-03 09:26 - 2014-10-29 02:38 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RemoveDeviceElevated.dll 2015-03-03 09:26 - 2014-10-29 02:34 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\efsui.exe 2015-03-03 09:26 - 2014-10-29 02:32 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll 2015-03-03 09:26 - 2014-10-29 02:29 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapi.dll 2015-03-03 09:26 - 2014-10-29 02:29 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprext.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_G18030.DLL 2015-03-03 09:26 - 2014-10-29 02:28 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprmsg.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\system32\KdsCli.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\reg.exe 2015-03-03 09:26 - 2014-10-29 02:28 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfproc.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshhttp.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\icacls.exe 2015-03-03 09:26 - 2014-10-29 02:28 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdhcinst.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\userinit.exe 2015-03-03 09:26 - 2014-10-29 02:28 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfnet.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltLib.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\PATHPING.EXE 2015-03-03 09:26 - 2014-10-29 02:28 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\nrpsrv.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsmplpxy.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_IS2022.DLL 2015-03-03 09:26 - 2014-10-29 02:28 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrssrv.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\whhelper.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdBthProxy.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\TCPSVCS.EXE 2015-03-03 09:26 - 2014-10-29 02:28 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\msidle.dll 2015-03-03 09:26 - 2014-10-29 02:28 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\backgroundTaskHost.exe 2015-03-03 09:26 - 2014-10-29 02:28 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll 2015-03-03 09:26 - 2014-10-29 02:27 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\nslookup.exe 2015-03-03 09:26 - 2014-10-29 02:27 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\esentprf.dll 2015-03-03 09:26 - 2014-10-29 02:27 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\setx.exe 2015-03-03 09:26 - 2014-10-29 02:27 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\lodctr.exe 2015-03-03 09:26 - 2014-10-29 02:27 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\unlodctr.exe 2015-03-03 09:26 - 2014-10-29 02:27 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecEdit.exe 2015-03-03 09:26 - 2014-10-29 02:27 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfdisk.dll 2015-03-03 09:26 - 2014-10-29 02:27 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\cacls.exe 2015-03-03 09:26 - 2014-10-29 02:27 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\fltMC.exe 2015-03-03 09:26 - 2014-10-29 02:27 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecerts.dll 2015-03-03 09:26 - 2014-10-29 02:27 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhapi.dll 2015-03-03 09:26 - 2014-10-29 02:27 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll 2015-03-03 09:26 - 2014-10-29 02:27 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\PING.EXE 2015-03-03 09:26 - 2014-10-29 02:27 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxp.dll 2015-03-03 09:26 - 2014-10-29 02:27 - 00018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerClient.dll 2015-03-03 09:26 - 2014-10-29 02:27 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\finger.exe 2015-03-03 09:26 - 2014-10-29 02:27 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Register-CimProvider.exe 2015-03-03 09:26 - 2014-10-29 02:27 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll 2015-03-03 09:26 - 2014-10-29 02:27 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\TetheringIeProvider.dll 2015-03-03 09:26 - 2014-10-29 02:26 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\typeperf.exe 2015-03-03 09:26 - 2014-10-29 02:26 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\relog.exe 2015-03-03 09:26 - 2014-10-29 02:26 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\appsruprov.dll 2015-03-03 09:26 - 2014-10-29 02:26 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\pots.dll 2015-03-03 09:26 - 2014-10-29 02:26 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\VaultCmd.exe 2015-03-03 09:26 - 2014-10-29 02:26 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRINFO.EXE 2015-03-03 09:26 - 2014-10-29 02:26 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityRtapiPal.dll 2015-03-03 09:26 - 2014-10-29 02:26 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpcsvc.dll 2015-03-03 09:26 - 2014-10-29 02:25 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininitext.dll 2015-03-03 09:26 - 2014-10-29 02:25 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsext.dll 2015-03-03 09:26 - 2014-10-29 02:24 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\procinst.dll 2015-03-03 09:26 - 2014-10-29 02:23 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.ps.dll 2015-03-03 09:26 - 2014-10-29 02:23 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Background.ps.dll 2015-03-03 09:26 - 2014-10-29 02:22 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\system32\TaskSchdPS.dll 2015-03-03 09:26 - 2014-10-29 02:21 - 00046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfctrs.dll 2015-03-03 09:26 - 2014-10-29 02:21 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipconfig.exe 2015-03-03 09:26 - 2014-10-29 02:21 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll 2015-03-03 09:26 - 2014-10-29 02:21 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallButtons.ProxyStub.dll 2015-03-03 09:26 - 2014-10-29 02:21 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragproxy.dll 2015-03-03 09:26 - 2014-10-29 02:21 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHostProxy.dll 2015-03-03 09:26 - 2014-10-29 02:21 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfmifsproxy.dll 2015-03-03 09:26 - 2014-10-29 02:21 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\dllhst3g.exe 2015-03-03 09:26 - 2014-10-29 02:20 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpapimig.exe 2015-03-03 09:26 - 2014-10-29 02:20 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\keepaliveprovider.dll 2015-03-03 09:26 - 2014-10-29 02:19 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\raschapext.dll 2015-03-03 09:26 - 2014-10-29 02:19 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll 2015-03-03 09:26 - 2014-10-29 02:16 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\FwRemoteSvr.dll 2015-03-03 09:26 - 2014-10-29 02:16 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetmib1.dll 2015-03-03 09:26 - 2014-10-29 02:14 - 00026624 _____ (Microsoft Corporation) C:\WINDOWS\system32\nci.dll 2015-03-03 09:26 - 2014-10-29 02:12 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwaninst.dll 2015-03-03 09:26 - 2014-10-29 02:12 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DsmUserTask.exe 2015-03-03 09:26 - 2014-10-29 02:08 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winrs.exe 2015-03-03 09:26 - 2014-10-29 02:06 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprext.dll 2015-03-03 09:26 - 2014-10-29 02:05 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\C_G18030.DLL 2015-03-03 09:26 - 2014-10-29 02:05 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprmsg.dll 2015-03-03 09:26 - 2014-10-29 02:05 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unlodctr.exe 2015-03-03 09:26 - 2014-10-29 02:05 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PATHPING.EXE 2015-03-03 09:26 - 2014-10-29 02:05 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mountvol.exe 2015-03-03 09:26 - 2014-10-29 02:05 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TRACERT.EXE 2015-03-03 09:26 - 2014-10-29 02:05 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SystemEventsBrokerClient.dll 2015-03-03 09:26 - 2014-10-29 02:05 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmsgapi.dll 2015-03-03 09:26 - 2014-10-29 02:05 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll 2015-03-03 09:26 - 2014-10-29 02:05 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsmplpxy.dll 2015-03-03 09:26 - 2014-10-29 02:05 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\whhelper.dll 2015-03-03 09:26 - 2014-10-29 02:05 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\C_IS2022.DLL 2015-03-03 09:26 - 2014-10-29 02:05 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winrssrv.dll 2015-03-03 09:26 - 2014-10-29 02:05 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdBthProxy.dll 2015-03-03 09:26 - 2014-10-29 02:05 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TCPSVCS.EXE 2015-03-03 09:26 - 2014-10-29 02:05 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msidle.dll 2015-03-03 09:26 - 2014-10-29 02:05 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\backgroundTaskHost.exe 2015-03-03 09:26 - 2014-10-29 02:05 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll 2015-03-03 09:26 - 2014-10-29 02:04 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe 2015-03-03 09:26 - 2014-10-29 02:04 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fltMC.exe 2015-03-03 09:26 - 2014-10-29 02:04 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Register-CimProvider.exe 2015-03-03 09:26 - 2014-10-29 02:04 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll 2015-03-03 09:26 - 2014-10-29 02:04 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpcsvc.dll 2015-03-03 09:26 - 2014-10-29 02:03 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchTM.exe 2015-03-03 09:26 - 2014-10-29 02:03 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MRINFO.EXE 2015-03-03 09:26 - 2014-10-29 02:03 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ProximityRtapiPal.dll 2015-03-03 09:26 - 2014-10-29 02:02 - 00017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininitext.dll 2015-03-03 09:26 - 2014-10-29 02:01 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TaskSchdPS.dll 2015-03-03 09:26 - 2014-10-29 02:01 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vss_ps.dll 2015-03-03 09:26 - 2014-10-29 02:01 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdProxy.dll 2015-03-03 09:26 - 2014-10-29 02:01 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.ps.dll 2015-03-03 09:26 - 2014-10-29 02:01 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.ps.dll 2015-03-03 09:26 - 2014-10-29 02:01 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Background.ps.dll 2015-03-03 09:26 - 2014-10-29 02:00 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nlmproxy.dll 2015-03-03 09:26 - 2014-10-29 02:00 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallButtons.ProxyStub.dll 2015-03-03 09:26 - 2014-10-29 02:00 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfmifsproxy.dll 2015-03-03 09:26 - 2014-10-29 01:58 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Startupscan.dll 2015-03-03 09:26 - 2014-10-29 01:58 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\bootim.exe 2015-03-03 09:26 - 2014-10-29 01:55 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\CheckNetIsolation.exe 2015-03-03 09:26 - 2014-10-29 01:50 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchTM.exe 2015-03-03 09:26 - 2014-10-29 01:46 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Startupscan.dll 2015-03-03 09:25 - 2014-10-29 04:54 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthFWWizFwk.dll 2015-03-03 09:25 - 2014-10-29 04:07 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AuthFWWizFwk.dll 2015-03-03 09:25 - 2014-10-29 03:50 - 02628608 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll 2015-03-03 09:25 - 2014-10-29 03:49 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceUxRes.dll 2015-03-03 09:25 - 2014-10-29 03:49 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2015-03-03 09:25 - 2014-10-29 03:49 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Firewall.cpl 2015-03-03 09:25 - 2014-10-29 03:49 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2help.dll 2015-03-03 09:25 - 2014-10-29 03:49 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll 2015-03-03 09:25 - 2014-10-29 03:49 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\rnr20.dll 2015-03-03 09:25 - 2014-10-29 03:48 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll 2015-03-03 09:25 - 2014-10-29 03:48 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ktmw32.dll 2015-03-03 09:25 - 2014-10-29 03:48 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasacd.sys 2015-03-03 09:25 - 2014-10-29 03:48 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\workerdd.dll 2015-03-03 09:25 - 2014-10-29 03:48 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSHTCPIP.DLL 2015-03-03 09:25 - 2014-10-29 03:48 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wship6.dll 2015-03-03 09:25 - 2014-10-29 03:48 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rootmdm.sys 2015-03-03 09:25 - 2014-10-29 03:48 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmi.dll 2015-03-03 09:25 - 2014-10-29 03:47 - 00098304 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbcir.sys 2015-03-03 09:25 - 2014-10-29 03:47 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\qwavedrv.sys 2015-03-03 09:25 - 2014-10-29 03:47 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbscan.sys 2015-03-03 09:25 - 2014-10-29 03:47 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys 2015-03-03 09:25 - 2014-10-29 03:46 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS 2015-03-03 09:25 - 2014-10-29 03:46 - 00057856 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys 2015-03-03 09:25 - 2014-10-29 03:46 - 00053248 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2015-03-03 09:25 - 2014-10-29 03:46 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiscap.sys 2015-03-03 09:25 - 2014-10-29 03:46 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scfilter.sys 2015-03-03 09:25 - 2014-10-29 03:46 - 00029696 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\TsUsbGD.sys 2015-03-03 09:25 - 2014-10-29 03:45 - 00630784 _____ (Microsoft Corporation) C:\WINDOWS\system32\OobeFldr.dll 2015-03-03 09:25 - 2014-10-29 03:45 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys 2015-03-03 09:25 - 2014-10-29 03:45 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Ndu.sys 2015-03-03 09:25 - 2014-10-29 03:45 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mslldp.sys 2015-03-03 09:25 - 2014-10-29 03:45 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciwave.dll 2015-03-03 09:25 - 2014-10-29 03:45 - 00007168 _____ (Microsoft Corporation) C:\WINDOWS\system32\shimeng.dll 2015-03-03 09:25 - 2014-10-29 03:45 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx 2015-03-03 09:25 - 2014-10-29 03:45 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll 2015-03-03 09:25 - 2014-10-29 03:45 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\normaliz.dll 2015-03-03 09:25 - 2014-10-29 03:43 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\help.exe 2015-03-03 09:25 - 2014-10-29 03:42 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\TapiUnattend.exe 2015-03-03 09:25 - 2014-10-29 03:42 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomcnfg.exe 2015-03-03 09:25 - 2014-10-29 03:42 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\RpcNs4.dll 2015-03-03 09:25 - 2014-10-29 03:41 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcmsetup.exe 2015-03-03 09:25 - 2014-10-29 03:41 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll 2015-03-03 09:25 - 2014-10-29 03:40 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsUsbRedirectionGroupPolicyExtension.dll 2015-03-03 09:25 - 2014-10-29 03:38 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\pstorec.dll 2015-03-03 09:25 - 2014-10-29 03:37 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ctfmon.exe 2015-03-03 09:25 - 2014-10-29 03:34 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\systray.exe 2015-03-03 09:25 - 2014-10-29 03:33 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\InfDefaultInstall.exe 2015-03-03 09:25 - 2014-10-29 03:12 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\efsui.exe 2015-03-03 09:25 - 2014-10-29 03:05 - 02628608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll 2015-03-03 09:25 - 2014-10-29 03:04 - 00638976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2015-03-03 09:25 - 2014-10-29 03:04 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceUxRes.dll 2015-03-03 09:25 - 2014-10-29 03:04 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll 2015-03-03 09:25 - 2014-10-29 03:04 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2help.dll 2015-03-03 09:25 - 2014-10-29 03:04 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll 2015-03-03 09:25 - 2014-10-29 03:04 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rnr20.dll 2015-03-03 09:25 - 2014-10-29 03:03 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll 2015-03-03 09:25 - 2014-10-29 03:03 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSHTCPIP.DLL 2015-03-03 09:25 - 2014-10-29 03:03 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmi.dll 2015-03-03 09:25 - 2014-10-29 03:00 - 00629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OobeFldr.dll 2015-03-03 09:25 - 2014-10-29 03:00 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shimeng.dll 2015-03-03 09:25 - 2014-10-29 03:00 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx 2015-03-03 09:25 - 2014-10-29 03:00 - 00004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll 2015-03-03 09:25 - 2014-10-29 03:00 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\normaliz.dll 2015-03-03 09:25 - 2014-10-29 03:00 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprop.dll 2015-03-03 09:25 - 2014-10-29 02:59 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\help.exe 2015-03-03 09:25 - 2014-10-29 02:58 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomcnfg.exe 2015-03-03 09:25 - 2014-10-29 02:57 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RpcNs4.dll 2015-03-03 09:25 - 2014-10-29 02:56 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pstorec.dll 2015-03-03 09:25 - 2014-10-29 02:32 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthudtask.exe 2015-03-03 09:25 - 2014-10-29 02:29 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dabapi.dll 2015-03-03 09:25 - 2014-10-29 02:29 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\C_ISCII.DLL 2015-03-03 09:25 - 2014-10-29 02:28 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mountvol.exe 2015-03-03 09:25 - 2014-10-29 02:28 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\TcpipSetup.dll 2015-03-03 09:25 - 2014-10-29 02:27 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\TRACERT.EXE 2015-03-03 09:25 - 2014-10-29 02:27 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\HOSTNAME.EXE 2015-03-03 09:25 - 2014-10-29 02:23 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxStreamingDataSourcePS.dll 2015-03-03 09:25 - 2014-10-29 02:21 - 00023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ROUTE.EXE 2015-03-03 09:25 - 2014-10-29 02:06 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\C_ISCII.DLL 2015-03-03 09:25 - 2014-10-29 02:06 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dabapi.dll 2015-03-03 09:25 - 2014-10-07 04:30 - 00026112 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sermouse.sys 2015-03-03 09:25 - 2014-10-07 04:29 - 00107520 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\i8042prt.sys 2015-03-03 09:25 - 2014-10-07 04:29 - 00032256 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\kbdhid.sys 2015-03-03 09:25 - 2014-10-07 04:29 - 00030208 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mouhid.sys 2015-03-03 09:09 - 2014-10-31 05:50 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\BulkOperationHost.exe 2015-03-03 09:09 - 2014-10-31 04:30 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll 2015-03-03 09:09 - 2014-10-31 04:23 - 00733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2015-03-03 09:09 - 2014-10-31 04:22 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll 2015-03-03 09:09 - 2014-10-31 04:18 - 04840960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2015-03-03 09:09 - 2014-10-31 04:09 - 01154048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2015-03-03 09:09 - 2014-10-31 03:12 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll 2015-03-02 21:31 - 2015-03-02 21:31 - 00657920 _____ () C:\Users\jan\Documents\Schneelastzonen_panelsell_15FEB05.xls 2015-03-02 10:17 - 2015-03-02 10:17 - 00066578 _____ () C:\Users\jan\Downloads\Keyword Planner 2015-03-02 at 10-17-29.csv 2015-03-02 10:16 - 2015-03-02 10:16 - 00001522 _____ () C:\Users\jan\Downloads\Keyword Planner 2015-03-02 at 10-16-17.csv 2015-02-28 17:49 - 2015-02-28 22:09 - 00013824 _____ () C:\Users\jan\Desktop\foren.xls 2015-02-28 09:47 - 2015-02-28 09:47 - 04679780 _____ () C:\Users\jan\Downloads\Thermographie selbst gemacht.zip 2015-02-27 18:47 - 2015-02-27 18:47 - 00000000 ____D () C:\Users\jan\Downloads\responsive-column-widgets.1.2.0 2015-02-27 18:46 - 2015-02-27 18:46 - 00230806 _____ () C:\Users\jan\Downloads\responsive-column-widgets.1.2.0.zip 2015-02-27 11:00 - 2015-02-27 11:00 - 00784999 _____ () C:\Users\jan\Downloads\embedplus-for-wordpress.5.1.zip 2015-02-25 17:40 - 2015-02-25 17:40 - 00180283 _____ () C:\Users\jan\Downloads\PaintPot.aia 2015-02-25 08:09 - 2014-12-13 22:28 - 00513488 _____ () C:\WINDOWS\SysWOW64\locale.nls 2015-02-25 08:09 - 2014-12-13 22:28 - 00513488 _____ () C:\WINDOWS\system32\locale.nls 2015-02-25 08:09 - 2014-10-29 02:27 - 01200128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2015-02-25 08:09 - 2014-10-29 02:27 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll 2015-02-25 08:09 - 2014-10-29 02:04 - 00868352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll 2015-02-25 08:09 - 2014-10-29 02:04 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll 2015-02-24 19:01 - 2015-02-24 19:01 - 00188809 _____ () C:\Users\jan\Downloads\HelloPurr.aia 2015-02-24 18:34 - 2015-02-24 18:39 - 00000000 ____D () C:\Users\jan\.android 2015-02-24 18:34 - 2015-02-24 18:34 - 00000000 ____D () C:\Users\jan\.appinventor 2015-02-24 18:33 - 2015-03-08 19:44 - 00000000 ____D () C:\Program Files (x86)\AppInventor 2015-02-24 18:33 - 2015-02-24 18:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MIT App Inventor Tools 2015-02-24 18:33 - 2014-01-02 20:53 - 00001097 _____ () C:\Users\Public\Desktop\aiStarter.lnk 2015-02-24 18:28 - 2015-02-24 18:31 - 83753282 _____ (Massachusetts Institute of Technology) C:\Users\jan\Downloads\MIT_App_Inventor_Tools_2.3.0_win_setup.exe 2015-02-23 19:58 - 2015-02-23 19:58 - 00001162 _____ () C:\Users\jan\Downloads\French_Geheimer-Ort_9783104023885.acsm 2015-02-20 15:09 - 2015-02-20 15:09 - 00000000 ____D () C:\Users\jan\Downloads\Ai2LiveComplete 2015-02-20 15:04 - 2015-02-20 15:08 - 166603319 _____ () C:\Users\jan\Downloads\Ai2LiveComplete.zip 2015-02-20 14:59 - 2015-02-20 15:01 - 96458094 _____ (Massachusetts Institute of Technology) C:\Users\jan\Downloads\AppInventor_Setup_Installer_v_2_2.exe 2015-02-19 22:07 - 2015-02-19 22:07 - 00000327 _____ () C:\Users\jan\Downloads\admhelper 2015-02-18 21:29 - 2015-03-18 07:53 - 00002967 _____ () C:\WINDOWS\setupact.log 2015-02-18 21:29 - 2015-02-18 21:29 - 00000000 _____ () C:\WINDOWS\setuperr.log ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-03-18 13:25 - 2013-12-22 14:06 - 10233344 ___SH () C:\Users\jan\Downloads\Thumbs.db 2015-03-18 13:20 - 2015-01-19 13:21 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-03-18 13:17 - 2014-01-17 22:58 - 01750698 _____ () C:\WINDOWS\WindowsUpdate.log 2015-03-18 13:10 - 2013-12-18 15:15 - 00001146 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-03-18 13:02 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2015-03-18 12:41 - 2014-06-13 12:04 - 00000578 _____ () C:\WINDOWS\Tasks\G2MUpdateTask-S-1-5-21-1644989510-745574122-4044334557-1001.job 2015-03-18 12:30 - 2013-12-22 14:43 - 00000000 ____D () C:\Users\jan\AppData\Roaming\Spotify 2015-03-18 12:02 - 2014-12-16 10:49 - 00024064 _____ () C:\Users\jan\Documents\studycal.xls 2015-03-18 09:00 - 2013-12-19 11:56 - 00000000 ____D () C:\Users\jan\AppData\Roaming\Skype 2015-03-18 08:14 - 2013-12-18 00:39 - 00000000 ____D () C:\WINDOWS\system32\Drivers\NISx64 2015-03-18 07:57 - 2014-01-18 01:52 - 00003942 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{47914F28-FFAC-45B3-9F19-9481FF8DCC30} 2015-03-18 07:57 - 2013-12-18 10:27 - 00000062 _____ () C:\Users\jan\AppData\Roaming\sp_data.sys 2015-03-18 07:55 - 2014-11-04 10:42 - 00000000 ___RD () C:\Users\jan\Dropbox 2015-03-18 07:55 - 2014-11-04 10:38 - 00000000 ____D () C:\Users\jan\AppData\Roaming\Dropbox 2015-03-18 07:54 - 2014-01-17 23:19 - 01076224 ___SH () C:\Users\jan\Desktop\Thumbs.db 2015-03-18 07:54 - 2013-12-22 14:44 - 00000000 ____D () C:\Users\jan\AppData\Local\Spotify 2015-03-18 07:54 - 2013-12-18 15:15 - 00001142 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-03-18 07:53 - 2014-01-17 22:59 - 00000000 ____D () C:\ProgramData\NVIDIA 2015-03-18 07:53 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2015-03-17 19:32 - 2013-11-14 08:27 - 01780340 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2015-03-17 19:32 - 2013-11-14 08:11 - 00765378 _____ () C:\WINDOWS\system32\perfh007.dat 2015-03-17 19:32 - 2013-11-14 08:11 - 00159696 _____ () C:\WINDOWS\system32\perfc007.dat 2015-03-17 15:33 - 2013-12-26 00:49 - 00000000 ____D () C:\Users\jan\AppData\Local\CrashDumps 2015-03-17 15:27 - 2013-12-18 10:33 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1644989510-745574122-4044334557-1001 2015-03-17 13:55 - 2013-11-13 23:18 - 00030780 _____ () C:\WINDOWS\PFRO.log 2015-03-17 13:54 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2015-03-16 11:01 - 2014-10-29 10:32 - 00000000 ____D () C:\Users\jan\Documents\B120 2015-03-16 08:41 - 2014-02-11 21:54 - 00618496 ___SH () C:\Users\jan\Documents\Thumbs.db 2015-03-15 23:08 - 2014-05-13 21:32 - 00000000 ____D () C:\Users\jan\AppData\Roaming\EurekaLog 2015-03-15 23:08 - 2014-05-13 09:03 - 00000000 ____D () C:\Users\jan\AppData\Roaming\IBP 2015-03-15 13:41 - 2014-06-13 12:04 - 00003584 _____ () C:\WINDOWS\System32\Tasks\G2MUpdateTask-S-1-5-21-1644989510-745574122-4044334557-1001 2015-03-14 09:13 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2015-03-14 09:07 - 2014-02-21 06:35 - 00003102 _____ () C:\WINDOWS\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-1644989510-745574122-4044334557-1001 2015-03-14 09:07 - 2013-12-19 17:31 - 00000000 ___RD () C:\Users\jan\SkyDrive 2015-03-13 23:20 - 2014-01-18 00:23 - 00000000 ____D () C:\Users\jan\AppData\Roaming\FileZilla 2015-03-13 19:58 - 2014-10-04 12:20 - 00000000 ____D () C:\Users\jan\Desktop\M364 2015-03-13 19:29 - 2014-04-30 11:26 - 00000000 ____D () C:\Users\jan\Documents\Eigene Scans 2015-03-13 12:58 - 2014-08-19 10:16 - 00000000 ____D () C:\Users\jan\Desktop\naplesdwell 2015-03-13 09:22 - 2014-11-04 10:42 - 00001074 _____ () C:\Users\jan\Desktop\Dropbox.lnk 2015-03-13 09:22 - 2014-11-04 10:39 - 00000000 ____D () C:\Users\jan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-03-12 13:02 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache 2015-03-12 08:47 - 2013-08-22 15:44 - 00624040 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2015-03-11 23:23 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData 2015-03-11 23:22 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-11 23:22 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-11 23:22 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2015-03-11 23:22 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\WinStore 2015-03-11 23:22 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender 2015-03-11 23:22 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2015-03-11 23:21 - 2012-07-26 08:59 - 00000000 ____D () C:\WINDOWS\CbsTemp 2015-03-11 23:16 - 2014-06-13 09:23 - 00000000 ____D () C:\Users\jan\Desktop\panelsell 2015-03-11 15:29 - 2014-10-02 14:17 - 00000646 _____ () C:\WINDOWS\SysWOW64\INSTALL.LOG 2015-03-11 11:24 - 2013-12-18 15:17 - 00002202 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2015-03-11 10:27 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2015-03-10 19:46 - 2014-12-11 18:12 - 00003862 _____ () C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1418317910 2015-03-10 19:46 - 2014-12-11 18:12 - 00001064 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk 2015-03-10 19:46 - 2014-12-11 18:11 - 00000000 ____D () C:\Program Files (x86)\Opera 2015-03-09 11:43 - 2014-02-01 02:06 - 00000000 ____D () C:\Users\jan\AppData\Roaming\Audacity 2015-03-07 22:09 - 2014-06-29 12:15 - 00000000 ____D () C:\Users\jan\Desktop\Rappazzo 2015-03-07 10:46 - 2014-03-15 16:47 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2015-03-04 22:24 - 2013-08-22 16:38 - 00792032 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-03-04 22:24 - 2013-08-22 16:38 - 00178144 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-03-04 16:58 - 2015-02-02 13:34 - 00000000 ____D () C:\Users\jan\Downloads\TT284-14J_02 2015-03-04 16:58 - 2015-01-29 13:04 - 00000000 ____D () C:\Users\jan\Desktop\TT284-14J_02 2015-03-04 00:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2015-03-04 00:49 - 2013-08-22 16:37 - 00005217 _____ () C:\WINDOWS\DtcInstall.log 2015-03-04 00:43 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-03-04 00:43 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-04 00:43 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-03-04 00:43 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-04 00:43 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools 2015-03-04 00:43 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility 2015-03-04 00:43 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer 2015-03-04 00:43 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager 2015-03-04 00:43 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera 2015-03-04 00:42 - 2013-11-14 08:13 - 00000000 ____D () C:\Program Files\Windows Journal 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\sppui 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\setup 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Com 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sppui 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\setup 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\Com 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\IME 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Portable Devices 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Multimedia Platform 2015-03-04 00:42 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System 2015-03-04 00:42 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\oobe 2015-03-04 00:42 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism 2015-03-04 00:42 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep 2015-03-04 00:42 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\oobe 2015-03-04 00:42 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\servicing 2015-03-04 00:41 - 2013-08-22 16:36 - 00000000 ___SD () C:\WINDOWS\system32\dsc 2015-03-04 00:41 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform 2015-03-04 00:41 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\migwiz 2015-03-04 00:41 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Dism 2015-03-04 00:40 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\WindowsPowerShell 2015-03-04 00:40 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Portable Devices 2015-03-04 00:40 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer 2015-03-04 00:40 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Multimedia Platform 2015-03-03 13:39 - 2013-08-22 16:36 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2015-03-03 13:39 - 2013-08-22 16:36 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2015-03-03 11:47 - 2014-06-06 11:20 - 00000000 ____D () C:\ProgramData\DatacardService 2015-02-27 09:34 - 2015-01-14 14:46 - 00000000 ____D () C:\Users\jan\Downloads\B2_Part3_Activities 2015-02-25 17:41 - 2014-09-16 10:49 - 00000000 ____D () C:\Users\jan\Desktop\TT284 2015-02-24 18:34 - 2014-01-17 23:02 - 00000000 ____D () C:\Users\jan 2015-02-24 00:20 - 2014-09-21 00:15 - 00000000 ____D () C:\Users\jan\AppData\Local\Audible 2015-02-21 10:02 - 2014-09-17 16:41 - 00000000 ___RD () C:\Program Files (x86)\Skype 2015-02-21 10:02 - 2013-12-19 11:55 - 00000000 ____D () C:\ProgramData\Skype 2015-02-19 22:05 - 2013-12-28 21:52 - 00000000 ____D () C:\Users\jan\AppData\Roaming\Apple Computer 2015-02-19 21:37 - 2014-09-21 00:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AudibleManager 2015-02-19 21:28 - 2014-09-21 00:15 - 00001988 _____ () C:\Users\jan\Desktop\Audible Manager.lnk 2015-02-19 21:28 - 2014-09-21 00:11 - 00000000 ____D () C:\Program Files (x86)\Audible 2015-02-18 17:08 - 2014-04-03 02:04 - 00000000 ____D () C:\WINDOWS\Minidump ==================== Files in the root of some directories ======= 2014-08-20 14:29 - 2014-08-20 14:31 - 0610360 _____ () C:\Users\jan\AppData\Roaming\Scorch_Install.log 2013-12-18 10:27 - 2015-03-18 07:57 - 0000062 _____ () C:\Users\jan\AppData\Roaming\sp_data.sys 2014-01-25 17:54 - 2014-01-25 17:54 - 0004608 _____ () C:\Users\jan\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-01-13 17:23 - 2014-01-13 17:23 - 0004096 ____H () C:\Users\jan\AppData\Local\keyfile3.drm 2014-06-22 17:25 - 2014-08-13 09:55 - 0000600 _____ () C:\Users\jan\AppData\Local\PUTTY.RND 2014-03-19 13:26 - 2014-10-09 08:40 - 0001390 _____ () C:\ProgramData\hpzinstall.log Some content of TEMP: ==================== C:\Users\jan\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpzrujcs.dll C:\Users\jan\AppData\Local\Temp\Quarantine.exe C:\Users\jan\AppData\Local\Temp\SearchProtectionSetup.exe C:\Users\jan\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-03-18 08:04 ==================== End Of Log ============================ |
19.03.2015, 07:13 | #32 |
/// the machine /// TB-Ausbilder | Yahoo mail versendet mails zu meinen kontakten Java, Firefox und Thunderbird updaten.
__________________Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter D:\adobeflashplayer.exe D:\SoftonicDownloader_fuer_gimp-painter.exe Emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Noch Probleme?
__________________ |
19.03.2015, 10:21 | #33 |
| Yahoo mail versendet mails zu meinen kontakten Hallo Schrauber,
__________________hier kommt der LOG Probleme hatte ich ausser dem einmaligen Auftauchen der Spammails - sprich der Meldung des Yahoo Mail Servers, dass einige der Mails nicht verschickt werden konnten nicht mehr - Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015 Ran by jan at 2015-03-19 10:02:57 Run:1 Running from C:\Users\jan\Downloads Loaded Profiles: jan (Available profiles: jan) Boot Mode: Normal ============================================== Content of fixlist: ***************** D:\adobeflashplayer.exe D:\SoftonicDownloader_fuer_gimp-painter.exe Emptytemp: ***************** D:\adobeflashplayer.exe => Moved successfully. D:\SoftonicDownloader_fuer_gimp-painter.exe => Moved successfully. EmptyTemp: => Removed 8.8 GB temporary data. The system needed a reboot. ==== End of Fixlog 10:05:39 ==== |
19.03.2015, 20:55 | #34 |
/// the machine /// TB-Ausbilder | Yahoo mail versendet mails zu meinen kontakten Passwörter ändern falls noch nicht geschehen. Cleanup: (Die Reihenfolge ist hier entscheidend) Falls Defogger verwendet wurde: Erneut starten und auf Re-enable klicken. Falls Combofix verwendet wurde: Combofix deinstallieren
Alle Logs gepostet? Dann lade Dir bitte DelFix herunter.
Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst. Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen. Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen. Absicherung: Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen: Browser Java Flash-Player PDF-Reader Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren. Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen. Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig. Verwende ein Antivirusprogramm mit Echtzeitscanner und stets aktueller Signaturendatenbank. Meine Empfehlung: Emsisoft Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen. Optional: NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen. Malwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen. Lade Software von einem sauberen Portal wie . Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen. Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwcleaner . Abschließend noch ein paar grundsätzliche Bemerkungen: Ändere regelmäßig Deine wichtigen Online-Passwörter und erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems. Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
19.03.2015, 21:04 | #35 |
| Yahoo mail versendet mails zu meinen kontakten Hallo Schrauber, was für eine Liste !! Vielen Dank. Magst Du vielleicht nochmal sagen, was Du glaubst, was beim mir "los war"? Gruss Jan |
20.03.2015, 06:42 | #36 |
/// the machine /// TB-Ausbilder | Yahoo mail versendet mails zu meinen kontakten Neben der ganzen Adware wurde einfach das Mailkonto online gehackt. Also PW ändern ud gut is
__________________ --> Yahoo mail versendet mails zu meinen kontakten |
20.03.2015, 09:03 | #37 |
| Yahoo mail versendet mails zu meinen kontakten Hallo Schrauber, vielen Dank für die Hilfe. Spende ist abgeschickt Gruss Jan |
21.03.2015, 09:49 | #38 |
/// the machine /// TB-Ausbilder | Yahoo mail versendet mails zu meinen kontakten Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Yahoo mail versendet mails zu meinen kontakten |
account, asus, board, gesendet, gesperrt, gestern, kontakte, mail, mails, norton, office, ordner, rechner, scan, schaden, spammails, takten, trojaner, verdächtige, vermeide, versendet, versendet mails, vorgänge, weiteren, windows, windows 8, yahoo |